Jul 2 07:55:52.102937 kernel: Linux version 5.15.161-flatcar (build@pony-truck.infra.kinvolk.io) (x86_64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP Mon Jul 1 23:45:21 -00 2024 Jul 2 07:55:52.102975 kernel: Command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 console=tty0 flatcar.first_boot=detected flatcar.oem.id=digitalocean verity.usrhash=d29251fe942de56b08103b03939b6e5af4108e76dc6080fe2498c5db43f16e82 Jul 2 07:55:52.102996 kernel: BIOS-provided physical RAM map: Jul 2 07:55:52.103007 kernel: BIOS-e820: [mem 0x0000000000000000-0x000000000009fbff] usable Jul 2 07:55:52.103019 kernel: BIOS-e820: [mem 0x000000000009fc00-0x000000000009ffff] reserved Jul 2 07:55:52.103030 kernel: BIOS-e820: [mem 0x00000000000f0000-0x00000000000fffff] reserved Jul 2 07:55:52.103044 kernel: BIOS-e820: [mem 0x0000000000100000-0x000000007ffd7fff] usable Jul 2 07:55:52.103056 kernel: BIOS-e820: [mem 0x000000007ffd8000-0x000000007fffffff] reserved Jul 2 07:55:52.103070 kernel: BIOS-e820: [mem 0x00000000feffc000-0x00000000feffffff] reserved Jul 2 07:55:52.103081 kernel: BIOS-e820: [mem 0x00000000fffc0000-0x00000000ffffffff] reserved Jul 2 07:55:52.103093 kernel: NX (Execute Disable) protection: active Jul 2 07:55:52.103104 kernel: SMBIOS 2.8 present. Jul 2 07:55:52.103115 kernel: DMI: DigitalOcean Droplet/Droplet, BIOS 20171212 12/12/2017 Jul 2 07:55:52.103127 kernel: Hypervisor detected: KVM Jul 2 07:55:52.103139 kernel: kvm-clock: Using msrs 4b564d01 and 4b564d00 Jul 2 07:55:52.103153 kernel: kvm-clock: cpu 0, msr 74192001, primary cpu clock Jul 2 07:55:52.103164 kernel: kvm-clock: using sched offset of 5048336240 cycles Jul 2 07:55:52.103178 kernel: clocksource: kvm-clock: mask: 0xffffffffffffffff max_cycles: 0x1cd42e4dffb, max_idle_ns: 881590591483 ns Jul 2 07:55:52.103191 kernel: tsc: Detected 1995.312 MHz processor Jul 2 07:55:52.103204 kernel: e820: update [mem 0x00000000-0x00000fff] usable ==> reserved Jul 2 07:55:52.103218 kernel: e820: remove [mem 0x000a0000-0x000fffff] usable Jul 2 07:55:52.103231 kernel: last_pfn = 0x7ffd8 max_arch_pfn = 0x400000000 Jul 2 07:55:52.103244 kernel: x86/PAT: Configuration [0-7]: WB WC UC- UC WB WP UC- WT Jul 2 07:55:52.103259 kernel: ACPI: Early table checksum verification disabled Jul 2 07:55:52.103272 kernel: ACPI: RSDP 0x00000000000F5A50 000014 (v00 BOCHS ) Jul 2 07:55:52.103285 kernel: ACPI: RSDT 0x000000007FFE1986 000038 (v01 BOCHS BXPC 00000001 BXPC 00000001) Jul 2 07:55:52.103298 kernel: ACPI: FACP 0x000000007FFE176A 000074 (v01 BOCHS BXPC 00000001 BXPC 00000001) Jul 2 07:55:52.103311 kernel: ACPI: DSDT 0x000000007FFE0040 00172A (v01 BOCHS BXPC 00000001 BXPC 00000001) Jul 2 07:55:52.103323 kernel: ACPI: FACS 0x000000007FFE0000 000040 Jul 2 07:55:52.103336 kernel: ACPI: APIC 0x000000007FFE17DE 000080 (v01 BOCHS BXPC 00000001 BXPC 00000001) Jul 2 07:55:52.103348 kernel: ACPI: HPET 0x000000007FFE185E 000038 (v01 BOCHS BXPC 00000001 BXPC 00000001) Jul 2 07:55:52.103361 kernel: ACPI: SRAT 0x000000007FFE1896 0000C8 (v01 BOCHS BXPC 00000001 BXPC 00000001) Jul 2 07:55:52.103376 kernel: ACPI: WAET 0x000000007FFE195E 000028 (v01 BOCHS BXPC 00000001 BXPC 00000001) Jul 2 07:55:52.103389 kernel: ACPI: Reserving FACP table memory at [mem 0x7ffe176a-0x7ffe17dd] Jul 2 07:55:52.103402 kernel: ACPI: Reserving DSDT table memory at [mem 0x7ffe0040-0x7ffe1769] Jul 2 07:55:52.103415 kernel: ACPI: Reserving FACS table memory at [mem 0x7ffe0000-0x7ffe003f] Jul 2 07:55:52.103428 kernel: ACPI: Reserving APIC table memory at [mem 0x7ffe17de-0x7ffe185d] Jul 2 07:55:52.103441 kernel: ACPI: Reserving HPET table memory at [mem 0x7ffe185e-0x7ffe1895] Jul 2 07:55:52.103453 kernel: ACPI: Reserving SRAT table memory at [mem 0x7ffe1896-0x7ffe195d] Jul 2 07:55:52.103466 kernel: ACPI: Reserving WAET table memory at [mem 0x7ffe195e-0x7ffe1985] Jul 2 07:55:52.103487 kernel: SRAT: PXM 0 -> APIC 0x00 -> Node 0 Jul 2 07:55:52.103516 kernel: SRAT: PXM 0 -> APIC 0x01 -> Node 0 Jul 2 07:55:52.103529 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x00000000-0x0009ffff] Jul 2 07:55:52.103542 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x00100000-0x7fffffff] Jul 2 07:55:52.103556 kernel: NUMA: Node 0 [mem 0x00000000-0x0009ffff] + [mem 0x00100000-0x7ffd7fff] -> [mem 0x00000000-0x7ffd7fff] Jul 2 07:55:52.103569 kernel: NODE_DATA(0) allocated [mem 0x7ffd2000-0x7ffd7fff] Jul 2 07:55:52.103585 kernel: Zone ranges: Jul 2 07:55:52.103598 kernel: DMA [mem 0x0000000000001000-0x0000000000ffffff] Jul 2 07:55:52.109749 kernel: DMA32 [mem 0x0000000001000000-0x000000007ffd7fff] Jul 2 07:55:52.109765 kernel: Normal empty Jul 2 07:55:52.109777 kernel: Movable zone start for each node Jul 2 07:55:52.109788 kernel: Early memory node ranges Jul 2 07:55:52.109801 kernel: node 0: [mem 0x0000000000001000-0x000000000009efff] Jul 2 07:55:52.109814 kernel: node 0: [mem 0x0000000000100000-0x000000007ffd7fff] Jul 2 07:55:52.109827 kernel: Initmem setup node 0 [mem 0x0000000000001000-0x000000007ffd7fff] Jul 2 07:55:52.109853 kernel: On node 0, zone DMA: 1 pages in unavailable ranges Jul 2 07:55:52.109864 kernel: On node 0, zone DMA: 97 pages in unavailable ranges Jul 2 07:55:52.109878 kernel: On node 0, zone DMA32: 40 pages in unavailable ranges Jul 2 07:55:52.109893 kernel: ACPI: PM-Timer IO Port: 0x608 Jul 2 07:55:52.109905 kernel: ACPI: LAPIC_NMI (acpi_id[0xff] dfl dfl lint[0x1]) Jul 2 07:55:52.109919 kernel: IOAPIC[0]: apic_id 0, version 17, address 0xfec00000, GSI 0-23 Jul 2 07:55:52.109933 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 0 global_irq 2 dfl dfl) Jul 2 07:55:52.109945 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 5 global_irq 5 high level) Jul 2 07:55:52.109959 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 9 global_irq 9 high level) Jul 2 07:55:52.109975 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 10 global_irq 10 high level) Jul 2 07:55:52.109988 kernel: ACPI: INT_SRC_OVR (bus 0 bus_irq 11 global_irq 11 high level) Jul 2 07:55:52.110002 kernel: ACPI: Using ACPI (MADT) for SMP configuration information Jul 2 07:55:52.110015 kernel: ACPI: HPET id: 0x8086a201 base: 0xfed00000 Jul 2 07:55:52.110028 kernel: TSC deadline timer available Jul 2 07:55:52.110042 kernel: smpboot: Allowing 2 CPUs, 0 hotplug CPUs Jul 2 07:55:52.110055 kernel: [mem 0x80000000-0xfeffbfff] available for PCI devices Jul 2 07:55:52.110069 kernel: Booting paravirtualized kernel on KVM Jul 2 07:55:52.110083 kernel: clocksource: refined-jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1910969940391419 ns Jul 2 07:55:52.110100 kernel: setup_percpu: NR_CPUS:512 nr_cpumask_bits:512 nr_cpu_ids:2 nr_node_ids:1 Jul 2 07:55:52.110114 kernel: percpu: Embedded 56 pages/cpu s188696 r8192 d32488 u1048576 Jul 2 07:55:52.110128 kernel: pcpu-alloc: s188696 r8192 d32488 u1048576 alloc=1*2097152 Jul 2 07:55:52.110141 kernel: pcpu-alloc: [0] 0 1 Jul 2 07:55:52.110155 kernel: kvm-guest: stealtime: cpu 0, msr 7dc1c0c0 Jul 2 07:55:52.110190 kernel: kvm-guest: PV spinlocks disabled, no host support Jul 2 07:55:52.110205 kernel: Built 1 zonelists, mobility grouping on. Total pages: 515800 Jul 2 07:55:52.110218 kernel: Policy zone: DMA32 Jul 2 07:55:52.110235 kernel: Kernel command line: rootflags=rw mount.usrflags=ro BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 console=tty0 flatcar.first_boot=detected flatcar.oem.id=digitalocean verity.usrhash=d29251fe942de56b08103b03939b6e5af4108e76dc6080fe2498c5db43f16e82 Jul 2 07:55:52.110254 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Jul 2 07:55:52.110268 kernel: Dentry cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Jul 2 07:55:52.110281 kernel: Inode-cache hash table entries: 131072 (order: 8, 1048576 bytes, linear) Jul 2 07:55:52.110295 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Jul 2 07:55:52.110309 kernel: Memory: 1973264K/2096600K available (12294K kernel code, 2276K rwdata, 13712K rodata, 47444K init, 4144K bss, 123076K reserved, 0K cma-reserved) Jul 2 07:55:52.110323 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Jul 2 07:55:52.110337 kernel: Kernel/User page tables isolation: enabled Jul 2 07:55:52.110350 kernel: ftrace: allocating 34514 entries in 135 pages Jul 2 07:55:52.110367 kernel: ftrace: allocated 135 pages with 4 groups Jul 2 07:55:52.110381 kernel: rcu: Hierarchical RCU implementation. Jul 2 07:55:52.110395 kernel: rcu: RCU event tracing is enabled. Jul 2 07:55:52.110409 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Jul 2 07:55:52.110423 kernel: Rude variant of Tasks RCU enabled. Jul 2 07:55:52.110437 kernel: Tracing variant of Tasks RCU enabled. Jul 2 07:55:52.110448 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Jul 2 07:55:52.110460 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Jul 2 07:55:52.110473 kernel: NR_IRQS: 33024, nr_irqs: 440, preallocated irqs: 16 Jul 2 07:55:52.110490 kernel: random: crng init done Jul 2 07:55:52.110504 kernel: Console: colour VGA+ 80x25 Jul 2 07:55:52.110533 kernel: printk: console [tty0] enabled Jul 2 07:55:52.110547 kernel: printk: console [ttyS0] enabled Jul 2 07:55:52.110560 kernel: ACPI: Core revision 20210730 Jul 2 07:55:52.110574 kernel: clocksource: hpet: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 19112604467 ns Jul 2 07:55:52.110588 kernel: APIC: Switch to symmetric I/O mode setup Jul 2 07:55:52.110623 kernel: x2apic enabled Jul 2 07:55:52.110638 kernel: Switched APIC routing to physical x2apic. Jul 2 07:55:52.110701 kernel: ..TIMER: vector=0x30 apic1=0 pin1=2 apic2=-1 pin2=-1 Jul 2 07:55:52.110715 kernel: clocksource: tsc-early: mask: 0xffffffffffffffff max_cycles: 0x3985c314e25, max_idle_ns: 881590612270 ns Jul 2 07:55:52.110730 kernel: Calibrating delay loop (skipped) preset value.. 3990.62 BogoMIPS (lpj=1995312) Jul 2 07:55:52.110743 kernel: Last level iTLB entries: 4KB 0, 2MB 0, 4MB 0 Jul 2 07:55:52.110757 kernel: Last level dTLB entries: 4KB 0, 2MB 0, 4MB 0, 1GB 0 Jul 2 07:55:52.110771 kernel: Spectre V1 : Mitigation: usercopy/swapgs barriers and __user pointer sanitization Jul 2 07:55:52.110784 kernel: Spectre V2 : Mitigation: Retpolines Jul 2 07:55:52.110798 kernel: Spectre V2 : Spectre v2 / SpectreRSB mitigation: Filling RSB on context switch Jul 2 07:55:52.110811 kernel: Spectre V2 : Spectre v2 / SpectreRSB : Filling RSB on VMEXIT Jul 2 07:55:52.110828 kernel: Spectre V2 : Enabling Restricted Speculation for firmware calls Jul 2 07:55:52.110853 kernel: Spectre V2 : mitigation: Enabling conditional Indirect Branch Prediction Barrier Jul 2 07:55:52.110868 kernel: Speculative Store Bypass: Mitigation: Speculative Store Bypass disabled via prctl and seccomp Jul 2 07:55:52.110885 kernel: MDS: Mitigation: Clear CPU buffers Jul 2 07:55:52.110899 kernel: MMIO Stale Data: Vulnerable: Clear CPU buffers attempted, no microcode Jul 2 07:55:52.110913 kernel: x86/fpu: Supporting XSAVE feature 0x001: 'x87 floating point registers' Jul 2 07:55:52.110927 kernel: x86/fpu: Supporting XSAVE feature 0x002: 'SSE registers' Jul 2 07:55:52.110940 kernel: x86/fpu: Supporting XSAVE feature 0x004: 'AVX registers' Jul 2 07:55:52.110954 kernel: x86/fpu: xstate_offset[2]: 576, xstate_sizes[2]: 256 Jul 2 07:55:52.110969 kernel: x86/fpu: Enabled xstate features 0x7, context size is 832 bytes, using 'standard' format. Jul 2 07:55:52.110985 kernel: Freeing SMP alternatives memory: 32K Jul 2 07:55:52.111000 kernel: pid_max: default: 32768 minimum: 301 Jul 2 07:55:52.111013 kernel: LSM: Security Framework initializing Jul 2 07:55:52.111028 kernel: SELinux: Initializing. Jul 2 07:55:52.111042 kernel: Mount-cache hash table entries: 4096 (order: 3, 32768 bytes, linear) Jul 2 07:55:52.111056 kernel: Mountpoint-cache hash table entries: 4096 (order: 3, 32768 bytes, linear) Jul 2 07:55:52.111074 kernel: smpboot: CPU0: Intel DO-Regular (family: 0x6, model: 0x4f, stepping: 0x1) Jul 2 07:55:52.111088 kernel: Performance Events: unsupported p6 CPU model 79 no PMU driver, software events only. Jul 2 07:55:52.111102 kernel: signal: max sigframe size: 1776 Jul 2 07:55:52.111116 kernel: rcu: Hierarchical SRCU implementation. Jul 2 07:55:52.111130 kernel: NMI watchdog: Perf NMI watchdog permanently disabled Jul 2 07:55:52.111144 kernel: smp: Bringing up secondary CPUs ... Jul 2 07:55:52.111159 kernel: x86: Booting SMP configuration: Jul 2 07:55:52.111173 kernel: .... node #0, CPUs: #1 Jul 2 07:55:52.111187 kernel: kvm-clock: cpu 1, msr 74192041, secondary cpu clock Jul 2 07:55:52.111201 kernel: kvm-guest: stealtime: cpu 1, msr 7dd1c0c0 Jul 2 07:55:52.111219 kernel: smp: Brought up 1 node, 2 CPUs Jul 2 07:55:52.111234 kernel: smpboot: Max logical packages: 1 Jul 2 07:55:52.111248 kernel: smpboot: Total of 2 processors activated (7981.24 BogoMIPS) Jul 2 07:55:52.111262 kernel: devtmpfs: initialized Jul 2 07:55:52.111277 kernel: x86/mm: Memory block size: 128MB Jul 2 07:55:52.111291 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Jul 2 07:55:52.111306 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Jul 2 07:55:52.111321 kernel: pinctrl core: initialized pinctrl subsystem Jul 2 07:55:52.111335 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Jul 2 07:55:52.111354 kernel: audit: initializing netlink subsys (disabled) Jul 2 07:55:52.111368 kernel: audit: type=2000 audit(1719906951.207:1): state=initialized audit_enabled=0 res=1 Jul 2 07:55:52.111382 kernel: thermal_sys: Registered thermal governor 'step_wise' Jul 2 07:55:52.111397 kernel: thermal_sys: Registered thermal governor 'user_space' Jul 2 07:55:52.111412 kernel: cpuidle: using governor menu Jul 2 07:55:52.111427 kernel: ACPI: bus type PCI registered Jul 2 07:55:52.111442 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Jul 2 07:55:52.111456 kernel: dca service started, version 1.12.1 Jul 2 07:55:52.111471 kernel: PCI: Using configuration type 1 for base access Jul 2 07:55:52.111504 kernel: kprobes: kprobe jump-optimization is enabled. All kprobes are optimized if possible. Jul 2 07:55:52.111519 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Jul 2 07:55:52.111533 kernel: ACPI: Added _OSI(Module Device) Jul 2 07:55:52.111548 kernel: ACPI: Added _OSI(Processor Device) Jul 2 07:55:52.111563 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Jul 2 07:55:52.111577 kernel: ACPI: Added _OSI(Processor Aggregator Device) Jul 2 07:55:52.111591 kernel: ACPI: Added _OSI(Linux-Dell-Video) Jul 2 07:55:52.111620 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Jul 2 07:55:52.111635 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Jul 2 07:55:52.111654 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Jul 2 07:55:52.111682 kernel: ACPI: Interpreter enabled Jul 2 07:55:52.111696 kernel: ACPI: PM: (supports S0 S5) Jul 2 07:55:52.111710 kernel: ACPI: Using IOAPIC for interrupt routing Jul 2 07:55:52.111725 kernel: PCI: Using host bridge windows from ACPI; if necessary, use "pci=nocrs" and report a bug Jul 2 07:55:52.111738 kernel: ACPI: Enabled 2 GPEs in block 00 to 0F Jul 2 07:55:52.111751 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-ff]) Jul 2 07:55:52.112047 kernel: acpi PNP0A03:00: _OSC: OS supports [ASPM ClockPM Segments MSI HPX-Type3] Jul 2 07:55:52.112201 kernel: acpi PNP0A03:00: fail to add MMCONFIG information, can't access extended PCI configuration space under this bridge. Jul 2 07:55:52.112220 kernel: acpiphp: Slot [3] registered Jul 2 07:55:52.112235 kernel: acpiphp: Slot [4] registered Jul 2 07:55:52.112249 kernel: acpiphp: Slot [5] registered Jul 2 07:55:52.112263 kernel: acpiphp: Slot [6] registered Jul 2 07:55:52.112276 kernel: acpiphp: Slot [7] registered Jul 2 07:55:52.112289 kernel: acpiphp: Slot [8] registered Jul 2 07:55:52.112303 kernel: acpiphp: Slot [9] registered Jul 2 07:55:52.112322 kernel: acpiphp: Slot [10] registered Jul 2 07:55:52.112336 kernel: acpiphp: Slot [11] registered Jul 2 07:55:52.112350 kernel: acpiphp: Slot [12] registered Jul 2 07:55:52.112364 kernel: acpiphp: Slot [13] registered Jul 2 07:55:52.112377 kernel: acpiphp: Slot [14] registered Jul 2 07:55:52.112391 kernel: acpiphp: Slot [15] registered Jul 2 07:55:52.112405 kernel: acpiphp: Slot [16] registered Jul 2 07:55:52.112418 kernel: acpiphp: Slot [17] registered Jul 2 07:55:52.112432 kernel: acpiphp: Slot [18] registered Jul 2 07:55:52.112446 kernel: acpiphp: Slot [19] registered Jul 2 07:55:52.112464 kernel: acpiphp: Slot [20] registered Jul 2 07:55:52.112478 kernel: acpiphp: Slot [21] registered Jul 2 07:55:52.112492 kernel: acpiphp: Slot [22] registered Jul 2 07:55:52.112506 kernel: acpiphp: Slot [23] registered Jul 2 07:55:52.112519 kernel: acpiphp: Slot [24] registered Jul 2 07:55:52.112534 kernel: acpiphp: Slot [25] registered Jul 2 07:55:52.112547 kernel: acpiphp: Slot [26] registered Jul 2 07:55:52.112562 kernel: acpiphp: Slot [27] registered Jul 2 07:55:52.112575 kernel: acpiphp: Slot [28] registered Jul 2 07:55:52.112593 kernel: acpiphp: Slot [29] registered Jul 2 07:55:52.112625 kernel: acpiphp: Slot [30] registered Jul 2 07:55:52.112638 kernel: acpiphp: Slot [31] registered Jul 2 07:55:52.112665 kernel: PCI host bridge to bus 0000:00 Jul 2 07:55:52.112845 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0x0cf7 window] Jul 2 07:55:52.112972 kernel: pci_bus 0000:00: root bus resource [io 0x0d00-0xffff window] Jul 2 07:55:52.113089 kernel: pci_bus 0000:00: root bus resource [mem 0x000a0000-0x000bffff window] Jul 2 07:55:52.113210 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xfebfffff window] Jul 2 07:55:52.113344 kernel: pci_bus 0000:00: root bus resource [mem 0x100000000-0x17fffffff window] Jul 2 07:55:52.113467 kernel: pci_bus 0000:00: root bus resource [bus 00-ff] Jul 2 07:55:52.115832 kernel: pci 0000:00:00.0: [8086:1237] type 00 class 0x060000 Jul 2 07:55:52.116054 kernel: pci 0000:00:01.0: [8086:7000] type 00 class 0x060100 Jul 2 07:55:52.116219 kernel: pci 0000:00:01.1: [8086:7010] type 00 class 0x010180 Jul 2 07:55:52.116375 kernel: pci 0000:00:01.1: reg 0x20: [io 0xc1e0-0xc1ef] Jul 2 07:55:52.116573 kernel: pci 0000:00:01.1: legacy IDE quirk: reg 0x10: [io 0x01f0-0x01f7] Jul 2 07:55:52.117848 kernel: pci 0000:00:01.1: legacy IDE quirk: reg 0x14: [io 0x03f6] Jul 2 07:55:52.118016 kernel: pci 0000:00:01.1: legacy IDE quirk: reg 0x18: [io 0x0170-0x0177] Jul 2 07:55:52.118175 kernel: pci 0000:00:01.1: legacy IDE quirk: reg 0x1c: [io 0x0376] Jul 2 07:55:52.118328 kernel: pci 0000:00:01.2: [8086:7020] type 00 class 0x0c0300 Jul 2 07:55:52.118482 kernel: pci 0000:00:01.2: reg 0x20: [io 0xc180-0xc19f] Jul 2 07:55:52.118653 kernel: pci 0000:00:01.3: [8086:7113] type 00 class 0x068000 Jul 2 07:55:52.118806 kernel: pci 0000:00:01.3: quirk: [io 0x0600-0x063f] claimed by PIIX4 ACPI Jul 2 07:55:52.118973 kernel: pci 0000:00:01.3: quirk: [io 0x0700-0x070f] claimed by PIIX4 SMB Jul 2 07:55:52.119178 kernel: pci 0000:00:02.0: [1af4:1050] type 00 class 0x030000 Jul 2 07:55:52.119362 kernel: pci 0000:00:02.0: reg 0x10: [mem 0xfe000000-0xfe7fffff pref] Jul 2 07:55:52.121759 kernel: pci 0000:00:02.0: reg 0x18: [mem 0xfe800000-0xfe803fff 64bit pref] Jul 2 07:55:52.121985 kernel: pci 0000:00:02.0: reg 0x20: [mem 0xfebf0000-0xfebf0fff] Jul 2 07:55:52.122141 kernel: pci 0000:00:02.0: reg 0x30: [mem 0xfebe0000-0xfebeffff pref] Jul 2 07:55:52.122318 kernel: pci 0000:00:02.0: Video device with shadowed ROM at [mem 0x000c0000-0x000dffff] Jul 2 07:55:52.122503 kernel: pci 0000:00:03.0: [1af4:1000] type 00 class 0x020000 Jul 2 07:55:52.125864 kernel: pci 0000:00:03.0: reg 0x10: [io 0xc1a0-0xc1bf] Jul 2 07:55:52.126076 kernel: pci 0000:00:03.0: reg 0x14: [mem 0xfebf1000-0xfebf1fff] Jul 2 07:55:52.126224 kernel: pci 0000:00:03.0: reg 0x20: [mem 0xfe804000-0xfe807fff 64bit pref] Jul 2 07:55:52.126378 kernel: pci 0000:00:04.0: [1af4:1000] type 00 class 0x020000 Jul 2 07:55:52.126530 kernel: pci 0000:00:04.0: reg 0x10: [io 0xc1c0-0xc1df] Jul 2 07:55:52.126703 kernel: pci 0000:00:04.0: reg 0x14: [mem 0xfebf2000-0xfebf2fff] Jul 2 07:55:52.126838 kernel: pci 0000:00:04.0: reg 0x20: [mem 0xfe808000-0xfe80bfff 64bit pref] Jul 2 07:55:52.126993 kernel: pci 0000:00:05.0: [1af4:1004] type 00 class 0x010000 Jul 2 07:55:52.127141 kernel: pci 0000:00:05.0: reg 0x10: [io 0xc100-0xc13f] Jul 2 07:55:52.127282 kernel: pci 0000:00:05.0: reg 0x14: [mem 0xfebf3000-0xfebf3fff] Jul 2 07:55:52.127448 kernel: pci 0000:00:05.0: reg 0x20: [mem 0xfe80c000-0xfe80ffff 64bit pref] Jul 2 07:55:52.127675 kernel: pci 0000:00:06.0: [1af4:1001] type 00 class 0x010000 Jul 2 07:55:52.127820 kernel: pci 0000:00:06.0: reg 0x10: [io 0xc000-0xc07f] Jul 2 07:55:52.127975 kernel: pci 0000:00:06.0: reg 0x14: [mem 0xfebf4000-0xfebf4fff] Jul 2 07:55:52.128114 kernel: pci 0000:00:06.0: reg 0x20: [mem 0xfe810000-0xfe813fff 64bit pref] Jul 2 07:55:52.128264 kernel: pci 0000:00:07.0: [1af4:1001] type 00 class 0x010000 Jul 2 07:55:52.128405 kernel: pci 0000:00:07.0: reg 0x10: [io 0xc080-0xc0ff] Jul 2 07:55:52.128546 kernel: pci 0000:00:07.0: reg 0x14: [mem 0xfebf5000-0xfebf5fff] Jul 2 07:55:52.128745 kernel: pci 0000:00:07.0: reg 0x20: [mem 0xfe814000-0xfe817fff 64bit pref] Jul 2 07:55:52.128901 kernel: pci 0000:00:08.0: [1af4:1002] type 00 class 0x00ff00 Jul 2 07:55:52.129071 kernel: pci 0000:00:08.0: reg 0x10: [io 0xc140-0xc17f] Jul 2 07:55:52.129212 kernel: pci 0000:00:08.0: reg 0x20: [mem 0xfe818000-0xfe81bfff 64bit pref] Jul 2 07:55:52.129230 kernel: ACPI: PCI: Interrupt link LNKA configured for IRQ 10 Jul 2 07:55:52.129246 kernel: ACPI: PCI: Interrupt link LNKB configured for IRQ 10 Jul 2 07:55:52.129261 kernel: ACPI: PCI: Interrupt link LNKC configured for IRQ 11 Jul 2 07:55:52.129280 kernel: ACPI: PCI: Interrupt link LNKD configured for IRQ 11 Jul 2 07:55:52.129294 kernel: ACPI: PCI: Interrupt link LNKS configured for IRQ 9 Jul 2 07:55:52.129308 kernel: iommu: Default domain type: Translated Jul 2 07:55:52.129322 kernel: iommu: DMA domain TLB invalidation policy: lazy mode Jul 2 07:55:52.129467 kernel: pci 0000:00:02.0: vgaarb: setting as boot VGA device Jul 2 07:55:52.131711 kernel: pci 0000:00:02.0: vgaarb: VGA device added: decodes=io+mem,owns=io+mem,locks=none Jul 2 07:55:52.131935 kernel: pci 0000:00:02.0: vgaarb: bridge control possible Jul 2 07:55:52.131956 kernel: vgaarb: loaded Jul 2 07:55:52.131978 kernel: pps_core: LinuxPPS API ver. 1 registered Jul 2 07:55:52.131992 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Jul 2 07:55:52.132006 kernel: PTP clock support registered Jul 2 07:55:52.132020 kernel: PCI: Using ACPI for IRQ routing Jul 2 07:55:52.132035 kernel: PCI: pci_cache_line_size set to 64 bytes Jul 2 07:55:52.132049 kernel: e820: reserve RAM buffer [mem 0x0009fc00-0x0009ffff] Jul 2 07:55:52.132063 kernel: e820: reserve RAM buffer [mem 0x7ffd8000-0x7fffffff] Jul 2 07:55:52.132076 kernel: hpet0: at MMIO 0xfed00000, IRQs 2, 8, 0 Jul 2 07:55:52.132091 kernel: hpet0: 3 comparators, 64-bit 100.000000 MHz counter Jul 2 07:55:52.132108 kernel: clocksource: Switched to clocksource kvm-clock Jul 2 07:55:52.132122 kernel: VFS: Disk quotas dquot_6.6.0 Jul 2 07:55:52.132137 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Jul 2 07:55:52.132151 kernel: pnp: PnP ACPI init Jul 2 07:55:52.132165 kernel: pnp: PnP ACPI: found 4 devices Jul 2 07:55:52.132179 kernel: clocksource: acpi_pm: mask: 0xffffff max_cycles: 0xffffff, max_idle_ns: 2085701024 ns Jul 2 07:55:52.132193 kernel: NET: Registered PF_INET protocol family Jul 2 07:55:52.132207 kernel: IP idents hash table entries: 32768 (order: 6, 262144 bytes, linear) Jul 2 07:55:52.132221 kernel: tcp_listen_portaddr_hash hash table entries: 1024 (order: 2, 16384 bytes, linear) Jul 2 07:55:52.132238 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Jul 2 07:55:52.132252 kernel: TCP established hash table entries: 16384 (order: 5, 131072 bytes, linear) Jul 2 07:55:52.132266 kernel: TCP bind hash table entries: 16384 (order: 6, 262144 bytes, linear) Jul 2 07:55:52.132281 kernel: TCP: Hash tables configured (established 16384 bind 16384) Jul 2 07:55:52.132295 kernel: UDP hash table entries: 1024 (order: 3, 32768 bytes, linear) Jul 2 07:55:52.132309 kernel: UDP-Lite hash table entries: 1024 (order: 3, 32768 bytes, linear) Jul 2 07:55:52.132323 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Jul 2 07:55:52.132337 kernel: NET: Registered PF_XDP protocol family Jul 2 07:55:52.132482 kernel: pci_bus 0000:00: resource 4 [io 0x0000-0x0cf7 window] Jul 2 07:55:52.137779 kernel: pci_bus 0000:00: resource 5 [io 0x0d00-0xffff window] Jul 2 07:55:52.137989 kernel: pci_bus 0000:00: resource 6 [mem 0x000a0000-0x000bffff window] Jul 2 07:55:52.138129 kernel: pci_bus 0000:00: resource 7 [mem 0x80000000-0xfebfffff window] Jul 2 07:55:52.138259 kernel: pci_bus 0000:00: resource 8 [mem 0x100000000-0x17fffffff window] Jul 2 07:55:52.138416 kernel: pci 0000:00:01.0: PIIX3: Enabling Passive Release Jul 2 07:55:52.138561 kernel: pci 0000:00:00.0: Limiting direct PCI/PCI transfers Jul 2 07:55:52.138725 kernel: pci 0000:00:01.0: Activating ISA DMA hang workarounds Jul 2 07:55:52.138758 kernel: ACPI: \_SB_.LNKD: Enabled at IRQ 11 Jul 2 07:55:52.138904 kernel: pci 0000:00:01.2: quirk_usb_early_handoff+0x0/0x730 took 51302 usecs Jul 2 07:55:52.138923 kernel: PCI: CLS 0 bytes, default 64 Jul 2 07:55:52.138937 kernel: RAPL PMU: API unit is 2^-32 Joules, 0 fixed counters, 10737418240 ms ovfl timer Jul 2 07:55:52.138951 kernel: clocksource: tsc: mask: 0xffffffffffffffff max_cycles: 0x3985c314e25, max_idle_ns: 881590612270 ns Jul 2 07:55:52.138980 kernel: Initialise system trusted keyrings Jul 2 07:55:52.138993 kernel: workingset: timestamp_bits=39 max_order=19 bucket_order=0 Jul 2 07:55:52.139005 kernel: Key type asymmetric registered Jul 2 07:55:52.139017 kernel: Asymmetric key parser 'x509' registered Jul 2 07:55:52.139036 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Jul 2 07:55:52.139048 kernel: io scheduler mq-deadline registered Jul 2 07:55:52.139061 kernel: io scheduler kyber registered Jul 2 07:55:52.139073 kernel: io scheduler bfq registered Jul 2 07:55:52.139088 kernel: ioatdma: Intel(R) QuickData Technology Driver 5.00 Jul 2 07:55:52.139103 kernel: ACPI: \_SB_.LNKB: Enabled at IRQ 10 Jul 2 07:55:52.139117 kernel: ACPI: \_SB_.LNKC: Enabled at IRQ 11 Jul 2 07:55:52.139131 kernel: ACPI: \_SB_.LNKA: Enabled at IRQ 10 Jul 2 07:55:52.139147 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Jul 2 07:55:52.139160 kernel: 00:00: ttyS0 at I/O 0x3f8 (irq = 4, base_baud = 115200) is a 16550A Jul 2 07:55:52.139179 kernel: i8042: PNP: PS/2 Controller [PNP0303:KBD,PNP0f13:MOU] at 0x60,0x64 irq 1,12 Jul 2 07:55:52.139194 kernel: serio: i8042 KBD port at 0x60,0x64 irq 1 Jul 2 07:55:52.139209 kernel: serio: i8042 AUX port at 0x60,0x64 irq 12 Jul 2 07:55:52.139409 kernel: rtc_cmos 00:03: RTC can wake from S4 Jul 2 07:55:52.139432 kernel: input: AT Translated Set 2 keyboard as /devices/platform/i8042/serio0/input/input0 Jul 2 07:55:52.139582 kernel: rtc_cmos 00:03: registered as rtc0 Jul 2 07:55:52.139737 kernel: rtc_cmos 00:03: setting system clock to 2024-07-02T07:55:51 UTC (1719906951) Jul 2 07:55:52.139885 kernel: rtc_cmos 00:03: alarms up to one day, y3k, 242 bytes nvram Jul 2 07:55:52.139903 kernel: intel_pstate: CPU model not supported Jul 2 07:55:52.139917 kernel: NET: Registered PF_INET6 protocol family Jul 2 07:55:52.139932 kernel: Segment Routing with IPv6 Jul 2 07:55:52.139946 kernel: In-situ OAM (IOAM) with IPv6 Jul 2 07:55:52.139961 kernel: NET: Registered PF_PACKET protocol family Jul 2 07:55:52.139975 kernel: Key type dns_resolver registered Jul 2 07:55:52.139988 kernel: IPI shorthand broadcast: enabled Jul 2 07:55:52.140002 kernel: sched_clock: Marking stable (949869044, 158198251)->(1274717715, -166650420) Jul 2 07:55:52.140020 kernel: registered taskstats version 1 Jul 2 07:55:52.140055 kernel: Loading compiled-in X.509 certificates Jul 2 07:55:52.140068 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.161-flatcar: a1ce693884775675566f1ed116e36d15950b9a42' Jul 2 07:55:52.140081 kernel: Key type .fscrypt registered Jul 2 07:55:52.140094 kernel: Key type fscrypt-provisioning registered Jul 2 07:55:52.140108 kernel: ima: No TPM chip found, activating TPM-bypass! Jul 2 07:55:52.140123 kernel: ima: Allocated hash algorithm: sha1 Jul 2 07:55:52.140145 kernel: ima: No architecture policies found Jul 2 07:55:52.140158 kernel: clk: Disabling unused clocks Jul 2 07:55:52.140174 kernel: Freeing unused kernel image (initmem) memory: 47444K Jul 2 07:55:52.140188 kernel: Write protecting the kernel read-only data: 28672k Jul 2 07:55:52.140201 kernel: Freeing unused kernel image (text/rodata gap) memory: 2040K Jul 2 07:55:52.140216 kernel: Freeing unused kernel image (rodata/data gap) memory: 624K Jul 2 07:55:52.140229 kernel: Run /init as init process Jul 2 07:55:52.140244 kernel: with arguments: Jul 2 07:55:52.140280 kernel: /init Jul 2 07:55:52.140297 kernel: with environment: Jul 2 07:55:52.140309 kernel: HOME=/ Jul 2 07:55:52.140336 kernel: TERM=linux Jul 2 07:55:52.140349 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Jul 2 07:55:52.140368 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Jul 2 07:55:52.140386 systemd[1]: Detected virtualization kvm. Jul 2 07:55:52.140402 systemd[1]: Detected architecture x86-64. Jul 2 07:55:52.140417 systemd[1]: Running in initrd. Jul 2 07:55:52.140433 systemd[1]: No hostname configured, using default hostname. Jul 2 07:55:52.140447 systemd[1]: Hostname set to . Jul 2 07:55:52.140468 systemd[1]: Initializing machine ID from VM UUID. Jul 2 07:55:52.140482 systemd[1]: Queued start job for default target initrd.target. Jul 2 07:55:52.140498 systemd[1]: Started systemd-ask-password-console.path. Jul 2 07:55:52.140512 systemd[1]: Reached target cryptsetup.target. Jul 2 07:55:52.140526 systemd[1]: Reached target paths.target. Jul 2 07:55:52.140539 systemd[1]: Reached target slices.target. Jul 2 07:55:52.140552 systemd[1]: Reached target swap.target. Jul 2 07:55:52.140568 systemd[1]: Reached target timers.target. Jul 2 07:55:52.140588 systemd[1]: Listening on iscsid.socket. Jul 2 07:55:52.140646 systemd[1]: Listening on iscsiuio.socket. Jul 2 07:55:52.140664 systemd[1]: Listening on systemd-journald-audit.socket. Jul 2 07:55:52.140679 systemd[1]: Listening on systemd-journald-dev-log.socket. Jul 2 07:55:52.140694 systemd[1]: Listening on systemd-journald.socket. Jul 2 07:55:52.140708 systemd[1]: Listening on systemd-networkd.socket. Jul 2 07:55:52.140722 systemd[1]: Listening on systemd-udevd-control.socket. Jul 2 07:55:52.140742 systemd[1]: Listening on systemd-udevd-kernel.socket. Jul 2 07:55:52.140757 systemd[1]: Reached target sockets.target. Jul 2 07:55:52.140772 systemd[1]: Starting kmod-static-nodes.service... Jul 2 07:55:52.140792 systemd[1]: Finished network-cleanup.service. Jul 2 07:55:52.140807 systemd[1]: Starting systemd-fsck-usr.service... Jul 2 07:55:52.140823 systemd[1]: Starting systemd-journald.service... Jul 2 07:55:52.140842 systemd[1]: Starting systemd-modules-load.service... Jul 2 07:55:52.140858 systemd[1]: Starting systemd-resolved.service... Jul 2 07:55:52.140874 systemd[1]: Starting systemd-vconsole-setup.service... Jul 2 07:55:52.140889 systemd[1]: Finished kmod-static-nodes.service. Jul 2 07:55:52.140905 systemd[1]: Finished systemd-fsck-usr.service. Jul 2 07:55:52.140932 systemd-journald[184]: Journal started Jul 2 07:55:52.141038 systemd-journald[184]: Runtime Journal (/run/log/journal/7f2b79954c954470af76777a2f183657) is 4.9M, max 39.5M, 34.5M free. Jul 2 07:55:52.110691 systemd-modules-load[185]: Inserted module 'overlay' Jul 2 07:55:52.180471 systemd[1]: Started systemd-journald.service. Jul 2 07:55:52.180522 kernel: audit: type=1130 audit(1719906952.173:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.173000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.150623 systemd-resolved[186]: Positive Trust Anchors: Jul 2 07:55:52.150643 systemd-resolved[186]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Jul 2 07:55:52.150690 systemd-resolved[186]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Jul 2 07:55:52.206785 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Jul 2 07:55:52.206839 kernel: audit: type=1130 audit(1719906952.191:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.206860 kernel: Bridge firewalling registered Jul 2 07:55:52.206877 kernel: audit: type=1130 audit(1719906952.197:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.206893 kernel: audit: type=1130 audit(1719906952.198:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.191000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.197000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.198000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.155030 systemd-resolved[186]: Defaulting to hostname 'linux'. Jul 2 07:55:52.192134 systemd[1]: Started systemd-resolved.service. Jul 2 07:55:52.197355 systemd-modules-load[185]: Inserted module 'br_netfilter' Jul 2 07:55:52.198506 systemd[1]: Finished systemd-vconsole-setup.service. Jul 2 07:55:52.199220 systemd[1]: Reached target nss-lookup.target. Jul 2 07:55:52.205121 systemd[1]: Starting dracut-cmdline-ask.service... Jul 2 07:55:52.211118 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Jul 2 07:55:52.228317 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Jul 2 07:55:52.234554 kernel: audit: type=1130 audit(1719906952.229:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.229000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.243708 kernel: SCSI subsystem initialized Jul 2 07:55:52.241229 systemd[1]: Finished dracut-cmdline-ask.service. Jul 2 07:55:52.248890 kernel: audit: type=1130 audit(1719906952.241:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.241000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.243086 systemd[1]: Starting dracut-cmdline.service... Jul 2 07:55:52.257798 dracut-cmdline[203]: dracut-dracut-053 Jul 2 07:55:52.261844 dracut-cmdline[203]: Using kernel command line parameters: rd.driver.pre=btrfs rootflags=rw mount.usrflags=ro BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=ttyS0,115200n8 console=tty0 flatcar.first_boot=detected flatcar.oem.id=digitalocean verity.usrhash=d29251fe942de56b08103b03939b6e5af4108e76dc6080fe2498c5db43f16e82 Jul 2 07:55:52.280667 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Jul 2 07:55:52.280708 kernel: device-mapper: uevent: version 1.0.3 Jul 2 07:55:52.280726 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Jul 2 07:55:52.276073 systemd-modules-load[185]: Inserted module 'dm_multipath' Jul 2 07:55:52.277031 systemd[1]: Finished systemd-modules-load.service. Jul 2 07:55:52.288872 kernel: audit: type=1130 audit(1719906952.281:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.281000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.283030 systemd[1]: Starting systemd-sysctl.service... Jul 2 07:55:52.302457 systemd[1]: Finished systemd-sysctl.service. Jul 2 07:55:52.309560 kernel: audit: type=1130 audit(1719906952.302:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.302000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.402700 kernel: Loading iSCSI transport class v2.0-870. Jul 2 07:55:52.432649 kernel: iscsi: registered transport (tcp) Jul 2 07:55:52.473950 kernel: iscsi: registered transport (qla4xxx) Jul 2 07:55:52.474049 kernel: QLogic iSCSI HBA Driver Jul 2 07:55:52.530242 systemd[1]: Finished dracut-cmdline.service. Jul 2 07:55:52.530000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.532856 systemd[1]: Starting dracut-pre-udev.service... Jul 2 07:55:52.537298 kernel: audit: type=1130 audit(1719906952.530:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:52.605718 kernel: raid6: avx2x4 gen() 17572 MB/s Jul 2 07:55:52.623707 kernel: raid6: avx2x4 xor() 7107 MB/s Jul 2 07:55:52.641697 kernel: raid6: avx2x2 gen() 16417 MB/s Jul 2 07:55:52.659712 kernel: raid6: avx2x2 xor() 10248 MB/s Jul 2 07:55:52.677697 kernel: raid6: avx2x1 gen() 12210 MB/s Jul 2 07:55:52.695887 kernel: raid6: avx2x1 xor() 8436 MB/s Jul 2 07:55:52.713703 kernel: raid6: sse2x4 gen() 7990 MB/s Jul 2 07:55:52.731724 kernel: raid6: sse2x4 xor() 4327 MB/s Jul 2 07:55:52.749698 kernel: raid6: sse2x2 gen() 9465 MB/s Jul 2 07:55:52.767710 kernel: raid6: sse2x2 xor() 6184 MB/s Jul 2 07:55:52.785696 kernel: raid6: sse2x1 gen() 7083 MB/s Jul 2 07:55:52.804490 kernel: raid6: sse2x1 xor() 4044 MB/s Jul 2 07:55:52.804595 kernel: raid6: using algorithm avx2x4 gen() 17572 MB/s Jul 2 07:55:52.804637 kernel: raid6: .... xor() 7107 MB/s, rmw enabled Jul 2 07:55:52.805846 kernel: raid6: using avx2x2 recovery algorithm Jul 2 07:55:52.828689 kernel: xor: automatically using best checksumming function avx Jul 2 07:55:52.983720 kernel: Btrfs loaded, crc32c=crc32c-intel, zoned=no, fsverity=no Jul 2 07:55:53.013000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:53.014145 systemd[1]: Finished dracut-pre-udev.service. Jul 2 07:55:53.016000 audit: BPF prog-id=7 op=LOAD Jul 2 07:55:53.016000 audit: BPF prog-id=8 op=LOAD Jul 2 07:55:53.023324 systemd[1]: Starting systemd-udevd.service... Jul 2 07:55:53.044420 systemd-udevd[385]: Using default interface naming scheme 'v252'. Jul 2 07:55:53.051841 systemd[1]: Started systemd-udevd.service. Jul 2 07:55:53.057000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:53.059440 systemd[1]: Starting dracut-pre-trigger.service... Jul 2 07:55:53.084964 dracut-pre-trigger[400]: rd.md=0: removing MD RAID activation Jul 2 07:55:53.136828 systemd[1]: Finished dracut-pre-trigger.service. Jul 2 07:55:53.136000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:53.138859 systemd[1]: Starting systemd-udev-trigger.service... Jul 2 07:55:53.197229 systemd[1]: Finished systemd-udev-trigger.service. Jul 2 07:55:53.197000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:53.279189 kernel: virtio_blk virtio4: [vda] 125829120 512-byte logical blocks (64.4 GB/60.0 GiB) Jul 2 07:55:53.288380 kernel: scsi host0: Virtio SCSI HBA Jul 2 07:55:53.288795 kernel: cryptd: max_cpu_qlen set to 1000 Jul 2 07:55:53.300994 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Jul 2 07:55:53.301075 kernel: GPT:9289727 != 125829119 Jul 2 07:55:53.301092 kernel: GPT:Alternate GPT header not at the end of the disk. Jul 2 07:55:53.303877 kernel: GPT:9289727 != 125829119 Jul 2 07:55:53.303967 kernel: GPT: Use GNU Parted to correct GPT errors. Jul 2 07:55:53.306969 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Jul 2 07:55:53.329647 kernel: virtio_blk virtio5: [vdb] 920 512-byte logical blocks (471 kB/460 KiB) Jul 2 07:55:53.373647 kernel: AVX2 version of gcm_enc/dec engaged. Jul 2 07:55:53.392629 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Jul 2 07:55:53.395864 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Jul 2 07:55:53.397698 kernel: AES CTR mode by8 optimization enabled Jul 2 07:55:53.402311 systemd[1]: Starting disk-uuid.service... Jul 2 07:55:53.407833 kernel: ACPI: bus type USB registered Jul 2 07:55:53.407928 kernel: usbcore: registered new interface driver usbfs Jul 2 07:55:53.409417 kernel: usbcore: registered new interface driver hub Jul 2 07:55:53.410651 kernel: usbcore: registered new device driver usb Jul 2 07:55:53.418234 disk-uuid[458]: Primary Header is updated. Jul 2 07:55:53.418234 disk-uuid[458]: Secondary Entries is updated. Jul 2 07:55:53.418234 disk-uuid[458]: Secondary Header is updated. Jul 2 07:55:53.427714 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/vda6 scanned by (udev-worker) (432) Jul 2 07:55:53.437641 kernel: ehci_hcd: USB 2.0 'Enhanced' Host Controller (EHCI) Driver Jul 2 07:55:53.441739 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Jul 2 07:55:53.447967 kernel: ehci-pci: EHCI PCI platform driver Jul 2 07:55:53.459643 kernel: uhci_hcd: USB Universal Host Controller Interface driver Jul 2 07:55:53.462628 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Jul 2 07:55:53.586241 kernel: libata version 3.00 loaded. Jul 2 07:55:53.586281 kernel: ata_piix 0000:00:01.1: version 2.13 Jul 2 07:55:53.586516 kernel: scsi host1: ata_piix Jul 2 07:55:53.586692 kernel: scsi host2: ata_piix Jul 2 07:55:53.586832 kernel: ata1: PATA max MWDMA2 cmd 0x1f0 ctl 0x3f6 bmdma 0xc1e0 irq 14 Jul 2 07:55:53.586847 kernel: ata2: PATA max MWDMA2 cmd 0x170 ctl 0x376 bmdma 0xc1e8 irq 15 Jul 2 07:55:53.586859 kernel: uhci_hcd 0000:00:01.2: UHCI Host Controller Jul 2 07:55:53.586976 kernel: uhci_hcd 0000:00:01.2: new USB bus registered, assigned bus number 1 Jul 2 07:55:53.587129 kernel: uhci_hcd 0000:00:01.2: detected 2 ports Jul 2 07:55:53.587242 kernel: uhci_hcd 0000:00:01.2: irq 11, io base 0x0000c180 Jul 2 07:55:53.587361 kernel: hub 1-0:1.0: USB hub found Jul 2 07:55:53.588273 kernel: hub 1-0:1.0: 2 ports detected Jul 2 07:55:53.590032 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Jul 2 07:55:54.435665 kernel: vda: vda1 vda2 vda3 vda4 vda6 vda7 vda9 Jul 2 07:55:54.436509 disk-uuid[459]: The operation has completed successfully. Jul 2 07:55:54.490445 systemd[1]: disk-uuid.service: Deactivated successfully. Jul 2 07:55:54.490644 systemd[1]: Finished disk-uuid.service. Jul 2 07:55:54.490000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:54.490000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:54.493051 systemd[1]: Starting verity-setup.service... Jul 2 07:55:54.520641 kernel: device-mapper: verity: sha256 using implementation "sha256-avx2" Jul 2 07:55:54.578466 systemd[1]: Found device dev-mapper-usr.device. Jul 2 07:55:54.581352 systemd[1]: Mounting sysusr-usr.mount... Jul 2 07:55:54.584000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:54.584844 systemd[1]: Finished verity-setup.service. Jul 2 07:55:54.698648 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Jul 2 07:55:54.699477 systemd[1]: Mounted sysusr-usr.mount. Jul 2 07:55:54.701146 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Jul 2 07:55:54.703046 systemd[1]: Starting ignition-setup.service... Jul 2 07:55:54.705721 systemd[1]: Starting parse-ip-for-networkd.service... Jul 2 07:55:54.717398 kernel: BTRFS info (device vda6): using crc32c (crc32c-intel) checksum algorithm Jul 2 07:55:54.717481 kernel: BTRFS info (device vda6): using free space tree Jul 2 07:55:54.717495 kernel: BTRFS info (device vda6): has skinny extents Jul 2 07:55:54.733425 systemd[1]: mnt-oem.mount: Deactivated successfully. Jul 2 07:55:54.743948 systemd[1]: Finished ignition-setup.service. Jul 2 07:55:54.744000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:54.746091 systemd[1]: Starting ignition-fetch-offline.service... Jul 2 07:55:54.879000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:54.880000 audit: BPF prog-id=9 op=LOAD Jul 2 07:55:54.878866 systemd[1]: Finished parse-ip-for-networkd.service. Jul 2 07:55:54.883721 systemd[1]: Starting systemd-networkd.service... Jul 2 07:55:54.924468 ignition[605]: Ignition 2.14.0 Jul 2 07:55:54.924489 ignition[605]: Stage: fetch-offline Jul 2 07:55:54.924654 ignition[605]: reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 07:55:54.924696 ignition[605]: parsing config with SHA512: 865c03baa79b8c74023d13a0b3666474fa06a165421a1e05731b76e0f557d42c5c89d4870a0b9c4182ad7d4d8209de20dca9c9da63d637e0410fbd60314cac6c Jul 2 07:55:54.929884 ignition[605]: no config dir at "/usr/lib/ignition/base.platform.d/digitalocean" Jul 2 07:55:54.930059 ignition[605]: parsed url from cmdline: "" Jul 2 07:55:54.930066 ignition[605]: no config URL provided Jul 2 07:55:54.930073 ignition[605]: reading system config file "/usr/lib/ignition/user.ign" Jul 2 07:55:54.932000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:54.932045 systemd[1]: Finished ignition-fetch-offline.service. Jul 2 07:55:54.930086 ignition[605]: no config at "/usr/lib/ignition/user.ign" Jul 2 07:55:54.935000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:54.933919 systemd-networkd[690]: lo: Link UP Jul 2 07:55:54.930095 ignition[605]: failed to fetch config: resource requires networking Jul 2 07:55:54.933926 systemd-networkd[690]: lo: Gained carrier Jul 2 07:55:54.930464 ignition[605]: Ignition finished successfully Jul 2 07:55:54.934884 systemd-networkd[690]: Enumeration completed Jul 2 07:55:54.935025 systemd[1]: Started systemd-networkd.service. Jul 2 07:55:54.936522 systemd[1]: Reached target network.target. Jul 2 07:55:54.938860 systemd[1]: Starting ignition-fetch.service... Jul 2 07:55:54.940656 systemd[1]: Starting iscsiuio.service... Jul 2 07:55:54.957559 ignition[692]: Ignition 2.14.0 Jul 2 07:55:54.945068 systemd-networkd[690]: eth1: Configuring with /usr/lib/systemd/network/zz-default.network. Jul 2 07:55:54.957567 ignition[692]: Stage: fetch Jul 2 07:55:54.946582 systemd-networkd[690]: eth0: Configuring with /usr/lib/systemd/network/yy-digitalocean.network. Jul 2 07:55:54.958904 ignition[692]: reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 07:55:54.949801 systemd-networkd[690]: eth1: Link UP Jul 2 07:55:54.958927 ignition[692]: parsing config with SHA512: 865c03baa79b8c74023d13a0b3666474fa06a165421a1e05731b76e0f557d42c5c89d4870a0b9c4182ad7d4d8209de20dca9c9da63d637e0410fbd60314cac6c Jul 2 07:55:54.949808 systemd-networkd[690]: eth1: Gained carrier Jul 2 07:55:54.961557 ignition[692]: no config dir at "/usr/lib/ignition/base.platform.d/digitalocean" Jul 2 07:55:54.954093 systemd-networkd[690]: eth0: Link UP Jul 2 07:55:54.961697 ignition[692]: parsed url from cmdline: "" Jul 2 07:55:54.954101 systemd-networkd[690]: eth0: Gained carrier Jul 2 07:55:54.961701 ignition[692]: no config URL provided Jul 2 07:55:54.973013 systemd-networkd[690]: eth1: DHCPv4 address 10.124.0.18/20 acquired from 169.254.169.253 Jul 2 07:55:54.961707 ignition[692]: reading system config file "/usr/lib/ignition/user.ign" Jul 2 07:55:54.961716 ignition[692]: no config at "/usr/lib/ignition/user.ign" Jul 2 07:55:54.961752 ignition[692]: GET http://169.254.169.254/metadata/v1/user-data: attempt #1 Jul 2 07:55:54.984903 systemd-networkd[690]: eth0: DHCPv4 address 143.198.128.94/20, gateway 143.198.128.1 acquired from 169.254.169.253 Jul 2 07:55:54.986439 systemd[1]: Started iscsiuio.service. Jul 2 07:55:54.989000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:54.992184 systemd[1]: Starting iscsid.service... Jul 2 07:55:54.998916 iscsid[700]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Jul 2 07:55:54.998916 iscsid[700]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Jul 2 07:55:54.998916 iscsid[700]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Jul 2 07:55:54.998916 iscsid[700]: If using hardware iscsi like qla4xxx this message can be ignored. Jul 2 07:55:54.998916 iscsid[700]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Jul 2 07:55:54.998916 iscsid[700]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Jul 2 07:55:55.004000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.003472 systemd[1]: Started iscsid.service. Jul 2 07:55:55.006877 systemd[1]: Starting dracut-initqueue.service... Jul 2 07:55:55.018488 ignition[692]: GET result: OK Jul 2 07:55:55.018627 ignition[692]: parsing config with SHA512: c4af736c86457515c887bba9bdc04e9f6930db864fca623f27d7d1addde80c4e2dd08b0391059906f99374b12b7b2e1faf1e387e68d46d33844ec960bf02acd4 Jul 2 07:55:55.029000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.029814 systemd[1]: Finished dracut-initqueue.service. Jul 2 07:55:55.030494 systemd[1]: Reached target remote-fs-pre.target. Jul 2 07:55:55.030951 systemd[1]: Reached target remote-cryptsetup.target. Jul 2 07:55:55.031385 systemd[1]: Reached target remote-fs.target. Jul 2 07:55:55.033297 systemd[1]: Starting dracut-pre-mount.service... Jul 2 07:55:55.040471 unknown[692]: fetched base config from "system" Jul 2 07:55:55.041689 unknown[692]: fetched base config from "system" Jul 2 07:55:55.042094 ignition[692]: fetch: fetch complete Jul 2 07:55:55.041705 unknown[692]: fetched user config from "digitalocean" Jul 2 07:55:55.042100 ignition[692]: fetch: fetch passed Jul 2 07:55:55.042190 ignition[692]: Ignition finished successfully Jul 2 07:55:55.046000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.046641 systemd[1]: Finished ignition-fetch.service. Jul 2 07:55:55.047681 systemd[1]: Finished dracut-pre-mount.service. Jul 2 07:55:55.049574 systemd[1]: Starting ignition-kargs.service... Jul 2 07:55:55.047000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.069464 ignition[715]: Ignition 2.14.0 Jul 2 07:55:55.069484 ignition[715]: Stage: kargs Jul 2 07:55:55.069749 ignition[715]: reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 07:55:55.069782 ignition[715]: parsing config with SHA512: 865c03baa79b8c74023d13a0b3666474fa06a165421a1e05731b76e0f557d42c5c89d4870a0b9c4182ad7d4d8209de20dca9c9da63d637e0410fbd60314cac6c Jul 2 07:55:55.072048 ignition[715]: no config dir at "/usr/lib/ignition/base.platform.d/digitalocean" Jul 2 07:55:55.073043 ignition[715]: kargs: kargs passed Jul 2 07:55:55.073113 ignition[715]: Ignition finished successfully Jul 2 07:55:55.074336 systemd[1]: Finished ignition-kargs.service. Jul 2 07:55:55.074000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.076698 systemd[1]: Starting ignition-disks.service... Jul 2 07:55:55.098844 ignition[722]: Ignition 2.14.0 Jul 2 07:55:55.098864 ignition[722]: Stage: disks Jul 2 07:55:55.099112 ignition[722]: reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 07:55:55.099145 ignition[722]: parsing config with SHA512: 865c03baa79b8c74023d13a0b3666474fa06a165421a1e05731b76e0f557d42c5c89d4870a0b9c4182ad7d4d8209de20dca9c9da63d637e0410fbd60314cac6c Jul 2 07:55:55.102320 ignition[722]: no config dir at "/usr/lib/ignition/base.platform.d/digitalocean" Jul 2 07:55:55.103932 ignition[722]: disks: disks passed Jul 2 07:55:55.104043 ignition[722]: Ignition finished successfully Jul 2 07:55:55.105848 systemd[1]: Finished ignition-disks.service. Jul 2 07:55:55.107000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.108038 systemd[1]: Reached target initrd-root-device.target. Jul 2 07:55:55.108720 systemd[1]: Reached target local-fs-pre.target. Jul 2 07:55:55.109797 systemd[1]: Reached target local-fs.target. Jul 2 07:55:55.110321 systemd[1]: Reached target sysinit.target. Jul 2 07:55:55.111789 systemd[1]: Reached target basic.target. Jul 2 07:55:55.114481 systemd[1]: Starting systemd-fsck-root.service... Jul 2 07:55:55.133725 systemd-fsck[729]: ROOT: clean, 614/553520 files, 56020/553472 blocks Jul 2 07:55:55.138225 systemd[1]: Finished systemd-fsck-root.service. Jul 2 07:55:55.139000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.145408 systemd[1]: Mounting sysroot.mount... Jul 2 07:55:55.157649 kernel: EXT4-fs (vda9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Jul 2 07:55:55.158012 systemd[1]: Mounted sysroot.mount. Jul 2 07:55:55.158809 systemd[1]: Reached target initrd-root-fs.target. Jul 2 07:55:55.161831 systemd[1]: Mounting sysroot-usr.mount... Jul 2 07:55:55.163871 systemd[1]: Starting flatcar-digitalocean-network.service... Jul 2 07:55:55.166243 systemd[1]: Starting flatcar-metadata-hostname.service... Jul 2 07:55:55.166986 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Jul 2 07:55:55.167058 systemd[1]: Reached target ignition-diskful.target. Jul 2 07:55:55.171648 systemd[1]: Mounted sysroot-usr.mount. Jul 2 07:55:55.173919 systemd[1]: Starting initrd-setup-root.service... Jul 2 07:55:55.186588 initrd-setup-root[741]: cut: /sysroot/etc/passwd: No such file or directory Jul 2 07:55:55.208188 initrd-setup-root[749]: cut: /sysroot/etc/group: No such file or directory Jul 2 07:55:55.222490 initrd-setup-root[759]: cut: /sysroot/etc/shadow: No such file or directory Jul 2 07:55:55.233700 initrd-setup-root[769]: cut: /sysroot/etc/gshadow: No such file or directory Jul 2 07:55:55.327297 systemd[1]: Finished initrd-setup-root.service. Jul 2 07:55:55.327000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.330974 systemd[1]: Starting ignition-mount.service... Jul 2 07:55:55.336206 systemd[1]: Starting sysroot-boot.service... Jul 2 07:55:55.354748 bash[786]: umount: /sysroot/usr/share/oem: not mounted. Jul 2 07:55:55.376861 coreos-metadata[735]: Jul 02 07:55:55.376 INFO Fetching http://169.254.169.254/metadata/v1.json: Attempt #1 Jul 2 07:55:55.379443 coreos-metadata[736]: Jul 02 07:55:55.379 INFO Fetching http://169.254.169.254/metadata/v1.json: Attempt #1 Jul 2 07:55:55.389827 ignition[788]: INFO : Ignition 2.14.0 Jul 2 07:55:55.391366 ignition[788]: INFO : Stage: mount Jul 2 07:55:55.392496 ignition[788]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 07:55:55.393646 ignition[788]: DEBUG : parsing config with SHA512: 865c03baa79b8c74023d13a0b3666474fa06a165421a1e05731b76e0f557d42c5c89d4870a0b9c4182ad7d4d8209de20dca9c9da63d637e0410fbd60314cac6c Jul 2 07:55:55.397009 ignition[788]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/digitalocean" Jul 2 07:55:55.398000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.402266 coreos-metadata[735]: Jul 02 07:55:55.401 INFO Fetch successful Jul 2 07:55:55.403209 coreos-metadata[736]: Jul 02 07:55:55.398 INFO Fetch successful Jul 2 07:55:55.398533 systemd[1]: Finished sysroot-boot.service. Jul 2 07:55:55.404000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.405841 ignition[788]: INFO : mount: mount passed Jul 2 07:55:55.405841 ignition[788]: INFO : Ignition finished successfully Jul 2 07:55:55.406000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=flatcar-metadata-hostname comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.407000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=flatcar-digitalocean-network comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.407000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=flatcar-digitalocean-network comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:55.408649 coreos-metadata[736]: Jul 02 07:55:55.404 INFO wrote hostname ci-3510.3.5-4-449ad91e17 to /sysroot/etc/hostname Jul 2 07:55:55.404473 systemd[1]: Finished ignition-mount.service. Jul 2 07:55:55.405340 systemd[1]: Finished flatcar-metadata-hostname.service. Jul 2 07:55:55.407021 systemd[1]: flatcar-digitalocean-network.service: Deactivated successfully. Jul 2 07:55:55.407109 systemd[1]: Finished flatcar-digitalocean-network.service. Jul 2 07:55:55.602525 systemd[1]: Mounting sysroot-usr-share-oem.mount... Jul 2 07:55:55.611220 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/vda6 scanned by mount (795) Jul 2 07:55:55.614032 kernel: BTRFS info (device vda6): using crc32c (crc32c-intel) checksum algorithm Jul 2 07:55:55.614089 kernel: BTRFS info (device vda6): using free space tree Jul 2 07:55:55.614105 kernel: BTRFS info (device vda6): has skinny extents Jul 2 07:55:55.628150 systemd[1]: Mounted sysroot-usr-share-oem.mount. Jul 2 07:55:55.630947 systemd[1]: Starting ignition-files.service... Jul 2 07:55:55.654584 ignition[815]: INFO : Ignition 2.14.0 Jul 2 07:55:55.654584 ignition[815]: INFO : Stage: files Jul 2 07:55:55.656312 ignition[815]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 07:55:55.656312 ignition[815]: DEBUG : parsing config with SHA512: 865c03baa79b8c74023d13a0b3666474fa06a165421a1e05731b76e0f557d42c5c89d4870a0b9c4182ad7d4d8209de20dca9c9da63d637e0410fbd60314cac6c Jul 2 07:55:55.658460 ignition[815]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/digitalocean" Jul 2 07:55:55.659981 ignition[815]: DEBUG : files: compiled without relabeling support, skipping Jul 2 07:55:55.661112 ignition[815]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Jul 2 07:55:55.661112 ignition[815]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Jul 2 07:55:55.666705 ignition[815]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Jul 2 07:55:55.668700 ignition[815]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Jul 2 07:55:55.669863 unknown[815]: wrote ssh authorized keys file for user: core Jul 2 07:55:55.670783 ignition[815]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Jul 2 07:55:55.670783 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/home/core/install.sh" Jul 2 07:55:55.673253 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/home/core/install.sh" Jul 2 07:55:55.673253 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/etc/flatcar/update.conf" Jul 2 07:55:55.673253 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/etc/flatcar/update.conf" Jul 2 07:55:55.673253 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing link "/sysroot/etc/extensions/kubernetes.raw" -> "/opt/extensions/kubernetes/kubernetes-v1.28.7-x86-64.raw" Jul 2 07:55:55.673253 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing link "/sysroot/etc/extensions/kubernetes.raw" -> "/opt/extensions/kubernetes/kubernetes-v1.28.7-x86-64.raw" Jul 2 07:55:55.673253 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing file "/sysroot/opt/extensions/kubernetes/kubernetes-v1.28.7-x86-64.raw" Jul 2 07:55:55.673253 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(6): GET https://github.com/flatcar/sysext-bakery/releases/download/latest/kubernetes-v1.28.7-x86-64.raw: attempt #1 Jul 2 07:55:56.152346 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(6): GET result: OK Jul 2 07:55:56.329936 systemd-networkd[690]: eth1: Gained IPv6LL Jul 2 07:55:56.549178 ignition[815]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing file "/sysroot/opt/extensions/kubernetes/kubernetes-v1.28.7-x86-64.raw" Jul 2 07:55:56.549178 ignition[815]: INFO : files: op(7): [started] processing unit "coreos-metadata-sshkeys@.service" Jul 2 07:55:56.549178 ignition[815]: INFO : files: op(7): [finished] processing unit "coreos-metadata-sshkeys@.service" Jul 2 07:55:56.549178 ignition[815]: INFO : files: op(8): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Jul 2 07:55:56.554518 ignition[815]: INFO : files: op(8): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Jul 2 07:55:56.560007 ignition[815]: INFO : files: createResultFile: createFiles: op(9): [started] writing file "/sysroot/etc/.ignition-result.json" Jul 2 07:55:56.560007 ignition[815]: INFO : files: createResultFile: createFiles: op(9): [finished] writing file "/sysroot/etc/.ignition-result.json" Jul 2 07:55:56.560007 ignition[815]: INFO : files: files passed Jul 2 07:55:56.560007 ignition[815]: INFO : Ignition finished successfully Jul 2 07:55:56.563660 systemd[1]: Finished ignition-files.service. Jul 2 07:55:56.574448 kernel: kauditd_printk_skb: 28 callbacks suppressed Jul 2 07:55:56.574490 kernel: audit: type=1130 audit(1719906956.564:39): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.564000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.565863 systemd[1]: Starting initrd-setup-root-after-ignition.service... Jul 2 07:55:56.572040 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Jul 2 07:55:56.589521 kernel: audit: type=1130 audit(1719906956.579:40): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.589561 kernel: audit: type=1131 audit(1719906956.579:41): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.589578 kernel: audit: type=1130 audit(1719906956.588:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.579000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.579000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.588000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.589940 initrd-setup-root-after-ignition[840]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Jul 2 07:55:56.573294 systemd[1]: Starting ignition-quench.service... Jul 2 07:55:56.578248 systemd[1]: ignition-quench.service: Deactivated successfully. Jul 2 07:55:56.578401 systemd[1]: Finished ignition-quench.service. Jul 2 07:55:56.588428 systemd[1]: Finished initrd-setup-root-after-ignition.service. Jul 2 07:55:56.589375 systemd[1]: Reached target ignition-complete.target. Jul 2 07:55:56.596133 systemd[1]: Starting initrd-parse-etc.service... Jul 2 07:55:56.619706 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Jul 2 07:55:56.620925 systemd[1]: Finished initrd-parse-etc.service. Jul 2 07:55:56.629886 kernel: audit: type=1130 audit(1719906956.621:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.629933 kernel: audit: type=1131 audit(1719906956.621:44): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.621000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.621000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.621956 systemd[1]: Reached target initrd-fs.target. Jul 2 07:55:56.630336 systemd[1]: Reached target initrd.target. Jul 2 07:55:56.631836 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Jul 2 07:55:56.633422 systemd[1]: Starting dracut-pre-pivot.service... Jul 2 07:55:56.652255 systemd[1]: Finished dracut-pre-pivot.service. Jul 2 07:55:56.653000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.658655 kernel: audit: type=1130 audit(1719906956.653:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.655110 systemd[1]: Starting initrd-cleanup.service... Jul 2 07:55:56.671140 systemd[1]: Stopped target nss-lookup.target. Jul 2 07:55:56.673120 systemd[1]: Stopped target remote-cryptsetup.target. Jul 2 07:55:56.674867 systemd[1]: Stopped target timers.target. Jul 2 07:55:56.676468 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Jul 2 07:55:56.677588 systemd[1]: Stopped dracut-pre-pivot.service. Jul 2 07:55:56.678000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.680072 systemd[1]: Stopped target initrd.target. Jul 2 07:55:56.685521 kernel: audit: type=1131 audit(1719906956.678:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.685025 systemd[1]: Stopped target basic.target. Jul 2 07:55:56.686149 systemd[1]: Stopped target ignition-complete.target. Jul 2 07:55:56.687462 systemd[1]: Stopped target ignition-diskful.target. Jul 2 07:55:56.688903 systemd[1]: Stopped target initrd-root-device.target. Jul 2 07:55:56.690227 systemd[1]: Stopped target remote-fs.target. Jul 2 07:55:56.691575 systemd[1]: Stopped target remote-fs-pre.target. Jul 2 07:55:56.692831 systemd[1]: Stopped target sysinit.target. Jul 2 07:55:56.694182 systemd[1]: Stopped target local-fs.target. Jul 2 07:55:56.695416 systemd[1]: Stopped target local-fs-pre.target. Jul 2 07:55:56.696735 systemd[1]: Stopped target swap.target. Jul 2 07:55:56.697758 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Jul 2 07:55:56.703177 kernel: audit: type=1131 audit(1719906956.698:47): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.698000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.698009 systemd[1]: Stopped dracut-pre-mount.service. Jul 2 07:55:56.699054 systemd[1]: Stopped target cryptsetup.target. Jul 2 07:55:56.709711 kernel: audit: type=1131 audit(1719906956.704:48): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.704000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.703924 systemd[1]: dracut-initqueue.service: Deactivated successfully. Jul 2 07:55:56.709000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.704111 systemd[1]: Stopped dracut-initqueue.service. Jul 2 07:55:56.711000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.704959 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Jul 2 07:55:56.712000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=flatcar-metadata-hostname comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.705110 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Jul 2 07:55:56.710694 systemd[1]: ignition-files.service: Deactivated successfully. Jul 2 07:55:56.710905 systemd[1]: Stopped ignition-files.service. Jul 2 07:55:56.712087 systemd[1]: flatcar-metadata-hostname.service: Deactivated successfully. Jul 2 07:55:56.712293 systemd[1]: Stopped flatcar-metadata-hostname.service. Jul 2 07:55:56.714513 systemd[1]: Stopping ignition-mount.service... Jul 2 07:55:56.726635 systemd[1]: Stopping sysroot-boot.service... Jul 2 07:55:56.732634 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Jul 2 07:55:56.733000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.732942 systemd[1]: Stopped systemd-udev-trigger.service. Jul 2 07:55:56.736000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.741000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.741000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.749649 ignition[853]: INFO : Ignition 2.14.0 Jul 2 07:55:56.749649 ignition[853]: INFO : Stage: umount Jul 2 07:55:56.749649 ignition[853]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 07:55:56.749649 ignition[853]: DEBUG : parsing config with SHA512: 865c03baa79b8c74023d13a0b3666474fa06a165421a1e05731b76e0f557d42c5c89d4870a0b9c4182ad7d4d8209de20dca9c9da63d637e0410fbd60314cac6c Jul 2 07:55:56.749649 ignition[853]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/digitalocean" Jul 2 07:55:56.749649 ignition[853]: INFO : umount: umount passed Jul 2 07:55:56.749649 ignition[853]: INFO : Ignition finished successfully Jul 2 07:55:56.749000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.751000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.752000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.754000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.759000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.734239 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Jul 2 07:55:56.734421 systemd[1]: Stopped dracut-pre-trigger.service. Jul 2 07:55:56.741204 systemd[1]: initrd-cleanup.service: Deactivated successfully. Jul 2 07:55:56.741369 systemd[1]: Finished initrd-cleanup.service. Jul 2 07:55:56.749582 systemd[1]: ignition-mount.service: Deactivated successfully. Jul 2 07:55:56.749757 systemd[1]: Stopped ignition-mount.service. Jul 2 07:55:56.750572 systemd[1]: ignition-disks.service: Deactivated successfully. Jul 2 07:55:56.769000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.750670 systemd[1]: Stopped ignition-disks.service. Jul 2 07:55:56.751939 systemd[1]: ignition-kargs.service: Deactivated successfully. Jul 2 07:55:56.751998 systemd[1]: Stopped ignition-kargs.service. Jul 2 07:55:56.753336 systemd[1]: ignition-fetch.service: Deactivated successfully. Jul 2 07:55:56.753392 systemd[1]: Stopped ignition-fetch.service. Jul 2 07:55:56.755166 systemd[1]: Stopped target network.target. Jul 2 07:55:56.757887 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Jul 2 07:55:56.757976 systemd[1]: Stopped ignition-fetch-offline.service. Jul 2 07:55:56.759963 systemd[1]: Stopped target paths.target. Jul 2 07:55:56.761069 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Jul 2 07:55:56.778000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.762833 systemd[1]: Stopped systemd-ask-password-console.path. Jul 2 07:55:56.781000 audit: BPF prog-id=6 op=UNLOAD Jul 2 07:55:56.781000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.763684 systemd[1]: Stopped target slices.target. Jul 2 07:55:56.764694 systemd[1]: Stopped target sockets.target. Jul 2 07:55:56.785000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.786000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.766054 systemd[1]: iscsid.socket: Deactivated successfully. Jul 2 07:55:56.788000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.766108 systemd[1]: Closed iscsid.socket. Jul 2 07:55:56.767148 systemd[1]: iscsiuio.socket: Deactivated successfully. Jul 2 07:55:56.767185 systemd[1]: Closed iscsiuio.socket. Jul 2 07:55:56.768762 systemd[1]: ignition-setup.service: Deactivated successfully. Jul 2 07:55:56.768834 systemd[1]: Stopped ignition-setup.service. Jul 2 07:55:56.770153 systemd[1]: Stopping systemd-networkd.service... Jul 2 07:55:56.771764 systemd[1]: Stopping systemd-resolved.service... Jul 2 07:55:56.823000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.775841 systemd-networkd[690]: eth0: DHCPv6 lease lost Jul 2 07:55:56.778147 systemd[1]: systemd-resolved.service: Deactivated successfully. Jul 2 07:55:56.778301 systemd[1]: Stopped systemd-resolved.service. Jul 2 07:55:56.780203 systemd-networkd[690]: eth1: DHCPv6 lease lost Jul 2 07:55:56.876000 audit: BPF prog-id=9 op=UNLOAD Jul 2 07:55:56.781560 systemd[1]: systemd-networkd.service: Deactivated successfully. Jul 2 07:55:56.781780 systemd[1]: Stopped systemd-networkd.service. Jul 2 07:55:56.782792 systemd[1]: systemd-networkd.socket: Deactivated successfully. Jul 2 07:55:56.880000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.782840 systemd[1]: Closed systemd-networkd.socket. Jul 2 07:55:56.881000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.785238 systemd[1]: Stopping network-cleanup.service... Jul 2 07:55:56.882000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.785851 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Jul 2 07:55:56.785934 systemd[1]: Stopped parse-ip-for-networkd.service. Jul 2 07:55:56.786628 systemd[1]: systemd-sysctl.service: Deactivated successfully. Jul 2 07:55:56.786687 systemd[1]: Stopped systemd-sysctl.service. Jul 2 07:55:56.787753 systemd[1]: systemd-modules-load.service: Deactivated successfully. Jul 2 07:55:56.787814 systemd[1]: Stopped systemd-modules-load.service. Jul 2 07:55:56.789261 systemd[1]: Stopping systemd-udevd.service... Jul 2 07:55:56.821595 systemd[1]: sysroot-boot.mount: Deactivated successfully. Jul 2 07:55:56.821795 systemd[1]: run-credentials-systemd\x2dsysctl.service.mount: Deactivated successfully. Jul 2 07:55:56.822856 systemd[1]: systemd-udevd.service: Deactivated successfully. Jul 2 07:55:56.902000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.823079 systemd[1]: Stopped systemd-udevd.service. Jul 2 07:55:56.904000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.826499 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Jul 2 07:55:56.906000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.826582 systemd[1]: Closed systemd-udevd-control.socket. Jul 2 07:55:56.878199 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Jul 2 07:55:56.878264 systemd[1]: Closed systemd-udevd-kernel.socket. Jul 2 07:55:56.879379 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Jul 2 07:55:56.879474 systemd[1]: Stopped dracut-pre-udev.service. Jul 2 07:55:56.910000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.880817 systemd[1]: dracut-cmdline.service: Deactivated successfully. Jul 2 07:55:56.880893 systemd[1]: Stopped dracut-cmdline.service. Jul 2 07:55:56.911000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.881916 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Jul 2 07:55:56.881963 systemd[1]: Stopped dracut-cmdline-ask.service. Jul 2 07:55:56.913000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.913000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.885385 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Jul 2 07:55:56.886371 systemd[1]: systemd-tmpfiles-setup-dev.service: Deactivated successfully. Jul 2 07:55:56.916000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:55:56.886459 systemd[1]: Stopped systemd-tmpfiles-setup-dev.service. Jul 2 07:55:56.903469 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Jul 2 07:55:56.903785 systemd[1]: Stopped kmod-static-nodes.service. Jul 2 07:55:56.905630 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Jul 2 07:55:56.905696 systemd[1]: Stopped systemd-vconsole-setup.service. Jul 2 07:55:56.908411 systemd[1]: run-credentials-systemd\x2dtmpfiles\x2dsetup\x2ddev.service.mount: Deactivated successfully. Jul 2 07:55:56.909376 systemd[1]: sysroot-boot.service: Deactivated successfully. Jul 2 07:55:56.909534 systemd[1]: Stopped sysroot-boot.service. Jul 2 07:55:56.911044 systemd[1]: network-cleanup.service: Deactivated successfully. Jul 2 07:55:56.911184 systemd[1]: Stopped network-cleanup.service. Jul 2 07:55:56.913035 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Jul 2 07:55:56.913183 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Jul 2 07:55:56.914952 systemd[1]: Reached target initrd-switch-root.target. Jul 2 07:55:56.915889 systemd[1]: initrd-setup-root.service: Deactivated successfully. Jul 2 07:55:56.915962 systemd[1]: Stopped initrd-setup-root.service. Jul 2 07:55:56.918400 systemd[1]: Starting initrd-switch-root.service... Jul 2 07:55:56.937303 systemd[1]: Switching root. Jul 2 07:55:56.964237 iscsid[700]: iscsid shutting down. Jul 2 07:55:56.965009 systemd-journald[184]: Received SIGTERM from PID 1 (n/a). Jul 2 07:55:56.965106 systemd-journald[184]: Journal stopped Jul 2 07:56:01.651508 kernel: SELinux: Class mctp_socket not defined in policy. Jul 2 07:56:01.651660 kernel: SELinux: Class anon_inode not defined in policy. Jul 2 07:56:01.651685 kernel: SELinux: the above unknown classes and permissions will be allowed Jul 2 07:56:01.651707 kernel: SELinux: policy capability network_peer_controls=1 Jul 2 07:56:01.651727 kernel: SELinux: policy capability open_perms=1 Jul 2 07:56:01.651746 kernel: SELinux: policy capability extended_socket_class=1 Jul 2 07:56:01.651766 kernel: SELinux: policy capability always_check_network=0 Jul 2 07:56:01.651804 kernel: SELinux: policy capability cgroup_seclabel=1 Jul 2 07:56:01.651823 kernel: SELinux: policy capability nnp_nosuid_transition=1 Jul 2 07:56:01.651842 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Jul 2 07:56:01.651869 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Jul 2 07:56:01.651893 systemd[1]: Successfully loaded SELinux policy in 51.572ms. Jul 2 07:56:01.651929 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 13.999ms. Jul 2 07:56:01.651953 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Jul 2 07:56:01.651976 systemd[1]: Detected virtualization kvm. Jul 2 07:56:01.652002 systemd[1]: Detected architecture x86-64. Jul 2 07:56:01.652024 systemd[1]: Detected first boot. Jul 2 07:56:01.652045 systemd[1]: Hostname set to . Jul 2 07:56:01.652069 systemd[1]: Initializing machine ID from VM UUID. Jul 2 07:56:01.652091 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Jul 2 07:56:01.652112 systemd[1]: Populated /etc with preset unit settings. Jul 2 07:56:01.652131 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Jul 2 07:56:01.652162 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Jul 2 07:56:01.652189 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 2 07:56:01.652213 systemd[1]: iscsiuio.service: Deactivated successfully. Jul 2 07:56:01.652235 systemd[1]: Stopped iscsiuio.service. Jul 2 07:56:01.652259 systemd[1]: iscsid.service: Deactivated successfully. Jul 2 07:56:01.652281 systemd[1]: Stopped iscsid.service. Jul 2 07:56:01.652299 systemd[1]: initrd-switch-root.service: Deactivated successfully. Jul 2 07:56:01.652318 systemd[1]: Stopped initrd-switch-root.service. Jul 2 07:56:01.652339 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Jul 2 07:56:01.652358 systemd[1]: Created slice system-addon\x2dconfig.slice. Jul 2 07:56:01.652377 systemd[1]: Created slice system-addon\x2drun.slice. Jul 2 07:56:01.652396 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Jul 2 07:56:01.652414 systemd[1]: Created slice system-getty.slice. Jul 2 07:56:01.652431 systemd[1]: Created slice system-modprobe.slice. Jul 2 07:56:01.652453 systemd[1]: Created slice system-serial\x2dgetty.slice. Jul 2 07:56:01.652473 systemd[1]: Created slice system-system\x2dcloudinit.slice. Jul 2 07:56:01.652499 systemd[1]: Created slice system-systemd\x2dfsck.slice. Jul 2 07:56:01.652519 systemd[1]: Created slice user.slice. Jul 2 07:56:01.652537 systemd[1]: Started systemd-ask-password-console.path. Jul 2 07:56:01.652555 systemd[1]: Started systemd-ask-password-wall.path. Jul 2 07:56:01.652579 systemd[1]: Set up automount boot.automount. Jul 2 07:56:01.652598 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Jul 2 07:56:01.652637 systemd[1]: Stopped target initrd-switch-root.target. Jul 2 07:56:01.652655 systemd[1]: Stopped target initrd-fs.target. Jul 2 07:56:01.652673 systemd[1]: Stopped target initrd-root-fs.target. Jul 2 07:56:01.652691 systemd[1]: Reached target integritysetup.target. Jul 2 07:56:01.652709 systemd[1]: Reached target remote-cryptsetup.target. Jul 2 07:56:01.652730 systemd[1]: Reached target remote-fs.target. Jul 2 07:56:01.652747 systemd[1]: Reached target slices.target. Jul 2 07:56:01.652766 systemd[1]: Reached target swap.target. Jul 2 07:56:01.652790 systemd[1]: Reached target torcx.target. Jul 2 07:56:01.652809 systemd[1]: Reached target veritysetup.target. Jul 2 07:56:01.652828 systemd[1]: Listening on systemd-coredump.socket. Jul 2 07:56:01.652847 systemd[1]: Listening on systemd-initctl.socket. Jul 2 07:56:01.652865 systemd[1]: Listening on systemd-networkd.socket. Jul 2 07:56:01.652883 systemd[1]: Listening on systemd-udevd-control.socket. Jul 2 07:56:01.652902 systemd[1]: Listening on systemd-udevd-kernel.socket. Jul 2 07:56:01.652921 systemd[1]: Listening on systemd-userdbd.socket. Jul 2 07:56:01.652941 systemd[1]: Mounting dev-hugepages.mount... Jul 2 07:56:01.652964 systemd[1]: Mounting dev-mqueue.mount... Jul 2 07:56:01.652983 systemd[1]: Mounting media.mount... Jul 2 07:56:01.653002 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:01.653021 systemd[1]: Mounting sys-kernel-debug.mount... Jul 2 07:56:01.653039 systemd[1]: Mounting sys-kernel-tracing.mount... Jul 2 07:56:01.653056 systemd[1]: Mounting tmp.mount... Jul 2 07:56:01.653073 systemd[1]: Starting flatcar-tmpfiles.service... Jul 2 07:56:01.653094 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 07:56:01.653111 systemd[1]: Starting kmod-static-nodes.service... Jul 2 07:56:01.653136 systemd[1]: Starting modprobe@configfs.service... Jul 2 07:56:01.653155 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 07:56:01.653174 systemd[1]: Starting modprobe@drm.service... Jul 2 07:56:01.653194 systemd[1]: Starting modprobe@efi_pstore.service... Jul 2 07:56:01.653214 systemd[1]: Starting modprobe@fuse.service... Jul 2 07:56:01.653235 systemd[1]: Starting modprobe@loop.service... Jul 2 07:56:01.653255 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Jul 2 07:56:01.653276 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Jul 2 07:56:01.653296 systemd[1]: Stopped systemd-fsck-root.service. Jul 2 07:56:01.653354 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Jul 2 07:56:01.654799 systemd[1]: Stopped systemd-fsck-usr.service. Jul 2 07:56:01.654855 systemd[1]: Stopped systemd-journald.service. Jul 2 07:56:01.654876 systemd[1]: Starting systemd-journald.service... Jul 2 07:56:01.654896 systemd[1]: Starting systemd-modules-load.service... Jul 2 07:56:01.654916 systemd[1]: Starting systemd-network-generator.service... Jul 2 07:56:01.654934 systemd[1]: Starting systemd-remount-fs.service... Jul 2 07:56:01.654953 systemd[1]: Starting systemd-udev-trigger.service... Jul 2 07:56:01.654972 systemd[1]: verity-setup.service: Deactivated successfully. Jul 2 07:56:01.655002 systemd[1]: Stopped verity-setup.service. Jul 2 07:56:01.655022 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:01.655040 systemd[1]: Mounted dev-hugepages.mount. Jul 2 07:56:01.655058 systemd[1]: Mounted dev-mqueue.mount. Jul 2 07:56:01.655076 systemd[1]: Mounted media.mount. Jul 2 07:56:01.655094 kernel: loop: module loaded Jul 2 07:56:01.655115 systemd[1]: Mounted sys-kernel-debug.mount. Jul 2 07:56:01.655163 systemd[1]: Mounted sys-kernel-tracing.mount. Jul 2 07:56:01.655183 systemd[1]: Mounted tmp.mount. Jul 2 07:56:01.655206 systemd[1]: Finished kmod-static-nodes.service. Jul 2 07:56:01.655227 kernel: kauditd_printk_skb: 76 callbacks suppressed Jul 2 07:56:01.655249 kernel: audit: type=1130 audit(1719906961.588:118): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.655304 systemd[1]: modprobe@configfs.service: Deactivated successfully. Jul 2 07:56:01.655325 systemd[1]: Finished modprobe@configfs.service. Jul 2 07:56:01.655350 kernel: audit: type=1130 audit(1719906961.599:119): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.655369 kernel: audit: type=1131 audit(1719906961.604:120): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.655389 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 07:56:01.655407 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 07:56:01.655428 systemd[1]: modprobe@drm.service: Deactivated successfully. Jul 2 07:56:01.655448 kernel: audit: type=1130 audit(1719906961.615:121): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.655465 kernel: fuse: init (API version 7.34) Jul 2 07:56:01.655498 systemd[1]: Finished modprobe@drm.service. Jul 2 07:56:01.655526 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Jul 2 07:56:01.655550 kernel: audit: type=1131 audit(1719906961.615:122): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.655570 kernel: audit: type=1130 audit(1719906961.635:123): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.655590 systemd[1]: Finished modprobe@efi_pstore.service. Jul 2 07:56:01.656717 systemd[1]: modprobe@loop.service: Deactivated successfully. Jul 2 07:56:01.656750 systemd[1]: Finished modprobe@loop.service. Jul 2 07:56:01.656776 systemd-journald[955]: Journal started Jul 2 07:56:01.656882 systemd-journald[955]: Runtime Journal (/run/log/journal/7f2b79954c954470af76777a2f183657) is 4.9M, max 39.5M, 34.5M free. Jul 2 07:55:57.117000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Jul 2 07:55:57.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Jul 2 07:55:57.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Jul 2 07:55:57.206000 audit: BPF prog-id=10 op=LOAD Jul 2 07:55:57.206000 audit: BPF prog-id=10 op=UNLOAD Jul 2 07:55:57.206000 audit: BPF prog-id=11 op=LOAD Jul 2 07:55:57.206000 audit: BPF prog-id=11 op=UNLOAD Jul 2 07:55:57.325000 audit[885]: AVC avc: denied { associate } for pid=885 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Jul 2 07:55:57.325000 audit[885]: SYSCALL arch=c000003e syscall=188 success=yes exit=0 a0=c00014d8a2 a1=c0000cedf8 a2=c0000d70c0 a3=32 items=0 ppid=868 pid=885 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:55:57.325000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Jul 2 07:55:57.327000 audit[885]: AVC avc: denied { associate } for pid=885 comm="torcx-generator" name="usr" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Jul 2 07:55:57.327000 audit[885]: SYSCALL arch=c000003e syscall=258 success=yes exit=0 a0=ffffffffffffff9c a1=c00014d979 a2=1ed a3=0 items=2 ppid=868 pid=885 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:55:57.327000 audit: CWD cwd="/" Jul 2 07:55:57.327000 audit: PATH item=0 name=(null) inode=2 dev=00:1a mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:55:57.327000 audit: PATH item=1 name=(null) inode=3 dev=00:1a mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:55:57.327000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Jul 2 07:56:01.336000 audit: BPF prog-id=12 op=LOAD Jul 2 07:56:01.337000 audit: BPF prog-id=3 op=UNLOAD Jul 2 07:56:01.337000 audit: BPF prog-id=13 op=LOAD Jul 2 07:56:01.337000 audit: BPF prog-id=14 op=LOAD Jul 2 07:56:01.337000 audit: BPF prog-id=4 op=UNLOAD Jul 2 07:56:01.337000 audit: BPF prog-id=5 op=UNLOAD Jul 2 07:56:01.340000 audit: BPF prog-id=15 op=LOAD Jul 2 07:56:01.340000 audit: BPF prog-id=12 op=UNLOAD Jul 2 07:56:01.340000 audit: BPF prog-id=16 op=LOAD Jul 2 07:56:01.340000 audit: BPF prog-id=17 op=LOAD Jul 2 07:56:01.340000 audit: BPF prog-id=13 op=UNLOAD Jul 2 07:56:01.340000 audit: BPF prog-id=14 op=UNLOAD Jul 2 07:56:01.342000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.348000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.352000 audit: BPF prog-id=15 op=UNLOAD Jul 2 07:56:01.352000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.356000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.356000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.517000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.523000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.525000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.525000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.527000 audit: BPF prog-id=18 op=LOAD Jul 2 07:56:01.527000 audit: BPF prog-id=19 op=LOAD Jul 2 07:56:01.527000 audit: BPF prog-id=20 op=LOAD Jul 2 07:56:01.527000 audit: BPF prog-id=16 op=UNLOAD Jul 2 07:56:01.527000 audit: BPF prog-id=17 op=UNLOAD Jul 2 07:56:01.557000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.588000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.599000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.604000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.615000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.615000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.635000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.334717 systemd[1]: Queued start job for default target multi-user.target. Jul 2 07:55:57.321824 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.5 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.5 /var/lib/torcx/store]" Jul 2 07:56:01.334737 systemd[1]: Unnecessary job was removed for dev-vda6.device. Jul 2 07:55:57.322574 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Jul 2 07:56:01.665748 systemd[1]: Started systemd-journald.service. Jul 2 07:56:01.665864 kernel: audit: type=1131 audit(1719906961.635:124): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.635000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.342443 systemd[1]: systemd-journald.service: Deactivated successfully. Jul 2 07:55:57.322632 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Jul 2 07:56:01.660010 systemd[1]: Finished systemd-modules-load.service. Jul 2 07:55:57.322675 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Jul 2 07:56:01.661331 systemd[1]: Finished systemd-network-generator.service. Jul 2 07:55:57.322688 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="skipped missing lower profile" missing profile=oem Jul 2 07:55:57.322731 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Jul 2 07:56:01.667636 systemd[1]: modprobe@fuse.service: Deactivated successfully. Jul 2 07:55:57.322747 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Jul 2 07:56:01.667922 systemd[1]: Finished modprobe@fuse.service. Jul 2 07:55:57.323017 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Jul 2 07:55:57.323084 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Jul 2 07:55:57.323109 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Jul 2 07:56:01.643000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Jul 2 07:55:57.324896 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Jul 2 07:55:57.324940 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Jul 2 07:56:01.643000 audit[955]: SYSCALL arch=c000003e syscall=46 success=yes exit=60 a0=3 a1=7ffe753f11a0 a2=4000 a3=7ffe753f123c items=0 ppid=1 pid=955 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:55:57.324966 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.5: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.5 Jul 2 07:55:57.324984 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Jul 2 07:55:57.325008 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.5: no such file or directory" path=/var/lib/torcx/store/3510.3.5 Jul 2 07:55:57.325024 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:55:57Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Jul 2 07:56:00.637670 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:56:00Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Jul 2 07:56:00.638122 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:56:00Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Jul 2 07:56:00.638348 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:56:00Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Jul 2 07:56:00.638658 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:56:00Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Jul 2 07:56:00.638731 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:56:00Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Jul 2 07:56:00.638830 /usr/lib/systemd/system-generators/torcx-generator[885]: time="2024-07-02T07:56:00Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Jul 2 07:56:01.677940 kernel: audit: type=1305 audit(1719906961.643:125): op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Jul 2 07:56:01.677979 kernel: audit: type=1300 audit(1719906961.643:125): arch=c000003e syscall=46 success=yes exit=60 a0=3 a1=7ffe753f11a0 a2=4000 a3=7ffe753f123c items=0 ppid=1 pid=955 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:01.678190 systemd[1]: Finished systemd-remount-fs.service. Jul 2 07:56:01.680277 systemd[1]: Reached target network-pre.target. Jul 2 07:56:01.643000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Jul 2 07:56:01.684831 kernel: audit: type=1327 audit(1719906961.643:125): proctitle="/usr/lib/systemd/systemd-journald" Jul 2 07:56:01.685368 systemd[1]: Mounting sys-fs-fuse-connections.mount... Jul 2 07:56:01.688099 systemd[1]: Mounting sys-kernel-config.mount... Jul 2 07:56:01.693847 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Jul 2 07:56:01.650000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.650000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.656000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.656000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.658000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.660000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.666000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.668000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.668000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.678000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.697627 systemd[1]: Starting systemd-hwdb-update.service... Jul 2 07:56:01.700058 systemd[1]: Starting systemd-journal-flush.service... Jul 2 07:56:01.700983 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Jul 2 07:56:01.702926 systemd[1]: Starting systemd-random-seed.service... Jul 2 07:56:01.703956 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Jul 2 07:56:01.706118 systemd[1]: Starting systemd-sysctl.service... Jul 2 07:56:01.713360 systemd[1]: Mounted sys-fs-fuse-connections.mount. Jul 2 07:56:01.714901 systemd[1]: Mounted sys-kernel-config.mount. Jul 2 07:56:01.730126 systemd-journald[955]: Time spent on flushing to /var/log/journal/7f2b79954c954470af76777a2f183657 is 33.449ms for 1139 entries. Jul 2 07:56:01.730126 systemd-journald[955]: System Journal (/var/log/journal/7f2b79954c954470af76777a2f183657) is 8.0M, max 195.6M, 187.6M free. Jul 2 07:56:01.774071 systemd-journald[955]: Received client request to flush runtime journal. Jul 2 07:56:01.744000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.756000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.744472 systemd[1]: Finished systemd-random-seed.service. Jul 2 07:56:01.775000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.745352 systemd[1]: Reached target first-boot-complete.target. Jul 2 07:56:01.756085 systemd[1]: Finished systemd-sysctl.service. Jul 2 07:56:01.775536 systemd[1]: Finished systemd-journal-flush.service. Jul 2 07:56:01.790659 systemd[1]: Finished flatcar-tmpfiles.service. Jul 2 07:56:01.793099 systemd[1]: Starting systemd-sysusers.service... Jul 2 07:56:01.790000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.820937 systemd[1]: Finished systemd-udev-trigger.service. Jul 2 07:56:01.823321 systemd[1]: Starting systemd-udev-settle.service... Jul 2 07:56:01.820000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.837733 udevadm[995]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation-early.service, lvm2-activation.service not to pull it in. Jul 2 07:56:01.848326 systemd[1]: Finished systemd-sysusers.service. Jul 2 07:56:01.848000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:01.851264 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Jul 2 07:56:01.898484 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Jul 2 07:56:01.898000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.567687 systemd[1]: Finished systemd-hwdb-update.service. Jul 2 07:56:02.567000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.569000 audit: BPF prog-id=21 op=LOAD Jul 2 07:56:02.569000 audit: BPF prog-id=22 op=LOAD Jul 2 07:56:02.569000 audit: BPF prog-id=7 op=UNLOAD Jul 2 07:56:02.569000 audit: BPF prog-id=8 op=UNLOAD Jul 2 07:56:02.570889 systemd[1]: Starting systemd-udevd.service... Jul 2 07:56:02.595760 systemd-udevd[998]: Using default interface naming scheme 'v252'. Jul 2 07:56:02.632981 systemd[1]: Started systemd-udevd.service. Jul 2 07:56:02.633000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.635000 audit: BPF prog-id=23 op=LOAD Jul 2 07:56:02.640910 systemd[1]: Starting systemd-networkd.service... Jul 2 07:56:02.654000 audit: BPF prog-id=24 op=LOAD Jul 2 07:56:02.654000 audit: BPF prog-id=25 op=LOAD Jul 2 07:56:02.654000 audit: BPF prog-id=26 op=LOAD Jul 2 07:56:02.656766 systemd[1]: Starting systemd-userdbd.service... Jul 2 07:56:02.730780 systemd[1]: Started systemd-userdbd.service. Jul 2 07:56:02.730000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.760586 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Jul 2 07:56:02.771916 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:02.772217 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 07:56:02.774023 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 07:56:02.777946 systemd[1]: Starting modprobe@efi_pstore.service... Jul 2 07:56:02.783976 systemd[1]: Starting modprobe@loop.service... Jul 2 07:56:02.784853 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Jul 2 07:56:02.784975 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Jul 2 07:56:02.785121 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:02.785961 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 07:56:02.786233 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 07:56:02.786000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.786000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.791949 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Jul 2 07:56:02.792163 systemd[1]: Finished modprobe@efi_pstore.service. Jul 2 07:56:02.792000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.792000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.793031 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Jul 2 07:56:02.793712 systemd[1]: modprobe@loop.service: Deactivated successfully. Jul 2 07:56:02.794009 systemd[1]: Finished modprobe@loop.service. Jul 2 07:56:02.793000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.793000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.794874 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Jul 2 07:56:02.866038 systemd-networkd[1006]: lo: Link UP Jul 2 07:56:02.866057 systemd-networkd[1006]: lo: Gained carrier Jul 2 07:56:02.866736 systemd-networkd[1006]: Enumeration completed Jul 2 07:56:02.866920 systemd[1]: Started systemd-networkd.service. Jul 2 07:56:02.867000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:02.868128 systemd-networkd[1006]: eth1: Configuring with /run/systemd/network/10-c6:e1:61:1d:72:e1.network. Jul 2 07:56:02.869859 systemd-networkd[1006]: eth0: Configuring with /run/systemd/network/10-96:42:7d:13:bd:00.network. Jul 2 07:56:02.871000 systemd-networkd[1006]: eth1: Link UP Jul 2 07:56:02.871013 systemd-networkd[1006]: eth1: Gained carrier Jul 2 07:56:02.874303 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Jul 2 07:56:02.877082 systemd-networkd[1006]: eth0: Link UP Jul 2 07:56:02.877096 systemd-networkd[1006]: eth0: Gained carrier Jul 2 07:56:02.892675 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXPWRBN:00/input/input2 Jul 2 07:56:02.897649 kernel: ACPI: button: Power Button [PWRF] Jul 2 07:56:02.924000 audit[1004]: AVC avc: denied { confidentiality } for pid=1004 comm="(udev-worker)" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=1 Jul 2 07:56:02.946693 kernel: input: ImExPS/2 Generic Explorer Mouse as /devices/platform/i8042/serio1/input/input3 Jul 2 07:56:02.924000 audit[1004]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=55ff180c9c60 a1=3207c a2=7fb1e17edbc5 a3=5 items=108 ppid=998 pid=1004 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="(udev-worker)" exe="/usr/bin/udevadm" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:02.924000 audit: CWD cwd="/" Jul 2 07:56:02.924000 audit: PATH item=0 name=(null) inode=45 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=1 name=(null) inode=13088 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=2 name=(null) inode=13088 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=3 name=(null) inode=13089 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=4 name=(null) inode=13088 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=5 name=(null) inode=13090 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=6 name=(null) inode=13088 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=7 name=(null) inode=13091 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=8 name=(null) inode=13091 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=9 name=(null) inode=13092 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=10 name=(null) inode=13091 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=11 name=(null) inode=13093 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=12 name=(null) inode=13091 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=13 name=(null) inode=13094 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=14 name=(null) inode=13091 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=15 name=(null) inode=13095 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=16 name=(null) inode=13091 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=17 name=(null) inode=13096 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=18 name=(null) inode=13088 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=19 name=(null) inode=13097 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=20 name=(null) inode=13097 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=21 name=(null) inode=13098 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=22 name=(null) inode=13097 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=23 name=(null) inode=13099 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=24 name=(null) inode=13097 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=25 name=(null) inode=13100 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=26 name=(null) inode=13097 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=27 name=(null) inode=13101 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=28 name=(null) inode=13097 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=29 name=(null) inode=13102 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=30 name=(null) inode=13088 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=31 name=(null) inode=13103 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=32 name=(null) inode=13103 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=33 name=(null) inode=13104 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=34 name=(null) inode=13103 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=35 name=(null) inode=13105 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=36 name=(null) inode=13103 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=37 name=(null) inode=13106 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=38 name=(null) inode=13103 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=39 name=(null) inode=13107 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=40 name=(null) inode=13103 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=41 name=(null) inode=13108 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=42 name=(null) inode=13088 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=43 name=(null) inode=13109 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=44 name=(null) inode=13109 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=45 name=(null) inode=13110 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=46 name=(null) inode=13109 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=47 name=(null) inode=13111 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=48 name=(null) inode=13109 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=49 name=(null) inode=13112 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=50 name=(null) inode=13109 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=51 name=(null) inode=13113 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=52 name=(null) inode=13109 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=53 name=(null) inode=13114 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=54 name=(null) inode=45 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=55 name=(null) inode=13115 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=56 name=(null) inode=13115 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=57 name=(null) inode=13116 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=58 name=(null) inode=13115 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=59 name=(null) inode=13117 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=60 name=(null) inode=13115 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=61 name=(null) inode=13118 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=62 name=(null) inode=13118 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=63 name=(null) inode=13119 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=64 name=(null) inode=13118 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=65 name=(null) inode=13120 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=66 name=(null) inode=13118 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=67 name=(null) inode=13121 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=68 name=(null) inode=13118 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=69 name=(null) inode=13122 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=70 name=(null) inode=13118 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=71 name=(null) inode=13123 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=72 name=(null) inode=13115 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=73 name=(null) inode=13124 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=74 name=(null) inode=13124 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=75 name=(null) inode=13125 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=76 name=(null) inode=13124 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=77 name=(null) inode=13126 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=78 name=(null) inode=13124 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=79 name=(null) inode=13127 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=80 name=(null) inode=13124 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=81 name=(null) inode=13128 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=82 name=(null) inode=13124 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=83 name=(null) inode=13129 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=84 name=(null) inode=13115 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=85 name=(null) inode=13130 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=86 name=(null) inode=13130 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=87 name=(null) inode=13131 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=88 name=(null) inode=13130 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=89 name=(null) inode=13132 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=90 name=(null) inode=13130 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=91 name=(null) inode=13133 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=92 name=(null) inode=13130 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=93 name=(null) inode=13134 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=94 name=(null) inode=13130 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=95 name=(null) inode=13135 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=96 name=(null) inode=13115 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=97 name=(null) inode=13136 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=98 name=(null) inode=13136 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=99 name=(null) inode=13137 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=100 name=(null) inode=13136 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=101 name=(null) inode=13138 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=102 name=(null) inode=13136 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=103 name=(null) inode=13139 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=104 name=(null) inode=13136 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=105 name=(null) inode=13140 dev=00:0b mode=0100640 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=106 name=(null) inode=13136 dev=00:0b mode=040750 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PATH item=107 name=(null) inode=13141 dev=00:0b mode=0100440 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:tracefs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:02.924000 audit: PROCTITLE proctitle="(udev-worker)" Jul 2 07:56:02.973647 kernel: piix4_smbus 0000:00:01.3: SMBus Host Controller at 0x700, revision 0 Jul 2 07:56:02.994652 kernel: mousedev: PS/2 mouse device common for all mice Jul 2 07:56:03.166641 kernel: EDAC MC: Ver: 3.0.0 Jul 2 07:56:03.186340 systemd[1]: Finished systemd-udev-settle.service. Jul 2 07:56:03.186000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:03.189075 systemd[1]: Starting lvm2-activation-early.service... Jul 2 07:56:03.214769 lvm[1036]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Jul 2 07:56:03.247048 systemd[1]: Finished lvm2-activation-early.service. Jul 2 07:56:03.247000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:03.248001 systemd[1]: Reached target cryptsetup.target. Jul 2 07:56:03.250072 systemd[1]: Starting lvm2-activation.service... Jul 2 07:56:03.256187 lvm[1037]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Jul 2 07:56:03.280930 systemd[1]: Finished lvm2-activation.service. Jul 2 07:56:03.281000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:03.282174 systemd[1]: Reached target local-fs-pre.target. Jul 2 07:56:03.284845 systemd[1]: Mounting media-configdrive.mount... Jul 2 07:56:03.285739 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Jul 2 07:56:03.285789 systemd[1]: Reached target machines.target. Jul 2 07:56:03.288037 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Jul 2 07:56:03.305836 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Jul 2 07:56:03.306000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:03.309629 kernel: ISO 9660 Extensions: RRIP_1991A Jul 2 07:56:03.311261 systemd[1]: Mounted media-configdrive.mount. Jul 2 07:56:03.312279 systemd[1]: Reached target local-fs.target. Jul 2 07:56:03.314669 systemd[1]: Starting ldconfig.service... Jul 2 07:56:03.316381 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 07:56:03.316456 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 07:56:03.321332 systemd[1]: Starting systemd-boot-update.service... Jul 2 07:56:03.326922 systemd[1]: Starting systemd-machine-id-commit.service... Jul 2 07:56:03.335249 systemd[1]: Starting systemd-sysext.service... Jul 2 07:56:03.337725 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1043 (bootctl) Jul 2 07:56:03.340346 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Jul 2 07:56:03.495289 systemd[1]: Unmounting usr-share-oem.mount... Jul 2 07:56:03.587272 systemd[1]: usr-share-oem.mount: Deactivated successfully. Jul 2 07:56:03.589570 systemd[1]: Unmounted usr-share-oem.mount. Jul 2 07:56:03.656539 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Jul 2 07:56:03.725000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-machine-id-commit comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:03.719235 systemd[1]: Finished systemd-machine-id-commit.service. Jul 2 07:56:03.820660 kernel: loop0: detected capacity change from 0 to 209816 Jul 2 07:56:03.861003 kernel: squashfs: version 4.0 (2009/01/31) Phillip Lougher Jul 2 07:56:03.885450 systemd-fsck[1049]: fsck.fat 4.2 (2021-01-31) Jul 2 07:56:03.885450 systemd-fsck[1049]: /dev/vda1: 789 files, 119238/258078 clusters Jul 2 07:56:03.891103 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Jul 2 07:56:03.891861 kernel: loop1: detected capacity change from 0 to 209816 Jul 2 07:56:03.891000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:03.894521 systemd[1]: Mounting boot.mount... Jul 2 07:56:04.550404 (sd-sysext)[1053]: Using extensions 'kubernetes'. Jul 2 07:56:04.554872 systemd[1]: Mounted boot.mount. Jul 2 07:56:04.557325 (sd-sysext)[1053]: Merged extensions into '/usr'. Jul 2 07:56:04.577096 systemd[1]: Finished systemd-boot-update.service. Jul 2 07:56:04.577000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:04.597781 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:04.600082 systemd[1]: Mounting usr-share-oem.mount... Jul 2 07:56:04.601678 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 07:56:04.605999 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 07:56:04.608267 systemd[1]: Starting modprobe@efi_pstore.service... Jul 2 07:56:04.613287 systemd[1]: Starting modprobe@loop.service... Jul 2 07:56:04.614183 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 07:56:04.614550 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 07:56:04.614865 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:04.622032 systemd[1]: Mounted usr-share-oem.mount. Jul 2 07:56:04.623283 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 07:56:04.623547 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 07:56:04.623000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:04.623000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:04.624976 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Jul 2 07:56:04.625175 systemd[1]: Finished modprobe@efi_pstore.service. Jul 2 07:56:04.625000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:04.625000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:04.626834 systemd[1]: modprobe@loop.service: Deactivated successfully. Jul 2 07:56:04.627037 systemd[1]: Finished modprobe@loop.service. Jul 2 07:56:04.627000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:04.627000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:04.628938 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Jul 2 07:56:04.629125 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Jul 2 07:56:04.630582 systemd[1]: Finished systemd-sysext.service. Jul 2 07:56:04.631000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:04.633331 systemd[1]: Starting ensure-sysext.service... Jul 2 07:56:04.637191 systemd[1]: Starting systemd-tmpfiles-setup.service... Jul 2 07:56:04.647775 systemd[1]: Reloading. Jul 2 07:56:04.672094 systemd-tmpfiles[1061]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Jul 2 07:56:04.674655 systemd-tmpfiles[1061]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Jul 2 07:56:04.680453 systemd-tmpfiles[1061]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Jul 2 07:56:04.778510 systemd-networkd[1006]: eth0: Gained IPv6LL Jul 2 07:56:04.832690 ldconfig[1042]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Jul 2 07:56:04.842030 systemd-networkd[1006]: eth1: Gained IPv6LL Jul 2 07:56:04.867439 /usr/lib/systemd/system-generators/torcx-generator[1080]: time="2024-07-02T07:56:04Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.5 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.5 /var/lib/torcx/store]" Jul 2 07:56:04.867516 /usr/lib/systemd/system-generators/torcx-generator[1080]: time="2024-07-02T07:56:04Z" level=info msg="torcx already run" Jul 2 07:56:05.007387 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Jul 2 07:56:05.007423 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Jul 2 07:56:05.029880 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 2 07:56:05.094000 audit: BPF prog-id=27 op=LOAD Jul 2 07:56:05.094000 audit: BPF prog-id=24 op=UNLOAD Jul 2 07:56:05.095000 audit: BPF prog-id=28 op=LOAD Jul 2 07:56:05.095000 audit: BPF prog-id=29 op=LOAD Jul 2 07:56:05.095000 audit: BPF prog-id=25 op=UNLOAD Jul 2 07:56:05.095000 audit: BPF prog-id=26 op=UNLOAD Jul 2 07:56:05.095000 audit: BPF prog-id=30 op=LOAD Jul 2 07:56:05.096000 audit: BPF prog-id=31 op=LOAD Jul 2 07:56:05.096000 audit: BPF prog-id=21 op=UNLOAD Jul 2 07:56:05.096000 audit: BPF prog-id=22 op=UNLOAD Jul 2 07:56:05.099000 audit: BPF prog-id=32 op=LOAD Jul 2 07:56:05.099000 audit: BPF prog-id=23 op=UNLOAD Jul 2 07:56:05.101000 audit: BPF prog-id=33 op=LOAD Jul 2 07:56:05.101000 audit: BPF prog-id=18 op=UNLOAD Jul 2 07:56:05.101000 audit: BPF prog-id=34 op=LOAD Jul 2 07:56:05.101000 audit: BPF prog-id=35 op=LOAD Jul 2 07:56:05.101000 audit: BPF prog-id=19 op=UNLOAD Jul 2 07:56:05.101000 audit: BPF prog-id=20 op=UNLOAD Jul 2 07:56:05.106111 systemd[1]: Finished ldconfig.service. Jul 2 07:56:05.106000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=ldconfig comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.109000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.109059 systemd[1]: Finished systemd-tmpfiles-setup.service. Jul 2 07:56:05.114599 systemd[1]: Starting audit-rules.service... Jul 2 07:56:05.117397 systemd[1]: Starting clean-ca-certificates.service... Jul 2 07:56:05.122989 systemd[1]: Starting systemd-journal-catalog-update.service... Jul 2 07:56:05.124000 audit: BPF prog-id=36 op=LOAD Jul 2 07:56:05.128000 audit: BPF prog-id=37 op=LOAD Jul 2 07:56:05.138000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.127550 systemd[1]: Starting systemd-resolved.service... Jul 2 07:56:05.131329 systemd[1]: Starting systemd-timesyncd.service... Jul 2 07:56:05.135892 systemd[1]: Starting systemd-update-utmp.service... Jul 2 07:56:05.137712 systemd[1]: Finished clean-ca-certificates.service. Jul 2 07:56:05.144504 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Jul 2 07:56:05.149398 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:05.149716 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.152493 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 07:56:05.156078 systemd[1]: Starting modprobe@efi_pstore.service... Jul 2 07:56:05.161262 systemd[1]: Starting modprobe@loop.service... Jul 2 07:56:05.161996 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.162192 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 07:56:05.162345 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Jul 2 07:56:05.162444 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:05.164487 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 07:56:05.164724 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 07:56:05.165000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.165000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.169656 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:05.169875 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.172282 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 07:56:05.177000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.177000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.174028 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.174310 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 07:56:05.174486 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Jul 2 07:56:05.174656 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:05.177054 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 07:56:05.177318 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 07:56:05.183457 systemd[1]: proc-xen.mount was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:05.184285 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.187237 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 07:56:05.190485 systemd[1]: Starting modprobe@drm.service... Jul 2 07:56:05.192051 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.192235 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 07:56:05.199000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.199000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.203000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=ensure-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.195378 systemd[1]: Starting systemd-networkd-wait-online.service... Jul 2 07:56:05.196236 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Jul 2 07:56:05.196667 systemd[1]: xenserver-pv-version.service was skipped because of an unmet condition check (ConditionVirtualization=xen). Jul 2 07:56:05.198292 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 07:56:05.198706 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 07:56:05.203088 systemd[1]: Finished ensure-sysext.service. Jul 2 07:56:05.210000 audit[1133]: SYSTEM_BOOT pid=1133 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.213000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.214000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.214003 systemd[1]: Finished systemd-journal-catalog-update.service. Jul 2 07:56:05.214935 systemd[1]: Finished systemd-networkd-wait-online.service. Jul 2 07:56:05.219000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.217281 systemd[1]: Starting systemd-update-done.service... Jul 2 07:56:05.219876 systemd[1]: Finished systemd-update-utmp.service. Jul 2 07:56:05.227000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.227000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.227763 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Jul 2 07:56:05.227973 systemd[1]: Finished modprobe@efi_pstore.service. Jul 2 07:56:05.228792 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Jul 2 07:56:05.230000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.231000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.230687 systemd[1]: modprobe@drm.service: Deactivated successfully. Jul 2 07:56:05.230852 systemd[1]: Finished modprobe@drm.service. Jul 2 07:56:05.240000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.240000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.241000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-done comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:05.240216 systemd[1]: modprobe@loop.service: Deactivated successfully. Jul 2 07:56:05.240386 systemd[1]: Finished modprobe@loop.service. Jul 2 07:56:05.241653 systemd[1]: Finished systemd-update-done.service. Jul 2 07:56:05.242389 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.269000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Jul 2 07:56:05.269000 audit[1155]: SYSCALL arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffd91aa6730 a2=420 a3=0 items=0 ppid=1127 pid=1155 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:05.269000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Jul 2 07:56:05.270140 augenrules[1155]: No rules Jul 2 07:56:05.270837 systemd[1]: Finished audit-rules.service. Jul 2 07:56:05.290657 systemd[1]: Started systemd-timesyncd.service. Jul 2 07:56:05.291594 systemd[1]: Reached target time-set.target. Jul 2 07:56:05.297967 systemd-resolved[1131]: Positive Trust Anchors: Jul 2 07:56:05.298400 systemd-resolved[1131]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Jul 2 07:56:05.298518 systemd-resolved[1131]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Jul 2 07:56:05.307702 systemd-resolved[1131]: Using system hostname 'ci-3510.3.5-4-449ad91e17'. Jul 2 07:56:05.311826 systemd[1]: Started systemd-resolved.service. Jul 2 07:56:05.312926 systemd[1]: Reached target network.target. Jul 2 07:56:05.313714 systemd[1]: Reached target network-online.target. Jul 2 07:56:05.314554 systemd[1]: Reached target nss-lookup.target. Jul 2 07:56:05.315384 systemd[1]: Reached target sysinit.target. Jul 2 07:56:05.316495 systemd[1]: Started motdgen.path. Jul 2 07:56:05.317394 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Jul 2 07:56:05.318772 systemd[1]: Started logrotate.timer. Jul 2 07:56:05.319857 systemd[1]: Started mdadm.timer. Jul 2 07:56:05.320777 systemd[1]: Started systemd-tmpfiles-clean.timer. Jul 2 07:56:05.321453 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Jul 2 07:56:05.321518 systemd[1]: Reached target paths.target. Jul 2 07:56:05.322259 systemd[1]: Reached target timers.target. Jul 2 07:56:05.324187 systemd[1]: Listening on dbus.socket. Jul 2 07:56:05.327148 systemd[1]: Starting docker.socket... Jul 2 07:56:05.333235 systemd[1]: Listening on sshd.socket. Jul 2 07:56:05.334420 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 07:56:05.335317 systemd[1]: Listening on docker.socket. Jul 2 07:56:05.336572 systemd[1]: Reached target sockets.target. Jul 2 07:56:05.337409 systemd[1]: Reached target basic.target. Jul 2 07:56:05.338184 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.338235 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Jul 2 07:56:05.340551 systemd[1]: Starting containerd.service... Jul 2 07:56:05.343384 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Jul 2 07:56:05.347960 systemd[1]: Starting dbus.service... Jul 2 07:56:05.351674 systemd[1]: Starting enable-oem-cloudinit.service... Jul 2 07:56:05.364258 jq[1167]: false Jul 2 07:56:05.354806 systemd[1]: Starting extend-filesystems.service... Jul 2 07:56:05.359939 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Jul 2 07:56:05.365631 systemd[1]: Starting kubelet.service... Jul 2 07:56:05.368320 systemd[1]: Starting motdgen.service... Jul 2 07:56:05.371353 systemd[1]: Starting ssh-key-proc-cmdline.service... Jul 2 07:56:05.390123 systemd[1]: Starting sshd-keygen.service... Jul 2 07:56:05.398193 systemd[1]: Starting systemd-logind.service... Jul 2 07:56:05.399107 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 07:56:05.399314 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Jul 2 07:56:05.400325 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Jul 2 07:56:05.404086 systemd[1]: Starting update-engine.service... Jul 2 07:56:05.407593 systemd[1]: Starting update-ssh-keys-after-ignition.service... Jul 2 07:56:05.412300 jq[1180]: true Jul 2 07:56:05.415114 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Jul 2 07:56:05.415486 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Jul 2 07:56:05.445116 extend-filesystems[1168]: Found loop1 Jul 2 07:56:05.452238 extend-filesystems[1168]: Found vda Jul 2 07:56:05.453766 extend-filesystems[1168]: Found vda1 Jul 2 07:56:05.457228 dbus-daemon[1165]: [system] SELinux support is enabled Jul 2 07:56:05.457837 systemd[1]: Started dbus.service. Jul 2 07:56:05.458366 extend-filesystems[1168]: Found vda2 Jul 2 07:56:05.460520 extend-filesystems[1168]: Found vda3 Jul 2 07:56:05.461593 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Jul 2 07:56:05.461653 systemd[1]: Reached target system-config.target. Jul 2 07:56:05.462405 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Jul 2 07:56:05.462434 systemd[1]: Reached target user-config.target. Jul 2 07:56:05.463777 extend-filesystems[1168]: Found usr Jul 2 07:56:05.463777 extend-filesystems[1168]: Found vda4 Jul 2 07:56:05.463777 extend-filesystems[1168]: Found vda6 Jul 2 07:56:05.463777 extend-filesystems[1168]: Found vda7 Jul 2 07:56:05.463777 extend-filesystems[1168]: Found vda9 Jul 2 07:56:05.463777 extend-filesystems[1168]: Checking size of /dev/vda9 Jul 2 07:56:05.494811 jq[1184]: true Jul 2 07:56:05.465996 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Jul 2 07:56:05.466173 systemd[1]: Finished ssh-key-proc-cmdline.service. Jul 2 07:56:05.528409 systemd[1]: motdgen.service: Deactivated successfully. Jul 2 07:56:05.528684 systemd[1]: Finished motdgen.service. Jul 2 07:56:05.562652 update_engine[1178]: I0702 07:56:05.562101 1178 main.cc:92] Flatcar Update Engine starting Jul 2 07:56:05.567309 systemd[1]: Started update-engine.service. Jul 2 07:56:05.570782 extend-filesystems[1168]: Resized partition /dev/vda9 Jul 2 07:56:05.570900 systemd[1]: Started locksmithd.service. Jul 2 07:56:05.573200 update_engine[1178]: I0702 07:56:05.573130 1178 update_check_scheduler.cc:74] Next update check in 5m23s Jul 2 07:56:05.583277 extend-filesystems[1216]: resize2fs 1.46.5 (30-Dec-2021) Jul 2 07:56:05.591676 kernel: EXT4-fs (vda9): resizing filesystem from 553472 to 15121403 blocks Jul 2 07:56:05.675688 systemd[1]: Created slice system-sshd.slice. Jul 2 07:56:05.693598 bash[1217]: Updated "/home/core/.ssh/authorized_keys" Jul 2 07:56:05.694325 systemd[1]: Finished update-ssh-keys-after-ignition.service. Jul 2 07:56:05.699185 env[1186]: time="2024-07-02T07:56:05.699118919Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Jul 2 07:56:05.727087 systemd-logind[1176]: Watching system buttons on /dev/input/event1 (Power Button) Jul 2 07:56:05.727136 systemd-logind[1176]: Watching system buttons on /dev/input/event0 (AT Translated Set 2 keyboard) Jul 2 07:56:05.727458 systemd-logind[1176]: New seat seat0. Jul 2 07:56:05.731952 systemd[1]: Started systemd-logind.service. Jul 2 07:56:05.752194 coreos-metadata[1164]: Jul 02 07:56:05.752 INFO Fetching http://169.254.169.254/metadata/v1.json: Attempt #1 Jul 2 07:56:05.768641 coreos-metadata[1164]: Jul 02 07:56:05.768 INFO Fetch successful Jul 2 07:56:05.791068 unknown[1164]: wrote ssh authorized keys file for user: core Jul 2 07:56:05.797804 kernel: EXT4-fs (vda9): resized filesystem to 15121403 Jul 2 07:56:05.830148 extend-filesystems[1216]: Filesystem at /dev/vda9 is mounted on /; on-line resizing required Jul 2 07:56:05.830148 extend-filesystems[1216]: old_desc_blocks = 1, new_desc_blocks = 8 Jul 2 07:56:05.830148 extend-filesystems[1216]: The filesystem on /dev/vda9 is now 15121403 (4k) blocks long. Jul 2 07:56:05.833552 extend-filesystems[1168]: Resized filesystem in /dev/vda9 Jul 2 07:56:05.833552 extend-filesystems[1168]: Found vdb Jul 2 07:56:05.830722 systemd[1]: extend-filesystems.service: Deactivated successfully. Jul 2 07:56:05.830997 systemd[1]: Finished extend-filesystems.service. Jul 2 07:56:05.845178 update-ssh-keys[1224]: Updated "/home/core/.ssh/authorized_keys" Jul 2 07:56:05.845988 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Jul 2 07:56:05.852054 env[1186]: time="2024-07-02T07:56:05.851980522Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Jul 2 07:56:05.856926 env[1186]: time="2024-07-02T07:56:05.856861571Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Jul 2 07:56:05.864686 env[1186]: time="2024-07-02T07:56:05.864563254Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.161-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Jul 2 07:56:05.864686 env[1186]: time="2024-07-02T07:56:05.864677484Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Jul 2 07:56:05.865054 env[1186]: time="2024-07-02T07:56:05.865023278Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Jul 2 07:56:05.865116 env[1186]: time="2024-07-02T07:56:05.865058353Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Jul 2 07:56:05.865116 env[1186]: time="2024-07-02T07:56:05.865080044Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Jul 2 07:56:05.865116 env[1186]: time="2024-07-02T07:56:05.865099789Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Jul 2 07:56:05.865248 env[1186]: time="2024-07-02T07:56:05.865222549Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Jul 2 07:56:05.865587 env[1186]: time="2024-07-02T07:56:05.865555189Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Jul 2 07:56:05.865840 env[1186]: time="2024-07-02T07:56:05.865804979Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Jul 2 07:56:05.865900 env[1186]: time="2024-07-02T07:56:05.865838946Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Jul 2 07:56:05.865955 env[1186]: time="2024-07-02T07:56:05.865940438Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Jul 2 07:56:05.865995 env[1186]: time="2024-07-02T07:56:05.865961142Z" level=info msg="metadata content store policy set" policy=shared Jul 2 07:56:05.877007 env[1186]: time="2024-07-02T07:56:05.876886789Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Jul 2 07:56:05.877007 env[1186]: time="2024-07-02T07:56:05.876999962Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Jul 2 07:56:05.877233 env[1186]: time="2024-07-02T07:56:05.877044837Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Jul 2 07:56:05.877233 env[1186]: time="2024-07-02T07:56:05.877145296Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.877303 env[1186]: time="2024-07-02T07:56:05.877249505Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.877338 env[1186]: time="2024-07-02T07:56:05.877293957Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.877338 env[1186]: time="2024-07-02T07:56:05.877322515Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.877388 env[1186]: time="2024-07-02T07:56:05.877366331Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.877413 env[1186]: time="2024-07-02T07:56:05.877389282Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.877454 env[1186]: time="2024-07-02T07:56:05.877412378Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.877488 env[1186]: time="2024-07-02T07:56:05.877461733Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.877521 env[1186]: time="2024-07-02T07:56:05.877486696Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Jul 2 07:56:05.877801 env[1186]: time="2024-07-02T07:56:05.877774291Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Jul 2 07:56:05.877961 env[1186]: time="2024-07-02T07:56:05.877938862Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Jul 2 07:56:05.878549 env[1186]: time="2024-07-02T07:56:05.878517047Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Jul 2 07:56:05.878631 env[1186]: time="2024-07-02T07:56:05.878565592Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.878672 env[1186]: time="2024-07-02T07:56:05.878632875Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Jul 2 07:56:05.878752 env[1186]: time="2024-07-02T07:56:05.878729791Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.878859 env[1186]: time="2024-07-02T07:56:05.878759043Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.878910 env[1186]: time="2024-07-02T07:56:05.878884875Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.878961 env[1186]: time="2024-07-02T07:56:05.878906737Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.878961 env[1186]: time="2024-07-02T07:56:05.878928565Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.879036 env[1186]: time="2024-07-02T07:56:05.878970286Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.879036 env[1186]: time="2024-07-02T07:56:05.878992350Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.879116 env[1186]: time="2024-07-02T07:56:05.879014813Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.879116 env[1186]: time="2024-07-02T07:56:05.879057766Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Jul 2 07:56:05.879319 env[1186]: time="2024-07-02T07:56:05.879294494Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.879369 env[1186]: time="2024-07-02T07:56:05.879325022Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.879414 env[1186]: time="2024-07-02T07:56:05.879366883Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.879414 env[1186]: time="2024-07-02T07:56:05.879387203Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Jul 2 07:56:05.879526 env[1186]: time="2024-07-02T07:56:05.879413574Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Jul 2 07:56:05.879574 env[1186]: time="2024-07-02T07:56:05.879454065Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Jul 2 07:56:05.879647 env[1186]: time="2024-07-02T07:56:05.879586887Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Jul 2 07:56:05.879688 env[1186]: time="2024-07-02T07:56:05.879675772Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Jul 2 07:56:05.880254 env[1186]: time="2024-07-02T07:56:05.880096860Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Jul 2 07:56:05.880254 env[1186]: time="2024-07-02T07:56:05.880251367Z" level=info msg="Connect containerd service" Jul 2 07:56:05.882642 env[1186]: time="2024-07-02T07:56:05.880322107Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Jul 2 07:56:05.882642 env[1186]: time="2024-07-02T07:56:05.881512019Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Jul 2 07:56:05.882642 env[1186]: time="2024-07-02T07:56:05.881655755Z" level=info msg="Start subscribing containerd event" Jul 2 07:56:05.882642 env[1186]: time="2024-07-02T07:56:05.881728286Z" level=info msg="Start recovering state" Jul 2 07:56:05.882642 env[1186]: time="2024-07-02T07:56:05.881827733Z" level=info msg="Start event monitor" Jul 2 07:56:05.882642 env[1186]: time="2024-07-02T07:56:05.881854646Z" level=info msg="Start snapshots syncer" Jul 2 07:56:05.882642 env[1186]: time="2024-07-02T07:56:05.881869496Z" level=info msg="Start cni network conf syncer for default" Jul 2 07:56:05.882642 env[1186]: time="2024-07-02T07:56:05.881882008Z" level=info msg="Start streaming server" Jul 2 07:56:05.883226 env[1186]: time="2024-07-02T07:56:05.882571785Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Jul 2 07:56:05.883410 env[1186]: time="2024-07-02T07:56:05.883387286Z" level=info msg=serving... address=/run/containerd/containerd.sock Jul 2 07:56:05.905965 systemd[1]: Started containerd.service. Jul 2 07:56:05.907309 env[1186]: time="2024-07-02T07:56:05.907227064Z" level=info msg="containerd successfully booted in 0.245810s" Jul 2 07:56:06.349953 locksmithd[1214]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Jul 2 07:56:06.931098 systemd[1]: Started kubelet.service. Jul 2 07:56:07.511789 sshd_keygen[1187]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Jul 2 07:56:07.554274 systemd[1]: Finished sshd-keygen.service. Jul 2 07:56:07.558095 systemd[1]: Starting issuegen.service... Jul 2 07:56:07.562714 systemd[1]: Started sshd@0-143.198.128.94:22-147.75.109.163:47100.service. Jul 2 07:56:07.569281 systemd[1]: Started sshd@1-143.198.128.94:22-43.163.245.219:33632.service. Jul 2 07:56:07.585092 systemd[1]: issuegen.service: Deactivated successfully. Jul 2 07:56:07.585282 systemd[1]: Finished issuegen.service. Jul 2 07:56:07.588097 systemd[1]: Starting systemd-user-sessions.service... Jul 2 07:56:07.608002 systemd[1]: Finished systemd-user-sessions.service. Jul 2 07:56:07.610917 systemd[1]: Started getty@tty1.service. Jul 2 07:56:07.615759 systemd[1]: Started serial-getty@ttyS0.service. Jul 2 07:56:07.617279 systemd[1]: Reached target getty.target. Jul 2 07:56:07.617999 systemd[1]: Reached target multi-user.target. Jul 2 07:56:07.622960 systemd[1]: Starting systemd-update-utmp-runlevel.service... Jul 2 07:56:07.638667 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Jul 2 07:56:07.638870 systemd[1]: Finished systemd-update-utmp-runlevel.service. Jul 2 07:56:07.639703 systemd[1]: Startup finished in 1.264s (kernel) + 5.217s (initrd) + 10.582s (userspace) = 17.064s. Jul 2 07:56:07.732342 sshd[1261]: Accepted publickey for core from 147.75.109.163 port 47100 ssh2: RSA SHA256:u5gbVVgBoVwlaeoYroSslnQZvGkd0BmVvsfiNtowBx0 Jul 2 07:56:07.734479 sshd[1261]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 07:56:07.749544 systemd[1]: Created slice user-500.slice. Jul 2 07:56:07.751406 systemd[1]: Starting user-runtime-dir@500.service... Jul 2 07:56:07.765221 systemd-logind[1176]: New session 1 of user core. Jul 2 07:56:07.774214 systemd[1]: Finished user-runtime-dir@500.service. Jul 2 07:56:07.776976 systemd[1]: Starting user@500.service... Jul 2 07:56:07.785174 (systemd)[1275]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Jul 2 07:56:07.885556 systemd[1275]: Queued start job for default target default.target. Jul 2 07:56:07.886923 systemd[1275]: Reached target paths.target. Jul 2 07:56:07.887129 systemd[1275]: Reached target sockets.target. Jul 2 07:56:07.887283 systemd[1275]: Reached target timers.target. Jul 2 07:56:07.887410 systemd[1275]: Reached target basic.target. Jul 2 07:56:07.887863 systemd[1275]: Reached target default.target. Jul 2 07:56:07.887951 systemd[1]: Started user@500.service. Jul 2 07:56:07.888167 systemd[1275]: Startup finished in 89ms. Jul 2 07:56:07.889932 systemd[1]: Started session-1.scope. Jul 2 07:56:07.959458 systemd[1]: Started sshd@2-143.198.128.94:22-147.75.109.163:47114.service. Jul 2 07:56:08.041201 sshd[1284]: Accepted publickey for core from 147.75.109.163 port 47114 ssh2: RSA SHA256:u5gbVVgBoVwlaeoYroSslnQZvGkd0BmVvsfiNtowBx0 Jul 2 07:56:08.042270 sshd[1284]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 07:56:08.051157 systemd[1]: Started session-2.scope. Jul 2 07:56:08.051669 systemd-logind[1176]: New session 2 of user core. Jul 2 07:56:08.070140 kubelet[1248]: E0702 07:56:08.069981 1248 run.go:74] "command failed" err="failed to load kubelet config file, path: /var/lib/kubelet/config.yaml, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory" Jul 2 07:56:08.072032 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Jul 2 07:56:08.072195 systemd[1]: kubelet.service: Failed with result 'exit-code'. Jul 2 07:56:08.072458 systemd[1]: kubelet.service: Consumed 1.652s CPU time. Jul 2 07:56:08.126942 sshd[1284]: pam_unix(sshd:session): session closed for user core Jul 2 07:56:08.132159 systemd[1]: sshd@2-143.198.128.94:22-147.75.109.163:47114.service: Deactivated successfully. Jul 2 07:56:08.132873 systemd[1]: session-2.scope: Deactivated successfully. Jul 2 07:56:08.134144 systemd-logind[1176]: Session 2 logged out. Waiting for processes to exit. Jul 2 07:56:08.136034 systemd[1]: Started sshd@3-143.198.128.94:22-147.75.109.163:47116.service. Jul 2 07:56:08.137586 systemd-logind[1176]: Removed session 2. Jul 2 07:56:08.182159 sshd[1290]: Accepted publickey for core from 147.75.109.163 port 47116 ssh2: RSA SHA256:u5gbVVgBoVwlaeoYroSslnQZvGkd0BmVvsfiNtowBx0 Jul 2 07:56:08.184796 sshd[1290]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 07:56:08.190974 systemd-logind[1176]: New session 3 of user core. Jul 2 07:56:08.191826 systemd[1]: Started session-3.scope. Jul 2 07:56:08.252437 sshd[1290]: pam_unix(sshd:session): session closed for user core Jul 2 07:56:08.257464 systemd[1]: sshd@3-143.198.128.94:22-147.75.109.163:47116.service: Deactivated successfully. Jul 2 07:56:08.258310 systemd[1]: session-3.scope: Deactivated successfully. Jul 2 07:56:08.259368 systemd-logind[1176]: Session 3 logged out. Waiting for processes to exit. Jul 2 07:56:08.261251 systemd[1]: Started sshd@4-143.198.128.94:22-147.75.109.163:47126.service. Jul 2 07:56:08.262972 systemd-logind[1176]: Removed session 3. Jul 2 07:56:08.310779 sshd[1296]: Accepted publickey for core from 147.75.109.163 port 47126 ssh2: RSA SHA256:u5gbVVgBoVwlaeoYroSslnQZvGkd0BmVvsfiNtowBx0 Jul 2 07:56:08.313590 sshd[1296]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 07:56:08.321500 systemd[1]: Started session-4.scope. Jul 2 07:56:08.321981 systemd-logind[1176]: New session 4 of user core. Jul 2 07:56:08.389746 sshd[1296]: pam_unix(sshd:session): session closed for user core Jul 2 07:56:08.394831 systemd[1]: sshd@4-143.198.128.94:22-147.75.109.163:47126.service: Deactivated successfully. Jul 2 07:56:08.396346 systemd[1]: session-4.scope: Deactivated successfully. Jul 2 07:56:08.397235 systemd-logind[1176]: Session 4 logged out. Waiting for processes to exit. Jul 2 07:56:08.398983 systemd[1]: Started sshd@5-143.198.128.94:22-147.75.109.163:47134.service. Jul 2 07:56:08.400640 systemd-logind[1176]: Removed session 4. Jul 2 07:56:08.444747 sshd[1302]: Accepted publickey for core from 147.75.109.163 port 47134 ssh2: RSA SHA256:u5gbVVgBoVwlaeoYroSslnQZvGkd0BmVvsfiNtowBx0 Jul 2 07:56:08.446893 sshd[1302]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 07:56:08.454375 systemd-logind[1176]: New session 5 of user core. Jul 2 07:56:08.454815 systemd[1]: Started session-5.scope. Jul 2 07:56:08.526891 sshd[1262]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=43.163.245.219 user=root Jul 2 07:56:08.534390 sudo[1305]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Jul 2 07:56:08.534816 sudo[1305]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Jul 2 07:56:08.551011 dbus-daemon[1165]: \xd0=\x88\u0003}U: received setenforce notice (enforcing=-1190676976) Jul 2 07:56:08.555156 sudo[1305]: pam_unix(sudo:session): session closed for user root Jul 2 07:56:08.560886 sshd[1302]: pam_unix(sshd:session): session closed for user core Jul 2 07:56:08.569506 systemd[1]: Started sshd@6-143.198.128.94:22-147.75.109.163:47142.service. Jul 2 07:56:08.570471 systemd[1]: sshd@5-143.198.128.94:22-147.75.109.163:47134.service: Deactivated successfully. Jul 2 07:56:08.571442 systemd[1]: session-5.scope: Deactivated successfully. Jul 2 07:56:08.574261 systemd-logind[1176]: Session 5 logged out. Waiting for processes to exit. Jul 2 07:56:08.576343 systemd-logind[1176]: Removed session 5. Jul 2 07:56:08.616044 sshd[1308]: Accepted publickey for core from 147.75.109.163 port 47142 ssh2: RSA SHA256:u5gbVVgBoVwlaeoYroSslnQZvGkd0BmVvsfiNtowBx0 Jul 2 07:56:08.618821 sshd[1308]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 07:56:08.626564 systemd[1]: Started session-6.scope. Jul 2 07:56:08.627215 systemd-logind[1176]: New session 6 of user core. Jul 2 07:56:08.694087 sudo[1313]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Jul 2 07:56:08.694975 sudo[1313]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Jul 2 07:56:08.700590 sudo[1313]: pam_unix(sudo:session): session closed for user root Jul 2 07:56:08.708862 sudo[1312]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Jul 2 07:56:08.710486 sudo[1312]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Jul 2 07:56:08.731318 kernel: kauditd_printk_skb: 205 callbacks suppressed Jul 2 07:56:08.731753 kernel: audit: type=1305 audit(1719906968.726:218): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Jul 2 07:56:08.726000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Jul 2 07:56:08.725438 systemd[1]: Stopping audit-rules.service... Jul 2 07:56:08.731951 auditctl[1316]: No rules Jul 2 07:56:08.732101 systemd[1]: audit-rules.service: Deactivated successfully. Jul 2 07:56:08.732361 systemd[1]: Stopped audit-rules.service. Jul 2 07:56:08.726000 audit[1316]: SYSCALL arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffd1fed6260 a2=420 a3=0 items=0 ppid=1 pid=1316 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:08.740062 kernel: audit: type=1300 audit(1719906968.726:218): arch=c000003e syscall=44 success=yes exit=1056 a0=3 a1=7ffd1fed6260 a2=420 a3=0 items=0 ppid=1 pid=1316 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:08.740190 kernel: audit: type=1327 audit(1719906968.726:218): proctitle=2F7362696E2F617564697463746C002D44 Jul 2 07:56:08.726000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Jul 2 07:56:08.739923 systemd[1]: Starting audit-rules.service... Jul 2 07:56:08.731000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.744703 kernel: audit: type=1131 audit(1719906968.731:219): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.770215 augenrules[1333]: No rules Jul 2 07:56:08.771735 systemd[1]: Finished audit-rules.service. Jul 2 07:56:08.771000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.773256 sudo[1312]: pam_unix(sudo:session): session closed for user root Jul 2 07:56:08.777742 kernel: audit: type=1130 audit(1719906968.771:220): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.771000 audit[1312]: USER_END pid=1312 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.783712 kernel: audit: type=1106 audit(1719906968.771:221): pid=1312 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.784081 sshd[1308]: pam_unix(sshd:session): session closed for user core Jul 2 07:56:08.771000 audit[1312]: CRED_DISP pid=1312 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.792442 kernel: audit: type=1104 audit(1719906968.771:222): pid=1312 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.791785 systemd[1]: Started sshd@7-143.198.128.94:22-147.75.109.163:47152.service. Jul 2 07:56:08.791000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@7-143.198.128.94:22-147.75.109.163:47152 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.796132 systemd[1]: sshd@6-143.198.128.94:22-147.75.109.163:47142.service: Deactivated successfully. Jul 2 07:56:08.797152 systemd[1]: session-6.scope: Deactivated successfully. Jul 2 07:56:08.799096 systemd-logind[1176]: Session 6 logged out. Waiting for processes to exit. Jul 2 07:56:08.800773 kernel: audit: type=1130 audit(1719906968.791:223): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@7-143.198.128.94:22-147.75.109.163:47152 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.801006 systemd-logind[1176]: Removed session 6. Jul 2 07:56:08.793000 audit[1308]: USER_END pid=1308 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:08.815685 kernel: audit: type=1106 audit(1719906968.793:224): pid=1308 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:08.815842 kernel: audit: type=1104 audit(1719906968.793:225): pid=1308 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:08.793000 audit[1308]: CRED_DISP pid=1308 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:08.794000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-143.198.128.94:22-147.75.109.163:47142 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.853000 audit[1338]: USER_ACCT pid=1338 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:08.855033 sshd[1338]: Accepted publickey for core from 147.75.109.163 port 47152 ssh2: RSA SHA256:u5gbVVgBoVwlaeoYroSslnQZvGkd0BmVvsfiNtowBx0 Jul 2 07:56:08.861000 audit[1338]: CRED_ACQ pid=1338 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:08.861000 audit[1338]: SYSCALL arch=c000003e syscall=1 success=yes exit=3 a0=5 a1=7ffd9f061a00 a2=3 a3=0 items=0 ppid=1 pid=1338 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:08.861000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Jul 2 07:56:08.862507 sshd[1338]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 07:56:08.880261 systemd[1]: Started session-7.scope. Jul 2 07:56:08.880959 systemd-logind[1176]: New session 7 of user core. Jul 2 07:56:08.889000 audit[1338]: USER_START pid=1338 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:08.891000 audit[1341]: CRED_ACQ pid=1341 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:08.949446 sudo[1342]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Jul 2 07:56:08.950345 sudo[1342]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Jul 2 07:56:08.948000 audit[1342]: USER_ACCT pid=1342 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.949000 audit[1342]: CRED_REFR pid=1342 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.953000 audit[1342]: USER_START pid=1342 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:08.980400 systemd[1]: Starting coreos-metadata.service... Jul 2 07:56:09.050547 coreos-metadata[1346]: Jul 02 07:56:09.050 INFO Fetching http://169.254.169.254/metadata/v1.json: Attempt #1 Jul 2 07:56:09.074781 coreos-metadata[1346]: Jul 02 07:56:09.074 INFO Fetch successful Jul 2 07:56:09.102000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:09.102172 systemd[1]: Finished coreos-metadata.service. Jul 2 07:56:09.481000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@8-143.198.128.94:22-34.41.17.26:59286 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:09.482060 systemd[1]: Started sshd@8-143.198.128.94:22-34.41.17.26:59286.service. Jul 2 07:56:09.811147 sshd[1362]: Invalid user deploy from 34.41.17.26 port 59286 Jul 2 07:56:09.816757 sshd[1362]: pam_faillock(sshd:auth): User unknown Jul 2 07:56:09.817894 sshd[1362]: pam_unix(sshd:auth): check pass; user unknown Jul 2 07:56:09.817954 sshd[1362]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=34.41.17.26 Jul 2 07:56:09.825000 audit[1362]: USER_AUTH pid=1362 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="deploy" exe="/usr/sbin/sshd" hostname=34.41.17.26 addr=34.41.17.26 terminal=ssh res=failed' Jul 2 07:56:09.826003 sshd[1362]: pam_faillock(sshd:auth): User unknown Jul 2 07:56:10.854049 sshd[1262]: Failed password for root from 43.163.245.219 port 33632 ssh2 Jul 2 07:56:11.015438 systemd[1]: Stopped kubelet.service. Jul 2 07:56:11.016500 systemd[1]: kubelet.service: Consumed 1.652s CPU time. Jul 2 07:56:11.015000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:11.015000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:11.021417 systemd[1]: Starting kubelet.service... Jul 2 07:56:11.069966 systemd[1]: Reloading. Jul 2 07:56:11.245033 /usr/lib/systemd/system-generators/torcx-generator[1410]: time="2024-07-02T07:56:11Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.5 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.5 /var/lib/torcx/store]" Jul 2 07:56:11.245809 /usr/lib/systemd/system-generators/torcx-generator[1410]: time="2024-07-02T07:56:11Z" level=info msg="torcx already run" Jul 2 07:56:11.378989 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Jul 2 07:56:11.379222 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Jul 2 07:56:11.411055 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.527000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.529000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.529000 audit: BPF prog-id=43 op=LOAD Jul 2 07:56:11.529000 audit: BPF prog-id=37 op=UNLOAD Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit: BPF prog-id=44 op=LOAD Jul 2 07:56:11.531000 audit: BPF prog-id=27 op=UNLOAD Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit: BPF prog-id=45 op=LOAD Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.531000 audit: BPF prog-id=46 op=LOAD Jul 2 07:56:11.531000 audit: BPF prog-id=28 op=UNLOAD Jul 2 07:56:11.531000 audit: BPF prog-id=29 op=UNLOAD Jul 2 07:56:11.533000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit: BPF prog-id=47 op=LOAD Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.535000 audit: BPF prog-id=48 op=LOAD Jul 2 07:56:11.535000 audit: BPF prog-id=30 op=UNLOAD Jul 2 07:56:11.535000 audit: BPF prog-id=31 op=UNLOAD Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.541000 audit: BPF prog-id=49 op=LOAD Jul 2 07:56:11.541000 audit: BPF prog-id=38 op=UNLOAD Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit: BPF prog-id=50 op=LOAD Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.542000 audit: BPF prog-id=51 op=LOAD Jul 2 07:56:11.542000 audit: BPF prog-id=39 op=UNLOAD Jul 2 07:56:11.542000 audit: BPF prog-id=40 op=UNLOAD Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.543000 audit: BPF prog-id=52 op=LOAD Jul 2 07:56:11.544000 audit: BPF prog-id=32 op=UNLOAD Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.544000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit: BPF prog-id=53 op=LOAD Jul 2 07:56:11.545000 audit: BPF prog-id=33 op=UNLOAD Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit: BPF prog-id=54 op=LOAD Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.545000 audit: BPF prog-id=55 op=LOAD Jul 2 07:56:11.545000 audit: BPF prog-id=34 op=UNLOAD Jul 2 07:56:11.545000 audit: BPF prog-id=35 op=UNLOAD Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.547000 audit: BPF prog-id=56 op=LOAD Jul 2 07:56:11.547000 audit: BPF prog-id=41 op=UNLOAD Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:11.548000 audit: BPF prog-id=57 op=LOAD Jul 2 07:56:11.548000 audit: BPF prog-id=36 op=UNLOAD Jul 2 07:56:11.579000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@9-143.198.128.94:22-43.134.75.53:43458 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:11.580233 systemd[1]: Started sshd@9-143.198.128.94:22-43.134.75.53:43458.service. Jul 2 07:56:11.597299 systemd[1]: kubelet.service: Control process exited, code=killed, status=15/TERM Jul 2 07:56:11.597408 systemd[1]: kubelet.service: Failed with result 'signal'. Jul 2 07:56:11.598000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Jul 2 07:56:11.598786 systemd[1]: Stopped kubelet.service. Jul 2 07:56:11.602332 systemd[1]: Starting kubelet.service... Jul 2 07:56:11.735195 systemd[1]: Started kubelet.service. Jul 2 07:56:11.735000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:11.821166 kubelet[1465]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Jul 2 07:56:11.821166 kubelet[1465]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Jul 2 07:56:11.821166 kubelet[1465]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Jul 2 07:56:11.825596 kubelet[1465]: I0702 07:56:11.825505 1465 server.go:203] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Jul 2 07:56:11.950719 sshd[1362]: Failed password for invalid user deploy from 34.41.17.26 port 59286 ssh2 Jul 2 07:56:12.045585 sshd[1262]: Received disconnect from 43.163.245.219 port 33632:11: Bye Bye [preauth] Jul 2 07:56:12.045585 sshd[1262]: Disconnected from authenticating user root 43.163.245.219 port 33632 [preauth] Jul 2 07:56:12.047002 systemd[1]: sshd@1-143.198.128.94:22-43.163.245.219:33632.service: Deactivated successfully. Jul 2 07:56:12.046000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@1-143.198.128.94:22-43.163.245.219:33632 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:12.472618 kubelet[1465]: I0702 07:56:12.472556 1465 server.go:467] "Kubelet version" kubeletVersion="v1.28.7" Jul 2 07:56:12.472948 kubelet[1465]: I0702 07:56:12.472930 1465 server.go:469] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Jul 2 07:56:12.473366 kubelet[1465]: I0702 07:56:12.473349 1465 server.go:895] "Client rotation is on, will bootstrap in background" Jul 2 07:56:12.524202 kubelet[1465]: I0702 07:56:12.524136 1465 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Jul 2 07:56:12.561386 kubelet[1465]: I0702 07:56:12.561308 1465 server.go:725] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Jul 2 07:56:12.566062 kubelet[1465]: I0702 07:56:12.566003 1465 container_manager_linux.go:265] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Jul 2 07:56:12.566690 kubelet[1465]: I0702 07:56:12.566645 1465 container_manager_linux.go:270] "Creating Container Manager object based on Node Config" nodeConfig={"RuntimeCgroupsName":"","SystemCgroupsName":"","KubeletCgroupsName":"","KubeletOOMScoreAdj":-999,"ContainerRuntime":"","CgroupsPerQOS":true,"CgroupRoot":"/","CgroupDriver":"systemd","KubeletRootDir":"/var/lib/kubelet","ProtectKernelDefaults":false,"KubeReservedCgroupName":"","SystemReservedCgroupName":"","ReservedSystemCPUs":{},"EnforceNodeAllocatable":{"pods":{}},"KubeReserved":null,"SystemReserved":null,"HardEvictionThresholds":[{"Signal":"memory.available","Operator":"LessThan","Value":{"Quantity":"100Mi","Percentage":0},"GracePeriod":0,"MinReclaim":null},{"Signal":"nodefs.available","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.1},"GracePeriod":0,"MinReclaim":null},{"Signal":"nodefs.inodesFree","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.05},"GracePeriod":0,"MinReclaim":null},{"Signal":"imagefs.available","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.15},"GracePeriod":0,"MinReclaim":null}],"QOSReserved":{},"CPUManagerPolicy":"none","CPUManagerPolicyOptions":null,"TopologyManagerScope":"container","CPUManagerReconcilePeriod":10000000000,"ExperimentalMemoryManagerPolicy":"None","ExperimentalMemoryManagerReservedMemory":null,"PodPidsLimit":-1,"EnforceCPULimits":true,"CPUCFSQuotaPeriod":100000000,"TopologyManagerPolicy":"none","TopologyManagerPolicyOptions":null} Jul 2 07:56:12.568954 kubelet[1465]: I0702 07:56:12.568909 1465 topology_manager.go:138] "Creating topology manager with none policy" Jul 2 07:56:12.569189 kubelet[1465]: I0702 07:56:12.569167 1465 container_manager_linux.go:301] "Creating device plugin manager" Jul 2 07:56:12.570533 kubelet[1465]: I0702 07:56:12.570488 1465 state_mem.go:36] "Initialized new in-memory state store" Jul 2 07:56:12.573439 kubelet[1465]: I0702 07:56:12.572904 1465 kubelet.go:393] "Attempting to sync node with API server" Jul 2 07:56:12.573784 kubelet[1465]: I0702 07:56:12.573759 1465 kubelet.go:298] "Adding static pod path" path="/etc/kubernetes/manifests" Jul 2 07:56:12.574066 kubelet[1465]: I0702 07:56:12.574041 1465 kubelet.go:309] "Adding apiserver pod source" Jul 2 07:56:12.574175 kubelet[1465]: I0702 07:56:12.574161 1465 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Jul 2 07:56:12.574445 kubelet[1465]: E0702 07:56:12.574408 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:12.574538 kubelet[1465]: E0702 07:56:12.574462 1465 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:12.576911 kubelet[1465]: I0702 07:56:12.576878 1465 kuberuntime_manager.go:257] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Jul 2 07:56:12.581178 kubelet[1465]: W0702 07:56:12.581120 1465 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Jul 2 07:56:12.582762 kubelet[1465]: I0702 07:56:12.582242 1465 server.go:1232] "Started kubelet" Jul 2 07:56:12.588360 kubelet[1465]: E0702 07:56:12.588323 1465 cri_stats_provider.go:448] "Failed to get the info of the filesystem with mountpoint" err="unable to find data in memory cache" mountpoint="/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs" Jul 2 07:56:12.588647 kubelet[1465]: E0702 07:56:12.588624 1465 kubelet.go:1431] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Jul 2 07:56:12.588000 audit[1465]: AVC avc: denied { mac_admin } for pid=1465 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:12.588000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Jul 2 07:56:12.588000 audit[1465]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000b64cc0 a1=c000b54d50 a2=c000b64c90 a3=25 items=0 ppid=1 pid=1465 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/usr/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.588000 audit: PROCTITLE proctitle=2F7573722F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Jul 2 07:56:12.590154 kubelet[1465]: I0702 07:56:12.590123 1465 kubelet.go:1386] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Jul 2 07:56:12.589000 audit[1465]: AVC avc: denied { mac_admin } for pid=1465 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:12.589000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Jul 2 07:56:12.589000 audit[1465]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000c38040 a1=c000b54d68 a2=c000b64d50 a3=25 items=0 ppid=1 pid=1465 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/usr/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.589000 audit: PROCTITLE proctitle=2F7573722F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Jul 2 07:56:12.590488 kubelet[1465]: I0702 07:56:12.590208 1465 kubelet.go:1390] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Jul 2 07:56:12.590488 kubelet[1465]: I0702 07:56:12.590316 1465 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Jul 2 07:56:12.590735 kubelet[1465]: W0702 07:56:12.590706 1465 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Jul 2 07:56:12.590842 kubelet[1465]: E0702 07:56:12.590824 1465 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Jul 2 07:56:12.591043 kubelet[1465]: W0702 07:56:12.591017 1465 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.Node: nodes "143.198.128.94" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Jul 2 07:56:12.591182 kubelet[1465]: E0702 07:56:12.591165 1465 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.Node: failed to list *v1.Node: nodes "143.198.128.94" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Jul 2 07:56:12.591448 kubelet[1465]: E0702 07:56:12.591316 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de5647737a77b8", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"Starting", Message:"Starting kubelet.", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 582180792, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 582180792, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.594928 kubelet[1465]: I0702 07:56:12.594884 1465 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Jul 2 07:56:12.604199 kubelet[1465]: I0702 07:56:12.604148 1465 volume_manager.go:291] "Starting Kubelet Volume Manager" Jul 2 07:56:12.605705 kubelet[1465]: I0702 07:56:12.605671 1465 desired_state_of_world_populator.go:151] "Desired state populator starts to run" Jul 2 07:56:12.606334 kubelet[1465]: I0702 07:56:12.606308 1465 reconciler_new.go:29] "Reconciler: start to sync state" Jul 2 07:56:12.619867 kubelet[1465]: I0702 07:56:12.619809 1465 server.go:462] "Adding debug handlers to kubelet server" Jul 2 07:56:12.622839 kubelet[1465]: I0702 07:56:12.622792 1465 ratelimit.go:65] "Setting rate limiting for podresources endpoint" qps=100 burstTokens=10 Jul 2 07:56:12.623392 kubelet[1465]: I0702 07:56:12.623357 1465 server.go:233] "Starting to serve the podresources API" endpoint="unix:/var/lib/kubelet/pod-resources/kubelet.sock" Jul 2 07:56:12.626954 kubelet[1465]: E0702 07:56:12.626310 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de564773dc047b", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"InvalidDiskCapacity", Message:"invalid capacity 0 on image filesystem", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 588573819, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 588573819, time.Local), Count:1, Type:"Warning", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.627436 kubelet[1465]: E0702 07:56:12.627411 1465 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"143.198.128.94\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Jul 2 07:56:12.632464 kubelet[1465]: W0702 07:56:12.632417 1465 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Jul 2 07:56:12.633575 kubelet[1465]: E0702 07:56:12.633537 1465 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Jul 2 07:56:12.703597 kubelet[1465]: I0702 07:56:12.703557 1465 cpu_manager.go:214] "Starting CPU manager" policy="none" Jul 2 07:56:12.704465 kubelet[1465]: I0702 07:56:12.704440 1465 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Jul 2 07:56:12.705733 kubelet[1465]: E0702 07:56:12.704298 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9d8afa", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 143.198.128.94 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701919994, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701919994, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.706327 kubelet[1465]: I0702 07:56:12.706303 1465 state_mem.go:36] "Initialized new in-memory state store" Jul 2 07:56:12.709276 kubelet[1465]: E0702 07:56:12.709163 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9daa67", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 143.198.128.94 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701928039, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701928039, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.709834 kubelet[1465]: I0702 07:56:12.709809 1465 kubelet_node_status.go:70] "Attempting to register node" node="143.198.128.94" Jul 2 07:56:12.711768 kubelet[1465]: E0702 07:56:12.711644 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9dc417", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 143.198.128.94 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701934615, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701934615, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.713470 kubelet[1465]: E0702 07:56:12.713433 1465 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="143.198.128.94" Jul 2 07:56:12.713786 kubelet[1465]: I0702 07:56:12.713766 1465 policy_none.go:49] "None policy: Start" Jul 2 07:56:12.715777 kubelet[1465]: I0702 07:56:12.715732 1465 memory_manager.go:169] "Starting memorymanager" policy="None" Jul 2 07:56:12.715949 kubelet[1465]: I0702 07:56:12.715935 1465 state_mem.go:35] "Initializing new in-memory state store" Jul 2 07:56:12.717518 kubelet[1465]: E0702 07:56:12.717364 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9d8afa", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 143.198.128.94 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701919994, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 708687796, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9d8afa" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.720274 kubelet[1465]: E0702 07:56:12.720131 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9daa67", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 143.198.128.94 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701928039, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 708884328, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9daa67" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.723190 kubelet[1465]: E0702 07:56:12.722900 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9dc417", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 143.198.128.94 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701934615, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 708902975, time.Local), Count:2, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9dc417" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.728000 audit[1479]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=1479 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:12.728000 audit[1479]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7ffd4912aa90 a2=0 a3=7ffd4912aa7c items=0 ppid=1465 pid=1479 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.728000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Jul 2 07:56:12.733281 systemd[1]: Created slice kubepods.slice. Jul 2 07:56:12.735000 audit[1484]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=1484 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:12.735000 audit[1484]: SYSCALL arch=c000003e syscall=46 success=yes exit=132 a0=3 a1=7fffabfdad00 a2=0 a3=7fffabfdacec items=0 ppid=1465 pid=1484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.735000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Jul 2 07:56:12.746246 systemd[1]: Created slice kubepods-burstable.slice. Jul 2 07:56:12.752214 systemd[1]: Created slice kubepods-besteffort.slice. Jul 2 07:56:12.761069 kubelet[1465]: I0702 07:56:12.761034 1465 manager.go:471] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Jul 2 07:56:12.761384 kubelet[1465]: I0702 07:56:12.761357 1465 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Jul 2 07:56:12.761855 kubelet[1465]: I0702 07:56:12.761833 1465 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Jul 2 07:56:12.760000 audit[1465]: AVC avc: denied { mac_admin } for pid=1465 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:12.760000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Jul 2 07:56:12.760000 audit[1465]: SYSCALL arch=c000003e syscall=188 success=no exit=-22 a0=c000e062a0 a1=c000e02ff0 a2=c000e06270 a3=25 items=0 ppid=1 pid=1465 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/usr/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.760000 audit: PROCTITLE proctitle=2F7573722F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Jul 2 07:56:12.765411 kubelet[1465]: E0702 07:56:12.765375 1465 eviction_manager.go:258] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"143.198.128.94\" not found" Jul 2 07:56:12.768251 kubelet[1465]: E0702 07:56:12.768107 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477e7220fe", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeAllocatableEnforced", Message:"Updated Node Allocatable limit across pods", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 766183678, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 766183678, time.Local), Count:1, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events is forbidden: User "system:anonymous" cannot create resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.754000 audit[1486]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=1486 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:12.754000 audit[1486]: SYSCALL arch=c000003e syscall=46 success=yes exit=312 a0=3 a1=7ffffe48c080 a2=0 a3=7ffffe48c06c items=0 ppid=1465 pid=1486 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.754000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Jul 2 07:56:12.789000 audit[1491]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=1491 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:12.789000 audit[1491]: SYSCALL arch=c000003e syscall=46 success=yes exit=312 a0=3 a1=7ffd6da08870 a2=0 a3=7ffd6da0885c items=0 ppid=1465 pid=1491 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.789000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Jul 2 07:56:12.832663 kubelet[1465]: E0702 07:56:12.832555 1465 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"143.198.128.94\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="400ms" Jul 2 07:56:12.878000 audit[1496]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=1496 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:12.878000 audit[1496]: SYSCALL arch=c000003e syscall=46 success=yes exit=924 a0=3 a1=7ffdc116a540 a2=0 a3=7ffdc116a52c items=0 ppid=1465 pid=1496 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.878000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Jul 2 07:56:12.880262 kubelet[1465]: I0702 07:56:12.880145 1465 kubelet_network_linux.go:50] "Initialized iptables rules." protocol="IPv4" Jul 2 07:56:12.881000 audit[1498]: NETFILTER_CFG table=mangle:7 family=2 entries=1 op=nft_register_chain pid=1498 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:12.881000 audit[1498]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffc4545c340 a2=0 a3=7ffc4545c32c items=0 ppid=1465 pid=1498 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.881000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Jul 2 07:56:12.882000 audit[1497]: NETFILTER_CFG table=mangle:8 family=10 entries=2 op=nft_register_chain pid=1497 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:12.882000 audit[1497]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7ffe73b45c00 a2=0 a3=7ffe73b45bec items=0 ppid=1465 pid=1497 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.882000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Jul 2 07:56:12.883941 kubelet[1465]: I0702 07:56:12.883911 1465 kubelet_network_linux.go:50] "Initialized iptables rules." protocol="IPv6" Jul 2 07:56:12.884074 kubelet[1465]: I0702 07:56:12.884059 1465 status_manager.go:217] "Starting to sync pod status with apiserver" Jul 2 07:56:12.884372 kubelet[1465]: I0702 07:56:12.884355 1465 kubelet.go:2303] "Starting kubelet main sync loop" Jul 2 07:56:12.885321 kubelet[1465]: E0702 07:56:12.885285 1465 kubelet.go:2327] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Jul 2 07:56:12.885000 audit[1499]: NETFILTER_CFG table=nat:9 family=2 entries=2 op=nft_register_chain pid=1499 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:12.885000 audit[1499]: SYSCALL arch=c000003e syscall=46 success=yes exit=128 a0=3 a1=7ffca251a500 a2=0 a3=7ffca251a4ec items=0 ppid=1465 pid=1499 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.885000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Jul 2 07:56:12.887000 audit[1500]: NETFILTER_CFG table=mangle:10 family=10 entries=1 op=nft_register_chain pid=1500 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:12.887000 audit[1500]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fffe92731c0 a2=0 a3=7fffe92731ac items=0 ppid=1465 pid=1500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.887000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Jul 2 07:56:12.888852 kubelet[1465]: W0702 07:56:12.888817 1465 reflector.go:535] vendor/k8s.io/client-go/informers/factory.go:150: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Jul 2 07:56:12.888964 kubelet[1465]: E0702 07:56:12.888867 1465 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:150: Failed to watch *v1.RuntimeClass: failed to list *v1.RuntimeClass: runtimeclasses.node.k8s.io is forbidden: User "system:anonymous" cannot list resource "runtimeclasses" in API group "node.k8s.io" at the cluster scope Jul 2 07:56:12.888000 audit[1501]: NETFILTER_CFG table=filter:11 family=2 entries=1 op=nft_register_chain pid=1501 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:12.888000 audit[1501]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fffa5cfab10 a2=0 a3=7fffa5cfaafc items=0 ppid=1465 pid=1501 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.888000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Jul 2 07:56:12.889000 audit[1502]: NETFILTER_CFG table=nat:12 family=10 entries=2 op=nft_register_chain pid=1502 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:12.889000 audit[1502]: SYSCALL arch=c000003e syscall=46 success=yes exit=128 a0=3 a1=7fff31cb61b0 a2=0 a3=7fff31cb619c items=0 ppid=1465 pid=1502 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.889000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Jul 2 07:56:12.891000 audit[1503]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=1503 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:12.891000 audit[1503]: SYSCALL arch=c000003e syscall=46 success=yes exit=136 a0=3 a1=7ffebdb45130 a2=0 a3=7ffebdb4511c items=0 ppid=1465 pid=1503 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:12.891000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Jul 2 07:56:12.920566 kubelet[1465]: I0702 07:56:12.920527 1465 kubelet_node_status.go:70] "Attempting to register node" node="143.198.128.94" Jul 2 07:56:12.929700 kubelet[1465]: E0702 07:56:12.929534 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9d8afa", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 143.198.128.94 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701919994, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 920461367, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9d8afa" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.930453 kubelet[1465]: E0702 07:56:12.930418 1465 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="143.198.128.94" Jul 2 07:56:12.933893 kubelet[1465]: E0702 07:56:12.933770 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9daa67", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 143.198.128.94 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701928039, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 920476674, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9daa67" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:12.934882 sshd[1458]: Invalid user mine from 43.134.75.53 port 43458 Jul 2 07:56:12.939555 sshd[1458]: pam_faillock(sshd:auth): User unknown Jul 2 07:56:12.941446 sshd[1458]: pam_unix(sshd:auth): check pass; user unknown Jul 2 07:56:12.941509 sshd[1458]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=43.134.75.53 Jul 2 07:56:12.942244 sshd[1458]: pam_faillock(sshd:auth): User unknown Jul 2 07:56:12.941000 audit[1458]: USER_AUTH pid=1458 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="mine" exe="/usr/sbin/sshd" hostname=43.134.75.53 addr=43.134.75.53 terminal=ssh res=failed' Jul 2 07:56:12.942750 kubelet[1465]: E0702 07:56:12.942580 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9dc417", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 143.198.128.94 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701934615, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 920481616, time.Local), Count:3, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9dc417" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:13.058066 sshd[1362]: Received disconnect from 34.41.17.26 port 59286:11: Bye Bye [preauth] Jul 2 07:56:13.058066 sshd[1362]: Disconnected from invalid user deploy 34.41.17.26 port 59286 [preauth] Jul 2 07:56:13.058639 systemd[1]: sshd@8-143.198.128.94:22-34.41.17.26:59286.service: Deactivated successfully. Jul 2 07:56:13.058000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@8-143.198.128.94:22-34.41.17.26:59286 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:13.235370 kubelet[1465]: E0702 07:56:13.235313 1465 controller.go:146] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"143.198.128.94\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="800ms" Jul 2 07:56:13.332716 kubelet[1465]: I0702 07:56:13.332571 1465 kubelet_node_status.go:70] "Attempting to register node" node="143.198.128.94" Jul 2 07:56:13.335820 kubelet[1465]: E0702 07:56:13.335768 1465 kubelet_node_status.go:92] "Unable to register node with API server" err="nodes is forbidden: User \"system:anonymous\" cannot create resource \"nodes\" in API group \"\" at the cluster scope" node="143.198.128.94" Jul 2 07:56:13.336176 kubelet[1465]: E0702 07:56:13.336057 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9d8afa", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientMemory", Message:"Node 143.198.128.94 status is now: NodeHasSufficientMemory", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701919994, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 13, 332505296, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9d8afa" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:13.344560 kubelet[1465]: E0702 07:56:13.344302 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9daa67", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasNoDiskPressure", Message:"Node 143.198.128.94 status is now: NodeHasNoDiskPressure", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701928039, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 13, 332522949, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9daa67" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:13.347721 kubelet[1465]: E0702 07:56:13.347393 1465 event.go:280] Server rejected event '&v1.Event{TypeMeta:v1.TypeMeta{Kind:"", APIVersion:""}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94.17de56477a9dc417", GenerateName:"", Namespace:"default", SelfLink:"", UID:"", ResourceVersion:"", Generation:0, CreationTimestamp:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string(nil), Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, InvolvedObject:v1.ObjectReference{Kind:"Node", Namespace:"", Name:"143.198.128.94", UID:"143.198.128.94", APIVersion:"", ResourceVersion:"", FieldPath:""}, Reason:"NodeHasSufficientPID", Message:"Node 143.198.128.94 status is now: NodeHasSufficientPID", Source:v1.EventSource{Component:"kubelet", Host:"143.198.128.94"}, FirstTimestamp:time.Date(2024, time.July, 2, 7, 56, 12, 701934615, time.Local), LastTimestamp:time.Date(2024, time.July, 2, 7, 56, 13, 332526238, time.Local), Count:4, Type:"Normal", EventTime:time.Date(1, time.January, 1, 0, 0, 0, 0, time.UTC), Series:(*v1.EventSeries)(nil), Action:"", Related:(*v1.ObjectReference)(nil), ReportingController:"kubelet", ReportingInstance:"143.198.128.94"}': 'events "143.198.128.94.17de56477a9dc417" is forbidden: User "system:anonymous" cannot patch resource "events" in API group "" in the namespace "default"' (will not retry!) Jul 2 07:56:13.476375 kubelet[1465]: I0702 07:56:13.476261 1465 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Jul 2 07:56:13.575797 kubelet[1465]: E0702 07:56:13.575737 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:13.974477 kubelet[1465]: E0702 07:56:13.974404 1465 csi_plugin.go:295] Failed to initialize CSINode: error updating CSINode annotation: timed out waiting for the condition; caused by: nodes "143.198.128.94" not found Jul 2 07:56:14.046001 kubelet[1465]: E0702 07:56:14.045942 1465 nodelease.go:49] "Failed to get node when trying to set owner ref to the node lease" err="nodes \"143.198.128.94\" not found" node="143.198.128.94" Jul 2 07:56:14.137516 kubelet[1465]: I0702 07:56:14.137479 1465 kubelet_node_status.go:70] "Attempting to register node" node="143.198.128.94" Jul 2 07:56:14.155969 kubelet[1465]: I0702 07:56:14.155854 1465 kubelet_node_status.go:73] "Successfully registered node" node="143.198.128.94" Jul 2 07:56:14.193439 kubelet[1465]: I0702 07:56:14.191116 1465 kuberuntime_manager.go:1528] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Jul 2 07:56:14.193439 kubelet[1465]: I0702 07:56:14.192164 1465 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Jul 2 07:56:14.193781 env[1186]: time="2024-07-02T07:56:14.191826992Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Jul 2 07:56:14.283985 sudo[1342]: pam_unix(sudo:session): session closed for user root Jul 2 07:56:14.284000 audit[1342]: USER_END pid=1342 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:14.301036 kernel: kauditd_printk_skb: 242 callbacks suppressed Jul 2 07:56:14.301224 kernel: audit: type=1106 audit(1719906974.284:433): pid=1342 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:14.301288 kernel: audit: type=1104 audit(1719906974.284:434): pid=1342 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:14.284000 audit[1342]: CRED_DISP pid=1342 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 07:56:14.300537 sshd[1338]: pam_unix(sshd:session): session closed for user core Jul 2 07:56:14.305000 audit[1338]: USER_END pid=1338 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:14.309437 systemd[1]: sshd@7-143.198.128.94:22-147.75.109.163:47152.service: Deactivated successfully. Jul 2 07:56:14.310363 systemd[1]: session-7.scope: Deactivated successfully. Jul 2 07:56:14.305000 audit[1338]: CRED_DISP pid=1338 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:14.320016 kernel: audit: type=1106 audit(1719906974.305:435): pid=1338 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:14.320165 kernel: audit: type=1104 audit(1719906974.305:436): pid=1338 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=147.75.109.163 addr=147.75.109.163 terminal=ssh res=success' Jul 2 07:56:14.320199 kernel: audit: type=1131 audit(1719906974.305:437): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@7-143.198.128.94:22-147.75.109.163:47152 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:14.305000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@7-143.198.128.94:22-147.75.109.163:47152 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:14.325523 systemd-logind[1176]: Session 7 logged out. Waiting for processes to exit. Jul 2 07:56:14.330833 systemd-logind[1176]: Removed session 7. Jul 2 07:56:14.576989 kubelet[1465]: E0702 07:56:14.576826 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:14.576989 kubelet[1465]: I0702 07:56:14.576829 1465 apiserver.go:52] "Watching apiserver" Jul 2 07:56:14.583741 kubelet[1465]: I0702 07:56:14.583685 1465 topology_manager.go:215] "Topology Admit Handler" podUID="73d1728e-c0e8-4d2a-95ed-7e1625adf4c7" podNamespace="kube-system" podName="kube-proxy-fmw84" Jul 2 07:56:14.583967 kubelet[1465]: I0702 07:56:14.583860 1465 topology_manager.go:215] "Topology Admit Handler" podUID="cee96907-76e6-4a1d-bc82-4353fe708b6d" podNamespace="calico-system" podName="calico-node-jfw2v" Jul 2 07:56:14.583967 kubelet[1465]: I0702 07:56:14.583964 1465 topology_manager.go:215] "Topology Admit Handler" podUID="8443ca9a-9516-481d-8dfe-394059d61994" podNamespace="calico-system" podName="csi-node-driver-nxwck" Jul 2 07:56:14.584230 kubelet[1465]: E0702 07:56:14.584154 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-nxwck" podUID="8443ca9a-9516-481d-8dfe-394059d61994" Jul 2 07:56:14.600264 systemd[1]: Created slice kubepods-besteffort-podcee96907_76e6_4a1d_bc82_4353fe708b6d.slice. Jul 2 07:56:14.610097 kubelet[1465]: I0702 07:56:14.610038 1465 desired_state_of_world_populator.go:159] "Finished populating initial desired state of world" Jul 2 07:56:14.622620 systemd[1]: Created slice kubepods-besteffort-pod73d1728e_c0e8_4d2a_95ed_7e1625adf4c7.slice. Jul 2 07:56:14.626403 kubelet[1465]: I0702 07:56:14.626366 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/8443ca9a-9516-481d-8dfe-394059d61994-socket-dir\") pod \"csi-node-driver-nxwck\" (UID: \"8443ca9a-9516-481d-8dfe-394059d61994\") " pod="calico-system/csi-node-driver-nxwck" Jul 2 07:56:14.626742 kubelet[1465]: I0702 07:56:14.626717 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-lib-modules\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.626902 kubelet[1465]: I0702 07:56:14.626884 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-var-run-calico\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.627022 kubelet[1465]: I0702 07:56:14.627008 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-cni-bin-dir\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.627192 kubelet[1465]: I0702 07:56:14.627172 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-policysync\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.627326 kubelet[1465]: I0702 07:56:14.627309 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/cee96907-76e6-4a1d-bc82-4353fe708b6d-tigera-ca-bundle\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.627675 kubelet[1465]: I0702 07:56:14.627644 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/cee96907-76e6-4a1d-bc82-4353fe708b6d-node-certs\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.627874 kubelet[1465]: I0702 07:56:14.627857 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/8443ca9a-9516-481d-8dfe-394059d61994-registration-dir\") pod \"csi-node-driver-nxwck\" (UID: \"8443ca9a-9516-481d-8dfe-394059d61994\") " pod="calico-system/csi-node-driver-nxwck" Jul 2 07:56:14.628011 kubelet[1465]: I0702 07:56:14.627993 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/73d1728e-c0e8-4d2a-95ed-7e1625adf4c7-kube-proxy\") pod \"kube-proxy-fmw84\" (UID: \"73d1728e-c0e8-4d2a-95ed-7e1625adf4c7\") " pod="kube-system/kube-proxy-fmw84" Jul 2 07:56:14.628148 kubelet[1465]: I0702 07:56:14.628132 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/73d1728e-c0e8-4d2a-95ed-7e1625adf4c7-lib-modules\") pod \"kube-proxy-fmw84\" (UID: \"73d1728e-c0e8-4d2a-95ed-7e1625adf4c7\") " pod="kube-system/kube-proxy-fmw84" Jul 2 07:56:14.628252 kubelet[1465]: I0702 07:56:14.628240 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-st9dp\" (UniqueName: \"kubernetes.io/projected/73d1728e-c0e8-4d2a-95ed-7e1625adf4c7-kube-api-access-st9dp\") pod \"kube-proxy-fmw84\" (UID: \"73d1728e-c0e8-4d2a-95ed-7e1625adf4c7\") " pod="kube-system/kube-proxy-fmw84" Jul 2 07:56:14.628359 kubelet[1465]: I0702 07:56:14.628346 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-xtables-lock\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.628485 kubelet[1465]: I0702 07:56:14.628467 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-var-lib-calico\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.628592 kubelet[1465]: I0702 07:56:14.628576 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-cni-log-dir\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.628744 kubelet[1465]: I0702 07:56:14.628726 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-6ps9h\" (UniqueName: \"kubernetes.io/projected/cee96907-76e6-4a1d-bc82-4353fe708b6d-kube-api-access-6ps9h\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.628845 kubelet[1465]: I0702 07:56:14.628829 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-2wp9s\" (UniqueName: \"kubernetes.io/projected/8443ca9a-9516-481d-8dfe-394059d61994-kube-api-access-2wp9s\") pod \"csi-node-driver-nxwck\" (UID: \"8443ca9a-9516-481d-8dfe-394059d61994\") " pod="calico-system/csi-node-driver-nxwck" Jul 2 07:56:14.628967 kubelet[1465]: I0702 07:56:14.628953 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-flexvol-driver-host\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.629065 kubelet[1465]: I0702 07:56:14.629054 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/8443ca9a-9516-481d-8dfe-394059d61994-varrun\") pod \"csi-node-driver-nxwck\" (UID: \"8443ca9a-9516-481d-8dfe-394059d61994\") " pod="calico-system/csi-node-driver-nxwck" Jul 2 07:56:14.629164 kubelet[1465]: I0702 07:56:14.629150 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/8443ca9a-9516-481d-8dfe-394059d61994-kubelet-dir\") pod \"csi-node-driver-nxwck\" (UID: \"8443ca9a-9516-481d-8dfe-394059d61994\") " pod="calico-system/csi-node-driver-nxwck" Jul 2 07:56:14.629331 kubelet[1465]: I0702 07:56:14.629313 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/73d1728e-c0e8-4d2a-95ed-7e1625adf4c7-xtables-lock\") pod \"kube-proxy-fmw84\" (UID: \"73d1728e-c0e8-4d2a-95ed-7e1625adf4c7\") " pod="kube-system/kube-proxy-fmw84" Jul 2 07:56:14.629446 kubelet[1465]: I0702 07:56:14.629433 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/cee96907-76e6-4a1d-bc82-4353fe708b6d-cni-net-dir\") pod \"calico-node-jfw2v\" (UID: \"cee96907-76e6-4a1d-bc82-4353fe708b6d\") " pod="calico-system/calico-node-jfw2v" Jul 2 07:56:14.735134 kubelet[1465]: E0702 07:56:14.735101 1465 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 07:56:14.735373 kubelet[1465]: W0702 07:56:14.735350 1465 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 07:56:14.735519 kubelet[1465]: E0702 07:56:14.735499 1465 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 07:56:14.744357 kubelet[1465]: E0702 07:56:14.744319 1465 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 07:56:14.744554 kubelet[1465]: W0702 07:56:14.744534 1465 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 07:56:14.744700 kubelet[1465]: E0702 07:56:14.744686 1465 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 07:56:14.780686 kubelet[1465]: E0702 07:56:14.780636 1465 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 07:56:14.780686 kubelet[1465]: W0702 07:56:14.780667 1465 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 07:56:14.780929 kubelet[1465]: E0702 07:56:14.780706 1465 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 07:56:14.781930 kubelet[1465]: E0702 07:56:14.781906 1465 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 07:56:14.782107 kubelet[1465]: W0702 07:56:14.782090 1465 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 07:56:14.782209 kubelet[1465]: E0702 07:56:14.782195 1465 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 07:56:14.789379 kubelet[1465]: E0702 07:56:14.789341 1465 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 07:56:14.789589 kubelet[1465]: W0702 07:56:14.789566 1465 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 07:56:14.789831 kubelet[1465]: E0702 07:56:14.789814 1465 plugins.go:723] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 07:56:14.811158 sshd[1458]: Failed password for invalid user mine from 43.134.75.53 port 43458 ssh2 Jul 2 07:56:14.918952 kubelet[1465]: E0702 07:56:14.918820 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:14.921551 env[1186]: time="2024-07-02T07:56:14.920845183Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-jfw2v,Uid:cee96907-76e6-4a1d-bc82-4353fe708b6d,Namespace:calico-system,Attempt:0,}" Jul 2 07:56:14.935293 kubelet[1465]: E0702 07:56:14.935243 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:14.936477 env[1186]: time="2024-07-02T07:56:14.936399330Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-fmw84,Uid:73d1728e-c0e8-4d2a-95ed-7e1625adf4c7,Namespace:kube-system,Attempt:0,}" Jul 2 07:56:15.320429 sshd[1458]: Received disconnect from 43.134.75.53 port 43458:11: Bye Bye [preauth] Jul 2 07:56:15.320429 sshd[1458]: Disconnected from invalid user mine 43.134.75.53 port 43458 [preauth] Jul 2 07:56:15.322492 systemd[1]: sshd@9-143.198.128.94:22-43.134.75.53:43458.service: Deactivated successfully. Jul 2 07:56:15.322000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@9-143.198.128.94:22-43.134.75.53:43458 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:15.328752 kernel: audit: type=1131 audit(1719906975.322:438): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@9-143.198.128.94:22-43.134.75.53:43458 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:15.544969 systemd-timesyncd[1132]: Timed out waiting for reply from 64.6.144.6:123 (0.flatcar.pool.ntp.org). Jul 2 07:56:16.345219 systemd-resolved[1131]: Clock change detected. Flushing caches. Jul 2 07:56:16.345775 systemd-timesyncd[1132]: Contacted time server 205.233.73.201:123 (0.flatcar.pool.ntp.org). Jul 2 07:56:16.346122 systemd-timesyncd[1132]: Initial clock synchronization to Tue 2024-07-02 07:56:16.345020 UTC. Jul 2 07:56:16.374034 kubelet[1465]: E0702 07:56:16.373869 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:16.478814 env[1186]: time="2024-07-02T07:56:16.478731890Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:16.482513 env[1186]: time="2024-07-02T07:56:16.482457406Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:16.484424 env[1186]: time="2024-07-02T07:56:16.484341396Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:6270bb605e12e581514ada5fd5b3216f727db55dc87d5889c790e4c760683fee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:16.486503 env[1186]: time="2024-07-02T07:56:16.486422743Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:6270bb605e12e581514ada5fd5b3216f727db55dc87d5889c790e4c760683fee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:16.487593 env[1186]: time="2024-07-02T07:56:16.487546442Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:16.491150 env[1186]: time="2024-07-02T07:56:16.491088463Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:16.492035 env[1186]: time="2024-07-02T07:56:16.491776579Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:16.498138 env[1186]: time="2024-07-02T07:56:16.498045578Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:16.531616 env[1186]: time="2024-07-02T07:56:16.531283583Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 07:56:16.531616 env[1186]: time="2024-07-02T07:56:16.531364737Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 07:56:16.531616 env[1186]: time="2024-07-02T07:56:16.531377413Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 07:56:16.532654 env[1186]: time="2024-07-02T07:56:16.532494117Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15 pid=1530 runtime=io.containerd.runc.v2 Jul 2 07:56:16.534540 env[1186]: time="2024-07-02T07:56:16.534399176Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 07:56:16.534660 env[1186]: time="2024-07-02T07:56:16.534565682Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 07:56:16.534660 env[1186]: time="2024-07-02T07:56:16.534635788Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 07:56:16.534888 env[1186]: time="2024-07-02T07:56:16.534835013Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/a66cdaab0aced9a3e3225aecda7dbfd27281bf2309c8f0a61d215c3778dc145f pid=1531 runtime=io.containerd.runc.v2 Jul 2 07:56:16.542144 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3897427034.mount: Deactivated successfully. Jul 2 07:56:16.564109 systemd[1]: Started cri-containerd-b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15.scope. Jul 2 07:56:16.586414 systemd[1]: run-containerd-runc-k8s.io-a66cdaab0aced9a3e3225aecda7dbfd27281bf2309c8f0a61d215c3778dc145f-runc.nBJXf8.mount: Deactivated successfully. Jul 2 07:56:16.623612 systemd[1]: Started cri-containerd-a66cdaab0aced9a3e3225aecda7dbfd27281bf2309c8f0a61d215c3778dc145f.scope. Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.647433 kernel: audit: type=1400 audit(1719906976.639:439): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.647601 kernel: audit: type=1400 audit(1719906976.639:440): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653119 kernel: audit: type=1400 audit(1719906976.639:441): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.663187 kernel: audit: type=1400 audit(1719906976.639:442): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.639000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.643000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.643000 audit: BPF prog-id=58 op=LOAD Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=1530 pid=1549 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.653000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230356634363737666134333165346131396333616661306431316236 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=1530 pid=1549 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.653000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230356634363737666134333165346131396333616661306431316236 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit: BPF prog-id=59 op=LOAD Jul 2 07:56:16.653000 audit[1549]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c0001ba940 items=0 ppid=1530 pid=1549 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.653000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230356634363737666134333165346131396333616661306431316236 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit: BPF prog-id=60 op=LOAD Jul 2 07:56:16.653000 audit[1549]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c0001ba988 items=0 ppid=1530 pid=1549 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.653000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230356634363737666134333165346131396333616661306431316236 Jul 2 07:56:16.653000 audit: BPF prog-id=60 op=UNLOAD Jul 2 07:56:16.653000 audit: BPF prog-id=59 op=UNLOAD Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { perfmon } for pid=1549 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit[1549]: AVC avc: denied { bpf } for pid=1549 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.653000 audit: BPF prog-id=61 op=LOAD Jul 2 07:56:16.653000 audit[1549]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c0001bad98 items=0 ppid=1530 pid=1549 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.653000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6230356634363737666134333165346131396333616661306431316236 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit: BPF prog-id=62 op=LOAD Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000117c48 a2=10 a3=1c items=0 ppid=1531 pid=1554 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.675000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6136366364616162306163656439613365333232356165636461376462 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001176b0 a2=3c a3=c items=0 ppid=1531 pid=1554 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.675000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6136366364616162306163656439613365333232356165636461376462 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.675000 audit: BPF prog-id=63 op=LOAD Jul 2 07:56:16.675000 audit[1554]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001179d8 a2=78 a3=c00032aae0 items=0 ppid=1531 pid=1554 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.675000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6136366364616162306163656439613365333232356165636461376462 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit: BPF prog-id=64 op=LOAD Jul 2 07:56:16.676000 audit[1554]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000117770 a2=78 a3=c00032ab28 items=0 ppid=1531 pid=1554 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.676000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6136366364616162306163656439613365333232356165636461376462 Jul 2 07:56:16.676000 audit: BPF prog-id=64 op=UNLOAD Jul 2 07:56:16.676000 audit: BPF prog-id=63 op=UNLOAD Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { perfmon } for pid=1554 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit[1554]: AVC avc: denied { bpf } for pid=1554 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:16.676000 audit: BPF prog-id=65 op=LOAD Jul 2 07:56:16.676000 audit[1554]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000117c30 a2=78 a3=c00032af38 items=0 ppid=1531 pid=1554 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:16.676000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6136366364616162306163656439613365333232356165636461376462 Jul 2 07:56:16.708140 env[1186]: time="2024-07-02T07:56:16.708017817Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-jfw2v,Uid:cee96907-76e6-4a1d-bc82-4353fe708b6d,Namespace:calico-system,Attempt:0,} returns sandbox id \"b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15\"" Jul 2 07:56:16.710467 kubelet[1465]: E0702 07:56:16.710002 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:16.712996 env[1186]: time="2024-07-02T07:56:16.712940927Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0\"" Jul 2 07:56:16.714860 env[1186]: time="2024-07-02T07:56:16.714799669Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-fmw84,Uid:73d1728e-c0e8-4d2a-95ed-7e1625adf4c7,Namespace:kube-system,Attempt:0,} returns sandbox id \"a66cdaab0aced9a3e3225aecda7dbfd27281bf2309c8f0a61d215c3778dc145f\"" Jul 2 07:56:16.716345 kubelet[1465]: E0702 07:56:16.716281 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:17.375221 kubelet[1465]: E0702 07:56:17.375159 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:17.682724 kubelet[1465]: E0702 07:56:17.682296 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-nxwck" podUID="8443ca9a-9516-481d-8dfe-394059d61994" Jul 2 07:56:17.964870 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3010108969.mount: Deactivated successfully. Jul 2 07:56:18.167099 env[1186]: time="2024-07-02T07:56:18.166981323Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:18.171664 env[1186]: time="2024-07-02T07:56:18.171600149Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:587b28ecfc62e2a60919e6a39f9b25be37c77da99d8c84252716fa3a49a171b9,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:18.174543 env[1186]: time="2024-07-02T07:56:18.174495437Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:18.176348 env[1186]: time="2024-07-02T07:56:18.176292280Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:e57c9db86f1cee1ae6f41257eed1ee2f363783177809217a2045502a09cf7cee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:18.177216 env[1186]: time="2024-07-02T07:56:18.177160044Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0\" returns image reference \"sha256:587b28ecfc62e2a60919e6a39f9b25be37c77da99d8c84252716fa3a49a171b9\"" Jul 2 07:56:18.179791 env[1186]: time="2024-07-02T07:56:18.179739632Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.28.11\"" Jul 2 07:56:18.183198 env[1186]: time="2024-07-02T07:56:18.183150956Z" level=info msg="CreateContainer within sandbox \"b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Jul 2 07:56:18.202263 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2608215239.mount: Deactivated successfully. Jul 2 07:56:18.212515 env[1186]: time="2024-07-02T07:56:18.212433930Z" level=info msg="CreateContainer within sandbox \"b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"68b446224c364c9726fa72c67bf28b6777c745a7d880fa0ac82dfc43839b83dd\"" Jul 2 07:56:18.215803 env[1186]: time="2024-07-02T07:56:18.215664360Z" level=info msg="StartContainer for \"68b446224c364c9726fa72c67bf28b6777c745a7d880fa0ac82dfc43839b83dd\"" Jul 2 07:56:18.246601 systemd[1]: Started cri-containerd-68b446224c364c9726fa72c67bf28b6777c745a7d880fa0ac82dfc43839b83dd.scope. Jul 2 07:56:18.266000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@10-143.198.128.94:22-185.228.235.52:42982 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:18.266022 systemd[1]: Started sshd@10-143.198.128.94:22-185.228.235.52:42982.service. Jul 2 07:56:18.288000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.288000 audit[1604]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001456b0 a2=3c a3=7ff3045d91e8 items=0 ppid=1530 pid=1604 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:18.288000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638623434363232346333363463393732366661373263363762663238 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.289000 audit: BPF prog-id=66 op=LOAD Jul 2 07:56:18.289000 audit[1604]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001459d8 a2=78 a3=c0001f5e98 items=0 ppid=1530 pid=1604 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:18.289000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638623434363232346333363463393732366661373263363762663238 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.290000 audit: BPF prog-id=67 op=LOAD Jul 2 07:56:18.290000 audit[1604]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000145770 a2=78 a3=c0001f5ee8 items=0 ppid=1530 pid=1604 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:18.290000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638623434363232346333363463393732366661373263363762663238 Jul 2 07:56:18.290000 audit: BPF prog-id=67 op=UNLOAD Jul 2 07:56:18.291000 audit: BPF prog-id=66 op=UNLOAD Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { perfmon } for pid=1604 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit[1604]: AVC avc: denied { bpf } for pid=1604 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:18.291000 audit: BPF prog-id=68 op=LOAD Jul 2 07:56:18.291000 audit[1604]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000145c30 a2=78 a3=c0001f5f78 items=0 ppid=1530 pid=1604 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:18.291000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638623434363232346333363463393732366661373263363762663238 Jul 2 07:56:18.320379 env[1186]: time="2024-07-02T07:56:18.320313755Z" level=info msg="StartContainer for \"68b446224c364c9726fa72c67bf28b6777c745a7d880fa0ac82dfc43839b83dd\" returns successfully" Jul 2 07:56:18.338050 systemd[1]: cri-containerd-68b446224c364c9726fa72c67bf28b6777c745a7d880fa0ac82dfc43839b83dd.scope: Deactivated successfully. Jul 2 07:56:18.342000 audit: BPF prog-id=68 op=UNLOAD Jul 2 07:56:18.375792 kubelet[1465]: E0702 07:56:18.375726 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:18.421835 env[1186]: time="2024-07-02T07:56:18.421776285Z" level=info msg="shim disconnected" id=68b446224c364c9726fa72c67bf28b6777c745a7d880fa0ac82dfc43839b83dd Jul 2 07:56:18.421835 env[1186]: time="2024-07-02T07:56:18.421826969Z" level=warning msg="cleaning up after shim disconnected" id=68b446224c364c9726fa72c67bf28b6777c745a7d880fa0ac82dfc43839b83dd namespace=k8s.io Jul 2 07:56:18.421835 env[1186]: time="2024-07-02T07:56:18.421837526Z" level=info msg="cleaning up dead shim" Jul 2 07:56:18.434270 env[1186]: time="2024-07-02T07:56:18.434209117Z" level=warning msg="cleanup warnings time=\"2024-07-02T07:56:18Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1646 runtime=io.containerd.runc.v2\n" Jul 2 07:56:18.700393 kubelet[1465]: E0702 07:56:18.700169 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:18.896377 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-68b446224c364c9726fa72c67bf28b6777c745a7d880fa0ac82dfc43839b83dd-rootfs.mount: Deactivated successfully. Jul 2 07:56:19.376543 kubelet[1465]: E0702 07:56:19.376483 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:19.683857 kubelet[1465]: E0702 07:56:19.682556 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-nxwck" podUID="8443ca9a-9516-481d-8dfe-394059d61994" Jul 2 07:56:19.811843 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount323938232.mount: Deactivated successfully. Jul 2 07:56:20.377238 kubelet[1465]: E0702 07:56:20.377192 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:20.692845 env[1186]: time="2024-07-02T07:56:20.692676783Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.28.11,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:20.695669 env[1186]: time="2024-07-02T07:56:20.695608263Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:a3eea76ce409e136fe98838847fda217ce169eb7d1ceef544671d75f68e5a29c,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:20.699051 env[1186]: time="2024-07-02T07:56:20.698964329Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.28.11,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:20.710247 env[1186]: time="2024-07-02T07:56:20.710188314Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:ae4b671d4cfc23dd75030bb4490207cd939b3b11a799bcb4119698cd712eb5b4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:20.710824 env[1186]: time="2024-07-02T07:56:20.710776720Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.28.11\" returns image reference \"sha256:a3eea76ce409e136fe98838847fda217ce169eb7d1ceef544671d75f68e5a29c\"" Jul 2 07:56:20.714113 env[1186]: time="2024-07-02T07:56:20.713673230Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.28.0\"" Jul 2 07:56:20.714463 env[1186]: time="2024-07-02T07:56:20.714418675Z" level=info msg="CreateContainer within sandbox \"a66cdaab0aced9a3e3225aecda7dbfd27281bf2309c8f0a61d215c3778dc145f\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Jul 2 07:56:20.731313 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3689877576.mount: Deactivated successfully. Jul 2 07:56:20.737608 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1836921691.mount: Deactivated successfully. Jul 2 07:56:20.744895 env[1186]: time="2024-07-02T07:56:20.744810567Z" level=info msg="CreateContainer within sandbox \"a66cdaab0aced9a3e3225aecda7dbfd27281bf2309c8f0a61d215c3778dc145f\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"c86c07c36f460b1941aeb423801a51b47b2706b38ef6092330bd1ace7bc8c78c\"" Jul 2 07:56:20.746132 env[1186]: time="2024-07-02T07:56:20.746093527Z" level=info msg="StartContainer for \"c86c07c36f460b1941aeb423801a51b47b2706b38ef6092330bd1ace7bc8c78c\"" Jul 2 07:56:20.780802 systemd[1]: Started cri-containerd-c86c07c36f460b1941aeb423801a51b47b2706b38ef6092330bd1ace7bc8c78c.scope. Jul 2 07:56:20.835499 kernel: kauditd_printk_skb: 155 callbacks suppressed Jul 2 07:56:20.835702 kernel: audit: type=1400 audit(1719906980.822:483): avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.835753 kernel: audit: type=1300 audit(1719906980.822:483): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001456b0 a2=3c a3=7ff25c7a84d8 items=0 ppid=1531 pid=1671 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001456b0 a2=3c a3=7ff25c7a84d8 items=0 ppid=1531 pid=1671 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.822000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6338366330376333366634363062313934316165623432333830316135 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.847406 kernel: audit: type=1327 audit(1719906980.822:483): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6338366330376333366634363062313934316165623432333830316135 Jul 2 07:56:20.847599 kernel: audit: type=1400 audit(1719906980.822:484): avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.852532 kernel: audit: type=1400 audit(1719906980.822:484): avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.853142 kernel: audit: type=1400 audit(1719906980.822:484): avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.870314 kernel: audit: type=1400 audit(1719906980.822:484): avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.870486 kernel: audit: type=1400 audit(1719906980.822:484): avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.883526 kernel: audit: type=1400 audit(1719906980.822:484): avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.883698 kernel: audit: type=1400 audit(1719906980.822:484): avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.822000 audit: BPF prog-id=69 op=LOAD Jul 2 07:56:20.822000 audit[1671]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001459d8 a2=78 a3=c000218948 items=0 ppid=1531 pid=1671 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.822000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6338366330376333366634363062313934316165623432333830316135 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.824000 audit: BPF prog-id=70 op=LOAD Jul 2 07:56:20.824000 audit[1671]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000145770 a2=78 a3=c000218998 items=0 ppid=1531 pid=1671 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.824000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6338366330376333366634363062313934316165623432333830316135 Jul 2 07:56:20.828000 audit: BPF prog-id=70 op=UNLOAD Jul 2 07:56:20.828000 audit: BPF prog-id=69 op=UNLOAD Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { perfmon } for pid=1671 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit[1671]: AVC avc: denied { bpf } for pid=1671 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:20.828000 audit: BPF prog-id=71 op=LOAD Jul 2 07:56:20.828000 audit[1671]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000145c30 a2=78 a3=c000218a28 items=0 ppid=1531 pid=1671 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.828000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6338366330376333366634363062313934316165623432333830316135 Jul 2 07:56:20.894689 env[1186]: time="2024-07-02T07:56:20.892293281Z" level=info msg="StartContainer for \"c86c07c36f460b1941aeb423801a51b47b2706b38ef6092330bd1ace7bc8c78c\" returns successfully" Jul 2 07:56:20.985000 audit[1721]: NETFILTER_CFG table=mangle:14 family=10 entries=1 op=nft_register_chain pid=1721 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:20.985000 audit[1721]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffddf0ab3c0 a2=0 a3=7ffddf0ab3ac items=0 ppid=1682 pid=1721 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.985000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Jul 2 07:56:20.988000 audit[1722]: NETFILTER_CFG table=nat:15 family=10 entries=1 op=nft_register_chain pid=1722 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:20.988000 audit[1722]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff8ff4d2d0 a2=0 a3=7fff8ff4d2bc items=0 ppid=1682 pid=1722 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.988000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Jul 2 07:56:20.989000 audit[1723]: NETFILTER_CFG table=mangle:16 family=2 entries=1 op=nft_register_chain pid=1723 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:20.989000 audit[1723]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7fff1a085c30 a2=0 a3=7fff1a085c1c items=0 ppid=1682 pid=1723 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.989000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Jul 2 07:56:20.991000 audit[1724]: NETFILTER_CFG table=filter:17 family=10 entries=1 op=nft_register_chain pid=1724 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:20.991000 audit[1724]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffd099c99b0 a2=0 a3=7ffd099c999c items=0 ppid=1682 pid=1724 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.991000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Jul 2 07:56:20.992000 audit[1725]: NETFILTER_CFG table=nat:18 family=2 entries=1 op=nft_register_chain pid=1725 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:20.992000 audit[1725]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffc084b1b10 a2=0 a3=7ffc084b1afc items=0 ppid=1682 pid=1725 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.992000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Jul 2 07:56:20.994000 audit[1726]: NETFILTER_CFG table=filter:19 family=2 entries=1 op=nft_register_chain pid=1726 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:20.994000 audit[1726]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffe4416d400 a2=0 a3=7ffe4416d3ec items=0 ppid=1682 pid=1726 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:20.994000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Jul 2 07:56:21.087000 audit[1727]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=1727 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.087000 audit[1727]: SYSCALL arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7ffc97ef00a0 a2=0 a3=7ffc97ef008c items=0 ppid=1682 pid=1727 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.087000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Jul 2 07:56:21.092000 audit[1729]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=1729 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.092000 audit[1729]: SYSCALL arch=c000003e syscall=46 success=yes exit=752 a0=3 a1=7ffd01a1bc90 a2=0 a3=7ffd01a1bc7c items=0 ppid=1682 pid=1729 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.092000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Jul 2 07:56:21.097000 audit[1732]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=1732 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.097000 audit[1732]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffdd19d7fa0 a2=0 a3=7ffdd19d7f8c items=0 ppid=1682 pid=1732 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.097000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Jul 2 07:56:21.100000 audit[1733]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=1733 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.100000 audit[1733]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff02348c30 a2=0 a3=7fff02348c1c items=0 ppid=1682 pid=1733 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.100000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Jul 2 07:56:21.104000 audit[1735]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=1735 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.104000 audit[1735]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffc21e020d0 a2=0 a3=7ffc21e020bc items=0 ppid=1682 pid=1735 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.104000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Jul 2 07:56:21.106000 audit[1736]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=1736 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.106000 audit[1736]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff8c919c40 a2=0 a3=7fff8c919c2c items=0 ppid=1682 pid=1736 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.106000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Jul 2 07:56:21.110000 audit[1738]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=1738 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.110000 audit[1738]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffe73b18ce0 a2=0 a3=7ffe73b18ccc items=0 ppid=1682 pid=1738 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.110000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Jul 2 07:56:21.117000 audit[1741]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=1741 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.117000 audit[1741]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffd85ca2770 a2=0 a3=7ffd85ca275c items=0 ppid=1682 pid=1741 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.117000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Jul 2 07:56:21.118000 audit[1742]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=1742 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.118000 audit[1742]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffc77851270 a2=0 a3=7ffc7785125c items=0 ppid=1682 pid=1742 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.118000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Jul 2 07:56:21.122000 audit[1744]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=1744 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.122000 audit[1744]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffef38de9d0 a2=0 a3=7ffef38de9bc items=0 ppid=1682 pid=1744 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.122000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Jul 2 07:56:21.124000 audit[1745]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=1745 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.124000 audit[1745]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffc7ab62390 a2=0 a3=7ffc7ab6237c items=0 ppid=1682 pid=1745 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.124000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Jul 2 07:56:21.127000 audit[1747]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=1747 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.127000 audit[1747]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffd7b659790 a2=0 a3=7ffd7b65977c items=0 ppid=1682 pid=1747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.127000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Jul 2 07:56:21.132000 audit[1750]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=1750 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.132000 audit[1750]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fffd50bbef0 a2=0 a3=7fffd50bbedc items=0 ppid=1682 pid=1750 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.132000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Jul 2 07:56:21.137000 audit[1753]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=1753 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.137000 audit[1753]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffd327f14a0 a2=0 a3=7ffd327f148c items=0 ppid=1682 pid=1753 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.137000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Jul 2 07:56:21.139000 audit[1754]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=1754 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.139000 audit[1754]: SYSCALL arch=c000003e syscall=46 success=yes exit=96 a0=3 a1=7ffe8407ad50 a2=0 a3=7ffe8407ad3c items=0 ppid=1682 pid=1754 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.139000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Jul 2 07:56:21.143000 audit[1756]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=1756 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.143000 audit[1756]: SYSCALL arch=c000003e syscall=46 success=yes exit=600 a0=3 a1=7ffc5965eb20 a2=0 a3=7ffc5965eb0c items=0 ppid=1682 pid=1756 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.143000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Jul 2 07:56:21.174000 audit[1761]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=1761 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.174000 audit[1761]: SYSCALL arch=c000003e syscall=46 success=yes exit=608 a0=3 a1=7ffedd30a550 a2=0 a3=7ffedd30a53c items=0 ppid=1682 pid=1761 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.174000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Jul 2 07:56:21.176000 audit[1762]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=1762 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.176000 audit[1762]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff10b65a30 a2=0 a3=7fff10b65a1c items=0 ppid=1682 pid=1762 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.176000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Jul 2 07:56:21.180000 audit[1764]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=1764 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 07:56:21.180000 audit[1764]: SYSCALL arch=c000003e syscall=46 success=yes exit=612 a0=3 a1=7ffd12c93420 a2=0 a3=7ffd12c9340c items=0 ppid=1682 pid=1764 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.180000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Jul 2 07:56:21.199000 audit[1770]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=1770 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:21.199000 audit[1770]: SYSCALL arch=c000003e syscall=46 success=yes exit=2932 a0=3 a1=7fff5cf74060 a2=0 a3=7fff5cf7404c items=0 ppid=1682 pid=1770 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.199000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:21.232000 audit[1770]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=1770 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:21.232000 audit[1770]: SYSCALL arch=c000003e syscall=46 success=yes exit=25476 a0=3 a1=7fff5cf74060 a2=0 a3=7fff5cf7404c items=0 ppid=1682 pid=1770 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.232000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:21.253000 audit[1778]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=1778 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.253000 audit[1778]: SYSCALL arch=c000003e syscall=46 success=yes exit=108 a0=3 a1=7fff2de387d0 a2=0 a3=7fff2de387bc items=0 ppid=1682 pid=1778 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.253000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Jul 2 07:56:21.258000 audit[1780]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=1780 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.258000 audit[1780]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffd9c3fa3a0 a2=0 a3=7ffd9c3fa38c items=0 ppid=1682 pid=1780 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.258000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Jul 2 07:56:21.264000 audit[1783]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=1783 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.264000 audit[1783]: SYSCALL arch=c000003e syscall=46 success=yes exit=836 a0=3 a1=7ffd22491240 a2=0 a3=7ffd2249122c items=0 ppid=1682 pid=1783 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.264000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Jul 2 07:56:21.266000 audit[1784]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=1784 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.266000 audit[1784]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffc328fd000 a2=0 a3=7ffc328fcfec items=0 ppid=1682 pid=1784 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.266000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Jul 2 07:56:21.271000 audit[1786]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=1786 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.271000 audit[1786]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7fff18005e80 a2=0 a3=7fff18005e6c items=0 ppid=1682 pid=1786 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.271000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Jul 2 07:56:21.273000 audit[1787]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=1787 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.273000 audit[1787]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffe8c61e6b0 a2=0 a3=7ffe8c61e69c items=0 ppid=1682 pid=1787 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.273000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Jul 2 07:56:21.277000 audit[1789]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=1789 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.277000 audit[1789]: SYSCALL arch=c000003e syscall=46 success=yes exit=744 a0=3 a1=7ffd62471be0 a2=0 a3=7ffd62471bcc items=0 ppid=1682 pid=1789 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.277000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Jul 2 07:56:21.283000 audit[1792]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=1792 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.283000 audit[1792]: SYSCALL arch=c000003e syscall=46 success=yes exit=828 a0=3 a1=7ffd2618d340 a2=0 a3=7ffd2618d32c items=0 ppid=1682 pid=1792 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.283000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Jul 2 07:56:21.285000 audit[1793]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=1793 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.285000 audit[1793]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffcb4333730 a2=0 a3=7ffcb433371c items=0 ppid=1682 pid=1793 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.285000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Jul 2 07:56:21.289000 audit[1795]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=1795 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.289000 audit[1795]: SYSCALL arch=c000003e syscall=46 success=yes exit=528 a0=3 a1=7ffffa80de30 a2=0 a3=7ffffa80de1c items=0 ppid=1682 pid=1795 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.289000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Jul 2 07:56:21.291000 audit[1796]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=1796 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.291000 audit[1796]: SYSCALL arch=c000003e syscall=46 success=yes exit=104 a0=3 a1=7ffdd712a370 a2=0 a3=7ffdd712a35c items=0 ppid=1682 pid=1796 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.291000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Jul 2 07:56:21.295000 audit[1798]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=1798 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.295000 audit[1798]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffea4f65910 a2=0 a3=7ffea4f658fc items=0 ppid=1682 pid=1798 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.295000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Jul 2 07:56:21.301000 audit[1801]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=1801 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.301000 audit[1801]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7ffcadb4fbd0 a2=0 a3=7ffcadb4fbbc items=0 ppid=1682 pid=1801 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.301000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Jul 2 07:56:21.312000 audit[1804]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=1804 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.312000 audit[1804]: SYSCALL arch=c000003e syscall=46 success=yes exit=748 a0=3 a1=7fffaf5ba410 a2=0 a3=7fffaf5ba3fc items=0 ppid=1682 pid=1804 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.312000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Jul 2 07:56:21.314000 audit[1805]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=1805 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.314000 audit[1805]: SYSCALL arch=c000003e syscall=46 success=yes exit=96 a0=3 a1=7fff249d0180 a2=0 a3=7fff249d016c items=0 ppid=1682 pid=1805 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.314000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Jul 2 07:56:21.318000 audit[1807]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=1807 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.318000 audit[1807]: SYSCALL arch=c000003e syscall=46 success=yes exit=600 a0=3 a1=7ffd4faddcb0 a2=0 a3=7ffd4faddc9c items=0 ppid=1682 pid=1807 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.318000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Jul 2 07:56:21.324000 audit[1810]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=1810 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.324000 audit[1810]: SYSCALL arch=c000003e syscall=46 success=yes exit=608 a0=3 a1=7fff5d179370 a2=0 a3=7fff5d17935c items=0 ppid=1682 pid=1810 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.324000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Jul 2 07:56:21.326000 audit[1811]: NETFILTER_CFG table=nat:58 family=10 entries=1 op=nft_register_chain pid=1811 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.326000 audit[1811]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7fff519dd240 a2=0 a3=7fff519dd22c items=0 ppid=1682 pid=1811 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.326000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Jul 2 07:56:21.329000 audit[1813]: NETFILTER_CFG table=nat:59 family=10 entries=2 op=nft_register_chain pid=1813 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.329000 audit[1813]: SYSCALL arch=c000003e syscall=46 success=yes exit=612 a0=3 a1=7ffe0fcaed30 a2=0 a3=7ffe0fcaed1c items=0 ppid=1682 pid=1813 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.329000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Jul 2 07:56:21.331000 audit[1814]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_chain pid=1814 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.331000 audit[1814]: SYSCALL arch=c000003e syscall=46 success=yes exit=100 a0=3 a1=7ffef9438170 a2=0 a3=7ffef943815c items=0 ppid=1682 pid=1814 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.331000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Jul 2 07:56:21.334000 audit[1816]: NETFILTER_CFG table=filter:61 family=10 entries=1 op=nft_register_rule pid=1816 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.334000 audit[1816]: SYSCALL arch=c000003e syscall=46 success=yes exit=228 a0=3 a1=7ffdb6149290 a2=0 a3=7ffdb614927c items=0 ppid=1682 pid=1816 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.334000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Jul 2 07:56:21.340000 audit[1819]: NETFILTER_CFG table=filter:62 family=10 entries=1 op=nft_register_rule pid=1819 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 07:56:21.340000 audit[1819]: SYSCALL arch=c000003e syscall=46 success=yes exit=228 a0=3 a1=7ffe70b094a0 a2=0 a3=7ffe70b0948c items=0 ppid=1682 pid=1819 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.340000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Jul 2 07:56:21.344000 audit[1821]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=1821 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Jul 2 07:56:21.344000 audit[1821]: SYSCALL arch=c000003e syscall=46 success=yes exit=2004 a0=3 a1=7ffcba25a4d0 a2=0 a3=7ffcba25a4bc items=0 ppid=1682 pid=1821 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.344000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:21.345000 audit[1821]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=1821 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Jul 2 07:56:21.345000 audit[1821]: SYSCALL arch=c000003e syscall=46 success=yes exit=2056 a0=3 a1=7ffcba25a4d0 a2=0 a3=7ffcba25a4bc items=0 ppid=1682 pid=1821 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:21.345000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:21.378131 kubelet[1465]: E0702 07:56:21.378005 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:21.683582 kubelet[1465]: E0702 07:56:21.683450 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-nxwck" podUID="8443ca9a-9516-481d-8dfe-394059d61994" Jul 2 07:56:21.717977 kubelet[1465]: E0702 07:56:21.717894 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:21.731416 kubelet[1465]: I0702 07:56:21.731264 1465 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-fmw84" podStartSLOduration=3.73773295 podCreationTimestamp="2024-07-02 07:56:14 +0000 UTC" firstStartedPulling="2024-07-02 07:56:16.718223306 +0000 UTC m=+4.178965963" lastFinishedPulling="2024-07-02 07:56:20.711642448 +0000 UTC m=+8.172385113" observedRunningTime="2024-07-02 07:56:21.730680754 +0000 UTC m=+9.191423412" watchObservedRunningTime="2024-07-02 07:56:21.7311521 +0000 UTC m=+9.191894758" Jul 2 07:56:22.379181 kubelet[1465]: E0702 07:56:22.379127 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:22.721534 kubelet[1465]: E0702 07:56:22.721383 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:23.070996 sshd[1619]: Invalid user git from 185.228.235.52 port 42982 Jul 2 07:56:23.074846 sshd[1619]: pam_faillock(sshd:auth): User unknown Jul 2 07:56:23.075858 sshd[1619]: pam_unix(sshd:auth): check pass; user unknown Jul 2 07:56:23.076199 sshd[1619]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=185.228.235.52 Jul 2 07:56:23.077022 sshd[1619]: pam_faillock(sshd:auth): User unknown Jul 2 07:56:23.077000 audit[1619]: USER_AUTH pid=1619 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="git" exe="/usr/sbin/sshd" hostname=185.228.235.52 addr=185.228.235.52 terminal=ssh res=failed' Jul 2 07:56:23.380096 kubelet[1465]: E0702 07:56:23.379785 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:23.683094 kubelet[1465]: E0702 07:56:23.682960 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-nxwck" podUID="8443ca9a-9516-481d-8dfe-394059d61994" Jul 2 07:56:24.380050 kubelet[1465]: E0702 07:56:24.379987 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:25.121303 sshd[1619]: Failed password for invalid user git from 185.228.235.52 port 42982 ssh2 Jul 2 07:56:25.381355 kubelet[1465]: E0702 07:56:25.380839 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:25.683374 kubelet[1465]: E0702 07:56:25.681524 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-nxwck" podUID="8443ca9a-9516-481d-8dfe-394059d61994" Jul 2 07:56:25.967774 env[1186]: time="2024-07-02T07:56:25.967343141Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:25.969246 env[1186]: time="2024-07-02T07:56:25.969206762Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:107014d9f4c891a0235fa80b55df22451e8804ede5b891b632c5779ca3ab07a7,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:25.970815 env[1186]: time="2024-07-02T07:56:25.970784379Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:25.972154 env[1186]: time="2024-07-02T07:56:25.972115857Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:67fdc0954d3c96f9a7938fca4d5759c835b773dfb5cb513903e89d21462d886e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:25.972811 env[1186]: time="2024-07-02T07:56:25.972774117Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.28.0\" returns image reference \"sha256:107014d9f4c891a0235fa80b55df22451e8804ede5b891b632c5779ca3ab07a7\"" Jul 2 07:56:25.975694 env[1186]: time="2024-07-02T07:56:25.975563231Z" level=info msg="CreateContainer within sandbox \"b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Jul 2 07:56:25.992535 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3887732995.mount: Deactivated successfully. Jul 2 07:56:26.000986 env[1186]: time="2024-07-02T07:56:26.000912840Z" level=info msg="CreateContainer within sandbox \"b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"0f0c30700d10497315157512ee3cf88591e6ba51867549cc29c71742b9e24d7a\"" Jul 2 07:56:26.002201 env[1186]: time="2024-07-02T07:56:26.002109448Z" level=info msg="StartContainer for \"0f0c30700d10497315157512ee3cf88591e6ba51867549cc29c71742b9e24d7a\"" Jul 2 07:56:26.047362 systemd[1]: Started cri-containerd-0f0c30700d10497315157512ee3cf88591e6ba51867549cc29c71742b9e24d7a.scope. Jul 2 07:56:26.091475 kernel: kauditd_printk_skb: 187 callbacks suppressed Jul 2 07:56:26.091676 kernel: audit: type=1400 audit(1719906986.085:541): avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.098383 kernel: audit: type=1300 audit(1719906986.085:541): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00014d6b0 a2=3c a3=7f7ed4ae8898 items=0 ppid=1530 pid=1831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:26.085000 audit[1831]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00014d6b0 a2=3c a3=7f7ed4ae8898 items=0 ppid=1530 pid=1831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:26.105470 kernel: audit: type=1327 audit(1719906986.085:541): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3066306333303730306431303439373331353135373531326565336366 Jul 2 07:56:26.085000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3066306333303730306431303439373331353135373531326565336366 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.116028 kernel: audit: type=1400 audit(1719906986.085:542): avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.116246 kernel: audit: type=1400 audit(1719906986.085:542): avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.125619 kernel: audit: type=1400 audit(1719906986.085:542): avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.125790 kernel: audit: type=1400 audit(1719906986.085:542): avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.129894 kernel: audit: type=1400 audit(1719906986.085:542): avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.138894 kernel: audit: type=1400 audit(1719906986.085:542): avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.139049 kernel: audit: type=1400 audit(1719906986.085:542): avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.085000 audit: BPF prog-id=72 op=LOAD Jul 2 07:56:26.085000 audit[1831]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00014d9d8 a2=78 a3=c0003a6408 items=0 ppid=1530 pid=1831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:26.085000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3066306333303730306431303439373331353135373531326565336366 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit: BPF prog-id=73 op=LOAD Jul 2 07:56:26.086000 audit[1831]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00014d770 a2=78 a3=c0003a6458 items=0 ppid=1530 pid=1831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:26.086000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3066306333303730306431303439373331353135373531326565336366 Jul 2 07:56:26.086000 audit: BPF prog-id=73 op=UNLOAD Jul 2 07:56:26.086000 audit: BPF prog-id=72 op=UNLOAD Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { perfmon } for pid=1831 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit[1831]: AVC avc: denied { bpf } for pid=1831 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:26.086000 audit: BPF prog-id=74 op=LOAD Jul 2 07:56:26.086000 audit[1831]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00014dc30 a2=78 a3=c0003a64e8 items=0 ppid=1530 pid=1831 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:26.086000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3066306333303730306431303439373331353135373531326565336366 Jul 2 07:56:26.150670 env[1186]: time="2024-07-02T07:56:26.150612969Z" level=info msg="StartContainer for \"0f0c30700d10497315157512ee3cf88591e6ba51867549cc29c71742b9e24d7a\" returns successfully" Jul 2 07:56:26.382157 kubelet[1465]: E0702 07:56:26.381964 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:26.730495 kubelet[1465]: E0702 07:56:26.730354 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:26.794390 env[1186]: time="2024-07-02T07:56:26.794303466Z" level=error msg="failed to reload cni configuration after receiving fs change event(\"/etc/cni/net.d/calico-kubeconfig\": WRITE)" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Jul 2 07:56:26.798106 systemd[1]: cri-containerd-0f0c30700d10497315157512ee3cf88591e6ba51867549cc29c71742b9e24d7a.scope: Deactivated successfully. Jul 2 07:56:26.801000 audit: BPF prog-id=74 op=UNLOAD Jul 2 07:56:26.826603 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-0f0c30700d10497315157512ee3cf88591e6ba51867549cc29c71742b9e24d7a-rootfs.mount: Deactivated successfully. Jul 2 07:56:26.830906 kubelet[1465]: I0702 07:56:26.830858 1465 kubelet_node_status.go:493] "Fast updating node status as it just became ready" Jul 2 07:56:26.949680 env[1186]: time="2024-07-02T07:56:26.949620025Z" level=info msg="shim disconnected" id=0f0c30700d10497315157512ee3cf88591e6ba51867549cc29c71742b9e24d7a Jul 2 07:56:26.949680 env[1186]: time="2024-07-02T07:56:26.949670048Z" level=warning msg="cleaning up after shim disconnected" id=0f0c30700d10497315157512ee3cf88591e6ba51867549cc29c71742b9e24d7a namespace=k8s.io Jul 2 07:56:26.949680 env[1186]: time="2024-07-02T07:56:26.949680982Z" level=info msg="cleaning up dead shim" Jul 2 07:56:26.959467 env[1186]: time="2024-07-02T07:56:26.959398137Z" level=warning msg="cleanup warnings time=\"2024-07-02T07:56:26Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=1872 runtime=io.containerd.runc.v2\n" Jul 2 07:56:27.094290 sshd[1619]: Received disconnect from 185.228.235.52 port 42982:11: Bye Bye [preauth] Jul 2 07:56:27.094290 sshd[1619]: Disconnected from invalid user git 185.228.235.52 port 42982 [preauth] Jul 2 07:56:27.096168 systemd[1]: sshd@10-143.198.128.94:22-185.228.235.52:42982.service: Deactivated successfully. Jul 2 07:56:27.096000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@10-143.198.128.94:22-185.228.235.52:42982 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:27.383264 kubelet[1465]: E0702 07:56:27.382645 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:27.689024 systemd[1]: Created slice kubepods-besteffort-pod8443ca9a_9516_481d_8dfe_394059d61994.slice. Jul 2 07:56:27.693450 env[1186]: time="2024-07-02T07:56:27.693392204Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-nxwck,Uid:8443ca9a-9516-481d-8dfe-394059d61994,Namespace:calico-system,Attempt:0,}" Jul 2 07:56:27.733990 kubelet[1465]: E0702 07:56:27.733956 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:27.735324 env[1186]: time="2024-07-02T07:56:27.735279423Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.28.0\"" Jul 2 07:56:27.790306 env[1186]: time="2024-07-02T07:56:27.790187806Z" level=error msg="Failed to destroy network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:27.792912 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e-shm.mount: Deactivated successfully. Jul 2 07:56:27.794496 env[1186]: time="2024-07-02T07:56:27.794435306Z" level=error msg="encountered an error cleaning up failed sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:27.794707 env[1186]: time="2024-07-02T07:56:27.794664438Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-nxwck,Uid:8443ca9a-9516-481d-8dfe-394059d61994,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:27.795173 kubelet[1465]: E0702 07:56:27.795142 1465 remote_runtime.go:193] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:27.795274 kubelet[1465]: E0702 07:56:27.795236 1465 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-nxwck" Jul 2 07:56:27.795274 kubelet[1465]: E0702 07:56:27.795271 1465 kuberuntime_manager.go:1171] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-nxwck" Jul 2 07:56:27.795365 kubelet[1465]: E0702 07:56:27.795345 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-nxwck_calico-system(8443ca9a-9516-481d-8dfe-394059d61994)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-nxwck_calico-system(8443ca9a-9516-481d-8dfe-394059d61994)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-nxwck" podUID="8443ca9a-9516-481d-8dfe-394059d61994" Jul 2 07:56:28.382940 kubelet[1465]: E0702 07:56:28.382860 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:28.737121 kubelet[1465]: I0702 07:56:28.736678 1465 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:56:28.737923 env[1186]: time="2024-07-02T07:56:28.737883987Z" level=info msg="StopPodSandbox for \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\"" Jul 2 07:56:28.783660 env[1186]: time="2024-07-02T07:56:28.783568370Z" level=error msg="StopPodSandbox for \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\" failed" error="failed to destroy network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:28.784166 kubelet[1465]: E0702 07:56:28.784122 1465 remote_runtime.go:222] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:56:28.784311 kubelet[1465]: E0702 07:56:28.784268 1465 kuberuntime_manager.go:1380] "Failed to stop sandbox" podSandboxID={"Type":"containerd","ID":"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e"} Jul 2 07:56:28.784367 kubelet[1465]: E0702 07:56:28.784356 1465 kuberuntime_manager.go:1080] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"8443ca9a-9516-481d-8dfe-394059d61994\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Jul 2 07:56:28.784473 kubelet[1465]: E0702 07:56:28.784421 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"8443ca9a-9516-481d-8dfe-394059d61994\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-nxwck" podUID="8443ca9a-9516-481d-8dfe-394059d61994" Jul 2 07:56:29.383779 kubelet[1465]: E0702 07:56:29.383714 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:30.384270 kubelet[1465]: E0702 07:56:30.384200 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:31.385513 kubelet[1465]: E0702 07:56:31.385442 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:32.400122 kubelet[1465]: E0702 07:56:32.385727 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:32.649966 kubelet[1465]: I0702 07:56:32.648713 1465 topology_manager.go:215] "Topology Admit Handler" podUID="14fe4325-797c-463a-91ea-67de812d7e21" podNamespace="default" podName="nginx-deployment-6d5f899847-wzzsg" Jul 2 07:56:32.654741 kubelet[1465]: I0702 07:56:32.653444 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-4krwn\" (UniqueName: \"kubernetes.io/projected/14fe4325-797c-463a-91ea-67de812d7e21-kube-api-access-4krwn\") pod \"nginx-deployment-6d5f899847-wzzsg\" (UID: \"14fe4325-797c-463a-91ea-67de812d7e21\") " pod="default/nginx-deployment-6d5f899847-wzzsg" Jul 2 07:56:32.658309 systemd[1]: Created slice kubepods-besteffort-pod14fe4325_797c_463a_91ea_67de812d7e21.slice. Jul 2 07:56:32.966805 env[1186]: time="2024-07-02T07:56:32.965127805Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-wzzsg,Uid:14fe4325-797c-463a-91ea-67de812d7e21,Namespace:default,Attempt:0,}" Jul 2 07:56:33.171747 env[1186]: time="2024-07-02T07:56:33.171612564Z" level=error msg="Failed to destroy network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:33.174452 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112-shm.mount: Deactivated successfully. Jul 2 07:56:33.175811 env[1186]: time="2024-07-02T07:56:33.175745236Z" level=error msg="encountered an error cleaning up failed sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:33.176525 env[1186]: time="2024-07-02T07:56:33.176454698Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-wzzsg,Uid:14fe4325-797c-463a-91ea-67de812d7e21,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:33.177777 kubelet[1465]: E0702 07:56:33.177224 1465 remote_runtime.go:193] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:33.177777 kubelet[1465]: E0702 07:56:33.177301 1465 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-6d5f899847-wzzsg" Jul 2 07:56:33.177777 kubelet[1465]: E0702 07:56:33.177331 1465 kuberuntime_manager.go:1171] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-6d5f899847-wzzsg" Jul 2 07:56:33.177990 kubelet[1465]: E0702 07:56:33.177405 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-6d5f899847-wzzsg_default(14fe4325-797c-463a-91ea-67de812d7e21)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-6d5f899847-wzzsg_default(14fe4325-797c-463a-91ea-67de812d7e21)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-6d5f899847-wzzsg" podUID="14fe4325-797c-463a-91ea-67de812d7e21" Jul 2 07:56:33.372530 kubelet[1465]: E0702 07:56:33.371528 1465 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:33.399128 kubelet[1465]: E0702 07:56:33.399049 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:33.747532 kubelet[1465]: I0702 07:56:33.746767 1465 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:56:33.749433 env[1186]: time="2024-07-02T07:56:33.749379311Z" level=info msg="StopPodSandbox for \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\"" Jul 2 07:56:33.823349 env[1186]: time="2024-07-02T07:56:33.823265201Z" level=error msg="StopPodSandbox for \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\" failed" error="failed to destroy network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 07:56:33.824115 kubelet[1465]: E0702 07:56:33.823854 1465 remote_runtime.go:222] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:56:33.824115 kubelet[1465]: E0702 07:56:33.823933 1465 kuberuntime_manager.go:1380] "Failed to stop sandbox" podSandboxID={"Type":"containerd","ID":"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112"} Jul 2 07:56:33.824115 kubelet[1465]: E0702 07:56:33.823991 1465 kuberuntime_manager.go:1080] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"14fe4325-797c-463a-91ea-67de812d7e21\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Jul 2 07:56:33.824115 kubelet[1465]: E0702 07:56:33.824035 1465 pod_workers.go:1300] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"14fe4325-797c-463a-91ea-67de812d7e21\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-6d5f899847-wzzsg" podUID="14fe4325-797c-463a-91ea-67de812d7e21" Jul 2 07:56:34.400339 kubelet[1465]: E0702 07:56:34.400280 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:35.412210 kubelet[1465]: E0702 07:56:35.405216 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:36.406084 kubelet[1465]: E0702 07:56:36.405992 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:36.461378 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1062691377.mount: Deactivated successfully. Jul 2 07:56:36.510233 env[1186]: time="2024-07-02T07:56:36.510133704Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:36.517029 env[1186]: time="2024-07-02T07:56:36.516961313Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:4e42b6f329bc1d197d97f6d2a1289b9e9f4a9560db3a36c8cffb5e95e64e4b49,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:36.521379 env[1186]: time="2024-07-02T07:56:36.521314412Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:36.523836 env[1186]: time="2024-07-02T07:56:36.523771535Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:95f8004836427050c9997ad0800819ced5636f6bda647b4158fc7c497910c8d0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:36.524244 env[1186]: time="2024-07-02T07:56:36.524205617Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.28.0\" returns image reference \"sha256:4e42b6f329bc1d197d97f6d2a1289b9e9f4a9560db3a36c8cffb5e95e64e4b49\"" Jul 2 07:56:36.544444 env[1186]: time="2024-07-02T07:56:36.544349008Z" level=info msg="CreateContainer within sandbox \"b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Jul 2 07:56:36.570171 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2825334954.mount: Deactivated successfully. Jul 2 07:56:36.583172 env[1186]: time="2024-07-02T07:56:36.583046922Z" level=info msg="CreateContainer within sandbox \"b05f4677fa431e4a19c3afa0d11b67cae137f732faa2e120586bdf603f4fbd15\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"52227ec532baf44f666bd2edc2df8bf4a40bec92f2e44b63cad1b8798bd3ed13\"" Jul 2 07:56:36.584354 env[1186]: time="2024-07-02T07:56:36.584300941Z" level=info msg="StartContainer for \"52227ec532baf44f666bd2edc2df8bf4a40bec92f2e44b63cad1b8798bd3ed13\"" Jul 2 07:56:36.608170 systemd[1]: Started cri-containerd-52227ec532baf44f666bd2edc2df8bf4a40bec92f2e44b63cad1b8798bd3ed13.scope. Jul 2 07:56:36.637000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639336 kernel: kauditd_printk_skb: 35 callbacks suppressed Jul 2 07:56:36.639483 kernel: audit: type=1400 audit(1719906996.637:549): avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.637000 audit[2001]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00014d6b0 a2=3c a3=7f08003685f8 items=0 ppid=1530 pid=2001 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:36.651303 kernel: audit: type=1300 audit(1719906996.637:549): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00014d6b0 a2=3c a3=7f08003685f8 items=0 ppid=1530 pid=2001 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:36.651512 kernel: audit: type=1327 audit(1719906996.637:549): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532323237656335333262616634346636363662643265646332646638 Jul 2 07:56:36.637000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532323237656335333262616634346636363662643265646332646638 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.662613 kernel: audit: type=1400 audit(1719906996.639:550): avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.669146 kernel: audit: type=1400 audit(1719906996.639:550): avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.669432 kernel: audit: type=1400 audit(1719906996.639:550): avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.678702 kernel: audit: type=1400 audit(1719906996.639:550): avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.692179 kernel: audit: type=1400 audit(1719906996.639:550): avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.692339 kernel: audit: type=1400 audit(1719906996.639:550): avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.700215 kernel: audit: type=1400 audit(1719906996.639:550): avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.639000 audit: BPF prog-id=75 op=LOAD Jul 2 07:56:36.639000 audit[2001]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00014d9d8 a2=78 a3=c000214c28 items=0 ppid=1530 pid=2001 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:36.639000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532323237656335333262616634346636363662643265646332646638 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.644000 audit: BPF prog-id=76 op=LOAD Jul 2 07:56:36.644000 audit[2001]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00014d770 a2=78 a3=c000214c78 items=0 ppid=1530 pid=2001 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:36.644000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532323237656335333262616634346636363662643265646332646638 Jul 2 07:56:36.658000 audit: BPF prog-id=76 op=UNLOAD Jul 2 07:56:36.658000 audit: BPF prog-id=75 op=UNLOAD Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { perfmon } for pid=2001 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit[2001]: AVC avc: denied { bpf } for pid=2001 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:36.658000 audit: BPF prog-id=77 op=LOAD Jul 2 07:56:36.658000 audit[2001]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00014dc30 a2=78 a3=c000214d08 items=0 ppid=1530 pid=2001 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:36.658000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3532323237656335333262616634346636363662643265646332646638 Jul 2 07:56:36.715113 env[1186]: time="2024-07-02T07:56:36.715025950Z" level=info msg="StartContainer for \"52227ec532baf44f666bd2edc2df8bf4a40bec92f2e44b63cad1b8798bd3ed13\" returns successfully" Jul 2 07:56:36.775861 kubelet[1465]: E0702 07:56:36.775650 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:36.838083 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Jul 2 07:56:36.838249 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Jul 2 07:56:37.406261 kubelet[1465]: E0702 07:56:37.406173 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:37.778837 kubelet[1465]: E0702 07:56:37.778228 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:56:37.800311 systemd[1]: run-containerd-runc-k8s.io-52227ec532baf44f666bd2edc2df8bf4a40bec92f2e44b63cad1b8798bd3ed13-runc.ezonMC.mount: Deactivated successfully. Jul 2 07:56:38.352000 audit[2150]: AVC avc: denied { write } for pid=2150 comm="tee" name="fd" dev="proc" ino=20145 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 07:56:38.352000 audit[2156]: AVC avc: denied { write } for pid=2156 comm="tee" name="fd" dev="proc" ino=19324 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 07:56:38.352000 audit[2156]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffe6cafaa13 a2=241 a3=1b6 items=1 ppid=2119 pid=2156 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.352000 audit[2150]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fff63089a03 a2=241 a3=1b6 items=1 ppid=2118 pid=2150 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.352000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Jul 2 07:56:38.352000 audit: PATH item=0 name="/dev/fd/63" inode=20136 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:38.352000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 07:56:38.357000 audit[2157]: AVC avc: denied { write } for pid=2157 comm="tee" name="fd" dev="proc" ino=19328 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 07:56:38.357000 audit[2157]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fff87a1fa04 a2=241 a3=1b6 items=1 ppid=2113 pid=2157 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.357000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Jul 2 07:56:38.357000 audit: PATH item=0 name="/dev/fd/63" inode=19315 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:38.359000 audit[2159]: AVC avc: denied { write } for pid=2159 comm="tee" name="fd" dev="proc" ino=19332 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 07:56:38.359000 audit[2159]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffc03d89a15 a2=241 a3=1b6 items=1 ppid=2111 pid=2159 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.359000 audit: CWD cwd="/etc/service/enabled/cni/log" Jul 2 07:56:38.359000 audit: PATH item=0 name="/dev/fd/63" inode=19318 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:38.359000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 07:56:38.360000 audit[2161]: AVC avc: denied { write } for pid=2161 comm="tee" name="fd" dev="proc" ino=20151 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 07:56:38.352000 audit: CWD cwd="/etc/service/enabled/bird6/log" Jul 2 07:56:38.352000 audit: PATH item=0 name="/dev/fd/63" inode=20139 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:38.352000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 07:56:38.363000 audit[2166]: AVC avc: denied { write } for pid=2166 comm="tee" name="fd" dev="proc" ino=19336 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 07:56:38.363000 audit[2166]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffeed93da14 a2=241 a3=1b6 items=1 ppid=2115 pid=2166 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.363000 audit: CWD cwd="/etc/service/enabled/bird/log" Jul 2 07:56:38.363000 audit: PATH item=0 name="/dev/fd/63" inode=19321 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:38.363000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 07:56:38.360000 audit[2161]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7ffd94189a13 a2=241 a3=1b6 items=1 ppid=2117 pid=2161 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.360000 audit: CWD cwd="/etc/service/enabled/confd/log" Jul 2 07:56:38.360000 audit: PATH item=0 name="/dev/fd/63" inode=20142 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:38.360000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 07:56:38.357000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 07:56:38.375000 audit[2184]: AVC avc: denied { write } for pid=2184 comm="tee" name="fd" dev="proc" ino=20157 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 07:56:38.375000 audit[2184]: SYSCALL arch=c000003e syscall=257 success=yes exit=3 a0=ffffff9c a1=7fffacc5ca13 a2=241 a3=1b6 items=1 ppid=2121 pid=2184 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.375000 audit: CWD cwd="/etc/service/enabled/felix/log" Jul 2 07:56:38.375000 audit: PATH item=0 name="/dev/fd/63" inode=19344 dev=00:0c mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:56:38.375000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 07:56:38.408321 kubelet[1465]: E0702 07:56:38.407068 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:38.665132 kernel: Initializing XFRM netlink socket Jul 2 07:56:38.811478 systemd-networkd[1006]: vxlan.calico: Link UP Jul 2 07:56:38.811489 systemd-networkd[1006]: vxlan.calico: Gained carrier Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit: BPF prog-id=78 op=LOAD Jul 2 07:56:38.856000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=5 a1=7ffc371e21e0 a2=70 a3=7fc5dbad4000 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.856000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.856000 audit: BPF prog-id=78 op=UNLOAD Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit: BPF prog-id=79 op=LOAD Jul 2 07:56:38.856000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=5 a1=7ffc371e21e0 a2=70 a3=6f items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.856000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.856000 audit: BPF prog-id=79 op=UNLOAD Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=0 a1=7ffc371e2190 a2=70 a3=7ffc371e21e0 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.856000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit: BPF prog-id=80 op=LOAD Jul 2 07:56:38.856000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=5 a0=5 a1=7ffc371e2170 a2=70 a3=7ffc371e21e0 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.856000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.856000 audit: BPF prog-id=80 op=UNLOAD Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7ffc371e2250 a2=70 a3=0 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.856000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7ffc371e2240 a2=70 a3=0 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.856000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.856000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.856000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=4 a0=12 a1=7ffc371e21b0 a2=70 a3=0 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.856000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=no exit=-22 a0=0 a1=7ffc371e2280 a2=70 a3=1b3d8b0 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.857000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=5 a0=0 a1=7ffc371e2280 a2=70 a3=1b3a880 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.857000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { perfmon } for pid=2252 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit[2252]: AVC avc: denied { bpf } for pid=2252 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.857000 audit: BPF prog-id=81 op=LOAD Jul 2 07:56:38.857000 audit[2252]: SYSCALL arch=c000003e syscall=321 success=yes exit=6 a0=5 a1=7ffc371e21a0 a2=70 a3=0 items=0 ppid=2126 pid=2252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.857000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 07:56:38.867000 audit[2254]: AVC avc: denied { bpf } for pid=2254 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.867000 audit[2254]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=7ffefc53c810 a2=70 a3=fff80800 items=0 ppid=2126 pid=2254 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.867000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Jul 2 07:56:38.867000 audit[2254]: AVC avc: denied { bpf } for pid=2254 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:38.867000 audit[2254]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=7ffefc53c6e0 a2=70 a3=3 items=0 ppid=2126 pid=2254 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.867000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Jul 2 07:56:38.873000 audit: BPF prog-id=81 op=UNLOAD Jul 2 07:56:38.977000 audit[2280]: NETFILTER_CFG table=mangle:65 family=2 entries=16 op=nft_register_chain pid=2280 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:56:38.977000 audit[2280]: SYSCALL arch=c000003e syscall=46 success=yes exit=6868 a0=3 a1=7ffd793c0880 a2=0 a3=7ffd793c086c items=0 ppid=2126 pid=2280 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.977000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:56:38.980000 audit[2278]: NETFILTER_CFG table=raw:66 family=2 entries=19 op=nft_register_chain pid=2278 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:56:38.980000 audit[2278]: SYSCALL arch=c000003e syscall=46 success=yes exit=6992 a0=3 a1=7fffb2253a10 a2=0 a3=7fffb22539fc items=0 ppid=2126 pid=2278 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.980000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:56:38.984000 audit[2279]: NETFILTER_CFG table=nat:67 family=2 entries=15 op=nft_register_chain pid=2279 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:56:38.984000 audit[2279]: SYSCALL arch=c000003e syscall=46 success=yes exit=5084 a0=3 a1=7ffd60663ba0 a2=0 a3=7ffd60663b8c items=0 ppid=2126 pid=2279 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.984000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:56:38.988000 audit[2281]: NETFILTER_CFG table=filter:68 family=2 entries=39 op=nft_register_chain pid=2281 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:56:38.988000 audit[2281]: SYSCALL arch=c000003e syscall=46 success=yes exit=18968 a0=3 a1=7ffe5bb532c0 a2=0 a3=7ffe5bb532ac items=0 ppid=2126 pid=2281 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:38.988000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:56:39.107000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@11-143.198.128.94:22-156.232.11.214:52568 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:39.107179 systemd[1]: Started sshd@11-143.198.128.94:22-156.232.11.214:52568.service. Jul 2 07:56:39.276223 sshd[2289]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=156.232.11.214 user=root Jul 2 07:56:39.276000 audit[2289]: USER_AUTH pid=2289 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=156.232.11.214 addr=156.232.11.214 terminal=ssh res=failed' Jul 2 07:56:39.408469 kubelet[1465]: E0702 07:56:39.408228 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:39.683051 env[1186]: time="2024-07-02T07:56:39.682699508Z" level=info msg="StopPodSandbox for \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\"" Jul 2 07:56:39.800658 kubelet[1465]: I0702 07:56:39.800259 1465 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-jfw2v" podStartSLOduration=5.987701239 podCreationTimestamp="2024-07-02 07:56:14 +0000 UTC" firstStartedPulling="2024-07-02 07:56:16.712111147 +0000 UTC m=+4.172853778" lastFinishedPulling="2024-07-02 07:56:36.524578905 +0000 UTC m=+23.985321539" observedRunningTime="2024-07-02 07:56:36.797755326 +0000 UTC m=+24.258497994" watchObservedRunningTime="2024-07-02 07:56:39.800169 +0000 UTC m=+27.260911673" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.799 [INFO][2307] k8s.go 608: Cleaning up netns ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.800 [INFO][2307] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" iface="eth0" netns="/var/run/netns/cni-b7dbdf2f-47c4-1b6d-f23e-143ae4f12bb3" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.800 [INFO][2307] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" iface="eth0" netns="/var/run/netns/cni-b7dbdf2f-47c4-1b6d-f23e-143ae4f12bb3" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.801 [INFO][2307] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" iface="eth0" netns="/var/run/netns/cni-b7dbdf2f-47c4-1b6d-f23e-143ae4f12bb3" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.801 [INFO][2307] k8s.go 615: Releasing IP address(es) ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.801 [INFO][2307] utils.go 188: Calico CNI releasing IP address ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.833 [INFO][2313] ipam_plugin.go 411: Releasing address using handleID ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.834 [INFO][2313] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.834 [INFO][2313] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.842 [WARNING][2313] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.842 [INFO][2313] ipam_plugin.go 439: Releasing address using workloadID ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.845 [INFO][2313] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:56:39.848487 env[1186]: 2024-07-02 07:56:39.846 [INFO][2307] k8s.go 621: Teardown processing complete. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:56:39.851215 systemd[1]: run-netns-cni\x2db7dbdf2f\x2d47c4\x2d1b6d\x2df23e\x2d143ae4f12bb3.mount: Deactivated successfully. Jul 2 07:56:39.852678 env[1186]: time="2024-07-02T07:56:39.852615259Z" level=info msg="TearDown network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\" successfully" Jul 2 07:56:39.852834 env[1186]: time="2024-07-02T07:56:39.852812848Z" level=info msg="StopPodSandbox for \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\" returns successfully" Jul 2 07:56:39.853935 env[1186]: time="2024-07-02T07:56:39.853885663Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-nxwck,Uid:8443ca9a-9516-481d-8dfe-394059d61994,Namespace:calico-system,Attempt:1,}" Jul 2 07:56:40.057994 systemd-networkd[1006]: cali3e2b577b711: Link UP Jul 2 07:56:40.061190 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 07:56:40.061324 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali3e2b577b711: link becomes ready Jul 2 07:56:40.062654 systemd-networkd[1006]: cali3e2b577b711: Gained carrier Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:39.928 [INFO][2320] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {143.198.128.94-k8s-csi--node--driver--nxwck-eth0 csi-node-driver- calico-system 8443ca9a-9516-481d-8dfe-394059d61994 959 0 2024-07-02 07:56:15 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:7d7f6c786c k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 143.198.128.94 csi-node-driver-nxwck eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali3e2b577b711 [] []}} ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Namespace="calico-system" Pod="csi-node-driver-nxwck" WorkloadEndpoint="143.198.128.94-k8s-csi--node--driver--nxwck-" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:39.928 [INFO][2320] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Namespace="calico-system" Pod="csi-node-driver-nxwck" WorkloadEndpoint="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:39.972 [INFO][2332] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" HandleID="k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:39.989 [INFO][2332] ipam_plugin.go 264: Auto assigning IP ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" HandleID="k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc00031c1c0), Attrs:map[string]string{"namespace":"calico-system", "node":"143.198.128.94", "pod":"csi-node-driver-nxwck", "timestamp":"2024-07-02 07:56:39.972703295 +0000 UTC"}, Hostname:"143.198.128.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:39.990 [INFO][2332] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:39.990 [INFO][2332] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:39.990 [INFO][2332] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '143.198.128.94' Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:39.994 [INFO][2332] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.002 [INFO][2332] ipam.go 372: Looking up existing affinities for host host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.012 [INFO][2332] ipam.go 489: Trying affinity for 192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.016 [INFO][2332] ipam.go 155: Attempting to load block cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.021 [INFO][2332] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.021 [INFO][2332] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.3.192/26 handle="k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.026 [INFO][2332] ipam.go 1685: Creating new handle: k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.033 [INFO][2332] ipam.go 1203: Writing block in order to claim IPs block=192.168.3.192/26 handle="k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.047 [INFO][2332] ipam.go 1216: Successfully claimed IPs: [192.168.3.193/26] block=192.168.3.192/26 handle="k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.047 [INFO][2332] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.3.193/26] handle="k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" host="143.198.128.94" Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.047 [INFO][2332] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:56:40.083330 env[1186]: 2024-07-02 07:56:40.048 [INFO][2332] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.3.193/26] IPv6=[] ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" HandleID="k8s-pod-network.0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:40.084938 env[1186]: 2024-07-02 07:56:40.051 [INFO][2320] k8s.go 386: Populated endpoint ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Namespace="calico-system" Pod="csi-node-driver-nxwck" WorkloadEndpoint="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-csi--node--driver--nxwck-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"8443ca9a-9516-481d-8dfe-394059d61994", ResourceVersion:"959", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 15, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"7d7f6c786c", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"", Pod:"csi-node-driver-nxwck", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.193/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali3e2b577b711", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:56:40.084938 env[1186]: 2024-07-02 07:56:40.051 [INFO][2320] k8s.go 387: Calico CNI using IPs: [192.168.3.193/32] ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Namespace="calico-system" Pod="csi-node-driver-nxwck" WorkloadEndpoint="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:40.084938 env[1186]: 2024-07-02 07:56:40.052 [INFO][2320] dataplane_linux.go 68: Setting the host side veth name to cali3e2b577b711 ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Namespace="calico-system" Pod="csi-node-driver-nxwck" WorkloadEndpoint="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:40.084938 env[1186]: 2024-07-02 07:56:40.063 [INFO][2320] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Namespace="calico-system" Pod="csi-node-driver-nxwck" WorkloadEndpoint="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:40.084938 env[1186]: 2024-07-02 07:56:40.066 [INFO][2320] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Namespace="calico-system" Pod="csi-node-driver-nxwck" WorkloadEndpoint="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-csi--node--driver--nxwck-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"8443ca9a-9516-481d-8dfe-394059d61994", ResourceVersion:"959", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 15, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"7d7f6c786c", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e", Pod:"csi-node-driver-nxwck", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.193/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali3e2b577b711", MAC:"06:bf:d8:8d:7b:3c", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:56:40.084938 env[1186]: 2024-07-02 07:56:40.077 [INFO][2320] k8s.go 500: Wrote updated endpoint to datastore ContainerID="0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e" Namespace="calico-system" Pod="csi-node-driver-nxwck" WorkloadEndpoint="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:56:40.100000 audit[2351]: NETFILTER_CFG table=filter:69 family=2 entries=34 op=nft_register_chain pid=2351 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:56:40.100000 audit[2351]: SYSCALL arch=c000003e syscall=46 success=yes exit=19148 a0=3 a1=7ffd259df7f0 a2=0 a3=7ffd259df7dc items=0 ppid=2126 pid=2351 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:40.100000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:56:40.113499 env[1186]: time="2024-07-02T07:56:40.113247594Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 07:56:40.113499 env[1186]: time="2024-07-02T07:56:40.113311396Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 07:56:40.113499 env[1186]: time="2024-07-02T07:56:40.113327976Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 07:56:40.114122 env[1186]: time="2024-07-02T07:56:40.113984763Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e pid=2361 runtime=io.containerd.runc.v2 Jul 2 07:56:40.146208 systemd[1]: Started cri-containerd-0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e.scope. Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.163000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit: BPF prog-id=82 op=LOAD Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c0001bdc48 a2=10 a3=1c items=0 ppid=2361 pid=2371 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:40.164000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3064316462383233626461626537333366363866653661396339333737 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001bd6b0 a2=3c a3=c items=0 ppid=2361 pid=2371 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:40.164000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3064316462383233626461626537333366363866653661396339333737 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.164000 audit: BPF prog-id=83 op=LOAD Jul 2 07:56:40.164000 audit[2371]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001bd9d8 a2=78 a3=c0003643e0 items=0 ppid=2361 pid=2371 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:40.164000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3064316462383233626461626537333366363866653661396339333737 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit: BPF prog-id=84 op=LOAD Jul 2 07:56:40.165000 audit[2371]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c0001bd770 a2=78 a3=c000364428 items=0 ppid=2361 pid=2371 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:40.165000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3064316462383233626461626537333366363866653661396339333737 Jul 2 07:56:40.165000 audit: BPF prog-id=84 op=UNLOAD Jul 2 07:56:40.165000 audit: BPF prog-id=83 op=UNLOAD Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { perfmon } for pid=2371 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit[2371]: AVC avc: denied { bpf } for pid=2371 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:40.165000 audit: BPF prog-id=85 op=LOAD Jul 2 07:56:40.165000 audit[2371]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001bdc30 a2=78 a3=c000364838 items=0 ppid=2361 pid=2371 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:40.165000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3064316462383233626461626537333366363866653661396339333737 Jul 2 07:56:40.186557 env[1186]: time="2024-07-02T07:56:40.186487125Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-nxwck,Uid:8443ca9a-9516-481d-8dfe-394059d61994,Namespace:calico-system,Attempt:1,} returns sandbox id \"0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e\"" Jul 2 07:56:40.188963 env[1186]: time="2024-07-02T07:56:40.188913248Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.28.0\"" Jul 2 07:56:40.408771 kubelet[1465]: E0702 07:56:40.408569 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:40.455461 systemd-networkd[1006]: vxlan.calico: Gained IPv6LL Jul 2 07:56:40.851521 sshd[2289]: Failed password for root from 156.232.11.214 port 52568 ssh2 Jul 2 07:56:40.851329 systemd[1]: run-containerd-runc-k8s.io-0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e-runc.koSCx1.mount: Deactivated successfully. Jul 2 07:56:40.959141 sshd[2289]: Received disconnect from 156.232.11.214 port 52568:11: Bye Bye [preauth] Jul 2 07:56:40.959141 sshd[2289]: Disconnected from authenticating user root 156.232.11.214 port 52568 [preauth] Jul 2 07:56:40.960335 systemd[1]: sshd@11-143.198.128.94:22-156.232.11.214:52568.service: Deactivated successfully. Jul 2 07:56:40.960000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@11-143.198.128.94:22-156.232.11.214:52568 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:41.409418 kubelet[1465]: E0702 07:56:41.409345 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:41.433502 systemd-networkd[1006]: cali3e2b577b711: Gained IPv6LL Jul 2 07:56:41.724830 env[1186]: time="2024-07-02T07:56:41.724611802Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:41.727245 env[1186]: time="2024-07-02T07:56:41.727191020Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:1a094aeaf1521e225668c83cbf63c0ec63afbdb8c4dd7c3d2aab0ec917d103de,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:41.729483 env[1186]: time="2024-07-02T07:56:41.729429998Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:41.730924 env[1186]: time="2024-07-02T07:56:41.730859076Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:ac5f0089ad8eab325e5d16a59536f9292619adf16736b1554a439a66d543a63d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:41.732233 env[1186]: time="2024-07-02T07:56:41.732189462Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.28.0\" returns image reference \"sha256:1a094aeaf1521e225668c83cbf63c0ec63afbdb8c4dd7c3d2aab0ec917d103de\"" Jul 2 07:56:41.735511 env[1186]: time="2024-07-02T07:56:41.735464289Z" level=info msg="CreateContainer within sandbox \"0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Jul 2 07:56:41.754380 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1917549806.mount: Deactivated successfully. Jul 2 07:56:41.760624 env[1186]: time="2024-07-02T07:56:41.760552546Z" level=info msg="CreateContainer within sandbox \"0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"1780472d20e8c65460d5c2a768a6d6c080be97f9357fc971b1eb5b261049e08e\"" Jul 2 07:56:41.761978 env[1186]: time="2024-07-02T07:56:41.761940949Z" level=info msg="StartContainer for \"1780472d20e8c65460d5c2a768a6d6c080be97f9357fc971b1eb5b261049e08e\"" Jul 2 07:56:41.791357 systemd[1]: Started cri-containerd-1780472d20e8c65460d5c2a768a6d6c080be97f9357fc971b1eb5b261049e08e.scope. Jul 2 07:56:41.828406 kernel: kauditd_printk_skb: 220 callbacks suppressed Jul 2 07:56:41.828560 kernel: audit: type=1400 audit(1719907001.818:604): avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.828594 kernel: audit: type=1300 audit(1719907001.818:604): arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00014d6b0 a2=3c a3=7fb117f922f8 items=0 ppid=2361 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c00014d6b0 a2=3c a3=7fb117f922f8 items=0 ppid=2361 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:41.818000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137383034373264323065386336353436306435633261373638613664 Jul 2 07:56:41.833484 kernel: audit: type=1327 audit(1719907001.818:604): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137383034373264323065386336353436306435633261373638613664 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.837578 kernel: audit: type=1400 audit(1719907001.818:605): avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.855731 kernel: audit: type=1400 audit(1719907001.818:605): avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.862253 kernel: audit: type=1400 audit(1719907001.818:605): avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.862331 kernel: audit: type=1400 audit(1719907001.818:605): avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.862366 kernel: audit: type=1400 audit(1719907001.818:605): avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.874109 kernel: audit: type=1400 audit(1719907001.818:605): avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.875025 kernel: audit: type=1400 audit(1719907001.818:605): avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.818000 audit: BPF prog-id=86 op=LOAD Jul 2 07:56:41.818000 audit[2405]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00014d9d8 a2=78 a3=c000024df8 items=0 ppid=2361 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:41.818000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137383034373264323065386336353436306435633261373638613664 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.819000 audit: BPF prog-id=87 op=LOAD Jul 2 07:56:41.819000 audit[2405]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c00014d770 a2=78 a3=c000024e48 items=0 ppid=2361 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:41.819000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137383034373264323065386336353436306435633261373638613664 Jul 2 07:56:41.823000 audit: BPF prog-id=87 op=UNLOAD Jul 2 07:56:41.823000 audit: BPF prog-id=86 op=UNLOAD Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { perfmon } for pid=2405 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit[2405]: AVC avc: denied { bpf } for pid=2405 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:41.823000 audit: BPF prog-id=88 op=LOAD Jul 2 07:56:41.823000 audit[2405]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c00014dc30 a2=78 a3=c000024ed8 items=0 ppid=2361 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:41.823000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3137383034373264323065386336353436306435633261373638613664 Jul 2 07:56:41.876860 env[1186]: time="2024-07-02T07:56:41.876802632Z" level=info msg="StartContainer for \"1780472d20e8c65460d5c2a768a6d6c080be97f9357fc971b1eb5b261049e08e\" returns successfully" Jul 2 07:56:41.879458 env[1186]: time="2024-07-02T07:56:41.879408457Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0\"" Jul 2 07:56:42.410689 kubelet[1465]: E0702 07:56:42.410617 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:43.346214 env[1186]: time="2024-07-02T07:56:43.346151933Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:43.347734 env[1186]: time="2024-07-02T07:56:43.347694315Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:0f80feca743f4a84ddda4057266092db9134f9af9e20e12ea6fcfe51d7e3a020,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:43.349411 env[1186]: time="2024-07-02T07:56:43.349366954Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:43.351181 env[1186]: time="2024-07-02T07:56:43.351128989Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:b3caf3e7b3042b293728a5ab55d893798d60fec55993a9531e82997de0e534cc,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:43.352342 env[1186]: time="2024-07-02T07:56:43.352297414Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0\" returns image reference \"sha256:0f80feca743f4a84ddda4057266092db9134f9af9e20e12ea6fcfe51d7e3a020\"" Jul 2 07:56:43.356144 env[1186]: time="2024-07-02T07:56:43.356054386Z" level=info msg="CreateContainer within sandbox \"0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Jul 2 07:56:43.374467 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1267169247.mount: Deactivated successfully. Jul 2 07:56:43.390582 env[1186]: time="2024-07-02T07:56:43.390506401Z" level=info msg="CreateContainer within sandbox \"0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"a4678762343ff78ce5163b4f85b8c9569fc67b0da30c85d31b3786d54c3cd512\"" Jul 2 07:56:43.392045 env[1186]: time="2024-07-02T07:56:43.391996738Z" level=info msg="StartContainer for \"a4678762343ff78ce5163b4f85b8c9569fc67b0da30c85d31b3786d54c3cd512\"" Jul 2 07:56:43.411096 kubelet[1465]: E0702 07:56:43.411020 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:43.430830 systemd[1]: Started cri-containerd-a4678762343ff78ce5163b4f85b8c9569fc67b0da30c85d31b3786d54c3cd512.scope. Jul 2 07:56:43.456000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.456000 audit[2442]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001976b0 a2=3c a3=7fa2fc5271d8 items=0 ppid=2361 pid=2442 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:43.456000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6134363738373632333433666637386365353136336234663835623863 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.457000 audit: BPF prog-id=89 op=LOAD Jul 2 07:56:43.457000 audit[2442]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001979d8 a2=78 a3=c0003da218 items=0 ppid=2361 pid=2442 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:43.457000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6134363738373632333433666637386365353136336234663835623863 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.458000 audit: BPF prog-id=90 op=LOAD Jul 2 07:56:43.458000 audit[2442]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000197770 a2=78 a3=c0003da268 items=0 ppid=2361 pid=2442 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:43.458000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6134363738373632333433666637386365353136336234663835623863 Jul 2 07:56:43.459000 audit: BPF prog-id=90 op=UNLOAD Jul 2 07:56:43.459000 audit: BPF prog-id=89 op=UNLOAD Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { perfmon } for pid=2442 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit[2442]: AVC avc: denied { bpf } for pid=2442 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:43.459000 audit: BPF prog-id=91 op=LOAD Jul 2 07:56:43.459000 audit[2442]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000197c30 a2=78 a3=c0003da2f8 items=0 ppid=2361 pid=2442 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:43.459000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6134363738373632333433666637386365353136336234663835623863 Jul 2 07:56:43.485820 env[1186]: time="2024-07-02T07:56:43.485756102Z" level=info msg="StartContainer for \"a4678762343ff78ce5163b4f85b8c9569fc67b0da30c85d31b3786d54c3cd512\" returns successfully" Jul 2 07:56:43.586798 kubelet[1465]: I0702 07:56:43.586746 1465 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Jul 2 07:56:43.587148 kubelet[1465]: I0702 07:56:43.587134 1465 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Jul 2 07:56:43.830719 kubelet[1465]: I0702 07:56:43.828832 1465 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-nxwck" podStartSLOduration=25.664573933 podCreationTimestamp="2024-07-02 07:56:15 +0000 UTC" firstStartedPulling="2024-07-02 07:56:40.188507706 +0000 UTC m=+27.649250358" lastFinishedPulling="2024-07-02 07:56:43.35272521 +0000 UTC m=+30.813467863" observedRunningTime="2024-07-02 07:56:43.828202621 +0000 UTC m=+31.288945276" watchObservedRunningTime="2024-07-02 07:56:43.828791438 +0000 UTC m=+31.289534090" Jul 2 07:56:44.091000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@12-143.198.128.94:22-43.134.47.230:48240 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:44.091032 systemd[1]: Started sshd@12-143.198.128.94:22-43.134.47.230:48240.service. Jul 2 07:56:44.370341 systemd[1]: run-containerd-runc-k8s.io-a4678762343ff78ce5163b4f85b8c9569fc67b0da30c85d31b3786d54c3cd512-runc.DvqoDD.mount: Deactivated successfully. Jul 2 07:56:44.411457 kubelet[1465]: E0702 07:56:44.411388 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:44.683730 env[1186]: time="2024-07-02T07:56:44.683313869Z" level=info msg="StopPodSandbox for \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\"" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.752 [INFO][2496] k8s.go 608: Cleaning up netns ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.753 [INFO][2496] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" iface="eth0" netns="/var/run/netns/cni-c38191c5-6f78-f397-eed3-7dd911c7a39c" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.753 [INFO][2496] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" iface="eth0" netns="/var/run/netns/cni-c38191c5-6f78-f397-eed3-7dd911c7a39c" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.754 [INFO][2496] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" iface="eth0" netns="/var/run/netns/cni-c38191c5-6f78-f397-eed3-7dd911c7a39c" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.754 [INFO][2496] k8s.go 615: Releasing IP address(es) ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.754 [INFO][2496] utils.go 188: Calico CNI releasing IP address ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.798 [INFO][2502] ipam_plugin.go 411: Releasing address using handleID ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.798 [INFO][2502] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.798 [INFO][2502] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.807 [WARNING][2502] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.807 [INFO][2502] ipam_plugin.go 439: Releasing address using workloadID ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.810 [INFO][2502] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:56:44.815705 env[1186]: 2024-07-02 07:56:44.814 [INFO][2496] k8s.go 621: Teardown processing complete. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:56:44.818992 systemd[1]: run-netns-cni\x2dc38191c5\x2d6f78\x2df397\x2deed3\x2d7dd911c7a39c.mount: Deactivated successfully. Jul 2 07:56:44.821984 env[1186]: time="2024-07-02T07:56:44.820256270Z" level=info msg="TearDown network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\" successfully" Jul 2 07:56:44.821984 env[1186]: time="2024-07-02T07:56:44.820313360Z" level=info msg="StopPodSandbox for \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\" returns successfully" Jul 2 07:56:44.821984 env[1186]: time="2024-07-02T07:56:44.821847324Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-wzzsg,Uid:14fe4325-797c-463a-91ea-67de812d7e21,Namespace:default,Attempt:1,}" Jul 2 07:56:45.000801 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 07:56:45.001507 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali19df0f21ff6: link becomes ready Jul 2 07:56:44.997839 systemd-networkd[1006]: cali19df0f21ff6: Link UP Jul 2 07:56:45.000760 systemd-networkd[1006]: cali19df0f21ff6: Gained carrier Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.898 [INFO][2511] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0 nginx-deployment-6d5f899847- default 14fe4325-797c-463a-91ea-67de812d7e21 984 0 2024-07-02 07:56:32 +0000 UTC map[app:nginx pod-template-hash:6d5f899847 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 143.198.128.94 nginx-deployment-6d5f899847-wzzsg eth0 default [] [] [kns.default ksa.default.default] cali19df0f21ff6 [] []}} ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Namespace="default" Pod="nginx-deployment-6d5f899847-wzzsg" WorkloadEndpoint="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.898 [INFO][2511] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Namespace="default" Pod="nginx-deployment-6d5f899847-wzzsg" WorkloadEndpoint="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.933 [INFO][2523] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" HandleID="k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.946 [INFO][2523] ipam_plugin.go 264: Auto assigning IP ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" HandleID="k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc0002efd90), Attrs:map[string]string{"namespace":"default", "node":"143.198.128.94", "pod":"nginx-deployment-6d5f899847-wzzsg", "timestamp":"2024-07-02 07:56:44.933418103 +0000 UTC"}, Hostname:"143.198.128.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.946 [INFO][2523] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.946 [INFO][2523] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.946 [INFO][2523] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '143.198.128.94' Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.950 [INFO][2523] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.958 [INFO][2523] ipam.go 372: Looking up existing affinities for host host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.966 [INFO][2523] ipam.go 489: Trying affinity for 192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.969 [INFO][2523] ipam.go 155: Attempting to load block cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.973 [INFO][2523] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.973 [INFO][2523] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.3.192/26 handle="k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.976 [INFO][2523] ipam.go 1685: Creating new handle: k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810 Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.985 [INFO][2523] ipam.go 1203: Writing block in order to claim IPs block=192.168.3.192/26 handle="k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.993 [INFO][2523] ipam.go 1216: Successfully claimed IPs: [192.168.3.194/26] block=192.168.3.192/26 handle="k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.993 [INFO][2523] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.3.194/26] handle="k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" host="143.198.128.94" Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.993 [INFO][2523] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:56:45.026190 env[1186]: 2024-07-02 07:56:44.993 [INFO][2523] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.3.194/26] IPv6=[] ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" HandleID="k8s-pod-network.1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:45.027175 env[1186]: 2024-07-02 07:56:44.995 [INFO][2511] k8s.go 386: Populated endpoint ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Namespace="default" Pod="nginx-deployment-6d5f899847-wzzsg" WorkloadEndpoint="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"14fe4325-797c-463a-91ea-67de812d7e21", ResourceVersion:"984", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 32, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"", Pod:"nginx-deployment-6d5f899847-wzzsg", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.194/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali19df0f21ff6", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:56:45.027175 env[1186]: 2024-07-02 07:56:44.995 [INFO][2511] k8s.go 387: Calico CNI using IPs: [192.168.3.194/32] ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Namespace="default" Pod="nginx-deployment-6d5f899847-wzzsg" WorkloadEndpoint="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:45.027175 env[1186]: 2024-07-02 07:56:44.995 [INFO][2511] dataplane_linux.go 68: Setting the host side veth name to cali19df0f21ff6 ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Namespace="default" Pod="nginx-deployment-6d5f899847-wzzsg" WorkloadEndpoint="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:45.027175 env[1186]: 2024-07-02 07:56:45.004 [INFO][2511] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Namespace="default" Pod="nginx-deployment-6d5f899847-wzzsg" WorkloadEndpoint="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:45.027175 env[1186]: 2024-07-02 07:56:45.005 [INFO][2511] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Namespace="default" Pod="nginx-deployment-6d5f899847-wzzsg" WorkloadEndpoint="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"14fe4325-797c-463a-91ea-67de812d7e21", ResourceVersion:"984", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 32, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810", Pod:"nginx-deployment-6d5f899847-wzzsg", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.194/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali19df0f21ff6", MAC:"ea:5c:2c:80:b4:4f", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:56:45.027175 env[1186]: 2024-07-02 07:56:45.019 [INFO][2511] k8s.go 500: Wrote updated endpoint to datastore ContainerID="1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810" Namespace="default" Pod="nginx-deployment-6d5f899847-wzzsg" WorkloadEndpoint="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:56:45.037000 audit[2543]: NETFILTER_CFG table=filter:70 family=2 entries=38 op=nft_register_chain pid=2543 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:56:45.037000 audit[2543]: SYSCALL arch=c000003e syscall=46 success=yes exit=20312 a0=3 a1=7ffffd27e560 a2=0 a3=7ffffd27e54c items=0 ppid=2126 pid=2543 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:45.037000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:56:45.044943 env[1186]: time="2024-07-02T07:56:45.044672298Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 07:56:45.044943 env[1186]: time="2024-07-02T07:56:45.044725231Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 07:56:45.044943 env[1186]: time="2024-07-02T07:56:45.044741327Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 07:56:45.051546 env[1186]: time="2024-07-02T07:56:45.044992245Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810 pid=2552 runtime=io.containerd.runc.v2 Jul 2 07:56:45.065244 systemd[1]: Started cri-containerd-1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810.scope. Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.081000 audit: BPF prog-id=92 op=LOAD Jul 2 07:56:45.082000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.082000 audit[2560]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=2552 pid=2560 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:45.082000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165316131376633346337356336663661613631643766633762636337 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=2552 pid=2560 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:45.083000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165316131376633346337356336663661613631643766633762636337 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.083000 audit: BPF prog-id=93 op=LOAD Jul 2 07:56:45.083000 audit[2560]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c0003472b0 items=0 ppid=2552 pid=2560 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:45.083000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165316131376633346337356336663661613631643766633762636337 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.084000 audit: BPF prog-id=94 op=LOAD Jul 2 07:56:45.084000 audit[2560]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0003472f8 items=0 ppid=2552 pid=2560 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:45.084000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165316131376633346337356336663661613631643766633762636337 Jul 2 07:56:45.085000 audit: BPF prog-id=94 op=UNLOAD Jul 2 07:56:45.085000 audit: BPF prog-id=93 op=UNLOAD Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { perfmon } for pid=2560 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit[2560]: AVC avc: denied { bpf } for pid=2560 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:45.085000 audit: BPF prog-id=95 op=LOAD Jul 2 07:56:45.085000 audit[2560]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c000347708 items=0 ppid=2552 pid=2560 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:45.085000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3165316131376633346337356336663661613631643766633762636337 Jul 2 07:56:45.126523 env[1186]: time="2024-07-02T07:56:45.126438319Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-wzzsg,Uid:14fe4325-797c-463a-91ea-67de812d7e21,Namespace:default,Attempt:1,} returns sandbox id \"1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810\"" Jul 2 07:56:45.129018 env[1186]: time="2024-07-02T07:56:45.128964321Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Jul 2 07:56:45.413016 kubelet[1465]: E0702 07:56:45.412857 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:45.421138 sshd[2480]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=43.134.47.230 user=root Jul 2 07:56:45.421000 audit[2480]: USER_AUTH pid=2480 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=43.134.47.230 addr=43.134.47.230 terminal=ssh res=failed' Jul 2 07:56:46.087394 systemd-networkd[1006]: cali19df0f21ff6: Gained IPv6LL Jul 2 07:56:46.414169 kubelet[1465]: E0702 07:56:46.414022 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:47.415299 kubelet[1465]: E0702 07:56:47.415204 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:47.485282 sshd[2480]: Failed password for root from 43.134.47.230 port 48240 ssh2 Jul 2 07:56:48.109990 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4289210917.mount: Deactivated successfully. Jul 2 07:56:48.416392 kubelet[1465]: E0702 07:56:48.416239 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:49.008882 sshd[2480]: Received disconnect from 43.134.47.230 port 48240:11: Bye Bye [preauth] Jul 2 07:56:49.008882 sshd[2480]: Disconnected from authenticating user root 43.134.47.230 port 48240 [preauth] Jul 2 07:56:49.019212 kernel: kauditd_printk_skb: 138 callbacks suppressed Jul 2 07:56:49.019383 kernel: audit: type=1131 audit(1719907009.010:637): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@12-143.198.128.94:22-43.134.47.230:48240 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:49.010000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@12-143.198.128.94:22-43.134.47.230:48240 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:49.010020 systemd[1]: sshd@12-143.198.128.94:22-43.134.47.230:48240.service: Deactivated successfully. Jul 2 07:56:49.417831 kubelet[1465]: E0702 07:56:49.417423 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:50.113576 env[1186]: time="2024-07-02T07:56:50.113506399Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:50.115163 env[1186]: time="2024-07-02T07:56:50.115122783Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:a1bda1bb6f7f0fd17a3ae397f26593ab0aa8e8b92e3e8a9903f99fdb26afea17,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:50.117394 env[1186]: time="2024-07-02T07:56:50.117347940Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:50.120166 env[1186]: time="2024-07-02T07:56:50.120114418Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:bf28ef5d86aca0cd30a8ef19032ccadc1eada35dc9f14f42f3ccb73974f013de,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:56:50.121329 env[1186]: time="2024-07-02T07:56:50.121279614Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:a1bda1bb6f7f0fd17a3ae397f26593ab0aa8e8b92e3e8a9903f99fdb26afea17\"" Jul 2 07:56:50.124563 env[1186]: time="2024-07-02T07:56:50.124522378Z" level=info msg="CreateContainer within sandbox \"1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Jul 2 07:56:50.140220 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1233096542.mount: Deactivated successfully. Jul 2 07:56:50.148368 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount371934574.mount: Deactivated successfully. Jul 2 07:56:50.153553 env[1186]: time="2024-07-02T07:56:50.153442286Z" level=info msg="CreateContainer within sandbox \"1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"0e874f14397203c14b696618de5adf8502a42457909ea45714ceaff759210845\"" Jul 2 07:56:50.154472 env[1186]: time="2024-07-02T07:56:50.154428029Z" level=info msg="StartContainer for \"0e874f14397203c14b696618de5adf8502a42457909ea45714ceaff759210845\"" Jul 2 07:56:50.180503 systemd[1]: Started cri-containerd-0e874f14397203c14b696618de5adf8502a42457909ea45714ceaff759210845.scope. Jul 2 07:56:50.242274 kernel: audit: type=1400 audit(1719907010.206:638): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.269190 kernel: audit: type=1400 audit(1719907010.206:639): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.279218 kernel: audit: type=1400 audit(1719907010.206:640): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.280985 env[1186]: time="2024-07-02T07:56:50.280934535Z" level=info msg="StartContainer for \"0e874f14397203c14b696618de5adf8502a42457909ea45714ceaff759210845\" returns successfully" Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.287114 kernel: audit: type=1400 audit(1719907010.206:641): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.295466 kernel: audit: type=1400 audit(1719907010.206:642): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.295612 kernel: audit: type=1400 audit(1719907010.206:643): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.295653 kernel: audit: type=1400 audit(1719907010.206:644): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.303207 kernel: audit: type=1400 audit(1719907010.206:645): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.303403 kernel: audit: type=1400 audit(1719907010.206:646): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.243000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.243000 audit: BPF prog-id=96 op=LOAD Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c00014dc48 a2=10 a3=1c items=0 ppid=2552 pid=2608 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:50.244000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065383734663134333937323033633134623639363631386465356164 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c00014d6b0 a2=3c a3=8 items=0 ppid=2552 pid=2608 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:50.244000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065383734663134333937323033633134623639363631386465356164 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit: BPF prog-id=97 op=LOAD Jul 2 07:56:50.244000 audit[2608]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014d9d8 a2=78 a3=c0003d8d50 items=0 ppid=2552 pid=2608 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:50.244000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065383734663134333937323033633134623639363631386465356164 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit: BPF prog-id=98 op=LOAD Jul 2 07:56:50.244000 audit[2608]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c00014d770 a2=78 a3=c0003d8d98 items=0 ppid=2552 pid=2608 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:50.244000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065383734663134333937323033633134623639363631386465356164 Jul 2 07:56:50.244000 audit: BPF prog-id=98 op=UNLOAD Jul 2 07:56:50.244000 audit: BPF prog-id=97 op=UNLOAD Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { perfmon } for pid=2608 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit[2608]: AVC avc: denied { bpf } for pid=2608 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:50.244000 audit: BPF prog-id=99 op=LOAD Jul 2 07:56:50.244000 audit[2608]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014dc30 a2=78 a3=c0003d91a8 items=0 ppid=2552 pid=2608 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:50.244000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065383734663134333937323033633134623639363631386465356164 Jul 2 07:56:50.418749 kubelet[1465]: E0702 07:56:50.418548 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:50.844269 kubelet[1465]: I0702 07:56:50.844114 1465 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-6d5f899847-wzzsg" podStartSLOduration=13.850797878 podCreationTimestamp="2024-07-02 07:56:32 +0000 UTC" firstStartedPulling="2024-07-02 07:56:45.128569974 +0000 UTC m=+32.589312637" lastFinishedPulling="2024-07-02 07:56:50.121776647 +0000 UTC m=+37.582519279" observedRunningTime="2024-07-02 07:56:50.843845672 +0000 UTC m=+38.304588337" watchObservedRunningTime="2024-07-02 07:56:50.84400452 +0000 UTC m=+38.304747190" Jul 2 07:56:51.373527 update_engine[1178]: I0702 07:56:51.373461 1178 update_attempter.cc:509] Updating boot flags... Jul 2 07:56:51.420140 kubelet[1465]: E0702 07:56:51.419906 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:52.421137 kubelet[1465]: E0702 07:56:52.421085 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:53.370843 kubelet[1465]: E0702 07:56:53.370782 1465 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:53.421512 kubelet[1465]: E0702 07:56:53.421438 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:54.422093 kubelet[1465]: E0702 07:56:54.421997 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:54.966136 systemd[1]: Started sshd@13-143.198.128.94:22-34.41.17.26:48828.service. Jul 2 07:56:54.968982 kernel: kauditd_printk_skb: 48 callbacks suppressed Jul 2 07:56:54.969109 kernel: audit: type=1130 audit(1719907014.965:656): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-143.198.128.94:22-34.41.17.26:48828 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:54.965000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-143.198.128.94:22-34.41.17.26:48828 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:55.295342 sshd[2674]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=34.41.17.26 user=root Jul 2 07:56:55.295000 audit[2674]: USER_AUTH pid=2674 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=34.41.17.26 addr=34.41.17.26 terminal=ssh res=failed' Jul 2 07:56:55.301276 kernel: audit: type=1100 audit(1719907015.295:657): pid=2674 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=34.41.17.26 addr=34.41.17.26 terminal=ssh res=failed' Jul 2 07:56:55.422999 kubelet[1465]: E0702 07:56:55.422903 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:55.823000 audit[2679]: NETFILTER_CFG table=filter:71 family=2 entries=20 op=nft_register_rule pid=2679 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:55.823000 audit[2679]: SYSCALL arch=c000003e syscall=46 success=yes exit=11860 a0=3 a1=7fffb5c31f90 a2=0 a3=7fffb5c31f7c items=0 ppid=1682 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:55.835317 kernel: audit: type=1325 audit(1719907015.823:658): table=filter:71 family=2 entries=20 op=nft_register_rule pid=2679 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:55.835549 kernel: audit: type=1300 audit(1719907015.823:658): arch=c000003e syscall=46 success=yes exit=11860 a0=3 a1=7fffb5c31f90 a2=0 a3=7fffb5c31f7c items=0 ppid=1682 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:55.835589 kernel: audit: type=1327 audit(1719907015.823:658): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:55.823000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:55.841319 kernel: audit: type=1325 audit(1719907015.839:659): table=nat:72 family=2 entries=20 op=nft_register_rule pid=2679 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:55.839000 audit[2679]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=2679 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:55.839000 audit[2679]: SYSCALL arch=c000003e syscall=46 success=yes exit=5772 a0=3 a1=7fffb5c31f90 a2=0 a3=0 items=0 ppid=1682 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:55.839000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:55.857091 kernel: audit: type=1300 audit(1719907015.839:659): arch=c000003e syscall=46 success=yes exit=5772 a0=3 a1=7fffb5c31f90 a2=0 a3=0 items=0 ppid=1682 pid=2679 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:55.857286 kernel: audit: type=1327 audit(1719907015.839:659): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:55.858000 audit[2683]: NETFILTER_CFG table=filter:73 family=2 entries=32 op=nft_register_rule pid=2683 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:55.858000 audit[2683]: SYSCALL arch=c000003e syscall=46 success=yes exit=11860 a0=3 a1=7ffd89dc1df0 a2=0 a3=7ffd89dc1ddc items=0 ppid=1682 pid=2683 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:55.869497 kernel: audit: type=1325 audit(1719907015.858:660): table=filter:73 family=2 entries=32 op=nft_register_rule pid=2683 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:55.869674 kernel: audit: type=1300 audit(1719907015.858:660): arch=c000003e syscall=46 success=yes exit=11860 a0=3 a1=7ffd89dc1df0 a2=0 a3=7ffd89dc1ddc items=0 ppid=1682 pid=2683 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:55.858000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:55.859000 audit[2683]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=2683 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:56:55.859000 audit[2683]: SYSCALL arch=c000003e syscall=46 success=yes exit=5772 a0=3 a1=7ffd89dc1df0 a2=0 a3=0 items=0 ppid=1682 pid=2683 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:55.859000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:56:55.974509 kubelet[1465]: I0702 07:56:55.973759 1465 topology_manager.go:215] "Topology Admit Handler" podUID="2919a693-842d-4709-9045-3a713f217d6b" podNamespace="default" podName="nfs-server-provisioner-0" Jul 2 07:56:55.981692 systemd[1]: Created slice kubepods-besteffort-pod2919a693_842d_4709_9045_3a713f217d6b.slice. Jul 2 07:56:56.021088 kubelet[1465]: I0702 07:56:56.021032 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/2919a693-842d-4709-9045-3a713f217d6b-data\") pod \"nfs-server-provisioner-0\" (UID: \"2919a693-842d-4709-9045-3a713f217d6b\") " pod="default/nfs-server-provisioner-0" Jul 2 07:56:56.021088 kubelet[1465]: I0702 07:56:56.021106 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-v96rx\" (UniqueName: \"kubernetes.io/projected/2919a693-842d-4709-9045-3a713f217d6b-kube-api-access-v96rx\") pod \"nfs-server-provisioner-0\" (UID: \"2919a693-842d-4709-9045-3a713f217d6b\") " pod="default/nfs-server-provisioner-0" Jul 2 07:56:56.288223 env[1186]: time="2024-07-02T07:56:56.286442775Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:2919a693-842d-4709-9045-3a713f217d6b,Namespace:default,Attempt:0,}" Jul 2 07:56:56.423540 kubelet[1465]: E0702 07:56:56.423470 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:56.516000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@14-143.198.128.94:22-43.163.245.219:48442 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:56.517368 systemd[1]: Started sshd@14-143.198.128.94:22-43.163.245.219:48442.service. Jul 2 07:56:56.559527 systemd-networkd[1006]: cali60e51b789ff: Link UP Jul 2 07:56:56.565532 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 07:56:56.565697 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Jul 2 07:56:56.564894 systemd-networkd[1006]: cali60e51b789ff: Gained carrier Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.386 [INFO][2685] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {143.198.128.94-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default 2919a693-842d-4709-9045-3a713f217d6b 1038 0 2024-07-02 07:56:55 +0000 UTC map[app:nfs-server-provisioner apps.kubernetes.io/pod-index:0 chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 143.198.128.94 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="143.198.128.94-k8s-nfs--server--provisioner--0-" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.386 [INFO][2685] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.447 [INFO][2697] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" HandleID="k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Workload="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.473 [INFO][2697] ipam_plugin.go 264: Auto assigning IP ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" HandleID="k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Workload="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc0002ff950), Attrs:map[string]string{"namespace":"default", "node":"143.198.128.94", "pod":"nfs-server-provisioner-0", "timestamp":"2024-07-02 07:56:56.447118255 +0000 UTC"}, Hostname:"143.198.128.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.473 [INFO][2697] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.473 [INFO][2697] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.473 [INFO][2697] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '143.198.128.94' Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.477 [INFO][2697] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.488 [INFO][2697] ipam.go 372: Looking up existing affinities for host host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.502 [INFO][2697] ipam.go 489: Trying affinity for 192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.519 [INFO][2697] ipam.go 155: Attempting to load block cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.524 [INFO][2697] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.524 [INFO][2697] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.3.192/26 handle="k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.528 [INFO][2697] ipam.go 1685: Creating new handle: k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1 Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.541 [INFO][2697] ipam.go 1203: Writing block in order to claim IPs block=192.168.3.192/26 handle="k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.552 [INFO][2697] ipam.go 1216: Successfully claimed IPs: [192.168.3.195/26] block=192.168.3.192/26 handle="k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.553 [INFO][2697] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.3.195/26] handle="k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" host="143.198.128.94" Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.553 [INFO][2697] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:56:56.582948 env[1186]: 2024-07-02 07:56:56.553 [INFO][2697] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.3.195/26] IPv6=[] ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" HandleID="k8s-pod-network.465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Workload="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" Jul 2 07:56:56.584037 env[1186]: 2024-07-02 07:56:56.555 [INFO][2685] k8s.go 386: Populated endpoint ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"2919a693-842d-4709-9045-3a713f217d6b", ResourceVersion:"1038", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 55, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "apps.kubernetes.io/pod-index":"0", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.3.195/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:56:56.584037 env[1186]: 2024-07-02 07:56:56.555 [INFO][2685] k8s.go 387: Calico CNI using IPs: [192.168.3.195/32] ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" Jul 2 07:56:56.584037 env[1186]: 2024-07-02 07:56:56.555 [INFO][2685] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" Jul 2 07:56:56.584037 env[1186]: 2024-07-02 07:56:56.567 [INFO][2685] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" Jul 2 07:56:56.584549 env[1186]: 2024-07-02 07:56:56.568 [INFO][2685] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"2919a693-842d-4709-9045-3a713f217d6b", ResourceVersion:"1038", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 55, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "apps.kubernetes.io/pod-index":"0", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.3.195/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"62:21:f2:ff:20:eb", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:56:56.584549 env[1186]: 2024-07-02 07:56:56.581 [INFO][2685] k8s.go 500: Wrote updated endpoint to datastore ContainerID="465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="143.198.128.94-k8s-nfs--server--provisioner--0-eth0" Jul 2 07:56:56.615000 audit[2720]: NETFILTER_CFG table=filter:75 family=2 entries=38 op=nft_register_chain pid=2720 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:56:56.615000 audit[2720]: SYSCALL arch=c000003e syscall=46 success=yes exit=19820 a0=3 a1=7fffebf93c00 a2=0 a3=7fffebf93bec items=0 ppid=2126 pid=2720 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:56.615000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:56:56.629371 env[1186]: time="2024-07-02T07:56:56.629266560Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 07:56:56.629371 env[1186]: time="2024-07-02T07:56:56.629312296Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 07:56:56.629371 env[1186]: time="2024-07-02T07:56:56.629324350Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 07:56:56.630041 env[1186]: time="2024-07-02T07:56:56.629809645Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1 pid=2728 runtime=io.containerd.runc.v2 Jul 2 07:56:56.685354 systemd[1]: Started cri-containerd-465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1.scope. Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.709000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.710000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.710000 audit: BPF prog-id=100 op=LOAD Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c00014dc48 a2=10 a3=1c items=0 ppid=2728 pid=2738 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:56.711000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3436356635356332303732373039376432363733343566643037633964 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c00014d6b0 a2=3c a3=c items=0 ppid=2728 pid=2738 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:56.711000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3436356635356332303732373039376432363733343566643037633964 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.711000 audit: BPF prog-id=101 op=LOAD Jul 2 07:56:56.711000 audit[2738]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014d9d8 a2=78 a3=c0001dfd30 items=0 ppid=2728 pid=2738 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:56.711000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3436356635356332303732373039376432363733343566643037633964 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.713000 audit: BPF prog-id=102 op=LOAD Jul 2 07:56:56.713000 audit[2738]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c00014d770 a2=78 a3=c0001dfd78 items=0 ppid=2728 pid=2738 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:56.713000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3436356635356332303732373039376432363733343566643037633964 Jul 2 07:56:56.714000 audit: BPF prog-id=102 op=UNLOAD Jul 2 07:56:56.714000 audit: BPF prog-id=101 op=UNLOAD Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { perfmon } for pid=2738 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit[2738]: AVC avc: denied { bpf } for pid=2738 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:56:56.714000 audit: BPF prog-id=103 op=LOAD Jul 2 07:56:56.714000 audit[2738]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c00014dc30 a2=78 a3=c000386188 items=0 ppid=2728 pid=2738 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:56:56.714000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3436356635356332303732373039376432363733343566643037633964 Jul 2 07:56:56.763228 env[1186]: time="2024-07-02T07:56:56.763030542Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:2919a693-842d-4709-9045-3a713f217d6b,Namespace:default,Attempt:0,} returns sandbox id \"465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1\"" Jul 2 07:56:56.767119 env[1186]: time="2024-07-02T07:56:56.767011370Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Jul 2 07:56:57.147664 systemd[1]: run-containerd-runc-k8s.io-465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1-runc.DAQnFb.mount: Deactivated successfully. Jul 2 07:56:57.188743 sshd[2704]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=43.163.245.219 user=root Jul 2 07:56:57.188000 audit[2704]: ANOM_LOGIN_FAILURES pid=2704 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='pam_faillock uid=0 exe="/usr/sbin/sshd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:57.189646 sshd[2704]: pam_faillock(sshd:auth): Consecutive login failures for user root account temporarily locked Jul 2 07:56:57.188000 audit[2704]: USER_AUTH pid=2704 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=43.163.245.219 addr=43.163.245.219 terminal=ssh res=failed' Jul 2 07:56:57.400814 sshd[2674]: Failed password for root from 34.41.17.26 port 48828 ssh2 Jul 2 07:56:57.424993 kubelet[1465]: E0702 07:56:57.424367 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:57.820306 systemd-networkd[1006]: cali60e51b789ff: Gained IPv6LL Jul 2 07:56:58.425422 kubelet[1465]: E0702 07:56:58.425338 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:56:58.681891 sshd[2674]: Received disconnect from 34.41.17.26 port 48828:11: Bye Bye [preauth] Jul 2 07:56:58.681891 sshd[2674]: Disconnected from authenticating user root 34.41.17.26 port 48828 [preauth] Jul 2 07:56:58.682759 systemd[1]: sshd@13-143.198.128.94:22-34.41.17.26:48828.service: Deactivated successfully. Jul 2 07:56:58.682000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-143.198.128.94:22-34.41.17.26:48828 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:56:58.903252 sshd[2704]: Failed password for root from 43.163.245.219 port 48442 ssh2 Jul 2 07:56:59.426274 kubelet[1465]: E0702 07:56:59.426184 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:00.426419 kubelet[1465]: E0702 07:57:00.426355 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:00.498467 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount977385803.mount: Deactivated successfully. Jul 2 07:57:00.649954 sshd[2704]: Received disconnect from 43.163.245.219 port 48442:11: Bye Bye [preauth] Jul 2 07:57:00.649954 sshd[2704]: Disconnected from authenticating user root 43.163.245.219 port 48442 [preauth] Jul 2 07:57:00.652156 systemd[1]: sshd@14-143.198.128.94:22-43.163.245.219:48442.service: Deactivated successfully. Jul 2 07:57:00.659024 kernel: kauditd_printk_skb: 68 callbacks suppressed Jul 2 07:57:00.659282 kernel: audit: type=1131 audit(1719907020.651:685): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@14-143.198.128.94:22-43.163.245.219:48442 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:00.651000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@14-143.198.128.94:22-43.163.245.219:48442 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:01.426648 kubelet[1465]: E0702 07:57:01.426517 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:02.427621 kubelet[1465]: E0702 07:57:02.427549 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:03.294990 systemd[1]: run-containerd-runc-k8s.io-52227ec532baf44f666bd2edc2df8bf4a40bec92f2e44b63cad1b8798bd3ed13-runc.YkDtQU.mount: Deactivated successfully. Jul 2 07:57:03.397306 kubelet[1465]: E0702 07:57:03.396754 1465 dns.go:153] "Nameserver limits exceeded" err="Nameserver limits were exceeded, some nameservers have been omitted, the applied nameserver line is: 67.207.67.3 67.207.67.2 67.207.67.3" Jul 2 07:57:03.428297 kubelet[1465]: E0702 07:57:03.428214 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:03.786129 env[1186]: time="2024-07-02T07:57:03.786046576Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:03.788682 env[1186]: time="2024-07-02T07:57:03.788623534Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:fd0b16f70b66b72bcb2f91d556fa33eba02729c44ffc5f2c16130e7f9fbed3c4,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:03.790748 env[1186]: time="2024-07-02T07:57:03.790696167Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:03.794204 env[1186]: time="2024-07-02T07:57:03.794154748Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:03.795018 env[1186]: time="2024-07-02T07:57:03.794962450Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:fd0b16f70b66b72bcb2f91d556fa33eba02729c44ffc5f2c16130e7f9fbed3c4\"" Jul 2 07:57:03.798252 env[1186]: time="2024-07-02T07:57:03.798212948Z" level=info msg="CreateContainer within sandbox \"465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Jul 2 07:57:03.814101 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1532406061.mount: Deactivated successfully. Jul 2 07:57:03.825692 env[1186]: time="2024-07-02T07:57:03.825622682Z" level=info msg="CreateContainer within sandbox \"465f55c20727097d267345fd07c9d224d15f04ed8ac23e00407d72687d364cf1\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"ee31582b1e6f6d01501ee184c6f04efad41eeede3398722c0a5fd950faa3142f\"" Jul 2 07:57:03.826853 env[1186]: time="2024-07-02T07:57:03.826790242Z" level=info msg="StartContainer for \"ee31582b1e6f6d01501ee184c6f04efad41eeede3398722c0a5fd950faa3142f\"" Jul 2 07:57:03.847546 systemd[1]: Started cri-containerd-ee31582b1e6f6d01501ee184c6f04efad41eeede3398722c0a5fd950faa3142f.scope. Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.882884 kernel: audit: type=1400 audit(1719907023.872:686): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.883029 kernel: audit: type=1400 audit(1719907023.872:687): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.883093 kernel: audit: type=1400 audit(1719907023.872:688): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.898433 kernel: audit: type=1400 audit(1719907023.872:689): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.898587 kernel: audit: type=1400 audit(1719907023.872:690): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.898623 kernel: audit: type=1400 audit(1719907023.872:691): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.903320 kernel: audit: type=1400 audit(1719907023.872:692): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.907762 kernel: audit: type=1400 audit(1719907023.872:693): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.872000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.918099 kernel: audit: type=1400 audit(1719907023.872:694): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.881000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.881000 audit: BPF prog-id=104 op=LOAD Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=2728 pid=2808 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:03.886000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6565333135383262316536663664303135303165653138346336663034 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=8 items=0 ppid=2728 pid=2808 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:03.886000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6565333135383262316536663664303135303165653138346336663034 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit: BPF prog-id=105 op=LOAD Jul 2 07:57:03.886000 audit[2808]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c0003a6ac0 items=0 ppid=2728 pid=2808 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:03.886000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6565333135383262316536663664303135303165653138346336663034 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.886000 audit: BPF prog-id=106 op=LOAD Jul 2 07:57:03.886000 audit[2808]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c0003a6b08 items=0 ppid=2728 pid=2808 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:03.886000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6565333135383262316536663664303135303165653138346336663034 Jul 2 07:57:03.888000 audit: BPF prog-id=106 op=UNLOAD Jul 2 07:57:03.888000 audit: BPF prog-id=105 op=UNLOAD Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { perfmon } for pid=2808 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit[2808]: AVC avc: denied { bpf } for pid=2808 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:03.888000 audit: BPF prog-id=107 op=LOAD Jul 2 07:57:03.888000 audit[2808]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c0003a6f18 items=0 ppid=2728 pid=2808 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:03.888000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6565333135383262316536663664303135303165653138346336663034 Jul 2 07:57:03.942618 env[1186]: time="2024-07-02T07:57:03.942530386Z" level=info msg="StartContainer for \"ee31582b1e6f6d01501ee184c6f04efad41eeede3398722c0a5fd950faa3142f\" returns successfully" Jul 2 07:57:03.992000 audit[2839]: AVC avc: denied { search } for pid=2839 comm="rpcbind" name="crypto" dev="proc" ino=23168 scontext=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Jul 2 07:57:03.992000 audit[2839]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7f1c8bdfc0c0 a2=0 a3=0 items=0 ppid=2821 pid=2839 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 key=(null) Jul 2 07:57:03.992000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Jul 2 07:57:04.039000 audit[2844]: AVC avc: denied { search } for pid=2844 comm="dbus-daemon" name="crypto" dev="proc" ino=23168 scontext=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Jul 2 07:57:04.039000 audit[2844]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7fc9155920c0 a2=0 a3=0 items=0 ppid=2821 pid=2844 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 key=(null) Jul 2 07:57:04.039000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Jul 2 07:57:04.043000 audit[2845]: AVC avc: denied { watch } for pid=2845 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=537703 scontext=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c552,c556 tclass=dir permissive=0 Jul 2 07:57:04.043000 audit[2845]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=6 a1=5580960d3590 a2=2c8 a3=7ffdfcfaf70c items=0 ppid=2821 pid=2845 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 key=(null) Jul 2 07:57:04.043000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Jul 2 07:57:04.050000 audit[2846]: AVC avc: denied { read } for pid=2846 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=23828 scontext=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Jul 2 07:57:04.050000 audit[2846]: SYSCALL arch=c000003e syscall=2 success=no exit=-13 a0=7f957a141320 a1=80000 a2=d a3=7ffd34b302c0 items=0 ppid=2821 pid=2846 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 key=(null) Jul 2 07:57:04.050000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Jul 2 07:57:04.052000 audit[2846]: AVC avc: denied { search } for pid=2846 comm="ganesha.nfsd" name="crypto" dev="proc" ino=23168 scontext=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Jul 2 07:57:04.052000 audit[2846]: SYSCALL arch=c000003e syscall=257 success=no exit=-13 a0=ffffff9c a1=7f95796950c0 a2=0 a3=0 items=0 ppid=2821 pid=2846 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c552,c556 key=(null) Jul 2 07:57:04.052000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Jul 2 07:57:04.429539 kubelet[1465]: E0702 07:57:04.429441 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:04.931401 kubelet[1465]: I0702 07:57:04.931322 1465 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=2.901647442 podCreationTimestamp="2024-07-02 07:56:55 +0000 UTC" firstStartedPulling="2024-07-02 07:56:56.765797319 +0000 UTC m=+44.226539955" lastFinishedPulling="2024-07-02 07:57:03.795429907 +0000 UTC m=+51.256172557" observedRunningTime="2024-07-02 07:57:04.931000889 +0000 UTC m=+52.391743547" watchObservedRunningTime="2024-07-02 07:57:04.931280044 +0000 UTC m=+52.392022693" Jul 2 07:57:04.964000 audit[2865]: NETFILTER_CFG table=filter:76 family=2 entries=20 op=nft_register_rule pid=2865 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:04.964000 audit[2865]: SYSCALL arch=c000003e syscall=46 success=yes exit=2932 a0=3 a1=7ffeb9558a10 a2=0 a3=7ffeb95589fc items=0 ppid=1682 pid=2865 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:04.964000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:04.968000 audit[2865]: NETFILTER_CFG table=nat:77 family=2 entries=104 op=nft_register_chain pid=2865 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:04.968000 audit[2865]: SYSCALL arch=c000003e syscall=46 success=yes exit=48684 a0=3 a1=7ffeb9558a10 a2=0 a3=7ffeb95589fc items=0 ppid=1682 pid=2865 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:04.968000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:05.336009 systemd[1]: Started sshd@15-143.198.128.94:22-43.134.75.53:58362.service. Jul 2 07:57:05.336000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@15-143.198.128.94:22-43.134.75.53:58362 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:05.429942 kubelet[1465]: E0702 07:57:05.429882 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:06.430614 kubelet[1465]: E0702 07:57:06.430554 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:06.619286 sshd[2868]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=43.134.75.53 user=root Jul 2 07:57:06.618000 audit[2868]: USER_AUTH pid=2868 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=43.134.75.53 addr=43.134.75.53 terminal=ssh res=failed' Jul 2 07:57:06.620813 kernel: kauditd_printk_skb: 70 callbacks suppressed Jul 2 07:57:06.620900 kernel: audit: type=1100 audit(1719907026.618:712): pid=2868 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=43.134.75.53 addr=43.134.75.53 terminal=ssh res=failed' Jul 2 07:57:07.431873 kubelet[1465]: E0702 07:57:07.431817 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:08.070000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-143.198.128.94:22-43.153.179.224:48552 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:08.071458 systemd[1]: Started sshd@16-143.198.128.94:22-43.153.179.224:48552.service. Jul 2 07:57:08.077116 kernel: audit: type=1130 audit(1719907028.070:713): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-143.198.128.94:22-43.153.179.224:48552 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:08.433620 kubelet[1465]: E0702 07:57:08.433537 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:08.569324 sshd[2868]: Failed password for root from 43.134.75.53 port 58362 ssh2 Jul 2 07:57:08.980756 sshd[2873]: Invalid user mine from 43.153.179.224 port 48552 Jul 2 07:57:08.984838 sshd[2873]: pam_faillock(sshd:auth): User unknown Jul 2 07:57:08.986006 sshd[2873]: pam_unix(sshd:auth): check pass; user unknown Jul 2 07:57:08.986190 sshd[2873]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=43.153.179.224 Jul 2 07:57:08.986900 sshd[2873]: pam_faillock(sshd:auth): User unknown Jul 2 07:57:08.986000 audit[2873]: USER_AUTH pid=2873 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="mine" exe="/usr/sbin/sshd" hostname=43.153.179.224 addr=43.153.179.224 terminal=ssh res=failed' Jul 2 07:57:08.993132 kernel: audit: type=1100 audit(1719907028.986:714): pid=2873 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="mine" exe="/usr/sbin/sshd" hostname=43.153.179.224 addr=43.153.179.224 terminal=ssh res=failed' Jul 2 07:57:09.369000 audit[2876]: NETFILTER_CFG table=filter:78 family=2 entries=9 op=nft_register_rule pid=2876 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:09.369000 audit[2876]: SYSCALL arch=c000003e syscall=46 success=yes exit=3676 a0=3 a1=7ffdc5c6eb00 a2=0 a3=7ffdc5c6eaec items=0 ppid=1682 pid=2876 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:09.380129 kernel: audit: type=1325 audit(1719907029.369:715): table=filter:78 family=2 entries=9 op=nft_register_rule pid=2876 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:09.380318 kernel: audit: type=1300 audit(1719907029.369:715): arch=c000003e syscall=46 success=yes exit=3676 a0=3 a1=7ffdc5c6eb00 a2=0 a3=7ffdc5c6eaec items=0 ppid=1682 pid=2876 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:09.380352 kernel: audit: type=1327 audit(1719907029.369:715): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:09.369000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:09.371000 audit[2876]: NETFILTER_CFG table=nat:79 family=2 entries=44 op=nft_register_rule pid=2876 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:09.386344 kernel: audit: type=1325 audit(1719907029.371:716): table=nat:79 family=2 entries=44 op=nft_register_rule pid=2876 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:09.386481 kernel: audit: type=1300 audit(1719907029.371:716): arch=c000003e syscall=46 success=yes exit=14988 a0=3 a1=7ffdc5c6eb00 a2=0 a3=7ffdc5c6eaec items=0 ppid=1682 pid=2876 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:09.371000 audit[2876]: SYSCALL arch=c000003e syscall=46 success=yes exit=14988 a0=3 a1=7ffdc5c6eb00 a2=0 a3=7ffdc5c6eaec items=0 ppid=1682 pid=2876 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:09.371000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:09.392000 audit[2878]: NETFILTER_CFG table=filter:80 family=2 entries=10 op=nft_register_rule pid=2878 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:09.399846 kernel: audit: type=1327 audit(1719907029.371:716): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:09.399975 kernel: audit: type=1325 audit(1719907029.392:717): table=filter:80 family=2 entries=10 op=nft_register_rule pid=2878 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:09.392000 audit[2878]: SYSCALL arch=c000003e syscall=46 success=yes exit=3676 a0=3 a1=7ffc85d89c90 a2=0 a3=7ffc85d89c7c items=0 ppid=1682 pid=2878 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:09.392000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:09.398000 audit[2878]: NETFILTER_CFG table=nat:81 family=2 entries=44 op=nft_register_rule pid=2878 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:09.398000 audit[2878]: SYSCALL arch=c000003e syscall=46 success=yes exit=14988 a0=3 a1=7ffc85d89c90 a2=0 a3=7ffc85d89c7c items=0 ppid=1682 pid=2878 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:09.398000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:09.407186 kubelet[1465]: I0702 07:57:09.407142 1465 topology_manager.go:215] "Topology Admit Handler" podUID="a8dd916f-a484-4e60-8076-2b21d7cde1fc" podNamespace="calico-apiserver" podName="calico-apiserver-6cbdfb9949-hnqqx" Jul 2 07:57:09.413791 systemd[1]: Created slice kubepods-besteffort-poda8dd916f_a484_4e60_8076_2b21d7cde1fc.slice. Jul 2 07:57:09.434572 kubelet[1465]: E0702 07:57:09.434505 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:09.558904 kubelet[1465]: I0702 07:57:09.558855 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/a8dd916f-a484-4e60-8076-2b21d7cde1fc-calico-apiserver-certs\") pod \"calico-apiserver-6cbdfb9949-hnqqx\" (UID: \"a8dd916f-a484-4e60-8076-2b21d7cde1fc\") " pod="calico-apiserver/calico-apiserver-6cbdfb9949-hnqqx" Jul 2 07:57:09.558904 kubelet[1465]: I0702 07:57:09.558921 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-nplvc\" (UniqueName: \"kubernetes.io/projected/a8dd916f-a484-4e60-8076-2b21d7cde1fc-kube-api-access-nplvc\") pod \"calico-apiserver-6cbdfb9949-hnqqx\" (UID: \"a8dd916f-a484-4e60-8076-2b21d7cde1fc\") " pod="calico-apiserver/calico-apiserver-6cbdfb9949-hnqqx" Jul 2 07:57:09.660143 kubelet[1465]: E0702 07:57:09.659786 1465 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: secret "calico-apiserver-certs" not found Jul 2 07:57:09.661507 kubelet[1465]: E0702 07:57:09.661469 1465 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/a8dd916f-a484-4e60-8076-2b21d7cde1fc-calico-apiserver-certs podName:a8dd916f-a484-4e60-8076-2b21d7cde1fc nodeName:}" failed. No retries permitted until 2024-07-02 07:57:10.1604741 +0000 UTC m=+57.621216744 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/a8dd916f-a484-4e60-8076-2b21d7cde1fc-calico-apiserver-certs") pod "calico-apiserver-6cbdfb9949-hnqqx" (UID: "a8dd916f-a484-4e60-8076-2b21d7cde1fc") : secret "calico-apiserver-certs" not found Jul 2 07:57:10.197019 sshd[2868]: Received disconnect from 43.134.75.53 port 58362:11: Bye Bye [preauth] Jul 2 07:57:10.197019 sshd[2868]: Disconnected from authenticating user root 43.134.75.53 port 58362 [preauth] Jul 2 07:57:10.197000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@15-143.198.128.94:22-43.134.75.53:58362 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:10.198211 systemd[1]: sshd@15-143.198.128.94:22-43.134.75.53:58362.service: Deactivated successfully. Jul 2 07:57:10.319177 env[1186]: time="2024-07-02T07:57:10.318727122Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-6cbdfb9949-hnqqx,Uid:a8dd916f-a484-4e60-8076-2b21d7cde1fc,Namespace:calico-apiserver,Attempt:0,}" Jul 2 07:57:10.435299 kubelet[1465]: E0702 07:57:10.435217 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:10.543037 systemd-networkd[1006]: cali3e02c445c5b: Link UP Jul 2 07:57:10.547385 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 07:57:10.547712 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali3e02c445c5b: link becomes ready Jul 2 07:57:10.547959 systemd-networkd[1006]: cali3e02c445c5b: Gained carrier Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.389 [INFO][2883] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0 calico-apiserver-6cbdfb9949- calico-apiserver a8dd916f-a484-4e60-8076-2b21d7cde1fc 1138 0 2024-07-02 07:57:09 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:6cbdfb9949 projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 143.198.128.94 calico-apiserver-6cbdfb9949-hnqqx eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] cali3e02c445c5b [] []}} ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Namespace="calico-apiserver" Pod="calico-apiserver-6cbdfb9949-hnqqx" WorkloadEndpoint="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.389 [INFO][2883] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Namespace="calico-apiserver" Pod="calico-apiserver-6cbdfb9949-hnqqx" WorkloadEndpoint="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.452 [INFO][2894] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" HandleID="k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Workload="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.468 [INFO][2894] ipam_plugin.go 264: Auto assigning IP ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" HandleID="k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Workload="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc0002f1d80), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"143.198.128.94", "pod":"calico-apiserver-6cbdfb9949-hnqqx", "timestamp":"2024-07-02 07:57:10.45274587 +0000 UTC"}, Hostname:"143.198.128.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.468 [INFO][2894] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.468 [INFO][2894] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.468 [INFO][2894] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '143.198.128.94' Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.472 [INFO][2894] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.483 [INFO][2894] ipam.go 372: Looking up existing affinities for host host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.493 [INFO][2894] ipam.go 489: Trying affinity for 192.168.3.192/26 host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.497 [INFO][2894] ipam.go 155: Attempting to load block cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.503 [INFO][2894] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.503 [INFO][2894] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.3.192/26 handle="k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.508 [INFO][2894] ipam.go 1685: Creating new handle: k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.516 [INFO][2894] ipam.go 1203: Writing block in order to claim IPs block=192.168.3.192/26 handle="k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.530 [INFO][2894] ipam.go 1216: Successfully claimed IPs: [192.168.3.196/26] block=192.168.3.192/26 handle="k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.530 [INFO][2894] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.3.196/26] handle="k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" host="143.198.128.94" Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.530 [INFO][2894] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:57:10.573720 env[1186]: 2024-07-02 07:57:10.530 [INFO][2894] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.3.196/26] IPv6=[] ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" HandleID="k8s-pod-network.45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Workload="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" Jul 2 07:57:10.574928 env[1186]: 2024-07-02 07:57:10.532 [INFO][2883] k8s.go 386: Populated endpoint ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Namespace="calico-apiserver" Pod="calico-apiserver-6cbdfb9949-hnqqx" WorkloadEndpoint="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0", GenerateName:"calico-apiserver-6cbdfb9949-", Namespace:"calico-apiserver", SelfLink:"", UID:"a8dd916f-a484-4e60-8076-2b21d7cde1fc", ResourceVersion:"1138", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 57, 9, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"6cbdfb9949", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"", Pod:"calico-apiserver-6cbdfb9949-hnqqx", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.3.196/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali3e02c445c5b", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:57:10.574928 env[1186]: 2024-07-02 07:57:10.532 [INFO][2883] k8s.go 387: Calico CNI using IPs: [192.168.3.196/32] ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Namespace="calico-apiserver" Pod="calico-apiserver-6cbdfb9949-hnqqx" WorkloadEndpoint="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" Jul 2 07:57:10.574928 env[1186]: 2024-07-02 07:57:10.532 [INFO][2883] dataplane_linux.go 68: Setting the host side veth name to cali3e02c445c5b ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Namespace="calico-apiserver" Pod="calico-apiserver-6cbdfb9949-hnqqx" WorkloadEndpoint="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" Jul 2 07:57:10.574928 env[1186]: 2024-07-02 07:57:10.549 [INFO][2883] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Namespace="calico-apiserver" Pod="calico-apiserver-6cbdfb9949-hnqqx" WorkloadEndpoint="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" Jul 2 07:57:10.574928 env[1186]: 2024-07-02 07:57:10.553 [INFO][2883] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Namespace="calico-apiserver" Pod="calico-apiserver-6cbdfb9949-hnqqx" WorkloadEndpoint="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0", GenerateName:"calico-apiserver-6cbdfb9949-", Namespace:"calico-apiserver", SelfLink:"", UID:"a8dd916f-a484-4e60-8076-2b21d7cde1fc", ResourceVersion:"1138", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 57, 9, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"6cbdfb9949", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee", Pod:"calico-apiserver-6cbdfb9949-hnqqx", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.3.196/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"cali3e02c445c5b", MAC:"4e:7d:e6:55:8a:c5", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:57:10.574928 env[1186]: 2024-07-02 07:57:10.571 [INFO][2883] k8s.go 500: Wrote updated endpoint to datastore ContainerID="45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee" Namespace="calico-apiserver" Pod="calico-apiserver-6cbdfb9949-hnqqx" WorkloadEndpoint="143.198.128.94-k8s-calico--apiserver--6cbdfb9949--hnqqx-eth0" Jul 2 07:57:10.606558 env[1186]: time="2024-07-02T07:57:10.606441735Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 07:57:10.606723 env[1186]: time="2024-07-02T07:57:10.606612427Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 07:57:10.606723 env[1186]: time="2024-07-02T07:57:10.606694149Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 07:57:10.607156 env[1186]: time="2024-07-02T07:57:10.607045077Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee pid=2928 runtime=io.containerd.runc.v2 Jul 2 07:57:10.612000 audit[2930]: NETFILTER_CFG table=filter:82 family=2 entries=57 op=nft_register_chain pid=2930 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:57:10.612000 audit[2930]: SYSCALL arch=c000003e syscall=46 success=yes exit=29128 a0=3 a1=7ffc66a33a00 a2=0 a3=7ffc66a339ec items=0 ppid=2126 pid=2930 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:10.612000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:57:10.635021 systemd[1]: Started cri-containerd-45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee.scope. Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.657000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.658000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.658000 audit: BPF prog-id=108 op=LOAD Jul 2 07:57:10.659000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.659000 audit[2940]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=2928 pid=2940 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:10.659000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435353736393339643936346564663938346533366662356162343535 Jul 2 07:57:10.659000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.659000 audit[2940]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=c items=0 ppid=2928 pid=2940 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:10.659000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435353736393339643936346564663938346533366662356162343535 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.660000 audit: BPF prog-id=109 op=LOAD Jul 2 07:57:10.660000 audit[2940]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c00029fb10 items=0 ppid=2928 pid=2940 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:10.660000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435353736393339643936346564663938346533366662356162343535 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.661000 audit: BPF prog-id=110 op=LOAD Jul 2 07:57:10.661000 audit[2940]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c00029fb58 items=0 ppid=2928 pid=2940 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:10.661000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435353736393339643936346564663938346533366662356162343535 Jul 2 07:57:10.661000 audit: BPF prog-id=110 op=UNLOAD Jul 2 07:57:10.661000 audit: BPF prog-id=109 op=UNLOAD Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { perfmon } for pid=2940 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit[2940]: AVC avc: denied { bpf } for pid=2940 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:10.662000 audit: BPF prog-id=111 op=LOAD Jul 2 07:57:10.662000 audit[2940]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c00029ff68 items=0 ppid=2928 pid=2940 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:10.662000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3435353736393339643936346564663938346533366662356162343535 Jul 2 07:57:10.720206 env[1186]: time="2024-07-02T07:57:10.720120812Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-6cbdfb9949-hnqqx,Uid:a8dd916f-a484-4e60-8076-2b21d7cde1fc,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee\"" Jul 2 07:57:10.722866 env[1186]: time="2024-07-02T07:57:10.722655412Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.28.0\"" Jul 2 07:57:11.436317 kubelet[1465]: E0702 07:57:11.436232 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:11.548290 sshd[2873]: Failed password for invalid user mine from 43.153.179.224 port 48552 ssh2 Jul 2 07:57:12.436537 kubelet[1465]: E0702 07:57:12.436450 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:12.599944 systemd-networkd[1006]: cali3e02c445c5b: Gained IPv6LL Jul 2 07:57:13.321931 kubelet[1465]: I0702 07:57:13.321875 1465 topology_manager.go:215] "Topology Admit Handler" podUID="6846a458-34bd-4329-b3b1-26873d304e64" podNamespace="default" podName="test-pod-1" Jul 2 07:57:13.334259 systemd[1]: Created slice kubepods-besteffort-pod6846a458_34bd_4329_b3b1_26873d304e64.slice. Jul 2 07:57:13.370951 kubelet[1465]: E0702 07:57:13.370867 1465 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:13.429164 env[1186]: time="2024-07-02T07:57:13.429031757Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:13.431328 env[1186]: time="2024-07-02T07:57:13.431267462Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:6c07591fd1cfafb48d575f75a6b9d8d3cc03bead5b684908ef5e7dd3132794d6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:13.435230 env[1186]: time="2024-07-02T07:57:13.435178839Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:13.437352 kubelet[1465]: E0702 07:57:13.437304 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:13.440654 env[1186]: time="2024-07-02T07:57:13.440595877Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:e8f124312a4c41451e51bfc00b6e98929e9eb0510905f3301542719a3e8d2fec,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:13.441101 sshd[2873]: Received disconnect from 43.153.179.224 port 48552:11: Bye Bye [preauth] Jul 2 07:57:13.443001 sshd[2873]: Disconnected from invalid user mine 43.153.179.224 port 48552 [preauth] Jul 2 07:57:13.443507 systemd[1]: sshd@16-143.198.128.94:22-43.153.179.224:48552.service: Deactivated successfully. Jul 2 07:57:13.447156 kernel: kauditd_printk_skb: 66 callbacks suppressed Jul 2 07:57:13.447326 kernel: audit: type=1131 audit(1719907033.442:739): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-143.198.128.94:22-43.153.179.224:48552 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:13.442000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-143.198.128.94:22-43.153.179.224:48552 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:13.449259 env[1186]: time="2024-07-02T07:57:13.448253729Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.28.0\" returns image reference \"sha256:6c07591fd1cfafb48d575f75a6b9d8d3cc03bead5b684908ef5e7dd3132794d6\"" Jul 2 07:57:13.451347 env[1186]: time="2024-07-02T07:57:13.451278754Z" level=info msg="StopPodSandbox for \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\"" Jul 2 07:57:13.458894 env[1186]: time="2024-07-02T07:57:13.458831834Z" level=info msg="CreateContainer within sandbox \"45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Jul 2 07:57:13.484660 env[1186]: time="2024-07-02T07:57:13.484597179Z" level=info msg="CreateContainer within sandbox \"45576939d964edf984e36fb5ab4550100e633b7d82e98c5d2bdf41484dfe47ee\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"5004e3fde7b398c5947fd303a67af49ae8be2563a0565c6e0f21b1d1c9cb50b0\"" Jul 2 07:57:13.485506 kubelet[1465]: I0702 07:57:13.485470 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-a8d24fd7-c214-4a7d-8c32-43ffe23fab4e\" (UniqueName: \"kubernetes.io/nfs/6846a458-34bd-4329-b3b1-26873d304e64-pvc-a8d24fd7-c214-4a7d-8c32-43ffe23fab4e\") pod \"test-pod-1\" (UID: \"6846a458-34bd-4329-b3b1-26873d304e64\") " pod="default/test-pod-1" Jul 2 07:57:13.485650 kubelet[1465]: I0702 07:57:13.485536 1465 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-szlxt\" (UniqueName: \"kubernetes.io/projected/6846a458-34bd-4329-b3b1-26873d304e64-kube-api-access-szlxt\") pod \"test-pod-1\" (UID: \"6846a458-34bd-4329-b3b1-26873d304e64\") " pod="default/test-pod-1" Jul 2 07:57:13.486525 env[1186]: time="2024-07-02T07:57:13.486465047Z" level=info msg="StartContainer for \"5004e3fde7b398c5947fd303a67af49ae8be2563a0565c6e0f21b1d1c9cb50b0\"" Jul 2 07:57:13.488566 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2451702692.mount: Deactivated successfully. Jul 2 07:57:13.558383 systemd[1]: Started cri-containerd-5004e3fde7b398c5947fd303a67af49ae8be2563a0565c6e0f21b1d1c9cb50b0.scope. Jul 2 07:57:13.603489 kernel: audit: type=1400 audit(1719907033.594:740): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.603675 kernel: audit: type=1400 audit(1719907033.594:741): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.594000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.594000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.595000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.609192 kernel: audit: type=1400 audit(1719907033.595:742): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.595000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.616115 kernel: audit: type=1400 audit(1719907033.595:743): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628778 kernel: audit: type=1400 audit(1719907033.595:744): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628943 kernel: audit: type=1400 audit(1719907033.595:745): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628971 kernel: audit: type=1400 audit(1719907033.595:746): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.595000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.595000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.595000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.595000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.649098 kernel: audit: type=1400 audit(1719907033.595:747): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.595000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.655103 kernel: audit: type=1400 audit(1719907033.595:748): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.604000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.604000 audit: BPF prog-id=112 op=LOAD Jul 2 07:57:13.615000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.615000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=2928 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:13.615000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530303465336664653762333938633539343766643330336136376166 Jul 2 07:57:13.615000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.615000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001456b0 a2=3c a3=8 items=0 ppid=2928 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:13.615000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530303465336664653762333938633539343766643330336136376166 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit: BPF prog-id=113 op=LOAD Jul 2 07:57:13.628000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001459d8 a2=78 a3=c00028c910 items=0 ppid=2928 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:13.628000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530303465336664653762333938633539343766643330336136376166 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit: BPF prog-id=114 op=LOAD Jul 2 07:57:13.628000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000145770 a2=78 a3=c00028c958 items=0 ppid=2928 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:13.628000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530303465336664653762333938633539343766643330336136376166 Jul 2 07:57:13.628000 audit: BPF prog-id=114 op=UNLOAD Jul 2 07:57:13.628000 audit: BPF prog-id=113 op=UNLOAD Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { perfmon } for pid=2991 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit[2991]: AVC avc: denied { bpf } for pid=2991 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:13.628000 audit: BPF prog-id=115 op=LOAD Jul 2 07:57:13.628000 audit[2991]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000145c30 a2=78 a3=c00028cd68 items=0 ppid=2928 pid=2991 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:13.628000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3530303465336664653762333938633539343766643330336136376166 Jul 2 07:57:13.677199 kernel: Failed to create system directory netfs Jul 2 07:57:13.672000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.682563 kernel: Failed to create system directory netfs Jul 2 07:57:13.682705 kernel: Failed to create system directory netfs Jul 2 07:57:13.682733 kernel: Failed to create system directory netfs Jul 2 07:57:13.672000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.672000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.672000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.672000 audit[3017]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=56127df8d5e0 a1=153bc a2=56127d8762b0 a3=5 items=0 ppid=192 pid=3017 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:13.672000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.702093 kernel: Failed to create system directory fscache Jul 2 07:57:13.706187 kernel: Failed to create system directory fscache Jul 2 07:57:13.706363 kernel: Failed to create system directory fscache Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.715447 kernel: Failed to create system directory fscache Jul 2 07:57:13.715632 kernel: Failed to create system directory fscache Jul 2 07:57:13.715664 kernel: Failed to create system directory fscache Jul 2 07:57:13.715686 kernel: Failed to create system directory fscache Jul 2 07:57:13.715705 kernel: Failed to create system directory fscache Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.721949 kernel: Failed to create system directory fscache Jul 2 07:57:13.722111 kernel: Failed to create system directory fscache Jul 2 07:57:13.722135 kernel: Failed to create system directory fscache Jul 2 07:57:13.722175 kernel: Failed to create system directory fscache Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.732337 kernel: Failed to create system directory fscache Jul 2 07:57:13.732488 kernel: Failed to create system directory fscache Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.694000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.736107 kernel: FS-Cache: Loaded Jul 2 07:57:13.694000 audit[3017]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=56127e1a29c0 a1=4c0fc a2=56127d8762b0 a3=5 items=0 ppid=192 pid=3017 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:13.694000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.547 [WARNING][2978] k8s.go 572: CNI_CONTAINERID does not match WorkloadEndpoint ContainerID, don't delete WEP. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-csi--node--driver--nxwck-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"8443ca9a-9516-481d-8dfe-394059d61994", ResourceVersion:"981", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 15, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"7d7f6c786c", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e", Pod:"csi-node-driver-nxwck", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.193/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali3e2b577b711", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.547 [INFO][2978] k8s.go 608: Cleaning up netns ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.547 [INFO][2978] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" iface="eth0" netns="" Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.547 [INFO][2978] k8s.go 615: Releasing IP address(es) ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.547 [INFO][2978] utils.go 188: Calico CNI releasing IP address ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.700 [INFO][3002] ipam_plugin.go 411: Releasing address using handleID ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.700 [INFO][3002] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.700 [INFO][3002] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.714 [WARNING][3002] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.714 [INFO][3002] ipam_plugin.go 439: Releasing address using workloadID ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.730 [INFO][3002] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:57:13.753546 env[1186]: 2024-07-02 07:57:13.732 [INFO][2978] k8s.go 621: Teardown processing complete. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:57:13.753546 env[1186]: time="2024-07-02T07:57:13.752390619Z" level=info msg="TearDown network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\" successfully" Jul 2 07:57:13.753546 env[1186]: time="2024-07-02T07:57:13.752431177Z" level=info msg="StopPodSandbox for \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\" returns successfully" Jul 2 07:57:13.762387 env[1186]: time="2024-07-02T07:57:13.762336901Z" level=info msg="StartContainer for \"5004e3fde7b398c5947fd303a67af49ae8be2563a0565c6e0f21b1d1c9cb50b0\" returns successfully" Jul 2 07:57:13.764952 env[1186]: time="2024-07-02T07:57:13.762956421Z" level=info msg="RemovePodSandbox for \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\"" Jul 2 07:57:13.764952 env[1186]: time="2024-07-02T07:57:13.763012828Z" level=info msg="Forcibly stopping sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\"" Jul 2 07:57:13.817149 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.822799 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.822943 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.827252 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.832307 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.832443 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.838377 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.838523 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.838551 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.838573 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.850436 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.855919 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.856114 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.858862 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.858948 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.861526 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.861579 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.862815 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.864128 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.865448 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.866552 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.867628 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.868886 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.870152 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.871393 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.872512 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.873654 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.874809 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.876185 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.877394 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.878594 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.879744 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.880825 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.881873 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.882905 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.883960 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.886678 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.886784 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.888122 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.889318 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.890453 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.891785 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.892959 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.895270 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.895342 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.896704 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.898091 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.899192 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.900272 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.901523 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.902633 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.903787 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.905033 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.907337 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.907402 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.908681 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.909766 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.910848 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.911958 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.914228 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.914265 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.915357 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.916523 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.917924 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.920844 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.920916 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.922357 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.923878 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.925376 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.926899 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.929910 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.930007 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.932967 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.933088 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.936195 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.936275 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.937761 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.939475 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.941182 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.943007 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.947492 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.947606 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.949329 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.950962 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.954249 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.954372 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.957006 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.959481 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.962372 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.964091 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.969463 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.969595 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.969648 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.971327 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.973015 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.976376 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.976475 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.977937 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.981038 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.981149 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.983986 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.984118 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.986216 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.986268 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.987454 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.991093 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.993470 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.993513 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.994561 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.997108 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.999891 kernel: Failed to create system directory sunrpc Jul 2 07:57:14.000046 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.003907 kernel: Failed to create system directory sunrpc Jul 2 07:57:14.004128 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.006097 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.008098 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.010095 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.012101 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.014100 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.016656 kernel: Failed to create system directory sunrpc Jul 2 07:57:14.016741 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.020478 kernel: Failed to create system directory sunrpc Jul 2 07:57:14.020571 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.023106 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.025658 kernel: Failed to create system directory sunrpc Jul 2 07:57:14.025728 kernel: Failed to create system directory sunrpc Jul 2 07:57:13.783000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:13.891 [WARNING][3045] k8s.go 572: CNI_CONTAINERID does not match WorkloadEndpoint ContainerID, don't delete WEP. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-csi--node--driver--nxwck-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"8443ca9a-9516-481d-8dfe-394059d61994", ResourceVersion:"981", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 15, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"7d7f6c786c", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"0d1db823bdabe733f68fe6a9c9377b839951a17a9f6dd8976479b1b77c8a813e", Pod:"csi-node-driver-nxwck", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.193/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali3e2b577b711", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:13.895 [INFO][3045] k8s.go 608: Cleaning up netns ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:13.895 [INFO][3045] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" iface="eth0" netns="" Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:13.895 [INFO][3045] k8s.go 615: Releasing IP address(es) ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:13.895 [INFO][3045] utils.go 188: Calico CNI releasing IP address ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:14.003 [INFO][3054] ipam_plugin.go 411: Releasing address using handleID ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:14.003 [INFO][3054] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:14.007 [INFO][3054] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:14.021 [WARNING][3054] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:14.021 [INFO][3054] ipam_plugin.go 439: Releasing address using workloadID ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" HandleID="k8s-pod-network.3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Workload="143.198.128.94-k8s-csi--node--driver--nxwck-eth0" Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:14.024 [INFO][3054] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:57:14.029181 env[1186]: 2024-07-02 07:57:14.026 [INFO][3045] k8s.go 621: Teardown processing complete. ContainerID="3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e" Jul 2 07:57:14.030405 env[1186]: time="2024-07-02T07:57:14.029202067Z" level=info msg="TearDown network for sandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\" successfully" Jul 2 07:57:14.038714 env[1186]: time="2024-07-02T07:57:14.038542349Z" level=info msg="RemovePodSandbox \"3b75c65c6e5769b99e451e4ec8bc1f552a351e19e854bc72a425e90864d4150e\" returns successfully" Jul 2 07:57:14.039695 env[1186]: time="2024-07-02T07:57:14.039469366Z" level=info msg="StopPodSandbox for \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\"" Jul 2 07:57:14.039000 audit[3061]: NETFILTER_CFG table=filter:83 family=2 entries=10 op=nft_register_rule pid=3061 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:14.039000 audit[3061]: SYSCALL arch=c000003e syscall=46 success=yes exit=3676 a0=3 a1=7ffe50a4e9e0 a2=0 a3=7ffe50a4e9cc items=0 ppid=1682 pid=3061 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:14.039000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:14.050343 kernel: RPC: Registered named UNIX socket transport module. Jul 2 07:57:14.050465 kernel: RPC: Registered udp transport module. Jul 2 07:57:14.050486 kernel: RPC: Registered tcp transport module. Jul 2 07:57:14.050503 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Jul 2 07:57:13.783000 audit[3017]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=56127e1eead0 a1=1a7f5c a2=56127d8762b0 a3=5 items=6 ppid=192 pid=3017 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:13.783000 audit: CWD cwd="/" Jul 2 07:57:13.783000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:57:13.783000 audit: PATH item=1 name=(null) inode=24539 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:57:13.783000 audit: PATH item=2 name=(null) inode=24539 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:57:13.783000 audit: PATH item=3 name=(null) inode=24540 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:57:13.783000 audit: PATH item=4 name=(null) inode=24539 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:57:13.783000 audit: PATH item=5 name=(null) inode=24541 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 07:57:13.783000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 07:57:14.043000 audit[3061]: NETFILTER_CFG table=nat:84 family=2 entries=44 op=nft_register_rule pid=3061 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:14.043000 audit[3061]: SYSCALL arch=c000003e syscall=46 success=yes exit=14988 a0=3 a1=7ffe50a4e9e0 a2=0 a3=7ffe50a4e9cc items=0 ppid=1682 pid=3061 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:14.043000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.127434 kernel: Failed to create system directory nfs Jul 2 07:57:14.127601 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.130975 kernel: Failed to create system directory nfs Jul 2 07:57:14.131105 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.137247 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.139135 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.141098 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.143103 kernel: Failed to create system directory nfs Jul 2 07:57:14.153260 kernel: Failed to create system directory nfs Jul 2 07:57:14.154679 kernel: Failed to create system directory nfs Jul 2 07:57:14.154772 kernel: Failed to create system directory nfs Jul 2 07:57:14.154811 kernel: Failed to create system directory nfs Jul 2 07:57:14.154840 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.158919 kernel: Failed to create system directory nfs Jul 2 07:57:14.159097 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.162194 kernel: Failed to create system directory nfs Jul 2 07:57:14.162305 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.163973 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.167159 kernel: Failed to create system directory nfs Jul 2 07:57:14.167256 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.170246 kernel: Failed to create system directory nfs Jul 2 07:57:14.170338 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.174805 kernel: Failed to create system directory nfs Jul 2 07:57:14.174951 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.178145 kernel: Failed to create system directory nfs Jul 2 07:57:14.178242 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.187324 kernel: Failed to create system directory nfs Jul 2 07:57:14.187481 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.192773 kernel: Failed to create system directory nfs Jul 2 07:57:14.192932 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.196101 kernel: Failed to create system directory nfs Jul 2 07:57:14.201840 kernel: Failed to create system directory nfs Jul 2 07:57:14.201989 kernel: Failed to create system directory nfs Jul 2 07:57:14.202096 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.207286 kernel: Failed to create system directory nfs Jul 2 07:57:14.207443 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.214775 kernel: Failed to create system directory nfs Jul 2 07:57:14.214964 kernel: Failed to create system directory nfs Jul 2 07:57:14.215007 kernel: Failed to create system directory nfs Jul 2 07:57:14.215041 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.220106 kernel: Failed to create system directory nfs Jul 2 07:57:14.224607 kernel: Failed to create system directory nfs Jul 2 07:57:14.224736 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.236406 kernel: Failed to create system directory nfs Jul 2 07:57:14.236539 kernel: Failed to create system directory nfs Jul 2 07:57:14.236560 kernel: Failed to create system directory nfs Jul 2 07:57:14.236578 kernel: Failed to create system directory nfs Jul 2 07:57:14.236594 kernel: Failed to create system directory nfs Jul 2 07:57:14.236612 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.242448 kernel: Failed to create system directory nfs Jul 2 07:57:14.242603 kernel: Failed to create system directory nfs Jul 2 07:57:14.242635 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.250555 kernel: Failed to create system directory nfs Jul 2 07:57:14.250732 kernel: Failed to create system directory nfs Jul 2 07:57:14.250765 kernel: Failed to create system directory nfs Jul 2 07:57:14.250782 kernel: Failed to create system directory nfs Jul 2 07:57:14.250799 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.255334 kernel: Failed to create system directory nfs Jul 2 07:57:14.255501 kernel: Failed to create system directory nfs Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.101000 audit[3017]: AVC avc: denied { confidentiality } for pid=3017 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.294101 kernel: FS-Cache: Netfs 'nfs' registered for caching Jul 2 07:57:14.101000 audit[3017]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=56127e40f790 a1=16dba4 a2=56127d8762b0 a3=5 items=0 ppid=192 pid=3017 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:14.101000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.178 [WARNING][3076] k8s.go 572: CNI_CONTAINERID does not match WorkloadEndpoint ContainerID, don't delete WEP. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"14fe4325-797c-463a-91ea-67de812d7e21", ResourceVersion:"1007", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 32, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810", Pod:"nginx-deployment-6d5f899847-wzzsg", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.194/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali19df0f21ff6", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.179 [INFO][3076] k8s.go 608: Cleaning up netns ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.179 [INFO][3076] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" iface="eth0" netns="" Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.179 [INFO][3076] k8s.go 615: Releasing IP address(es) ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.179 [INFO][3076] utils.go 188: Calico CNI releasing IP address ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.270 [INFO][3082] ipam_plugin.go 411: Releasing address using handleID ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.271 [INFO][3082] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.271 [INFO][3082] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.289 [WARNING][3082] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.289 [INFO][3082] ipam_plugin.go 439: Releasing address using workloadID ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.293 [INFO][3082] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:57:14.297268 env[1186]: 2024-07-02 07:57:14.294 [INFO][3076] k8s.go 621: Teardown processing complete. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:57:14.297917 env[1186]: time="2024-07-02T07:57:14.297309459Z" level=info msg="TearDown network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\" successfully" Jul 2 07:57:14.297917 env[1186]: time="2024-07-02T07:57:14.297354881Z" level=info msg="StopPodSandbox for \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\" returns successfully" Jul 2 07:57:14.298130 env[1186]: time="2024-07-02T07:57:14.298098575Z" level=info msg="RemovePodSandbox for \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\"" Jul 2 07:57:14.298207 env[1186]: time="2024-07-02T07:57:14.298135497Z" level=info msg="Forcibly stopping sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\"" Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.381129 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.381234 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.382347 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.383523 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.384839 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.385863 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.386993 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.389393 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.389477 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.390662 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.391851 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.394417 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.394461 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.395708 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.396950 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.399238 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.399280 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.400458 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.401708 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.402879 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.405281 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.405353 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.406386 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.407407 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.408565 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.409668 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.410671 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.411695 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.412861 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.414026 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.416420 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.416482 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.417548 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.418758 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.420008 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.422231 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.422273 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.423320 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.424430 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.425600 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.426691 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.427781 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.430291 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.430335 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.431415 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.432582 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.433709 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.434893 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.436044 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.438225 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.438254 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.438271 kubelet[1465]: E0702 07:57:14.438169 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.441015 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.441107 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.443584 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.443637 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.444819 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.446012 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.447146 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.449338 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.449406 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.450504 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.451597 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.452750 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.453897 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.456579 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.456653 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.457785 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.458887 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.460202 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.461482 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.462636 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.463871 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.466256 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.466301 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.467490 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.468827 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.470168 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.471312 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.472521 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.473722 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.474828 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.476193 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.477548 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.478862 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.481773 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.481856 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.483218 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.484443 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.485601 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.486660 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.487856 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.488956 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.491745 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.491825 kernel: Failed to create system directory nfs4 Jul 2 07:57:14.345000 audit[3089]: AVC avc: denied { confidentiality } for pid=3089 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.415 [WARNING][3102] k8s.go 572: CNI_CONTAINERID does not match WorkloadEndpoint ContainerID, don't delete WEP. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"14fe4325-797c-463a-91ea-67de812d7e21", ResourceVersion:"1007", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 32, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"1e1a17f34c75c6f6aa61d7fc7bcc75bcc9dce8c9b56c540668f1a3c91222c810", Pod:"nginx-deployment-6d5f899847-wzzsg", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.194/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali19df0f21ff6", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.417 [INFO][3102] k8s.go 608: Cleaning up netns ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.417 [INFO][3102] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" iface="eth0" netns="" Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.417 [INFO][3102] k8s.go 615: Releasing IP address(es) ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.418 [INFO][3102] utils.go 188: Calico CNI releasing IP address ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.490 [INFO][3108] ipam_plugin.go 411: Releasing address using handleID ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.491 [INFO][3108] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.491 [INFO][3108] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.502 [WARNING][3108] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.503 [INFO][3108] ipam_plugin.go 439: Releasing address using workloadID ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" HandleID="k8s-pod-network.22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Workload="143.198.128.94-k8s-nginx--deployment--6d5f899847--wzzsg-eth0" Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.507 [INFO][3108] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:57:14.511283 env[1186]: 2024-07-02 07:57:14.508 [INFO][3102] k8s.go 621: Teardown processing complete. ContainerID="22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112" Jul 2 07:57:14.511283 env[1186]: time="2024-07-02T07:57:14.509916088Z" level=info msg="TearDown network for sandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\" successfully" Jul 2 07:57:14.514928 env[1186]: time="2024-07-02T07:57:14.513651990Z" level=info msg="RemovePodSandbox \"22d0344e1fec258952b5ce5dcbb363c4db48912188f85777b34b50307c8b7112\" returns successfully" Jul 2 07:57:14.673761 kernel: NFS: Registering the id_resolver key type Jul 2 07:57:14.673938 kernel: Key type id_resolver registered Jul 2 07:57:14.675158 kernel: Key type id_legacy registered Jul 2 07:57:14.345000 audit[3089]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=7f4287d77010 a1=20890c a2=563df72102b0 a3=5 items=0 ppid=192 pid=3089 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:14.345000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.705287 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.705371 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.706443 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.706545 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.708764 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.709917 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.711100 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.712509 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.713811 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.715130 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.715234 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.717550 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.718880 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.720245 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.720356 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.722878 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.724272 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.725448 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.726641 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.726747 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.728970 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.729977 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.730033 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.732261 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.733517 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: AVC avc: denied { confidentiality } for pid=3116 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 07:57:14.734792 kernel: Failed to create system directory rpcgss Jul 2 07:57:14.696000 audit[3116]: SYSCALL arch=c000003e syscall=175 success=yes exit=0 a0=7f6960607010 a1=70bec a2=562313e942b0 a3=5 items=0 ppid=192 pid=3116 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:14.696000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Jul 2 07:57:14.965888 kubelet[1465]: I0702 07:57:14.965753 1465 prober_manager.go:312] "Failed to trigger a manual run" probe="Readiness" Jul 2 07:57:14.967000 audit[3008]: AVC avc: denied { watch } for pid=3008 comm="apiserver" path="/calico-apiserver-certs/..2024_07_02_07_57_10.1244216229/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c439,c940 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c439,c940 tclass=file permissive=0 Jul 2 07:57:14.967000 audit[3008]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=8 a1=c00046b3c0 a2=fc6 a3=0 items=0 ppid=2928 pid=3008 auid=4294967295 uid=10001 gid=10001 euid=10001 suid=10001 fsuid=10001 egid=10001 sgid=10001 fsgid=10001 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c439,c940 key=(null) Jul 2 07:57:14.967000 audit: PROCTITLE proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Jul 2 07:57:15.439138 kubelet[1465]: E0702 07:57:15.439040 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:16.371000 audit[3130]: NETFILTER_CFG table=filter:85 family=2 entries=10 op=nft_register_rule pid=3130 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:16.371000 audit[3130]: SYSCALL arch=c000003e syscall=46 success=yes exit=3676 a0=3 a1=7ffd40829b20 a2=0 a3=7ffd40829b0c items=0 ppid=1682 pid=3130 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:16.371000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:16.374000 audit[3130]: NETFILTER_CFG table=nat:86 family=2 entries=44 op=nft_register_rule pid=3130 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:16.374000 audit[3130]: SYSCALL arch=c000003e syscall=46 success=yes exit=14988 a0=3 a1=7ffd40829b20 a2=0 a3=7ffd40829b0c items=0 ppid=1682 pid=3130 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:16.374000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:16.440278 kubelet[1465]: E0702 07:57:16.440226 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:16.710000 audit[3132]: NETFILTER_CFG table=filter:87 family=2 entries=9 op=nft_register_rule pid=3132 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:16.710000 audit[3132]: SYSCALL arch=c000003e syscall=46 success=yes exit=2932 a0=3 a1=7ffc68daefc0 a2=0 a3=7ffc68daefac items=0 ppid=1682 pid=3132 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:16.710000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:16.713000 audit[3132]: NETFILTER_CFG table=nat:88 family=2 entries=51 op=nft_register_chain pid=3132 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 07:57:16.713000 audit[3132]: SYSCALL arch=c000003e syscall=46 success=yes exit=18564 a0=3 a1=7ffc68daefc0 a2=0 a3=7ffc68daefac items=0 ppid=1682 pid=3132 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:16.713000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 07:57:17.441865 kubelet[1465]: E0702 07:57:17.441793 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:18.443111 kubelet[1465]: E0702 07:57:18.442941 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:19.444333 kubelet[1465]: E0702 07:57:19.444240 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:20.445748 kubelet[1465]: E0702 07:57:20.445688 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:20.818323 kernel: kauditd_printk_skb: 411 callbacks suppressed Jul 2 07:57:20.818799 kernel: audit: type=1130 audit(1719907040.810:771): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-143.198.128.94:22-156.232.11.214:35666 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:20.810000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-143.198.128.94:22-156.232.11.214:35666 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:20.811447 systemd[1]: Started sshd@17-143.198.128.94:22-156.232.11.214:35666.service. Jul 2 07:57:20.978178 nfsidmap[3125]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain '3.5-4-449ad91e17' Jul 2 07:57:21.009795 sshd[3142]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=156.232.11.214 user=root Jul 2 07:57:21.010000 audit[3142]: USER_AUTH pid=3142 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=156.232.11.214 addr=156.232.11.214 terminal=ssh res=failed' Jul 2 07:57:21.019508 kernel: audit: type=1100 audit(1719907041.010:772): pid=3142 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=156.232.11.214 addr=156.232.11.214 terminal=ssh res=failed' Jul 2 07:57:21.447242 kubelet[1465]: E0702 07:57:21.447177 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:22.448282 kubelet[1465]: E0702 07:57:22.448159 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:23.448653 kubelet[1465]: E0702 07:57:23.448563 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:23.546796 sshd[3142]: Failed password for root from 156.232.11.214 port 35666 ssh2 Jul 2 07:57:24.350304 sshd[3142]: Received disconnect from 156.232.11.214 port 35666:11: Bye Bye [preauth] Jul 2 07:57:24.350304 sshd[3142]: Disconnected from authenticating user root 156.232.11.214 port 35666 [preauth] Jul 2 07:57:24.351000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-143.198.128.94:22-156.232.11.214:35666 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:24.358314 kernel: audit: type=1131 audit(1719907044.351:773): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-143.198.128.94:22-156.232.11.214:35666 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 07:57:24.352241 systemd[1]: sshd@17-143.198.128.94:22-156.232.11.214:35666.service: Deactivated successfully. Jul 2 07:57:24.449556 kubelet[1465]: E0702 07:57:24.449493 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:25.450394 kubelet[1465]: E0702 07:57:25.450298 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:26.451636 kubelet[1465]: E0702 07:57:26.451565 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:27.112608 nfsidmap[3149]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain '3.5-4-449ad91e17' Jul 2 07:57:27.126000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.126000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.135591 kernel: audit: type=1400 audit(1719907047.126:774): avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.135797 kernel: audit: type=1400 audit(1719907047.126:775): avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.135839 kernel: audit: type=1400 audit(1719907047.126:776): avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.126000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.140311 kernel: audit: type=1400 audit(1719907047.127:777): avc: denied { watch_reads } for pid=1275 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.127000 audit[1275]: AVC avc: denied { watch_reads } for pid=1275 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.144558 kernel: audit: type=1300 audit(1719907047.127:777): arch=c000003e syscall=254 success=no exit=-13 a0=e a1=558e5cbfcef0 a2=10 a3=ac952eb04be26c97 items=0 ppid=1 pid=1275 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.127000 audit[1275]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=558e5cbfcef0 a2=10 a3=ac952eb04be26c97 items=0 ppid=1 pid=1275 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.148720 env[1186]: time="2024-07-02T07:57:27.148647921Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:6846a458-34bd-4329-b3b1-26873d304e64,Namespace:default,Attempt:0,}" Jul 2 07:57:27.151659 kernel: audit: type=1327 audit(1719907047.127:777): proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Jul 2 07:57:27.127000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Jul 2 07:57:27.127000 audit[1275]: AVC avc: denied { watch_reads } for pid=1275 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.159305 kernel: audit: type=1400 audit(1719907047.127:778): avc: denied { watch_reads } for pid=1275 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.159480 kernel: audit: type=1300 audit(1719907047.127:778): arch=c000003e syscall=254 success=no exit=-13 a0=e a1=558e5cbfcef0 a2=10 a3=ac952eb04be26c97 items=0 ppid=1 pid=1275 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.127000 audit[1275]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=558e5cbfcef0 a2=10 a3=ac952eb04be26c97 items=0 ppid=1 pid=1275 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.165696 kernel: audit: type=1327 audit(1719907047.127:778): proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Jul 2 07:57:27.127000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Jul 2 07:57:27.127000 audit[1275]: AVC avc: denied { watch_reads } for pid=1275 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.172779 kernel: audit: type=1400 audit(1719907047.127:779): avc: denied { watch_reads } for pid=1275 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2580 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 07:57:27.127000 audit[1275]: SYSCALL arch=c000003e syscall=254 success=no exit=-13 a0=e a1=558e5cbfcef0 a2=10 a3=ac952eb04be26c97 items=0 ppid=1 pid=1275 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.127000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Jul 2 07:57:27.359010 systemd-networkd[1006]: cali5ec59c6bf6e: Link UP Jul 2 07:57:27.363783 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 07:57:27.364287 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Jul 2 07:57:27.364563 systemd-networkd[1006]: cali5ec59c6bf6e: Gained carrier Jul 2 07:57:27.393367 kubelet[1465]: I0702 07:57:27.391483 1465 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-6cbdfb9949-hnqqx" podStartSLOduration=15.661468472 podCreationTimestamp="2024-07-02 07:57:09 +0000 UTC" firstStartedPulling="2024-07-02 07:57:10.722115003 +0000 UTC m=+58.182857640" lastFinishedPulling="2024-07-02 07:57:13.452041844 +0000 UTC m=+60.912784484" observedRunningTime="2024-07-02 07:57:13.981932616 +0000 UTC m=+61.442675271" watchObservedRunningTime="2024-07-02 07:57:27.391395316 +0000 UTC m=+74.852137978" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.236 [INFO][3167] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {143.198.128.94-k8s-test--pod--1-eth0 default 6846a458-34bd-4329-b3b1-26873d304e64 1168 0 2024-07-02 07:56:56 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 143.198.128.94 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="143.198.128.94-k8s-test--pod--1-" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.236 [INFO][3167] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="143.198.128.94-k8s-test--pod--1-eth0" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.290 [INFO][3179] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" HandleID="k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Workload="143.198.128.94-k8s-test--pod--1-eth0" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.306 [INFO][3179] ipam_plugin.go 264: Auto assigning IP ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" HandleID="k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Workload="143.198.128.94-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0xc000293790), Attrs:map[string]string{"namespace":"default", "node":"143.198.128.94", "pod":"test-pod-1", "timestamp":"2024-07-02 07:57:27.29042132 +0000 UTC"}, Hostname:"143.198.128.94", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.306 [INFO][3179] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.307 [INFO][3179] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.307 [INFO][3179] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '143.198.128.94' Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.310 [INFO][3179] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.317 [INFO][3179] ipam.go 372: Looking up existing affinities for host host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.327 [INFO][3179] ipam.go 489: Trying affinity for 192.168.3.192/26 host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.330 [INFO][3179] ipam.go 155: Attempting to load block cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.335 [INFO][3179] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.3.192/26 host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.335 [INFO][3179] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.3.192/26 handle="k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.338 [INFO][3179] ipam.go 1685: Creating new handle: k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0 Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.344 [INFO][3179] ipam.go 1203: Writing block in order to claim IPs block=192.168.3.192/26 handle="k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.353 [INFO][3179] ipam.go 1216: Successfully claimed IPs: [192.168.3.197/26] block=192.168.3.192/26 handle="k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.353 [INFO][3179] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.3.197/26] handle="k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" host="143.198.128.94" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.353 [INFO][3179] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.353 [INFO][3179] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.3.197/26] IPv6=[] ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" HandleID="k8s-pod-network.09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Workload="143.198.128.94-k8s-test--pod--1-eth0" Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.355 [INFO][3167] k8s.go 386: Populated endpoint ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="143.198.128.94-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"6846a458-34bd-4329-b3b1-26873d304e64", ResourceVersion:"1168", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 56, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.197/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:57:27.401414 env[1186]: 2024-07-02 07:57:27.355 [INFO][3167] k8s.go 387: Calico CNI using IPs: [192.168.3.197/32] ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="143.198.128.94-k8s-test--pod--1-eth0" Jul 2 07:57:27.402707 env[1186]: 2024-07-02 07:57:27.355 [INFO][3167] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="143.198.128.94-k8s-test--pod--1-eth0" Jul 2 07:57:27.402707 env[1186]: 2024-07-02 07:57:27.358 [INFO][3167] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="143.198.128.94-k8s-test--pod--1-eth0" Jul 2 07:57:27.402707 env[1186]: 2024-07-02 07:57:27.359 [INFO][3167] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="143.198.128.94-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"143.198.128.94-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"6846a458-34bd-4329-b3b1-26873d304e64", ResourceVersion:"1168", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 7, 56, 56, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"143.198.128.94", ContainerID:"09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.3.197/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"4e:fe:47:e2:f1:29", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 07:57:27.402707 env[1186]: 2024-07-02 07:57:27.398 [INFO][3167] k8s.go 500: Wrote updated endpoint to datastore ContainerID="09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="143.198.128.94-k8s-test--pod--1-eth0" Jul 2 07:57:27.418000 audit[3196]: NETFILTER_CFG table=filter:89 family=2 entries=38 op=nft_register_chain pid=3196 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 07:57:27.418000 audit[3196]: SYSCALL arch=c000003e syscall=46 success=yes exit=19384 a0=3 a1=7ffe54b32a70 a2=0 a3=7ffe54b32a5c items=0 ppid=2126 pid=3196 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.418000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 07:57:27.428885 env[1186]: time="2024-07-02T07:57:27.428787091Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 07:57:27.429172 env[1186]: time="2024-07-02T07:57:27.429142982Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 07:57:27.429310 env[1186]: time="2024-07-02T07:57:27.429285982Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 07:57:27.429757 env[1186]: time="2024-07-02T07:57:27.429702739Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0 pid=3210 runtime=io.containerd.runc.v2 Jul 2 07:57:27.448823 systemd[1]: Started cri-containerd-09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0.scope. Jul 2 07:57:27.452925 kubelet[1465]: E0702 07:57:27.452859 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.470000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.471000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.471000 audit: BPF prog-id=116 op=LOAD Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000145c48 a2=10 a3=1c items=0 ppid=3210 pid=3220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.472000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039653931333366616539386265396262386663633431653265353233 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=0 a1=c0001456b0 a2=3c a3=c items=0 ppid=3210 pid=3220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.472000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039653931333366616539386265396262386663633431653265353233 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit: BPF prog-id=117 op=LOAD Jul 2 07:57:27.472000 audit[3220]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c0001459d8 a2=78 a3=c00028c670 items=0 ppid=3210 pid=3220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.472000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039653931333366616539386265396262386663633431653265353233 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit: BPF prog-id=118 op=LOAD Jul 2 07:57:27.472000 audit[3220]: SYSCALL arch=c000003e syscall=321 success=yes exit=17 a0=5 a1=c000145770 a2=78 a3=c00028c6b8 items=0 ppid=3210 pid=3220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.472000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039653931333366616539386265396262386663633431653265353233 Jul 2 07:57:27.472000 audit: BPF prog-id=118 op=UNLOAD Jul 2 07:57:27.472000 audit: BPF prog-id=117 op=UNLOAD Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { perfmon } for pid=3220 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit[3220]: AVC avc: denied { bpf } for pid=3220 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.472000 audit: BPF prog-id=119 op=LOAD Jul 2 07:57:27.472000 audit[3220]: SYSCALL arch=c000003e syscall=321 success=yes exit=15 a0=5 a1=c000145c30 a2=78 a3=c00028cac8 items=0 ppid=3210 pid=3220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.472000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039653931333366616539386265396262386663633431653265353233 Jul 2 07:57:27.513275 env[1186]: time="2024-07-02T07:57:27.513204603Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:6846a458-34bd-4329-b3b1-26873d304e64,Namespace:default,Attempt:0,} returns sandbox id \"09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0\"" Jul 2 07:57:27.520643 env[1186]: time="2024-07-02T07:57:27.520561815Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Jul 2 07:57:27.877710 env[1186]: time="2024-07-02T07:57:27.877571147Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:27.880365 env[1186]: time="2024-07-02T07:57:27.880302379Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:a1bda1bb6f7f0fd17a3ae397f26593ab0aa8e8b92e3e8a9903f99fdb26afea17,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:27.882974 env[1186]: time="2024-07-02T07:57:27.882912321Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:27.885867 env[1186]: time="2024-07-02T07:57:27.885810494Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:bf28ef5d86aca0cd30a8ef19032ccadc1eada35dc9f14f42f3ccb73974f013de,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 07:57:27.886996 env[1186]: time="2024-07-02T07:57:27.886943114Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:a1bda1bb6f7f0fd17a3ae397f26593ab0aa8e8b92e3e8a9903f99fdb26afea17\"" Jul 2 07:57:27.890775 env[1186]: time="2024-07-02T07:57:27.890711275Z" level=info msg="CreateContainer within sandbox \"09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0\" for container &ContainerMetadata{Name:test,Attempt:0,}" Jul 2 07:57:27.915725 env[1186]: time="2024-07-02T07:57:27.915648114Z" level=info msg="CreateContainer within sandbox \"09e9133fae98be9bb8fcc41e2e523431e0e58c072a8e4312b45b48e98aaa4bb0\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"8ac4b8953f8f6622875929eaeb06c66eeb9ed8458e641a74aa2badd72ba9ae24\"" Jul 2 07:57:27.917136 env[1186]: time="2024-07-02T07:57:27.917100274Z" level=info msg="StartContainer for \"8ac4b8953f8f6622875929eaeb06c66eeb9ed8458e641a74aa2badd72ba9ae24\"" Jul 2 07:57:27.936727 systemd[1]: Started cri-containerd-8ac4b8953f8f6622875929eaeb06c66eeb9ed8458e641a74aa2badd72ba9ae24.scope. Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.956000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.957000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.957000 audit: BPF prog-id=120 op=LOAD Jul 2 07:57:27.958000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.958000 audit[3252]: SYSCALL arch=c000003e syscall=321 success=yes exit=0 a0=f a1=c000197c48 a2=10 a3=1c items=0 ppid=3210 pid=3252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.958000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861633462383935336638663636323238373539323965616562303663 Jul 2 07:57:27.958000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.958000 audit[3252]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=0 a1=c0001976b0 a2=3c a3=8 items=0 ppid=3210 pid=3252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.958000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861633462383935336638663636323238373539323965616562303663 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.959000 audit: BPF prog-id=121 op=LOAD Jul 2 07:57:27.959000 audit[3252]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c0001979d8 a2=78 a3=c000281760 items=0 ppid=3210 pid=3252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.959000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861633462383935336638663636323238373539323965616562303663 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.960000 audit: BPF prog-id=122 op=LOAD Jul 2 07:57:27.960000 audit[3252]: SYSCALL arch=c000003e syscall=321 success=yes exit=18 a0=5 a1=c000197770 a2=78 a3=c0002817a8 items=0 ppid=3210 pid=3252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.960000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861633462383935336638663636323238373539323965616562303663 Jul 2 07:57:27.961000 audit: BPF prog-id=122 op=UNLOAD Jul 2 07:57:27.961000 audit: BPF prog-id=121 op=UNLOAD Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { perfmon } for pid=3252 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit[3252]: AVC avc: denied { bpf } for pid=3252 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 07:57:27.961000 audit: BPF prog-id=123 op=LOAD Jul 2 07:57:27.961000 audit[3252]: SYSCALL arch=c000003e syscall=321 success=yes exit=16 a0=5 a1=c000197c30 a2=78 a3=c000281bb8 items=0 ppid=3210 pid=3252 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 07:57:27.961000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3861633462383935336638663636323238373539323965616562303663 Jul 2 07:57:27.988319 env[1186]: time="2024-07-02T07:57:27.988244269Z" level=info msg="StartContainer for \"8ac4b8953f8f6622875929eaeb06c66eeb9ed8458e641a74aa2badd72ba9ae24\" returns successfully" Jul 2 07:57:28.454137 kubelet[1465]: E0702 07:57:28.454055 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:29.414330 systemd-networkd[1006]: cali5ec59c6bf6e: Gained IPv6LL Jul 2 07:57:29.455014 kubelet[1465]: E0702 07:57:29.454947 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:30.455356 kubelet[1465]: E0702 07:57:30.455301 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 07:57:31.456882 kubelet[1465]: E0702 07:57:31.456816 1465 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests"