Jul 2 00:45:50.039419 kernel: Booting Linux on physical CPU 0x0000000000 [0x410fd083] Jul 2 00:45:50.039459 kernel: Linux version 5.15.161-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 11.3.1_p20221209 p3) 11.3.1 20221209, GNU ld (Gentoo 2.39 p5) 2.39.0) #1 SMP PREEMPT Mon Jul 1 23:37:37 -00 2024 Jul 2 00:45:50.039483 kernel: efi: EFI v2.70 by EDK II Jul 2 00:45:50.039498 kernel: efi: SMBIOS=0x7bed0000 SMBIOS 3.0=0x7beb0000 ACPI=0x786e0000 ACPI 2.0=0x786e0014 MEMATTR=0x7ac1aa98 MEMRESERVE=0x7173cf98 Jul 2 00:45:50.039512 kernel: ACPI: Early table checksum verification disabled Jul 2 00:45:50.039525 kernel: ACPI: RSDP 0x00000000786E0014 000024 (v02 AMAZON) Jul 2 00:45:50.039541 kernel: ACPI: XSDT 0x00000000786D00E8 000064 (v01 AMAZON AMZNFACP 00000001 01000013) Jul 2 00:45:50.039555 kernel: ACPI: FACP 0x00000000786B0000 000114 (v06 AMAZON AMZNFACP 00000001 AMZN 00000001) Jul 2 00:45:50.039570 kernel: ACPI: DSDT 0x0000000078640000 00159D (v02 AMAZON AMZNDSDT 00000001 INTL 20160527) Jul 2 00:45:50.039583 kernel: ACPI: APIC 0x00000000786C0000 000108 (v04 AMAZON AMZNAPIC 00000001 AMZN 00000001) Jul 2 00:45:50.039603 kernel: ACPI: SPCR 0x00000000786A0000 000050 (v02 AMAZON AMZNSPCR 00000001 AMZN 00000001) Jul 2 00:45:50.039617 kernel: ACPI: GTDT 0x0000000078690000 000060 (v02 AMAZON AMZNGTDT 00000001 AMZN 00000001) Jul 2 00:45:50.039631 kernel: ACPI: MCFG 0x0000000078680000 00003C (v02 AMAZON AMZNMCFG 00000001 AMZN 00000001) Jul 2 00:45:50.039645 kernel: ACPI: SLIT 0x0000000078670000 00002D (v01 AMAZON AMZNSLIT 00000001 AMZN 00000001) Jul 2 00:45:50.039662 kernel: ACPI: IORT 0x0000000078660000 000078 (v01 AMAZON AMZNIORT 00000001 AMZN 00000001) Jul 2 00:45:50.039682 kernel: ACPI: PPTT 0x0000000078650000 0000EC (v01 AMAZON AMZNPPTT 00000001 AMZN 00000001) Jul 2 00:45:50.039697 kernel: ACPI: SPCR: console: uart,mmio,0x90a0000,115200 Jul 2 00:45:50.039712 kernel: earlycon: uart0 at MMIO 0x00000000090a0000 (options '115200') Jul 2 00:45:50.039727 kernel: printk: bootconsole [uart0] enabled Jul 2 00:45:50.039741 kernel: NUMA: Failed to initialise from firmware Jul 2 00:45:50.039756 kernel: NUMA: Faking a node at [mem 0x0000000040000000-0x00000004b5ffffff] Jul 2 00:45:50.039771 kernel: NUMA: NODE_DATA [mem 0x4b5843900-0x4b5848fff] Jul 2 00:45:50.039786 kernel: Zone ranges: Jul 2 00:45:50.039800 kernel: DMA [mem 0x0000000040000000-0x00000000ffffffff] Jul 2 00:45:50.039815 kernel: DMA32 empty Jul 2 00:45:50.039829 kernel: Normal [mem 0x0000000100000000-0x00000004b5ffffff] Jul 2 00:45:50.039848 kernel: Movable zone start for each node Jul 2 00:45:50.039863 kernel: Early memory node ranges Jul 2 00:45:50.039878 kernel: node 0: [mem 0x0000000040000000-0x000000007862ffff] Jul 2 00:45:50.039893 kernel: node 0: [mem 0x0000000078630000-0x000000007863ffff] Jul 2 00:45:50.039907 kernel: node 0: [mem 0x0000000078640000-0x00000000786effff] Jul 2 00:45:50.039921 kernel: node 0: [mem 0x00000000786f0000-0x000000007872ffff] Jul 2 00:45:50.039935 kernel: node 0: [mem 0x0000000078730000-0x000000007bbfffff] Jul 2 00:45:50.039950 kernel: node 0: [mem 0x000000007bc00000-0x000000007bfdffff] Jul 2 00:45:50.039964 kernel: node 0: [mem 0x000000007bfe0000-0x000000007fffffff] Jul 2 00:45:50.039979 kernel: node 0: [mem 0x0000000400000000-0x00000004b5ffffff] Jul 2 00:45:50.039993 kernel: Initmem setup node 0 [mem 0x0000000040000000-0x00000004b5ffffff] Jul 2 00:45:50.040008 kernel: On node 0, zone Normal: 8192 pages in unavailable ranges Jul 2 00:45:50.040026 kernel: psci: probing for conduit method from ACPI. Jul 2 00:45:50.040041 kernel: psci: PSCIv1.0 detected in firmware. Jul 2 00:45:50.040062 kernel: psci: Using standard PSCI v0.2 function IDs Jul 2 00:45:50.040078 kernel: psci: Trusted OS migration not required Jul 2 00:45:50.040093 kernel: psci: SMC Calling Convention v1.1 Jul 2 00:45:50.040114 kernel: ACPI: SRAT not present Jul 2 00:45:50.040130 kernel: percpu: Embedded 30 pages/cpu s83032 r8192 d31656 u122880 Jul 2 00:45:50.040146 kernel: pcpu-alloc: s83032 r8192 d31656 u122880 alloc=30*4096 Jul 2 00:45:50.040162 kernel: pcpu-alloc: [0] 0 [0] 1 Jul 2 00:45:50.040177 kernel: Detected PIPT I-cache on CPU0 Jul 2 00:45:50.040193 kernel: CPU features: detected: GIC system register CPU interface Jul 2 00:45:50.040208 kernel: CPU features: detected: Spectre-v2 Jul 2 00:45:50.040223 kernel: CPU features: detected: Spectre-v3a Jul 2 00:45:50.040238 kernel: CPU features: detected: Spectre-BHB Jul 2 00:45:50.040253 kernel: CPU features: kernel page table isolation forced ON by KASLR Jul 2 00:45:50.040269 kernel: CPU features: detected: Kernel page table isolation (KPTI) Jul 2 00:45:50.040289 kernel: CPU features: detected: ARM erratum 1742098 Jul 2 00:45:50.040305 kernel: CPU features: detected: ARM errata 1165522, 1319367, or 1530923 Jul 2 00:45:50.040320 kernel: Built 1 zonelists, mobility grouping on. Total pages: 991872 Jul 2 00:45:50.040361 kernel: Policy zone: Normal Jul 2 00:45:50.040388 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=7b86ecfcd4701bdf4668db795601b20c118ac0b117c34a9b3836e0a5236b73b0 Jul 2 00:45:50.040406 kernel: Unknown kernel command line parameters "BOOT_IMAGE=/flatcar/vmlinuz-a", will be passed to user space. Jul 2 00:45:50.040421 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Jul 2 00:45:50.040437 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Jul 2 00:45:50.040453 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Jul 2 00:45:50.040468 kernel: software IO TLB: mapped [mem 0x000000007c000000-0x0000000080000000] (64MB) Jul 2 00:45:50.040493 kernel: Memory: 3824588K/4030464K available (9792K kernel code, 2092K rwdata, 7572K rodata, 36352K init, 777K bss, 205876K reserved, 0K cma-reserved) Jul 2 00:45:50.040510 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Jul 2 00:45:50.040527 kernel: trace event string verifier disabled Jul 2 00:45:50.040544 kernel: rcu: Preemptible hierarchical RCU implementation. Jul 2 00:45:50.040562 kernel: rcu: RCU event tracing is enabled. Jul 2 00:45:50.040581 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Jul 2 00:45:50.040598 kernel: Trampoline variant of Tasks RCU enabled. Jul 2 00:45:50.040615 kernel: Tracing variant of Tasks RCU enabled. Jul 2 00:45:50.040632 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Jul 2 00:45:50.040649 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Jul 2 00:45:50.040666 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Jul 2 00:45:50.040682 kernel: GICv3: 96 SPIs implemented Jul 2 00:45:50.040714 kernel: GICv3: 0 Extended SPIs implemented Jul 2 00:45:50.040730 kernel: GICv3: Distributor has no Range Selector support Jul 2 00:45:50.040745 kernel: Root IRQ handler: gic_handle_irq Jul 2 00:45:50.040761 kernel: GICv3: 16 PPIs implemented Jul 2 00:45:50.040777 kernel: GICv3: CPU0: found redistributor 0 region 0:0x0000000010200000 Jul 2 00:45:50.040792 kernel: ACPI: SRAT not present Jul 2 00:45:50.040808 kernel: ITS [mem 0x10080000-0x1009ffff] Jul 2 00:45:50.040824 kernel: ITS@0x0000000010080000: allocated 8192 Devices @4000a0000 (indirect, esz 8, psz 64K, shr 1) Jul 2 00:45:50.040840 kernel: ITS@0x0000000010080000: allocated 8192 Interrupt Collections @4000b0000 (flat, esz 8, psz 64K, shr 1) Jul 2 00:45:50.040855 kernel: GICv3: using LPI property table @0x00000004000c0000 Jul 2 00:45:50.040871 kernel: ITS: Using hypervisor restricted LPI range [128] Jul 2 00:45:50.040895 kernel: GICv3: CPU0: using allocated LPI pending table @0x00000004000d0000 Jul 2 00:45:50.040912 kernel: arch_timer: cp15 timer(s) running at 83.33MHz (virt). Jul 2 00:45:50.040928 kernel: clocksource: arch_sys_counter: mask: 0xffffffffffffff max_cycles: 0x13381ebeec, max_idle_ns: 440795203145 ns Jul 2 00:45:50.040944 kernel: sched_clock: 56 bits at 83MHz, resolution 12ns, wraps every 4398046511100ns Jul 2 00:45:50.040960 kernel: Console: colour dummy device 80x25 Jul 2 00:45:50.040977 kernel: printk: console [tty1] enabled Jul 2 00:45:50.040993 kernel: ACPI: Core revision 20210730 Jul 2 00:45:50.041010 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 166.66 BogoMIPS (lpj=83333) Jul 2 00:45:50.041026 kernel: pid_max: default: 32768 minimum: 301 Jul 2 00:45:50.041042 kernel: LSM: Security Framework initializing Jul 2 00:45:50.041064 kernel: SELinux: Initializing. Jul 2 00:45:50.041080 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Jul 2 00:45:50.041096 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Jul 2 00:45:50.041112 kernel: rcu: Hierarchical SRCU implementation. Jul 2 00:45:50.041127 kernel: Platform MSI: ITS@0x10080000 domain created Jul 2 00:45:50.041142 kernel: PCI/MSI: ITS@0x10080000 domain created Jul 2 00:45:50.041158 kernel: Remapping and enabling EFI services. Jul 2 00:45:50.041173 kernel: smp: Bringing up secondary CPUs ... Jul 2 00:45:50.041188 kernel: Detected PIPT I-cache on CPU1 Jul 2 00:45:50.041204 kernel: GICv3: CPU1: found redistributor 1 region 0:0x0000000010220000 Jul 2 00:45:50.041224 kernel: GICv3: CPU1: using allocated LPI pending table @0x00000004000e0000 Jul 2 00:45:50.041240 kernel: CPU1: Booted secondary processor 0x0000000001 [0x410fd083] Jul 2 00:45:50.041256 kernel: smp: Brought up 1 node, 2 CPUs Jul 2 00:45:50.041271 kernel: SMP: Total of 2 processors activated. Jul 2 00:45:50.041287 kernel: CPU features: detected: 32-bit EL0 Support Jul 2 00:45:50.041303 kernel: CPU features: detected: 32-bit EL1 Support Jul 2 00:45:50.041319 kernel: CPU features: detected: CRC32 instructions Jul 2 00:45:50.041384 kernel: CPU: All CPU(s) started at EL1 Jul 2 00:45:50.041413 kernel: alternatives: patching kernel code Jul 2 00:45:50.041437 kernel: devtmpfs: initialized Jul 2 00:45:50.041453 kernel: KASLR disabled due to lack of seed Jul 2 00:45:50.041482 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Jul 2 00:45:50.041503 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Jul 2 00:45:50.041520 kernel: pinctrl core: initialized pinctrl subsystem Jul 2 00:45:50.041536 kernel: SMBIOS 3.0.0 present. Jul 2 00:45:50.041553 kernel: DMI: Amazon EC2 a1.large/, BIOS 1.0 11/1/2018 Jul 2 00:45:50.041569 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Jul 2 00:45:50.041586 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Jul 2 00:45:50.041602 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Jul 2 00:45:50.041619 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Jul 2 00:45:50.041640 kernel: audit: initializing netlink subsys (disabled) Jul 2 00:45:50.041657 kernel: audit: type=2000 audit(0.249:1): state=initialized audit_enabled=0 res=1 Jul 2 00:45:50.041674 kernel: thermal_sys: Registered thermal governor 'step_wise' Jul 2 00:45:50.041690 kernel: cpuidle: using governor menu Jul 2 00:45:50.041706 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Jul 2 00:45:50.041727 kernel: ASID allocator initialised with 32768 entries Jul 2 00:45:50.041744 kernel: ACPI: bus type PCI registered Jul 2 00:45:50.041760 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Jul 2 00:45:50.041776 kernel: Serial: AMBA PL011 UART driver Jul 2 00:45:50.041792 kernel: HugeTLB registered 1.00 GiB page size, pre-allocated 0 pages Jul 2 00:45:50.041808 kernel: HugeTLB registered 32.0 MiB page size, pre-allocated 0 pages Jul 2 00:45:50.041825 kernel: HugeTLB registered 2.00 MiB page size, pre-allocated 0 pages Jul 2 00:45:50.041841 kernel: HugeTLB registered 64.0 KiB page size, pre-allocated 0 pages Jul 2 00:45:50.041857 kernel: cryptd: max_cpu_qlen set to 1000 Jul 2 00:45:50.041878 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Jul 2 00:45:50.041894 kernel: ACPI: Added _OSI(Module Device) Jul 2 00:45:50.041911 kernel: ACPI: Added _OSI(Processor Device) Jul 2 00:45:50.041927 kernel: ACPI: Added _OSI(3.0 _SCP Extensions) Jul 2 00:45:50.041943 kernel: ACPI: Added _OSI(Processor Aggregator Device) Jul 2 00:45:50.041959 kernel: ACPI: Added _OSI(Linux-Dell-Video) Jul 2 00:45:50.041975 kernel: ACPI: Added _OSI(Linux-Lenovo-NV-HDMI-Audio) Jul 2 00:45:50.041991 kernel: ACPI: Added _OSI(Linux-HPI-Hybrid-Graphics) Jul 2 00:45:50.042007 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Jul 2 00:45:50.042028 kernel: ACPI: Interpreter enabled Jul 2 00:45:50.042045 kernel: ACPI: Using GIC for interrupt routing Jul 2 00:45:50.042061 kernel: ACPI: MCFG table detected, 1 entries Jul 2 00:45:50.042078 kernel: ACPI: PCI Root Bridge [PCI0] (domain 0000 [bus 00-0f]) Jul 2 00:45:50.042528 kernel: acpi PNP0A08:00: _OSC: OS supports [ExtendedConfig ASPM ClockPM Segments MSI HPX-Type3] Jul 2 00:45:50.042807 kernel: acpi PNP0A08:00: _OSC: platform does not support [LTR] Jul 2 00:45:50.043056 kernel: acpi PNP0A08:00: _OSC: OS now controls [PCIeHotplug PME AER PCIeCapability] Jul 2 00:45:50.043308 kernel: acpi PNP0A08:00: ECAM area [mem 0x20000000-0x20ffffff] reserved by PNP0C02:00 Jul 2 00:45:50.043588 kernel: acpi PNP0A08:00: ECAM at [mem 0x20000000-0x20ffffff] for [bus 00-0f] Jul 2 00:45:50.043616 kernel: ACPI: Remapped I/O 0x000000001fff0000 to [io 0x0000-0xffff window] Jul 2 00:45:50.043633 kernel: acpiphp: Slot [1] registered Jul 2 00:45:50.043650 kernel: acpiphp: Slot [2] registered Jul 2 00:45:50.043666 kernel: acpiphp: Slot [3] registered Jul 2 00:45:50.043682 kernel: acpiphp: Slot [4] registered Jul 2 00:45:50.043698 kernel: acpiphp: Slot [5] registered Jul 2 00:45:50.043714 kernel: acpiphp: Slot [6] registered Jul 2 00:45:50.043730 kernel: acpiphp: Slot [7] registered Jul 2 00:45:50.043755 kernel: acpiphp: Slot [8] registered Jul 2 00:45:50.043772 kernel: acpiphp: Slot [9] registered Jul 2 00:45:50.043788 kernel: acpiphp: Slot [10] registered Jul 2 00:45:50.043804 kernel: acpiphp: Slot [11] registered Jul 2 00:45:50.043820 kernel: acpiphp: Slot [12] registered Jul 2 00:45:50.043836 kernel: acpiphp: Slot [13] registered Jul 2 00:45:50.043852 kernel: acpiphp: Slot [14] registered Jul 2 00:45:50.043868 kernel: acpiphp: Slot [15] registered Jul 2 00:45:50.043885 kernel: acpiphp: Slot [16] registered Jul 2 00:45:50.043905 kernel: acpiphp: Slot [17] registered Jul 2 00:45:50.043922 kernel: acpiphp: Slot [18] registered Jul 2 00:45:50.043938 kernel: acpiphp: Slot [19] registered Jul 2 00:45:50.043955 kernel: acpiphp: Slot [20] registered Jul 2 00:45:50.043970 kernel: acpiphp: Slot [21] registered Jul 2 00:45:50.043986 kernel: acpiphp: Slot [22] registered Jul 2 00:45:50.044002 kernel: acpiphp: Slot [23] registered Jul 2 00:45:50.044019 kernel: acpiphp: Slot [24] registered Jul 2 00:45:50.044035 kernel: acpiphp: Slot [25] registered Jul 2 00:45:50.044051 kernel: acpiphp: Slot [26] registered Jul 2 00:45:50.044073 kernel: acpiphp: Slot [27] registered Jul 2 00:45:50.044089 kernel: acpiphp: Slot [28] registered Jul 2 00:45:50.044105 kernel: acpiphp: Slot [29] registered Jul 2 00:45:50.044121 kernel: acpiphp: Slot [30] registered Jul 2 00:45:50.044138 kernel: acpiphp: Slot [31] registered Jul 2 00:45:50.044154 kernel: PCI host bridge to bus 0000:00 Jul 2 00:45:50.046537 kernel: pci_bus 0000:00: root bus resource [mem 0x80000000-0xffffffff window] Jul 2 00:45:50.046794 kernel: pci_bus 0000:00: root bus resource [io 0x0000-0xffff window] Jul 2 00:45:50.047030 kernel: pci_bus 0000:00: root bus resource [mem 0x400000000000-0x407fffffffff window] Jul 2 00:45:50.047252 kernel: pci_bus 0000:00: root bus resource [bus 00-0f] Jul 2 00:45:50.047596 kernel: pci 0000:00:00.0: [1d0f:0200] type 00 class 0x060000 Jul 2 00:45:50.047856 kernel: pci 0000:00:01.0: [1d0f:8250] type 00 class 0x070003 Jul 2 00:45:50.048091 kernel: pci 0000:00:01.0: reg 0x10: [mem 0x80118000-0x80118fff] Jul 2 00:45:50.048368 kernel: pci 0000:00:04.0: [1d0f:8061] type 00 class 0x010802 Jul 2 00:45:50.051807 kernel: pci 0000:00:04.0: reg 0x10: [mem 0x80114000-0x80117fff] Jul 2 00:45:50.052070 kernel: pci 0000:00:04.0: PME# supported from D0 D1 D2 D3hot D3cold Jul 2 00:45:50.052327 kernel: pci 0000:00:05.0: [1d0f:ec20] type 00 class 0x020000 Jul 2 00:45:50.052683 kernel: pci 0000:00:05.0: reg 0x10: [mem 0x80110000-0x80113fff] Jul 2 00:45:50.052905 kernel: pci 0000:00:05.0: reg 0x18: [mem 0x80000000-0x800fffff pref] Jul 2 00:45:50.053122 kernel: pci 0000:00:05.0: reg 0x20: [mem 0x80100000-0x8010ffff] Jul 2 00:45:50.070134 kernel: pci 0000:00:05.0: PME# supported from D0 D1 D2 D3hot D3cold Jul 2 00:45:50.070559 kernel: pci 0000:00:05.0: BAR 2: assigned [mem 0x80000000-0x800fffff pref] Jul 2 00:45:50.070815 kernel: pci 0000:00:05.0: BAR 4: assigned [mem 0x80100000-0x8010ffff] Jul 2 00:45:50.071049 kernel: pci 0000:00:04.0: BAR 0: assigned [mem 0x80110000-0x80113fff] Jul 2 00:45:50.071280 kernel: pci 0000:00:05.0: BAR 0: assigned [mem 0x80114000-0x80117fff] Jul 2 00:45:50.072646 kernel: pci 0000:00:01.0: BAR 0: assigned [mem 0x80118000-0x80118fff] Jul 2 00:45:50.072868 kernel: pci_bus 0000:00: resource 4 [mem 0x80000000-0xffffffff window] Jul 2 00:45:50.073072 kernel: pci_bus 0000:00: resource 5 [io 0x0000-0xffff window] Jul 2 00:45:50.073301 kernel: pci_bus 0000:00: resource 6 [mem 0x400000000000-0x407fffffffff window] Jul 2 00:45:50.073373 kernel: ACPI: PCI: Interrupt link GSI0 configured for IRQ 35 Jul 2 00:45:50.073404 kernel: ACPI: PCI: Interrupt link GSI1 configured for IRQ 36 Jul 2 00:45:50.073422 kernel: ACPI: PCI: Interrupt link GSI2 configured for IRQ 37 Jul 2 00:45:50.073439 kernel: ACPI: PCI: Interrupt link GSI3 configured for IRQ 38 Jul 2 00:45:50.073456 kernel: iommu: Default domain type: Translated Jul 2 00:45:50.073473 kernel: iommu: DMA domain TLB invalidation policy: strict mode Jul 2 00:45:50.073490 kernel: vgaarb: loaded Jul 2 00:45:50.073506 kernel: pps_core: LinuxPPS API ver. 1 registered Jul 2 00:45:50.073533 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Jul 2 00:45:50.073550 kernel: PTP clock support registered Jul 2 00:45:50.073566 kernel: Registered efivars operations Jul 2 00:45:50.073583 kernel: clocksource: Switched to clocksource arch_sys_counter Jul 2 00:45:50.073599 kernel: VFS: Disk quotas dquot_6.6.0 Jul 2 00:45:50.073615 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Jul 2 00:45:50.073631 kernel: pnp: PnP ACPI init Jul 2 00:45:50.073921 kernel: system 00:00: [mem 0x20000000-0x2fffffff] could not be reserved Jul 2 00:45:50.073960 kernel: pnp: PnP ACPI: found 1 devices Jul 2 00:45:50.073977 kernel: NET: Registered PF_INET protocol family Jul 2 00:45:50.073994 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Jul 2 00:45:50.074011 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Jul 2 00:45:50.074027 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Jul 2 00:45:50.074044 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Jul 2 00:45:50.074061 kernel: TCP bind hash table entries: 32768 (order: 7, 524288 bytes, linear) Jul 2 00:45:50.074077 kernel: TCP: Hash tables configured (established 32768 bind 32768) Jul 2 00:45:50.074093 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Jul 2 00:45:50.074114 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Jul 2 00:45:50.074131 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Jul 2 00:45:50.074147 kernel: PCI: CLS 0 bytes, default 64 Jul 2 00:45:50.074164 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 3 counters available Jul 2 00:45:50.074180 kernel: kvm [1]: HYP mode not available Jul 2 00:45:50.074196 kernel: Initialise system trusted keyrings Jul 2 00:45:50.074213 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Jul 2 00:45:50.074230 kernel: Key type asymmetric registered Jul 2 00:45:50.074246 kernel: Asymmetric key parser 'x509' registered Jul 2 00:45:50.074267 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Jul 2 00:45:50.074284 kernel: io scheduler mq-deadline registered Jul 2 00:45:50.074300 kernel: io scheduler kyber registered Jul 2 00:45:50.074317 kernel: io scheduler bfq registered Jul 2 00:45:50.077050 kernel: pl061_gpio ARMH0061:00: PL061 GPIO chip registered Jul 2 00:45:50.077089 kernel: input: Power Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0C:00/input/input0 Jul 2 00:45:50.077107 kernel: ACPI: button: Power Button [PWRB] Jul 2 00:45:50.077124 kernel: input: Sleep Button as /devices/LNXSYSTM:00/LNXSYBUS:00/PNP0C0E:00/input/input1 Jul 2 00:45:50.077153 kernel: ACPI: button: Sleep Button [SLPB] Jul 2 00:45:50.077170 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Jul 2 00:45:50.077188 kernel: ACPI: \_SB_.PCI0.GSI2: Enabled at IRQ 37 Jul 2 00:45:50.077496 kernel: serial 0000:00:01.0: enabling device (0010 -> 0012) Jul 2 00:45:50.077532 kernel: printk: console [ttyS0] disabled Jul 2 00:45:50.077550 kernel: 0000:00:01.0: ttyS0 at MMIO 0x80118000 (irq = 14, base_baud = 115200) is a 16550A Jul 2 00:45:50.077566 kernel: printk: console [ttyS0] enabled Jul 2 00:45:50.077583 kernel: printk: bootconsole [uart0] disabled Jul 2 00:45:50.077599 kernel: thunder_xcv, ver 1.0 Jul 2 00:45:50.077615 kernel: thunder_bgx, ver 1.0 Jul 2 00:45:50.077641 kernel: nicpf, ver 1.0 Jul 2 00:45:50.077657 kernel: nicvf, ver 1.0 Jul 2 00:45:50.077912 kernel: rtc-efi rtc-efi.0: registered as rtc0 Jul 2 00:45:50.078136 kernel: rtc-efi rtc-efi.0: setting system clock to 2024-07-02T00:45:49 UTC (1719881149) Jul 2 00:45:50.078163 kernel: hid: raw HID events driver (C) Jiri Kosina Jul 2 00:45:50.078179 kernel: NET: Registered PF_INET6 protocol family Jul 2 00:45:50.078196 kernel: Segment Routing with IPv6 Jul 2 00:45:50.078212 kernel: In-situ OAM (IOAM) with IPv6 Jul 2 00:45:50.078238 kernel: NET: Registered PF_PACKET protocol family Jul 2 00:45:50.078254 kernel: Key type dns_resolver registered Jul 2 00:45:50.078271 kernel: registered taskstats version 1 Jul 2 00:45:50.078287 kernel: Loading compiled-in X.509 certificates Jul 2 00:45:50.078303 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 5.15.161-flatcar: c418313b450e4055b23e41c11cb6dc415de0265d' Jul 2 00:45:50.078583 kernel: Key type .fscrypt registered Jul 2 00:45:50.078620 kernel: Key type fscrypt-provisioning registered Jul 2 00:45:50.078638 kernel: ima: No TPM chip found, activating TPM-bypass! Jul 2 00:45:50.078655 kernel: ima: Allocated hash algorithm: sha1 Jul 2 00:45:50.078680 kernel: ima: No architecture policies found Jul 2 00:45:50.078697 kernel: clk: Disabling unused clocks Jul 2 00:45:50.078713 kernel: Freeing unused kernel memory: 36352K Jul 2 00:45:50.078729 kernel: Run /init as init process Jul 2 00:45:50.078745 kernel: with arguments: Jul 2 00:45:50.078762 kernel: /init Jul 2 00:45:50.078778 kernel: with environment: Jul 2 00:45:50.078794 kernel: HOME=/ Jul 2 00:45:50.078810 kernel: TERM=linux Jul 2 00:45:50.078832 kernel: BOOT_IMAGE=/flatcar/vmlinuz-a Jul 2 00:45:50.078856 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Jul 2 00:45:50.078877 systemd[1]: Detected virtualization amazon. Jul 2 00:45:50.078896 systemd[1]: Detected architecture arm64. Jul 2 00:45:50.078913 systemd[1]: Running in initrd. Jul 2 00:45:50.078931 systemd[1]: No hostname configured, using default hostname. Jul 2 00:45:50.078949 systemd[1]: Hostname set to . Jul 2 00:45:50.078972 systemd[1]: Initializing machine ID from VM UUID. Jul 2 00:45:50.078991 systemd[1]: Queued start job for default target initrd.target. Jul 2 00:45:50.079008 systemd[1]: Started systemd-ask-password-console.path. Jul 2 00:45:50.079026 systemd[1]: Reached target cryptsetup.target. Jul 2 00:45:50.079045 systemd[1]: Reached target paths.target. Jul 2 00:45:50.079062 systemd[1]: Reached target slices.target. Jul 2 00:45:50.079080 systemd[1]: Reached target swap.target. Jul 2 00:45:50.079098 systemd[1]: Reached target timers.target. Jul 2 00:45:50.079122 systemd[1]: Listening on iscsid.socket. Jul 2 00:45:50.079141 systemd[1]: Listening on iscsiuio.socket. Jul 2 00:45:50.079164 systemd[1]: Listening on systemd-journald-audit.socket. Jul 2 00:45:50.079183 systemd[1]: Listening on systemd-journald-dev-log.socket. Jul 2 00:45:50.079201 systemd[1]: Listening on systemd-journald.socket. Jul 2 00:45:50.079219 systemd[1]: Listening on systemd-networkd.socket. Jul 2 00:45:50.079237 systemd[1]: Listening on systemd-udevd-control.socket. Jul 2 00:45:50.079255 systemd[1]: Listening on systemd-udevd-kernel.socket. Jul 2 00:45:50.079277 systemd[1]: Reached target sockets.target. Jul 2 00:45:50.079295 systemd[1]: Starting kmod-static-nodes.service... Jul 2 00:45:50.079312 systemd[1]: Finished network-cleanup.service. Jul 2 00:45:50.079331 systemd[1]: Starting systemd-fsck-usr.service... Jul 2 00:45:50.081479 systemd[1]: Starting systemd-journald.service... Jul 2 00:45:50.081500 systemd[1]: Starting systemd-modules-load.service... Jul 2 00:45:50.081518 systemd[1]: Starting systemd-resolved.service... Jul 2 00:45:50.081537 systemd[1]: Starting systemd-vconsole-setup.service... Jul 2 00:45:50.081555 systemd[1]: Finished kmod-static-nodes.service. Jul 2 00:45:50.081583 systemd[1]: Finished systemd-fsck-usr.service. Jul 2 00:45:50.081602 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Jul 2 00:45:50.081620 systemd[1]: Finished systemd-vconsole-setup.service. Jul 2 00:45:50.081639 systemd[1]: Starting dracut-cmdline-ask.service... Jul 2 00:45:50.081657 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Jul 2 00:45:50.081677 kernel: audit: type=1130 audit(1719881150.020:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.081697 systemd[1]: Finished dracut-cmdline-ask.service. Jul 2 00:45:50.081716 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Jul 2 00:45:50.081742 kernel: audit: type=1130 audit(1719881150.062:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.081760 kernel: Bridge firewalling registered Jul 2 00:45:50.081777 systemd[1]: Starting dracut-cmdline.service... Jul 2 00:45:50.081800 systemd-journald[309]: Journal started Jul 2 00:45:50.081923 systemd-journald[309]: Runtime Journal (/run/log/journal/ec2359eb167802d1ba5cecb189c956c3) is 8.0M, max 75.4M, 67.4M free. Jul 2 00:45:50.020000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.062000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:49.985578 systemd-modules-load[310]: Inserted module 'overlay' Jul 2 00:45:50.078148 systemd-modules-load[310]: Inserted module 'br_netfilter' Jul 2 00:45:50.100430 systemd[1]: Started systemd-journald.service. Jul 2 00:45:50.100000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.108986 systemd-resolved[311]: Positive Trust Anchors: Jul 2 00:45:50.111536 kernel: audit: type=1130 audit(1719881150.100:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.109049 systemd-resolved[311]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Jul 2 00:45:50.109115 systemd-resolved[311]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Jul 2 00:45:50.138381 kernel: SCSI subsystem initialized Jul 2 00:45:50.149427 dracut-cmdline[327]: dracut-dracut-053 Jul 2 00:45:50.158809 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Jul 2 00:45:50.158879 kernel: device-mapper: uevent: version 1.0.3 Jul 2 00:45:50.158922 dracut-cmdline[327]: Using kernel command line parameters: rd.driver.pre=btrfs BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyS0,115200n8 earlycon flatcar.first_boot=detected acpi=force flatcar.oem.id=ec2 modprobe.blacklist=xen_fbfront net.ifnames=0 nvme_core.io_timeout=4294967295 verity.usrhash=7b86ecfcd4701bdf4668db795601b20c118ac0b117c34a9b3836e0a5236b73b0 Jul 2 00:45:50.192380 kernel: device-mapper: ioctl: 4.45.0-ioctl (2021-03-22) initialised: dm-devel@redhat.com Jul 2 00:45:50.199552 systemd-modules-load[310]: Inserted module 'dm_multipath' Jul 2 00:45:50.204000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.203961 systemd[1]: Finished systemd-modules-load.service. Jul 2 00:45:50.216249 systemd[1]: Starting systemd-sysctl.service... Jul 2 00:45:50.218772 kernel: audit: type=1130 audit(1719881150.204:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.239073 systemd[1]: Finished systemd-sysctl.service. Jul 2 00:45:50.239000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.254364 kernel: audit: type=1130 audit(1719881150.239:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.314381 kernel: Loading iSCSI transport class v2.0-870. Jul 2 00:45:50.335372 kernel: iscsi: registered transport (tcp) Jul 2 00:45:50.362359 kernel: iscsi: registered transport (qla4xxx) Jul 2 00:45:50.362455 kernel: QLogic iSCSI HBA Driver Jul 2 00:45:50.538051 systemd-resolved[311]: Defaulting to hostname 'linux'. Jul 2 00:45:50.540191 kernel: random: crng init done Jul 2 00:45:50.541458 systemd[1]: Started systemd-resolved.service. Jul 2 00:45:50.543000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.544373 systemd[1]: Reached target nss-lookup.target. Jul 2 00:45:50.554563 kernel: audit: type=1130 audit(1719881150.543:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.572223 systemd[1]: Finished dracut-cmdline.service. Jul 2 00:45:50.573000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.576564 systemd[1]: Starting dracut-pre-udev.service... Jul 2 00:45:50.584093 kernel: audit: type=1130 audit(1719881150.573:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:50.643393 kernel: raid6: neonx8 gen() 6351 MB/s Jul 2 00:45:50.661399 kernel: raid6: neonx8 xor() 4567 MB/s Jul 2 00:45:50.679408 kernel: raid6: neonx4 gen() 6437 MB/s Jul 2 00:45:50.697394 kernel: raid6: neonx4 xor() 4739 MB/s Jul 2 00:45:50.715384 kernel: raid6: neonx2 gen() 5740 MB/s Jul 2 00:45:50.733369 kernel: raid6: neonx2 xor() 4404 MB/s Jul 2 00:45:50.751374 kernel: raid6: neonx1 gen() 4451 MB/s Jul 2 00:45:50.769373 kernel: raid6: neonx1 xor() 3597 MB/s Jul 2 00:45:50.787371 kernel: raid6: int64x8 gen() 3421 MB/s Jul 2 00:45:50.805371 kernel: raid6: int64x8 xor() 2040 MB/s Jul 2 00:45:50.823369 kernel: raid6: int64x4 gen() 3830 MB/s Jul 2 00:45:50.841371 kernel: raid6: int64x4 xor() 2158 MB/s Jul 2 00:45:50.859370 kernel: raid6: int64x2 gen() 3563 MB/s Jul 2 00:45:50.877368 kernel: raid6: int64x2 xor() 1920 MB/s Jul 2 00:45:50.895369 kernel: raid6: int64x1 gen() 2731 MB/s Jul 2 00:45:50.914363 kernel: raid6: int64x1 xor() 1397 MB/s Jul 2 00:45:50.914409 kernel: raid6: using algorithm neonx4 gen() 6437 MB/s Jul 2 00:45:50.914434 kernel: raid6: .... xor() 4739 MB/s, rmw enabled Jul 2 00:45:50.915923 kernel: raid6: using neon recovery algorithm Jul 2 00:45:50.934375 kernel: xor: measuring software checksum speed Jul 2 00:45:50.936369 kernel: 8regs : 9333 MB/sec Jul 2 00:45:50.939368 kernel: 32regs : 11113 MB/sec Jul 2 00:45:50.942573 kernel: arm64_neon : 9570 MB/sec Jul 2 00:45:50.942605 kernel: xor: using function: 32regs (11113 MB/sec) Jul 2 00:45:51.034387 kernel: Btrfs loaded, crc32c=crc32c-generic, zoned=no, fsverity=no Jul 2 00:45:51.051684 systemd[1]: Finished dracut-pre-udev.service. Jul 2 00:45:51.066476 kernel: audit: type=1130 audit(1719881151.052:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:51.066514 kernel: audit: type=1334 audit(1719881151.052:10): prog-id=7 op=LOAD Jul 2 00:45:51.052000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:51.052000 audit: BPF prog-id=7 op=LOAD Jul 2 00:45:51.052000 audit: BPF prog-id=8 op=LOAD Jul 2 00:45:51.054837 systemd[1]: Starting systemd-udevd.service... Jul 2 00:45:51.090766 systemd-udevd[509]: Using default interface naming scheme 'v252'. Jul 2 00:45:51.100602 systemd[1]: Started systemd-udevd.service. Jul 2 00:45:51.111000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:51.114549 systemd[1]: Starting dracut-pre-trigger.service... Jul 2 00:45:51.143024 dracut-pre-trigger[524]: rd.md=0: removing MD RAID activation Jul 2 00:45:51.205497 systemd[1]: Finished dracut-pre-trigger.service. Jul 2 00:45:51.206000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:51.208919 systemd[1]: Starting systemd-udev-trigger.service... Jul 2 00:45:51.320393 systemd[1]: Finished systemd-udev-trigger.service. Jul 2 00:45:51.320000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:51.424362 kernel: ACPI: \_SB_.PCI0.GSI1: Enabled at IRQ 36 Jul 2 00:45:51.424421 kernel: ena 0000:00:05.0: enabling device (0010 -> 0012) Jul 2 00:45:51.435794 kernel: ena 0000:00:05.0: ENA device version: 0.10 Jul 2 00:45:51.436078 kernel: ena 0000:00:05.0: ENA controller version: 0.0.1 implementation version 1 Jul 2 00:45:51.446365 kernel: ena 0000:00:05.0: Elastic Network Adapter (ENA) found at mem 80114000, mac addr 06:ad:6f:52:96:2d Jul 2 00:45:51.450147 (udev-worker)[571]: Network interface NamePolicy= disabled on kernel command line. Jul 2 00:45:51.459392 kernel: ACPI: \_SB_.PCI0.GSI0: Enabled at IRQ 35 Jul 2 00:45:51.461769 kernel: nvme nvme0: pci function 0000:00:04.0 Jul 2 00:45:51.471378 kernel: nvme nvme0: 2/0/0 default/read/poll queues Jul 2 00:45:51.477489 kernel: GPT:Primary header thinks Alt. header is not at the end of the disk. Jul 2 00:45:51.477542 kernel: GPT:9289727 != 16777215 Jul 2 00:45:51.479446 kernel: GPT:Alternate GPT header not at the end of the disk. Jul 2 00:45:51.480556 kernel: GPT:9289727 != 16777215 Jul 2 00:45:51.482186 kernel: GPT: Use GNU Parted to correct GPT errors. Jul 2 00:45:51.483551 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Jul 2 00:45:51.580383 kernel: BTRFS: device label OEM devid 1 transid 12 /dev/nvme0n1p6 scanned by (udev-worker) (563) Jul 2 00:45:51.600678 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device. Jul 2 00:45:51.648839 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Jul 2 00:45:51.711274 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device. Jul 2 00:45:51.715291 systemd[1]: Found device dev-disk-by\x2dpartuuid-7130c94a\x2d213a\x2d4e5a\x2d8e26\x2d6cce9662f132.device. Jul 2 00:45:51.730100 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device. Jul 2 00:45:51.735200 systemd[1]: Starting disk-uuid.service... Jul 2 00:45:51.747544 disk-uuid[668]: Primary Header is updated. Jul 2 00:45:51.747544 disk-uuid[668]: Secondary Entries is updated. Jul 2 00:45:51.747544 disk-uuid[668]: Secondary Header is updated. Jul 2 00:45:51.757392 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Jul 2 00:45:51.766376 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Jul 2 00:45:52.772393 kernel: nvme0n1: p1 p2 p3 p4 p6 p7 p9 Jul 2 00:45:52.772457 disk-uuid[669]: The operation has completed successfully. Jul 2 00:45:52.945448 systemd[1]: disk-uuid.service: Deactivated successfully. Jul 2 00:45:52.946025 systemd[1]: Finished disk-uuid.service. Jul 2 00:45:52.947000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:52.948000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:52.961533 systemd[1]: Starting verity-setup.service... Jul 2 00:45:52.995689 kernel: device-mapper: verity: sha256 using implementation "sha256-ce" Jul 2 00:45:53.069316 systemd[1]: Found device dev-mapper-usr.device. Jul 2 00:45:53.074985 systemd[1]: Mounting sysusr-usr.mount... Jul 2 00:45:53.080367 systemd[1]: Finished verity-setup.service. Jul 2 00:45:53.082000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:53.168343 kernel: EXT4-fs (dm-0): mounted filesystem without journal. Opts: norecovery. Quota mode: none. Jul 2 00:45:53.167037 systemd[1]: Mounted sysusr-usr.mount. Jul 2 00:45:53.168746 systemd[1]: afterburn-network-kargs.service was skipped because no trigger condition checks were met. Jul 2 00:45:53.175558 systemd[1]: Starting ignition-setup.service... Jul 2 00:45:53.181094 systemd[1]: Starting parse-ip-for-networkd.service... Jul 2 00:45:53.201436 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Jul 2 00:45:53.201506 kernel: BTRFS info (device nvme0n1p6): using free space tree Jul 2 00:45:53.203722 kernel: BTRFS info (device nvme0n1p6): has skinny extents Jul 2 00:45:53.213370 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Jul 2 00:45:53.230982 systemd[1]: mnt-oem.mount: Deactivated successfully. Jul 2 00:45:53.264074 systemd[1]: Finished ignition-setup.service. Jul 2 00:45:53.264000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:53.267377 systemd[1]: Starting ignition-fetch-offline.service... Jul 2 00:45:53.334946 systemd[1]: Finished parse-ip-for-networkd.service. Jul 2 00:45:53.336000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:53.337000 audit: BPF prog-id=9 op=LOAD Jul 2 00:45:53.340294 systemd[1]: Starting systemd-networkd.service... Jul 2 00:45:53.387474 systemd-networkd[1181]: lo: Link UP Jul 2 00:45:53.387498 systemd-networkd[1181]: lo: Gained carrier Jul 2 00:45:53.389323 systemd-networkd[1181]: Enumeration completed Jul 2 00:45:53.389906 systemd-networkd[1181]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Jul 2 00:45:53.390166 systemd[1]: Started systemd-networkd.service. Jul 2 00:45:53.397000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:53.399057 systemd[1]: Reached target network.target. Jul 2 00:45:53.399449 systemd-networkd[1181]: eth0: Link UP Jul 2 00:45:53.399457 systemd-networkd[1181]: eth0: Gained carrier Jul 2 00:45:53.406772 systemd[1]: Starting iscsiuio.service... Jul 2 00:45:53.420115 systemd[1]: Started iscsiuio.service. Jul 2 00:45:53.420000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:53.425895 systemd[1]: Starting iscsid.service... Jul 2 00:45:53.431548 systemd-networkd[1181]: eth0: DHCPv4 address 172.31.22.203/20, gateway 172.31.16.1 acquired from 172.31.16.1 Jul 2 00:45:53.440810 iscsid[1186]: iscsid: can't open InitiatorName configuration file /etc/iscsi/initiatorname.iscsi Jul 2 00:45:53.440810 iscsid[1186]: iscsid: Warning: InitiatorName file /etc/iscsi/initiatorname.iscsi does not exist or does not contain a properly formatted InitiatorName. If using software iscsi (iscsi_tcp or ib_iser) or partial offload (bnx2i or cxgbi iscsi), you may not be able to log into or discover targets. Please create a file /etc/iscsi/initiatorname.iscsi that contains a sting with the format: InitiatorName=iqn.yyyy-mm.[:identifier]. Jul 2 00:45:53.440810 iscsid[1186]: Example: InitiatorName=iqn.2001-04.com.redhat:fc6. Jul 2 00:45:53.440810 iscsid[1186]: If using hardware iscsi like qla4xxx this message can be ignored. Jul 2 00:45:53.440810 iscsid[1186]: iscsid: can't open InitiatorAlias configuration file /etc/iscsi/initiatorname.iscsi Jul 2 00:45:53.440810 iscsid[1186]: iscsid: can't open iscsid.safe_logout configuration file /etc/iscsi/iscsid.conf Jul 2 00:45:53.459000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:53.445164 systemd[1]: Started iscsid.service. Jul 2 00:45:53.464756 systemd[1]: Starting dracut-initqueue.service... Jul 2 00:45:53.498759 systemd[1]: Finished dracut-initqueue.service. Jul 2 00:45:53.499000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:53.500946 systemd[1]: Reached target remote-fs-pre.target. Jul 2 00:45:53.504743 systemd[1]: Reached target remote-cryptsetup.target. Jul 2 00:45:53.507927 systemd[1]: Reached target remote-fs.target. Jul 2 00:45:53.513664 systemd[1]: Starting dracut-pre-mount.service... Jul 2 00:45:53.535623 systemd[1]: Finished dracut-pre-mount.service. Jul 2 00:45:53.538000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.253938 ignition[1131]: Ignition 2.14.0 Jul 2 00:45:54.253967 ignition[1131]: Stage: fetch-offline Jul 2 00:45:54.254403 ignition[1131]: reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 00:45:54.254471 ignition[1131]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Jul 2 00:45:54.283420 ignition[1131]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Jul 2 00:45:54.285851 ignition[1131]: Ignition finished successfully Jul 2 00:45:54.288686 systemd[1]: Finished ignition-fetch-offline.service. Jul 2 00:45:54.300044 kernel: kauditd_printk_skb: 15 callbacks suppressed Jul 2 00:45:54.301316 kernel: audit: type=1130 audit(1719881154.289:26): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.289000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.293075 systemd[1]: Starting ignition-fetch.service... Jul 2 00:45:54.308489 ignition[1205]: Ignition 2.14.0 Jul 2 00:45:54.308517 ignition[1205]: Stage: fetch Jul 2 00:45:54.308811 ignition[1205]: reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 00:45:54.308868 ignition[1205]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Jul 2 00:45:54.328063 ignition[1205]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Jul 2 00:45:54.330416 ignition[1205]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Jul 2 00:45:54.347848 ignition[1205]: INFO : PUT result: OK Jul 2 00:45:54.351573 ignition[1205]: DEBUG : parsed url from cmdline: "" Jul 2 00:45:54.353199 ignition[1205]: INFO : no config URL provided Jul 2 00:45:54.354690 ignition[1205]: INFO : reading system config file "/usr/lib/ignition/user.ign" Jul 2 00:45:54.356815 ignition[1205]: INFO : no config at "/usr/lib/ignition/user.ign" Jul 2 00:45:54.358630 ignition[1205]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Jul 2 00:45:54.361511 ignition[1205]: INFO : PUT result: OK Jul 2 00:45:54.363018 ignition[1205]: INFO : GET http://169.254.169.254/2019-10-01/user-data: attempt #1 Jul 2 00:45:54.365733 ignition[1205]: INFO : GET result: OK Jul 2 00:45:54.367277 ignition[1205]: DEBUG : parsing config with SHA512: cd6573ef4110cc274f1ee013b64532395e1f56d777a2d33dc7b8dc43f19831ed68389a3e4511e3f937f326341044ea7b4bc7bde28e2faad415c07a28d34f74a8 Jul 2 00:45:54.376180 unknown[1205]: fetched base config from "system" Jul 2 00:45:54.377824 unknown[1205]: fetched base config from "system" Jul 2 00:45:54.379367 unknown[1205]: fetched user config from "aws" Jul 2 00:45:54.381661 ignition[1205]: fetch: fetch complete Jul 2 00:45:54.381689 ignition[1205]: fetch: fetch passed Jul 2 00:45:54.381781 ignition[1205]: Ignition finished successfully Jul 2 00:45:54.384782 systemd[1]: Finished ignition-fetch.service. Jul 2 00:45:54.390378 systemd[1]: Starting ignition-kargs.service... Jul 2 00:45:54.385000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.406234 kernel: audit: type=1130 audit(1719881154.385:27): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.418965 ignition[1211]: Ignition 2.14.0 Jul 2 00:45:54.419473 ignition[1211]: Stage: kargs Jul 2 00:45:54.419774 ignition[1211]: reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 00:45:54.419837 ignition[1211]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Jul 2 00:45:54.430524 systemd-networkd[1181]: eth0: Gained IPv6LL Jul 2 00:45:54.435805 ignition[1211]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Jul 2 00:45:54.437895 ignition[1211]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Jul 2 00:45:54.440846 ignition[1211]: INFO : PUT result: OK Jul 2 00:45:54.448090 ignition[1211]: kargs: kargs passed Jul 2 00:45:54.448468 ignition[1211]: Ignition finished successfully Jul 2 00:45:54.452447 systemd[1]: Finished ignition-kargs.service. Jul 2 00:45:54.462408 kernel: audit: type=1130 audit(1719881154.451:28): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.451000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.456060 systemd[1]: Starting ignition-disks.service... Jul 2 00:45:54.470881 ignition[1217]: Ignition 2.14.0 Jul 2 00:45:54.470907 ignition[1217]: Stage: disks Jul 2 00:45:54.471218 ignition[1217]: reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 00:45:54.471277 ignition[1217]: parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Jul 2 00:45:54.484823 ignition[1217]: no config dir at "/usr/lib/ignition/base.platform.d/aws" Jul 2 00:45:54.487178 ignition[1217]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Jul 2 00:45:54.490191 ignition[1217]: INFO : PUT result: OK Jul 2 00:45:54.509751 ignition[1217]: disks: disks passed Jul 2 00:45:54.510034 ignition[1217]: Ignition finished successfully Jul 2 00:45:54.514068 systemd[1]: Finished ignition-disks.service. Jul 2 00:45:54.517024 systemd[1]: Reached target initrd-root-device.target. Jul 2 00:45:54.520079 systemd[1]: Reached target local-fs-pre.target. Jul 2 00:45:54.522756 systemd[1]: Reached target local-fs.target. Jul 2 00:45:54.547732 kernel: audit: type=1130 audit(1719881154.515:29): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.515000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.524209 systemd[1]: Reached target sysinit.target. Jul 2 00:45:54.531644 systemd[1]: Reached target basic.target. Jul 2 00:45:54.547099 systemd[1]: Starting systemd-fsck-root.service... Jul 2 00:45:54.596912 systemd-fsck[1225]: ROOT: clean, 614/553520 files, 56019/553472 blocks Jul 2 00:45:54.603988 systemd[1]: Finished systemd-fsck-root.service. Jul 2 00:45:54.605000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.608202 systemd[1]: Mounting sysroot.mount... Jul 2 00:45:54.617992 kernel: audit: type=1130 audit(1719881154.605:30): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:54.634390 kernel: EXT4-fs (nvme0n1p9): mounted filesystem with ordered data mode. Opts: (null). Quota mode: none. Jul 2 00:45:54.634931 systemd[1]: Mounted sysroot.mount. Jul 2 00:45:54.637260 systemd[1]: Reached target initrd-root-fs.target. Jul 2 00:45:54.653700 systemd[1]: Mounting sysroot-usr.mount... Jul 2 00:45:54.659653 systemd[1]: flatcar-metadata-hostname.service was skipped because no trigger condition checks were met. Jul 2 00:45:54.659739 systemd[1]: ignition-remount-sysroot.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/sysroot). Jul 2 00:45:54.659796 systemd[1]: Reached target ignition-diskful.target. Jul 2 00:45:54.670811 systemd[1]: Mounted sysroot-usr.mount. Jul 2 00:45:54.698659 systemd[1]: Mounting sysroot-usr-share-oem.mount... Jul 2 00:45:54.706320 systemd[1]: Starting initrd-setup-root.service... Jul 2 00:45:54.721378 kernel: BTRFS: device label OEM devid 1 transid 14 /dev/nvme0n1p6 scanned by mount (1242) Jul 2 00:45:54.726124 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Jul 2 00:45:54.726163 kernel: BTRFS info (device nvme0n1p6): using free space tree Jul 2 00:45:54.727998 kernel: BTRFS info (device nvme0n1p6): has skinny extents Jul 2 00:45:54.728851 initrd-setup-root[1247]: cut: /sysroot/etc/passwd: No such file or directory Jul 2 00:45:54.738390 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Jul 2 00:45:54.743010 systemd[1]: Mounted sysroot-usr-share-oem.mount. Jul 2 00:45:54.748592 initrd-setup-root[1273]: cut: /sysroot/etc/group: No such file or directory Jul 2 00:45:54.757277 initrd-setup-root[1281]: cut: /sysroot/etc/shadow: No such file or directory Jul 2 00:45:54.766260 initrd-setup-root[1289]: cut: /sysroot/etc/gshadow: No such file or directory Jul 2 00:45:55.013010 systemd[1]: Finished initrd-setup-root.service. Jul 2 00:45:55.014000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:55.017124 systemd[1]: Starting ignition-mount.service... Jul 2 00:45:55.025162 kernel: audit: type=1130 audit(1719881155.014:31): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:55.026378 systemd[1]: Starting sysroot-boot.service... Jul 2 00:45:55.038947 systemd[1]: sysusr-usr-share-oem.mount: Deactivated successfully. Jul 2 00:45:55.039145 systemd[1]: sysroot-usr-share-oem.mount: Deactivated successfully. Jul 2 00:45:55.068884 systemd[1]: Finished sysroot-boot.service. Jul 2 00:45:55.070000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:55.078383 kernel: audit: type=1130 audit(1719881155.070:32): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:55.081708 ignition[1310]: INFO : Ignition 2.14.0 Jul 2 00:45:55.081708 ignition[1310]: INFO : Stage: mount Jul 2 00:45:55.084783 ignition[1310]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 00:45:55.084783 ignition[1310]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Jul 2 00:45:55.099649 ignition[1310]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Jul 2 00:45:55.102167 ignition[1310]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Jul 2 00:45:55.105113 ignition[1310]: INFO : PUT result: OK Jul 2 00:45:55.109359 ignition[1310]: INFO : mount: mount passed Jul 2 00:45:55.110833 ignition[1310]: INFO : Ignition finished successfully Jul 2 00:45:55.113434 systemd[1]: Finished ignition-mount.service. Jul 2 00:45:55.115000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:55.117543 systemd[1]: Starting ignition-files.service... Jul 2 00:45:55.125130 kernel: audit: type=1130 audit(1719881155.115:33): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:55.133659 systemd[1]: Mounting sysroot-usr-share-oem.mount... Jul 2 00:45:55.149386 kernel: BTRFS: device label OEM devid 1 transid 15 /dev/nvme0n1p6 scanned by mount (1317) Jul 2 00:45:55.154143 kernel: BTRFS info (device nvme0n1p6): using crc32c (crc32c-generic) checksum algorithm Jul 2 00:45:55.154190 kernel: BTRFS info (device nvme0n1p6): using free space tree Jul 2 00:45:55.154214 kernel: BTRFS info (device nvme0n1p6): has skinny extents Jul 2 00:45:55.162375 kernel: BTRFS info (device nvme0n1p6): enabling ssd optimizations Jul 2 00:45:55.166715 systemd[1]: Mounted sysroot-usr-share-oem.mount. Jul 2 00:45:55.184957 ignition[1336]: INFO : Ignition 2.14.0 Jul 2 00:45:55.188257 ignition[1336]: INFO : Stage: files Jul 2 00:45:55.188257 ignition[1336]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 00:45:55.188257 ignition[1336]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Jul 2 00:45:55.204560 ignition[1336]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Jul 2 00:45:55.206875 ignition[1336]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Jul 2 00:45:55.209907 ignition[1336]: INFO : PUT result: OK Jul 2 00:45:55.214805 ignition[1336]: DEBUG : files: compiled without relabeling support, skipping Jul 2 00:45:55.218617 ignition[1336]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Jul 2 00:45:55.218617 ignition[1336]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Jul 2 00:45:55.260690 ignition[1336]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Jul 2 00:45:55.263267 ignition[1336]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Jul 2 00:45:55.266780 unknown[1336]: wrote ssh authorized keys file for user: core Jul 2 00:45:55.268790 ignition[1336]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Jul 2 00:45:55.272148 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/etc/eks/bootstrap.sh" Jul 2 00:45:55.277436 ignition[1336]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Jul 2 00:45:55.287015 ignition[1336]: INFO : op(1): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem500072169" Jul 2 00:45:55.289660 ignition[1336]: CRITICAL : op(1): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem500072169": device or resource busy Jul 2 00:45:55.296014 kernel: BTRFS info: devid 1 device path /dev/nvme0n1p6 changed to /dev/disk/by-label/OEM scanned by ignition (1339) Jul 2 00:45:55.296053 ignition[1336]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem500072169", trying btrfs: device or resource busy Jul 2 00:45:55.296053 ignition[1336]: INFO : op(2): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem500072169" Jul 2 00:45:55.301865 ignition[1336]: INFO : op(2): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem500072169" Jul 2 00:45:55.315448 ignition[1336]: INFO : op(3): [started] unmounting "/mnt/oem500072169" Jul 2 00:45:55.317475 ignition[1336]: INFO : op(3): [finished] unmounting "/mnt/oem500072169" Jul 2 00:45:55.319419 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/etc/eks/bootstrap.sh" Jul 2 00:45:55.319419 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing file "/sysroot/home/core/install.sh" Jul 2 00:45:55.325425 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing file "/sysroot/home/core/install.sh" Jul 2 00:45:55.328485 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing file "/sysroot/etc/flatcar/update.conf" Jul 2 00:45:55.331799 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing file "/sysroot/etc/flatcar/update.conf" Jul 2 00:45:55.334845 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(6): [started] writing link "/sysroot/etc/extensions/kubernetes.raw" -> "/opt/extensions/kubernetes/kubernetes-v1.29.2-arm64.raw" Jul 2 00:45:55.339257 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(6): [finished] writing link "/sysroot/etc/extensions/kubernetes.raw" -> "/opt/extensions/kubernetes/kubernetes-v1.29.2-arm64.raw" Jul 2 00:45:55.343495 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(7): [started] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Jul 2 00:45:55.346999 ignition[1336]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Jul 2 00:45:55.357577 ignition[1336]: INFO : op(4): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3771170849" Jul 2 00:45:55.360200 ignition[1336]: CRITICAL : op(4): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3771170849": device or resource busy Jul 2 00:45:55.363069 ignition[1336]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3771170849", trying btrfs: device or resource busy Jul 2 00:45:55.366196 ignition[1336]: INFO : op(5): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3771170849" Jul 2 00:45:55.368721 ignition[1336]: INFO : op(5): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3771170849" Jul 2 00:45:55.371396 ignition[1336]: INFO : op(6): [started] unmounting "/mnt/oem3771170849" Jul 2 00:45:55.373400 ignition[1336]: INFO : op(6): [finished] unmounting "/mnt/oem3771170849" Jul 2 00:45:55.375456 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(7): [finished] writing file "/sysroot/etc/amazon/ssm/amazon-ssm-agent.json" Jul 2 00:45:55.378795 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(8): [started] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Jul 2 00:45:55.381950 ignition[1336]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Jul 2 00:45:55.394380 ignition[1336]: INFO : op(7): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3146309777" Jul 2 00:45:55.396932 ignition[1336]: CRITICAL : op(7): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3146309777": device or resource busy Jul 2 00:45:55.396932 ignition[1336]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem3146309777", trying btrfs: device or resource busy Jul 2 00:45:55.396932 ignition[1336]: INFO : op(8): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3146309777" Jul 2 00:45:55.396932 ignition[1336]: INFO : op(8): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem3146309777" Jul 2 00:45:55.396932 ignition[1336]: INFO : op(9): [started] unmounting "/mnt/oem3146309777" Jul 2 00:45:55.409725 ignition[1336]: INFO : op(9): [finished] unmounting "/mnt/oem3146309777" Jul 2 00:45:55.409725 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(8): [finished] writing file "/sysroot/etc/amazon/ssm/seelog.xml" Jul 2 00:45:55.409725 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(9): [started] writing file "/sysroot/etc/systemd/system/nvidia.service" Jul 2 00:45:55.409725 ignition[1336]: INFO : oem config not found in "/usr/share/oem", looking on oem partition Jul 2 00:45:55.428126 ignition[1336]: INFO : op(a): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem867272648" Jul 2 00:45:55.428126 ignition[1336]: CRITICAL : op(a): [failed] mounting "/dev/disk/by-label/OEM" at "/mnt/oem867272648": device or resource busy Jul 2 00:45:55.428126 ignition[1336]: ERROR : failed to mount ext4 device "/dev/disk/by-label/OEM" at "/mnt/oem867272648", trying btrfs: device or resource busy Jul 2 00:45:55.428126 ignition[1336]: INFO : op(b): [started] mounting "/dev/disk/by-label/OEM" at "/mnt/oem867272648" Jul 2 00:45:55.439057 ignition[1336]: INFO : op(b): [finished] mounting "/dev/disk/by-label/OEM" at "/mnt/oem867272648" Jul 2 00:45:55.439057 ignition[1336]: INFO : op(c): [started] unmounting "/mnt/oem867272648" Jul 2 00:45:55.439057 ignition[1336]: INFO : op(c): [finished] unmounting "/mnt/oem867272648" Jul 2 00:45:55.439057 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(9): [finished] writing file "/sysroot/etc/systemd/system/nvidia.service" Jul 2 00:45:55.439057 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(a): [started] writing file "/sysroot/opt/extensions/kubernetes/kubernetes-v1.29.2-arm64.raw" Jul 2 00:45:55.451967 ignition[1336]: INFO : GET https://github.com/flatcar/sysext-bakery/releases/download/latest/kubernetes-v1.29.2-arm64.raw: attempt #1 Jul 2 00:45:55.909752 ignition[1336]: INFO : GET result: OK Jul 2 00:45:56.398480 ignition[1336]: INFO : files: createFilesystemsFiles: createFiles: op(a): [finished] writing file "/sysroot/opt/extensions/kubernetes/kubernetes-v1.29.2-arm64.raw" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(b): [started] processing unit "coreos-metadata-sshkeys@.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(b): [finished] processing unit "coreos-metadata-sshkeys@.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(c): [started] processing unit "amazon-ssm-agent.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(c): op(d): [started] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(c): op(d): [finished] writing unit "amazon-ssm-agent.service" at "/sysroot/etc/systemd/system/amazon-ssm-agent.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(c): [finished] processing unit "amazon-ssm-agent.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(e): [started] processing unit "nvidia.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(e): [finished] processing unit "nvidia.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(f): [started] setting preset to enabled for "amazon-ssm-agent.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(f): [finished] setting preset to enabled for "amazon-ssm-agent.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(10): [started] setting preset to enabled for "nvidia.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(10): [finished] setting preset to enabled for "nvidia.service" Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(11): [started] setting preset to enabled for "coreos-metadata-sshkeys@.service " Jul 2 00:45:56.407382 ignition[1336]: INFO : files: op(11): [finished] setting preset to enabled for "coreos-metadata-sshkeys@.service " Jul 2 00:45:56.447449 ignition[1336]: INFO : files: createResultFile: createFiles: op(12): [started] writing file "/sysroot/etc/.ignition-result.json" Jul 2 00:45:56.447449 ignition[1336]: INFO : files: createResultFile: createFiles: op(12): [finished] writing file "/sysroot/etc/.ignition-result.json" Jul 2 00:45:56.447449 ignition[1336]: INFO : files: files passed Jul 2 00:45:56.447449 ignition[1336]: INFO : Ignition finished successfully Jul 2 00:45:56.436822 systemd[1]: Finished ignition-files.service. Jul 2 00:45:56.458000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.467389 kernel: audit: type=1130 audit(1719881156.458:34): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.471109 systemd[1]: Starting initrd-setup-root-after-ignition.service... Jul 2 00:45:56.472885 systemd[1]: torcx-profile-populate.service was skipped because of an unmet condition check (ConditionPathExists=/sysroot/etc/torcx/next-profile). Jul 2 00:45:56.474430 systemd[1]: Starting ignition-quench.service... Jul 2 00:45:56.487086 systemd[1]: ignition-quench.service: Deactivated successfully. Jul 2 00:45:56.487000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.487000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.487299 systemd[1]: Finished ignition-quench.service. Jul 2 00:45:56.498776 kernel: audit: type=1130 audit(1719881156.487:35): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.500771 initrd-setup-root-after-ignition[1361]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Jul 2 00:45:56.504945 systemd[1]: Finished initrd-setup-root-after-ignition.service. Jul 2 00:45:56.507000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.508546 systemd[1]: Reached target ignition-complete.target. Jul 2 00:45:56.512871 systemd[1]: Starting initrd-parse-etc.service... Jul 2 00:45:56.540793 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Jul 2 00:45:56.542664 systemd[1]: Finished initrd-parse-etc.service. Jul 2 00:45:56.545859 systemd[1]: Reached target initrd-fs.target. Jul 2 00:45:56.544000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.544000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.548691 systemd[1]: Reached target initrd.target. Jul 2 00:45:56.551422 systemd[1]: dracut-mount.service was skipped because no trigger condition checks were met. Jul 2 00:45:56.555163 systemd[1]: Starting dracut-pre-pivot.service... Jul 2 00:45:56.577415 systemd[1]: Finished dracut-pre-pivot.service. Jul 2 00:45:56.577000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.580825 systemd[1]: Starting initrd-cleanup.service... Jul 2 00:45:56.608831 systemd[1]: initrd-cleanup.service: Deactivated successfully. Jul 2 00:45:56.609389 systemd[1]: Finished initrd-cleanup.service. Jul 2 00:45:56.611000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.611000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.613056 systemd[1]: Stopped target nss-lookup.target. Jul 2 00:45:56.616861 systemd[1]: Stopped target remote-cryptsetup.target. Jul 2 00:45:56.620681 systemd[1]: Stopped target timers.target. Jul 2 00:45:56.623501 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Jul 2 00:45:56.623977 systemd[1]: Stopped dracut-pre-pivot.service. Jul 2 00:45:56.626000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.628182 systemd[1]: Stopped target initrd.target. Jul 2 00:45:56.630778 systemd[1]: Stopped target basic.target. Jul 2 00:45:56.633371 systemd[1]: Stopped target ignition-complete.target. Jul 2 00:45:56.636439 systemd[1]: Stopped target ignition-diskful.target. Jul 2 00:45:56.639452 systemd[1]: Stopped target initrd-root-device.target. Jul 2 00:45:56.642602 systemd[1]: Stopped target remote-fs.target. Jul 2 00:45:56.645412 systemd[1]: Stopped target remote-fs-pre.target. Jul 2 00:45:56.648291 systemd[1]: Stopped target sysinit.target. Jul 2 00:45:56.651052 systemd[1]: Stopped target local-fs.target. Jul 2 00:45:56.653793 systemd[1]: Stopped target local-fs-pre.target. Jul 2 00:45:56.656631 systemd[1]: Stopped target swap.target. Jul 2 00:45:56.659169 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Jul 2 00:45:56.659381 systemd[1]: Stopped dracut-pre-mount.service. Jul 2 00:45:56.662000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.663834 systemd[1]: Stopped target cryptsetup.target. Jul 2 00:45:56.666691 systemd[1]: dracut-initqueue.service: Deactivated successfully. Jul 2 00:45:56.667063 systemd[1]: Stopped dracut-initqueue.service. Jul 2 00:45:56.668000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.671320 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Jul 2 00:45:56.671438 systemd[1]: Stopped initrd-setup-root-after-ignition.service. Jul 2 00:45:56.682000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.685701 systemd[1]: ignition-files.service: Deactivated successfully. Jul 2 00:45:56.687000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.685790 systemd[1]: Stopped ignition-files.service. Jul 2 00:45:56.691278 systemd[1]: Stopping ignition-mount.service... Jul 2 00:45:56.702142 systemd[1]: Stopping sysroot-boot.service... Jul 2 00:45:56.705533 ignition[1374]: INFO : Ignition 2.14.0 Jul 2 00:45:56.705533 ignition[1374]: INFO : Stage: umount Jul 2 00:45:56.712710 ignition[1374]: INFO : reading system config file "/usr/lib/ignition/base.d/base.ign" Jul 2 00:45:56.712710 ignition[1374]: DEBUG : parsing config with SHA512: 6629d8e825d60c9c9d4629d8547ef9a0b839d6b01b7f61a481a1f23308c924b8b0bbf10cae7f7fe3bcaf88b23d1a81baa7771c3670728d4d2a1e665216a1de7b Jul 2 00:45:56.719685 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Jul 2 00:45:56.721803 systemd[1]: Stopped systemd-udev-trigger.service. Jul 2 00:45:56.724000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.725802 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Jul 2 00:45:56.727790 systemd[1]: Stopped dracut-pre-trigger.service. Jul 2 00:45:56.729000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.731504 ignition[1374]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/aws" Jul 2 00:45:56.733695 ignition[1374]: INFO : PUT http://169.254.169.254/latest/api/token: attempt #1 Jul 2 00:45:56.737756 ignition[1374]: INFO : PUT result: OK Jul 2 00:45:56.742529 ignition[1374]: INFO : umount: umount passed Jul 2 00:45:56.744701 ignition[1374]: INFO : Ignition finished successfully Jul 2 00:45:56.748456 systemd[1]: ignition-mount.service: Deactivated successfully. Jul 2 00:45:56.750543 systemd[1]: Stopped ignition-mount.service. Jul 2 00:45:56.752000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.753794 systemd[1]: ignition-disks.service: Deactivated successfully. Jul 2 00:45:56.754028 systemd[1]: Stopped ignition-disks.service. Jul 2 00:45:56.765000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.766706 systemd[1]: ignition-kargs.service: Deactivated successfully. Jul 2 00:45:56.768531 systemd[1]: Stopped ignition-kargs.service. Jul 2 00:45:56.770000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.771540 systemd[1]: ignition-fetch.service: Deactivated successfully. Jul 2 00:45:56.773318 systemd[1]: Stopped ignition-fetch.service. Jul 2 00:45:56.775000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.776285 systemd[1]: Stopped target network.target. Jul 2 00:45:56.777000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.779292 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Jul 2 00:45:56.779430 systemd[1]: Stopped ignition-fetch-offline.service. Jul 2 00:45:56.792000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.781050 systemd[1]: Stopped target paths.target. Jul 2 00:45:56.782390 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Jul 2 00:45:56.784435 systemd[1]: Stopped systemd-ask-password-console.path. Jul 2 00:45:56.786046 systemd[1]: Stopped target slices.target. Jul 2 00:45:56.787375 systemd[1]: Stopped target sockets.target. Jul 2 00:45:56.788837 systemd[1]: iscsid.socket: Deactivated successfully. Jul 2 00:45:56.788897 systemd[1]: Closed iscsid.socket. Jul 2 00:45:56.810000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.814000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.790169 systemd[1]: iscsiuio.socket: Deactivated successfully. Jul 2 00:45:56.819000 audit: BPF prog-id=6 op=UNLOAD Jul 2 00:45:56.790223 systemd[1]: Closed iscsiuio.socket. Jul 2 00:45:56.791556 systemd[1]: ignition-setup.service: Deactivated successfully. Jul 2 00:45:56.791651 systemd[1]: Stopped ignition-setup.service. Jul 2 00:45:56.793856 systemd[1]: Stopping systemd-networkd.service... Jul 2 00:45:56.837000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.837000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.797072 systemd[1]: Stopping systemd-resolved.service... Jul 2 00:45:56.797406 systemd-networkd[1181]: eth0: DHCPv6 lease lost Jul 2 00:45:56.807304 systemd[1]: sysroot-boot.mount: Deactivated successfully. Jul 2 00:45:56.809224 systemd[1]: systemd-networkd.service: Deactivated successfully. Jul 2 00:45:56.809447 systemd[1]: Stopped systemd-networkd.service. Jul 2 00:45:56.814198 systemd[1]: systemd-resolved.service: Deactivated successfully. Jul 2 00:45:56.843000 audit: BPF prog-id=9 op=UNLOAD Jul 2 00:45:56.814415 systemd[1]: Stopped systemd-resolved.service. Jul 2 00:45:56.817046 systemd[1]: systemd-networkd.socket: Deactivated successfully. Jul 2 00:45:56.817117 systemd[1]: Closed systemd-networkd.socket. Jul 2 00:45:56.834586 systemd[1]: Stopping network-cleanup.service... Jul 2 00:45:56.837444 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Jul 2 00:45:56.838484 systemd[1]: Stopped parse-ip-for-networkd.service. Jul 2 00:45:56.840736 systemd[1]: systemd-sysctl.service: Deactivated successfully. Jul 2 00:45:56.840848 systemd[1]: Stopped systemd-sysctl.service. Jul 2 00:45:56.847517 systemd[1]: systemd-modules-load.service: Deactivated successfully. Jul 2 00:45:56.848219 systemd[1]: Stopped systemd-modules-load.service. Jul 2 00:45:56.866000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.874050 systemd[1]: Stopping systemd-udevd.service... Jul 2 00:45:56.882175 systemd[1]: run-credentials-systemd\x2dsysctl.service.mount: Deactivated successfully. Jul 2 00:45:56.885606 systemd[1]: systemd-udevd.service: Deactivated successfully. Jul 2 00:45:56.889425 systemd[1]: Stopped systemd-udevd.service. Jul 2 00:45:56.889000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.893014 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Jul 2 00:45:56.893123 systemd[1]: Closed systemd-udevd-control.socket. Jul 2 00:45:56.901226 systemd[1]: systemd-udevd-kernel.socket: Deactivated successfully. Jul 2 00:45:56.903180 systemd[1]: Closed systemd-udevd-kernel.socket. Jul 2 00:45:56.906085 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Jul 2 00:45:56.906203 systemd[1]: Stopped dracut-pre-udev.service. Jul 2 00:45:56.909000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.911770 systemd[1]: dracut-cmdline.service: Deactivated successfully. Jul 2 00:45:56.911866 systemd[1]: Stopped dracut-cmdline.service. Jul 2 00:45:56.914000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.916065 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Jul 2 00:45:56.916151 systemd[1]: Stopped dracut-cmdline-ask.service. Jul 2 00:45:56.918000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.922282 systemd[1]: Starting initrd-udevadm-cleanup-db.service... Jul 2 00:45:56.931244 systemd[1]: systemd-tmpfiles-setup-dev.service: Deactivated successfully. Jul 2 00:45:56.931395 systemd[1]: Stopped systemd-tmpfiles-setup-dev.service. Jul 2 00:45:56.936000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.937683 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Jul 2 00:45:56.938000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.940000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.937783 systemd[1]: Stopped kmod-static-nodes.service. Jul 2 00:45:56.939625 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Jul 2 00:45:56.939743 systemd[1]: Stopped systemd-vconsole-setup.service. Jul 2 00:45:56.949423 systemd[1]: run-credentials-systemd\x2dtmpfiles\x2dsetup\x2ddev.service.mount: Deactivated successfully. Jul 2 00:45:56.953007 systemd[1]: network-cleanup.service: Deactivated successfully. Jul 2 00:45:56.954794 systemd[1]: Stopped network-cleanup.service. Jul 2 00:45:56.956000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.958462 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Jul 2 00:45:56.960533 systemd[1]: Finished initrd-udevadm-cleanup-db.service. Jul 2 00:45:56.963000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:56.963000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:57.142621 systemd[1]: sysroot-boot.service: Deactivated successfully. Jul 2 00:45:57.144408 systemd[1]: Stopped sysroot-boot.service. Jul 2 00:45:57.145000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:57.147435 systemd[1]: Reached target initrd-switch-root.target. Jul 2 00:45:57.150477 systemd[1]: initrd-setup-root.service: Deactivated successfully. Jul 2 00:45:57.150000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:57.150588 systemd[1]: Stopped initrd-setup-root.service. Jul 2 00:45:57.156614 systemd[1]: Starting initrd-switch-root.service... Jul 2 00:45:57.172576 systemd[1]: Switching root. Jul 2 00:45:57.205306 iscsid[1186]: iscsid shutting down. Jul 2 00:45:57.206787 systemd-journald[309]: Received SIGTERM from PID 1 (n/a). Jul 2 00:45:57.206883 systemd-journald[309]: Journal stopped Jul 2 00:46:03.342931 kernel: SELinux: Class mctp_socket not defined in policy. Jul 2 00:46:03.343070 kernel: SELinux: Class anon_inode not defined in policy. Jul 2 00:46:03.343106 kernel: SELinux: the above unknown classes and permissions will be allowed Jul 2 00:46:03.343139 kernel: SELinux: policy capability network_peer_controls=1 Jul 2 00:46:03.343177 kernel: SELinux: policy capability open_perms=1 Jul 2 00:46:03.343209 kernel: SELinux: policy capability extended_socket_class=1 Jul 2 00:46:03.343240 kernel: SELinux: policy capability always_check_network=0 Jul 2 00:46:03.343273 kernel: SELinux: policy capability cgroup_seclabel=1 Jul 2 00:46:03.343302 kernel: SELinux: policy capability nnp_nosuid_transition=1 Jul 2 00:46:03.343365 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Jul 2 00:46:03.343416 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Jul 2 00:46:03.343453 systemd[1]: Successfully loaded SELinux policy in 123.169ms. Jul 2 00:46:03.343515 systemd[1]: Relabelled /dev, /dev/shm, /run, /sys/fs/cgroup in 20.458ms. Jul 2 00:46:03.343557 systemd[1]: systemd 252 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL -ELFUTILS -FIDO2 +IDN2 -IDN +IPTC +KMOD +LIBCRYPTSETUP +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE -TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -XKBCOMMON +UTMP +SYSVINIT default-hierarchy=unified) Jul 2 00:46:03.343591 systemd[1]: Detected virtualization amazon. Jul 2 00:46:03.343622 systemd[1]: Detected architecture arm64. Jul 2 00:46:03.343657 systemd[1]: Detected first boot. Jul 2 00:46:03.343693 systemd[1]: Initializing machine ID from VM UUID. Jul 2 00:46:03.343735 kernel: SELinux: Context system_u:object_r:container_file_t:s0:c1022,c1023 is not valid (left unmapped). Jul 2 00:46:03.343773 systemd[1]: Populated /etc with preset unit settings. Jul 2 00:46:03.343806 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Jul 2 00:46:03.343845 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Jul 2 00:46:03.343878 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 2 00:46:03.343911 kernel: kauditd_printk_skb: 55 callbacks suppressed Jul 2 00:46:03.343939 kernel: audit: type=1334 audit(1719881162.989:84): prog-id=12 op=LOAD Jul 2 00:46:03.343970 kernel: audit: type=1334 audit(1719881162.989:85): prog-id=3 op=UNLOAD Jul 2 00:46:03.343998 kernel: audit: type=1334 audit(1719881162.991:86): prog-id=13 op=LOAD Jul 2 00:46:03.344030 kernel: audit: type=1334 audit(1719881162.993:87): prog-id=14 op=LOAD Jul 2 00:46:03.344060 kernel: audit: type=1334 audit(1719881162.993:88): prog-id=4 op=UNLOAD Jul 2 00:46:03.344088 kernel: audit: type=1334 audit(1719881162.993:89): prog-id=5 op=UNLOAD Jul 2 00:46:03.344117 kernel: audit: type=1334 audit(1719881162.997:90): prog-id=15 op=LOAD Jul 2 00:46:03.344148 kernel: audit: type=1334 audit(1719881162.998:91): prog-id=12 op=UNLOAD Jul 2 00:46:03.344175 kernel: audit: type=1334 audit(1719881163.000:92): prog-id=16 op=LOAD Jul 2 00:46:03.344205 kernel: audit: type=1334 audit(1719881163.002:93): prog-id=17 op=LOAD Jul 2 00:46:03.344239 systemd[1]: iscsiuio.service: Deactivated successfully. Jul 2 00:46:03.344270 systemd[1]: Stopped iscsiuio.service. Jul 2 00:46:03.344304 systemd[1]: iscsid.service: Deactivated successfully. Jul 2 00:46:03.348516 systemd[1]: Stopped iscsid.service. Jul 2 00:46:03.348583 systemd[1]: initrd-switch-root.service: Deactivated successfully. Jul 2 00:46:03.348618 systemd[1]: Stopped initrd-switch-root.service. Jul 2 00:46:03.348650 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Jul 2 00:46:03.348681 systemd[1]: Created slice system-addon\x2dconfig.slice. Jul 2 00:46:03.348715 systemd[1]: Created slice system-addon\x2drun.slice. Jul 2 00:46:03.348746 systemd[1]: Created slice system-coreos\x2dmetadata\x2dsshkeys.slice. Jul 2 00:46:03.348783 systemd[1]: Created slice system-getty.slice. Jul 2 00:46:03.348814 systemd[1]: Created slice system-modprobe.slice. Jul 2 00:46:03.348847 systemd[1]: Created slice system-serial\x2dgetty.slice. Jul 2 00:46:03.348877 systemd[1]: Created slice system-system\x2dcloudinit.slice. Jul 2 00:46:03.348908 systemd[1]: Created slice system-systemd\x2dfsck.slice. Jul 2 00:46:03.348938 systemd[1]: Created slice user.slice. Jul 2 00:46:03.348971 systemd[1]: Started systemd-ask-password-console.path. Jul 2 00:46:03.349004 systemd[1]: Started systemd-ask-password-wall.path. Jul 2 00:46:03.349033 systemd[1]: Set up automount boot.automount. Jul 2 00:46:03.349067 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount. Jul 2 00:46:03.349102 systemd[1]: Stopped target initrd-switch-root.target. Jul 2 00:46:03.349136 systemd[1]: Stopped target initrd-fs.target. Jul 2 00:46:03.349168 systemd[1]: Stopped target initrd-root-fs.target. Jul 2 00:46:03.349200 systemd[1]: Reached target integritysetup.target. Jul 2 00:46:03.349230 systemd[1]: Reached target remote-cryptsetup.target. Jul 2 00:46:03.349262 systemd[1]: Reached target remote-fs.target. Jul 2 00:46:03.349291 systemd[1]: Reached target slices.target. Jul 2 00:46:03.349321 systemd[1]: Reached target swap.target. Jul 2 00:46:03.349387 systemd[1]: Reached target torcx.target. Jul 2 00:46:03.349420 systemd[1]: Reached target veritysetup.target. Jul 2 00:46:03.349449 systemd[1]: Listening on systemd-coredump.socket. Jul 2 00:46:03.349483 systemd[1]: Listening on systemd-initctl.socket. Jul 2 00:46:03.349512 systemd[1]: Listening on systemd-networkd.socket. Jul 2 00:46:03.349542 systemd[1]: Listening on systemd-udevd-control.socket. Jul 2 00:46:03.349571 systemd[1]: Listening on systemd-udevd-kernel.socket. Jul 2 00:46:03.349600 systemd[1]: Listening on systemd-userdbd.socket. Jul 2 00:46:03.349632 systemd[1]: Mounting dev-hugepages.mount... Jul 2 00:46:03.349663 systemd[1]: Mounting dev-mqueue.mount... Jul 2 00:46:03.349696 systemd[1]: Mounting media.mount... Jul 2 00:46:03.349725 systemd[1]: Mounting sys-kernel-debug.mount... Jul 2 00:46:03.349754 systemd[1]: Mounting sys-kernel-tracing.mount... Jul 2 00:46:03.349786 systemd[1]: Mounting tmp.mount... Jul 2 00:46:03.349816 systemd[1]: Starting flatcar-tmpfiles.service... Jul 2 00:46:03.349847 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 00:46:03.349877 systemd[1]: Starting kmod-static-nodes.service... Jul 2 00:46:03.349910 systemd[1]: Starting modprobe@configfs.service... Jul 2 00:46:03.349939 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 00:46:03.349973 systemd[1]: Starting modprobe@drm.service... Jul 2 00:46:03.350006 systemd[1]: Starting modprobe@efi_pstore.service... Jul 2 00:46:03.350040 systemd[1]: Starting modprobe@fuse.service... Jul 2 00:46:03.350142 systemd[1]: Starting modprobe@loop.service... Jul 2 00:46:03.351033 systemd[1]: setup-nsswitch.service was skipped because of an unmet condition check (ConditionPathExists=!/etc/nsswitch.conf). Jul 2 00:46:03.351181 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Jul 2 00:46:03.351222 systemd[1]: Stopped systemd-fsck-root.service. Jul 2 00:46:03.351257 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Jul 2 00:46:03.351296 systemd[1]: Stopped systemd-fsck-usr.service. Jul 2 00:46:03.351327 systemd[1]: Stopped systemd-journald.service. Jul 2 00:46:03.351387 systemd[1]: Starting systemd-journald.service... Jul 2 00:46:03.351418 kernel: loop: module loaded Jul 2 00:46:03.351459 kernel: fuse: init (API version 7.34) Jul 2 00:46:03.351489 systemd[1]: Starting systemd-modules-load.service... Jul 2 00:46:03.351520 systemd[1]: Starting systemd-network-generator.service... Jul 2 00:46:03.351551 systemd[1]: Starting systemd-remount-fs.service... Jul 2 00:46:03.351584 systemd[1]: Starting systemd-udev-trigger.service... Jul 2 00:46:03.351618 systemd[1]: verity-setup.service: Deactivated successfully. Jul 2 00:46:03.351657 systemd[1]: Stopped verity-setup.service. Jul 2 00:46:03.351688 systemd[1]: Mounted dev-hugepages.mount. Jul 2 00:46:03.351717 systemd[1]: Mounted dev-mqueue.mount. Jul 2 00:46:03.351749 systemd[1]: Mounted media.mount. Jul 2 00:46:03.351781 systemd[1]: Mounted sys-kernel-debug.mount. Jul 2 00:46:03.351854 systemd[1]: Mounted sys-kernel-tracing.mount. Jul 2 00:46:03.351896 systemd[1]: Mounted tmp.mount. Jul 2 00:46:03.351927 systemd[1]: Finished kmod-static-nodes.service. Jul 2 00:46:03.351962 systemd-journald[1486]: Journal started Jul 2 00:46:03.352088 systemd-journald[1486]: Runtime Journal (/run/log/journal/ec2359eb167802d1ba5cecb189c956c3) is 8.0M, max 75.4M, 67.4M free. Jul 2 00:45:58.208000 audit: MAC_POLICY_LOAD auid=4294967295 ses=4294967295 lsm=selinux res=1 Jul 2 00:45:58.434000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Jul 2 00:45:58.434000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=1 Jul 2 00:45:58.434000 audit: BPF prog-id=10 op=LOAD Jul 2 00:45:58.434000 audit: BPF prog-id=10 op=UNLOAD Jul 2 00:45:58.435000 audit: BPF prog-id=11 op=LOAD Jul 2 00:45:58.435000 audit: BPF prog-id=11 op=UNLOAD Jul 2 00:45:58.705000 audit[1408]: AVC avc: denied { associate } for pid=1408 comm="torcx-generator" name="docker" dev="tmpfs" ino=2 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 srawcon="system_u:object_r:container_file_t:s0:c1022,c1023" Jul 2 00:45:58.705000 audit[1408]: SYSCALL arch=c00000b7 syscall=5 success=yes exit=0 a0=40001458c4 a1=40000c6de0 a2=40000cd0c0 a3=32 items=0 ppid=1391 pid=1408 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:45:58.705000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Jul 2 00:45:58.708000 audit[1408]: AVC avc: denied { associate } for pid=1408 comm="torcx-generator" name="lib" scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:tmpfs_t:s0 tclass=filesystem permissive=1 Jul 2 00:45:58.708000 audit[1408]: SYSCALL arch=c00000b7 syscall=34 success=yes exit=0 a0=ffffffffffffff9c a1=40001459a9 a2=1ed a3=0 items=2 ppid=1391 pid=1408 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="torcx-generator" exe="/usr/lib/systemd/system-generators/torcx-generator" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:45:58.708000 audit: CWD cwd="/" Jul 2 00:45:58.708000 audit: PATH item=0 name=(null) inode=2 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:45:58.708000 audit: PATH item=1 name=(null) inode=3 dev=00:1c mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:unlabeled_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:45:58.708000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D2D67656E657261746F72732F746F7263782D67656E657261746F72002F72756E2F73797374656D642F67656E657261746F72002F72756E2F73797374656D642F67656E657261746F722E6561726C79002F72756E2F73797374656D642F67656E657261746F722E6C61 Jul 2 00:46:02.989000 audit: BPF prog-id=12 op=LOAD Jul 2 00:46:02.989000 audit: BPF prog-id=3 op=UNLOAD Jul 2 00:46:02.991000 audit: BPF prog-id=13 op=LOAD Jul 2 00:46:02.993000 audit: BPF prog-id=14 op=LOAD Jul 2 00:46:02.993000 audit: BPF prog-id=4 op=UNLOAD Jul 2 00:46:02.993000 audit: BPF prog-id=5 op=UNLOAD Jul 2 00:46:02.997000 audit: BPF prog-id=15 op=LOAD Jul 2 00:46:02.998000 audit: BPF prog-id=12 op=UNLOAD Jul 2 00:46:03.000000 audit: BPF prog-id=16 op=LOAD Jul 2 00:46:03.002000 audit: BPF prog-id=17 op=LOAD Jul 2 00:46:03.002000 audit: BPF prog-id=13 op=UNLOAD Jul 2 00:46:03.002000 audit: BPF prog-id=14 op=UNLOAD Jul 2 00:46:03.004000 audit: BPF prog-id=18 op=LOAD Jul 2 00:46:03.004000 audit: BPF prog-id=15 op=UNLOAD Jul 2 00:46:03.006000 audit: BPF prog-id=19 op=LOAD Jul 2 00:46:03.008000 audit: BPF prog-id=20 op=LOAD Jul 2 00:46:03.008000 audit: BPF prog-id=16 op=UNLOAD Jul 2 00:46:03.008000 audit: BPF prog-id=17 op=UNLOAD Jul 2 00:46:03.010000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.016000 audit: BPF prog-id=18 op=UNLOAD Jul 2 00:46:03.018000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsiuio comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.023000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=iscsid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.030000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.030000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=initrd-switch-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.243000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.249000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.253000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.253000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.256000 audit: BPF prog-id=21 op=LOAD Jul 2 00:46:03.256000 audit: BPF prog-id=22 op=LOAD Jul 2 00:46:03.256000 audit: BPF prog-id=23 op=LOAD Jul 2 00:46:03.256000 audit: BPF prog-id=19 op=UNLOAD Jul 2 00:46:03.256000 audit: BPF prog-id=20 op=UNLOAD Jul 2 00:46:03.321000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=verity-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.334000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Jul 2 00:46:03.334000 audit[1486]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=3 a1=ffffdaa05100 a2=4000 a3=1 items=0 ppid=1 pid=1486 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:03.334000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Jul 2 00:46:03.354000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.372645 systemd[1]: Started systemd-journald.service. Jul 2 00:46:03.360000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.363000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.363000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.366000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.366000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.368000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.368000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.371000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.371000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.374000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.374000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:58.678589 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.5 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.5 /var/lib/torcx/store]" Jul 2 00:46:03.376000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.376000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.379000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:02.988570 systemd[1]: Queued start job for default target multi-user.target. Jul 2 00:46:03.381000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:58.690861 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Jul 2 00:46:03.011554 systemd[1]: systemd-journald.service: Deactivated successfully. Jul 2 00:45:58.690912 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Jul 2 00:46:03.362372 systemd[1]: modprobe@configfs.service: Deactivated successfully. Jul 2 00:45:58.690981 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=info msg="no vendor profile selected by /etc/flatcar/docker-1.12" Jul 2 00:46:03.362685 systemd[1]: Finished modprobe@configfs.service. Jul 2 00:45:58.691006 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="skipped missing lower profile" missing profile=oem Jul 2 00:46:03.364990 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 00:45:58.691070 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=warning msg="no next profile: unable to read profile file: open /etc/torcx/next-profile: no such file or directory" Jul 2 00:46:03.365268 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 00:45:58.691101 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="apply configuration parsed" lower profiles (vendor/oem)="[vendor]" upper profile (user)= Jul 2 00:46:03.368145 systemd[1]: modprobe@drm.service: Deactivated successfully. Jul 2 00:46:03.384000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:45:58.691538 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="mounted tmpfs" target=/run/torcx/unpack Jul 2 00:46:03.368441 systemd[1]: Finished modprobe@drm.service. Jul 2 00:45:58.691617 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="profile found" name=docker-1.12-no path=/usr/share/torcx/profiles/docker-1.12-no.json Jul 2 00:46:03.370562 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Jul 2 00:45:58.691653 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="profile found" name=vendor path=/usr/share/torcx/profiles/vendor.json Jul 2 00:46:03.370879 systemd[1]: Finished modprobe@efi_pstore.service. Jul 2 00:45:58.693822 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:20.10.torcx.tgz" reference=20.10 Jul 2 00:46:03.373281 systemd[1]: modprobe@fuse.service: Deactivated successfully. Jul 2 00:45:58.693908 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=debug msg="new archive/reference added to cache" format=tgz name=docker path="/usr/share/torcx/store/docker:com.coreos.cl.torcx.tgz" reference=com.coreos.cl Jul 2 00:46:03.373891 systemd[1]: Finished modprobe@fuse.service. Jul 2 00:45:58.693985 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store/3510.3.5: no such file or directory" path=/usr/share/oem/torcx/store/3510.3.5 Jul 2 00:46:03.376061 systemd[1]: modprobe@loop.service: Deactivated successfully. Jul 2 00:45:58.694026 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=info msg="store skipped" err="open /usr/share/oem/torcx/store: no such file or directory" path=/usr/share/oem/torcx/store Jul 2 00:46:03.376374 systemd[1]: Finished modprobe@loop.service. Jul 2 00:45:58.694076 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=info msg="store skipped" err="open /var/lib/torcx/store/3510.3.5: no such file or directory" path=/var/lib/torcx/store/3510.3.5 Jul 2 00:46:03.378658 systemd[1]: Finished systemd-modules-load.service. Jul 2 00:45:58.694114 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:45:58Z" level=info msg="store skipped" err="open /var/lib/torcx/store: no such file or directory" path=/var/lib/torcx/store Jul 2 00:46:03.381085 systemd[1]: Finished systemd-network-generator.service. Jul 2 00:46:02.013608 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:46:02Z" level=debug msg="image unpacked" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Jul 2 00:46:03.383433 systemd[1]: Finished systemd-remount-fs.service. Jul 2 00:46:02.014186 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:46:02Z" level=debug msg="binaries propagated" assets="[/bin/containerd /bin/containerd-shim /bin/ctr /bin/docker /bin/docker-containerd /bin/docker-containerd-shim /bin/docker-init /bin/docker-proxy /bin/docker-runc /bin/dockerd /bin/runc /bin/tini]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Jul 2 00:46:03.387009 systemd[1]: Reached target network-pre.target. Jul 2 00:46:02.014480 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:46:02Z" level=debug msg="networkd units propagated" assets="[/lib/systemd/network/50-docker.network /lib/systemd/network/90-docker-veth.network]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Jul 2 00:46:03.390798 systemd[1]: Mounting sys-fs-fuse-connections.mount... Jul 2 00:46:02.014942 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:46:02Z" level=debug msg="systemd units propagated" assets="[/lib/systemd/system/containerd.service /lib/systemd/system/docker.service /lib/systemd/system/docker.socket /lib/systemd/system/sockets.target.wants /lib/systemd/system/multi-user.target.wants]" image=docker path=/run/torcx/unpack/docker reference=com.coreos.cl Jul 2 00:46:03.394928 systemd[1]: Mounting sys-kernel-config.mount... Jul 2 00:46:02.015052 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:46:02Z" level=debug msg="profile applied" sealed profile=/run/torcx/profile.json upper profile= Jul 2 00:46:03.400647 systemd[1]: remount-root.service was skipped because of an unmet condition check (ConditionPathIsReadWrite=!/). Jul 2 00:46:02.015185 /usr/lib/systemd/system-generators/torcx-generator[1408]: time="2024-07-02T00:46:02Z" level=debug msg="system state sealed" content="[TORCX_LOWER_PROFILES=\"vendor\" TORCX_UPPER_PROFILE=\"\" TORCX_PROFILE_PATH=\"/run/torcx/profile.json\" TORCX_BINDIR=\"/run/torcx/bin\" TORCX_UNPACKDIR=\"/run/torcx/unpack\"]" path=/run/metadata/torcx Jul 2 00:46:03.405147 systemd[1]: Starting systemd-hwdb-update.service... Jul 2 00:46:03.408947 systemd[1]: Starting systemd-journal-flush.service... Jul 2 00:46:03.412605 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Jul 2 00:46:03.415114 systemd[1]: Starting systemd-random-seed.service... Jul 2 00:46:03.416762 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Jul 2 00:46:03.419206 systemd[1]: Starting systemd-sysctl.service... Jul 2 00:46:03.427761 systemd[1]: Mounted sys-fs-fuse-connections.mount. Jul 2 00:46:03.431646 systemd[1]: Mounted sys-kernel-config.mount. Jul 2 00:46:03.443887 systemd-journald[1486]: Time spent on flushing to /var/log/journal/ec2359eb167802d1ba5cecb189c956c3 is 60.989ms for 1121 entries. Jul 2 00:46:03.443887 systemd-journald[1486]: System Journal (/var/log/journal/ec2359eb167802d1ba5cecb189c956c3) is 8.0M, max 195.6M, 187.6M free. Jul 2 00:46:03.527315 systemd-journald[1486]: Received client request to flush runtime journal. Jul 2 00:46:03.464000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.485000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.518000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.530000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.463581 systemd[1]: Finished systemd-random-seed.service. Jul 2 00:46:03.465772 systemd[1]: Reached target first-boot-complete.target. Jul 2 00:46:03.485164 systemd[1]: Finished systemd-sysctl.service. Jul 2 00:46:03.517881 systemd[1]: Finished flatcar-tmpfiles.service. Jul 2 00:46:03.522303 systemd[1]: Starting systemd-sysusers.service... Jul 2 00:46:03.529212 systemd[1]: Finished systemd-journal-flush.service. Jul 2 00:46:03.633146 systemd[1]: Finished systemd-udev-trigger.service. Jul 2 00:46:03.633000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.636961 systemd[1]: Starting systemd-udev-settle.service... Jul 2 00:46:03.653702 udevadm[1526]: systemd-udev-settle.service is deprecated. Please fix lvm2-activation-early.service, lvm2-activation.service not to pull it in. Jul 2 00:46:03.721039 systemd[1]: Finished systemd-sysusers.service. Jul 2 00:46:03.721000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:03.725223 systemd[1]: Starting systemd-tmpfiles-setup-dev.service... Jul 2 00:46:03.871086 systemd[1]: Finished systemd-tmpfiles-setup-dev.service. Jul 2 00:46:03.871000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:04.348000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:04.350000 audit: BPF prog-id=24 op=LOAD Jul 2 00:46:04.350000 audit: BPF prog-id=25 op=LOAD Jul 2 00:46:04.350000 audit: BPF prog-id=7 op=UNLOAD Jul 2 00:46:04.350000 audit: BPF prog-id=8 op=UNLOAD Jul 2 00:46:04.348631 systemd[1]: Finished systemd-hwdb-update.service. Jul 2 00:46:04.352645 systemd[1]: Starting systemd-udevd.service... Jul 2 00:46:04.391108 systemd-udevd[1529]: Using default interface naming scheme 'v252'. Jul 2 00:46:04.442865 systemd[1]: Started systemd-udevd.service. Jul 2 00:46:04.443000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:04.444000 audit: BPF prog-id=26 op=LOAD Jul 2 00:46:04.447548 systemd[1]: Starting systemd-networkd.service... Jul 2 00:46:04.474000 audit: BPF prog-id=27 op=LOAD Jul 2 00:46:04.474000 audit: BPF prog-id=28 op=LOAD Jul 2 00:46:04.474000 audit: BPF prog-id=29 op=LOAD Jul 2 00:46:04.477157 systemd[1]: Starting systemd-userdbd.service... Jul 2 00:46:04.518582 (udev-worker)[1530]: Network interface NamePolicy= disabled on kernel command line. Jul 2 00:46:04.534943 systemd[1]: Condition check resulted in dev-ttyS0.device being skipped. Jul 2 00:46:04.573855 systemd[1]: Started systemd-userdbd.service. Jul 2 00:46:04.574000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:04.722560 systemd-networkd[1534]: lo: Link UP Jul 2 00:46:04.722583 systemd-networkd[1534]: lo: Gained carrier Jul 2 00:46:04.725218 systemd-networkd[1534]: Enumeration completed Jul 2 00:46:04.725427 systemd[1]: Started systemd-networkd.service. Jul 2 00:46:04.725000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:04.729305 systemd[1]: Starting systemd-networkd-wait-online.service... Jul 2 00:46:04.730846 systemd-networkd[1534]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Jul 2 00:46:04.736377 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 00:46:04.737120 systemd-networkd[1534]: eth0: Link UP Jul 2 00:46:04.737454 systemd-networkd[1534]: eth0: Gained carrier Jul 2 00:46:04.747627 systemd-networkd[1534]: eth0: DHCPv4 address 172.31.22.203/20, gateway 172.31.16.1 acquired from 172.31.16.1 Jul 2 00:46:04.841367 kernel: BTRFS info: devid 1 device path /dev/disk/by-label/OEM changed to /dev/nvme0n1p6 scanned by (udev-worker) (1547) Jul 2 00:46:04.946145 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device. Jul 2 00:46:04.952604 systemd[1]: Finished systemd-udev-settle.service. Jul 2 00:46:04.952000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-settle comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:04.956715 systemd[1]: Starting lvm2-activation-early.service... Jul 2 00:46:05.036590 lvm[1648]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Jul 2 00:46:05.074037 systemd[1]: Finished lvm2-activation-early.service. Jul 2 00:46:05.074000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.075992 systemd[1]: Reached target cryptsetup.target. Jul 2 00:46:05.079806 systemd[1]: Starting lvm2-activation.service... Jul 2 00:46:05.088357 lvm[1649]: WARNING: Failed to connect to lvmetad. Falling back to device scanning. Jul 2 00:46:05.124044 systemd[1]: Finished lvm2-activation.service. Jul 2 00:46:05.124000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=lvm2-activation comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.125985 systemd[1]: Reached target local-fs-pre.target. Jul 2 00:46:05.127701 systemd[1]: var-lib-machines.mount was skipped because of an unmet condition check (ConditionPathExists=/var/lib/machines.raw). Jul 2 00:46:05.127891 systemd[1]: Reached target local-fs.target. Jul 2 00:46:05.129514 systemd[1]: Reached target machines.target. Jul 2 00:46:05.133484 systemd[1]: Starting ldconfig.service... Jul 2 00:46:05.135934 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 00:46:05.136276 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 00:46:05.138860 systemd[1]: Starting systemd-boot-update.service... Jul 2 00:46:05.142820 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service... Jul 2 00:46:05.146958 systemd[1]: Starting systemd-machine-id-commit.service... Jul 2 00:46:05.151804 systemd[1]: Starting systemd-sysext.service... Jul 2 00:46:05.167309 systemd[1]: boot.automount: Got automount request for /boot, triggered by 1651 (bootctl) Jul 2 00:46:05.169701 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service... Jul 2 00:46:05.192867 systemd[1]: Unmounting usr-share-oem.mount... Jul 2 00:46:05.195788 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service. Jul 2 00:46:05.196000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.206520 systemd[1]: usr-share-oem.mount: Deactivated successfully. Jul 2 00:46:05.206925 systemd[1]: Unmounted usr-share-oem.mount. Jul 2 00:46:05.233394 kernel: loop0: detected capacity change from 0 to 194512 Jul 2 00:46:05.315741 systemd-fsck[1661]: fsck.fat 4.2 (2021-01-31) Jul 2 00:46:05.315741 systemd-fsck[1661]: /dev/nvme0n1p1: 236 files, 117047/258078 clusters Jul 2 00:46:05.318768 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM.service. Jul 2 00:46:05.320000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-EFI\x2dSYSTEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.324047 systemd[1]: Mounting boot.mount... Jul 2 00:46:05.350418 systemd[1]: Mounted boot.mount. Jul 2 00:46:05.373911 systemd[1]: Finished systemd-boot-update.service. Jul 2 00:46:05.374000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-boot-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.406417 kernel: squashfs: version 4.0 (2009/01/31) Phillip Lougher Jul 2 00:46:05.431420 kernel: loop1: detected capacity change from 0 to 194512 Jul 2 00:46:05.447426 (sd-sysext)[1676]: Using extensions 'kubernetes'. Jul 2 00:46:05.449582 (sd-sysext)[1676]: Merged extensions into '/usr'. Jul 2 00:46:05.490729 systemd[1]: Mounting usr-share-oem.mount... Jul 2 00:46:05.492535 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 00:46:05.495389 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 00:46:05.502987 systemd[1]: Starting modprobe@efi_pstore.service... Jul 2 00:46:05.507047 systemd[1]: Starting modprobe@loop.service... Jul 2 00:46:05.510665 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 00:46:05.510969 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 00:46:05.517162 systemd[1]: Mounted usr-share-oem.mount. Jul 2 00:46:05.520385 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 00:46:05.520731 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 00:46:05.521000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.521000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.523314 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Jul 2 00:46:05.523781 systemd[1]: Finished modprobe@efi_pstore.service. Jul 2 00:46:05.524000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.524000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.526447 systemd[1]: modprobe@loop.service: Deactivated successfully. Jul 2 00:46:05.526760 systemd[1]: Finished modprobe@loop.service. Jul 2 00:46:05.527000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.527000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.529795 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Jul 2 00:46:05.529976 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Jul 2 00:46:05.531755 systemd[1]: Finished systemd-sysext.service. Jul 2 00:46:05.532000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:05.536019 systemd[1]: Starting ensure-sysext.service... Jul 2 00:46:05.539867 systemd[1]: Starting systemd-tmpfiles-setup.service... Jul 2 00:46:05.555456 systemd[1]: Reloading. Jul 2 00:46:05.579945 systemd-tmpfiles[1683]: /usr/lib/tmpfiles.d/legacy.conf:13: Duplicate line for path "/run/lock", ignoring. Jul 2 00:46:05.595061 systemd-tmpfiles[1683]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Jul 2 00:46:05.610894 systemd-tmpfiles[1683]: /usr/lib/tmpfiles.d/systemd.conf:29: Duplicate line for path "/var/lib/systemd", ignoring. Jul 2 00:46:05.677938 /usr/lib/systemd/system-generators/torcx-generator[1702]: time="2024-07-02T00:46:05Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.5 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.5 /var/lib/torcx/store]" Jul 2 00:46:05.677998 /usr/lib/systemd/system-generators/torcx-generator[1702]: time="2024-07-02T00:46:05Z" level=info msg="torcx already run" Jul 2 00:46:05.929153 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Jul 2 00:46:05.929192 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Jul 2 00:46:05.983443 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 2 00:46:06.139722 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Jul 2 00:46:06.149000 audit: BPF prog-id=30 op=LOAD Jul 2 00:46:06.149000 audit: BPF prog-id=27 op=UNLOAD Jul 2 00:46:06.149000 audit: BPF prog-id=31 op=LOAD Jul 2 00:46:06.150000 audit: BPF prog-id=32 op=LOAD Jul 2 00:46:06.150000 audit: BPF prog-id=28 op=UNLOAD Jul 2 00:46:06.150000 audit: BPF prog-id=29 op=UNLOAD Jul 2 00:46:06.152000 audit: BPF prog-id=33 op=LOAD Jul 2 00:46:06.152000 audit: BPF prog-id=21 op=UNLOAD Jul 2 00:46:06.153000 audit: BPF prog-id=34 op=LOAD Jul 2 00:46:06.153000 audit: BPF prog-id=35 op=LOAD Jul 2 00:46:06.153000 audit: BPF prog-id=22 op=UNLOAD Jul 2 00:46:06.153000 audit: BPF prog-id=23 op=UNLOAD Jul 2 00:46:06.154000 audit: BPF prog-id=36 op=LOAD Jul 2 00:46:06.154000 audit: BPF prog-id=37 op=LOAD Jul 2 00:46:06.154000 audit: BPF prog-id=24 op=UNLOAD Jul 2 00:46:06.154000 audit: BPF prog-id=25 op=UNLOAD Jul 2 00:46:06.159000 audit: BPF prog-id=38 op=LOAD Jul 2 00:46:06.159000 audit: BPF prog-id=26 op=UNLOAD Jul 2 00:46:06.183518 systemd[1]: Finished systemd-machine-id-commit.service. Jul 2 00:46:06.184000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-machine-id-commit comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.187921 systemd[1]: Finished systemd-tmpfiles-setup.service. Jul 2 00:46:06.189000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.197639 systemd[1]: Starting audit-rules.service... Jul 2 00:46:06.202008 systemd[1]: Starting clean-ca-certificates.service... Jul 2 00:46:06.208527 systemd[1]: Starting systemd-journal-catalog-update.service... Jul 2 00:46:06.211000 audit: BPF prog-id=39 op=LOAD Jul 2 00:46:06.214661 systemd[1]: Starting systemd-resolved.service... Jul 2 00:46:06.221000 audit: BPF prog-id=40 op=LOAD Jul 2 00:46:06.226644 systemd[1]: Starting systemd-timesyncd.service... Jul 2 00:46:06.230896 systemd[1]: Starting systemd-update-utmp.service... Jul 2 00:46:06.247892 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.252535 systemd[1]: Starting modprobe@dm_mod.service... Jul 2 00:46:06.257497 systemd[1]: Starting modprobe@efi_pstore.service... Jul 2 00:46:06.263049 systemd[1]: Starting modprobe@loop.service... Jul 2 00:46:06.265653 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.265972 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 00:46:06.269938 systemd[1]: Finished clean-ca-certificates.service. Jul 2 00:46:06.270000 audit[1765]: SYSTEM_BOOT pid=1765 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.270000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=clean-ca-certificates comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.276007 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Jul 2 00:46:06.283541 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.284523 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.284766 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 00:46:06.285164 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Jul 2 00:46:06.288721 systemd[1]: Finished systemd-update-utmp.service. Jul 2 00:46:06.289000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.298985 systemd[1]: ignition-delete-config.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.303770 systemd[1]: Starting modprobe@drm.service... Jul 2 00:46:06.305588 systemd[1]: systemd-binfmt.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.305948 systemd[1]: systemd-boot-system-token.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/LoaderFeatures-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 00:46:06.306361 systemd[1]: update-ca-certificates.service was skipped because of an unmet condition check (ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt). Jul 2 00:46:06.310078 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Jul 2 00:46:06.310540 systemd[1]: Finished modprobe@efi_pstore.service. Jul 2 00:46:06.311000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.311000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.313739 systemd[1]: modprobe@loop.service: Deactivated successfully. Jul 2 00:46:06.314935 systemd[1]: Finished modprobe@loop.service. Jul 2 00:46:06.315000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.315000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@loop comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.318601 systemd[1]: systemd-pstore.service was skipped because of an unmet condition check (ConditionDirectoryNotEmpty=/sys/fs/pstore). Jul 2 00:46:06.325384 systemd[1]: Finished ensure-sysext.service. Jul 2 00:46:06.325000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=ensure-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.329148 systemd[1]: modprobe@dm_mod.service: Deactivated successfully. Jul 2 00:46:06.329512 systemd[1]: Finished modprobe@dm_mod.service. Jul 2 00:46:06.331457 systemd[1]: systemd-repart.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.329000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.329000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@dm_mod comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.339132 systemd[1]: modprobe@drm.service: Deactivated successfully. Jul 2 00:46:06.339595 systemd[1]: Finished modprobe@drm.service. Jul 2 00:46:06.340000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.340000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@drm comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.363530 systemd[1]: Finished systemd-journal-catalog-update.service. Jul 2 00:46:06.364000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.437804 ldconfig[1650]: /sbin/ldconfig: /lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Jul 2 00:46:06.438975 systemd[1]: Started systemd-timesyncd.service. Jul 2 00:46:06.440854 systemd[1]: Reached target time-set.target. Jul 2 00:46:06.439000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-timesyncd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.460757 systemd[1]: Finished ldconfig.service. Jul 2 00:46:06.462506 systemd-networkd[1534]: eth0: Gained IPv6LL Jul 2 00:46:06.460000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=ldconfig comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.464875 systemd[1]: Starting systemd-update-done.service... Jul 2 00:46:06.469674 systemd[1]: Finished systemd-networkd-wait-online.service. Jul 2 00:46:06.470000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-wait-online comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:06.490000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Jul 2 00:46:06.490000 audit[1786]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd8b6f670 a2=420 a3=0 items=0 ppid=1759 pid=1786 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:06.490000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Jul 2 00:46:06.492965 augenrules[1786]: No rules Jul 2 00:46:06.495044 systemd[1]: Finished audit-rules.service. Jul 2 00:46:06.497823 systemd[1]: Finished systemd-update-done.service. Jul 2 00:46:06.511436 systemd-resolved[1762]: Positive Trust Anchors: Jul 2 00:46:06.511465 systemd-resolved[1762]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Jul 2 00:46:06.511517 systemd-resolved[1762]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa corp home internal intranet lan local private test Jul 2 00:46:06.550599 systemd-resolved[1762]: Defaulting to hostname 'linux'. Jul 2 00:46:06.553552 systemd[1]: Started systemd-resolved.service. Jul 2 00:46:06.555238 systemd[1]: Reached target network.target. Jul 2 00:46:06.556830 systemd[1]: Reached target network-online.target. Jul 2 00:46:06.558416 systemd[1]: Reached target nss-lookup.target. Jul 2 00:46:06.559956 systemd[1]: Reached target sysinit.target. Jul 2 00:46:06.561973 systemd[1]: Started motdgen.path. Jul 2 00:46:06.563441 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path. Jul 2 00:46:06.565749 systemd[1]: Started logrotate.timer. Jul 2 00:46:06.567933 systemd[1]: Started mdadm.timer. Jul 2 00:46:06.569309 systemd[1]: Started systemd-tmpfiles-clean.timer. Jul 2 00:46:06.570879 systemd[1]: update-engine-stub.timer was skipped because of an unmet condition check (ConditionPathExists=/usr/.noupdate). Jul 2 00:46:06.570926 systemd[1]: Reached target paths.target. Jul 2 00:46:06.572316 systemd[1]: Reached target timers.target. Jul 2 00:46:06.574654 systemd[1]: Listening on dbus.socket. Jul 2 00:46:06.578700 systemd[1]: Starting docker.socket... Jul 2 00:46:06.585801 systemd[1]: Listening on sshd.socket. Jul 2 00:46:06.587774 systemd[1]: systemd-pcrphase-sysinit.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 00:46:06.589009 systemd[1]: Listening on docker.socket. Jul 2 00:46:06.591096 systemd[1]: Reached target sockets.target. Jul 2 00:46:06.593039 systemd[1]: Reached target basic.target. Jul 2 00:46:06.594987 systemd[1]: addon-config@usr-share-oem.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.595229 systemd[1]: addon-run@usr-share-oem.service was skipped because no trigger condition checks were met. Jul 2 00:46:06.606593 systemd[1]: Started amazon-ssm-agent.service. Jul 2 00:46:06.611351 systemd[1]: Starting containerd.service... Jul 2 00:46:06.615600 systemd[1]: Starting coreos-metadata-sshkeys@core.service... Jul 2 00:46:06.621528 systemd[1]: Starting dbus.service... Jul 2 00:46:06.626237 systemd[1]: Starting enable-oem-cloudinit.service... Jul 2 00:46:06.630491 systemd[1]: Starting extend-filesystems.service... Jul 2 00:46:06.632108 systemd[1]: flatcar-setup-environment.service was skipped because of an unmet condition check (ConditionPathExists=/usr/share/oem/bin/flatcar-setup-environment). Jul 2 00:46:06.636008 systemd[1]: Starting kubelet.service... Jul 2 00:46:06.641272 systemd[1]: Starting motdgen.service... Jul 2 00:46:06.645660 systemd[1]: Started nvidia.service. Jul 2 00:46:06.707785 jq[1797]: false Jul 2 00:46:06.650734 systemd[1]: Starting ssh-key-proc-cmdline.service... Jul 2 00:46:06.657245 systemd[1]: Starting sshd-keygen.service... Jul 2 00:46:06.665594 systemd[1]: Starting systemd-logind.service... Jul 2 00:46:06.667503 systemd[1]: systemd-pcrphase.service was skipped because of an unmet condition check (ConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f). Jul 2 00:46:06.667697 systemd[1]: tcsd.service was skipped because of an unmet condition check (ConditionPathExists=/dev/tpm0). Jul 2 00:46:06.725196 jq[1806]: true Jul 2 00:46:06.668772 systemd[1]: cgroup compatibility translation between legacy and unified hierarchy settings activated. See cgroup-compat debug messages for details. Jul 2 00:46:06.673716 systemd[1]: Starting update-engine.service... Jul 2 00:46:06.685770 systemd[1]: Starting update-ssh-keys-after-ignition.service... Jul 2 00:46:06.728298 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Jul 2 00:46:06.728730 systemd[1]: Condition check resulted in enable-oem-cloudinit.service being skipped. Jul 2 00:46:06.775968 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Jul 2 00:46:06.776406 systemd[1]: Finished ssh-key-proc-cmdline.service. Jul 2 00:46:06.782487 jq[1812]: true Jul 2 00:46:06.907812 extend-filesystems[1798]: Found loop1 Jul 2 00:46:06.909766 extend-filesystems[1798]: Found nvme0n1 Jul 2 00:46:06.909766 extend-filesystems[1798]: Found nvme0n1p1 Jul 2 00:46:06.909766 extend-filesystems[1798]: Found nvme0n1p2 Jul 2 00:46:06.909766 extend-filesystems[1798]: Found nvme0n1p3 Jul 2 00:46:06.909766 extend-filesystems[1798]: Found usr Jul 2 00:46:06.909766 extend-filesystems[1798]: Found nvme0n1p4 Jul 2 00:46:06.909766 extend-filesystems[1798]: Found nvme0n1p6 Jul 2 00:46:06.909766 extend-filesystems[1798]: Found nvme0n1p7 Jul 2 00:46:06.909766 extend-filesystems[1798]: Found nvme0n1p9 Jul 2 00:46:06.943055 extend-filesystems[1798]: Checking size of /dev/nvme0n1p9 Jul 2 00:46:06.917236 systemd[1]: Started dbus.service. Jul 2 00:46:06.916853 dbus-daemon[1796]: [system] SELinux support is enabled Jul 2 00:46:06.934306 systemd[1]: system-cloudinit@usr-share-oem-cloud\x2dconfig.yml.service was skipped because of an unmet condition check (ConditionFileNotEmpty=/usr/share/oem/cloud-config.yml). Jul 2 00:46:06.946690 dbus-daemon[1796]: [system] Activating systemd to hand-off: service name='org.freedesktop.hostname1' unit='dbus-org.freedesktop.hostname1.service' requested by ':1.0' (uid=244 pid=1534 comm="/usr/lib/systemd/systemd-networkd" label="system_u:system_r:kernel_t:s0") Jul 2 00:46:06.934445 systemd[1]: Reached target system-config.target. Jul 2 00:46:06.937696 systemd[1]: user-cloudinit-proc-cmdline.service was skipped because of an unmet condition check (ConditionKernelCommandLine=cloud-config-url). Jul 2 00:46:06.937737 systemd[1]: Reached target user-config.target. Jul 2 00:46:06.963282 dbus-daemon[1796]: [system] Successfully activated service 'org.freedesktop.systemd1' Jul 2 00:46:06.973905 systemd[1]: motdgen.service: Deactivated successfully. Jul 2 00:46:06.974310 systemd[1]: Finished motdgen.service. Jul 2 00:46:06.983783 systemd[1]: Starting systemd-hostnamed.service... Jul 2 00:46:07.059794 extend-filesystems[1798]: Resized partition /dev/nvme0n1p9 Jul 2 00:46:07.074723 extend-filesystems[1855]: resize2fs 1.46.5 (30-Dec-2021) Jul 2 00:46:07.097386 kernel: EXT4-fs (nvme0n1p9): resizing filesystem from 553472 to 1489915 blocks Jul 2 00:46:07.099153 bash[1854]: Updated "/home/core/.ssh/authorized_keys" Jul 2 00:46:07.101192 systemd[1]: Finished update-ssh-keys-after-ignition.service. Jul 2 00:46:07.121053 update_engine[1805]: I0702 00:46:07.120606 1805 main.cc:92] Flatcar Update Engine starting Jul 2 00:46:07.125925 systemd[1]: Started update-engine.service. Jul 2 00:46:07.133476 update_engine[1805]: I0702 00:46:07.125990 1805 update_check_scheduler.cc:74] Next update check in 11m35s Jul 2 00:46:07.130907 systemd[1]: Started locksmithd.service. Jul 2 00:46:07.138109 amazon-ssm-agent[1793]: 2024/07/02 00:46:07 Failed to load instance info from vault. RegistrationKey does not exist. Jul 2 00:46:07.162290 amazon-ssm-agent[1793]: Initializing new seelog logger Jul 2 00:46:07.162540 amazon-ssm-agent[1793]: New Seelog Logger Creation Complete Jul 2 00:46:07.162668 amazon-ssm-agent[1793]: 2024/07/02 00:46:07 Found config file at /etc/amazon/ssm/amazon-ssm-agent.json. Jul 2 00:46:07.162668 amazon-ssm-agent[1793]: Applying config override from /etc/amazon/ssm/amazon-ssm-agent.json. Jul 2 00:46:07.163045 amazon-ssm-agent[1793]: 2024/07/02 00:46:07 processing appconfig overrides Jul 2 00:46:07.172480 kernel: EXT4-fs (nvme0n1p9): resized filesystem to 1489915 Jul 2 00:46:07.223134 extend-filesystems[1855]: Filesystem at /dev/nvme0n1p9 is mounted on /; on-line resizing required Jul 2 00:46:07.223134 extend-filesystems[1855]: old_desc_blocks = 1, new_desc_blocks = 1 Jul 2 00:46:07.223134 extend-filesystems[1855]: The filesystem on /dev/nvme0n1p9 is now 1489915 (4k) blocks long. Jul 2 00:46:07.241681 extend-filesystems[1798]: Resized filesystem in /dev/nvme0n1p9 Jul 2 00:46:07.229140 systemd[1]: extend-filesystems.service: Deactivated successfully. Jul 2 00:46:07.244015 env[1818]: time="2024-07-02T00:46:07.237116016Z" level=info msg="starting containerd" revision=92b3a9d6f1b3bcc6dc74875cfdea653fe39f09c2 version=1.6.16 Jul 2 00:46:07.229552 systemd[1]: Finished extend-filesystems.service. Jul 2 00:46:07.334812 systemd-logind[1804]: Watching system buttons on /dev/input/event0 (Power Button) Jul 2 00:46:07.334865 systemd-logind[1804]: Watching system buttons on /dev/input/event1 (Sleep Button) Jul 2 00:46:07.340662 systemd-logind[1804]: New seat seat0. Jul 2 00:46:07.348163 systemd[1]: Started systemd-logind.service. Jul 2 00:46:07.356925 systemd[1]: nvidia.service: Deactivated successfully. Jul 2 00:46:07.460417 env[1818]: time="2024-07-02T00:46:07.460351645Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Jul 2 00:46:07.470299 env[1818]: time="2024-07-02T00:46:07.470225161Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Jul 2 00:46:07.479990 env[1818]: time="2024-07-02T00:46:07.479855953Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/5.15.161-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Jul 2 00:46:07.482449 env[1818]: time="2024-07-02T00:46:07.482395417Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Jul 2 00:46:07.483603 env[1818]: time="2024-07-02T00:46:07.483547201Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Jul 2 00:46:07.484873 env[1818]: time="2024-07-02T00:46:07.484821109Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Jul 2 00:46:07.486020 env[1818]: time="2024-07-02T00:46:07.485965213Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Jul 2 00:46:07.486207 env[1818]: time="2024-07-02T00:46:07.486173977Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Jul 2 00:46:07.486583 env[1818]: time="2024-07-02T00:46:07.486543097Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Jul 2 00:46:07.487887 env[1818]: time="2024-07-02T00:46:07.487831957Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Jul 2 00:46:07.494721 env[1818]: time="2024-07-02T00:46:07.489050125Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Jul 2 00:46:07.495030 env[1818]: time="2024-07-02T00:46:07.494985397Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Jul 2 00:46:07.495690 env[1818]: time="2024-07-02T00:46:07.495641209Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Jul 2 00:46:07.500486 env[1818]: time="2024-07-02T00:46:07.500424409Z" level=info msg="metadata content store policy set" policy=shared Jul 2 00:46:07.506261 dbus-daemon[1796]: [system] Successfully activated service 'org.freedesktop.hostname1' Jul 2 00:46:07.506586 systemd[1]: Started systemd-hostnamed.service. Jul 2 00:46:07.509430 dbus-daemon[1796]: [system] Activating via systemd: service name='org.freedesktop.PolicyKit1' unit='polkit.service' requested by ':1.6' (uid=0 pid=1840 comm="/usr/lib/systemd/systemd-hostnamed" label="system_u:system_r:kernel_t:s0") Jul 2 00:46:07.514444 systemd[1]: Starting polkit.service... Jul 2 00:46:07.517637 env[1818]: time="2024-07-02T00:46:07.517583713Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Jul 2 00:46:07.518121 env[1818]: time="2024-07-02T00:46:07.518055949Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Jul 2 00:46:07.518292 env[1818]: time="2024-07-02T00:46:07.518257921Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Jul 2 00:46:07.518612 env[1818]: time="2024-07-02T00:46:07.518553025Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.518763 env[1818]: time="2024-07-02T00:46:07.518732665Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.518982 env[1818]: time="2024-07-02T00:46:07.518950657Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.519109 env[1818]: time="2024-07-02T00:46:07.519079021Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.519819 env[1818]: time="2024-07-02T00:46:07.519768169Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.519993 env[1818]: time="2024-07-02T00:46:07.519961729Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.520116 env[1818]: time="2024-07-02T00:46:07.520086889Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.520239 env[1818]: time="2024-07-02T00:46:07.520210057Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.520406 env[1818]: time="2024-07-02T00:46:07.520375933Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Jul 2 00:46:07.520768 env[1818]: time="2024-07-02T00:46:07.520723069Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Jul 2 00:46:07.521075 env[1818]: time="2024-07-02T00:46:07.521041885Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Jul 2 00:46:07.528973 env[1818]: time="2024-07-02T00:46:07.528918025Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Jul 2 00:46:07.529242 env[1818]: time="2024-07-02T00:46:07.529207009Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.530139 env[1818]: time="2024-07-02T00:46:07.530089729Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Jul 2 00:46:07.530466 env[1818]: time="2024-07-02T00:46:07.530428561Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.530641 env[1818]: time="2024-07-02T00:46:07.530609713Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.531108 env[1818]: time="2024-07-02T00:46:07.531068233Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.531423 env[1818]: time="2024-07-02T00:46:07.531380497Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.532631 env[1818]: time="2024-07-02T00:46:07.532580149Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.532812 env[1818]: time="2024-07-02T00:46:07.532780873Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.533079 env[1818]: time="2024-07-02T00:46:07.532907893Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.533215 env[1818]: time="2024-07-02T00:46:07.533183869Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.533432 env[1818]: time="2024-07-02T00:46:07.533400325Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Jul 2 00:46:07.533904 env[1818]: time="2024-07-02T00:46:07.533866189Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.534135 env[1818]: time="2024-07-02T00:46:07.534069289Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.535317 env[1818]: time="2024-07-02T00:46:07.535270609Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.535553 env[1818]: time="2024-07-02T00:46:07.535519561Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Jul 2 00:46:07.535721 env[1818]: time="2024-07-02T00:46:07.535676245Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Jul 2 00:46:07.535906 env[1818]: time="2024-07-02T00:46:07.535875037Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Jul 2 00:46:07.536040 env[1818]: time="2024-07-02T00:46:07.536009449Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Jul 2 00:46:07.537663 env[1818]: time="2024-07-02T00:46:07.537617521Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Jul 2 00:46:07.540749 env[1818]: time="2024-07-02T00:46:07.539726293Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:true SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Jul 2 00:46:07.541847 env[1818]: time="2024-07-02T00:46:07.541174585Z" level=info msg="Connect containerd service" Jul 2 00:46:07.541847 env[1818]: time="2024-07-02T00:46:07.541250641Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Jul 2 00:46:07.547650 polkitd[1909]: Started polkitd version 121 Jul 2 00:46:07.549565 env[1818]: time="2024-07-02T00:46:07.549508993Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Jul 2 00:46:07.551261 env[1818]: time="2024-07-02T00:46:07.551209333Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Jul 2 00:46:07.556090 env[1818]: time="2024-07-02T00:46:07.552127417Z" level=info msg="Start subscribing containerd event" Jul 2 00:46:07.556257 env[1818]: time="2024-07-02T00:46:07.556102849Z" level=info msg="Start recovering state" Jul 2 00:46:07.556323 env[1818]: time="2024-07-02T00:46:07.556305073Z" level=info msg="Start event monitor" Jul 2 00:46:07.556513 env[1818]: time="2024-07-02T00:46:07.556387453Z" level=info msg="Start snapshots syncer" Jul 2 00:46:07.556513 env[1818]: time="2024-07-02T00:46:07.556416745Z" level=info msg="Start cni network conf syncer for default" Jul 2 00:46:07.556513 env[1818]: time="2024-07-02T00:46:07.556459225Z" level=info msg="Start streaming server" Jul 2 00:46:07.556687 env[1818]: time="2024-07-02T00:46:07.556058809Z" level=info msg=serving... address=/run/containerd/containerd.sock Jul 2 00:46:07.558876 env[1818]: time="2024-07-02T00:46:07.556777813Z" level=info msg="containerd successfully booted in 0.362062s" Jul 2 00:46:07.556897 systemd[1]: Started containerd.service. Jul 2 00:46:07.577359 polkitd[1909]: Loading rules from directory /etc/polkit-1/rules.d Jul 2 00:46:07.579239 polkitd[1909]: Loading rules from directory /usr/share/polkit-1/rules.d Jul 2 00:46:07.584594 polkitd[1909]: Finished loading, compiling and executing 2 rules Jul 2 00:46:07.586493 dbus-daemon[1796]: [system] Successfully activated service 'org.freedesktop.PolicyKit1' Jul 2 00:46:07.586761 systemd[1]: Started polkit.service. Jul 2 00:46:07.589134 polkitd[1909]: Acquired the name org.freedesktop.PolicyKit1 on the system bus Jul 2 00:46:07.623854 systemd-hostnamed[1840]: Hostname set to (transient) Jul 2 00:46:07.624044 systemd-resolved[1762]: System hostname changed to 'ip-172-31-22-203'. Jul 2 00:46:07.900843 coreos-metadata[1795]: Jul 02 00:46:07.900 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Jul 2 00:46:07.902072 coreos-metadata[1795]: Jul 02 00:46:07.901 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys: Attempt #1 Jul 2 00:46:07.907813 coreos-metadata[1795]: Jul 02 00:46:07.907 INFO Fetch successful Jul 2 00:46:07.908638 coreos-metadata[1795]: Jul 02 00:46:07.907 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-keys/0/openssh-key: Attempt #1 Jul 2 00:46:07.909163 coreos-metadata[1795]: Jul 02 00:46:07.908 INFO Fetch successful Jul 2 00:46:07.911106 unknown[1795]: wrote ssh authorized keys file for user: core Jul 2 00:46:07.944204 update-ssh-keys[1965]: Updated "/home/core/.ssh/authorized_keys" Jul 2 00:46:07.945124 systemd[1]: Finished coreos-metadata-sshkeys@core.service. Jul 2 00:46:08.032283 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Create new startup processor Jul 2 00:46:08.039258 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [LongRunningPluginsManager] registered plugins: {} Jul 2 00:46:08.039505 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Initializing bookkeeping folders Jul 2 00:46:08.039599 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO removing the completed state files Jul 2 00:46:08.039599 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Initializing bookkeeping folders for long running plugins Jul 2 00:46:08.039701 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Initializing replies folder for MDS reply requests that couldn't reach the service Jul 2 00:46:08.039701 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Initializing healthcheck folders for long running plugins Jul 2 00:46:08.039701 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Initializing locations for inventory plugin Jul 2 00:46:08.039851 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Initializing default location for custom inventory Jul 2 00:46:08.039851 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Initializing default location for file inventory Jul 2 00:46:08.039851 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Initializing default location for role inventory Jul 2 00:46:08.039851 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Init the cloudwatchlogs publisher Jul 2 00:46:08.039851 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:softwareInventory Jul 2 00:46:08.040117 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:runPowerShellScript Jul 2 00:46:08.040117 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:configureDocker Jul 2 00:46:08.040117 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:runDockerAction Jul 2 00:46:08.040117 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:refreshAssociation Jul 2 00:46:08.040117 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:configurePackage Jul 2 00:46:08.040117 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:updateSsmAgent Jul 2 00:46:08.040117 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:downloadContent Jul 2 00:46:08.040500 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform independent plugin aws:runDocument Jul 2 00:46:08.040500 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Successfully loaded platform dependent plugin aws:runShellScript Jul 2 00:46:08.040500 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO Starting Agent: amazon-ssm-agent - v2.3.1319.0 Jul 2 00:46:08.040500 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO OS: linux, Arch: arm64 Jul 2 00:46:08.041445 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] Starting document processing engine... Jul 2 00:46:08.054783 amazon-ssm-agent[1793]: datastore file /var/lib/amazon/ssm/i-0844f5a2e0e996483/longrunningplugins/datastore/store doesn't exist - no long running plugins to execute Jul 2 00:46:08.140169 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] [EngineProcessor] Starting Jul 2 00:46:08.235167 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] [EngineProcessor] Initial processing Jul 2 00:46:08.329616 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] Starting message polling Jul 2 00:46:08.424461 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] Starting send replies to MDS Jul 2 00:46:08.471726 locksmithd[1865]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Jul 2 00:46:08.519441 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [instanceID=i-0844f5a2e0e996483] Starting association polling Jul 2 00:46:08.614544 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Starting Jul 2 00:46:08.709860 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] [Association] Launching response handler Jul 2 00:46:08.725670 systemd[1]: Started kubelet.service. Jul 2 00:46:08.805493 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] [Association] [EngineProcessor] Initial processing Jul 2 00:46:08.901142 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] [Association] Initializing association scheduling service Jul 2 00:46:08.997079 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessagingDeliveryService] [Association] Association scheduling service initialized Jul 2 00:46:09.093261 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [HealthCheck] HealthCheck reporting agent health. Jul 2 00:46:09.189653 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] Starting session document processing engine... Jul 2 00:46:09.286163 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] [EngineProcessor] Starting Jul 2 00:46:09.382913 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [OfflineService] Starting document processing engine... Jul 2 00:46:09.479745 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [OfflineService] [EngineProcessor] Starting Jul 2 00:46:09.576828 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [OfflineService] [EngineProcessor] Initial processing Jul 2 00:46:09.583575 kubelet[1989]: E0702 00:46:09.583484 1989 run.go:74] "command failed" err="failed to load kubelet config file, path: /var/lib/kubelet/config.yaml, error: failed to load Kubelet config file /var/lib/kubelet/config.yaml, error failed to read kubelet config file \"/var/lib/kubelet/config.yaml\", error: open /var/lib/kubelet/config.yaml: no such file or directory" Jul 2 00:46:09.588009 systemd[1]: kubelet.service: Main process exited, code=exited, status=1/FAILURE Jul 2 00:46:09.588321 systemd[1]: kubelet.service: Failed with result 'exit-code'. Jul 2 00:46:09.588798 systemd[1]: kubelet.service: Consumed 1.493s CPU time. Jul 2 00:46:09.674250 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [OfflineService] Starting message polling Jul 2 00:46:09.771675 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [OfflineService] Starting send replies to MDS Jul 2 00:46:09.869308 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] listening reply. Jul 2 00:46:09.967269 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [LongRunningPluginsManager] starting long running plugin manager Jul 2 00:46:10.065315 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [LongRunningPluginsManager] there aren't any long running plugin to execute Jul 2 00:46:10.163552 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] SSM Agent is trying to setup control channel for Session Manager module. Jul 2 00:46:10.217871 sshd_keygen[1828]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Jul 2 00:46:10.254093 systemd[1]: Finished sshd-keygen.service. Jul 2 00:46:10.258570 systemd[1]: Starting issuegen.service... Jul 2 00:46:10.262040 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] Setting up websocket for controlchannel for instance: i-0844f5a2e0e996483, requestId: 51eeca88-3b96-4e21-a8c4-e7aa2df35cf9 Jul 2 00:46:10.270846 systemd[1]: issuegen.service: Deactivated successfully. Jul 2 00:46:10.271196 systemd[1]: Finished issuegen.service. Jul 2 00:46:10.275915 systemd[1]: Starting systemd-user-sessions.service... Jul 2 00:46:10.290071 systemd[1]: Finished systemd-user-sessions.service. Jul 2 00:46:10.294560 systemd[1]: Started getty@tty1.service. Jul 2 00:46:10.298899 systemd[1]: Started serial-getty@ttyS0.service. Jul 2 00:46:10.301002 systemd[1]: Reached target getty.target. Jul 2 00:46:10.302693 systemd[1]: Reached target multi-user.target. Jul 2 00:46:10.306996 systemd[1]: Starting systemd-update-utmp-runlevel.service... Jul 2 00:46:10.323834 systemd[1]: systemd-update-utmp-runlevel.service: Deactivated successfully. Jul 2 00:46:10.324206 systemd[1]: Finished systemd-update-utmp-runlevel.service. Jul 2 00:46:10.326246 systemd[1]: Startup finished in 1.143s (kernel) + 8.470s (initrd) + 12.264s (userspace) = 21.878s. Jul 2 00:46:10.360656 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [LongRunningPluginsManager] There are no long running plugins currently getting executed - skipping their healthcheck Jul 2 00:46:10.459483 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [StartupProcessor] Executing startup processor tasks Jul 2 00:46:10.558594 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [StartupProcessor] Write to serial port: Amazon SSM Agent v2.3.1319.0 is running Jul 2 00:46:10.657737 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [StartupProcessor] Write to serial port: OsProductName: Flatcar Container Linux by Kinvolk Jul 2 00:46:10.757156 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [StartupProcessor] Write to serial port: OsVersion: 3510.3.5 Jul 2 00:46:10.856875 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] Opening websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0844f5a2e0e996483?role=subscribe&stream=input Jul 2 00:46:10.956691 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] Successfully opened websocket connection to: wss://ssmmessages.us-west-2.amazonaws.com/v1/control-channel/i-0844f5a2e0e996483?role=subscribe&stream=input Jul 2 00:46:11.056754 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] Starting receiving message from control channel Jul 2 00:46:11.157086 amazon-ssm-agent[1793]: 2024-07-02 00:46:08 INFO [MessageGatewayService] [EngineProcessor] Initial processing Jul 2 00:46:15.178026 systemd[1]: Created slice system-sshd.slice. Jul 2 00:46:15.180427 systemd[1]: Started sshd@0-172.31.22.203:22-139.178.89.65:53112.service. Jul 2 00:46:15.490638 sshd[2010]: Accepted publickey for core from 139.178.89.65 port 53112 ssh2: RSA SHA256:8y6JErBds/WgSuzw1b/2wKJnltsiajeNUW/adFCuF/s Jul 2 00:46:15.495366 sshd[2010]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 00:46:15.513911 systemd[1]: Created slice user-500.slice. Jul 2 00:46:15.516381 systemd[1]: Starting user-runtime-dir@500.service... Jul 2 00:46:15.524506 systemd-logind[1804]: New session 1 of user core. Jul 2 00:46:15.536032 systemd[1]: Finished user-runtime-dir@500.service. Jul 2 00:46:15.539308 systemd[1]: Starting user@500.service... Jul 2 00:46:15.547884 (systemd)[2013]: pam_unix(systemd-user:session): session opened for user core(uid=500) by (uid=0) Jul 2 00:46:15.736606 systemd[2013]: Queued start job for default target default.target. Jul 2 00:46:15.738754 systemd[2013]: Reached target paths.target. Jul 2 00:46:15.738972 systemd[2013]: Reached target sockets.target. Jul 2 00:46:15.739142 systemd[2013]: Reached target timers.target. Jul 2 00:46:15.739298 systemd[2013]: Reached target basic.target. Jul 2 00:46:15.739546 systemd[2013]: Reached target default.target. Jul 2 00:46:15.739641 systemd[1]: Started user@500.service. Jul 2 00:46:15.741124 systemd[2013]: Startup finished in 180ms. Jul 2 00:46:15.741757 systemd[1]: Started session-1.scope. Jul 2 00:46:15.895552 systemd[1]: Started sshd@1-172.31.22.203:22-139.178.89.65:53120.service. Jul 2 00:46:16.070765 sshd[2022]: Accepted publickey for core from 139.178.89.65 port 53120 ssh2: RSA SHA256:8y6JErBds/WgSuzw1b/2wKJnltsiajeNUW/adFCuF/s Jul 2 00:46:16.073942 sshd[2022]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 00:46:16.082971 systemd-logind[1804]: New session 2 of user core. Jul 2 00:46:16.083972 systemd[1]: Started session-2.scope. Jul 2 00:46:16.216020 sshd[2022]: pam_unix(sshd:session): session closed for user core Jul 2 00:46:16.221482 systemd-logind[1804]: Session 2 logged out. Waiting for processes to exit. Jul 2 00:46:16.224130 systemd[1]: session-2.scope: Deactivated successfully. Jul 2 00:46:16.225206 systemd[1]: sshd@1-172.31.22.203:22-139.178.89.65:53120.service: Deactivated successfully. Jul 2 00:46:16.227196 systemd-logind[1804]: Removed session 2. Jul 2 00:46:16.245182 systemd[1]: Started sshd@2-172.31.22.203:22-139.178.89.65:53134.service. Jul 2 00:46:16.421141 sshd[2028]: Accepted publickey for core from 139.178.89.65 port 53134 ssh2: RSA SHA256:8y6JErBds/WgSuzw1b/2wKJnltsiajeNUW/adFCuF/s Jul 2 00:46:16.424186 sshd[2028]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 00:46:16.432932 systemd[1]: Started session-3.scope. Jul 2 00:46:16.434508 systemd-logind[1804]: New session 3 of user core. Jul 2 00:46:16.556639 sshd[2028]: pam_unix(sshd:session): session closed for user core Jul 2 00:46:16.562642 systemd[1]: sshd@2-172.31.22.203:22-139.178.89.65:53134.service: Deactivated successfully. Jul 2 00:46:16.562943 systemd-logind[1804]: Session 3 logged out. Waiting for processes to exit. Jul 2 00:46:16.563827 systemd[1]: session-3.scope: Deactivated successfully. Jul 2 00:46:16.565885 systemd-logind[1804]: Removed session 3. Jul 2 00:46:16.584533 systemd[1]: Started sshd@3-172.31.22.203:22-139.178.89.65:53150.service. Jul 2 00:46:16.758102 sshd[2034]: Accepted publickey for core from 139.178.89.65 port 53150 ssh2: RSA SHA256:8y6JErBds/WgSuzw1b/2wKJnltsiajeNUW/adFCuF/s Jul 2 00:46:16.760266 sshd[2034]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 00:46:16.768402 systemd-logind[1804]: New session 4 of user core. Jul 2 00:46:16.769259 systemd[1]: Started session-4.scope. Jul 2 00:46:16.900126 sshd[2034]: pam_unix(sshd:session): session closed for user core Jul 2 00:46:16.905976 systemd-logind[1804]: Session 4 logged out. Waiting for processes to exit. Jul 2 00:46:16.906645 systemd[1]: sshd@3-172.31.22.203:22-139.178.89.65:53150.service: Deactivated successfully. Jul 2 00:46:16.907992 systemd[1]: session-4.scope: Deactivated successfully. Jul 2 00:46:16.909785 systemd-logind[1804]: Removed session 4. Jul 2 00:46:16.930385 systemd[1]: Started sshd@4-172.31.22.203:22-139.178.89.65:53164.service. Jul 2 00:46:17.109658 sshd[2040]: Accepted publickey for core from 139.178.89.65 port 53164 ssh2: RSA SHA256:8y6JErBds/WgSuzw1b/2wKJnltsiajeNUW/adFCuF/s Jul 2 00:46:17.112235 sshd[2040]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 00:46:17.121851 systemd-logind[1804]: New session 5 of user core. Jul 2 00:46:17.122063 systemd[1]: Started session-5.scope. Jul 2 00:46:17.272292 sudo[2043]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Jul 2 00:46:17.272894 sudo[2043]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Jul 2 00:46:17.288599 dbus-daemon[1796]: avc: received setenforce notice (enforcing=1) Jul 2 00:46:17.291451 sudo[2043]: pam_unix(sudo:session): session closed for user root Jul 2 00:46:17.316837 sshd[2040]: pam_unix(sshd:session): session closed for user core Jul 2 00:46:17.323519 systemd[1]: sshd@4-172.31.22.203:22-139.178.89.65:53164.service: Deactivated successfully. Jul 2 00:46:17.324820 systemd[1]: session-5.scope: Deactivated successfully. Jul 2 00:46:17.326309 systemd-logind[1804]: Session 5 logged out. Waiting for processes to exit. Jul 2 00:46:17.328158 systemd-logind[1804]: Removed session 5. Jul 2 00:46:17.344519 systemd[1]: Started sshd@5-172.31.22.203:22-139.178.89.65:53168.service. Jul 2 00:46:17.518665 sshd[2047]: Accepted publickey for core from 139.178.89.65 port 53168 ssh2: RSA SHA256:8y6JErBds/WgSuzw1b/2wKJnltsiajeNUW/adFCuF/s Jul 2 00:46:17.520777 sshd[2047]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 00:46:17.529506 systemd[1]: Started session-6.scope. Jul 2 00:46:17.530358 systemd-logind[1804]: New session 6 of user core. Jul 2 00:46:17.638784 sudo[2051]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Jul 2 00:46:17.639836 sudo[2051]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Jul 2 00:46:17.645472 sudo[2051]: pam_unix(sudo:session): session closed for user root Jul 2 00:46:17.655049 sudo[2050]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/bin/systemctl restart audit-rules Jul 2 00:46:17.655686 sudo[2050]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Jul 2 00:46:17.673683 systemd[1]: Stopping audit-rules.service... Jul 2 00:46:17.673000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Jul 2 00:46:17.675718 auditctl[2054]: No rules Jul 2 00:46:17.677064 kernel: kauditd_printk_skb: 117 callbacks suppressed Jul 2 00:46:17.677126 kernel: audit: type=1305 audit(1719881177.673:207): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Jul 2 00:46:17.678884 systemd[1]: audit-rules.service: Deactivated successfully. Jul 2 00:46:17.679239 systemd[1]: Stopped audit-rules.service. Jul 2 00:46:17.673000 audit[2054]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc4c3d610 a2=420 a3=0 items=0 ppid=1 pid=2054 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:17.686727 systemd[1]: Starting audit-rules.service... Jul 2 00:46:17.691768 kernel: audit: type=1300 audit(1719881177.673:207): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffc4c3d610 a2=420 a3=0 items=0 ppid=1 pid=2054 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/sbin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:17.673000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D44 Jul 2 00:46:17.695896 kernel: audit: type=1327 audit(1719881177.673:207): proctitle=2F7362696E2F617564697463746C002D44 Jul 2 00:46:17.677000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.703366 kernel: audit: type=1131 audit(1719881177.677:208): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.722738 augenrules[2071]: No rules Jul 2 00:46:17.723000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.724383 systemd[1]: Finished audit-rules.service. Jul 2 00:46:17.726631 sudo[2050]: pam_unix(sudo:session): session closed for user root Jul 2 00:46:17.725000 audit[2050]: USER_END pid=2050 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.740134 kernel: audit: type=1130 audit(1719881177.723:209): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.740207 kernel: audit: type=1106 audit(1719881177.725:210): pid=2050 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.740251 kernel: audit: type=1104 audit(1719881177.725:211): pid=2050 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.725000 audit[2050]: CRED_DISP pid=2050 uid=500 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.754731 sshd[2047]: pam_unix(sshd:session): session closed for user core Jul 2 00:46:17.755000 audit[2047]: USER_END pid=2047 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:17.768496 systemd[1]: sshd@5-172.31.22.203:22-139.178.89.65:53168.service: Deactivated successfully. Jul 2 00:46:17.755000 audit[2047]: CRED_DISP pid=2047 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:17.777264 kernel: audit: type=1106 audit(1719881177.755:212): pid=2047 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:17.777433 kernel: audit: type=1104 audit(1719881177.755:213): pid=2047 uid=0 auid=500 ses=6 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:17.771257 systemd[1]: session-6.scope: Deactivated successfully. Jul 2 00:46:17.767000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.22.203:22-139.178.89.65:53168 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.787199 kernel: audit: type=1131 audit(1719881177.767:214): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@5-172.31.22.203:22-139.178.89.65:53168 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.786282 systemd-logind[1804]: Session 6 logged out. Waiting for processes to exit. Jul 2 00:46:17.789000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.22.203:22-139.178.89.65:38186 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:17.789862 systemd[1]: Started sshd@6-172.31.22.203:22-139.178.89.65:38186.service. Jul 2 00:46:17.793534 systemd-logind[1804]: Removed session 6. Jul 2 00:46:17.963000 audit[2077]: USER_ACCT pid=2077 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:17.965142 sshd[2077]: Accepted publickey for core from 139.178.89.65 port 38186 ssh2: RSA SHA256:8y6JErBds/WgSuzw1b/2wKJnltsiajeNUW/adFCuF/s Jul 2 00:46:17.965000 audit[2077]: CRED_ACQ pid=2077 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:17.965000 audit[2077]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=5 a1=ffffd6f8b790 a2=3 a3=1 items=0 ppid=1 pid=2077 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=7 comm="sshd" exe="/usr/sbin/sshd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:17.965000 audit: PROCTITLE proctitle=737368643A20636F7265205B707269765D Jul 2 00:46:17.968169 sshd[2077]: pam_unix(sshd:session): session opened for user core(uid=500) by (uid=0) Jul 2 00:46:17.975437 systemd-logind[1804]: New session 7 of user core. Jul 2 00:46:17.977210 systemd[1]: Started session-7.scope. Jul 2 00:46:17.984000 audit[2077]: USER_START pid=2077 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:17.987000 audit[2079]: CRED_ACQ pid=2079 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:18.082000 audit[2080]: USER_ACCT pid=2080 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock,pam_permit acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:18.084521 sudo[2080]: core : PWD=/home/core ; USER=root ; COMMAND=/home/core/install.sh Jul 2 00:46:18.083000 audit[2080]: CRED_REFR pid=2080 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:18.085093 sudo[2080]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=500) Jul 2 00:46:18.086000 audit[2080]: USER_START pid=2080 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:18.111806 systemd[1]: Starting coreos-metadata.service... Jul 2 00:46:18.284863 coreos-metadata[2084]: Jul 02 00:46:18.284 INFO Putting http://169.254.169.254/latest/api/token: Attempt #1 Jul 2 00:46:18.285972 coreos-metadata[2084]: Jul 02 00:46:18.285 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-id: Attempt #1 Jul 2 00:46:18.287102 coreos-metadata[2084]: Jul 02 00:46:18.286 INFO Fetch successful Jul 2 00:46:18.287560 coreos-metadata[2084]: Jul 02 00:46:18.287 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/instance-type: Attempt #1 Jul 2 00:46:18.288005 coreos-metadata[2084]: Jul 02 00:46:18.287 INFO Fetch successful Jul 2 00:46:18.288744 coreos-metadata[2084]: Jul 02 00:46:18.288 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/local-ipv4: Attempt #1 Jul 2 00:46:18.289142 coreos-metadata[2084]: Jul 02 00:46:18.288 INFO Fetch successful Jul 2 00:46:18.289875 coreos-metadata[2084]: Jul 02 00:46:18.289 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-ipv4: Attempt #1 Jul 2 00:46:18.290320 coreos-metadata[2084]: Jul 02 00:46:18.290 INFO Fetch successful Jul 2 00:46:18.290800 coreos-metadata[2084]: Jul 02 00:46:18.290 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/placement/availability-zone: Attempt #1 Jul 2 00:46:18.291250 coreos-metadata[2084]: Jul 02 00:46:18.290 INFO Fetch successful Jul 2 00:46:18.291766 coreos-metadata[2084]: Jul 02 00:46:18.291 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/hostname: Attempt #1 Jul 2 00:46:18.292183 coreos-metadata[2084]: Jul 02 00:46:18.291 INFO Fetch successful Jul 2 00:46:18.292683 coreos-metadata[2084]: Jul 02 00:46:18.292 INFO Fetching http://169.254.169.254/2019-10-01/meta-data/public-hostname: Attempt #1 Jul 2 00:46:18.293145 coreos-metadata[2084]: Jul 02 00:46:18.292 INFO Fetch successful Jul 2 00:46:18.293489 coreos-metadata[2084]: Jul 02 00:46:18.293 INFO Fetching http://169.254.169.254/2019-10-01/dynamic/instance-identity/document: Attempt #1 Jul 2 00:46:18.293791 coreos-metadata[2084]: Jul 02 00:46:18.293 INFO Fetch successful Jul 2 00:46:18.308293 systemd[1]: Finished coreos-metadata.service. Jul 2 00:46:18.308000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=coreos-metadata comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:19.596386 systemd[1]: kubelet.service: Scheduled restart job, restart counter is at 1. Jul 2 00:46:19.597301 systemd[1]: Stopped kubelet.service. Jul 2 00:46:19.597552 systemd[1]: kubelet.service: Consumed 1.493s CPU time. Jul 2 00:46:19.596000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:19.596000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:19.600902 systemd[1]: Starting kubelet.service... Jul 2 00:46:19.603861 systemd[1]: kubelet.service: Control process exited, code=killed, status=15/TERM Jul 2 00:46:19.604208 systemd[1]: kubelet.service: Failed with result 'signal'. Jul 2 00:46:19.604840 systemd[1]: Stopped kubelet.service. Jul 2 00:46:19.604000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=failed' Jul 2 00:46:19.615568 systemd[1]: Starting kubelet.service... Jul 2 00:46:19.647427 systemd[1]: Reloading. Jul 2 00:46:19.811616 /usr/lib/systemd/system-generators/torcx-generator[2147]: time="2024-07-02T00:46:19Z" level=debug msg="common configuration parsed" base_dir=/var/lib/torcx/ conf_dir=/etc/torcx/ run_dir=/run/torcx/ store_paths="[/usr/share/torcx/store /usr/share/oem/torcx/store/3510.3.5 /usr/share/oem/torcx/store /var/lib/torcx/store/3510.3.5 /var/lib/torcx/store]" Jul 2 00:46:19.811679 /usr/lib/systemd/system-generators/torcx-generator[2147]: time="2024-07-02T00:46:19Z" level=info msg="torcx already run" Jul 2 00:46:19.981350 systemd[1]: /usr/lib/systemd/system/locksmithd.service:8: Unit uses CPUShares=; please use CPUWeight= instead. Support for CPUShares= will be removed soon. Jul 2 00:46:19.981407 systemd[1]: /usr/lib/systemd/system/locksmithd.service:9: Unit uses MemoryLimit=; please use MemoryMax= instead. Support for MemoryLimit= will be removed soon. Jul 2 00:46:20.024906 systemd[1]: /run/systemd/system/docker.socket:8: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 2 00:46:20.202000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.202000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit: BPF prog-id=49 op=LOAD Jul 2 00:46:20.203000 audit: BPF prog-id=44 op=UNLOAD Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit: BPF prog-id=50 op=LOAD Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.203000 audit: BPF prog-id=51 op=LOAD Jul 2 00:46:20.203000 audit: BPF prog-id=45 op=UNLOAD Jul 2 00:46:20.203000 audit: BPF prog-id=46 op=UNLOAD Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.206000 audit: BPF prog-id=52 op=LOAD Jul 2 00:46:20.206000 audit: BPF prog-id=41 op=UNLOAD Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit: BPF prog-id=53 op=LOAD Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.207000 audit: BPF prog-id=54 op=LOAD Jul 2 00:46:20.207000 audit: BPF prog-id=42 op=UNLOAD Jul 2 00:46:20.207000 audit: BPF prog-id=43 op=UNLOAD Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit: BPF prog-id=55 op=LOAD Jul 2 00:46:20.209000 audit: BPF prog-id=30 op=UNLOAD Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.209000 audit: BPF prog-id=56 op=LOAD Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.210000 audit: BPF prog-id=57 op=LOAD Jul 2 00:46:20.210000 audit: BPF prog-id=31 op=UNLOAD Jul 2 00:46:20.210000 audit: BPF prog-id=32 op=UNLOAD Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.212000 audit: BPF prog-id=58 op=LOAD Jul 2 00:46:20.212000 audit: BPF prog-id=33 op=UNLOAD Jul 2 00:46:20.212000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit: BPF prog-id=59 op=LOAD Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.213000 audit: BPF prog-id=60 op=LOAD Jul 2 00:46:20.213000 audit: BPF prog-id=34 op=UNLOAD Jul 2 00:46:20.213000 audit: BPF prog-id=35 op=UNLOAD Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit: BPF prog-id=61 op=LOAD Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.214000 audit: BPF prog-id=62 op=LOAD Jul 2 00:46:20.214000 audit: BPF prog-id=36 op=UNLOAD Jul 2 00:46:20.214000 audit: BPF prog-id=37 op=UNLOAD Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.216000 audit: BPF prog-id=63 op=LOAD Jul 2 00:46:20.216000 audit: BPF prog-id=39 op=UNLOAD Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.221000 audit: BPF prog-id=64 op=LOAD Jul 2 00:46:20.221000 audit: BPF prog-id=38 op=UNLOAD Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.224000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.225000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.225000 audit: BPF prog-id=65 op=LOAD Jul 2 00:46:20.225000 audit: BPF prog-id=40 op=UNLOAD Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:20.228000 audit: BPF prog-id=66 op=LOAD Jul 2 00:46:20.228000 audit: BPF prog-id=47 op=UNLOAD Jul 2 00:46:20.277611 systemd[1]: Started kubelet.service. Jul 2 00:46:20.276000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:20.283702 systemd[1]: Stopping kubelet.service... Jul 2 00:46:20.285963 systemd[1]: kubelet.service: Deactivated successfully. Jul 2 00:46:20.286405 systemd[1]: Stopped kubelet.service. Jul 2 00:46:20.285000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:20.289578 systemd[1]: Starting kubelet.service... Jul 2 00:46:20.795000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kubelet comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:20.796415 systemd[1]: Started kubelet.service. Jul 2 00:46:20.890618 kubelet[2207]: Flag --container-runtime-endpoint has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Jul 2 00:46:20.890618 kubelet[2207]: Flag --pod-infra-container-image has been deprecated, will be removed in a future release. Image garbage collector will get sandbox image information from CRI. Jul 2 00:46:20.891261 kubelet[2207]: Flag --volume-plugin-dir has been deprecated, This parameter should be set via the config file specified by the Kubelet's --config flag. See https://kubernetes.io/docs/tasks/administer-cluster/kubelet-config-file/ for more information. Jul 2 00:46:20.892551 kubelet[2207]: I0702 00:46:20.892457 2207 server.go:204] "--pod-infra-container-image will not be pruned by the image garbage collector in kubelet and should also be set in the remote runtime" Jul 2 00:46:22.388637 kubelet[2207]: I0702 00:46:22.388596 2207 server.go:487] "Kubelet version" kubeletVersion="v1.29.2" Jul 2 00:46:22.389437 kubelet[2207]: I0702 00:46:22.389398 2207 server.go:489] "Golang settings" GOGC="" GOMAXPROCS="" GOTRACEBACK="" Jul 2 00:46:22.389778 kubelet[2207]: I0702 00:46:22.389748 2207 server.go:919] "Client rotation is on, will bootstrap in background" Jul 2 00:46:22.441524 kubelet[2207]: I0702 00:46:22.441451 2207 dynamic_cafile_content.go:157] "Starting controller" name="client-ca-bundle::/etc/kubernetes/pki/ca.crt" Jul 2 00:46:22.472578 kubelet[2207]: I0702 00:46:22.472531 2207 server.go:745] "--cgroups-per-qos enabled, but --cgroup-root was not specified. defaulting to /" Jul 2 00:46:22.473257 kubelet[2207]: I0702 00:46:22.473234 2207 container_manager_linux.go:265] "Container manager verified user specified cgroup-root exists" cgroupRoot=[] Jul 2 00:46:22.473675 kubelet[2207]: I0702 00:46:22.473647 2207 container_manager_linux.go:270] "Creating Container Manager object based on Node Config" nodeConfig={"RuntimeCgroupsName":"","SystemCgroupsName":"","KubeletCgroupsName":"","KubeletOOMScoreAdj":-999,"ContainerRuntime":"","CgroupsPerQOS":true,"CgroupRoot":"/","CgroupDriver":"systemd","KubeletRootDir":"/var/lib/kubelet","ProtectKernelDefaults":false,"KubeReservedCgroupName":"","SystemReservedCgroupName":"","ReservedSystemCPUs":{},"EnforceNodeAllocatable":{"pods":{}},"KubeReserved":null,"SystemReserved":null,"HardEvictionThresholds":[{"Signal":"memory.available","Operator":"LessThan","Value":{"Quantity":"100Mi","Percentage":0},"GracePeriod":0,"MinReclaim":null},{"Signal":"nodefs.available","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.1},"GracePeriod":0,"MinReclaim":null},{"Signal":"nodefs.inodesFree","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.05},"GracePeriod":0,"MinReclaim":null},{"Signal":"imagefs.available","Operator":"LessThan","Value":{"Quantity":null,"Percentage":0.15},"GracePeriod":0,"MinReclaim":null}],"QOSReserved":{},"CPUManagerPolicy":"none","CPUManagerPolicyOptions":null,"TopologyManagerScope":"container","CPUManagerReconcilePeriod":10000000000,"ExperimentalMemoryManagerPolicy":"None","ExperimentalMemoryManagerReservedMemory":null,"PodPidsLimit":-1,"EnforceCPULimits":true,"CPUCFSQuotaPeriod":100000000,"TopologyManagerPolicy":"none","TopologyManagerPolicyOptions":null} Jul 2 00:46:22.473905 kubelet[2207]: I0702 00:46:22.473883 2207 topology_manager.go:138] "Creating topology manager with none policy" Jul 2 00:46:22.474029 kubelet[2207]: I0702 00:46:22.474009 2207 container_manager_linux.go:301] "Creating device plugin manager" Jul 2 00:46:22.476683 kubelet[2207]: I0702 00:46:22.476652 2207 state_mem.go:36] "Initialized new in-memory state store" Jul 2 00:46:22.481589 kubelet[2207]: I0702 00:46:22.481544 2207 kubelet.go:396] "Attempting to sync node with API server" Jul 2 00:46:22.482240 kubelet[2207]: I0702 00:46:22.482209 2207 kubelet.go:301] "Adding static pod path" path="/etc/kubernetes/manifests" Jul 2 00:46:22.482485 kubelet[2207]: I0702 00:46:22.482462 2207 kubelet.go:312] "Adding apiserver pod source" Jul 2 00:46:22.482623 kubelet[2207]: I0702 00:46:22.482602 2207 apiserver.go:42] "Waiting for node sync before watching apiserver pods" Jul 2 00:46:22.483007 kubelet[2207]: E0702 00:46:22.482957 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:22.483108 kubelet[2207]: E0702 00:46:22.483027 2207 file.go:98] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:22.483913 kubelet[2207]: I0702 00:46:22.483880 2207 kuberuntime_manager.go:258] "Container runtime initialized" containerRuntime="containerd" version="1.6.16" apiVersion="v1" Jul 2 00:46:22.484684 kubelet[2207]: I0702 00:46:22.484654 2207 kubelet.go:809] "Not starting ClusterTrustBundle informer because we are in static kubelet mode" Jul 2 00:46:22.484982 kubelet[2207]: W0702 00:46:22.484961 2207 probe.go:268] Flexvolume plugin directory at /opt/libexec/kubernetes/kubelet-plugins/volume/exec/ does not exist. Recreating. Jul 2 00:46:22.487180 kubelet[2207]: I0702 00:46:22.487146 2207 server.go:1256] "Started kubelet" Jul 2 00:46:22.487000 audit[2207]: AVC avc: denied { mac_admin } for pid=2207 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:22.487000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Jul 2 00:46:22.487000 audit[2207]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000c68a20 a1=400099f8c0 a2=4000c689f0 a3=25 items=0 ppid=1 pid=2207 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/usr/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.487000 audit: PROCTITLE proctitle=2F7573722F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Jul 2 00:46:22.490078 kubelet[2207]: I0702 00:46:22.490045 2207 kubelet.go:1417] "Unprivileged containerized plugins might not work, could not set selinux context on plugin registration dir" path="/var/lib/kubelet/plugins_registry" err="setxattr /var/lib/kubelet/plugins_registry: invalid argument" Jul 2 00:46:22.488000 audit[2207]: AVC avc: denied { mac_admin } for pid=2207 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:22.488000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Jul 2 00:46:22.488000 audit[2207]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000145d00 a1=400099f8d8 a2=4000c68ab0 a3=25 items=0 ppid=1 pid=2207 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/usr/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.488000 audit: PROCTITLE proctitle=2F7573722F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Jul 2 00:46:22.490674 kubelet[2207]: I0702 00:46:22.490645 2207 kubelet.go:1421] "Unprivileged containerized plugins might not work, could not set selinux context on plugins dir" path="/var/lib/kubelet/plugins" err="setxattr /var/lib/kubelet/plugins: invalid argument" Jul 2 00:46:22.496171 kubelet[2207]: I0702 00:46:22.496109 2207 fs_resource_analyzer.go:67] "Starting FS ResourceAnalyzer" Jul 2 00:46:22.504216 kubelet[2207]: I0702 00:46:22.504026 2207 server.go:162] "Starting to listen" address="0.0.0.0" port=10250 Jul 2 00:46:22.505229 kubelet[2207]: I0702 00:46:22.505157 2207 volume_manager.go:291] "Starting Kubelet Volume Manager" Jul 2 00:46:22.516166 kubelet[2207]: I0702 00:46:22.506859 2207 server.go:461] "Adding debug handlers to kubelet server" Jul 2 00:46:22.523244 kubelet[2207]: I0702 00:46:22.506981 2207 ratelimit.go:55] "Setting rate limiting for endpoint" service="podresources" qps=100 burstTokens=10 Jul 2 00:46:22.523829 kubelet[2207]: I0702 00:46:22.523799 2207 server.go:233] "Starting to serve the podresources API" endpoint="unix:/var/lib/kubelet/pod-resources/kubelet.sock" Jul 2 00:46:22.523996 kubelet[2207]: I0702 00:46:22.511830 2207 desired_state_of_world_populator.go:151] "Desired state populator starts to run" Jul 2 00:46:22.524705 kubelet[2207]: I0702 00:46:22.524676 2207 reconciler_new.go:29] "Reconciler: start to sync state" Jul 2 00:46:22.530799 kubelet[2207]: E0702 00:46:22.530740 2207 event.go:346] "Server rejected event (will not retry!)" err="events is forbidden: User \"system:anonymous\" cannot create resource \"events\" in API group \"\" in the namespace \"default\"" event="&Event{ObjectMeta:{172.31.22.203.17de3ed2ba051e5b default 0 0001-01-01 00:00:00 +0000 UTC map[] map[] [] [] []},InvolvedObject:ObjectReference{Kind:Node,Namespace:,Name:172.31.22.203,UID:172.31.22.203,APIVersion:,ResourceVersion:,FieldPath:,},Reason:Starting,Message:Starting kubelet.,Source:EventSource{Component:kubelet,Host:172.31.22.203,},FirstTimestamp:2024-07-02 00:46:22.487060059 +0000 UTC m=+1.681004817,LastTimestamp:2024-07-02 00:46:22.487060059 +0000 UTC m=+1.681004817,Count:1,Type:Normal,EventTime:0001-01-01 00:00:00 +0000 UTC,Series:nil,Action:,Related:nil,ReportingController:kubelet,ReportingInstance:172.31.22.203,}" Jul 2 00:46:22.531005 kubelet[2207]: W0702 00:46:22.530879 2207 reflector.go:539] vendor/k8s.io/client-go/informers/factory.go:159: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Jul 2 00:46:22.531005 kubelet[2207]: E0702 00:46:22.530919 2207 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:159: Failed to watch *v1.Service: failed to list *v1.Service: services is forbidden: User "system:anonymous" cannot list resource "services" in API group "" at the cluster scope Jul 2 00:46:22.531159 kubelet[2207]: W0702 00:46:22.531144 2207 reflector.go:539] vendor/k8s.io/client-go/informers/factory.go:159: failed to list *v1.Node: nodes "172.31.22.203" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Jul 2 00:46:22.531222 kubelet[2207]: E0702 00:46:22.531178 2207 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:159: Failed to watch *v1.Node: failed to list *v1.Node: nodes "172.31.22.203" is forbidden: User "system:anonymous" cannot list resource "nodes" in API group "" at the cluster scope Jul 2 00:46:22.541489 kubelet[2207]: E0702 00:46:22.541427 2207 kubelet.go:1462] "Image garbage collection failed once. Stats initialization may not have completed yet" err="invalid capacity 0 on image filesystem" Jul 2 00:46:22.541489 kubelet[2207]: W0702 00:46:22.541433 2207 reflector.go:539] vendor/k8s.io/client-go/informers/factory.go:159: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Jul 2 00:46:22.541788 kubelet[2207]: E0702 00:46:22.541507 2207 reflector.go:147] vendor/k8s.io/client-go/informers/factory.go:159: Failed to watch *v1.CSIDriver: failed to list *v1.CSIDriver: csidrivers.storage.k8s.io is forbidden: User "system:anonymous" cannot list resource "csidrivers" in API group "storage.k8s.io" at the cluster scope Jul 2 00:46:22.542139 kubelet[2207]: E0702 00:46:22.542098 2207 controller.go:145] "Failed to ensure lease exists, will retry" err="leases.coordination.k8s.io \"172.31.22.203\" is forbidden: User \"system:anonymous\" cannot get resource \"leases\" in API group \"coordination.k8s.io\" in the namespace \"kube-node-lease\"" interval="200ms" Jul 2 00:46:22.542399 kubelet[2207]: I0702 00:46:22.542249 2207 factory.go:221] Registration of the containerd container factory successfully Jul 2 00:46:22.542602 kubelet[2207]: I0702 00:46:22.542572 2207 factory.go:221] Registration of the systemd container factory successfully Jul 2 00:46:22.542924 kubelet[2207]: I0702 00:46:22.542882 2207 factory.go:219] Registration of the crio container factory failed: Get "http://%2Fvar%2Frun%2Fcrio%2Fcrio.sock/info": dial unix /var/run/crio/crio.sock: connect: no such file or directory Jul 2 00:46:22.563800 kubelet[2207]: E0702 00:46:22.563735 2207 event.go:346] "Server rejected event (will not retry!)" err="events is forbidden: User \"system:anonymous\" cannot create resource \"events\" in API group \"\" in the namespace \"default\"" event="&Event{ObjectMeta:{172.31.22.203.17de3ed2bd423e5c default 0 0001-01-01 00:00:00 +0000 UTC map[] map[] [] [] []},InvolvedObject:ObjectReference{Kind:Node,Namespace:,Name:172.31.22.203,UID:172.31.22.203,APIVersion:,ResourceVersion:,FieldPath:,},Reason:InvalidDiskCapacity,Message:invalid capacity 0 on image filesystem,Source:EventSource{Component:kubelet,Host:172.31.22.203,},FirstTimestamp:2024-07-02 00:46:22.541397596 +0000 UTC m=+1.735342378,LastTimestamp:2024-07-02 00:46:22.541397596 +0000 UTC m=+1.735342378,Count:1,Type:Warning,EventTime:0001-01-01 00:00:00 +0000 UTC,Series:nil,Action:,Related:nil,ReportingController:kubelet,ReportingInstance:172.31.22.203,}" Jul 2 00:46:22.572397 kubelet[2207]: I0702 00:46:22.571524 2207 cpu_manager.go:214] "Starting CPU manager" policy="none" Jul 2 00:46:22.572397 kubelet[2207]: I0702 00:46:22.571575 2207 cpu_manager.go:215] "Reconciling" reconcilePeriod="10s" Jul 2 00:46:22.572397 kubelet[2207]: I0702 00:46:22.571615 2207 state_mem.go:36] "Initialized new in-memory state store" Jul 2 00:46:22.573000 audit[2220]: NETFILTER_CFG table=mangle:2 family=2 entries=2 op=nft_register_chain pid=2220 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.573000 audit[2220]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffec2eea10 a2=0 a3=1 items=0 ppid=2207 pid=2220 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.573000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Jul 2 00:46:22.576000 audit[2224]: NETFILTER_CFG table=filter:3 family=2 entries=2 op=nft_register_chain pid=2224 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.576000 audit[2224]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=132 a0=3 a1=ffffc6e1a9a0 a2=0 a3=1 items=0 ppid=2207 pid=2224 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.576000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Jul 2 00:46:22.585982 kubelet[2207]: I0702 00:46:22.585935 2207 policy_none.go:49] "None policy: Start" Jul 2 00:46:22.587718 kubelet[2207]: I0702 00:46:22.587666 2207 memory_manager.go:170] "Starting memorymanager" policy="None" Jul 2 00:46:22.587872 kubelet[2207]: I0702 00:46:22.587751 2207 state_mem.go:35] "Initializing new in-memory state store" Jul 2 00:46:22.614955 systemd[1]: Created slice kubepods.slice. Jul 2 00:46:22.580000 audit[2226]: NETFILTER_CFG table=filter:4 family=2 entries=2 op=nft_register_chain pid=2226 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.580000 audit[2226]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffe3a4dcd0 a2=0 a3=1 items=0 ppid=2207 pid=2226 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.580000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Jul 2 00:46:22.625222 kubelet[2207]: I0702 00:46:22.625157 2207 kubelet_node_status.go:73] "Attempting to register node" node="172.31.22.203" Jul 2 00:46:22.628000 audit[2231]: NETFILTER_CFG table=filter:5 family=2 entries=2 op=nft_register_chain pid=2231 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.628000 audit[2231]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffd3c0e0c0 a2=0 a3=1 items=0 ppid=2207 pid=2231 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.628000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Jul 2 00:46:22.636637 kubelet[2207]: I0702 00:46:22.636584 2207 kubelet_node_status.go:76] "Successfully registered node" node="172.31.22.203" Jul 2 00:46:22.636914 systemd[1]: Created slice kubepods-burstable.slice. Jul 2 00:46:22.643622 systemd[1]: Created slice kubepods-besteffort.slice. Jul 2 00:46:22.657536 kubelet[2207]: I0702 00:46:22.657501 2207 manager.go:479] "Failed to read data from checkpoint" checkpoint="kubelet_internal_checkpoint" err="checkpoint is not found" Jul 2 00:46:22.656000 audit[2207]: AVC avc: denied { mac_admin } for pid=2207 comm="kubelet" capability=33 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:22.656000 audit: SELINUX_ERR op=setxattr invalid_context="system_u:object_r:container_file_t:s0" Jul 2 00:46:22.656000 audit[2207]: SYSCALL arch=c00000b7 syscall=5 success=no exit=-22 a0=4000b72450 a1=4000abca20 a2=4000b72420 a3=25 items=0 ppid=1 pid=2207 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="kubelet" exe="/usr/bin/kubelet" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.656000 audit: PROCTITLE proctitle=2F7573722F62696E2F6B7562656C6574002D2D626F6F7473747261702D6B756265636F6E6669673D2F6574632F6B756265726E657465732F626F6F7473747261702D6B7562656C65742E636F6E66002D2D6B756265636F6E6669673D2F6574632F6B756265726E657465732F6B7562656C65742E636F6E66002D2D636F6E6669 Jul 2 00:46:22.660229 kubelet[2207]: I0702 00:46:22.659966 2207 server.go:88] "Unprivileged containerized plugins might not work. Could not set selinux context on socket dir" path="/var/lib/kubelet/device-plugins/" err="setxattr /var/lib/kubelet/device-plugins/: invalid argument" Jul 2 00:46:22.660421 kubelet[2207]: I0702 00:46:22.660315 2207 plugin_manager.go:118] "Starting Kubelet Plugin Manager" Jul 2 00:46:22.666327 kubelet[2207]: E0702 00:46:22.666267 2207 eviction_manager.go:282] "Eviction manager: failed to get summary stats" err="failed to get node info: node \"172.31.22.203\" not found" Jul 2 00:46:22.703373 kubelet[2207]: E0702 00:46:22.703311 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:22.736000 audit[2236]: NETFILTER_CFG table=filter:6 family=2 entries=1 op=nft_register_rule pid=2236 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.739534 kernel: kauditd_printk_skb: 248 callbacks suppressed Jul 2 00:46:22.739638 kernel: audit: type=1325 audit(1719881182.736:444): table=filter:6 family=2 entries=1 op=nft_register_rule pid=2236 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.744556 kubelet[2207]: I0702 00:46:22.744507 2207 kubelet_network_linux.go:50] "Initialized iptables rules." protocol="IPv4" Jul 2 00:46:22.736000 audit[2236]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffd551ffa0 a2=0 a3=1 items=0 ppid=2207 pid=2236 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.754734 kernel: audit: type=1300 audit(1719881182.736:444): arch=c00000b7 syscall=211 success=yes exit=924 a0=3 a1=ffffd551ffa0 a2=0 a3=1 items=0 ppid=2207 pid=2236 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.754898 kubelet[2207]: I0702 00:46:22.754857 2207 kubelet_network_linux.go:50] "Initialized iptables rules." protocol="IPv6" Jul 2 00:46:22.754898 kubelet[2207]: I0702 00:46:22.754900 2207 status_manager.go:217] "Starting to sync pod status with apiserver" Jul 2 00:46:22.755093 kubelet[2207]: I0702 00:46:22.754929 2207 kubelet.go:2329] "Starting kubelet main sync loop" Jul 2 00:46:22.755093 kubelet[2207]: E0702 00:46:22.755081 2207 kubelet.go:2353] "Skipping pod synchronization" err="PLEG is not healthy: pleg has yet to be successful" Jul 2 00:46:22.764393 kernel: audit: type=1327 audit(1719881182.736:444): proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Jul 2 00:46:22.764513 kernel: audit: type=1325 audit(1719881182.743:445): table=mangle:7 family=10 entries=2 op=nft_register_chain pid=2237 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:22.736000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D41004B5542452D4649524557414C4C002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E7400626C6F636B20696E636F6D696E67206C6F63616C6E657420636F6E6E656374696F6E73002D2D647374003132372E302E302E302F38 Jul 2 00:46:22.743000 audit[2237]: NETFILTER_CFG table=mangle:7 family=10 entries=2 op=nft_register_chain pid=2237 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:22.743000 audit[2237]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffc8d00ad0 a2=0 a3=1 items=0 ppid=2207 pid=2237 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.779670 kernel: audit: type=1300 audit(1719881182.743:445): arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=ffffc8d00ad0 a2=0 a3=1 items=0 ppid=2207 pid=2237 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.779795 kernel: audit: type=1327 audit(1719881182.743:445): proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Jul 2 00:46:22.743000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D49505441424C45532D48494E54002D74006D616E676C65 Jul 2 00:46:22.743000 audit[2238]: NETFILTER_CFG table=mangle:8 family=2 entries=1 op=nft_register_chain pid=2238 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.789730 kernel: audit: type=1325 audit(1719881182.743:446): table=mangle:8 family=2 entries=1 op=nft_register_chain pid=2238 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.789797 kernel: audit: type=1300 audit(1719881182.743:446): arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffebd2720 a2=0 a3=1 items=0 ppid=2207 pid=2238 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.743000 audit[2238]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffffebd2720 a2=0 a3=1 items=0 ppid=2207 pid=2238 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.743000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Jul 2 00:46:22.804073 kubelet[2207]: E0702 00:46:22.804028 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:22.806856 kernel: audit: type=1327 audit(1719881182.743:446): proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Jul 2 00:46:22.806941 kernel: audit: type=1325 audit(1719881182.748:447): table=nat:9 family=2 entries=2 op=nft_register_chain pid=2239 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.748000 audit[2239]: NETFILTER_CFG table=nat:9 family=2 entries=2 op=nft_register_chain pid=2239 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.748000 audit[2239]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffebc41ea0 a2=0 a3=1 items=0 ppid=2207 pid=2239 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.748000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Jul 2 00:46:22.748000 audit[2240]: NETFILTER_CFG table=filter:10 family=2 entries=1 op=nft_register_chain pid=2240 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:22.748000 audit[2240]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd4a18610 a2=0 a3=1 items=0 ppid=2207 pid=2240 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.748000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Jul 2 00:46:22.758000 audit[2241]: NETFILTER_CFG table=mangle:11 family=10 entries=1 op=nft_register_chain pid=2241 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:22.758000 audit[2241]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffc0341fa0 a2=0 a3=1 items=0 ppid=2207 pid=2241 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.758000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006D616E676C65 Jul 2 00:46:22.760000 audit[2242]: NETFILTER_CFG table=nat:12 family=10 entries=2 op=nft_register_chain pid=2242 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:22.760000 audit[2242]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=128 a0=3 a1=ffffdd434630 a2=0 a3=1 items=0 ppid=2207 pid=2242 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.760000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D74006E6174 Jul 2 00:46:22.762000 audit[2243]: NETFILTER_CFG table=filter:13 family=10 entries=2 op=nft_register_chain pid=2243 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:22.762000 audit[2243]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=136 a0=3 a1=fffff26fa880 a2=0 a3=1 items=0 ppid=2207 pid=2243 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:22.762000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4B5542454C45542D43414E415259002D740066696C746572 Jul 2 00:46:22.904815 kubelet[2207]: E0702 00:46:22.904635 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.005815 kubelet[2207]: E0702 00:46:23.005746 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.106726 kubelet[2207]: E0702 00:46:23.106667 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.207735 kubelet[2207]: E0702 00:46:23.207602 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.308549 kubelet[2207]: E0702 00:46:23.308505 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.329839 sudo[2080]: pam_unix(sudo:session): session closed for user root Jul 2 00:46:23.328000 audit[2080]: USER_END pid=2080 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_unix,pam_permit,pam_systemd acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:23.328000 audit[2080]: CRED_DISP pid=2080 uid=500 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 2 00:46:23.353481 sshd[2077]: pam_unix(sshd:session): session closed for user core Jul 2 00:46:23.354000 audit[2077]: USER_END pid=2077 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_lastlog,pam_limits,pam_env,pam_unix,pam_permit,pam_systemd,pam_mail acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:23.354000 audit[2077]: CRED_DISP pid=2077 uid=0 auid=500 ses=7 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock,pam_unix acct="core" exe="/usr/sbin/sshd" hostname=139.178.89.65 addr=139.178.89.65 terminal=ssh res=success' Jul 2 00:46:23.358423 systemd[1]: session-7.scope: Deactivated successfully. Jul 2 00:46:23.359744 systemd[1]: sshd@6-172.31.22.203:22-139.178.89.65:38186.service: Deactivated successfully. Jul 2 00:46:23.358000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@6-172.31.22.203:22-139.178.89.65:38186 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:23.361595 systemd-logind[1804]: Session 7 logged out. Waiting for processes to exit. Jul 2 00:46:23.364094 systemd-logind[1804]: Removed session 7. Jul 2 00:46:23.394489 kubelet[2207]: I0702 00:46:23.394429 2207 transport.go:147] "Certificate rotation detected, shutting down client connections to start using new credentials" Jul 2 00:46:23.395070 kubelet[2207]: W0702 00:46:23.394663 2207 reflector.go:462] vendor/k8s.io/client-go/informers/factory.go:159: watch of *v1.RuntimeClass ended with: very short watch: vendor/k8s.io/client-go/informers/factory.go:159: Unexpected watch close - watch lasted less than a second and no items received Jul 2 00:46:23.409692 kubelet[2207]: E0702 00:46:23.409639 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.484197 kubelet[2207]: E0702 00:46:23.484040 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:23.510274 kubelet[2207]: E0702 00:46:23.510223 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.611515 kubelet[2207]: E0702 00:46:23.611464 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.712718 kubelet[2207]: E0702 00:46:23.712657 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.813499 kubelet[2207]: E0702 00:46:23.813328 2207 kubelet_node_status.go:462] "Error getting the current node from lister" err="node \"172.31.22.203\" not found" Jul 2 00:46:23.914641 kubelet[2207]: I0702 00:46:23.914608 2207 kuberuntime_manager.go:1529] "Updating runtime config through cri with podcidr" CIDR="192.168.1.0/24" Jul 2 00:46:23.915427 env[1818]: time="2024-07-02T00:46:23.915331086Z" level=info msg="No cni config template is specified, wait for other system components to drop the config." Jul 2 00:46:23.916320 kubelet[2207]: I0702 00:46:23.916273 2207 kubelet_network.go:61] "Updating Pod CIDR" originalPodCIDR="" newPodCIDR="192.168.1.0/24" Jul 2 00:46:24.484141 kubelet[2207]: I0702 00:46:24.484064 2207 apiserver.go:52] "Watching apiserver" Jul 2 00:46:24.484759 kubelet[2207]: E0702 00:46:24.484447 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:24.504880 kubelet[2207]: I0702 00:46:24.504833 2207 topology_manager.go:215] "Topology Admit Handler" podUID="cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc" podNamespace="calico-system" podName="calico-node-w5qg6" Jul 2 00:46:24.505072 kubelet[2207]: I0702 00:46:24.504973 2207 topology_manager.go:215] "Topology Admit Handler" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" podNamespace="calico-system" podName="csi-node-driver-w4f8j" Jul 2 00:46:24.505203 kubelet[2207]: I0702 00:46:24.505082 2207 topology_manager.go:215] "Topology Admit Handler" podUID="0a630e40-3c35-49ab-a8f4-ca7f9e3681b3" podNamespace="kube-system" podName="kube-proxy-h67qq" Jul 2 00:46:24.507008 kubelet[2207]: E0702 00:46:24.506958 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:24.517567 systemd[1]: Created slice kubepods-besteffort-pod0a630e40_3c35_49ab_a8f4_ca7f9e3681b3.slice. Jul 2 00:46:24.527070 kubelet[2207]: I0702 00:46:24.526580 2207 desired_state_of_world_populator.go:159] "Finished populating initial desired state of world" Jul 2 00:46:24.533174 systemd[1]: Created slice kubepods-besteffort-podcbf61ef0_0547_4ad7_a11e_8b04e97ebdbc.slice. Jul 2 00:46:24.539372 kubelet[2207]: I0702 00:46:24.538474 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"policysync\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-policysync\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.539372 kubelet[2207]: I0702 00:46:24.538592 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"flexvol-driver-host\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-flexvol-driver-host\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.539372 kubelet[2207]: I0702 00:46:24.538646 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-proxy\" (UniqueName: \"kubernetes.io/configmap/0a630e40-3c35-49ab-a8f4-ca7f9e3681b3-kube-proxy\") pod \"kube-proxy-h67qq\" (UID: \"0a630e40-3c35-49ab-a8f4-ca7f9e3681b3\") " pod="kube-system/kube-proxy-h67qq" Jul 2 00:46:24.539372 kubelet[2207]: I0702 00:46:24.538695 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-hr7rd\" (UniqueName: \"kubernetes.io/projected/0a630e40-3c35-49ab-a8f4-ca7f9e3681b3-kube-api-access-hr7rd\") pod \"kube-proxy-h67qq\" (UID: \"0a630e40-3c35-49ab-a8f4-ca7f9e3681b3\") " pod="kube-system/kube-proxy-h67qq" Jul 2 00:46:24.539372 kubelet[2207]: I0702 00:46:24.538767 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-xtables-lock\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.539773 kubelet[2207]: I0702 00:46:24.538824 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"tigera-ca-bundle\" (UniqueName: \"kubernetes.io/configmap/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-tigera-ca-bundle\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.539773 kubelet[2207]: I0702 00:46:24.538871 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-5zwb9\" (UniqueName: \"kubernetes.io/projected/c5528acd-6ec8-46fd-8424-d5d9ffab1b92-kube-api-access-5zwb9\") pod \"csi-node-driver-w4f8j\" (UID: \"c5528acd-6ec8-46fd-8424-d5d9ffab1b92\") " pod="calico-system/csi-node-driver-w4f8j" Jul 2 00:46:24.539773 kubelet[2207]: I0702 00:46:24.538921 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"socket-dir\" (UniqueName: \"kubernetes.io/host-path/c5528acd-6ec8-46fd-8424-d5d9ffab1b92-socket-dir\") pod \"csi-node-driver-w4f8j\" (UID: \"c5528acd-6ec8-46fd-8424-d5d9ffab1b92\") " pod="calico-system/csi-node-driver-w4f8j" Jul 2 00:46:24.539773 kubelet[2207]: I0702 00:46:24.538996 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-lib-modules\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.539773 kubelet[2207]: I0702 00:46:24.539057 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"node-certs\" (UniqueName: \"kubernetes.io/secret/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-node-certs\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.540082 kubelet[2207]: I0702 00:46:24.539100 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-bin-dir\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-cni-bin-dir\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.540082 kubelet[2207]: I0702 00:46:24.539144 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-net-dir\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-cni-net-dir\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.540082 kubelet[2207]: I0702 00:46:24.539187 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"cni-log-dir\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-cni-log-dir\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.540082 kubelet[2207]: I0702 00:46:24.539234 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-msbmh\" (UniqueName: \"kubernetes.io/projected/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-kube-api-access-msbmh\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.540082 kubelet[2207]: I0702 00:46:24.539282 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kubelet-dir\" (UniqueName: \"kubernetes.io/host-path/c5528acd-6ec8-46fd-8424-d5d9ffab1b92-kubelet-dir\") pod \"csi-node-driver-w4f8j\" (UID: \"c5528acd-6ec8-46fd-8424-d5d9ffab1b92\") " pod="calico-system/csi-node-driver-w4f8j" Jul 2 00:46:24.540590 kubelet[2207]: I0702 00:46:24.540292 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"registration-dir\" (UniqueName: \"kubernetes.io/host-path/c5528acd-6ec8-46fd-8424-d5d9ffab1b92-registration-dir\") pod \"csi-node-driver-w4f8j\" (UID: \"c5528acd-6ec8-46fd-8424-d5d9ffab1b92\") " pod="calico-system/csi-node-driver-w4f8j" Jul 2 00:46:24.540590 kubelet[2207]: I0702 00:46:24.540377 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"xtables-lock\" (UniqueName: \"kubernetes.io/host-path/0a630e40-3c35-49ab-a8f4-ca7f9e3681b3-xtables-lock\") pod \"kube-proxy-h67qq\" (UID: \"0a630e40-3c35-49ab-a8f4-ca7f9e3681b3\") " pod="kube-system/kube-proxy-h67qq" Jul 2 00:46:24.540590 kubelet[2207]: I0702 00:46:24.540452 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"lib-modules\" (UniqueName: \"kubernetes.io/host-path/0a630e40-3c35-49ab-a8f4-ca7f9e3681b3-lib-modules\") pod \"kube-proxy-h67qq\" (UID: \"0a630e40-3c35-49ab-a8f4-ca7f9e3681b3\") " pod="kube-system/kube-proxy-h67qq" Jul 2 00:46:24.540590 kubelet[2207]: I0702 00:46:24.540508 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-run-calico\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-var-run-calico\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.540590 kubelet[2207]: I0702 00:46:24.540559 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"var-lib-calico\" (UniqueName: \"kubernetes.io/host-path/cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc-var-lib-calico\") pod \"calico-node-w5qg6\" (UID: \"cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc\") " pod="calico-system/calico-node-w5qg6" Jul 2 00:46:24.540956 kubelet[2207]: I0702 00:46:24.540603 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"varrun\" (UniqueName: \"kubernetes.io/host-path/c5528acd-6ec8-46fd-8424-d5d9ffab1b92-varrun\") pod \"csi-node-driver-w4f8j\" (UID: \"c5528acd-6ec8-46fd-8424-d5d9ffab1b92\") " pod="calico-system/csi-node-driver-w4f8j" Jul 2 00:46:24.645536 kubelet[2207]: E0702 00:46:24.645490 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.647755 kubelet[2207]: W0702 00:46:24.647694 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.648057 kubelet[2207]: E0702 00:46:24.648003 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.656299 kubelet[2207]: E0702 00:46:24.651322 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.656299 kubelet[2207]: W0702 00:46:24.651394 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.656299 kubelet[2207]: E0702 00:46:24.651442 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.656299 kubelet[2207]: E0702 00:46:24.651880 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.656299 kubelet[2207]: W0702 00:46:24.651908 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.656299 kubelet[2207]: E0702 00:46:24.652072 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.656299 kubelet[2207]: E0702 00:46:24.652280 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.656299 kubelet[2207]: W0702 00:46:24.652298 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.656299 kubelet[2207]: E0702 00:46:24.652359 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.656299 kubelet[2207]: E0702 00:46:24.652770 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.656978 kubelet[2207]: W0702 00:46:24.652797 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.656978 kubelet[2207]: E0702 00:46:24.652832 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.656978 kubelet[2207]: E0702 00:46:24.653257 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.656978 kubelet[2207]: W0702 00:46:24.653285 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.656978 kubelet[2207]: E0702 00:46:24.653320 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.658468 kubelet[2207]: E0702 00:46:24.658432 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.658633 kubelet[2207]: W0702 00:46:24.658607 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.658788 kubelet[2207]: E0702 00:46:24.658765 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.698444 kubelet[2207]: E0702 00:46:24.698412 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.698642 kubelet[2207]: W0702 00:46:24.698616 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.698796 kubelet[2207]: E0702 00:46:24.698774 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.708766 kubelet[2207]: E0702 00:46:24.708732 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.708951 kubelet[2207]: W0702 00:46:24.708925 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.709109 kubelet[2207]: E0702 00:46:24.709087 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.724922 kubelet[2207]: E0702 00:46:24.724882 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:24.725192 kubelet[2207]: W0702 00:46:24.725158 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:24.725406 kubelet[2207]: E0702 00:46:24.725381 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:24.829826 env[1818]: time="2024-07-02T00:46:24.829647403Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-h67qq,Uid:0a630e40-3c35-49ab-a8f4-ca7f9e3681b3,Namespace:kube-system,Attempt:0,}" Jul 2 00:46:24.845092 env[1818]: time="2024-07-02T00:46:24.845009695Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-w5qg6,Uid:cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc,Namespace:calico-system,Attempt:0,}" Jul 2 00:46:25.485207 kubelet[2207]: E0702 00:46:25.485130 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:25.503031 env[1818]: time="2024-07-02T00:46:25.502957206Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:25.505378 env[1818]: time="2024-07-02T00:46:25.505269606Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:25.509498 env[1818]: time="2024-07-02T00:46:25.509421786Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:25.512017 env[1818]: time="2024-07-02T00:46:25.511957446Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:25.513834 env[1818]: time="2024-07-02T00:46:25.513761034Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:7d46a07936af93fcce097459055f93ab07331509aa55f4a2a90d95a3ace1850e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:25.518581 env[1818]: time="2024-07-02T00:46:25.518527290Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:25.520242 env[1818]: time="2024-07-02T00:46:25.520199166Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause:3.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:25.526434 env[1818]: time="2024-07-02T00:46:25.526379850Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:25.558989 env[1818]: time="2024-07-02T00:46:25.558824875Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 00:46:25.559324 env[1818]: time="2024-07-02T00:46:25.559228207Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 00:46:25.559645 env[1818]: time="2024-07-02T00:46:25.559577239Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 00:46:25.560454 env[1818]: time="2024-07-02T00:46:25.560235535Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/82327b1c869fc1d119597e0feb366e79cc148f74b1d939ca7f992b607d9b24ef pid=2275 runtime=io.containerd.runc.v2 Jul 2 00:46:25.564714 env[1818]: time="2024-07-02T00:46:25.564555331Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 00:46:25.565073 env[1818]: time="2024-07-02T00:46:25.564992047Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 00:46:25.565383 env[1818]: time="2024-07-02T00:46:25.565245271Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 00:46:25.567457 env[1818]: time="2024-07-02T00:46:25.566242939Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2 pid=2279 runtime=io.containerd.runc.v2 Jul 2 00:46:25.596813 systemd[1]: Started cri-containerd-0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2.scope. Jul 2 00:46:25.614821 systemd[1]: Started cri-containerd-82327b1c869fc1d119597e0feb366e79cc148f74b1d939ca7f992b607d9b24ef.scope. Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.636000 audit: BPF prog-id=67 op=LOAD Jul 2 00:46:25.639000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.639000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=2279 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.639000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063323132323037643534356631333636353331663433613037396461 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2279 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.641000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063323132323037643534356631333636353331663433613037396461 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.641000 audit: BPF prog-id=68 op=LOAD Jul 2 00:46:25.641000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2279 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.641000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063323132323037643534356631333636353331663433613037396461 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.643000 audit: BPF prog-id=69 op=LOAD Jul 2 00:46:25.643000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2279 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.643000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063323132323037643534356631333636353331663433613037396461 Jul 2 00:46:25.645000 audit: BPF prog-id=69 op=UNLOAD Jul 2 00:46:25.645000 audit: BPF prog-id=68 op=UNLOAD Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { perfmon } for pid=2297 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit[2297]: AVC avc: denied { bpf } for pid=2297 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.646000 audit: BPF prog-id=70 op=LOAD Jul 2 00:46:25.646000 audit[2297]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2279 pid=2297 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.646000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3063323132323037643534356631333636353331663433613037396461 Jul 2 00:46:25.663057 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4120050713.mount: Deactivated successfully. Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.674000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.675000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.675000 audit: BPF prog-id=71 op=LOAD Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=400011db38 a2=10 a3=0 items=0 ppid=2275 pid=2294 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.676000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3832333237623163383639666331643131393539376530666562333636 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=2275 pid=2294 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.676000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3832333237623163383639666331643131393539376530666562333636 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.676000 audit: BPF prog-id=72 op=LOAD Jul 2 00:46:25.676000 audit[2294]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=2275 pid=2294 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.676000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3832333237623163383639666331643131393539376530666562333636 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit: BPF prog-id=73 op=LOAD Jul 2 00:46:25.677000 audit[2294]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=2275 pid=2294 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3832333237623163383639666331643131393539376530666562333636 Jul 2 00:46:25.677000 audit: BPF prog-id=73 op=UNLOAD Jul 2 00:46:25.677000 audit: BPF prog-id=72 op=UNLOAD Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { perfmon } for pid=2294 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit[2294]: AVC avc: denied { bpf } for pid=2294 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:25.677000 audit: BPF prog-id=74 op=LOAD Jul 2 00:46:25.677000 audit[2294]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=2275 pid=2294 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:25.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3832333237623163383639666331643131393539376530666562333636 Jul 2 00:46:25.717606 env[1818]: time="2024-07-02T00:46:25.717531259Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:kube-proxy-h67qq,Uid:0a630e40-3c35-49ab-a8f4-ca7f9e3681b3,Namespace:kube-system,Attempt:0,} returns sandbox id \"82327b1c869fc1d119597e0feb366e79cc148f74b1d939ca7f992b607d9b24ef\"" Jul 2 00:46:25.717859 env[1818]: time="2024-07-02T00:46:25.717800635Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-node-w5qg6,Uid:cbf61ef0-0547-4ad7-a11e-8b04e97ebdbc,Namespace:calico-system,Attempt:0,} returns sandbox id \"0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2\"" Jul 2 00:46:25.722458 env[1818]: time="2024-07-02T00:46:25.722399083Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.29.6\"" Jul 2 00:46:26.486121 kubelet[2207]: E0702 00:46:26.486048 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:26.756157 kubelet[2207]: E0702 00:46:26.755426 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:27.184356 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount375306121.mount: Deactivated successfully. Jul 2 00:46:27.487211 kubelet[2207]: E0702 00:46:27.486954 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:28.025898 env[1818]: time="2024-07-02T00:46:28.025836223Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy:v1.29.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:28.029305 env[1818]: time="2024-07-02T00:46:28.029248843Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:a75156450625cf630b7b9b1e8b7d881969131638181257d0d67db0876a25b32f,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:28.033814 env[1818]: time="2024-07-02T00:46:28.033756655Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/kube-proxy:v1.29.6,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:28.036429 env[1818]: time="2024-07-02T00:46:28.036371563Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/kube-proxy@sha256:88bacb3e1d6c0c37c6da95c6d6b8e30531d0b4d0ab540cc290b0af51fbfebd90,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:28.037435 env[1818]: time="2024-07-02T00:46:28.037366375Z" level=info msg="PullImage \"registry.k8s.io/kube-proxy:v1.29.6\" returns image reference \"sha256:a75156450625cf630b7b9b1e8b7d881969131638181257d0d67db0876a25b32f\"" Jul 2 00:46:28.041293 env[1818]: time="2024-07-02T00:46:28.041230723Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0\"" Jul 2 00:46:28.042010 env[1818]: time="2024-07-02T00:46:28.041953855Z" level=info msg="CreateContainer within sandbox \"82327b1c869fc1d119597e0feb366e79cc148f74b1d939ca7f992b607d9b24ef\" for container &ContainerMetadata{Name:kube-proxy,Attempt:0,}" Jul 2 00:46:28.073746 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3041006555.mount: Deactivated successfully. Jul 2 00:46:28.085082 env[1818]: time="2024-07-02T00:46:28.084988831Z" level=info msg="CreateContainer within sandbox \"82327b1c869fc1d119597e0feb366e79cc148f74b1d939ca7f992b607d9b24ef\" for &ContainerMetadata{Name:kube-proxy,Attempt:0,} returns container id \"095cdb1382cdd39ad44b6213b767c4a3e295ff6768db54c17df25f8a70bc336c\"" Jul 2 00:46:28.086679 env[1818]: time="2024-07-02T00:46:28.086602123Z" level=info msg="StartContainer for \"095cdb1382cdd39ad44b6213b767c4a3e295ff6768db54c17df25f8a70bc336c\"" Jul 2 00:46:28.129771 systemd[1]: Started cri-containerd-095cdb1382cdd39ad44b6213b767c4a3e295ff6768db54c17df25f8a70bc336c.scope. Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.186930 kernel: kauditd_printk_skb: 133 callbacks suppressed Jul 2 00:46:28.187052 kernel: audit: type=1400 audit(1719881188.183:493): avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2275 pid=2352 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.206189 kernel: audit: type=1300 audit(1719881188.183:493): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2275 pid=2352 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.183000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039356364623133383263646433396164343462363231336237363763 Jul 2 00:46:28.215872 kernel: audit: type=1327 audit(1719881188.183:493): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039356364623133383263646433396164343462363231336237363763 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.223223 kernel: audit: type=1400 audit(1719881188.183:494): avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.230381 kernel: audit: type=1400 audit(1719881188.183:494): avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.237923 kernel: audit: type=1400 audit(1719881188.183:494): avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.246968 kernel: audit: type=1400 audit(1719881188.183:494): avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.255538 kernel: audit: type=1400 audit(1719881188.183:494): avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.262865 kernel: audit: type=1400 audit(1719881188.183:494): avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit: BPF prog-id=75 op=LOAD Jul 2 00:46:28.183000 audit[2352]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2275 pid=2352 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.271467 kernel: audit: type=1400 audit(1719881188.183:494): avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.183000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039356364623133383263646433396164343462363231336237363763 Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.272984 env[1818]: time="2024-07-02T00:46:28.272837180Z" level=info msg="StartContainer for \"095cdb1382cdd39ad44b6213b767c4a3e295ff6768db54c17df25f8a70bc336c\" returns successfully" Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.185000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.185000 audit: BPF prog-id=76 op=LOAD Jul 2 00:46:28.185000 audit[2352]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2275 pid=2352 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.185000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039356364623133383263646433396164343462363231336237363763 Jul 2 00:46:28.192000 audit: BPF prog-id=76 op=UNLOAD Jul 2 00:46:28.192000 audit: BPF prog-id=75 op=UNLOAD Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { perfmon } for pid=2352 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit[2352]: AVC avc: denied { bpf } for pid=2352 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:28.192000 audit: BPF prog-id=77 op=LOAD Jul 2 00:46:28.192000 audit[2352]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2275 pid=2352 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.192000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3039356364623133383263646433396164343462363231336237363763 Jul 2 00:46:28.401000 audit[2402]: NETFILTER_CFG table=mangle:14 family=2 entries=1 op=nft_register_chain pid=2402 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.401000 audit[2402]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffdbb47100 a2=0 a3=1 items=0 ppid=2362 pid=2402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.401000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Jul 2 00:46:28.403000 audit[2403]: NETFILTER_CFG table=mangle:15 family=10 entries=1 op=nft_register_chain pid=2403 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.403000 audit[2403]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffcf63d890 a2=0 a3=1 items=0 ppid=2362 pid=2403 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.403000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006D616E676C65 Jul 2 00:46:28.406000 audit[2405]: NETFILTER_CFG table=nat:16 family=2 entries=1 op=nft_register_chain pid=2405 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.406000 audit[2405]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff7bd5b20 a2=0 a3=1 items=0 ppid=2362 pid=2405 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.406000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Jul 2 00:46:28.410000 audit[2407]: NETFILTER_CFG table=filter:17 family=2 entries=1 op=nft_register_chain pid=2407 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.410000 audit[2407]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffd3afd2c0 a2=0 a3=1 items=0 ppid=2362 pid=2407 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.410000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Jul 2 00:46:28.411000 audit[2406]: NETFILTER_CFG table=nat:18 family=10 entries=1 op=nft_register_chain pid=2406 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.411000 audit[2406]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffd6825d90 a2=0 a3=1 items=0 ppid=2362 pid=2406 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.411000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D74006E6174 Jul 2 00:46:28.414000 audit[2408]: NETFILTER_CFG table=filter:19 family=10 entries=1 op=nft_register_chain pid=2408 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.414000 audit[2408]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff10a0b10 a2=0 a3=1 items=0 ppid=2362 pid=2408 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.414000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D43414E415259002D740066696C746572 Jul 2 00:46:28.488021 kubelet[2207]: E0702 00:46:28.487915 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:28.506000 audit[2409]: NETFILTER_CFG table=filter:20 family=2 entries=1 op=nft_register_chain pid=2409 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.506000 audit[2409]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffdb8b2c10 a2=0 a3=1 items=0 ppid=2362 pid=2409 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.506000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Jul 2 00:46:28.512000 audit[2411]: NETFILTER_CFG table=filter:21 family=2 entries=1 op=nft_register_rule pid=2411 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.512000 audit[2411]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=752 a0=3 a1=ffffcaeed880 a2=0 a3=1 items=0 ppid=2362 pid=2411 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.512000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276696365 Jul 2 00:46:28.520000 audit[2414]: NETFILTER_CFG table=filter:22 family=2 entries=2 op=nft_register_chain pid=2414 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.520000 audit[2414]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe5c7a560 a2=0 a3=1 items=0 ppid=2362 pid=2414 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.520000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C65207365727669 Jul 2 00:46:28.523000 audit[2415]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_chain pid=2415 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.523000 audit[2415]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffffdf93700 a2=0 a3=1 items=0 ppid=2362 pid=2415 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.523000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Jul 2 00:46:28.530000 audit[2417]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=2417 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.530000 audit[2417]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=fffff610ea20 a2=0 a3=1 items=0 ppid=2362 pid=2417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.530000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Jul 2 00:46:28.533000 audit[2418]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_chain pid=2418 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.533000 audit[2418]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc0f39540 a2=0 a3=1 items=0 ppid=2362 pid=2418 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.533000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Jul 2 00:46:28.540000 audit[2420]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=2420 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.540000 audit[2420]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=fffffea56a80 a2=0 a3=1 items=0 ppid=2362 pid=2420 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.540000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Jul 2 00:46:28.552000 audit[2423]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_register_rule pid=2423 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.552000 audit[2423]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffd05c5d10 a2=0 a3=1 items=0 ppid=2362 pid=2423 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.552000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D53 Jul 2 00:46:28.556000 audit[2424]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_chain pid=2424 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.556000 audit[2424]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffffa5e3350 a2=0 a3=1 items=0 ppid=2362 pid=2424 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.556000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Jul 2 00:46:28.563000 audit[2426]: NETFILTER_CFG table=filter:29 family=2 entries=1 op=nft_register_rule pid=2426 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.563000 audit[2426]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd30b8650 a2=0 a3=1 items=0 ppid=2362 pid=2426 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.563000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Jul 2 00:46:28.565000 audit[2427]: NETFILTER_CFG table=filter:30 family=2 entries=1 op=nft_register_chain pid=2427 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.565000 audit[2427]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=ffffcc49e4d0 a2=0 a3=1 items=0 ppid=2362 pid=2427 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.565000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Jul 2 00:46:28.573000 audit[2429]: NETFILTER_CFG table=filter:31 family=2 entries=1 op=nft_register_rule pid=2429 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.573000 audit[2429]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffc17c5f40 a2=0 a3=1 items=0 ppid=2362 pid=2429 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.573000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Jul 2 00:46:28.581000 audit[2432]: NETFILTER_CFG table=filter:32 family=2 entries=1 op=nft_register_rule pid=2432 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.581000 audit[2432]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffecc6a350 a2=0 a3=1 items=0 ppid=2362 pid=2432 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.581000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Jul 2 00:46:28.590000 audit[2435]: NETFILTER_CFG table=filter:33 family=2 entries=1 op=nft_register_rule pid=2435 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.590000 audit[2435]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffe9c11190 a2=0 a3=1 items=0 ppid=2362 pid=2435 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.590000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Jul 2 00:46:28.593000 audit[2436]: NETFILTER_CFG table=nat:34 family=2 entries=1 op=nft_register_chain pid=2436 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.593000 audit[2436]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffca8e8750 a2=0 a3=1 items=0 ppid=2362 pid=2436 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.593000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Jul 2 00:46:28.599000 audit[2438]: NETFILTER_CFG table=nat:35 family=2 entries=2 op=nft_register_chain pid=2438 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.599000 audit[2438]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=fffff1016350 a2=0 a3=1 items=0 ppid=2362 pid=2438 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.599000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Jul 2 00:46:28.642000 audit[2443]: NETFILTER_CFG table=nat:36 family=2 entries=2 op=nft_register_chain pid=2443 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.642000 audit[2443]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffd52b65a0 a2=0 a3=1 items=0 ppid=2362 pid=2443 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.642000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Jul 2 00:46:28.645000 audit[2444]: NETFILTER_CFG table=nat:37 family=2 entries=1 op=nft_register_chain pid=2444 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.645000 audit[2444]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe3b7da30 a2=0 a3=1 items=0 ppid=2362 pid=2444 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.645000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Jul 2 00:46:28.653000 audit[2446]: NETFILTER_CFG table=nat:38 family=2 entries=2 op=nft_register_chain pid=2446 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 2 00:46:28.653000 audit[2446]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffe96849d0 a2=0 a3=1 items=0 ppid=2362 pid=2446 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.653000 audit: PROCTITLE proctitle=69707461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Jul 2 00:46:28.682000 audit[2452]: NETFILTER_CFG table=filter:39 family=2 entries=5 op=nft_register_rule pid=2452 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:46:28.682000 audit[2452]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=fffffca2dc20 a2=0 a3=1 items=0 ppid=2362 pid=2452 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.682000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:46:28.737000 audit[2452]: NETFILTER_CFG table=nat:40 family=2 entries=54 op=nft_register_chain pid=2452 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:46:28.737000 audit[2452]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=25476 a0=3 a1=fffffca2dc20 a2=0 a3=1 items=0 ppid=2362 pid=2452 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.737000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:46:28.757409 kubelet[2207]: E0702 00:46:28.756009 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:28.763000 audit[2460]: NETFILTER_CFG table=filter:41 family=10 entries=1 op=nft_register_chain pid=2460 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.763000 audit[2460]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=108 a0=3 a1=ffffeee9c3a0 a2=0 a3=1 items=0 ppid=2362 pid=2460 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.763000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D45585445524E414C2D5345525649434553002D740066696C746572 Jul 2 00:46:28.769000 audit[2462]: NETFILTER_CFG table=filter:42 family=10 entries=2 op=nft_register_chain pid=2462 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.769000 audit[2462]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffd9679790 a2=0 a3=1 items=0 ppid=2362 pid=2462 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.769000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C6520736572766963 Jul 2 00:46:28.781000 audit[2465]: NETFILTER_CFG table=filter:43 family=10 entries=2 op=nft_register_chain pid=2465 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.781000 audit[2465]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=836 a0=3 a1=ffffe9e45f50 a2=0 a3=1 items=0 ppid=2362 pid=2465 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.781000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E657465732065787465726E616C6C792D76697369626C652073657276 Jul 2 00:46:28.784000 audit[2466]: NETFILTER_CFG table=filter:44 family=10 entries=1 op=nft_register_chain pid=2466 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.784000 audit[2466]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffeb89a100 a2=0 a3=1 items=0 ppid=2362 pid=2466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.784000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4E4F4445504F525453002D740066696C746572 Jul 2 00:46:28.789000 audit[2468]: NETFILTER_CFG table=filter:45 family=10 entries=1 op=nft_register_rule pid=2468 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.789000 audit[2468]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=ffffd90d74c0 a2=0 a3=1 items=0 ppid=2362 pid=2468 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.789000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206865616C746820636865636B207365727669636520706F727473002D6A004B5542452D4E4F4445504F525453 Jul 2 00:46:28.792000 audit[2469]: NETFILTER_CFG table=filter:46 family=10 entries=1 op=nft_register_chain pid=2469 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.792000 audit[2469]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff3c47070 a2=0 a3=1 items=0 ppid=2362 pid=2469 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.792000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D740066696C746572 Jul 2 00:46:28.797000 audit[2471]: NETFILTER_CFG table=filter:47 family=10 entries=1 op=nft_register_rule pid=2471 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.797000 audit[2471]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=744 a0=3 a1=ffffd2847240 a2=0 a3=1 items=0 ppid=2362 pid=2471 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.797000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B554245 Jul 2 00:46:28.805000 audit[2474]: NETFILTER_CFG table=filter:48 family=10 entries=2 op=nft_register_chain pid=2474 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.805000 audit[2474]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=828 a0=3 a1=fffff315f170 a2=0 a3=1 items=0 ppid=2362 pid=2474 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.805000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D Jul 2 00:46:28.807000 audit[2475]: NETFILTER_CFG table=filter:49 family=10 entries=1 op=nft_register_chain pid=2475 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.807000 audit[2475]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc14a08c0 a2=0 a3=1 items=0 ppid=2362 pid=2475 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.807000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D464F5257415244002D740066696C746572 Jul 2 00:46:28.812000 audit[2477]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_rule pid=2477 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.812000 audit[2477]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=fffffa5f8510 a2=0 a3=1 items=0 ppid=2362 pid=2477 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.812000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320666F7277617264696E672072756C6573002D6A004B5542452D464F5257415244 Jul 2 00:46:28.816794 kubelet[2207]: I0702 00:46:28.816533 2207 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="kube-system/kube-proxy-h67qq" podStartSLOduration=3.499186699 podStartE2EDuration="5.816436451s" podCreationTimestamp="2024-07-02 00:46:23 +0000 UTC" firstStartedPulling="2024-07-02 00:46:25.720764623 +0000 UTC m=+4.914709369" lastFinishedPulling="2024-07-02 00:46:28.038014291 +0000 UTC m=+7.231959121" observedRunningTime="2024-07-02 00:46:28.815935811 +0000 UTC m=+8.009880581" watchObservedRunningTime="2024-07-02 00:46:28.816436451 +0000 UTC m=+8.010381221" Jul 2 00:46:28.815000 audit[2478]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=2478 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.815000 audit[2478]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=104 a0=3 a1=fffff4353d60 a2=0 a3=1 items=0 ppid=2362 pid=2478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.815000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D50524F58592D4649524557414C4C002D740066696C746572 Jul 2 00:46:28.820000 audit[2480]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_rule pid=2480 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.820000 audit[2480]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffdcfbd660 a2=0 a3=1 items=0 ppid=2362 pid=2480 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.820000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D6A Jul 2 00:46:28.827000 audit[2483]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_rule pid=2483 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.827000 audit[2483]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffc102a1f0 a2=0 a3=1 items=0 ppid=2362 pid=2483 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.827000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C002D Jul 2 00:46:28.835000 audit[2486]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_rule pid=2486 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.835000 audit[2486]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=748 a0=3 a1=ffffcf4c0020 a2=0 a3=1 items=0 ppid=2362 pid=2486 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.835000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900464F5257415244002D740066696C746572002D6D00636F6E6E747261636B002D2D63747374617465004E4557002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573206C6F61642062616C616E636572206669726577616C6C Jul 2 00:46:28.837000 audit[2487]: NETFILTER_CFG table=nat:55 family=10 entries=1 op=nft_register_chain pid=2487 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.837000 audit[2487]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffe36cef60 a2=0 a3=1 items=0 ppid=2362 pid=2487 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.837000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D5345525649434553002D74006E6174 Jul 2 00:46:28.843000 audit[2489]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=2489 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.843000 audit[2489]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=600 a0=3 a1=fffff8175640 a2=0 a3=1 items=0 ppid=2362 pid=2489 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.843000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Jul 2 00:46:28.851000 audit[2492]: NETFILTER_CFG table=nat:57 family=10 entries=2 op=nft_register_chain pid=2492 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.851000 audit[2492]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=608 a0=3 a1=ffffc294c940 a2=0 a3=1 items=0 ppid=2362 pid=2492 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.851000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900505245524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E65746573207365727669636520706F7274616C73002D6A004B5542452D5345525649434553 Jul 2 00:46:28.855000 audit[2493]: NETFILTER_CFG table=nat:58 family=10 entries=1 op=nft_register_chain pid=2493 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.855000 audit[2493]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffe2c857d0 a2=0 a3=1 items=0 ppid=2362 pid=2493 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.855000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D504F5354524F5554494E47002D74006E6174 Jul 2 00:46:28.861980 kubelet[2207]: E0702 00:46:28.861927 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.861980 kubelet[2207]: W0702 00:46:28.861968 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.862223 kubelet[2207]: E0702 00:46:28.862004 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.862660 kubelet[2207]: E0702 00:46:28.862614 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.862660 kubelet[2207]: W0702 00:46:28.862648 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.862879 kubelet[2207]: E0702 00:46:28.862682 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.862000 audit[2495]: NETFILTER_CFG table=nat:59 family=10 entries=2 op=nft_register_chain pid=2495 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.864083 kubelet[2207]: E0702 00:46:28.863995 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.864083 kubelet[2207]: W0702 00:46:28.864021 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.864083 kubelet[2207]: E0702 00:46:28.864057 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.864474 kubelet[2207]: E0702 00:46:28.864435 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.864474 kubelet[2207]: W0702 00:46:28.864466 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.864650 kubelet[2207]: E0702 00:46:28.864494 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.862000 audit[2495]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=612 a0=3 a1=ffffcd405800 a2=0 a3=1 items=0 ppid=2362 pid=2495 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.862000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900504F5354524F5554494E47002D74006E6174002D6D00636F6D6D656E74002D2D636F6D6D656E74006B756265726E6574657320706F7374726F7574696E672072756C6573002D6A004B5542452D504F5354524F5554494E47 Jul 2 00:46:28.865206 kubelet[2207]: E0702 00:46:28.865172 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.865206 kubelet[2207]: W0702 00:46:28.865195 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.865329 kubelet[2207]: E0702 00:46:28.865238 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.865649 kubelet[2207]: E0702 00:46:28.865604 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.865649 kubelet[2207]: W0702 00:46:28.865631 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.865809 kubelet[2207]: E0702 00:46:28.865659 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.866190 kubelet[2207]: E0702 00:46:28.866136 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.866190 kubelet[2207]: W0702 00:46:28.866174 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.866412 kubelet[2207]: E0702 00:46:28.866202 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.866570 kubelet[2207]: E0702 00:46:28.866540 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.866570 kubelet[2207]: W0702 00:46:28.866565 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.866719 kubelet[2207]: E0702 00:46:28.866591 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.868411 kubelet[2207]: E0702 00:46:28.866897 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.868411 kubelet[2207]: W0702 00:46:28.866922 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.868411 kubelet[2207]: E0702 00:46:28.866949 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.868411 kubelet[2207]: E0702 00:46:28.867234 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.868411 kubelet[2207]: W0702 00:46:28.867250 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.868411 kubelet[2207]: E0702 00:46:28.867278 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.868411 kubelet[2207]: E0702 00:46:28.867667 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.868411 kubelet[2207]: W0702 00:46:28.867686 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.868411 kubelet[2207]: E0702 00:46:28.867711 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.868411 kubelet[2207]: E0702 00:46:28.867982 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.869065 kubelet[2207]: W0702 00:46:28.867997 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.869065 kubelet[2207]: E0702 00:46:28.868022 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.869065 kubelet[2207]: E0702 00:46:28.868394 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.869065 kubelet[2207]: W0702 00:46:28.868412 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.869065 kubelet[2207]: E0702 00:46:28.868439 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.869065 kubelet[2207]: E0702 00:46:28.868733 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.869065 kubelet[2207]: W0702 00:46:28.868755 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.869065 kubelet[2207]: E0702 00:46:28.868780 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.869065 kubelet[2207]: E0702 00:46:28.869024 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.869065 kubelet[2207]: W0702 00:46:28.869038 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.869651 kubelet[2207]: E0702 00:46:28.869061 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.869651 kubelet[2207]: E0702 00:46:28.869310 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.869651 kubelet[2207]: W0702 00:46:28.869325 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.869651 kubelet[2207]: E0702 00:46:28.869433 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.869864 kubelet[2207]: E0702 00:46:28.869704 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.869864 kubelet[2207]: W0702 00:46:28.869719 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.869864 kubelet[2207]: E0702 00:46:28.869747 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.870029 kubelet[2207]: E0702 00:46:28.869993 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.870029 kubelet[2207]: W0702 00:46:28.870008 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.870169 kubelet[2207]: E0702 00:46:28.870030 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.870356 kubelet[2207]: E0702 00:46:28.870308 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.869000 audit[2506]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_chain pid=2506 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.869000 audit[2506]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffeeca4380 a2=0 a3=1 items=0 ppid=2362 pid=2506 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.869000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4E004B5542452D4649524557414C4C002D740066696C746572 Jul 2 00:46:28.875000 audit[2519]: NETFILTER_CFG table=filter:61 family=10 entries=1 op=nft_register_rule pid=2519 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.875000 audit[2519]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=fffff734b340 a2=0 a3=1 items=0 ppid=2362 pid=2519 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.875000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D4900494E505554002D740066696C746572002D6A004B5542452D4649524557414C4C Jul 2 00:46:28.882849 kubelet[2207]: W0702 00:46:28.870453 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.882849 kubelet[2207]: E0702 00:46:28.870494 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.882849 kubelet[2207]: E0702 00:46:28.870881 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.882849 kubelet[2207]: W0702 00:46:28.870899 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.882849 kubelet[2207]: E0702 00:46:28.870926 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.882849 kubelet[2207]: E0702 00:46:28.875417 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.882849 kubelet[2207]: W0702 00:46:28.875446 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.882849 kubelet[2207]: E0702 00:46:28.875479 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.882849 kubelet[2207]: E0702 00:46:28.875945 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.882849 kubelet[2207]: W0702 00:46:28.875965 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.883621 kubelet[2207]: E0702 00:46:28.876001 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.883621 kubelet[2207]: E0702 00:46:28.876614 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.883621 kubelet[2207]: W0702 00:46:28.876637 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.883621 kubelet[2207]: E0702 00:46:28.876676 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.883621 kubelet[2207]: E0702 00:46:28.877466 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.883621 kubelet[2207]: W0702 00:46:28.877488 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.883621 kubelet[2207]: E0702 00:46:28.877664 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.883621 kubelet[2207]: E0702 00:46:28.877867 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.883621 kubelet[2207]: W0702 00:46:28.877884 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.883621 kubelet[2207]: E0702 00:46:28.877916 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.884151 kubelet[2207]: E0702 00:46:28.878270 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.884151 kubelet[2207]: W0702 00:46:28.878287 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.884151 kubelet[2207]: E0702 00:46:28.878319 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.884151 kubelet[2207]: E0702 00:46:28.878705 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.884151 kubelet[2207]: W0702 00:46:28.878738 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.884151 kubelet[2207]: E0702 00:46:28.878772 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.884151 kubelet[2207]: E0702 00:46:28.879569 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.884151 kubelet[2207]: W0702 00:46:28.879591 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.884151 kubelet[2207]: E0702 00:46:28.879762 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.884151 kubelet[2207]: E0702 00:46:28.880666 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.884746 kubelet[2207]: W0702 00:46:28.880687 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.884746 kubelet[2207]: E0702 00:46:28.880723 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.884746 kubelet[2207]: E0702 00:46:28.881205 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.884746 kubelet[2207]: W0702 00:46:28.881223 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.884746 kubelet[2207]: E0702 00:46:28.881257 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.884746 kubelet[2207]: E0702 00:46:28.882019 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.884746 kubelet[2207]: W0702 00:46:28.882040 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.884746 kubelet[2207]: E0702 00:46:28.882075 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.885742 kubelet[2207]: E0702 00:46:28.885619 2207 driver-call.go:262] Failed to unmarshal output for command: init, output: "", error: unexpected end of JSON input Jul 2 00:46:28.885742 kubelet[2207]: W0702 00:46:28.885650 2207 driver-call.go:149] FlexVolume: driver call failed: executable: /opt/libexec/kubernetes/kubelet-plugins/volume/exec/nodeagent~uds/uds, args: [init], error: executable file not found in $PATH, output: "" Jul 2 00:46:28.885742 kubelet[2207]: E0702 00:46:28.885685 2207 plugins.go:730] "Error dynamically probing plugins" err="error creating Flexvolume plugin from directory nodeagent~uds, skipping. Error: unexpected end of JSON input" Jul 2 00:46:28.886000 audit[2533]: NETFILTER_CFG table=filter:62 family=10 entries=1 op=nft_register_rule pid=2533 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 2 00:46:28.886000 audit[2533]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=fffff3f66dd0 a2=0 a3=1 items=0 ppid=2362 pid=2533 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.886000 audit: PROCTITLE proctitle=6970367461626C6573002D770035002D5700313030303030002D49004F5554505554002D740066696C746572002D6A004B5542452D4649524557414C4C Jul 2 00:46:28.893000 audit[2535]: NETFILTER_CFG table=filter:63 family=10 entries=3 op=nft_register_rule pid=2535 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Jul 2 00:46:28.893000 audit[2535]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2004 a0=3 a1=ffffc2010b50 a2=0 a3=1 items=0 ppid=2362 pid=2535 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.893000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:46:28.894000 audit[2535]: NETFILTER_CFG table=nat:64 family=10 entries=7 op=nft_register_chain pid=2535 subj=system_u:system_r:kernel_t:s0 comm="ip6tables-resto" Jul 2 00:46:28.894000 audit[2535]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2056 a0=3 a1=ffffc2010b50 a2=0 a3=1 items=0 ppid=2362 pid=2535 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables-resto" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:28.894000 audit: PROCTITLE proctitle=6970367461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:46:29.185579 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2522699606.mount: Deactivated successfully. Jul 2 00:46:29.402584 env[1818]: time="2024-07-02T00:46:29.402491998Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:29.405624 env[1818]: time="2024-07-02T00:46:29.405566482Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:4b6a6a9b369fa6127e23e376ac423670fa81290e0860917acaacae108e3cc064,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:29.408870 env[1818]: time="2024-07-02T00:46:29.408818050Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:29.413559 env[1818]: time="2024-07-02T00:46:29.413497042Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:e57c9db86f1cee1ae6f41257eed1ee2f363783177809217a2045502a09cf7cee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:29.416485 env[1818]: time="2024-07-02T00:46:29.415314202Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0\" returns image reference \"sha256:4b6a6a9b369fa6127e23e376ac423670fa81290e0860917acaacae108e3cc064\"" Jul 2 00:46:29.420490 env[1818]: time="2024-07-02T00:46:29.420420118Z" level=info msg="CreateContainer within sandbox \"0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2\" for container &ContainerMetadata{Name:flexvol-driver,Attempt:0,}" Jul 2 00:46:29.445714 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3837935804.mount: Deactivated successfully. Jul 2 00:46:29.452835 env[1818]: time="2024-07-02T00:46:29.452756074Z" level=info msg="CreateContainer within sandbox \"0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2\" for &ContainerMetadata{Name:flexvol-driver,Attempt:0,} returns container id \"0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5\"" Jul 2 00:46:29.454400 env[1818]: time="2024-07-02T00:46:29.454329958Z" level=info msg="StartContainer for \"0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5\"" Jul 2 00:46:29.494122 kubelet[2207]: E0702 00:46:29.493392 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:29.501091 systemd[1]: Started cri-containerd-0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5.scope. Jul 2 00:46:29.549000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.549000 audit[2544]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2279 pid=2544 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:29.549000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065386338353630326133353033666536663439343836643863336136 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit: BPF prog-id=78 op=LOAD Jul 2 00:46:29.550000 audit[2544]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2279 pid=2544 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:29.550000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065386338353630326133353033666536663439343836643863336136 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.550000 audit: BPF prog-id=79 op=LOAD Jul 2 00:46:29.550000 audit[2544]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2279 pid=2544 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:29.550000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065386338353630326133353033666536663439343836643863336136 Jul 2 00:46:29.551000 audit: BPF prog-id=79 op=UNLOAD Jul 2 00:46:29.551000 audit: BPF prog-id=78 op=UNLOAD Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { perfmon } for pid=2544 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit[2544]: AVC avc: denied { bpf } for pid=2544 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:29.551000 audit: BPF prog-id=80 op=LOAD Jul 2 00:46:29.551000 audit[2544]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2279 pid=2544 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:29.551000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3065386338353630326133353033666536663439343836643863336136 Jul 2 00:46:29.590606 env[1818]: time="2024-07-02T00:46:29.590530139Z" level=info msg="StartContainer for \"0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5\" returns successfully" Jul 2 00:46:29.612317 systemd[1]: cri-containerd-0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5.scope: Deactivated successfully. Jul 2 00:46:29.615000 audit: BPF prog-id=80 op=UNLOAD Jul 2 00:46:30.092572 env[1818]: time="2024-07-02T00:46:30.092492529Z" level=info msg="shim disconnected" id=0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5 Jul 2 00:46:30.092853 env[1818]: time="2024-07-02T00:46:30.092590221Z" level=warning msg="cleaning up after shim disconnected" id=0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5 namespace=k8s.io Jul 2 00:46:30.092853 env[1818]: time="2024-07-02T00:46:30.092614797Z" level=info msg="cleaning up dead shim" Jul 2 00:46:30.107823 env[1818]: time="2024-07-02T00:46:30.107745777Z" level=warning msg="cleanup warnings time=\"2024-07-02T00:46:30Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2589 runtime=io.containerd.runc.v2\n" Jul 2 00:46:30.180098 amazon-ssm-agent[1793]: 2024-07-02 00:46:30 INFO [MessagingDeliveryService] [Association] No associations on boot. Requerying for associations after 30 seconds. Jul 2 00:46:30.185713 systemd[1]: run-containerd-runc-k8s.io-0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5-runc.CChZwO.mount: Deactivated successfully. Jul 2 00:46:30.185893 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-0e8c85602a3503fe6f49486d8c3a641f86f67e8105c7e3d43e626c3b80bddad5-rootfs.mount: Deactivated successfully. Jul 2 00:46:30.493621 kubelet[2207]: E0702 00:46:30.493557 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:30.757499 kubelet[2207]: E0702 00:46:30.756416 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:30.792646 env[1818]: time="2024-07-02T00:46:30.792593437Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.28.0\"" Jul 2 00:46:31.494613 kubelet[2207]: E0702 00:46:31.494522 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:32.495780 kubelet[2207]: E0702 00:46:32.495698 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:32.756268 kubelet[2207]: E0702 00:46:32.755701 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:33.496525 kubelet[2207]: E0702 00:46:33.496462 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:34.496716 kubelet[2207]: E0702 00:46:34.496634 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:34.757705 kubelet[2207]: E0702 00:46:34.756170 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:35.497693 kubelet[2207]: E0702 00:46:35.497632 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:35.530673 env[1818]: time="2024-07-02T00:46:35.530616700Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:35.533949 env[1818]: time="2024-07-02T00:46:35.533898016Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:adcb19ea66141abcd7dc426e3205f2e6ff26e524a3f7148c97f3d49933f502ee,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:35.536778 env[1818]: time="2024-07-02T00:46:35.536733100Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/cni:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:35.539210 env[1818]: time="2024-07-02T00:46:35.539146120Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/cni@sha256:67fdc0954d3c96f9a7938fca4d5759c835b773dfb5cb513903e89d21462d886e,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:35.540508 env[1818]: time="2024-07-02T00:46:35.540460228Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/cni:v3.28.0\" returns image reference \"sha256:adcb19ea66141abcd7dc426e3205f2e6ff26e524a3f7148c97f3d49933f502ee\"" Jul 2 00:46:35.544368 env[1818]: time="2024-07-02T00:46:35.544293952Z" level=info msg="CreateContainer within sandbox \"0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2\" for container &ContainerMetadata{Name:install-cni,Attempt:0,}" Jul 2 00:46:35.567587 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3774725771.mount: Deactivated successfully. Jul 2 00:46:35.577608 env[1818]: time="2024-07-02T00:46:35.577522420Z" level=info msg="CreateContainer within sandbox \"0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2\" for &ContainerMetadata{Name:install-cni,Attempt:0,} returns container id \"a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63\"" Jul 2 00:46:35.578636 env[1818]: time="2024-07-02T00:46:35.578569792Z" level=info msg="StartContainer for \"a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63\"" Jul 2 00:46:35.625243 systemd[1]: run-containerd-runc-k8s.io-a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63-runc.T75x9J.mount: Deactivated successfully. Jul 2 00:46:35.632052 systemd[1]: Started cri-containerd-a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63.scope. Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.684812 kernel: kauditd_printk_skb: 230 callbacks suppressed Jul 2 00:46:35.684932 kernel: audit: type=1400 audit(1719881195.675:557): avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.684985 kernel: audit: type=1300 audit(1719881195.675:557): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2279 pid=2610 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:35.675000 audit[2610]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=2279 pid=2610 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:35.675000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6131656435373333633965366137613561396536656634316438343034 Jul 2 00:46:35.703632 kernel: audit: type=1327 audit(1719881195.675:557): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6131656435373333633965366137613561396536656634316438343034 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.710980 kernel: audit: type=1400 audit(1719881195.675:558): avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.718532 kernel: audit: type=1400 audit(1719881195.675:558): avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.726255 kernel: audit: type=1400 audit(1719881195.675:558): avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.733398 kernel: audit: type=1400 audit(1719881195.675:558): avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.740347 kernel: audit: type=1400 audit(1719881195.675:558): avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.740461 kernel: audit: type=1400 audit(1719881195.675:558): avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.759190 kernel: audit: type=1400 audit(1719881195.675:558): avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.760079 env[1818]: time="2024-07-02T00:46:35.760017605Z" level=info msg="StartContainer for \"a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63\" returns successfully" Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.675000 audit: BPF prog-id=81 op=LOAD Jul 2 00:46:35.675000 audit[2610]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=2279 pid=2610 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:35.675000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6131656435373333633965366137613561396536656634316438343034 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.677000 audit: BPF prog-id=82 op=LOAD Jul 2 00:46:35.677000 audit[2610]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=2279 pid=2610 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:35.677000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6131656435373333633965366137613561396536656634316438343034 Jul 2 00:46:35.683000 audit: BPF prog-id=82 op=UNLOAD Jul 2 00:46:35.683000 audit: BPF prog-id=81 op=UNLOAD Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { perfmon } for pid=2610 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit[2610]: AVC avc: denied { bpf } for pid=2610 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:35.683000 audit: BPF prog-id=83 op=LOAD Jul 2 00:46:35.683000 audit[2610]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=2279 pid=2610 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:35.683000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6131656435373333633965366137613561396536656634316438343034 Jul 2 00:46:36.498354 kubelet[2207]: E0702 00:46:36.498272 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:36.704383 systemd-timesyncd[1763]: Contacted time server 23.150.40.242:123 (2.flatcar.pool.ntp.org). Jul 2 00:46:36.704798 systemd-timesyncd[1763]: Initial clock synchronization to Tue 2024-07-02 00:46:37.070399 UTC. Jul 2 00:46:36.756447 kubelet[2207]: E0702 00:46:36.755552 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="network is not ready: container runtime network not ready: NetworkReady=false reason:NetworkPluginNotReady message:Network plugin returns error: cni plugin not initialized" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:37.154409 systemd[1]: cri-containerd-a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63.scope: Deactivated successfully. Jul 2 00:46:37.156000 audit: BPF prog-id=83 op=UNLOAD Jul 2 00:46:37.169318 kubelet[2207]: I0702 00:46:37.168254 2207 kubelet_node_status.go:497] "Fast updating node status as it just became ready" Jul 2 00:46:37.196792 systemd[1]: run-containerd-io.containerd.runtime.v2.task-k8s.io-a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63-rootfs.mount: Deactivated successfully. Jul 2 00:46:37.499262 kubelet[2207]: E0702 00:46:37.499065 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:37.635000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hostnamed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:37.635993 systemd[1]: systemd-hostnamed.service: Deactivated successfully. Jul 2 00:46:37.664000 audit: BPF prog-id=51 op=UNLOAD Jul 2 00:46:37.664000 audit: BPF prog-id=50 op=UNLOAD Jul 2 00:46:37.664000 audit: BPF prog-id=49 op=UNLOAD Jul 2 00:46:37.931590 env[1818]: time="2024-07-02T00:46:37.931523931Z" level=info msg="shim disconnected" id=a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63 Jul 2 00:46:37.932273 env[1818]: time="2024-07-02T00:46:37.932235089Z" level=warning msg="cleaning up after shim disconnected" id=a1ed5733c9e6a7a5a9e6ef41d8404be92e1586eb47a4c30a393e3c054c351a63 namespace=k8s.io Jul 2 00:46:37.932424 env[1818]: time="2024-07-02T00:46:37.932376158Z" level=info msg="cleaning up dead shim" Jul 2 00:46:37.947880 env[1818]: time="2024-07-02T00:46:37.947820327Z" level=warning msg="cleanup warnings time=\"2024-07-02T00:46:37Z\" level=info msg=\"starting signal loop\" namespace=k8s.io pid=2650 runtime=io.containerd.runc.v2\n" Jul 2 00:46:38.501171 kubelet[2207]: E0702 00:46:38.501084 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:38.768147 systemd[1]: Created slice kubepods-besteffort-podc5528acd_6ec8_46fd_8424_d5d9ffab1b92.slice. Jul 2 00:46:38.774536 env[1818]: time="2024-07-02T00:46:38.774473507Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-w4f8j,Uid:c5528acd-6ec8-46fd-8424-d5d9ffab1b92,Namespace:calico-system,Attempt:0,}" Jul 2 00:46:38.823785 env[1818]: time="2024-07-02T00:46:38.821812443Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.28.0\"" Jul 2 00:46:38.928213 env[1818]: time="2024-07-02T00:46:38.928067425Z" level=error msg="Failed to destroy network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:38.933459 env[1818]: time="2024-07-02T00:46:38.932300468Z" level=error msg="encountered an error cleaning up failed sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:38.933459 env[1818]: time="2024-07-02T00:46:38.932463542Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-w4f8j,Uid:c5528acd-6ec8-46fd-8424-d5d9ffab1b92,Namespace:calico-system,Attempt:0,} failed, error" error="failed to setup network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:38.933763 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797-shm.mount: Deactivated successfully. Jul 2 00:46:38.936766 kubelet[2207]: E0702 00:46:38.935811 2207 remote_runtime.go:193] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:38.936766 kubelet[2207]: E0702 00:46:38.935965 2207 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-w4f8j" Jul 2 00:46:38.936766 kubelet[2207]: E0702 00:46:38.936036 2207 kuberuntime_manager.go:1172] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="calico-system/csi-node-driver-w4f8j" Jul 2 00:46:38.937120 kubelet[2207]: E0702 00:46:38.936670 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"csi-node-driver-w4f8j_calico-system(c5528acd-6ec8-46fd-8424-d5d9ffab1b92)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"csi-node-driver-w4f8j_calico-system(c5528acd-6ec8-46fd-8424-d5d9ffab1b92)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:39.501966 kubelet[2207]: E0702 00:46:39.501888 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:39.821275 kubelet[2207]: I0702 00:46:39.821135 2207 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:46:39.822719 env[1818]: time="2024-07-02T00:46:39.822663646Z" level=info msg="StopPodSandbox for \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\"" Jul 2 00:46:39.894903 env[1818]: time="2024-07-02T00:46:39.894798724Z" level=error msg="StopPodSandbox for \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\" failed" error="failed to destroy network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:39.895220 kubelet[2207]: E0702 00:46:39.895151 2207 remote_runtime.go:222] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:46:39.895391 kubelet[2207]: E0702 00:46:39.895323 2207 kuberuntime_manager.go:1381] "Failed to stop sandbox" podSandboxID={"Type":"containerd","ID":"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797"} Jul 2 00:46:39.895484 kubelet[2207]: E0702 00:46:39.895425 2207 kuberuntime_manager.go:1081] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"c5528acd-6ec8-46fd-8424-d5d9ffab1b92\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Jul 2 00:46:39.895654 kubelet[2207]: E0702 00:46:39.895488 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"c5528acd-6ec8-46fd-8424-d5d9ffab1b92\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="calico-system/csi-node-driver-w4f8j" podUID="c5528acd-6ec8-46fd-8424-d5d9ffab1b92" Jul 2 00:46:40.503040 kubelet[2207]: E0702 00:46:40.502973 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:41.395412 kubelet[2207]: I0702 00:46:41.394588 2207 topology_manager.go:215] "Topology Admit Handler" podUID="83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30" podNamespace="default" podName="nginx-deployment-6d5f899847-9mn68" Jul 2 00:46:41.405520 systemd[1]: Created slice kubepods-besteffort-pod83eb7ae4_a126_4a5b_b58f_2e1d4cbd6b30.slice. Jul 2 00:46:41.461693 kubelet[2207]: I0702 00:46:41.461651 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-jlb8b\" (UniqueName: \"kubernetes.io/projected/83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30-kube-api-access-jlb8b\") pod \"nginx-deployment-6d5f899847-9mn68\" (UID: \"83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30\") " pod="default/nginx-deployment-6d5f899847-9mn68" Jul 2 00:46:41.503449 kubelet[2207]: E0702 00:46:41.503391 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:41.714168 env[1818]: time="2024-07-02T00:46:41.713419086Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-9mn68,Uid:83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30,Namespace:default,Attempt:0,}" Jul 2 00:46:41.889072 env[1818]: time="2024-07-02T00:46:41.888985180Z" level=error msg="Failed to destroy network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\"" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:41.892843 systemd[1]: run-containerd-io.containerd.grpc.v1.cri-sandboxes-cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d-shm.mount: Deactivated successfully. Jul 2 00:46:41.895144 env[1818]: time="2024-07-02T00:46:41.895064452Z" level=error msg="encountered an error cleaning up failed sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\", marking sandbox state as SANDBOX_UNKNOWN" error="plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:41.895512 env[1818]: time="2024-07-02T00:46:41.895425453Z" level=error msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-9mn68,Uid:83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30,Namespace:default,Attempt:0,} failed, error" error="failed to setup network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:41.896425 kubelet[2207]: E0702 00:46:41.895983 2207 remote_runtime.go:193] "RunPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:41.896425 kubelet[2207]: E0702 00:46:41.896063 2207 kuberuntime_sandbox.go:72] "Failed to create sandbox for pod" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-6d5f899847-9mn68" Jul 2 00:46:41.896425 kubelet[2207]: E0702 00:46:41.896101 2207 kuberuntime_manager.go:1172] "CreatePodSandbox for pod failed" err="rpc error: code = Unknown desc = failed to setup network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\": plugin type=\"calico\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" pod="default/nginx-deployment-6d5f899847-9mn68" Jul 2 00:46:41.896723 kubelet[2207]: E0702 00:46:41.896190 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="failed to \"CreatePodSandbox\" for \"nginx-deployment-6d5f899847-9mn68_default(83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30)\" with CreatePodSandboxError: \"Failed to create sandbox for pod \\\"nginx-deployment-6d5f899847-9mn68_default(83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30)\\\": rpc error: code = Unknown desc = failed to setup network for sandbox \\\"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\\\": plugin type=\\\"calico\\\" failed (add): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-6d5f899847-9mn68" podUID="83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30" Jul 2 00:46:42.483545 kubelet[2207]: E0702 00:46:42.483502 2207 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:42.505098 kubelet[2207]: E0702 00:46:42.505052 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:42.835024 kubelet[2207]: I0702 00:46:42.834493 2207 pod_container_deletor.go:80] "Container not found in pod's containers" containerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:46:42.835714 env[1818]: time="2024-07-02T00:46:42.835633553Z" level=info msg="StopPodSandbox for \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\"" Jul 2 00:46:42.910063 env[1818]: time="2024-07-02T00:46:42.909966076Z" level=error msg="StopPodSandbox for \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\" failed" error="failed to destroy network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" Jul 2 00:46:42.910425 kubelet[2207]: E0702 00:46:42.910382 2207 remote_runtime.go:222] "StopPodSandbox from runtime service failed" err="rpc error: code = Unknown desc = failed to destroy network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\": plugin type=\"calico\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/" podSandboxID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:46:42.910521 kubelet[2207]: E0702 00:46:42.910478 2207 kuberuntime_manager.go:1381] "Failed to stop sandbox" podSandboxID={"Type":"containerd","ID":"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d"} Jul 2 00:46:42.910623 kubelet[2207]: E0702 00:46:42.910575 2207 kuberuntime_manager.go:1081] "killPodWithSyncResult failed" err="failed to \"KillPodSandbox\" for \"83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" Jul 2 00:46:42.910744 kubelet[2207]: E0702 00:46:42.910657 2207 pod_workers.go:1298] "Error syncing pod, skipping" err="failed to \"KillPodSandbox\" for \"83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30\" with KillPodSandboxError: \"rpc error: code = Unknown desc = failed to destroy network for sandbox \\\"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\\\": plugin type=\\\"calico\\\" failed (delete): stat /var/lib/calico/nodename: no such file or directory: check that the calico/node container is running and has mounted /var/lib/calico/\"" pod="default/nginx-deployment-6d5f899847-9mn68" podUID="83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30" Jul 2 00:46:43.505534 kubelet[2207]: E0702 00:46:43.505456 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:44.506588 kubelet[2207]: E0702 00:46:44.506517 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:45.506809 kubelet[2207]: E0702 00:46:45.506721 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:46.507998 kubelet[2207]: E0702 00:46:46.507887 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:46.624253 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2822785087.mount: Deactivated successfully. Jul 2 00:46:46.699969 env[1818]: time="2024-07-02T00:46:46.699853322Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:46.703586 env[1818]: time="2024-07-02T00:46:46.703520285Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:d80cbd636ae2754a08d04558f0436508a17d92258e4712cc4a6299f43497607f,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:46.706880 env[1818]: time="2024-07-02T00:46:46.706815224Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:46.709900 env[1818]: time="2024-07-02T00:46:46.709817808Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node@sha256:95f8004836427050c9997ad0800819ced5636f6bda647b4158fc7c497910c8d0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:46.711392 env[1818]: time="2024-07-02T00:46:46.711289569Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node:v3.28.0\" returns image reference \"sha256:d80cbd636ae2754a08d04558f0436508a17d92258e4712cc4a6299f43497607f\"" Jul 2 00:46:46.743438 env[1818]: time="2024-07-02T00:46:46.743057701Z" level=info msg="CreateContainer within sandbox \"0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2\" for container &ContainerMetadata{Name:calico-node,Attempt:0,}" Jul 2 00:46:46.772062 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount3918318530.mount: Deactivated successfully. Jul 2 00:46:46.782800 env[1818]: time="2024-07-02T00:46:46.782691539Z" level=info msg="CreateContainer within sandbox \"0c212207d545f1366531f43a079da4cea3340b043f108addbffd964a7c7f74f2\" for &ContainerMetadata{Name:calico-node,Attempt:0,} returns container id \"d70c49ae0b01ffb5bb40f815004ce62afab0fea7f12a85b83b1a6555981b8e97\"" Jul 2 00:46:46.784439 env[1818]: time="2024-07-02T00:46:46.784372116Z" level=info msg="StartContainer for \"d70c49ae0b01ffb5bb40f815004ce62afab0fea7f12a85b83b1a6555981b8e97\"" Jul 2 00:46:46.821309 systemd[1]: Started cri-containerd-d70c49ae0b01ffb5bb40f815004ce62afab0fea7f12a85b83b1a6555981b8e97.scope. Jul 2 00:46:46.874000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876393 kernel: kauditd_printk_skb: 38 callbacks suppressed Jul 2 00:46:46.876513 kernel: audit: type=1400 audit(1719881206.874:568): avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.874000 audit[2781]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2279 pid=2781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:46.892775 kernel: audit: type=1300 audit(1719881206.874:568): arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=2279 pid=2781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:46.874000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6437306334396165306230316666623562623430663831353030346365 Jul 2 00:46:46.902254 kernel: audit: type=1327 audit(1719881206.874:568): proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6437306334396165306230316666623562623430663831353030346365 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.908928 kernel: audit: type=1400 audit(1719881206.876:569): avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.909469 kernel: audit: type=1400 audit(1719881206.876:569): avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.922162 kernel: audit: type=1400 audit(1719881206.876:569): avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.929949 kernel: audit: type=1400 audit(1719881206.876:569): avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.937409 kernel: audit: type=1400 audit(1719881206.876:569): avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.945419 kernel: audit: type=1400 audit(1719881206.876:569): avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.952808 kernel: audit: type=1400 audit(1719881206.876:569): avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.876000 audit: BPF prog-id=84 op=LOAD Jul 2 00:46:46.876000 audit[2781]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=2279 pid=2781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:46.876000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6437306334396165306230316666623562623430663831353030346365 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.883000 audit: BPF prog-id=85 op=LOAD Jul 2 00:46:46.883000 audit[2781]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=2279 pid=2781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:46.883000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6437306334396165306230316666623562623430663831353030346365 Jul 2 00:46:46.892000 audit: BPF prog-id=85 op=UNLOAD Jul 2 00:46:46.892000 audit: BPF prog-id=84 op=UNLOAD Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { perfmon } for pid=2781 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit[2781]: AVC avc: denied { bpf } for pid=2781 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:46.892000 audit: BPF prog-id=86 op=LOAD Jul 2 00:46:46.892000 audit[2781]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=2279 pid=2781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:46.892000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6437306334396165306230316666623562623430663831353030346365 Jul 2 00:46:46.964712 env[1818]: time="2024-07-02T00:46:46.964643071Z" level=info msg="StartContainer for \"d70c49ae0b01ffb5bb40f815004ce62afab0fea7f12a85b83b1a6555981b8e97\" returns successfully" Jul 2 00:46:47.098327 kernel: wireguard: WireGuard 1.0.0 loaded. See www.wireguard.com for information. Jul 2 00:46:47.098590 kernel: wireguard: Copyright (C) 2015-2019 Jason A. Donenfeld . All Rights Reserved. Jul 2 00:46:47.508880 kubelet[2207]: E0702 00:46:47.508731 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:47.885809 kubelet[2207]: I0702 00:46:47.885298 2207 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/calico-node-w5qg6" podStartSLOduration=3.895143988 podStartE2EDuration="24.885210514s" podCreationTimestamp="2024-07-02 00:46:23 +0000 UTC" firstStartedPulling="2024-07-02 00:46:25.721755187 +0000 UTC m=+4.915699933" lastFinishedPulling="2024-07-02 00:46:46.711821713 +0000 UTC m=+25.905766459" observedRunningTime="2024-07-02 00:46:47.879686337 +0000 UTC m=+27.073631108" watchObservedRunningTime="2024-07-02 00:46:47.885210514 +0000 UTC m=+27.079155260" Jul 2 00:46:47.891653 systemd[1]: run-containerd-runc-k8s.io-d70c49ae0b01ffb5bb40f815004ce62afab0fea7f12a85b83b1a6555981b8e97-runc.KCbgSm.mount: Deactivated successfully. Jul 2 00:46:48.509478 kubelet[2207]: E0702 00:46:48.509380 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:48.613000 audit[2905]: AVC avc: denied { write } for pid=2905 comm="tee" name="fd" dev="proc" ino=15722 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 00:46:48.613000 audit[2905]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffffa23ba1f a2=241 a3=1b6 items=1 ppid=2870 pid=2905 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:48.613000 audit: CWD cwd="/etc/service/enabled/felix/log" Jul 2 00:46:48.613000 audit: PATH item=0 name="/dev/fd/63" inode=15710 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:46:48.613000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 00:46:48.622000 audit[2916]: AVC avc: denied { write } for pid=2916 comm="tee" name="fd" dev="proc" ino=15729 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 00:46:48.622000 audit[2916]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff7010a1f a2=241 a3=1b6 items=1 ppid=2869 pid=2916 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:48.622000 audit: CWD cwd="/etc/service/enabled/confd/log" Jul 2 00:46:48.622000 audit: PATH item=0 name="/dev/fd/63" inode=15717 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:46:48.622000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 00:46:48.628000 audit[2921]: AVC avc: denied { write } for pid=2921 comm="tee" name="fd" dev="proc" ino=15735 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 00:46:48.628000 audit[2921]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffd6197a20 a2=241 a3=1b6 items=1 ppid=2882 pid=2921 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:48.628000 audit: CWD cwd="/etc/service/enabled/bird/log" Jul 2 00:46:48.628000 audit: PATH item=0 name="/dev/fd/63" inode=15340 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:46:48.628000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 00:46:48.633000 audit[2926]: AVC avc: denied { write } for pid=2926 comm="tee" name="fd" dev="proc" ino=15354 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 00:46:48.633000 audit[2926]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffcf9baa10 a2=241 a3=1b6 items=1 ppid=2878 pid=2926 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:48.650000 audit[2939]: AVC avc: denied { write } for pid=2939 comm="tee" name="fd" dev="proc" ino=15741 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 00:46:48.650000 audit[2939]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=ffffc5167a21 a2=241 a3=1b6 items=1 ppid=2873 pid=2939 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:48.650000 audit: CWD cwd="/etc/service/enabled/cni/log" Jul 2 00:46:48.650000 audit: PATH item=0 name="/dev/fd/63" inode=15349 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:46:48.650000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 00:46:48.633000 audit: CWD cwd="/etc/service/enabled/node-status-reporter/log" Jul 2 00:46:48.633000 audit: PATH item=0 name="/dev/fd/63" inode=15724 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:46:48.633000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 00:46:48.657000 audit[2934]: AVC avc: denied { write } for pid=2934 comm="tee" name="fd" dev="proc" ino=15356 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 00:46:48.657000 audit[2934]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffff7a70a0f a2=241 a3=1b6 items=1 ppid=2876 pid=2934 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:48.657000 audit: CWD cwd="/etc/service/enabled/allocate-tunnel-addrs/log" Jul 2 00:46:48.657000 audit: PATH item=0 name="/dev/fd/63" inode=15347 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:46:48.657000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 00:46:48.661000 audit[2937]: AVC avc: denied { write } for pid=2937 comm="tee" name="fd" dev="proc" ino=15358 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=dir permissive=0 Jul 2 00:46:48.661000 audit[2937]: SYSCALL arch=c00000b7 syscall=56 success=yes exit=3 a0=ffffffffffffff9c a1=fffffbf7fa1f a2=241 a3=1b6 items=1 ppid=2879 pid=2937 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="tee" exe="/usr/bin/coreutils" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:48.661000 audit: CWD cwd="/etc/service/enabled/bird6/log" Jul 2 00:46:48.661000 audit: PATH item=0 name="/dev/fd/63" inode=15348 dev=00:0b mode=010600 ouid=0 ogid=0 rdev=00:00 obj=system_u:system_r:kernel_t:s0 nametype=NORMAL cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:46:48.661000 audit: PROCTITLE proctitle=2F7573722F62696E2F636F72657574696C73002D2D636F72657574696C732D70726F672D73686562616E673D746565002F7573722F62696E2F746565002F6465762F66642F3633 Jul 2 00:46:48.917404 systemd[1]: run-containerd-runc-k8s.io-d70c49ae0b01ffb5bb40f815004ce62afab0fea7f12a85b83b1a6555981b8e97-runc.DC4ols.mount: Deactivated successfully. Jul 2 00:46:49.040390 kernel: Initializing XFRM netlink socket Jul 2 00:46:49.258721 (udev-worker)[2815]: Network interface NamePolicy= disabled on kernel command line. Jul 2 00:46:49.264550 systemd-networkd[1534]: vxlan.calico: Link UP Jul 2 00:46:49.264574 systemd-networkd[1534]: vxlan.calico: Gained carrier Jul 2 00:46:49.327058 (udev-worker)[3018]: Network interface NamePolicy= disabled on kernel command line. Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.331000 audit: BPF prog-id=87 op=LOAD Jul 2 00:46:49.331000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=5 a1=ffffd064d9b8 a2=70 a3=ffffd064da28 items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.331000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.333000 audit: BPF prog-id=87 op=UNLOAD Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.333000 audit: BPF prog-id=88 op=LOAD Jul 2 00:46:49.333000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=5 a1=ffffd064d9b8 a2=70 a3=4b243c items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.333000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.334000 audit: BPF prog-id=88 op=UNLOAD Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=0 a1=ffffd064d970 a2=70 a3=ffffd064d9e0 items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.334000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.334000 audit: BPF prog-id=89 op=LOAD Jul 2 00:46:49.334000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=5 a1=ffffd064d958 a2=70 a3=ffffd064d9c8 items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.334000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.334000 audit: BPF prog-id=89 op=UNLOAD Jul 2 00:46:49.335000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.335000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=12 a1=ffffd064da28 a2=70 a3=0 items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.335000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.335000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.335000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=12 a1=ffffd064da18 a2=70 a3=0 items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.335000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.335000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.335000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=4 a0=12 a1=ffffd064d988 a2=70 a3=0 items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.335000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=no exit=-22 a0=0 a1=ffffd064da60 a2=70 a3=1372f42f items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.339000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=5 a0=0 a1=ffffd064da60 a2=70 a3=1372f42f items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.339000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { perfmon } for pid=3031 comm="bpftool" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit[3031]: AVC avc: denied { bpf } for pid=3031 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.339000 audit: BPF prog-id=90 op=LOAD Jul 2 00:46:49.339000 audit[3031]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=6 a0=5 a1=ffffd064d988 a2=70 a3=1372f449 items=0 ppid=2871 pid=3031 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.339000 audit: PROCTITLE proctitle=627066746F6F6C0070726F67006C6F6164002F7573722F6C69622F63616C69636F2F6270662F66696C7465722E6F002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41007479706500786470 Jul 2 00:46:49.349000 audit[3033]: AVC avc: denied { bpf } for pid=3033 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.349000 audit[3033]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=fffff0e7e748 a2=70 a3=fffff0e7e7b8 items=0 ppid=2871 pid=3033 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.349000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Jul 2 00:46:49.354000 audit[3033]: AVC avc: denied { bpf } for pid=3033 comm="bpftool" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:49.354000 audit[3033]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=fffff0e7e618 a2=70 a3=fffff0e7e688 items=0 ppid=2871 pid=3033 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="bpftool" exe="/usr/bin/bpftool" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.354000 audit: PROCTITLE proctitle=627066746F6F6C002D2D6A736F6E002D2D7072657474790070726F670073686F770070696E6E6564002F7379732F66732F6270662F63616C69636F2F7864702F70726566696C7465725F76315F63616C69636F5F746D705F41 Jul 2 00:46:49.369000 audit: BPF prog-id=90 op=UNLOAD Jul 2 00:46:49.473000 audit[3058]: NETFILTER_CFG table=mangle:65 family=2 entries=16 op=nft_register_chain pid=3058 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:46:49.473000 audit[3058]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6868 a0=3 a1=ffffd96d1890 a2=0 a3=ffffbc1e3fa8 items=0 ppid=2871 pid=3058 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.473000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:46:49.492000 audit[3056]: NETFILTER_CFG table=raw:66 family=2 entries=19 op=nft_register_chain pid=3056 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:46:49.492000 audit[3056]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=6992 a0=3 a1=ffffc0a5a910 a2=0 a3=ffff91afefa8 items=0 ppid=2871 pid=3056 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.492000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:46:49.494000 audit[3057]: NETFILTER_CFG table=nat:67 family=2 entries=15 op=nft_register_chain pid=3057 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:46:49.494000 audit[3057]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5084 a0=3 a1=ffffd340a9d0 a2=0 a3=ffffaa266fa8 items=0 ppid=2871 pid=3057 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.494000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:46:49.497000 audit[3059]: NETFILTER_CFG table=filter:68 family=2 entries=39 op=nft_register_chain pid=3059 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:46:49.497000 audit[3059]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18968 a0=3 a1=ffffcb69d450 a2=0 a3=ffffaa6bafa8 items=0 ppid=2871 pid=3059 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:49.497000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:46:49.510216 kubelet[2207]: E0702 00:46:49.510039 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:50.510602 kubelet[2207]: E0702 00:46:50.510531 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:51.262766 systemd-networkd[1534]: vxlan.calico: Gained IPv6LL Jul 2 00:46:51.511749 kubelet[2207]: E0702 00:46:51.511676 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:52.453473 update_engine[1805]: I0702 00:46:52.453393 1805 update_attempter.cc:509] Updating boot flags... Jul 2 00:46:52.512839 kubelet[2207]: E0702 00:46:52.512768 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:52.775117 env[1818]: time="2024-07-02T00:46:52.774733798Z" level=info msg="StopPodSandbox for \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\"" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:52.911 [INFO][3180] k8s.go 608: Cleaning up netns ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:52.911 [INFO][3180] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" iface="eth0" netns="/var/run/netns/cni-b66f3c65-d3cb-c908-a0cf-89a864e11a4b" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:52.912 [INFO][3180] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" iface="eth0" netns="/var/run/netns/cni-b66f3c65-d3cb-c908-a0cf-89a864e11a4b" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:52.912 [INFO][3180] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" iface="eth0" netns="/var/run/netns/cni-b66f3c65-d3cb-c908-a0cf-89a864e11a4b" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:52.912 [INFO][3180] k8s.go 615: Releasing IP address(es) ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:52.912 [INFO][3180] utils.go 188: Calico CNI releasing IP address ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:53.040 [INFO][3238] ipam_plugin.go 411: Releasing address using handleID ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:53.043 [INFO][3238] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:53.043 [INFO][3238] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:53.056 [WARNING][3238] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:53.056 [INFO][3238] ipam_plugin.go 439: Releasing address using workloadID ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:53.066 [INFO][3238] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:46:53.072282 env[1818]: 2024-07-02 00:46:53.069 [INFO][3180] k8s.go 621: Teardown processing complete. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:46:53.076284 systemd[1]: run-netns-cni\x2db66f3c65\x2dd3cb\x2dc908\x2da0cf\x2d89a864e11a4b.mount: Deactivated successfully. Jul 2 00:46:53.078523 env[1818]: time="2024-07-02T00:46:53.078453795Z" level=info msg="TearDown network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\" successfully" Jul 2 00:46:53.078713 env[1818]: time="2024-07-02T00:46:53.078677104Z" level=info msg="StopPodSandbox for \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\" returns successfully" Jul 2 00:46:53.079910 env[1818]: time="2024-07-02T00:46:53.079858883Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-w4f8j,Uid:c5528acd-6ec8-46fd-8424-d5d9ffab1b92,Namespace:calico-system,Attempt:1,}" Jul 2 00:46:53.293909 (udev-worker)[3084]: Network interface NamePolicy= disabled on kernel command line. Jul 2 00:46:53.294984 systemd-networkd[1534]: cali9ec9201565c: Link UP Jul 2 00:46:53.302174 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 00:46:53.302327 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali9ec9201565c: link becomes ready Jul 2 00:46:53.301663 systemd-networkd[1534]: cali9ec9201565c: Gained carrier Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.171 [INFO][3276] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.203-k8s-csi--node--driver--w4f8j-eth0 csi-node-driver- calico-system c5528acd-6ec8-46fd-8424-d5d9ffab1b92 958 0 2024-07-02 00:46:23 +0000 UTC map[app.kubernetes.io/name:csi-node-driver controller-revision-hash:7d7f6c786c k8s-app:csi-node-driver name:csi-node-driver pod-template-generation:1 projectcalico.org/namespace:calico-system projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.203 csi-node-driver-w4f8j eth0 default [] [] [kns.calico-system ksa.calico-system.default] cali9ec9201565c [] []}} ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Namespace="calico-system" Pod="csi-node-driver-w4f8j" WorkloadEndpoint="172.31.22.203-k8s-csi--node--driver--w4f8j-" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.172 [INFO][3276] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Namespace="calico-system" Pod="csi-node-driver-w4f8j" WorkloadEndpoint="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.222 [INFO][3287] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" HandleID="k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.238 [INFO][3287] ipam_plugin.go 264: Auto assigning IP ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" HandleID="k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002edd80), Attrs:map[string]string{"namespace":"calico-system", "node":"172.31.22.203", "pod":"csi-node-driver-w4f8j", "timestamp":"2024-07-02 00:46:53.222171379 +0000 UTC"}, Hostname:"172.31.22.203", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.238 [INFO][3287] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.238 [INFO][3287] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.238 [INFO][3287] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.203' Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.241 [INFO][3287] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.247 [INFO][3287] ipam.go 372: Looking up existing affinities for host host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.257 [INFO][3287] ipam.go 489: Trying affinity for 192.168.71.0/26 host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.260 [INFO][3287] ipam.go 155: Attempting to load block cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.263 [INFO][3287] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.263 [INFO][3287] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.71.0/26 handle="k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.267 [INFO][3287] ipam.go 1685: Creating new handle: k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.273 [INFO][3287] ipam.go 1203: Writing block in order to claim IPs block=192.168.71.0/26 handle="k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.283 [INFO][3287] ipam.go 1216: Successfully claimed IPs: [192.168.71.1/26] block=192.168.71.0/26 handle="k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.284 [INFO][3287] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.71.1/26] handle="k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" host="172.31.22.203" Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.284 [INFO][3287] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:46:53.321707 env[1818]: 2024-07-02 00:46:53.284 [INFO][3287] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.71.1/26] IPv6=[] ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" HandleID="k8s-pod-network.ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.325982 env[1818]: 2024-07-02 00:46:53.289 [INFO][3276] k8s.go 386: Populated endpoint ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Namespace="calico-system" Pod="csi-node-driver-w4f8j" WorkloadEndpoint="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-csi--node--driver--w4f8j-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"c5528acd-6ec8-46fd-8424-d5d9ffab1b92", ResourceVersion:"958", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 46, 23, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"7d7f6c786c", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"", Pod:"csi-node-driver-w4f8j", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali9ec9201565c", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:46:53.325982 env[1818]: 2024-07-02 00:46:53.290 [INFO][3276] k8s.go 387: Calico CNI using IPs: [192.168.71.1/32] ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Namespace="calico-system" Pod="csi-node-driver-w4f8j" WorkloadEndpoint="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.325982 env[1818]: 2024-07-02 00:46:53.290 [INFO][3276] dataplane_linux.go 68: Setting the host side veth name to cali9ec9201565c ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Namespace="calico-system" Pod="csi-node-driver-w4f8j" WorkloadEndpoint="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.325982 env[1818]: 2024-07-02 00:46:53.303 [INFO][3276] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Namespace="calico-system" Pod="csi-node-driver-w4f8j" WorkloadEndpoint="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.325982 env[1818]: 2024-07-02 00:46:53.304 [INFO][3276] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Namespace="calico-system" Pod="csi-node-driver-w4f8j" WorkloadEndpoint="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-csi--node--driver--w4f8j-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"c5528acd-6ec8-46fd-8424-d5d9ffab1b92", ResourceVersion:"958", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 46, 23, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"7d7f6c786c", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a", Pod:"csi-node-driver-w4f8j", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali9ec9201565c", MAC:"ce:ec:15:25:72:f0", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:46:53.325982 env[1818]: 2024-07-02 00:46:53.318 [INFO][3276] k8s.go 500: Wrote updated endpoint to datastore ContainerID="ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a" Namespace="calico-system" Pod="csi-node-driver-w4f8j" WorkloadEndpoint="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:46:53.353000 audit[3312]: NETFILTER_CFG table=filter:69 family=2 entries=34 op=nft_register_chain pid=3312 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:46:53.356512 kernel: kauditd_printk_skb: 157 callbacks suppressed Jul 2 00:46:53.356720 kernel: audit: type=1325 audit(1719881213.353:601): table=filter:69 family=2 entries=34 op=nft_register_chain pid=3312 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:46:53.359410 env[1818]: time="2024-07-02T00:46:53.359259599Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 00:46:53.359803 env[1818]: time="2024-07-02T00:46:53.359732531Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 00:46:53.360110 env[1818]: time="2024-07-02T00:46:53.360011989Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 00:46:53.360727 env[1818]: time="2024-07-02T00:46:53.360587159Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a pid=3315 runtime=io.containerd.runc.v2 Jul 2 00:46:53.353000 audit[3312]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19148 a0=3 a1=fffffad4dc50 a2=0 a3=ffff9908bfa8 items=0 ppid=2871 pid=3312 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:53.373421 kernel: audit: type=1300 audit(1719881213.353:601): arch=c00000b7 syscall=211 success=yes exit=19148 a0=3 a1=fffffad4dc50 a2=0 a3=ffff9908bfa8 items=0 ppid=2871 pid=3312 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:53.353000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:46:53.390072 kernel: audit: type=1327 audit(1719881213.353:601): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:46:53.415789 systemd[1]: Started cri-containerd-ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a.scope. Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.455422 kernel: audit: type=1400 audit(1719881213.440:602): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.455556 kernel: audit: type=1400 audit(1719881213.440:603): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.462208 kernel: audit: type=1400 audit(1719881213.440:604): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.469399 kernel: audit: type=1400 audit(1719881213.440:605): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.484898 kernel: audit: type=1400 audit(1719881213.440:606): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.485077 kernel: audit: type=1400 audit(1719881213.440:607): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.492417 kernel: audit: type=1400 audit(1719881213.440:608): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.440000 audit: BPF prog-id=91 op=LOAD Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:53.446000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563323339333733393832316366623133653163653432663262366530 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:53.446000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563323339333733393832316366623133653163653432663262366530 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.446000 audit: BPF prog-id=92 op=LOAD Jul 2 00:46:53.446000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:53.446000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563323339333733393832316366623133653163653432663262366530 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.448000 audit: BPF prog-id=93 op=LOAD Jul 2 00:46:53.448000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:53.448000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563323339333733393832316366623133653163653432663262366530 Jul 2 00:46:53.454000 audit: BPF prog-id=93 op=UNLOAD Jul 2 00:46:53.454000 audit: BPF prog-id=92 op=UNLOAD Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { perfmon } for pid=3325 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit[3325]: AVC avc: denied { bpf } for pid=3325 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:53.454000 audit: BPF prog-id=94 op=LOAD Jul 2 00:46:53.454000 audit[3325]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3315 pid=3325 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:53.454000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6563323339333733393832316366623133653163653432663262366530 Jul 2 00:46:53.507501 env[1818]: time="2024-07-02T00:46:53.507427786Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:csi-node-driver-w4f8j,Uid:c5528acd-6ec8-46fd-8424-d5d9ffab1b92,Namespace:calico-system,Attempt:1,} returns sandbox id \"ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a\"" Jul 2 00:46:53.511019 env[1818]: time="2024-07-02T00:46:53.510971712Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.28.0\"" Jul 2 00:46:53.513468 kubelet[2207]: E0702 00:46:53.513327 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:54.075651 systemd[1]: run-containerd-runc-k8s.io-ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a-runc.RzMAKk.mount: Deactivated successfully. Jul 2 00:46:54.514165 kubelet[2207]: E0702 00:46:54.514084 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:54.719574 systemd-networkd[1534]: cali9ec9201565c: Gained IPv6LL Jul 2 00:46:54.757386 env[1818]: time="2024-07-02T00:46:54.757170991Z" level=info msg="StopPodSandbox for \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\"" Jul 2 00:46:54.840105 env[1818]: time="2024-07-02T00:46:54.839953635Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:54.842963 env[1818]: time="2024-07-02T00:46:54.842898116Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:94ad0dc71bacd91f470c20e61073c2dc00648fd583c0fb95657dee38af05e5ed,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:54.846420 env[1818]: time="2024-07-02T00:46:54.846314390Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/csi:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:54.850021 env[1818]: time="2024-07-02T00:46:54.849947723Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/csi@sha256:ac5f0089ad8eab325e5d16a59536f9292619adf16736b1554a439a66d543a63d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:54.850989 env[1818]: time="2024-07-02T00:46:54.850910203Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/csi:v3.28.0\" returns image reference \"sha256:94ad0dc71bacd91f470c20e61073c2dc00648fd583c0fb95657dee38af05e5ed\"" Jul 2 00:46:54.854913 env[1818]: time="2024-07-02T00:46:54.854855951Z" level=info msg="CreateContainer within sandbox \"ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a\" for container &ContainerMetadata{Name:calico-csi,Attempt:0,}" Jul 2 00:46:54.888308 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount4210230426.mount: Deactivated successfully. Jul 2 00:46:54.900705 env[1818]: time="2024-07-02T00:46:54.900630078Z" level=info msg="CreateContainer within sandbox \"ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a\" for &ContainerMetadata{Name:calico-csi,Attempt:0,} returns container id \"a5d1f86c553e04c32285da95b29fd9874211cd21861c8157575d844a1a186b66\"" Jul 2 00:46:54.902172 env[1818]: time="2024-07-02T00:46:54.902115436Z" level=info msg="StartContainer for \"a5d1f86c553e04c32285da95b29fd9874211cd21861c8157575d844a1a186b66\"" Jul 2 00:46:54.972451 systemd[1]: Started cri-containerd-a5d1f86c553e04c32285da95b29fd9874211cd21861c8157575d844a1a186b66.scope. Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.864 [INFO][3370] k8s.go 608: Cleaning up netns ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.864 [INFO][3370] dataplane_linux.go 530: Deleting workload's device in netns. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" iface="eth0" netns="/var/run/netns/cni-a4d6857e-2825-c52c-c15a-2622fc7a3147" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.865 [INFO][3370] dataplane_linux.go 541: Entered netns, deleting veth. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" iface="eth0" netns="/var/run/netns/cni-a4d6857e-2825-c52c-c15a-2622fc7a3147" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.865 [INFO][3370] dataplane_linux.go 568: Workload's veth was already gone. Nothing to do. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" iface="eth0" netns="/var/run/netns/cni-a4d6857e-2825-c52c-c15a-2622fc7a3147" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.865 [INFO][3370] k8s.go 615: Releasing IP address(es) ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.865 [INFO][3370] utils.go 188: Calico CNI releasing IP address ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.945 [INFO][3376] ipam_plugin.go 411: Releasing address using handleID ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.946 [INFO][3376] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.946 [INFO][3376] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.960 [WARNING][3376] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.960 [INFO][3376] ipam_plugin.go 439: Releasing address using workloadID ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.969 [INFO][3376] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:46:54.985813 env[1818]: 2024-07-02 00:46:54.983 [INFO][3370] k8s.go 621: Teardown processing complete. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:46:54.987063 env[1818]: time="2024-07-02T00:46:54.986072759Z" level=info msg="TearDown network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\" successfully" Jul 2 00:46:54.987063 env[1818]: time="2024-07-02T00:46:54.986118599Z" level=info msg="StopPodSandbox for \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\" returns successfully" Jul 2 00:46:54.990035 env[1818]: time="2024-07-02T00:46:54.989974162Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-9mn68,Uid:83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30,Namespace:default,Attempt:1,}" Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=400011d5a0 a2=3c a3=0 items=0 ppid=3315 pid=3390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.024000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135643166383663353533653034633332323835646139356232396664 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit: BPF prog-id=95 op=LOAD Jul 2 00:46:55.024000 audit[3390]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011d8e0 a2=78 a3=0 items=0 ppid=3315 pid=3390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.024000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135643166383663353533653034633332323835646139356232396664 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.024000 audit: BPF prog-id=96 op=LOAD Jul 2 00:46:55.024000 audit[3390]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=400011d670 a2=78 a3=0 items=0 ppid=3315 pid=3390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.024000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135643166383663353533653034633332323835646139356232396664 Jul 2 00:46:55.025000 audit: BPF prog-id=96 op=UNLOAD Jul 2 00:46:55.025000 audit: BPF prog-id=95 op=UNLOAD Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { perfmon } for pid=3390 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit[3390]: AVC avc: denied { bpf } for pid=3390 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.025000 audit: BPF prog-id=97 op=LOAD Jul 2 00:46:55.025000 audit[3390]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=400011db40 a2=78 a3=0 items=0 ppid=3315 pid=3390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.025000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6135643166383663353533653034633332323835646139356232396664 Jul 2 00:46:55.068860 env[1818]: time="2024-07-02T00:46:55.066888739Z" level=info msg="StartContainer for \"a5d1f86c553e04c32285da95b29fd9874211cd21861c8157575d844a1a186b66\" returns successfully" Jul 2 00:46:55.070248 env[1818]: time="2024-07-02T00:46:55.070178313Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0\"" Jul 2 00:46:55.078260 systemd[1]: run-containerd-runc-k8s.io-a5d1f86c553e04c32285da95b29fd9874211cd21861c8157575d844a1a186b66-runc.QVlJ7C.mount: Deactivated successfully. Jul 2 00:46:55.078476 systemd[1]: run-netns-cni\x2da4d6857e\x2d2825\x2dc52c\x2dc15a\x2d2622fc7a3147.mount: Deactivated successfully. Jul 2 00:46:55.232953 systemd-networkd[1534]: calif77f8e5dc09: Link UP Jul 2 00:46:55.238625 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 00:46:55.238911 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calif77f8e5dc09: link becomes ready Jul 2 00:46:55.239167 systemd-networkd[1534]: calif77f8e5dc09: Gained carrier Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.119 [INFO][3410] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0 nginx-deployment-6d5f899847- default 83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30 972 0 2024-07-02 00:46:41 +0000 UTC map[app:nginx pod-template-hash:6d5f899847 projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.203 nginx-deployment-6d5f899847-9mn68 eth0 default [] [] [kns.default ksa.default.default] calif77f8e5dc09 [] []}} ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Namespace="default" Pod="nginx-deployment-6d5f899847-9mn68" WorkloadEndpoint="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.119 [INFO][3410] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Namespace="default" Pod="nginx-deployment-6d5f899847-9mn68" WorkloadEndpoint="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.167 [INFO][3430] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" HandleID="k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.184 [INFO][3430] ipam_plugin.go 264: Auto assigning IP ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" HandleID="k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40003765b0), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.203", "pod":"nginx-deployment-6d5f899847-9mn68", "timestamp":"2024-07-02 00:46:55.167005785 +0000 UTC"}, Hostname:"172.31.22.203", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.184 [INFO][3430] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.184 [INFO][3430] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.184 [INFO][3430] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.203' Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.187 [INFO][3430] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.192 [INFO][3430] ipam.go 372: Looking up existing affinities for host host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.199 [INFO][3430] ipam.go 489: Trying affinity for 192.168.71.0/26 host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.202 [INFO][3430] ipam.go 155: Attempting to load block cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.205 [INFO][3430] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.205 [INFO][3430] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.71.0/26 handle="k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.208 [INFO][3430] ipam.go 1685: Creating new handle: k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39 Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.213 [INFO][3430] ipam.go 1203: Writing block in order to claim IPs block=192.168.71.0/26 handle="k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.222 [INFO][3430] ipam.go 1216: Successfully claimed IPs: [192.168.71.2/26] block=192.168.71.0/26 handle="k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.222 [INFO][3430] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.71.2/26] handle="k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" host="172.31.22.203" Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.222 [INFO][3430] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:46:55.262320 env[1818]: 2024-07-02 00:46:55.222 [INFO][3430] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.71.2/26] IPv6=[] ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" HandleID="k8s-pod-network.dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:55.263911 env[1818]: 2024-07-02 00:46:55.225 [INFO][3410] k8s.go 386: Populated endpoint ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Namespace="default" Pod="nginx-deployment-6d5f899847-9mn68" WorkloadEndpoint="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30", ResourceVersion:"972", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 46, 41, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"", Pod:"nginx-deployment-6d5f899847-9mn68", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calif77f8e5dc09", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:46:55.263911 env[1818]: 2024-07-02 00:46:55.225 [INFO][3410] k8s.go 387: Calico CNI using IPs: [192.168.71.2/32] ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Namespace="default" Pod="nginx-deployment-6d5f899847-9mn68" WorkloadEndpoint="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:55.263911 env[1818]: 2024-07-02 00:46:55.225 [INFO][3410] dataplane_linux.go 68: Setting the host side veth name to calif77f8e5dc09 ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Namespace="default" Pod="nginx-deployment-6d5f899847-9mn68" WorkloadEndpoint="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:55.263911 env[1818]: 2024-07-02 00:46:55.240 [INFO][3410] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Namespace="default" Pod="nginx-deployment-6d5f899847-9mn68" WorkloadEndpoint="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:55.263911 env[1818]: 2024-07-02 00:46:55.241 [INFO][3410] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Namespace="default" Pod="nginx-deployment-6d5f899847-9mn68" WorkloadEndpoint="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30", ResourceVersion:"972", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 46, 41, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39", Pod:"nginx-deployment-6d5f899847-9mn68", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calif77f8e5dc09", MAC:"46:15:c9:e3:29:49", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:46:55.263911 env[1818]: 2024-07-02 00:46:55.250 [INFO][3410] k8s.go 500: Wrote updated endpoint to datastore ContainerID="dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39" Namespace="default" Pod="nginx-deployment-6d5f899847-9mn68" WorkloadEndpoint="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:46:55.286000 audit[3455]: NETFILTER_CFG table=filter:70 family=2 entries=38 op=nft_register_chain pid=3455 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:46:55.288267 env[1818]: time="2024-07-02T00:46:55.286822979Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 00:46:55.288267 env[1818]: time="2024-07-02T00:46:55.286911689Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 00:46:55.288267 env[1818]: time="2024-07-02T00:46:55.286949886Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 00:46:55.288267 env[1818]: time="2024-07-02T00:46:55.287186939Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39 pid=3457 runtime=io.containerd.runc.v2 Jul 2 00:46:55.286000 audit[3455]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20312 a0=3 a1=ffffd6fa8560 a2=0 a3=ffff8c677fa8 items=0 ppid=2871 pid=3455 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.286000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:46:55.319031 systemd[1]: Started cri-containerd-dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39.scope. Jul 2 00:46:55.338128 systemd[1]: run-containerd-runc-k8s.io-dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39-runc.pWxLe3.mount: Deactivated successfully. Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.368000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.369000 audit: BPF prog-id=98 op=LOAD Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3457 pid=3466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.371000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461633032303561616637363032333465353034666166306363353936 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3457 pid=3466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.371000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461633032303561616637363032333465353034666166306363353936 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit: BPF prog-id=99 op=LOAD Jul 2 00:46:55.371000 audit[3466]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3457 pid=3466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.371000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461633032303561616637363032333465353034666166306363353936 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.371000 audit: BPF prog-id=100 op=LOAD Jul 2 00:46:55.371000 audit[3466]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3457 pid=3466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.371000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461633032303561616637363032333465353034666166306363353936 Jul 2 00:46:55.372000 audit: BPF prog-id=100 op=UNLOAD Jul 2 00:46:55.372000 audit: BPF prog-id=99 op=UNLOAD Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { perfmon } for pid=3466 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit[3466]: AVC avc: denied { bpf } for pid=3466 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:55.372000 audit: BPF prog-id=101 op=LOAD Jul 2 00:46:55.372000 audit[3466]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3457 pid=3466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:55.372000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6461633032303561616637363032333465353034666166306363353936 Jul 2 00:46:55.422245 env[1818]: time="2024-07-02T00:46:55.422170614Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nginx-deployment-6d5f899847-9mn68,Uid:83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30,Namespace:default,Attempt:1,} returns sandbox id \"dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39\"" Jul 2 00:46:55.514633 kubelet[2207]: E0702 00:46:55.514482 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:56.443137 env[1818]: time="2024-07-02T00:46:56.443051423Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:56.447491 env[1818]: time="2024-07-02T00:46:56.447432185Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:f708eddd5878891da5bc6148fc8bb3f7277210481a15957910fe5fb551a5ed28,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:56.450507 env[1818]: time="2024-07-02T00:46:56.450429563Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:56.453779 env[1818]: time="2024-07-02T00:46:56.453683479Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/node-driver-registrar@sha256:b3caf3e7b3042b293728a5ab55d893798d60fec55993a9531e82997de0e534cc,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:46:56.454892 env[1818]: time="2024-07-02T00:46:56.454845866Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0\" returns image reference \"sha256:f708eddd5878891da5bc6148fc8bb3f7277210481a15957910fe5fb551a5ed28\"" Jul 2 00:46:56.456584 env[1818]: time="2024-07-02T00:46:56.456529278Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Jul 2 00:46:56.459027 env[1818]: time="2024-07-02T00:46:56.458950087Z" level=info msg="CreateContainer within sandbox \"ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a\" for container &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,}" Jul 2 00:46:56.484686 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1674409619.mount: Deactivated successfully. Jul 2 00:46:56.495010 env[1818]: time="2024-07-02T00:46:56.494929052Z" level=info msg="CreateContainer within sandbox \"ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a\" for &ContainerMetadata{Name:csi-node-driver-registrar,Attempt:0,} returns container id \"7b70cc1c3f47f25306ee1f59b5a5be75f5275f42e57119db4d10c480a908e621\"" Jul 2 00:46:56.495966 env[1818]: time="2024-07-02T00:46:56.495915171Z" level=info msg="StartContainer for \"7b70cc1c3f47f25306ee1f59b5a5be75f5275f42e57119db4d10c480a908e621\"" Jul 2 00:46:56.515430 kubelet[2207]: E0702 00:46:56.515376 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:56.537782 systemd[1]: Started cri-containerd-7b70cc1c3f47f25306ee1f59b5a5be75f5275f42e57119db4d10c480a908e621.scope. Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3315 pid=3500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:56.580000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3762373063633163336634376632353330366565316635396235613562 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit: BPF prog-id=102 op=LOAD Jul 2 00:46:56.580000 audit[3500]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3315 pid=3500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:56.580000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3762373063633163336634376632353330366565316635396235613562 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit: BPF prog-id=103 op=LOAD Jul 2 00:46:56.580000 audit[3500]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3315 pid=3500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:56.580000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3762373063633163336634376632353330366565316635396235613562 Jul 2 00:46:56.580000 audit: BPF prog-id=103 op=UNLOAD Jul 2 00:46:56.580000 audit: BPF prog-id=102 op=UNLOAD Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { perfmon } for pid=3500 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit[3500]: AVC avc: denied { bpf } for pid=3500 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:46:56.580000 audit: BPF prog-id=104 op=LOAD Jul 2 00:46:56.580000 audit[3500]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3315 pid=3500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:46:56.580000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3762373063633163336634376632353330366565316635396235613562 Jul 2 00:46:56.614331 env[1818]: time="2024-07-02T00:46:56.614259812Z" level=info msg="StartContainer for \"7b70cc1c3f47f25306ee1f59b5a5be75f5275f42e57119db4d10c480a908e621\" returns successfully" Jul 2 00:46:56.682524 kubelet[2207]: I0702 00:46:56.682201 2207 csi_plugin.go:99] kubernetes.io/csi: Trying to validate a new CSI Driver with name: csi.tigera.io endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock versions: 1.0.0 Jul 2 00:46:56.682524 kubelet[2207]: I0702 00:46:56.682244 2207 csi_plugin.go:112] kubernetes.io/csi: Register new plugin with name: csi.tigera.io at endpoint: /var/lib/kubelet/plugins/csi.tigera.io/csi.sock Jul 2 00:46:56.831136 systemd-networkd[1534]: calif77f8e5dc09: Gained IPv6LL Jul 2 00:46:57.148000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@7-172.31.22.203:22-112.4.238.226:43638 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:46:57.149668 systemd[1]: Started sshd@7-172.31.22.203:22-112.4.238.226:43638.service. Jul 2 00:46:57.516648 kubelet[2207]: E0702 00:46:57.516260 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:58.248582 sshd[3532]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:46:58.248000 audit[3532]: USER_AUTH pid=3532 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:46:58.517469 kubelet[2207]: E0702 00:46:58.517110 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:59.517771 kubelet[2207]: E0702 00:46:59.517705 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:46:59.874535 sshd[3532]: Failed password for root from 112.4.238.226 port 43638 ssh2 Jul 2 00:47:00.206966 amazon-ssm-agent[1793]: 2024-07-02 00:47:00 INFO [MessagingDeliveryService] [Association] Schedule manager refreshed with 0 associations, 0 new associations associated Jul 2 00:47:00.215463 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2585109483.mount: Deactivated successfully. Jul 2 00:47:00.388523 sshd[3532]: Connection closed by authenticating user root 112.4.238.226 port 43638 [preauth] Jul 2 00:47:00.391085 systemd[1]: sshd@7-172.31.22.203:22-112.4.238.226:43638.service: Deactivated successfully. Jul 2 00:47:00.400721 kernel: kauditd_printk_skb: 198 callbacks suppressed Jul 2 00:47:00.400879 kernel: audit: type=1131 audit(1719881220.391:653): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@7-172.31.22.203:22-112.4.238.226:43638 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:00.391000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@7-172.31.22.203:22-112.4.238.226:43638 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:00.518928 kubelet[2207]: E0702 00:47:00.518487 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:00.608000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@8-172.31.22.203:22-112.4.238.226:46078 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:00.609304 systemd[1]: Started sshd@8-172.31.22.203:22-112.4.238.226:46078.service. Jul 2 00:47:00.621677 kernel: audit: type=1130 audit(1719881220.608:654): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@8-172.31.22.203:22-112.4.238.226:46078 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:01.519903 kubelet[2207]: E0702 00:47:01.519810 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:01.727027 sshd[3551]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:01.726000 audit[3551]: USER_AUTH pid=3551 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:01.737400 kernel: audit: type=1100 audit(1719881221.726:655): pid=3551 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:02.482810 kubelet[2207]: E0702 00:47:02.482717 2207 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:02.483301 env[1818]: time="2024-07-02T00:47:02.483242549Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:02.486703 env[1818]: time="2024-07-02T00:47:02.486637363Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:2d3caadc252cc3b24921aae8c484cb83879b0b39cb20bb8d23a3a54872427653,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:02.497030 env[1818]: time="2024-07-02T00:47:02.496971279Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:02.502170 env[1818]: time="2024-07-02T00:47:02.502091433Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/nginx@sha256:bf28ef5d86aca0cd30a8ef19032ccadc1eada35dc9f14f42f3ccb73974f013de,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:02.503052 env[1818]: time="2024-07-02T00:47:02.502993305Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:2d3caadc252cc3b24921aae8c484cb83879b0b39cb20bb8d23a3a54872427653\"" Jul 2 00:47:02.507881 env[1818]: time="2024-07-02T00:47:02.507805086Z" level=info msg="CreateContainer within sandbox \"dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39\" for container &ContainerMetadata{Name:nginx,Attempt:0,}" Jul 2 00:47:02.524873 kubelet[2207]: E0702 00:47:02.524776 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:02.538819 env[1818]: time="2024-07-02T00:47:02.538734620Z" level=info msg="CreateContainer within sandbox \"dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39\" for &ContainerMetadata{Name:nginx,Attempt:0,} returns container id \"34a41e6341fb3406902a2f6a3a0d438b567b28371594e5c18903b886b788d8d8\"" Jul 2 00:47:02.539935 env[1818]: time="2024-07-02T00:47:02.539864418Z" level=info msg="StartContainer for \"34a41e6341fb3406902a2f6a3a0d438b567b28371594e5c18903b886b788d8d8\"" Jul 2 00:47:02.580528 systemd[1]: run-containerd-runc-k8s.io-34a41e6341fb3406902a2f6a3a0d438b567b28371594e5c18903b886b788d8d8-runc.R2uNEH.mount: Deactivated successfully. Jul 2 00:47:02.591199 systemd[1]: Started cri-containerd-34a41e6341fb3406902a2f6a3a0d438b567b28371594e5c18903b886b788d8d8.scope. Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631819 kernel: audit: type=1400 audit(1719881222.617:656): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631976 kernel: audit: type=1400 audit(1719881222.617:657): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.639857 kernel: audit: type=1400 audit(1719881222.617:658): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.640373 kernel: audit: type=1400 audit(1719881222.617:659): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.653758 kernel: audit: type=1400 audit(1719881222.617:660): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.653907 kernel: audit: type=1400 audit(1719881222.617:661): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.667188 kernel: audit: type=1400 audit(1719881222.617:662): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.617000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.624000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.624000 audit: BPF prog-id=105 op=LOAD Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000115b38 a2=10 a3=0 items=0 ppid=3457 pid=3562 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:02.630000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3334613431653633343166623334303639303261326636613361306434 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001155a0 a2=3c a3=0 items=0 ppid=3457 pid=3562 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:02.630000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3334613431653633343166623334303639303261326636613361306434 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.630000 audit: BPF prog-id=106 op=LOAD Jul 2 00:47:02.630000 audit[3562]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001158e0 a2=78 a3=0 items=0 ppid=3457 pid=3562 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:02.630000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3334613431653633343166623334303639303261326636613361306434 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit: BPF prog-id=107 op=LOAD Jul 2 00:47:02.631000 audit[3562]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000115670 a2=78 a3=0 items=0 ppid=3457 pid=3562 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:02.631000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3334613431653633343166623334303639303261326636613361306434 Jul 2 00:47:02.631000 audit: BPF prog-id=107 op=UNLOAD Jul 2 00:47:02.631000 audit: BPF prog-id=106 op=UNLOAD Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { perfmon } for pid=3562 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit[3562]: AVC avc: denied { bpf } for pid=3562 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:02.631000 audit: BPF prog-id=108 op=LOAD Jul 2 00:47:02.631000 audit[3562]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000115b40 a2=78 a3=0 items=0 ppid=3457 pid=3562 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:02.631000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3334613431653633343166623334303639303261326636613361306434 Jul 2 00:47:02.694966 env[1818]: time="2024-07-02T00:47:02.694904827Z" level=info msg="StartContainer for \"34a41e6341fb3406902a2f6a3a0d438b567b28371594e5c18903b886b788d8d8\" returns successfully" Jul 2 00:47:02.937746 kubelet[2207]: I0702 00:47:02.937698 2207 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-system/csi-node-driver-w4f8j" podStartSLOduration=36.9923108 podStartE2EDuration="39.937638987s" podCreationTimestamp="2024-07-02 00:46:23 +0000 UTC" firstStartedPulling="2024-07-02 00:46:53.510116228 +0000 UTC m=+32.704060986" lastFinishedPulling="2024-07-02 00:46:56.455444415 +0000 UTC m=+35.649389173" observedRunningTime="2024-07-02 00:46:56.915089176 +0000 UTC m=+36.109033958" watchObservedRunningTime="2024-07-02 00:47:02.937638987 +0000 UTC m=+42.131583745" Jul 2 00:47:03.106471 sshd[3551]: Failed password for root from 112.4.238.226 port 46078 ssh2 Jul 2 00:47:03.525767 kubelet[2207]: E0702 00:47:03.525701 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:03.869231 sshd[3551]: Connection closed by authenticating user root 112.4.238.226 port 46078 [preauth] Jul 2 00:47:03.870932 systemd[1]: sshd@8-172.31.22.203:22-112.4.238.226:46078.service: Deactivated successfully. Jul 2 00:47:03.871000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@8-172.31.22.203:22-112.4.238.226:46078 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:04.084000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@9-172.31.22.203:22-112.4.238.226:48664 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:04.085432 systemd[1]: Started sshd@9-172.31.22.203:22-112.4.238.226:48664.service. Jul 2 00:47:04.526609 kubelet[2207]: E0702 00:47:04.526543 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:05.169895 sshd[3610]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:05.169000 audit[3610]: USER_AUTH pid=3610 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:05.527143 kubelet[2207]: E0702 00:47:05.526981 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:06.527529 kubelet[2207]: E0702 00:47:06.527453 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:07.092647 sshd[3610]: Failed password for root from 112.4.238.226 port 48664 ssh2 Jul 2 00:47:07.309040 sshd[3610]: Connection closed by authenticating user root 112.4.238.226 port 48664 [preauth] Jul 2 00:47:07.311121 systemd[1]: sshd@9-172.31.22.203:22-112.4.238.226:48664.service: Deactivated successfully. Jul 2 00:47:07.311000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@9-172.31.22.203:22-112.4.238.226:48664 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:07.313487 kernel: kauditd_printk_skb: 53 callbacks suppressed Jul 2 00:47:07.313556 kernel: audit: type=1131 audit(1719881227.311:677): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@9-172.31.22.203:22-112.4.238.226:48664 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:07.528619 kubelet[2207]: E0702 00:47:07.528409 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:07.529718 systemd[1]: Started sshd@10-172.31.22.203:22-112.4.238.226:50508.service. Jul 2 00:47:07.529000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@10-172.31.22.203:22-112.4.238.226:50508 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:07.540394 kernel: audit: type=1130 audit(1719881227.529:678): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@10-172.31.22.203:22-112.4.238.226:50508 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:07.939000 audit[3619]: NETFILTER_CFG table=filter:71 family=2 entries=20 op=nft_register_rule pid=3619 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:07.939000 audit[3619]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11860 a0=3 a1=ffffcbea6ad0 a2=0 a3=1 items=0 ppid=2362 pid=3619 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:07.955696 kernel: audit: type=1325 audit(1719881227.939:679): table=filter:71 family=2 entries=20 op=nft_register_rule pid=3619 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:07.955798 kernel: audit: type=1300 audit(1719881227.939:679): arch=c00000b7 syscall=211 success=yes exit=11860 a0=3 a1=ffffcbea6ad0 a2=0 a3=1 items=0 ppid=2362 pid=3619 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:07.955860 kernel: audit: type=1327 audit(1719881227.939:679): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:07.939000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:07.939000 audit[3619]: NETFILTER_CFG table=nat:72 family=2 entries=20 op=nft_register_rule pid=3619 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:07.939000 audit[3619]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=ffffcbea6ad0 a2=0 a3=1 items=0 ppid=2362 pid=3619 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:07.981191 kernel: audit: type=1325 audit(1719881227.939:680): table=nat:72 family=2 entries=20 op=nft_register_rule pid=3619 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:07.981364 kernel: audit: type=1300 audit(1719881227.939:680): arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=ffffcbea6ad0 a2=0 a3=1 items=0 ppid=2362 pid=3619 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:07.939000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:07.991397 kernel: audit: type=1327 audit(1719881227.939:680): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:07.995090 kubelet[2207]: I0702 00:47:07.995027 2207 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nginx-deployment-6d5f899847-9mn68" podStartSLOduration=19.914114413 podStartE2EDuration="26.994942946s" podCreationTimestamp="2024-07-02 00:46:41 +0000 UTC" firstStartedPulling="2024-07-02 00:46:55.424431146 +0000 UTC m=+34.618375892" lastFinishedPulling="2024-07-02 00:47:02.505259679 +0000 UTC m=+41.699204425" observedRunningTime="2024-07-02 00:47:02.93966074 +0000 UTC m=+42.133605498" watchObservedRunningTime="2024-07-02 00:47:07.994942946 +0000 UTC m=+47.188887716" Jul 2 00:47:07.995762 kubelet[2207]: I0702 00:47:07.995728 2207 topology_manager.go:215] "Topology Admit Handler" podUID="81973c60-a064-4f3c-b9fb-004a4c929280" podNamespace="default" podName="nfs-server-provisioner-0" Jul 2 00:47:07.991000 audit[3623]: NETFILTER_CFG table=filter:73 family=2 entries=32 op=nft_register_rule pid=3623 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:07.991000 audit[3623]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=11860 a0=3 a1=fffff7cbd270 a2=0 a3=1 items=0 ppid=2362 pid=3623 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:08.011316 kernel: audit: type=1325 audit(1719881227.991:681): table=filter:73 family=2 entries=32 op=nft_register_rule pid=3623 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:08.011450 kernel: audit: type=1300 audit(1719881227.991:681): arch=c00000b7 syscall=211 success=yes exit=11860 a0=3 a1=fffff7cbd270 a2=0 a3=1 items=0 ppid=2362 pid=3623 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:07.991000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:07.994000 audit[3623]: NETFILTER_CFG table=nat:74 family=2 entries=20 op=nft_register_rule pid=3623 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:07.994000 audit[3623]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=5772 a0=3 a1=fffff7cbd270 a2=0 a3=1 items=0 ppid=2362 pid=3623 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:07.994000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:08.021753 systemd[1]: Created slice kubepods-besteffort-pod81973c60_a064_4f3c_b9fb_004a4c929280.slice. Jul 2 00:47:08.064160 kubelet[2207]: I0702 00:47:08.064101 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"data\" (UniqueName: \"kubernetes.io/empty-dir/81973c60-a064-4f3c-b9fb-004a4c929280-data\") pod \"nfs-server-provisioner-0\" (UID: \"81973c60-a064-4f3c-b9fb-004a4c929280\") " pod="default/nfs-server-provisioner-0" Jul 2 00:47:08.064321 kubelet[2207]: I0702 00:47:08.064214 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-t6kmx\" (UniqueName: \"kubernetes.io/projected/81973c60-a064-4f3c-b9fb-004a4c929280-kube-api-access-t6kmx\") pod \"nfs-server-provisioner-0\" (UID: \"81973c60-a064-4f3c-b9fb-004a4c929280\") " pod="default/nfs-server-provisioner-0" Jul 2 00:47:08.327730 env[1818]: time="2024-07-02T00:47:08.327580084Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:81973c60-a064-4f3c-b9fb-004a4c929280,Namespace:default,Attempt:0,}" Jul 2 00:47:08.529353 kubelet[2207]: E0702 00:47:08.529294 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:08.585206 (udev-worker)[3621]: Network interface NamePolicy= disabled on kernel command line. Jul 2 00:47:08.588390 systemd-networkd[1534]: cali60e51b789ff: Link UP Jul 2 00:47:08.595687 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 00:47:08.595790 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali60e51b789ff: link becomes ready Jul 2 00:47:08.595120 systemd-networkd[1534]: cali60e51b789ff: Gained carrier Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.434 [INFO][3625] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.203-k8s-nfs--server--provisioner--0-eth0 nfs-server-provisioner- default 81973c60-a064-4f3c-b9fb-004a4c929280 1034 0 2024-07-02 00:47:07 +0000 UTC map[app:nfs-server-provisioner apps.kubernetes.io/pod-index:0 chart:nfs-server-provisioner-1.8.0 controller-revision-hash:nfs-server-provisioner-d5cbb7f57 heritage:Helm projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:nfs-server-provisioner release:nfs-server-provisioner statefulset.kubernetes.io/pod-name:nfs-server-provisioner-0] map[] [] [] []} {k8s 172.31.22.203 nfs-server-provisioner-0 eth0 nfs-server-provisioner [] [] [kns.default ksa.default.nfs-server-provisioner] cali60e51b789ff [{nfs TCP 2049 0 } {nfs-udp UDP 2049 0 } {nlockmgr TCP 32803 0 } {nlockmgr-udp UDP 32803 0 } {mountd TCP 20048 0 } {mountd-udp UDP 20048 0 } {rquotad TCP 875 0 } {rquotad-udp UDP 875 0 } {rpcbind TCP 111 0 } {rpcbind-udp UDP 111 0 } {statd TCP 662 0 } {statd-udp UDP 662 0 }] []}} ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.203-k8s-nfs--server--provisioner--0-" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.434 [INFO][3625] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.481 [INFO][3637] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" HandleID="k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Workload="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.506 [INFO][3637] ipam_plugin.go 264: Auto assigning IP ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" HandleID="k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Workload="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002edbf0), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.203", "pod":"nfs-server-provisioner-0", "timestamp":"2024-07-02 00:47:08.481720584 +0000 UTC"}, Hostname:"172.31.22.203", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.506 [INFO][3637] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.506 [INFO][3637] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.506 [INFO][3637] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.203' Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.513 [INFO][3637] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.528 [INFO][3637] ipam.go 372: Looking up existing affinities for host host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.541 [INFO][3637] ipam.go 489: Trying affinity for 192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.544 [INFO][3637] ipam.go 155: Attempting to load block cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.549 [INFO][3637] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.549 [INFO][3637] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.71.0/26 handle="k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.552 [INFO][3637] ipam.go 1685: Creating new handle: k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01 Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.561 [INFO][3637] ipam.go 1203: Writing block in order to claim IPs block=192.168.71.0/26 handle="k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.576 [INFO][3637] ipam.go 1216: Successfully claimed IPs: [192.168.71.3/26] block=192.168.71.0/26 handle="k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.576 [INFO][3637] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.71.3/26] handle="k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" host="172.31.22.203" Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.577 [INFO][3637] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:47:08.621250 env[1818]: 2024-07-02 00:47:08.577 [INFO][3637] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.71.3/26] IPv6=[] ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" HandleID="k8s-pod-network.b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Workload="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" Jul 2 00:47:08.622503 env[1818]: 2024-07-02 00:47:08.580 [INFO][3625] k8s.go 386: Populated endpoint ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"81973c60-a064-4f3c-b9fb-004a4c929280", ResourceVersion:"1034", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 47, 7, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "apps.kubernetes.io/pod-index":"0", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.71.3/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:08.622503 env[1818]: 2024-07-02 00:47:08.580 [INFO][3625] k8s.go 387: Calico CNI using IPs: [192.168.71.3/32] ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" Jul 2 00:47:08.622503 env[1818]: 2024-07-02 00:47:08.581 [INFO][3625] dataplane_linux.go 68: Setting the host side veth name to cali60e51b789ff ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" Jul 2 00:47:08.622503 env[1818]: 2024-07-02 00:47:08.597 [INFO][3625] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" Jul 2 00:47:08.622841 env[1818]: 2024-07-02 00:47:08.597 [INFO][3625] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-nfs--server--provisioner--0-eth0", GenerateName:"nfs-server-provisioner-", Namespace:"default", SelfLink:"", UID:"81973c60-a064-4f3c-b9fb-004a4c929280", ResourceVersion:"1034", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 47, 7, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nfs-server-provisioner", "apps.kubernetes.io/pod-index":"0", "chart":"nfs-server-provisioner-1.8.0", "controller-revision-hash":"nfs-server-provisioner-d5cbb7f57", "heritage":"Helm", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"nfs-server-provisioner", "release":"nfs-server-provisioner", "statefulset.kubernetes.io/pod-name":"nfs-server-provisioner-0"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01", Pod:"nfs-server-provisioner-0", Endpoint:"eth0", ServiceAccountName:"nfs-server-provisioner", IPNetworks:[]string{"192.168.71.3/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.nfs-server-provisioner"}, InterfaceName:"cali60e51b789ff", MAC:"8a:21:04:2e:8e:b9", Ports:[]v3.WorkloadEndpointPort{v3.WorkloadEndpointPort{Name:"nfs", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nfs-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x801, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"nlockmgr-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x8023, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"mountd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x4e50, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rquotad-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x36b, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"rpcbind-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x6f, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"TCP"}, Port:0x296, HostPort:0x0, HostIP:""}, v3.WorkloadEndpointPort{Name:"statd-udp", Protocol:numorstring.Protocol{Type:1, NumVal:0x0, StrVal:"UDP"}, Port:0x296, HostPort:0x0, HostIP:""}}, AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:08.622841 env[1818]: 2024-07-02 00:47:08.618 [INFO][3625] k8s.go 500: Wrote updated endpoint to datastore ContainerID="b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01" Namespace="default" Pod="nfs-server-provisioner-0" WorkloadEndpoint="172.31.22.203-k8s-nfs--server--provisioner--0-eth0" Jul 2 00:47:08.645000 audit[3616]: USER_AUTH pid=3616 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:08.645074 sshd[3616]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:08.660157 env[1818]: time="2024-07-02T00:47:08.660009068Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 00:47:08.660455 env[1818]: time="2024-07-02T00:47:08.660390562Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 00:47:08.660714 env[1818]: time="2024-07-02T00:47:08.660615955Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 00:47:08.661406 env[1818]: time="2024-07-02T00:47:08.661281864Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01 pid=3663 runtime=io.containerd.runc.v2 Jul 2 00:47:08.675000 audit[3672]: NETFILTER_CFG table=filter:75 family=2 entries=38 op=nft_register_chain pid=3672 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:47:08.675000 audit[3672]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=19820 a0=3 a1=ffffc7d37820 a2=0 a3=ffffa7e0bfa8 items=0 ppid=2871 pid=3672 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:08.675000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:47:08.703100 systemd[1]: Started cri-containerd-b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01.scope. Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.735000 audit: BPF prog-id=109 op=LOAD Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bdb38 a2=10 a3=0 items=0 ppid=3663 pid=3673 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:08.737000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6238663230623062306638316131313035393734323833643136613230 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bd5a0 a2=3c a3=0 items=0 ppid=3663 pid=3673 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:08.737000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6238663230623062306638316131313035393734323833643136613230 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit: BPF prog-id=110 op=LOAD Jul 2 00:47:08.737000 audit[3673]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bd8e0 a2=78 a3=0 items=0 ppid=3663 pid=3673 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:08.737000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6238663230623062306638316131313035393734323833643136613230 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit: BPF prog-id=111 op=LOAD Jul 2 00:47:08.737000 audit[3673]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001bd670 a2=78 a3=0 items=0 ppid=3663 pid=3673 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:08.737000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6238663230623062306638316131313035393734323833643136613230 Jul 2 00:47:08.737000 audit: BPF prog-id=111 op=UNLOAD Jul 2 00:47:08.737000 audit: BPF prog-id=110 op=UNLOAD Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { perfmon } for pid=3673 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit[3673]: AVC avc: denied { bpf } for pid=3673 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:08.737000 audit: BPF prog-id=112 op=LOAD Jul 2 00:47:08.737000 audit[3673]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bdb40 a2=78 a3=0 items=0 ppid=3663 pid=3673 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:08.737000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6238663230623062306638316131313035393734323833643136613230 Jul 2 00:47:08.793641 env[1818]: time="2024-07-02T00:47:08.793585992Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:nfs-server-provisioner-0,Uid:81973c60-a064-4f3c-b9fb-004a4c929280,Namespace:default,Attempt:0,} returns sandbox id \"b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01\"" Jul 2 00:47:08.800678 env[1818]: time="2024-07-02T00:47:08.800628346Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\"" Jul 2 00:47:09.533598 kubelet[2207]: E0702 00:47:09.533508 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:10.311492 sshd[3616]: Failed password for root from 112.4.238.226 port 50508 ssh2 Jul 2 00:47:10.398650 systemd-networkd[1534]: cali60e51b789ff: Gained IPv6LL Jul 2 00:47:10.534770 kubelet[2207]: E0702 00:47:10.534695 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:10.787601 sshd[3616]: Connection closed by authenticating user root 112.4.238.226 port 50508 [preauth] Jul 2 00:47:10.789522 systemd[1]: sshd@10-172.31.22.203:22-112.4.238.226:50508.service: Deactivated successfully. Jul 2 00:47:10.789000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@10-172.31.22.203:22-112.4.238.226:50508 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:11.005439 systemd[1]: Started sshd@11-172.31.22.203:22-112.4.238.226:53060.service. Jul 2 00:47:11.005000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@11-172.31.22.203:22-112.4.238.226:53060 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:11.535676 kubelet[2207]: E0702 00:47:11.535606 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:12.109754 sshd[3730]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:12.109000 audit[3730]: ANOM_LOGIN_FAILURES pid=3730 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='pam_faillock uid=0 exe="/usr/sbin/sshd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:12.109000 audit[3730]: USER_AUTH pid=3730 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:12.109991 sshd[3730]: pam_faillock(sshd:auth): Consecutive login failures for user root account temporarily locked Jul 2 00:47:12.351493 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2804406819.mount: Deactivated successfully. Jul 2 00:47:12.536283 kubelet[2207]: E0702 00:47:12.536107 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:13.537283 kubelet[2207]: E0702 00:47:13.537238 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:13.654522 sshd[3730]: Failed password for root from 112.4.238.226 port 53060 ssh2 Jul 2 00:47:14.250351 sshd[3730]: Connection closed by authenticating user root 112.4.238.226 port 53060 [preauth] Jul 2 00:47:14.252880 systemd[1]: sshd@11-172.31.22.203:22-112.4.238.226:53060.service: Deactivated successfully. Jul 2 00:47:14.251000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@11-172.31.22.203:22-112.4.238.226:53060 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:14.255920 kernel: kauditd_printk_skb: 69 callbacks suppressed Jul 2 00:47:14.256054 kernel: audit: type=1131 audit(1719881234.251:707): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@11-172.31.22.203:22-112.4.238.226:53060 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:14.474000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@12-172.31.22.203:22-112.4.238.226:55166 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:14.475035 systemd[1]: Started sshd@12-172.31.22.203:22-112.4.238.226:55166.service. Jul 2 00:47:14.486507 kernel: audit: type=1130 audit(1719881234.474:708): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@12-172.31.22.203:22-112.4.238.226:55166 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:14.538647 kubelet[2207]: E0702 00:47:14.538476 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:15.539379 kubelet[2207]: E0702 00:47:15.539308 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:15.591000 audit[3736]: USER_AUTH pid=3736 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:15.592818 sshd[3736]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:15.601427 kernel: audit: type=1100 audit(1719881235.591:709): pid=3736 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:16.130298 env[1818]: time="2024-07-02T00:47:16.130211314Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:16.134495 env[1818]: time="2024-07-02T00:47:16.134421755Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:16.139386 env[1818]: time="2024-07-02T00:47:16.139274570Z" level=info msg="ImageUpdate event &ImageUpdate{Name:registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:16.143484 env[1818]: time="2024-07-02T00:47:16.143407751Z" level=info msg="ImageCreate event &ImageCreate{Name:registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:16.145705 env[1818]: time="2024-07-02T00:47:16.145626778Z" level=info msg="PullImage \"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\" returns image reference \"sha256:5a42a519e0a8cf95c3c5f18f767c58c8c8b072aaea0a26e5e47a6f206c7df685\"" Jul 2 00:47:16.150311 env[1818]: time="2024-07-02T00:47:16.150244534Z" level=info msg="CreateContainer within sandbox \"b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01\" for container &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,}" Jul 2 00:47:16.177884 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount941531431.mount: Deactivated successfully. Jul 2 00:47:16.184978 env[1818]: time="2024-07-02T00:47:16.184903565Z" level=info msg="CreateContainer within sandbox \"b8f20b0b0f81a1105974283d16a200568aabc1b625623e565f5d7d26d00cfc01\" for &ContainerMetadata{Name:nfs-server-provisioner,Attempt:0,} returns container id \"a7042e85b381bc6c36f1e97321e2bd45a58086bb6b52b1cf6ed00f32f3b4ed9d\"" Jul 2 00:47:16.186264 env[1818]: time="2024-07-02T00:47:16.186184843Z" level=info msg="StartContainer for \"a7042e85b381bc6c36f1e97321e2bd45a58086bb6b52b1cf6ed00f32f3b4ed9d\"" Jul 2 00:47:16.241859 systemd[1]: run-containerd-runc-k8s.io-a7042e85b381bc6c36f1e97321e2bd45a58086bb6b52b1cf6ed00f32f3b4ed9d-runc.aVMkJs.mount: Deactivated successfully. Jul 2 00:47:16.245887 systemd[1]: Started cri-containerd-a7042e85b381bc6c36f1e97321e2bd45a58086bb6b52b1cf6ed00f32f3b4ed9d.scope. Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285759 kernel: audit: type=1400 audit(1719881236.271:710): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285920 kernel: audit: type=1400 audit(1719881236.271:711): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.293074 kernel: audit: type=1400 audit(1719881236.271:712): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.300753 kernel: audit: type=1400 audit(1719881236.271:713): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.308098 kernel: audit: type=1400 audit(1719881236.271:714): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.315384 kernel: audit: type=1400 audit(1719881236.271:715): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.325773 kernel: audit: type=1400 audit(1719881236.271:716): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.271000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.277000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.277000 audit: BPF prog-id=113 op=LOAD Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3663 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:16.285000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137303432653835623338316263366333366631653937333231653262 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3663 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:16.285000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137303432653835623338316263366333366631653937333231653262 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit: BPF prog-id=114 op=LOAD Jul 2 00:47:16.285000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3663 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:16.285000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137303432653835623338316263366333366631653937333231653262 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.285000 audit: BPF prog-id=115 op=LOAD Jul 2 00:47:16.285000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3663 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:16.285000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137303432653835623338316263366333366631653937333231653262 Jul 2 00:47:16.291000 audit: BPF prog-id=115 op=UNLOAD Jul 2 00:47:16.291000 audit: BPF prog-id=114 op=UNLOAD Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { perfmon } for pid=3747 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit[3747]: AVC avc: denied { bpf } for pid=3747 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:16.291000 audit: BPF prog-id=116 op=LOAD Jul 2 00:47:16.291000 audit[3747]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3663 pid=3747 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:16.291000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6137303432653835623338316263366333366631653937333231653262 Jul 2 00:47:16.344821 env[1818]: time="2024-07-02T00:47:16.344711063Z" level=info msg="StartContainer for \"a7042e85b381bc6c36f1e97321e2bd45a58086bb6b52b1cf6ed00f32f3b4ed9d\" returns successfully" Jul 2 00:47:16.450000 audit[3776]: AVC avc: denied { search } for pid=3776 comm="rpcbind" name="crypto" dev="proc" ino=19540 scontext=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Jul 2 00:47:16.450000 audit[3776]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffadd4f000 a2=0 a3=0 items=0 ppid=3759 pid=3776 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="rpcbind" exe="/usr/bin/rpcbind" subj=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 key=(null) Jul 2 00:47:16.450000 audit: PROCTITLE proctitle=2F7573722F7362696E2F72706362696E64002D77 Jul 2 00:47:16.533000 audit[3781]: AVC avc: denied { search } for pid=3781 comm="dbus-daemon" name="crypto" dev="proc" ino=19540 scontext=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Jul 2 00:47:16.533000 audit[3781]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffff89ccf000 a2=0 a3=0 items=0 ppid=3759 pid=3781 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 key=(null) Jul 2 00:47:16.533000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Jul 2 00:47:16.541018 kubelet[2207]: E0702 00:47:16.540961 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:16.540000 audit[3782]: AVC avc: denied { watch } for pid=3782 comm="dbus-daemon" path="/usr/share/dbus-1/system.d" dev="overlay" ino=535763 scontext=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c211,c975 tclass=dir permissive=0 Jul 2 00:47:16.540000 audit[3782]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=6 a1=aaaae3fda710 a2=2c8 a3=aaaae3fcca60 items=0 ppid=3781 pid=3782 auid=4294967295 uid=81 gid=81 euid=81 suid=81 fsuid=81 egid=81 sgid=81 fsgid=81 tty=(none) ses=4294967295 comm="dbus-daemon" exe="/usr/bin/dbus-daemon" subj=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 key=(null) Jul 2 00:47:16.540000 audit: PROCTITLE proctitle=646275732D6461656D6F6E002D2D73797374656D002D2D6E6F70696466696C65 Jul 2 00:47:16.549000 audit[3783]: AVC avc: denied { read } for pid=3783 comm="ganesha.nfsd" name="overcommit_memory" dev="proc" ino=19576 scontext=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 tcontext=system_u:object_r:sysctl_vm_overcommit_t:s0 tclass=file permissive=0 Jul 2 00:47:16.549000 audit[3783]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffff9c a1=ffffa7dda570 a2=80000 a3=0 items=0 ppid=3759 pid=3783 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 key=(null) Jul 2 00:47:16.549000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Jul 2 00:47:16.550000 audit[3783]: AVC avc: denied { search } for pid=3783 comm="ganesha.nfsd" name="crypto" dev="proc" ino=19540 scontext=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 tcontext=system_u:object_r:sysctl_crypto_t:s0 tclass=dir permissive=0 Jul 2 00:47:16.550000 audit[3783]: SYSCALL arch=c00000b7 syscall=56 success=no exit=-13 a0=ffffffffffffff9c a1=ffffa716f000 a2=0 a3=0 items=0 ppid=3759 pid=3783 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ganesha.nfsd" exe="/usr/local/bin/ganesha.nfsd" subj=system_u:system_r:svirt_lxc_net_t:s0:c211,c975 key=(null) Jul 2 00:47:16.550000 audit: PROCTITLE proctitle=67616E657368612E6E667364002D46002D4C002F6578706F72742F67616E657368612E6C6F67002D70002F7661722F72756E2F67616E657368612E706964002D66002F6578706F72742F7666732E636F6E66 Jul 2 00:47:16.994000 audit[3788]: NETFILTER_CFG table=filter:76 family=2 entries=20 op=nft_register_rule pid=3788 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:16.994000 audit[3788]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=ffffc8ff0d20 a2=0 a3=1 items=0 ppid=2362 pid=3788 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:16.994000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:16.999000 audit[3788]: NETFILTER_CFG table=nat:77 family=2 entries=104 op=nft_register_chain pid=3788 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:16.999000 audit[3788]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=48684 a0=3 a1=ffffc8ff0d20 a2=0 a3=1 items=0 ppid=2362 pid=3788 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:16.999000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:17.541585 kubelet[2207]: E0702 00:47:17.541511 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:18.225864 sshd[3736]: Failed password for root from 112.4.238.226 port 55166 ssh2 Jul 2 00:47:18.542639 kubelet[2207]: E0702 00:47:18.542310 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:19.543563 kubelet[2207]: E0702 00:47:19.543501 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:19.664960 sshd[3736]: Connection closed by authenticating user root 112.4.238.226 port 55166 [preauth] Jul 2 00:47:19.666655 systemd[1]: sshd@12-172.31.22.203:22-112.4.238.226:55166.service: Deactivated successfully. Jul 2 00:47:19.668931 kernel: kauditd_printk_skb: 71 callbacks suppressed Jul 2 00:47:19.669019 kernel: audit: type=1131 audit(1719881239.665:735): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@12-172.31.22.203:22-112.4.238.226:55166 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:19.665000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@12-172.31.22.203:22-112.4.238.226:55166 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:19.881650 systemd[1]: Started sshd@13-172.31.22.203:22-112.4.238.226:58834.service. Jul 2 00:47:19.881000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-172.31.22.203:22-112.4.238.226:58834 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:19.891407 kernel: audit: type=1130 audit(1719881239.881:736): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-172.31.22.203:22-112.4.238.226:58834 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:20.544551 kubelet[2207]: E0702 00:47:20.544509 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:20.971112 sshd[3794]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:20.971000 audit[3794]: USER_AUTH pid=3794 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:20.980409 kernel: audit: type=1100 audit(1719881240.971:737): pid=3794 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:21.546186 kubelet[2207]: E0702 00:47:21.546114 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:22.483250 kubelet[2207]: E0702 00:47:22.483186 2207 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:22.537208 env[1818]: time="2024-07-02T00:47:22.537124912Z" level=info msg="StopPodSandbox for \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\"" Jul 2 00:47:22.547063 kubelet[2207]: E0702 00:47:22.546967 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:22.617936 sshd[3794]: Failed password for root from 112.4.238.226 port 58834 ssh2 Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.606 [WARNING][3815] k8s.go 572: CNI_CONTAINERID does not match WorkloadEndpoint ContainerID, don't delete WEP. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-csi--node--driver--w4f8j-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"c5528acd-6ec8-46fd-8424-d5d9ffab1b92", ResourceVersion:"988", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 46, 23, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"7d7f6c786c", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a", Pod:"csi-node-driver-w4f8j", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali9ec9201565c", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.607 [INFO][3815] k8s.go 608: Cleaning up netns ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.607 [INFO][3815] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" iface="eth0" netns="" Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.607 [INFO][3815] k8s.go 615: Releasing IP address(es) ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.607 [INFO][3815] utils.go 188: Calico CNI releasing IP address ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.642 [INFO][3821] ipam_plugin.go 411: Releasing address using handleID ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.643 [INFO][3821] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.643 [INFO][3821] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.655 [WARNING][3821] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.656 [INFO][3821] ipam_plugin.go 439: Releasing address using workloadID ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.658 [INFO][3821] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:47:22.662572 env[1818]: 2024-07-02 00:47:22.660 [INFO][3815] k8s.go 621: Teardown processing complete. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:47:22.663572 env[1818]: time="2024-07-02T00:47:22.662619928Z" level=info msg="TearDown network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\" successfully" Jul 2 00:47:22.663572 env[1818]: time="2024-07-02T00:47:22.662665718Z" level=info msg="StopPodSandbox for \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\" returns successfully" Jul 2 00:47:22.663572 env[1818]: time="2024-07-02T00:47:22.663436283Z" level=info msg="RemovePodSandbox for \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\"" Jul 2 00:47:22.663572 env[1818]: time="2024-07-02T00:47:22.663491751Z" level=info msg="Forcibly stopping sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\"" Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.733 [WARNING][3841] k8s.go 572: CNI_CONTAINERID does not match WorkloadEndpoint ContainerID, don't delete WEP. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-csi--node--driver--w4f8j-eth0", GenerateName:"csi-node-driver-", Namespace:"calico-system", SelfLink:"", UID:"c5528acd-6ec8-46fd-8424-d5d9ffab1b92", ResourceVersion:"988", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 46, 23, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app.kubernetes.io/name":"csi-node-driver", "controller-revision-hash":"7d7f6c786c", "k8s-app":"csi-node-driver", "name":"csi-node-driver", "pod-template-generation":"1", "projectcalico.org/namespace":"calico-system", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"ec2393739821cfb13e1ce42f2b6e07e6c95058fe0b3b8e076bc506ca015e637a", Pod:"csi-node-driver-w4f8j", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.1/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-system", "ksa.calico-system.default"}, InterfaceName:"cali9ec9201565c", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.734 [INFO][3841] k8s.go 608: Cleaning up netns ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.734 [INFO][3841] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" iface="eth0" netns="" Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.734 [INFO][3841] k8s.go 615: Releasing IP address(es) ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.734 [INFO][3841] utils.go 188: Calico CNI releasing IP address ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.785 [INFO][3847] ipam_plugin.go 411: Releasing address using handleID ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.785 [INFO][3847] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.785 [INFO][3847] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.797 [WARNING][3847] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.797 [INFO][3847] ipam_plugin.go 439: Releasing address using workloadID ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" HandleID="k8s-pod-network.69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Workload="172.31.22.203-k8s-csi--node--driver--w4f8j-eth0" Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.799 [INFO][3847] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:47:22.804932 env[1818]: 2024-07-02 00:47:22.801 [INFO][3841] k8s.go 621: Teardown processing complete. ContainerID="69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797" Jul 2 00:47:22.804932 env[1818]: time="2024-07-02T00:47:22.803919522Z" level=info msg="TearDown network for sandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\" successfully" Jul 2 00:47:22.809513 env[1818]: time="2024-07-02T00:47:22.809447007Z" level=info msg="RemovePodSandbox \"69bf2a84e15f9c8398bb82dd20012da31d068f2cb2a6f448343918eb6a382797\" returns successfully" Jul 2 00:47:22.810312 env[1818]: time="2024-07-02T00:47:22.810175984Z" level=info msg="StopPodSandbox for \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\"" Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.899 [WARNING][3867] k8s.go 572: CNI_CONTAINERID does not match WorkloadEndpoint ContainerID, don't delete WEP. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30", ResourceVersion:"1004", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 46, 41, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39", Pod:"nginx-deployment-6d5f899847-9mn68", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calif77f8e5dc09", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.899 [INFO][3867] k8s.go 608: Cleaning up netns ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.899 [INFO][3867] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" iface="eth0" netns="" Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.899 [INFO][3867] k8s.go 615: Releasing IP address(es) ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.899 [INFO][3867] utils.go 188: Calico CNI releasing IP address ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.942 [INFO][3873] ipam_plugin.go 411: Releasing address using handleID ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.942 [INFO][3873] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.942 [INFO][3873] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.954 [WARNING][3873] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.955 [INFO][3873] ipam_plugin.go 439: Releasing address using workloadID ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.957 [INFO][3873] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:47:22.961680 env[1818]: 2024-07-02 00:47:22.959 [INFO][3867] k8s.go 621: Teardown processing complete. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:47:22.962677 env[1818]: time="2024-07-02T00:47:22.962451237Z" level=info msg="TearDown network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\" successfully" Jul 2 00:47:22.962677 env[1818]: time="2024-07-02T00:47:22.962500354Z" level=info msg="StopPodSandbox for \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\" returns successfully" Jul 2 00:47:22.963373 env[1818]: time="2024-07-02T00:47:22.963279995Z" level=info msg="RemovePodSandbox for \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\"" Jul 2 00:47:22.963477 env[1818]: time="2024-07-02T00:47:22.963411436Z" level=info msg="Forcibly stopping sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\"" Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.026 [WARNING][3892] k8s.go 572: CNI_CONTAINERID does not match WorkloadEndpoint ContainerID, don't delete WEP. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" WorkloadEndpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0", GenerateName:"nginx-deployment-6d5f899847-", Namespace:"default", SelfLink:"", UID:"83eb7ae4-a126-4a5b-b58f-2e1d4cbd6b30", ResourceVersion:"1004", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 46, 41, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"app":"nginx", "pod-template-hash":"6d5f899847", "projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"dac0205aaf760234e504faf0cc596654855944efb2b84e12a9f8562bd391ae39", Pod:"nginx-deployment-6d5f899847-9mn68", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.2/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"calif77f8e5dc09", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.026 [INFO][3892] k8s.go 608: Cleaning up netns ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.026 [INFO][3892] dataplane_linux.go 526: CleanUpNamespace called with no netns name, ignoring. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" iface="eth0" netns="" Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.026 [INFO][3892] k8s.go 615: Releasing IP address(es) ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.026 [INFO][3892] utils.go 188: Calico CNI releasing IP address ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.063 [INFO][3898] ipam_plugin.go 411: Releasing address using handleID ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.064 [INFO][3898] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.064 [INFO][3898] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.076 [WARNING][3898] ipam_plugin.go 428: Asked to release address but it doesn't exist. Ignoring ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.076 [INFO][3898] ipam_plugin.go 439: Releasing address using workloadID ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" HandleID="k8s-pod-network.cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Workload="172.31.22.203-k8s-nginx--deployment--6d5f899847--9mn68-eth0" Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.079 [INFO][3898] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:47:23.085294 env[1818]: 2024-07-02 00:47:23.081 [INFO][3892] k8s.go 621: Teardown processing complete. ContainerID="cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d" Jul 2 00:47:23.085294 env[1818]: time="2024-07-02T00:47:23.084442310Z" level=info msg="TearDown network for sandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\" successfully" Jul 2 00:47:23.089165 env[1818]: time="2024-07-02T00:47:23.089094607Z" level=info msg="RemovePodSandbox \"cb7ecea90391e446fd093cac5fb2fcd22e8a543e518a26da294d2ec7d583ba4d\" returns successfully" Jul 2 00:47:23.110153 sshd[3794]: Connection closed by authenticating user root 112.4.238.226 port 58834 [preauth] Jul 2 00:47:23.112903 systemd[1]: sshd@13-172.31.22.203:22-112.4.238.226:58834.service: Deactivated successfully. Jul 2 00:47:23.112000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-172.31.22.203:22-112.4.238.226:58834 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:23.121395 kernel: audit: type=1131 audit(1719881243.112:738): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-172.31.22.203:22-112.4.238.226:58834 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:23.324000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@14-172.31.22.203:22-112.4.238.226:33046 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:23.325485 systemd[1]: Started sshd@14-172.31.22.203:22-112.4.238.226:33046.service. Jul 2 00:47:23.337390 kernel: audit: type=1130 audit(1719881243.324:739): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@14-172.31.22.203:22-112.4.238.226:33046 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:23.547294 kubelet[2207]: E0702 00:47:23.547182 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:24.405868 sshd[3906]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:24.404000 audit[3906]: USER_AUTH pid=3906 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:24.414379 kernel: audit: type=1100 audit(1719881244.404:740): pid=3906 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:24.548454 kubelet[2207]: E0702 00:47:24.548375 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:25.549524 kubelet[2207]: E0702 00:47:25.549480 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:25.600630 sshd[3906]: Failed password for root from 112.4.238.226 port 33046 ssh2 Jul 2 00:47:26.091000 audit[3911]: NETFILTER_CFG table=filter:78 family=2 entries=9 op=nft_register_rule pid=3911 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:26.091000 audit[3911]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=ffffeb216dd0 a2=0 a3=1 items=0 ppid=2362 pid=3911 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:26.109411 kernel: audit: type=1325 audit(1719881246.091:741): table=filter:78 family=2 entries=9 op=nft_register_rule pid=3911 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:26.109545 kernel: audit: type=1300 audit(1719881246.091:741): arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=ffffeb216dd0 a2=0 a3=1 items=0 ppid=2362 pid=3911 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:26.091000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:26.115289 kernel: audit: type=1327 audit(1719881246.091:741): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:26.115450 kubelet[2207]: I0702 00:47:26.110224 2207 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="default/nfs-server-provisioner-0" podStartSLOduration=11.763491089 podStartE2EDuration="19.110169462s" podCreationTimestamp="2024-07-02 00:47:07 +0000 UTC" firstStartedPulling="2024-07-02 00:47:08.799606882 +0000 UTC m=+47.993551628" lastFinishedPulling="2024-07-02 00:47:16.146285243 +0000 UTC m=+55.340230001" observedRunningTime="2024-07-02 00:47:16.971462619 +0000 UTC m=+56.165407377" watchObservedRunningTime="2024-07-02 00:47:26.110169462 +0000 UTC m=+65.304114220" Jul 2 00:47:26.115450 kubelet[2207]: I0702 00:47:26.110667 2207 topology_manager.go:215] "Topology Admit Handler" podUID="cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a" podNamespace="calico-apiserver" podName="calico-apiserver-5fd4d99d4d-zjhj6" Jul 2 00:47:26.097000 audit[3911]: NETFILTER_CFG table=nat:79 family=2 entries=44 op=nft_register_rule pid=3911 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:26.122203 kernel: audit: type=1325 audit(1719881246.097:742): table=nat:79 family=2 entries=44 op=nft_register_rule pid=3911 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:26.097000 audit[3911]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=ffffeb216dd0 a2=0 a3=1 items=0 ppid=2362 pid=3911 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:26.124366 kernel: audit: type=1300 audit(1719881246.097:742): arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=ffffeb216dd0 a2=0 a3=1 items=0 ppid=2362 pid=3911 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:26.097000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:26.142569 kernel: audit: type=1327 audit(1719881246.097:742): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:26.123000 audit[3913]: NETFILTER_CFG table=filter:80 family=2 entries=10 op=nft_register_rule pid=3913 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:26.146672 systemd[1]: Created slice kubepods-besteffort-podcbbd4461_fe7b_4613_9a4c_3a6987ab3e0a.slice. Jul 2 00:47:26.148561 kernel: audit: type=1325 audit(1719881246.123:743): table=filter:80 family=2 entries=10 op=nft_register_rule pid=3913 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:26.123000 audit[3913]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=fffffd8336b0 a2=0 a3=1 items=0 ppid=2362 pid=3913 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:26.159312 kernel: audit: type=1300 audit(1719881246.123:743): arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=fffffd8336b0 a2=0 a3=1 items=0 ppid=2362 pid=3913 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:26.123000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:26.164793 kernel: audit: type=1327 audit(1719881246.123:743): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:26.123000 audit[3913]: NETFILTER_CFG table=nat:81 family=2 entries=44 op=nft_register_rule pid=3913 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:26.170478 kernel: audit: type=1325 audit(1719881246.123:744): table=nat:81 family=2 entries=44 op=nft_register_rule pid=3913 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:26.123000 audit[3913]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=fffffd8336b0 a2=0 a3=1 items=0 ppid=2362 pid=3913 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:26.123000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:26.182813 kubelet[2207]: I0702 00:47:26.182773 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-lcl2r\" (UniqueName: \"kubernetes.io/projected/cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a-kube-api-access-lcl2r\") pod \"calico-apiserver-5fd4d99d4d-zjhj6\" (UID: \"cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a\") " pod="calico-apiserver/calico-apiserver-5fd4d99d4d-zjhj6" Jul 2 00:47:26.183111 kubelet[2207]: I0702 00:47:26.183086 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"calico-apiserver-certs\" (UniqueName: \"kubernetes.io/secret/cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a-calico-apiserver-certs\") pod \"calico-apiserver-5fd4d99d4d-zjhj6\" (UID: \"cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a\") " pod="calico-apiserver/calico-apiserver-5fd4d99d4d-zjhj6" Jul 2 00:47:26.284287 kubelet[2207]: E0702 00:47:26.284229 2207 secret.go:194] Couldn't get secret calico-apiserver/calico-apiserver-certs: secret "calico-apiserver-certs" not found Jul 2 00:47:26.284502 kubelet[2207]: E0702 00:47:26.284364 2207 nestedpendingoperations.go:348] Operation for "{volumeName:kubernetes.io/secret/cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a-calico-apiserver-certs podName:cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a nodeName:}" failed. No retries permitted until 2024-07-02 00:47:26.784309209 +0000 UTC m=+65.978253943 (durationBeforeRetry 500ms). Error: MountVolume.SetUp failed for volume "calico-apiserver-certs" (UniqueName: "kubernetes.io/secret/cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a-calico-apiserver-certs") pod "calico-apiserver-5fd4d99d4d-zjhj6" (UID: "cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a") : secret "calico-apiserver-certs" not found Jul 2 00:47:26.541953 sshd[3906]: Connection closed by authenticating user root 112.4.238.226 port 33046 [preauth] Jul 2 00:47:26.544498 systemd[1]: sshd@14-172.31.22.203:22-112.4.238.226:33046.service: Deactivated successfully. Jul 2 00:47:26.543000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@14-172.31.22.203:22-112.4.238.226:33046 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:26.550587 kubelet[2207]: E0702 00:47:26.550536 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:26.756000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@15-172.31.22.203:22-112.4.238.226:35688 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:26.757110 systemd[1]: Started sshd@15-172.31.22.203:22-112.4.238.226:35688.service. Jul 2 00:47:27.073764 env[1818]: time="2024-07-02T00:47:27.073661544Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-5fd4d99d4d-zjhj6,Uid:cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a,Namespace:calico-apiserver,Attempt:0,}" Jul 2 00:47:27.326871 systemd-networkd[1534]: calic95029cfa92: Link UP Jul 2 00:47:27.329417 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 00:47:27.329503 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): calic95029cfa92: link becomes ready Jul 2 00:47:27.332254 systemd-networkd[1534]: calic95029cfa92: Gained carrier Jul 2 00:47:27.335177 (udev-worker)[3952]: Network interface NamePolicy= disabled on kernel command line. Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.164 [INFO][3933] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0 calico-apiserver-5fd4d99d4d- calico-apiserver cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a 1142 0 2024-07-02 00:47:26 +0000 UTC map[apiserver:true app.kubernetes.io/name:calico-apiserver k8s-app:calico-apiserver pod-template-hash:5fd4d99d4d projectcalico.org/namespace:calico-apiserver projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:calico-apiserver] map[] [] [] []} {k8s 172.31.22.203 calico-apiserver-5fd4d99d4d-zjhj6 eth0 calico-apiserver [] [] [kns.calico-apiserver ksa.calico-apiserver.calico-apiserver] calic95029cfa92 [] []}} ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Namespace="calico-apiserver" Pod="calico-apiserver-5fd4d99d4d-zjhj6" WorkloadEndpoint="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.165 [INFO][3933] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Namespace="calico-apiserver" Pod="calico-apiserver-5fd4d99d4d-zjhj6" WorkloadEndpoint="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.229 [INFO][3945] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" HandleID="k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Workload="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.254 [INFO][3945] ipam_plugin.go 264: Auto assigning IP ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" HandleID="k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Workload="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x40002edad0), Attrs:map[string]string{"namespace":"calico-apiserver", "node":"172.31.22.203", "pod":"calico-apiserver-5fd4d99d4d-zjhj6", "timestamp":"2024-07-02 00:47:27.229293497 +0000 UTC"}, Hostname:"172.31.22.203", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.254 [INFO][3945] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.254 [INFO][3945] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.254 [INFO][3945] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.203' Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.259 [INFO][3945] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.272 [INFO][3945] ipam.go 372: Looking up existing affinities for host host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.283 [INFO][3945] ipam.go 489: Trying affinity for 192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.287 [INFO][3945] ipam.go 155: Attempting to load block cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.293 [INFO][3945] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.293 [INFO][3945] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.71.0/26 handle="k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.296 [INFO][3945] ipam.go 1685: Creating new handle: k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.304 [INFO][3945] ipam.go 1203: Writing block in order to claim IPs block=192.168.71.0/26 handle="k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.319 [INFO][3945] ipam.go 1216: Successfully claimed IPs: [192.168.71.4/26] block=192.168.71.0/26 handle="k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.319 [INFO][3945] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.71.4/26] handle="k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" host="172.31.22.203" Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.319 [INFO][3945] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:47:27.355653 env[1818]: 2024-07-02 00:47:27.319 [INFO][3945] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.71.4/26] IPv6=[] ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" HandleID="k8s-pod-network.e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Workload="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" Jul 2 00:47:27.356992 env[1818]: 2024-07-02 00:47:27.321 [INFO][3933] k8s.go 386: Populated endpoint ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Namespace="calico-apiserver" Pod="calico-apiserver-5fd4d99d4d-zjhj6" WorkloadEndpoint="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0", GenerateName:"calico-apiserver-5fd4d99d4d-", Namespace:"calico-apiserver", SelfLink:"", UID:"cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a", ResourceVersion:"1142", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 47, 26, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"5fd4d99d4d", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"", Pod:"calico-apiserver-5fd4d99d4d-zjhj6", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.71.4/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"calic95029cfa92", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:27.356992 env[1818]: 2024-07-02 00:47:27.321 [INFO][3933] k8s.go 387: Calico CNI using IPs: [192.168.71.4/32] ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Namespace="calico-apiserver" Pod="calico-apiserver-5fd4d99d4d-zjhj6" WorkloadEndpoint="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" Jul 2 00:47:27.356992 env[1818]: 2024-07-02 00:47:27.322 [INFO][3933] dataplane_linux.go 68: Setting the host side veth name to calic95029cfa92 ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Namespace="calico-apiserver" Pod="calico-apiserver-5fd4d99d4d-zjhj6" WorkloadEndpoint="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" Jul 2 00:47:27.356992 env[1818]: 2024-07-02 00:47:27.335 [INFO][3933] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Namespace="calico-apiserver" Pod="calico-apiserver-5fd4d99d4d-zjhj6" WorkloadEndpoint="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" Jul 2 00:47:27.356992 env[1818]: 2024-07-02 00:47:27.335 [INFO][3933] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Namespace="calico-apiserver" Pod="calico-apiserver-5fd4d99d4d-zjhj6" WorkloadEndpoint="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0", GenerateName:"calico-apiserver-5fd4d99d4d-", Namespace:"calico-apiserver", SelfLink:"", UID:"cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a", ResourceVersion:"1142", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 47, 26, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"apiserver":"true", "app.kubernetes.io/name":"calico-apiserver", "k8s-app":"calico-apiserver", "pod-template-hash":"5fd4d99d4d", "projectcalico.org/namespace":"calico-apiserver", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"calico-apiserver"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee", Pod:"calico-apiserver-5fd4d99d4d-zjhj6", Endpoint:"eth0", ServiceAccountName:"calico-apiserver", IPNetworks:[]string{"192.168.71.4/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.calico-apiserver", "ksa.calico-apiserver.calico-apiserver"}, InterfaceName:"calic95029cfa92", MAC:"62:83:58:23:a4:83", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:27.356992 env[1818]: 2024-07-02 00:47:27.353 [INFO][3933] k8s.go 500: Wrote updated endpoint to datastore ContainerID="e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee" Namespace="calico-apiserver" Pod="calico-apiserver-5fd4d99d4d-zjhj6" WorkloadEndpoint="172.31.22.203-k8s-calico--apiserver--5fd4d99d4d--zjhj6-eth0" Jul 2 00:47:27.390787 env[1818]: time="2024-07-02T00:47:27.390653862Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 00:47:27.390936 env[1818]: time="2024-07-02T00:47:27.390805313Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 00:47:27.390936 env[1818]: time="2024-07-02T00:47:27.390879153Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 00:47:27.391271 env[1818]: time="2024-07-02T00:47:27.391198358Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee pid=3976 runtime=io.containerd.runc.v2 Jul 2 00:47:27.406000 audit[3985]: NETFILTER_CFG table=filter:82 family=2 entries=51 op=nft_register_chain pid=3985 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:47:27.406000 audit[3985]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=26276 a0=3 a1=ffffe07a3b40 a2=0 a3=ffffab9d8fa8 items=0 ppid=2871 pid=3985 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:27.406000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:47:27.444486 systemd[1]: run-containerd-runc-k8s.io-e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee-runc.FoUH6E.mount: Deactivated successfully. Jul 2 00:47:27.452405 systemd[1]: Started cri-containerd-e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee.scope. Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.476000 audit: BPF prog-id=117 op=LOAD Jul 2 00:47:27.478000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.478000 audit[3988]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=3976 pid=3988 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:27.478000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6538646131643464313335623938336663316461643438623364616166 Jul 2 00:47:27.478000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.478000 audit[3988]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=3976 pid=3988 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:27.478000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6538646131643464313335623938336663316461643438623364616166 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.479000 audit: BPF prog-id=118 op=LOAD Jul 2 00:47:27.479000 audit[3988]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=3976 pid=3988 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:27.479000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6538646131643464313335623938336663316461643438623364616166 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.480000 audit: BPF prog-id=119 op=LOAD Jul 2 00:47:27.480000 audit[3988]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=3976 pid=3988 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:27.480000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6538646131643464313335623938336663316461643438623364616166 Jul 2 00:47:27.481000 audit: BPF prog-id=119 op=UNLOAD Jul 2 00:47:27.482000 audit: BPF prog-id=118 op=UNLOAD Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { perfmon } for pid=3988 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit[3988]: AVC avc: denied { bpf } for pid=3988 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:27.482000 audit: BPF prog-id=120 op=LOAD Jul 2 00:47:27.482000 audit[3988]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=3976 pid=3988 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:27.482000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6538646131643464313335623938336663316461643438623364616166 Jul 2 00:47:27.523987 env[1818]: time="2024-07-02T00:47:27.523917088Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:calico-apiserver-5fd4d99d4d-zjhj6,Uid:cbbd4461-fe7b-4613-9a4c-3a6987ab3e0a,Namespace:calico-apiserver,Attempt:0,} returns sandbox id \"e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee\"" Jul 2 00:47:27.526776 env[1818]: time="2024-07-02T00:47:27.526717429Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.28.0\"" Jul 2 00:47:27.551618 kubelet[2207]: E0702 00:47:27.551539 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:27.848512 sshd[3930]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:27.847000 audit[3930]: USER_AUTH pid=3930 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:28.552454 kubelet[2207]: E0702 00:47:28.552381 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:29.220523 systemd-networkd[1534]: calic95029cfa92: Gained IPv6LL Jul 2 00:47:29.553250 kubelet[2207]: E0702 00:47:29.553107 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:29.790691 sshd[3930]: Failed password for root from 112.4.238.226 port 35688 ssh2 Jul 2 00:47:30.158708 env[1818]: time="2024-07-02T00:47:30.158629754Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:30.161865 env[1818]: time="2024-07-02T00:47:30.161801064Z" level=info msg="ImageCreate event &ImageCreate{Name:sha256:cfbcd2d846bffa8495396cef27ce876ed8ebd8e36f660b8dd9326c1ff4d770ac,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:30.164973 env[1818]: time="2024-07-02T00:47:30.164924706Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/calico/apiserver:v3.28.0,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:30.167634 env[1818]: time="2024-07-02T00:47:30.167585638Z" level=info msg="ImageCreate event &ImageCreate{Name:ghcr.io/flatcar/calico/apiserver@sha256:e8f124312a4c41451e51bfc00b6e98929e9eb0510905f3301542719a3e8d2fec,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:30.168699 env[1818]: time="2024-07-02T00:47:30.168651972Z" level=info msg="PullImage \"ghcr.io/flatcar/calico/apiserver:v3.28.0\" returns image reference \"sha256:cfbcd2d846bffa8495396cef27ce876ed8ebd8e36f660b8dd9326c1ff4d770ac\"" Jul 2 00:47:30.173706 env[1818]: time="2024-07-02T00:47:30.173650315Z" level=info msg="CreateContainer within sandbox \"e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee\" for container &ContainerMetadata{Name:calico-apiserver,Attempt:0,}" Jul 2 00:47:30.197423 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount1071577114.mount: Deactivated successfully. Jul 2 00:47:30.204515 env[1818]: time="2024-07-02T00:47:30.204449194Z" level=info msg="CreateContainer within sandbox \"e8da1d4d135b983fc1dad48b3daaf7de07200645465964ab354bddb5d84840ee\" for &ContainerMetadata{Name:calico-apiserver,Attempt:0,} returns container id \"ebe926a72c59cb9136e223cda280b597639adff2605fc51f850bbd98ca816588\"" Jul 2 00:47:30.205976 env[1818]: time="2024-07-02T00:47:30.205929009Z" level=info msg="StartContainer for \"ebe926a72c59cb9136e223cda280b597639adff2605fc51f850bbd98ca816588\"" Jul 2 00:47:30.262990 systemd[1]: run-containerd-runc-k8s.io-ebe926a72c59cb9136e223cda280b597639adff2605fc51f850bbd98ca816588-runc.c02Nlt.mount: Deactivated successfully. Jul 2 00:47:30.271669 systemd[1]: Started cri-containerd-ebe926a72c59cb9136e223cda280b597639adff2605fc51f850bbd98ca816588.scope. Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.296000 audit: BPF prog-id=121 op=LOAD Jul 2 00:47:30.298000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.298000 audit[4029]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000145b38 a2=10 a3=0 items=0 ppid=3976 pid=4029 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:30.298000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562653932366137326335396362393133366532323363646132383062 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001455a0 a2=3c a3=0 items=0 ppid=3976 pid=4029 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:30.299000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562653932366137326335396362393133366532323363646132383062 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.299000 audit: BPF prog-id=122 op=LOAD Jul 2 00:47:30.299000 audit[4029]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001458e0 a2=78 a3=0 items=0 ppid=3976 pid=4029 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:30.299000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562653932366137326335396362393133366532323363646132383062 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.301000 audit: BPF prog-id=123 op=LOAD Jul 2 00:47:30.301000 audit[4029]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000145670 a2=78 a3=0 items=0 ppid=3976 pid=4029 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:30.301000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562653932366137326335396362393133366532323363646132383062 Jul 2 00:47:30.302000 audit: BPF prog-id=123 op=UNLOAD Jul 2 00:47:30.302000 audit: BPF prog-id=122 op=UNLOAD Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { perfmon } for pid=4029 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit[4029]: AVC avc: denied { bpf } for pid=4029 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:30.303000 audit: BPF prog-id=124 op=LOAD Jul 2 00:47:30.303000 audit[4029]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000145b40 a2=78 a3=0 items=0 ppid=3976 pid=4029 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:30.303000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F6562653932366137326335396362393133366532323363646132383062 Jul 2 00:47:30.345816 env[1818]: time="2024-07-02T00:47:30.344620254Z" level=info msg="StartContainer for \"ebe926a72c59cb9136e223cda280b597639adff2605fc51f850bbd98ca816588\" returns successfully" Jul 2 00:47:30.553855 kubelet[2207]: E0702 00:47:30.553662 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:31.075000 audit[4064]: NETFILTER_CFG table=filter:83 family=2 entries=10 op=nft_register_rule pid=4064 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:31.075000 audit[4064]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=fffff75beeb0 a2=0 a3=1 items=0 ppid=2362 pid=4064 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:31.075000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:31.084000 audit[4064]: NETFILTER_CFG table=nat:84 family=2 entries=44 op=nft_register_rule pid=4064 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:31.084000 audit[4064]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=fffff75beeb0 a2=0 a3=1 items=0 ppid=2362 pid=4064 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:31.084000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:31.555564 kubelet[2207]: E0702 00:47:31.555510 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:31.915115 sshd[3930]: Connection closed by authenticating user root 112.4.238.226 port 35688 [preauth] Jul 2 00:47:31.916000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@15-172.31.22.203:22-112.4.238.226:35688 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:31.917661 systemd[1]: sshd@15-172.31.22.203:22-112.4.238.226:35688.service: Deactivated successfully. Jul 2 00:47:31.920501 kernel: kauditd_printk_skb: 128 callbacks suppressed Jul 2 00:47:31.920584 kernel: audit: type=1131 audit(1719881251.916:787): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@15-172.31.22.203:22-112.4.238.226:35688 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:32.154612 systemd[1]: Started sshd@16-172.31.22.203:22-112.4.238.226:39278.service. Jul 2 00:47:32.153000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-172.31.22.203:22-112.4.238.226:39278 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:32.167380 kernel: audit: type=1130 audit(1719881252.153:788): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-172.31.22.203:22-112.4.238.226:39278 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:32.478000 audit[4072]: NETFILTER_CFG table=filter:85 family=2 entries=10 op=nft_register_rule pid=4072 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:32.478000 audit[4072]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=ffffdbe78920 a2=0 a3=1 items=0 ppid=2362 pid=4072 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:32.497418 kernel: audit: type=1325 audit(1719881252.478:789): table=filter:85 family=2 entries=10 op=nft_register_rule pid=4072 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:32.497608 kernel: audit: type=1300 audit(1719881252.478:789): arch=c00000b7 syscall=211 success=yes exit=3676 a0=3 a1=ffffdbe78920 a2=0 a3=1 items=0 ppid=2362 pid=4072 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:32.478000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:32.502554 kernel: audit: type=1327 audit(1719881252.478:789): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:32.479000 audit[4072]: NETFILTER_CFG table=nat:86 family=2 entries=44 op=nft_register_rule pid=4072 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:32.507979 kernel: audit: type=1325 audit(1719881252.479:790): table=nat:86 family=2 entries=44 op=nft_register_rule pid=4072 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:32.479000 audit[4072]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=ffffdbe78920 a2=0 a3=1 items=0 ppid=2362 pid=4072 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:32.519711 kernel: audit: type=1300 audit(1719881252.479:790): arch=c00000b7 syscall=211 success=yes exit=14988 a0=3 a1=ffffdbe78920 a2=0 a3=1 items=0 ppid=2362 pid=4072 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:32.479000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:32.525554 kernel: audit: type=1327 audit(1719881252.479:790): proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:32.557557 kubelet[2207]: E0702 00:47:32.557500 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:32.804000 audit[4040]: AVC avc: denied { watch } for pid=4040 comm="apiserver" path="/calico-apiserver-certs/..2024_07_02_00_47_26.258302419/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c780,c1001 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c780,c1001 tclass=file permissive=0 Jul 2 00:47:32.804000 audit[4040]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=400046bd80 a2=fc6 a3=0 items=0 ppid=3976 pid=4040 auid=4294967295 uid=10001 gid=10001 euid=10001 suid=10001 fsuid=10001 egid=10001 sgid=10001 fsgid=10001 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c780,c1001 key=(null) Jul 2 00:47:32.829698 kernel: audit: type=1400 audit(1719881252.804:791): avc: denied { watch } for pid=4040 comm="apiserver" path="/calico-apiserver-certs/..2024_07_02_00_47_26.258302419/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c780,c1001 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c780,c1001 tclass=file permissive=0 Jul 2 00:47:32.829871 kernel: audit: type=1300 audit(1719881252.804:791): arch=c00000b7 syscall=27 success=no exit=-13 a0=8 a1=400046bd80 a2=fc6 a3=0 items=0 ppid=3976 pid=4040 auid=4294967295 uid=10001 gid=10001 euid=10001 suid=10001 fsuid=10001 egid=10001 sgid=10001 fsgid=10001 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c780,c1001 key=(null) Jul 2 00:47:32.804000 audit: PROCTITLE proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Jul 2 00:47:32.874020 kubelet[2207]: I0702 00:47:32.873957 2207 pod_startup_latency_tracker.go:102] "Observed pod startup duration" pod="calico-apiserver/calico-apiserver-5fd4d99d4d-zjhj6" podStartSLOduration=4.230568905 podStartE2EDuration="6.873861811s" podCreationTimestamp="2024-07-02 00:47:26 +0000 UTC" firstStartedPulling="2024-07-02 00:47:27.525878447 +0000 UTC m=+66.719823193" lastFinishedPulling="2024-07-02 00:47:30.169171341 +0000 UTC m=+69.363116099" observedRunningTime="2024-07-02 00:47:31.026360646 +0000 UTC m=+70.220305428" watchObservedRunningTime="2024-07-02 00:47:32.873861811 +0000 UTC m=+72.067806569" Jul 2 00:47:32.899000 audit[4075]: NETFILTER_CFG table=filter:87 family=2 entries=9 op=nft_register_rule pid=4075 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:32.899000 audit[4075]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=ffffd48cd9b0 a2=0 a3=1 items=0 ppid=2362 pid=4075 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:32.899000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:32.906000 audit[4075]: NETFILTER_CFG table=nat:88 family=2 entries=51 op=nft_register_chain pid=4075 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:32.906000 audit[4075]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=18564 a0=3 a1=ffffd48cd9b0 a2=0 a3=1 items=0 ppid=2362 pid=4075 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:32.906000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:33.275278 sshd[4067]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:33.275000 audit[4067]: USER_AUTH pid=4067 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:33.558139 kubelet[2207]: E0702 00:47:33.557962 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:34.093000 audit[4077]: NETFILTER_CFG table=filter:89 family=2 entries=8 op=nft_register_rule pid=4077 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:34.093000 audit[4077]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=2932 a0=3 a1=ffffd8b93e60 a2=0 a3=1 items=0 ppid=2362 pid=4077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:34.093000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:34.097000 audit[4077]: NETFILTER_CFG table=nat:90 family=2 entries=58 op=nft_register_chain pid=4077 subj=system_u:system_r:kernel_t:s0 comm="iptables-restor" Jul 2 00:47:34.097000 audit[4077]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20452 a0=3 a1=ffffd8b93e60 a2=0 a3=1 items=0 ppid=2362 pid=4077 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-restor" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:34.097000 audit: PROCTITLE proctitle=69707461626C65732D726573746F7265002D770035002D5700313030303030002D2D6E6F666C757368002D2D636F756E74657273 Jul 2 00:47:34.559585 kubelet[2207]: E0702 00:47:34.559521 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:35.373946 sshd[4067]: Failed password for root from 112.4.238.226 port 39278 ssh2 Jul 2 00:47:35.560275 kubelet[2207]: E0702 00:47:35.560229 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:36.561044 kubelet[2207]: E0702 00:47:36.560981 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:37.351393 sshd[4067]: Connection closed by authenticating user root 112.4.238.226 port 39278 [preauth] Jul 2 00:47:37.353764 systemd[1]: sshd@16-172.31.22.203:22-112.4.238.226:39278.service: Deactivated successfully. Jul 2 00:47:37.353000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-172.31.22.203:22-112.4.238.226:39278 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:37.355976 kernel: kauditd_printk_skb: 14 callbacks suppressed Jul 2 00:47:37.356089 kernel: audit: type=1131 audit(1719881257.353:797): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-172.31.22.203:22-112.4.238.226:39278 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:37.567703 systemd[1]: Started sshd@17-172.31.22.203:22-112.4.238.226:43148.service. Jul 2 00:47:37.566000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-172.31.22.203:22-112.4.238.226:43148 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:37.580384 kernel: audit: type=1130 audit(1719881257.566:798): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-172.31.22.203:22-112.4.238.226:43148 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:37.580637 kubelet[2207]: E0702 00:47:37.580604 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:38.582255 kubelet[2207]: E0702 00:47:38.582187 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:38.678302 sshd[4082]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:38.677000 audit[4082]: USER_AUTH pid=4082 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:38.686409 kernel: audit: type=1100 audit(1719881258.677:799): pid=4082 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:38.762788 systemd[1]: run-containerd-runc-k8s.io-d70c49ae0b01ffb5bb40f815004ce62afab0fea7f12a85b83b1a6555981b8e97-runc.6nHrXO.mount: Deactivated successfully. Jul 2 00:47:39.583380 kubelet[2207]: E0702 00:47:39.583272 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:40.584589 kubelet[2207]: E0702 00:47:40.584478 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:40.718250 kubelet[2207]: I0702 00:47:40.718209 2207 topology_manager.go:215] "Topology Admit Handler" podUID="ef5746af-48be-4562-87f9-7282f7616938" podNamespace="default" podName="test-pod-1" Jul 2 00:47:40.728821 systemd[1]: Created slice kubepods-besteffort-podef5746af_48be_4562_87f9_7282f7616938.slice. Jul 2 00:47:40.785830 kubelet[2207]: I0702 00:47:40.785717 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"kube-api-access-wlnjr\" (UniqueName: \"kubernetes.io/projected/ef5746af-48be-4562-87f9-7282f7616938-kube-api-access-wlnjr\") pod \"test-pod-1\" (UID: \"ef5746af-48be-4562-87f9-7282f7616938\") " pod="default/test-pod-1" Jul 2 00:47:40.786034 kubelet[2207]: I0702 00:47:40.785885 2207 reconciler_common.go:258] "operationExecutor.VerifyControllerAttachedVolume started for volume \"pvc-4edb21e5-cb61-4c64-8c3f-3b623f53c9fa\" (UniqueName: \"kubernetes.io/nfs/ef5746af-48be-4562-87f9-7282f7616938-pvc-4edb21e5-cb61-4c64-8c3f-3b623f53c9fa\") pod \"test-pod-1\" (UID: \"ef5746af-48be-4562-87f9-7282f7616938\") " pod="default/test-pod-1" Jul 2 00:47:40.796181 sshd[4082]: Failed password for root from 112.4.238.226 port 43148 ssh2 Jul 2 00:47:40.914000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.924384 kernel: audit: type=1400 audit(1719881260.914:800): avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.924481 kernel: Failed to create system directory netfs Jul 2 00:47:40.933753 kernel: Failed to create system directory netfs Jul 2 00:47:40.933829 kernel: audit: type=1400 audit(1719881260.914:800): avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.933892 kernel: Failed to create system directory netfs Jul 2 00:47:40.914000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.914000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.942193 kernel: audit: type=1400 audit(1719881260.914:800): avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.942258 kernel: Failed to create system directory netfs Jul 2 00:47:40.914000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.944523 kernel: audit: type=1400 audit(1719881260.914:800): avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.914000 audit[4108]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaae57925e0 a1=12c14 a2=aaaaac04e028 a3=aaaae5783010 items=0 ppid=1383 pid=4108 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:40.967227 kernel: Failed to create system directory fscache Jul 2 00:47:40.967307 kernel: audit: type=1300 audit(1719881260.914:800): arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaae57925e0 a1=12c14 a2=aaaaac04e028 a3=aaaae5783010 items=0 ppid=1383 pid=4108 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:40.967378 kernel: Failed to create system directory fscache Jul 2 00:47:40.967449 kernel: audit: type=1327 audit(1719881260.914:800): proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 00:47:40.914000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 00:47:40.972150 kernel: Failed to create system directory fscache Jul 2 00:47:40.972233 kernel: audit: type=1400 audit(1719881260.951:801): avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.979553 kernel: Failed to create system directory fscache Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.982383 kernel: Failed to create system directory fscache Jul 2 00:47:40.982451 kernel: Failed to create system directory fscache Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.985522 kernel: Failed to create system directory fscache Jul 2 00:47:40.985603 kernel: Failed to create system directory fscache Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.988656 kernel: Failed to create system directory fscache Jul 2 00:47:40.988728 kernel: Failed to create system directory fscache Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.991805 kernel: Failed to create system directory fscache Jul 2 00:47:40.991866 kernel: Failed to create system directory fscache Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.994965 kernel: Failed to create system directory fscache Jul 2 00:47:40.995023 kernel: Failed to create system directory fscache Jul 2 00:47:40.951000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:40.997847 kernel: FS-Cache: Loaded Jul 2 00:47:40.951000 audit[4108]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaae59a5210 a1=4c344 a2=aaaaac04e028 a3=aaaae5783010 items=0 ppid=1383 pid=4108 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:40.951000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.038400 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.038510 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.038552 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.041478 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.041555 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.044606 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.044680 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.047742 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.047798 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.050842 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.050916 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.052392 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.055431 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.055517 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.058513 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.058602 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.061597 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.061693 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.064779 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.064851 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.067900 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.067976 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.070984 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.071079 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.074062 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.074171 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.077179 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.077250 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.080293 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.080383 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.083397 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.083483 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.086443 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.086542 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.089515 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.089603 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.092592 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.092683 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.095665 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.095736 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.098805 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.098904 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.101992 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.102064 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.105175 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.105237 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.108321 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.108434 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.111549 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.111621 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.114742 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.114794 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.117892 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.117947 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.121050 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.121124 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.124318 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.124396 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.127543 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.127612 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.130722 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.130863 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.133882 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.133931 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.137051 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.137103 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.140243 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.140322 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.143436 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.143487 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.146595 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.146653 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.149733 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.149782 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.152903 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.152954 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.156063 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.156114 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.159232 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.159283 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.162399 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.162464 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.165584 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.165647 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.168841 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.168939 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.171862 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.171948 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.175016 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.175108 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.183318 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.183557 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.186575 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.186627 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.189900 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.190016 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.193207 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.193332 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.196594 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.196747 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.198417 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.201526 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.201646 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.203321 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.206371 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.206430 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.209621 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.209678 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.212783 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.212836 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.215940 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.215992 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.219660 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.219778 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.222408 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.222516 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.225583 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.225633 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.228741 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.228833 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.231919 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.231971 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.235068 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.235116 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.238213 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.238265 kernel: Failed to create system directory sunrpc Jul 2 00:47:41.026000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.251500 kernel: RPC: Registered named UNIX socket transport module. Jul 2 00:47:41.251661 kernel: RPC: Registered udp transport module. Jul 2 00:47:41.251715 kernel: RPC: Registered tcp transport module. Jul 2 00:47:41.255226 kernel: RPC: Registered tcp NFSv4.1 backchannel transport module. Jul 2 00:47:41.026000 audit[4108]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaae59f1560 a1=14a514 a2=aaaaac04e028 a3=aaaae5783010 items=6 ppid=1383 pid=4108 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:41.026000 audit: CWD cwd="/" Jul 2 00:47:41.026000 audit: PATH item=0 name=(null) inode=1 dev=00:07 mode=040700 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:47:41.026000 audit: PATH item=1 name=(null) inode=21139 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:47:41.026000 audit: PATH item=2 name=(null) inode=21139 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:47:41.026000 audit: PATH item=3 name=(null) inode=21140 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:47:41.026000 audit: PATH item=4 name=(null) inode=21139 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=PARENT cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:47:41.026000 audit: PATH item=5 name=(null) inode=21141 dev=00:07 mode=040755 ouid=0 ogid=0 rdev=00:00 obj=system_u:object_r:debugfs_t:s0 nametype=CREATE cap_fp=0 cap_fi=0 cap_fe=0 cap_fver=0 cap_frootid=0 Jul 2 00:47:41.026000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.303543 kernel: Failed to create system directory nfs Jul 2 00:47:41.303656 kernel: Failed to create system directory nfs Jul 2 00:47:41.303730 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.306532 kernel: Failed to create system directory nfs Jul 2 00:47:41.306697 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.309588 kernel: Failed to create system directory nfs Jul 2 00:47:41.309692 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.312628 kernel: Failed to create system directory nfs Jul 2 00:47:41.312685 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.315685 kernel: Failed to create system directory nfs Jul 2 00:47:41.315740 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.318731 kernel: Failed to create system directory nfs Jul 2 00:47:41.318820 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.321824 kernel: Failed to create system directory nfs Jul 2 00:47:41.321903 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.323388 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.326394 kernel: Failed to create system directory nfs Jul 2 00:47:41.326483 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.329288 kernel: Failed to create system directory nfs Jul 2 00:47:41.329474 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.332310 kernel: Failed to create system directory nfs Jul 2 00:47:41.332492 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.335470 kernel: Failed to create system directory nfs Jul 2 00:47:41.335556 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.337003 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.339974 kernel: Failed to create system directory nfs Jul 2 00:47:41.340146 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.342992 kernel: Failed to create system directory nfs Jul 2 00:47:41.343116 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.344603 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.347668 kernel: Failed to create system directory nfs Jul 2 00:47:41.347761 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.350706 kernel: Failed to create system directory nfs Jul 2 00:47:41.350786 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.353739 kernel: Failed to create system directory nfs Jul 2 00:47:41.353789 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.356766 kernel: Failed to create system directory nfs Jul 2 00:47:41.356817 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.359813 kernel: Failed to create system directory nfs Jul 2 00:47:41.359867 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.362888 kernel: Failed to create system directory nfs Jul 2 00:47:41.362986 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.365924 kernel: Failed to create system directory nfs Jul 2 00:47:41.365973 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.368940 kernel: Failed to create system directory nfs Jul 2 00:47:41.368994 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.371937 kernel: Failed to create system directory nfs Jul 2 00:47:41.371991 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.374921 kernel: Failed to create system directory nfs Jul 2 00:47:41.374970 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.377927 kernel: Failed to create system directory nfs Jul 2 00:47:41.377987 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.380928 kernel: Failed to create system directory nfs Jul 2 00:47:41.381019 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.383913 kernel: Failed to create system directory nfs Jul 2 00:47:41.383962 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.386952 kernel: Failed to create system directory nfs Jul 2 00:47:41.387092 kernel: Failed to create system directory nfs Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.294000 audit[4108]: AVC avc: denied { confidentiality } for pid=4108 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.389887 kernel: Failed to create system directory nfs Jul 2 00:47:41.420565 kernel: FS-Cache: Netfs 'nfs' registered for caching Jul 2 00:47:41.294000 audit[4108]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=aaaae5b9a740 a1=1158a4 a2=aaaaac04e028 a3=aaaae5783010 items=0 ppid=1383 pid=4108 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:41.294000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D0066732D6E6673 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.472460 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.476386 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.476616 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.478550 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.480470 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.482361 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.484189 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.484257 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.487390 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.487473 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.490623 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.492210 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.494545 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.494664 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.497712 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.497774 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.500825 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.500882 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.503868 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.503918 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.506929 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.508668 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.508744 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.511945 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.513539 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.515264 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.516942 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.516998 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.520311 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.520387 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.523510 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.523559 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.526569 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.526635 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.529618 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.529669 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.532675 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.532744 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.535705 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.535755 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.538747 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.538798 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.541830 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.541880 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.546361 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.546413 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.546453 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.549383 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.549434 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.552419 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.552470 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.555461 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.557103 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.557186 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.560222 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.560305 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.563291 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.565019 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.565083 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.568169 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.568238 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.571273 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.571355 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.574378 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.574434 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.577411 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.577461 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.580481 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.580542 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.583599 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.583650 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.584759 kubelet[2207]: E0702 00:47:41.584694 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:41.585304 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.588124 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.588178 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.589676 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.591170 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.592831 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.594192 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.597260 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.598874 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.600459 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.602018 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.602089 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.605175 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.605226 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.608357 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.609936 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.611601 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.611707 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.614759 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.614808 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.617957 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.618239 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.459000 audit[4113]: AVC avc: denied { confidentiality } for pid=4113 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.621399 kernel: Failed to create system directory nfs4 Jul 2 00:47:41.827836 kernel: NFS: Registering the id_resolver key type Jul 2 00:47:41.828027 kernel: Key type id_resolver registered Jul 2 00:47:41.828090 kernel: Key type id_legacy registered Jul 2 00:47:41.459000 audit[4113]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffffa4c7b010 a1=19c0bc a2=aaaacaa9e028 a3=aaaad72f8010 items=0 ppid=1383 pid=4113 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:41.459000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D006E66737634 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.852494 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.856197 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.856389 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.856452 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.859670 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.859889 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.863034 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.863271 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.866677 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.866916 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.870359 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.870610 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.874025 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.874214 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.877482 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.877738 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.879293 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.882767 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.882894 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.886411 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.886538 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.889697 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.889827 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.893066 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.893191 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.846000 audit[4119]: AVC avc: denied { confidentiality } for pid=4119 comm="modprobe" lockdown_reason="use of tracefs" scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=lockdown permissive=0 Jul 2 00:47:41.896555 kernel: Failed to create system directory rpcgss Jul 2 00:47:41.846000 audit[4119]: SYSCALL arch=c00000b7 syscall=105 success=yes exit=0 a0=ffff87653010 a1=5ef24 a2=aaaac202e028 a3=aaaaec080010 items=0 ppid=1383 pid=4119 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="modprobe" exe="/usr/bin/kmod" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:41.846000 audit: PROCTITLE proctitle=2F7362696E2F6D6F6470726F6265002D71002D2D007270632D617574682D36 Jul 2 00:47:41.930654 nfsidmap[4128]: nss_getpwnam: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Jul 2 00:47:41.937468 nfsidmap[4129]: nss_name_to_gid: name 'root@nfs-server-provisioner.default.svc.cluster.local' does not map into domain 'us-west-2.compute.internal' Jul 2 00:47:41.955000 audit[2013]: AVC avc: denied { watch_reads } for pid=2013 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2885 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 00:47:41.955000 audit[2013]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaabf6d61f0 a2=10 a3=0 items=0 ppid=1 pid=2013 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:41.955000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Jul 2 00:47:41.955000 audit[2013]: AVC avc: denied { watch_reads } for pid=2013 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2885 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 00:47:41.955000 audit[2013]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaabf6d61f0 a2=10 a3=0 items=0 ppid=1 pid=2013 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:41.955000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Jul 2 00:47:41.955000 audit[2013]: AVC avc: denied { watch_reads } for pid=2013 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2885 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 00:47:41.955000 audit[2013]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=e a1=aaaabf6d61f0 a2=10 a3=0 items=0 ppid=1 pid=2013 auid=4294967295 uid=500 gid=500 euid=500 suid=500 fsuid=500 egid=500 sgid=500 fsgid=500 tty=(none) ses=4294967295 comm="systemd" exe="/usr/lib/systemd/systemd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:41.955000 audit: PROCTITLE proctitle=2F7573722F6C69622F73797374656D642F73797374656D64002D2D75736572 Jul 2 00:47:41.957000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2885 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 00:47:41.957000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2885 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 00:47:41.957000 audit[1]: AVC avc: denied { watch_reads } for pid=1 comm="systemd" path="/run/mount/utab.lock" dev="tmpfs" ino=2885 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:object_r:mount_runtime_t:s0 tclass=file permissive=0 Jul 2 00:47:42.236909 env[1818]: time="2024-07-02T00:47:42.236140639Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:ef5746af-48be-4562-87f9-7282f7616938,Namespace:default,Attempt:0,}" Jul 2 00:47:42.483627 kubelet[2207]: E0702 00:47:42.483561 2207 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:42.509518 (udev-worker)[4109]: Network interface NamePolicy= disabled on kernel command line. Jul 2 00:47:42.512788 systemd-networkd[1534]: cali5ec59c6bf6e: Link UP Jul 2 00:47:42.519895 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): eth0: link becomes ready Jul 2 00:47:42.520126 kernel: IPv6: ADDRCONF(NETDEV_CHANGE): cali5ec59c6bf6e: link becomes ready Jul 2 00:47:42.520270 systemd-networkd[1534]: cali5ec59c6bf6e: Gained carrier Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.334 [INFO][4131] plugin.go 326: Calico CNI found existing endpoint: &{{WorkloadEndpoint projectcalico.org/v3} {172.31.22.203-k8s-test--pod--1-eth0 default ef5746af-48be-4562-87f9-7282f7616938 1237 0 2024-07-02 00:47:08 +0000 UTC map[projectcalico.org/namespace:default projectcalico.org/orchestrator:k8s projectcalico.org/serviceaccount:default] map[] [] [] []} {k8s 172.31.22.203 test-pod-1 eth0 default [] [] [kns.default ksa.default.default] cali5ec59c6bf6e [] []}} ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.203-k8s-test--pod--1-" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.334 [INFO][4131] k8s.go 77: Extracted identifiers for CmdAddK8s ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.203-k8s-test--pod--1-eth0" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.383 [INFO][4141] ipam_plugin.go 224: Calico CNI IPAM request count IPv4=1 IPv6=0 ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" HandleID="k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Workload="172.31.22.203-k8s-test--pod--1-eth0" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.439 [INFO][4141] ipam_plugin.go 264: Auto assigning IP ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" HandleID="k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Workload="172.31.22.203-k8s-test--pod--1-eth0" assignArgs=ipam.AutoAssignArgs{Num4:1, Num6:0, HandleID:(*string)(0x4000303a80), Attrs:map[string]string{"namespace":"default", "node":"172.31.22.203", "pod":"test-pod-1", "timestamp":"2024-07-02 00:47:42.38379891 +0000 UTC"}, Hostname:"172.31.22.203", IPv4Pools:[]net.IPNet{}, IPv6Pools:[]net.IPNet{}, MaxBlocksPerHost:0, HostReservedAttrIPv4s:(*ipam.HostReservedAttr)(nil), HostReservedAttrIPv6s:(*ipam.HostReservedAttr)(nil), IntendedUse:"Workload"} Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.439 [INFO][4141] ipam_plugin.go 352: About to acquire host-wide IPAM lock. Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.440 [INFO][4141] ipam_plugin.go 367: Acquired host-wide IPAM lock. Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.440 [INFO][4141] ipam.go 107: Auto-assign 1 ipv4, 0 ipv6 addrs for host '172.31.22.203' Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.444 [INFO][4141] ipam.go 660: Looking up existing affinities for host handle="k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.469 [INFO][4141] ipam.go 372: Looking up existing affinities for host host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.476 [INFO][4141] ipam.go 489: Trying affinity for 192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.479 [INFO][4141] ipam.go 155: Attempting to load block cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.485 [INFO][4141] ipam.go 232: Affinity is confirmed and block has been loaded cidr=192.168.71.0/26 host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.485 [INFO][4141] ipam.go 1180: Attempting to assign 1 addresses from block block=192.168.71.0/26 handle="k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.488 [INFO][4141] ipam.go 1685: Creating new handle: k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413 Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.493 [INFO][4141] ipam.go 1203: Writing block in order to claim IPs block=192.168.71.0/26 handle="k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.501 [INFO][4141] ipam.go 1216: Successfully claimed IPs: [192.168.71.5/26] block=192.168.71.0/26 handle="k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.501 [INFO][4141] ipam.go 847: Auto-assigned 1 out of 1 IPv4s: [192.168.71.5/26] handle="k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" host="172.31.22.203" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.501 [INFO][4141] ipam_plugin.go 373: Released host-wide IPAM lock. Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.502 [INFO][4141] ipam_plugin.go 282: Calico CNI IPAM assigned addresses IPv4=[192.168.71.5/26] IPv6=[] ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" HandleID="k8s-pod-network.2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Workload="172.31.22.203-k8s-test--pod--1-eth0" Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.504 [INFO][4131] k8s.go 386: Populated endpoint ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.203-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"ef5746af-48be-4562-87f9-7282f7616938", ResourceVersion:"1237", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 47, 8, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.5/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:42.540130 env[1818]: 2024-07-02 00:47:42.504 [INFO][4131] k8s.go 387: Calico CNI using IPs: [192.168.71.5/32] ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.203-k8s-test--pod--1-eth0" Jul 2 00:47:42.542844 env[1818]: 2024-07-02 00:47:42.504 [INFO][4131] dataplane_linux.go 68: Setting the host side veth name to cali5ec59c6bf6e ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.203-k8s-test--pod--1-eth0" Jul 2 00:47:42.542844 env[1818]: 2024-07-02 00:47:42.528 [INFO][4131] dataplane_linux.go 479: Disabling IPv4 forwarding ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.203-k8s-test--pod--1-eth0" Jul 2 00:47:42.542844 env[1818]: 2024-07-02 00:47:42.529 [INFO][4131] k8s.go 414: Added Mac, interface name, and active container ID to endpoint ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.203-k8s-test--pod--1-eth0" endpoint=&v3.WorkloadEndpoint{TypeMeta:v1.TypeMeta{Kind:"WorkloadEndpoint", APIVersion:"projectcalico.org/v3"}, ObjectMeta:v1.ObjectMeta{Name:"172.31.22.203-k8s-test--pod--1-eth0", GenerateName:"", Namespace:"default", SelfLink:"", UID:"ef5746af-48be-4562-87f9-7282f7616938", ResourceVersion:"1237", Generation:0, CreationTimestamp:time.Date(2024, time.July, 2, 0, 47, 8, 0, time.Local), DeletionTimestamp:, DeletionGracePeriodSeconds:(*int64)(nil), Labels:map[string]string{"projectcalico.org/namespace":"default", "projectcalico.org/orchestrator":"k8s", "projectcalico.org/serviceaccount":"default"}, Annotations:map[string]string(nil), OwnerReferences:[]v1.OwnerReference(nil), Finalizers:[]string(nil), ManagedFields:[]v1.ManagedFieldsEntry(nil)}, Spec:v3.WorkloadEndpointSpec{Orchestrator:"k8s", Workload:"", Node:"172.31.22.203", ContainerID:"2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413", Pod:"test-pod-1", Endpoint:"eth0", ServiceAccountName:"default", IPNetworks:[]string{"192.168.71.5/32"}, IPNATs:[]v3.IPNAT(nil), IPv4Gateway:"", IPv6Gateway:"", Profiles:[]string{"kns.default", "ksa.default.default"}, InterfaceName:"cali5ec59c6bf6e", MAC:"3e:8b:27:58:86:c5", Ports:[]v3.WorkloadEndpointPort(nil), AllowSpoofedSourcePrefixes:[]string(nil)}} Jul 2 00:47:42.542844 env[1818]: 2024-07-02 00:47:42.537 [INFO][4131] k8s.go 500: Wrote updated endpoint to datastore ContainerID="2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413" Namespace="default" Pod="test-pod-1" WorkloadEndpoint="172.31.22.203-k8s-test--pod--1-eth0" Jul 2 00:47:42.577876 env[1818]: time="2024-07-02T00:47:42.577743965Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 2 00:47:42.578161 env[1818]: time="2024-07-02T00:47:42.578109288Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 2 00:47:42.578331 env[1818]: time="2024-07-02T00:47:42.578284214Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 2 00:47:42.578942 env[1818]: time="2024-07-02T00:47:42.578863483Z" level=info msg="starting signal loop" namespace=k8s.io path=/run/containerd/io.containerd.runtime.v2.task/k8s.io/2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413 pid=4168 runtime=io.containerd.runc.v2 Jul 2 00:47:42.588597 kubelet[2207]: E0702 00:47:42.588524 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:42.587000 audit[4169]: NETFILTER_CFG table=filter:91 family=2 entries=42 op=nft_register_chain pid=4169 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:47:42.591013 kernel: kauditd_printk_skb: 347 callbacks suppressed Jul 2 00:47:42.591157 kernel: audit: type=1325 audit(1719881262.587:812): table=filter:91 family=2 entries=42 op=nft_register_chain pid=4169 subj=system_u:system_r:kernel_t:s0 comm="iptables-nft-re" Jul 2 00:47:42.587000 audit[4169]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=20588 a0=3 a1=ffffd45f42b0 a2=0 a3=ffffbd056fa8 items=0 ppid=2871 pid=4169 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:42.610250 kernel: audit: type=1300 audit(1719881262.587:812): arch=c00000b7 syscall=211 success=yes exit=20588 a0=3 a1=ffffd45f42b0 a2=0 a3=ffffbd056fa8 items=0 ppid=2871 pid=4169 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables-nft-re" exe="/usr/sbin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:42.587000 audit: PROCTITLE proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:47:42.617097 kernel: audit: type=1327 audit(1719881262.587:812): proctitle=69707461626C65732D6E66742D726573746F7265002D2D6E6F666C757368002D2D766572626F7365002D2D77616974003130002D2D776169742D696E74657276616C003530303030 Jul 2 00:47:42.627018 systemd[1]: Started cri-containerd-2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413.scope. Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668606 kernel: audit: type=1400 audit(1719881262.654:813): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668691 kernel: audit: type=1400 audit(1719881262.654:814): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.675892 kernel: audit: type=1400 audit(1719881262.654:815): avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.682679 kernel: audit: type=1400 audit(1719881262.654:816): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.689581 kernel: audit: type=1400 audit(1719881262.654:817): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.696474 kernel: audit: type=1400 audit(1719881262.654:818): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.703321 kernel: audit: type=1400 audit(1719881262.654:819): avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.654000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.660000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.660000 audit: BPF prog-id=125 op=LOAD Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=40001bfb38 a2=10 a3=0 items=0 ppid=4168 pid=4181 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:42.667000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3231333162343333343731663438656561363738626635633639323765 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001bf5a0 a2=3c a3=0 items=0 ppid=4168 pid=4181 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:42.667000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3231333162343333343731663438656561363738626635633639323765 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.667000 audit: BPF prog-id=126 op=LOAD Jul 2 00:47:42.667000 audit[4181]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bf8e0 a2=78 a3=0 items=0 ppid=4168 pid=4181 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:42.667000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3231333162343333343731663438656561363738626635633639323765 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit: BPF prog-id=127 op=LOAD Jul 2 00:47:42.668000 audit[4181]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=40001bf670 a2=78 a3=0 items=0 ppid=4168 pid=4181 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:42.668000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3231333162343333343731663438656561363738626635633639323765 Jul 2 00:47:42.668000 audit: BPF prog-id=127 op=UNLOAD Jul 2 00:47:42.668000 audit: BPF prog-id=126 op=UNLOAD Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { perfmon } for pid=4181 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit[4181]: AVC avc: denied { bpf } for pid=4181 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:42.668000 audit: BPF prog-id=128 op=LOAD Jul 2 00:47:42.668000 audit[4181]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001bfb40 a2=78 a3=0 items=0 ppid=4168 pid=4181 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:42.668000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3231333162343333343731663438656561363738626635633639323765 Jul 2 00:47:42.741755 env[1818]: time="2024-07-02T00:47:42.741700024Z" level=info msg="RunPodSandbox for &PodSandboxMetadata{Name:test-pod-1,Uid:ef5746af-48be-4562-87f9-7282f7616938,Namespace:default,Attempt:0,} returns sandbox id \"2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413\"" Jul 2 00:47:42.744822 env[1818]: time="2024-07-02T00:47:42.744775210Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\"" Jul 2 00:47:42.749515 sshd[4082]: Connection closed by authenticating user root 112.4.238.226 port 43148 [preauth] Jul 2 00:47:42.751315 systemd[1]: sshd@17-172.31.22.203:22-112.4.238.226:43148.service: Deactivated successfully. Jul 2 00:47:42.750000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-172.31.22.203:22-112.4.238.226:43148 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:42.964000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@18-172.31.22.203:22-112.4.238.226:47138 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:42.965682 systemd[1]: Started sshd@18-172.31.22.203:22-112.4.238.226:47138.service. Jul 2 00:47:43.021371 env[1818]: time="2024-07-02T00:47:43.021282155Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:43.026228 env[1818]: time="2024-07-02T00:47:43.026148325Z" level=info msg="ImageUpdate event &ImageUpdate{Name:sha256:2d3caadc252cc3b24921aae8c484cb83879b0b39cb20bb8d23a3a54872427653,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:43.030936 env[1818]: time="2024-07-02T00:47:43.030883258Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx:latest,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:43.034114 env[1818]: time="2024-07-02T00:47:43.034046078Z" level=info msg="ImageUpdate event &ImageUpdate{Name:ghcr.io/flatcar/nginx@sha256:bf28ef5d86aca0cd30a8ef19032ccadc1eada35dc9f14f42f3ccb73974f013de,Labels:map[string]string{io.cri-containerd.image: managed,},XXX_unrecognized:[],}" Jul 2 00:47:43.036209 env[1818]: time="2024-07-02T00:47:43.035862660Z" level=info msg="PullImage \"ghcr.io/flatcar/nginx:latest\" returns image reference \"sha256:2d3caadc252cc3b24921aae8c484cb83879b0b39cb20bb8d23a3a54872427653\"" Jul 2 00:47:43.048029 env[1818]: time="2024-07-02T00:47:43.047941071Z" level=info msg="CreateContainer within sandbox \"2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413\" for container &ContainerMetadata{Name:test,Attempt:0,}" Jul 2 00:47:43.073590 systemd[1]: var-lib-containerd-tmpmounts-containerd\x2dmount2429553977.mount: Deactivated successfully. Jul 2 00:47:43.087652 env[1818]: time="2024-07-02T00:47:43.087513521Z" level=info msg="CreateContainer within sandbox \"2131b433471f48eea678bf5c6927e6dea3e64fcc984d2ce2a7aad5013d9d3413\" for &ContainerMetadata{Name:test,Attempt:0,} returns container id \"68f0ad9016346d7e13d7ce5a64344e1492ca9fc6bc1ec77d738efcf31c4aba19\"" Jul 2 00:47:43.088284 env[1818]: time="2024-07-02T00:47:43.088237309Z" level=info msg="StartContainer for \"68f0ad9016346d7e13d7ce5a64344e1492ca9fc6bc1ec77d738efcf31c4aba19\"" Jul 2 00:47:43.124988 systemd[1]: Started cri-containerd-68f0ad9016346d7e13d7ce5a64344e1492ca9fc6bc1ec77d738efcf31c4aba19.scope. Jul 2 00:47:43.156000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.156000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.156000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.157000 audit[1]: AVC avc: denied { perfmon } for pid=1 comm="systemd" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.157000 audit[1]: AVC avc: denied { bpf } for pid=1 comm="systemd" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.158000 audit: BPF prog-id=129 op=LOAD Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=0 a0=f a1=4000195b38 a2=10 a3=0 items=0 ppid=4168 pid=4217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:43.159000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638663061643930313633343664376531336437636535613634333434 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=0 a1=40001955a0 a2=3c a3=0 items=0 ppid=4168 pid=4217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:43.159000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638663061643930313633343664376531336437636535613634333434 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit: BPF prog-id=130 op=LOAD Jul 2 00:47:43.159000 audit[4217]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=40001958e0 a2=78 a3=0 items=0 ppid=4168 pid=4217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:43.159000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638663061643930313633343664376531336437636535613634333434 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit: BPF prog-id=131 op=LOAD Jul 2 00:47:43.159000 audit[4217]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=18 a0=5 a1=4000195670 a2=78 a3=0 items=0 ppid=4168 pid=4217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:43.159000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638663061643930313633343664376531336437636535613634333434 Jul 2 00:47:43.159000 audit: BPF prog-id=131 op=UNLOAD Jul 2 00:47:43.159000 audit: BPF prog-id=130 op=UNLOAD Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { perfmon } for pid=4217 comm="runc" capability=38 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit[4217]: AVC avc: denied { bpf } for pid=4217 comm="runc" capability=39 scontext=system_u:system_r:kernel_t:s0 tcontext=system_u:system_r:kernel_t:s0 tclass=capability2 permissive=0 Jul 2 00:47:43.159000 audit: BPF prog-id=132 op=LOAD Jul 2 00:47:43.159000 audit[4217]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=16 a0=5 a1=4000195b40 a2=78 a3=0 items=0 ppid=4168 pid=4217 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/run/torcx/unpack/docker/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 2 00:47:43.159000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F72756E2F636F6E7461696E6572642F72756E632F6B38732E696F002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6B38732E696F2F3638663061643930313633343664376531336437636535613634333434 Jul 2 00:47:43.192743 env[1818]: time="2024-07-02T00:47:43.192665840Z" level=info msg="StartContainer for \"68f0ad9016346d7e13d7ce5a64344e1492ca9fc6bc1ec77d738efcf31c4aba19\" returns successfully" Jul 2 00:47:43.589742 kubelet[2207]: E0702 00:47:43.589671 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:44.059240 sshd[4205]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:44.058000 audit[4205]: USER_AUTH pid=4205 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:44.447174 systemd-networkd[1534]: cali5ec59c6bf6e: Gained IPv6LL Jul 2 00:47:44.590252 kubelet[2207]: E0702 00:47:44.590185 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:45.590684 kubelet[2207]: E0702 00:47:45.590622 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:45.665635 sshd[4205]: Failed password for root from 112.4.238.226 port 47138 ssh2 Jul 2 00:47:46.200504 sshd[4205]: Connection closed by authenticating user root 112.4.238.226 port 47138 [preauth] Jul 2 00:47:46.202450 systemd[1]: sshd@18-172.31.22.203:22-112.4.238.226:47138.service: Deactivated successfully. Jul 2 00:47:46.202000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@18-172.31.22.203:22-112.4.238.226:47138 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:46.419000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@19-172.31.22.203:22-112.4.238.226:49604 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:46.419762 systemd[1]: Started sshd@19-172.31.22.203:22-112.4.238.226:49604.service. Jul 2 00:47:46.591497 kubelet[2207]: E0702 00:47:46.591001 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:47.519400 sshd[4265]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:47.518000 audit[4265]: USER_AUTH pid=4265 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:47.591227 kubelet[2207]: E0702 00:47:47.591155 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:48.592080 kubelet[2207]: E0702 00:47:48.592030 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:49.538137 sshd[4265]: Failed password for root from 112.4.238.226 port 49604 ssh2 Jul 2 00:47:49.593725 kubelet[2207]: E0702 00:47:49.593659 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:50.594261 kubelet[2207]: E0702 00:47:50.594215 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:51.596108 kubelet[2207]: E0702 00:47:51.596043 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:51.597641 sshd[4265]: Connection closed by authenticating user root 112.4.238.226 port 49604 [preauth] Jul 2 00:47:51.599917 systemd[1]: sshd@19-172.31.22.203:22-112.4.238.226:49604.service: Deactivated successfully. Jul 2 00:47:51.599000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@19-172.31.22.203:22-112.4.238.226:49604 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:51.602267 kernel: kauditd_printk_skb: 113 callbacks suppressed Jul 2 00:47:51.602373 kernel: audit: type=1131 audit(1719881271.599:855): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@19-172.31.22.203:22-112.4.238.226:49604 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:51.824675 systemd[1]: Started sshd@20-172.31.22.203:22-112.4.238.226:53618.service. Jul 2 00:47:51.825000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@20-172.31.22.203:22-112.4.238.226:53618 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:51.834385 kernel: audit: type=1130 audit(1719881271.825:856): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@20-172.31.22.203:22-112.4.238.226:53618 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:52.596247 kubelet[2207]: E0702 00:47:52.596198 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:52.932764 sshd[4271]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:52.932000 audit[4271]: USER_AUTH pid=4271 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:52.941406 kernel: audit: type=1100 audit(1719881272.932:857): pid=4271 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:53.597483 kubelet[2207]: E0702 00:47:53.597440 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:54.598418 kubelet[2207]: E0702 00:47:54.598332 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:55.306245 sshd[4271]: Failed password for root from 112.4.238.226 port 53618 ssh2 Jul 2 00:47:55.599047 kubelet[2207]: E0702 00:47:55.598990 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:56.599511 kubelet[2207]: E0702 00:47:56.599439 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:57.005992 sshd[4271]: Connection closed by authenticating user root 112.4.238.226 port 53618 [preauth] Jul 2 00:47:57.009422 systemd[1]: sshd@20-172.31.22.203:22-112.4.238.226:53618.service: Deactivated successfully. Jul 2 00:47:57.009000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@20-172.31.22.203:22-112.4.238.226:53618 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:57.018471 kernel: audit: type=1131 audit(1719881277.009:858): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@20-172.31.22.203:22-112.4.238.226:53618 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:57.225022 systemd[1]: Started sshd@21-172.31.22.203:22-112.4.238.226:57354.service. Jul 2 00:47:57.225000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@21-172.31.22.203:22-112.4.238.226:57354 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:57.237464 kernel: audit: type=1130 audit(1719881277.225:859): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@21-172.31.22.203:22-112.4.238.226:57354 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:47:57.600548 kubelet[2207]: E0702 00:47:57.600472 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:58.318597 sshd[4282]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:47:58.319000 audit[4282]: USER_AUTH pid=4282 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:58.327376 kernel: audit: type=1100 audit(1719881278.319:860): pid=4282 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:47:58.600766 kubelet[2207]: E0702 00:47:58.600686 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:47:59.601891 kubelet[2207]: E0702 00:47:59.601829 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:00.181311 sshd[4282]: Failed password for root from 112.4.238.226 port 57354 ssh2 Jul 2 00:48:00.458428 sshd[4282]: Connection closed by authenticating user root 112.4.238.226 port 57354 [preauth] Jul 2 00:48:00.460683 systemd[1]: sshd@21-172.31.22.203:22-112.4.238.226:57354.service: Deactivated successfully. Jul 2 00:48:00.459000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@21-172.31.22.203:22-112.4.238.226:57354 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:00.470441 kernel: audit: type=1131 audit(1719881280.459:861): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@21-172.31.22.203:22-112.4.238.226:57354 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:00.602273 kubelet[2207]: E0702 00:48:00.602226 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:00.673851 systemd[1]: Started sshd@22-172.31.22.203:22-112.4.238.226:59662.service. Jul 2 00:48:00.672000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@22-172.31.22.203:22-112.4.238.226:59662 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:00.685403 kernel: audit: type=1130 audit(1719881280.672:862): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@22-172.31.22.203:22-112.4.238.226:59662 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:01.604155 kubelet[2207]: E0702 00:48:01.604051 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:01.767298 sshd[4289]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:48:01.766000 audit[4289]: USER_AUTH pid=4289 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:01.775402 kernel: audit: type=1100 audit(1719881281.766:863): pid=4289 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:02.483079 kubelet[2207]: E0702 00:48:02.483029 2207 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:02.604722 kubelet[2207]: E0702 00:48:02.604668 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:03.605189 kubelet[2207]: E0702 00:48:03.605115 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:03.709613 sshd[4289]: Failed password for root from 112.4.238.226 port 59662 ssh2 Jul 2 00:48:04.503993 kubelet[2207]: E0702 00:48:04.503949 2207 controller.go:195] "Failed to update lease" err="Put \"https://172.31.27.140:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.203?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Jul 2 00:48:04.605551 kubelet[2207]: E0702 00:48:04.605488 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:04.684328 kubelet[2207]: E0702 00:48:04.684231 2207 kubelet_node_status.go:544] "Error updating node status, will retry" err="failed to patch status \"{\\\"status\\\":{\\\"$setElementOrder/conditions\\\":[{\\\"type\\\":\\\"NetworkUnavailable\\\"},{\\\"type\\\":\\\"MemoryPressure\\\"},{\\\"type\\\":\\\"DiskPressure\\\"},{\\\"type\\\":\\\"PIDPressure\\\"},{\\\"type\\\":\\\"Ready\\\"}],\\\"conditions\\\":[{\\\"lastHeartbeatTime\\\":\\\"2024-07-02T00:47:54Z\\\",\\\"type\\\":\\\"MemoryPressure\\\"},{\\\"lastHeartbeatTime\\\":\\\"2024-07-02T00:47:54Z\\\",\\\"type\\\":\\\"DiskPressure\\\"},{\\\"lastHeartbeatTime\\\":\\\"2024-07-02T00:47:54Z\\\",\\\"type\\\":\\\"PIDPressure\\\"},{\\\"lastHeartbeatTime\\\":\\\"2024-07-02T00:47:54Z\\\",\\\"type\\\":\\\"Ready\\\"}],\\\"images\\\":[{\\\"names\\\":[\\\"ghcr.io/flatcar/calico/node@sha256:95f8004836427050c9997ad0800819ced5636f6bda647b4158fc7c497910c8d0\\\",\\\"ghcr.io/flatcar/calico/node:v3.28.0\\\"],\\\"sizeBytes\\\":110491212},{\\\"names\\\":[\\\"ghcr.io/flatcar/calico/cni@sha256:67fdc0954d3c96f9a7938fca4d5759c835b773dfb5cb513903e89d21462d886e\\\",\\\"ghcr.io/flatcar/calico/cni:v3.28.0\\\"],\\\"sizeBytes\\\":88166283},{\\\"names\\\":[\\\"registry.k8s.io/sig-storage/nfs-provisioner@sha256:c825f3d5e28bde099bd7a3daace28772d412c9157ad47fa752a9ad0baafc118d\\\",\\\"registry.k8s.io/sig-storage/nfs-provisioner:v4.0.8\\\"],\\\"sizeBytes\\\":87371201},{\\\"names\\\":[\\\"ghcr.io/flatcar/nginx@sha256:bf28ef5d86aca0cd30a8ef19032ccadc1eada35dc9f14f42f3ccb73974f013de\\\",\\\"ghcr.io/flatcar/nginx:latest\\\"],\\\"sizeBytes\\\":67659569},{\\\"names\\\":[\\\"ghcr.io/flatcar/calico/apiserver@sha256:e8f124312a4c41451e51bfc00b6e98929e9eb0510905f3301542719a3e8d2fec\\\",\\\"ghcr.io/flatcar/calico/apiserver:v3.28.0\\\"],\\\"sizeBytes\\\":39198111},{\\\"names\\\":[\\\"registry.k8s.io/kube-proxy@sha256:88bacb3e1d6c0c37c6da95c6d6b8e30531d0b4d0ab540cc290b0af51fbfebd90\\\",\\\"registry.k8s.io/kube-proxy:v1.29.6\\\"],\\\"sizeBytes\\\":25051729},{\\\"names\\\":[\\\"ghcr.io/flatcar/calico/node-driver-registrar@sha256:b3caf3e7b3042b293728a5ab55d893798d60fec55993a9531e82997de0e534cc\\\",\\\"ghcr.io/flatcar/calico/node-driver-registrar:v3.28.0\\\"],\\\"sizeBytes\\\":10915087},{\\\"names\\\":[\\\"ghcr.io/flatcar/calico/csi@sha256:ac5f0089ad8eab325e5d16a59536f9292619adf16736b1554a439a66d543a63d\\\",\\\"ghcr.io/flatcar/calico/csi:v3.28.0\\\"],\\\"sizeBytes\\\":8577147},{\\\"names\\\":[\\\"ghcr.io/flatcar/calico/pod2daemon-flexvol@sha256:e57c9db86f1cee1ae6f41257eed1ee2f363783177809217a2045502a09cf7cee\\\",\\\"ghcr.io/flatcar/calico/pod2daemon-flexvol:v3.28.0\\\"],\\\"sizeBytes\\\":6282537},{\\\"names\\\":[\\\"registry.k8s.io/pause@sha256:3d380ca8864549e74af4b29c10f9cb0956236dfb01c40ca076fb6c37253234db\\\",\\\"registry.k8s.io/pause:3.6\\\"],\\\"sizeBytes\\\":253553}]}}\" for node \"172.31.22.203\": Patch \"https://172.31.27.140:6443/api/v1/nodes/172.31.22.203/status?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Jul 2 00:48:05.606156 kubelet[2207]: E0702 00:48:05.606088 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:05.835998 sshd[4289]: Connection closed by authenticating user root 112.4.238.226 port 59662 [preauth] Jul 2 00:48:05.838730 systemd[1]: sshd@22-172.31.22.203:22-112.4.238.226:59662.service: Deactivated successfully. Jul 2 00:48:05.838000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@22-172.31.22.203:22-112.4.238.226:59662 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:05.848380 kernel: audit: type=1131 audit(1719881285.838:864): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@22-172.31.22.203:22-112.4.238.226:59662 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:06.063776 systemd[1]: Started sshd@23-172.31.22.203:22-112.4.238.226:35372.service. Jul 2 00:48:06.064000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@23-172.31.22.203:22-112.4.238.226:35372 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:06.073392 kernel: audit: type=1130 audit(1719881286.064:865): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@23-172.31.22.203:22-112.4.238.226:35372 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:06.607140 kubelet[2207]: E0702 00:48:06.607030 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:07.179530 sshd[4300]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:48:07.178000 audit[4300]: USER_AUTH pid=4300 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:07.188379 kernel: audit: type=1100 audit(1719881287.178:866): pid=4300 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:07.607491 kubelet[2207]: E0702 00:48:07.607413 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:08.608374 kubelet[2207]: E0702 00:48:08.608302 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:08.610505 sshd[4300]: Failed password for root from 112.4.238.226 port 35372 ssh2 Jul 2 00:48:08.752393 systemd[1]: run-containerd-runc-k8s.io-d70c49ae0b01ffb5bb40f815004ce62afab0fea7f12a85b83b1a6555981b8e97-runc.pzVi2v.mount: Deactivated successfully. Jul 2 00:48:09.322901 sshd[4300]: Connection closed by authenticating user root 112.4.238.226 port 35372 [preauth] Jul 2 00:48:09.325021 systemd[1]: sshd@23-172.31.22.203:22-112.4.238.226:35372.service: Deactivated successfully. Jul 2 00:48:09.324000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@23-172.31.22.203:22-112.4.238.226:35372 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:09.334397 kernel: audit: type=1131 audit(1719881289.324:867): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@23-172.31.22.203:22-112.4.238.226:35372 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:09.538497 systemd[1]: Started sshd@24-172.31.22.203:22-112.4.238.226:37778.service. Jul 2 00:48:09.537000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@24-172.31.22.203:22-112.4.238.226:37778 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:09.548392 kernel: audit: type=1130 audit(1719881289.537:868): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@24-172.31.22.203:22-112.4.238.226:37778 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:09.610171 kubelet[2207]: E0702 00:48:09.610080 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:10.610510 kubelet[2207]: E0702 00:48:10.610445 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:10.622430 sshd[4332]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:48:10.621000 audit[4332]: USER_AUTH pid=4332 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:10.631434 kernel: audit: type=1100 audit(1719881290.621:869): pid=4332 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:11.610851 kubelet[2207]: E0702 00:48:11.610789 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:12.465098 sshd[4332]: Failed password for root from 112.4.238.226 port 37778 ssh2 Jul 2 00:48:12.611025 kubelet[2207]: E0702 00:48:12.610983 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:12.760370 sshd[4332]: Connection closed by authenticating user root 112.4.238.226 port 37778 [preauth] Jul 2 00:48:12.763537 systemd[1]: sshd@24-172.31.22.203:22-112.4.238.226:37778.service: Deactivated successfully. Jul 2 00:48:12.763000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@24-172.31.22.203:22-112.4.238.226:37778 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:12.772375 kernel: audit: type=1131 audit(1719881292.763:870): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@24-172.31.22.203:22-112.4.238.226:37778 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:12.997000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@25-172.31.22.203:22-112.4.238.226:39952 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:12.997162 systemd[1]: Started sshd@25-172.31.22.203:22-112.4.238.226:39952.service. Jul 2 00:48:13.007427 kernel: audit: type=1130 audit(1719881292.997:871): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@25-172.31.22.203:22-112.4.238.226:39952 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:13.612458 kubelet[2207]: E0702 00:48:13.612395 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:14.112456 sshd[4336]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:48:14.112000 audit[4336]: USER_AUTH pid=4336 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:14.121393 kernel: audit: type=1100 audit(1719881294.112:872): pid=4336 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:14.504925 kubelet[2207]: E0702 00:48:14.504754 2207 controller.go:195] "Failed to update lease" err="Put \"https://172.31.27.140:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.203?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Jul 2 00:48:14.613661 kubelet[2207]: E0702 00:48:14.613577 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:14.684959 kubelet[2207]: E0702 00:48:14.684890 2207 kubelet_node_status.go:544] "Error updating node status, will retry" err="error getting node \"172.31.22.203\": Get \"https://172.31.27.140:6443/api/v1/nodes/172.31.22.203?timeout=10s\": net/http: request canceled (Client.Timeout exceeded while awaiting headers)" Jul 2 00:48:15.614553 kubelet[2207]: E0702 00:48:15.614477 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:15.838094 sshd[4336]: Failed password for root from 112.4.238.226 port 39952 ssh2 Jul 2 00:48:16.257055 sshd[4336]: Connection closed by authenticating user root 112.4.238.226 port 39952 [preauth] Jul 2 00:48:16.259614 systemd[1]: sshd@25-172.31.22.203:22-112.4.238.226:39952.service: Deactivated successfully. Jul 2 00:48:16.258000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@25-172.31.22.203:22-112.4.238.226:39952 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:16.268446 kernel: audit: type=1131 audit(1719881296.258:873): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@25-172.31.22.203:22-112.4.238.226:39952 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:16.464785 systemd[1]: Started sshd@26-172.31.22.203:22-112.4.238.226:42454.service. Jul 2 00:48:16.463000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@26-172.31.22.203:22-112.4.238.226:42454 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:16.474401 kernel: audit: type=1130 audit(1719881296.463:874): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@26-172.31.22.203:22-112.4.238.226:42454 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:16.614922 kubelet[2207]: E0702 00:48:16.614839 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:17.549121 sshd[4345]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:48:17.548000 audit[4345]: USER_AUTH pid=4345 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:17.559465 kernel: audit: type=1100 audit(1719881297.548:875): pid=4345 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:17.615405 kubelet[2207]: E0702 00:48:17.615152 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:18.615685 kubelet[2207]: E0702 00:48:18.615610 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:19.616612 kubelet[2207]: E0702 00:48:19.616525 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:19.686403 sshd[4345]: Failed password for root from 112.4.238.226 port 42454 ssh2 Jul 2 00:48:20.617396 kubelet[2207]: E0702 00:48:20.617319 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:21.617308 sshd[4345]: Connection closed by authenticating user root 112.4.238.226 port 42454 [preauth] Jul 2 00:48:21.619683 kubelet[2207]: E0702 00:48:21.619464 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:21.620708 systemd[1]: sshd@26-172.31.22.203:22-112.4.238.226:42454.service: Deactivated successfully. Jul 2 00:48:21.619000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@26-172.31.22.203:22-112.4.238.226:42454 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:21.630382 kernel: audit: type=1131 audit(1719881301.619:876): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@26-172.31.22.203:22-112.4.238.226:42454 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:21.830544 systemd[1]: Started sshd@27-172.31.22.203:22-112.4.238.226:45852.service. Jul 2 00:48:21.829000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@27-172.31.22.203:22-112.4.238.226:45852 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:21.840409 kernel: audit: type=1130 audit(1719881301.829:877): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@27-172.31.22.203:22-112.4.238.226:45852 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:22.483563 kubelet[2207]: E0702 00:48:22.483501 2207 file.go:104] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:22.620465 kubelet[2207]: E0702 00:48:22.620405 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:22.903298 sshd[4358]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:48:22.902000 audit[4358]: USER_AUTH pid=4358 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:22.912416 kernel: audit: type=1100 audit(1719881302.902:878): pid=4358 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:23.621251 kubelet[2207]: E0702 00:48:23.621135 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:24.504599 kubelet[2207]: E0702 00:48:24.504540 2207 controller.go:195] "Failed to update lease" err="the server was unable to return a response in the time allotted, but may still be processing the request (put leases.coordination.k8s.io 172.31.22.203)" Jul 2 00:48:24.622442 kubelet[2207]: E0702 00:48:24.622389 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:24.685266 kubelet[2207]: E0702 00:48:24.685202 2207 kubelet_node_status.go:544] "Error updating node status, will retry" err="error getting node \"172.31.22.203\": the server was unable to return a response in the time allotted, but may still be processing the request (get nodes 172.31.22.203)" Jul 2 00:48:25.060144 sshd[4358]: Failed password for root from 112.4.238.226 port 45852 ssh2 Jul 2 00:48:25.622845 kubelet[2207]: E0702 00:48:25.622759 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:26.623238 kubelet[2207]: E0702 00:48:26.623165 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:26.972303 sshd[4358]: Connection closed by authenticating user root 112.4.238.226 port 45852 [preauth] Jul 2 00:48:26.975397 systemd[1]: sshd@27-172.31.22.203:22-112.4.238.226:45852.service: Deactivated successfully. Jul 2 00:48:26.975000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@27-172.31.22.203:22-112.4.238.226:45852 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:26.984437 kernel: audit: type=1131 audit(1719881306.975:879): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@27-172.31.22.203:22-112.4.238.226:45852 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:27.203258 systemd[1]: Started sshd@28-172.31.22.203:22-112.4.238.226:49238.service. Jul 2 00:48:27.203000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@28-172.31.22.203:22-112.4.238.226:49238 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:27.213410 kernel: audit: type=1130 audit(1719881307.203:880): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@28-172.31.22.203:22-112.4.238.226:49238 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:27.624163 kubelet[2207]: E0702 00:48:27.624058 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:28.300448 sshd[4392]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:48:28.300000 audit[4392]: USER_AUTH pid=4392 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:28.309390 kernel: audit: type=1100 audit(1719881308.300:881): pid=4392 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:28.624834 kubelet[2207]: E0702 00:48:28.624713 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:29.625332 kubelet[2207]: E0702 00:48:29.625231 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:30.614537 sshd[4392]: Failed password for root from 112.4.238.226 port 49238 ssh2 Jul 2 00:48:30.625888 kubelet[2207]: E0702 00:48:30.625852 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:31.132102 kubelet[2207]: E0702 00:48:31.132064 2207 controller.go:195] "Failed to update lease" err="Put \"https://172.31.27.140:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.203?timeout=10s\": unexpected EOF" Jul 2 00:48:31.133188 kubelet[2207]: E0702 00:48:31.133115 2207 controller.go:195] "Failed to update lease" err="Put \"https://172.31.27.140:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.203?timeout=10s\": dial tcp 172.31.27.140:6443: connect: connection refused" Jul 2 00:48:31.133391 kubelet[2207]: I0702 00:48:31.133190 2207 controller.go:115] "failed to update lease using latest lease, fallback to ensure lease" err="failed 5 attempts to update lease" Jul 2 00:48:31.134539 kubelet[2207]: E0702 00:48:31.134480 2207 controller.go:145] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.27.140:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.203?timeout=10s\": dial tcp 172.31.27.140:6443: connect: connection refused" interval="200ms" Jul 2 00:48:31.336546 kubelet[2207]: E0702 00:48:31.336434 2207 controller.go:145] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.27.140:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.203?timeout=10s\": dial tcp 172.31.27.140:6443: connect: connection refused" interval="400ms" Jul 2 00:48:31.627108 kubelet[2207]: E0702 00:48:31.627046 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:31.737538 kubelet[2207]: E0702 00:48:31.737502 2207 controller.go:145] "Failed to ensure lease exists, will retry" err="Get \"https://172.31.27.140:6443/apis/coordination.k8s.io/v1/namespaces/kube-node-lease/leases/172.31.22.203?timeout=10s\": dial tcp 172.31.27.140:6443: connect: connection refused" interval="800ms" Jul 2 00:48:32.133072 kubelet[2207]: E0702 00:48:32.133032 2207 kubelet_node_status.go:544] "Error updating node status, will retry" err="error getting node \"172.31.22.203\": Get \"https://172.31.27.140:6443/api/v1/nodes/172.31.22.203?timeout=10s\": dial tcp 172.31.27.140:6443: connect: connection refused - error from a previous attempt: unexpected EOF" Jul 2 00:48:32.133977 kubelet[2207]: E0702 00:48:32.133906 2207 kubelet_node_status.go:544] "Error updating node status, will retry" err="error getting node \"172.31.22.203\": Get \"https://172.31.27.140:6443/api/v1/nodes/172.31.22.203?timeout=10s\": dial tcp 172.31.27.140:6443: connect: connection refused" Jul 2 00:48:32.134206 kubelet[2207]: E0702 00:48:32.134179 2207 kubelet_node_status.go:531] "Unable to update node status" err="update node status exceeds retry count" Jul 2 00:48:32.372998 sshd[4392]: Connection closed by authenticating user root 112.4.238.226 port 49238 [preauth] Jul 2 00:48:32.374770 systemd[1]: sshd@28-172.31.22.203:22-112.4.238.226:49238.service: Deactivated successfully. Jul 2 00:48:32.373000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@28-172.31.22.203:22-112.4.238.226:49238 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:32.384497 kernel: audit: type=1131 audit(1719881312.373:882): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@28-172.31.22.203:22-112.4.238.226:49238 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:32.588492 systemd[1]: Started sshd@29-172.31.22.203:22-112.4.238.226:53192.service. Jul 2 00:48:32.587000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@29-172.31.22.203:22-112.4.238.226:53192 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:32.598394 kernel: audit: type=1130 audit(1719881312.587:883): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@29-172.31.22.203:22-112.4.238.226:53192 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 2 00:48:32.627981 kubelet[2207]: E0702 00:48:32.627856 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:32.815000 audit[4040]: AVC avc: denied { watch } for pid=4040 comm="apiserver" path="/calico-apiserver-certs/..2024_07_02_00_47_26.258302419/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c780,c1001 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c780,c1001 tclass=file permissive=0 Jul 2 00:48:32.815000 audit[4040]: SYSCALL arch=c00000b7 syscall=27 success=no exit=-13 a0=a a1=4001008c60 a2=fc6 a3=0 items=0 ppid=3976 pid=4040 auid=4294967295 uid=10001 gid=10001 euid=10001 suid=10001 fsuid=10001 egid=10001 sgid=10001 fsgid=10001 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c780,c1001 key=(null) Jul 2 00:48:32.837612 kernel: audit: type=1400 audit(1719881312.815:884): avc: denied { watch } for pid=4040 comm="apiserver" path="/calico-apiserver-certs/..2024_07_02_00_47_26.258302419/tls.crt" dev="tmpfs" ino=3 scontext=system_u:system_r:svirt_lxc_net_t:s0:c780,c1001 tcontext=system_u:object_r:svirt_lxc_file_t:s0:c780,c1001 tclass=file permissive=0 Jul 2 00:48:32.837737 kernel: audit: type=1300 audit(1719881312.815:884): arch=c00000b7 syscall=27 success=no exit=-13 a0=a a1=4001008c60 a2=fc6 a3=0 items=0 ppid=3976 pid=4040 auid=4294967295 uid=10001 gid=10001 euid=10001 suid=10001 fsuid=10001 egid=10001 sgid=10001 fsgid=10001 tty=(none) ses=4294967295 comm="apiserver" exe="/code/apiserver" subj=system_u:system_r:svirt_lxc_net_t:s0:c780,c1001 key=(null) Jul 2 00:48:32.815000 audit: PROCTITLE proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Jul 2 00:48:32.846356 kernel: audit: type=1327 audit(1719881312.815:884): proctitle=2F636F64652F617069736572766572002D2D7365637572652D706F72743D35343433002D2D746C732D707269766174652D6B65792D66696C653D2F63616C69636F2D6170697365727665722D63657274732F746C732E6B6579002D2D746C732D636572742D66696C653D2F63616C69636F2D6170697365727665722D63657274 Jul 2 00:48:33.629206 kubelet[2207]: E0702 00:48:33.629129 2207 file_linux.go:61] "Unable to read config path" err="path does not exist, ignoring" path="/etc/kubernetes/manifests" Jul 2 00:48:33.691326 sshd[4422]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=112.4.238.226 user=root Jul 2 00:48:33.690000 audit[4422]: USER_AUTH pid=4422 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed' Jul 2 00:48:33.700396 kernel: audit: type=1100 audit(1719881313.690:885): pid=4422 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:authentication grantors=? acct="root" exe="/usr/sbin/sshd" hostname=112.4.238.226 addr=112.4.238.226 terminal=ssh res=failed'