Jul 16 23:18:30.156771 kernel: Booting Linux on physical CPU 0x0000000000 [0x410fd490] Jul 16 23:18:30.156803 kernel: Linux version 6.12.95-flatcar (build@pony-truck.infra.kinvolk.io) (aarch64-cros-linux-gnu-gcc (Gentoo Hardened 15.2.1_p20260214 p5) 15.2.1 20260214, GNU ld (Gentoo 2.46.0 p1) 2.46.0) #1 SMP PREEMPT Thu Jul 16 21:45:10 -00 2026 Jul 16 23:18:30.156810 kernel: KASLR enabled Jul 16 23:18:30.156816 kernel: earlycon: pl11 at MMIO 0x00000000effec000 (options '') Jul 16 23:18:30.156820 kernel: printk: legacy bootconsole [pl11] enabled Jul 16 23:18:30.156825 kernel: efi: EFI v2.7 by EDK II Jul 16 23:18:30.156831 kernel: efi: ACPI 2.0=0x3f979018 SMBIOS=0x3f8a0000 SMBIOS 3.0=0x3f880000 MEMATTR=0x3e89b018 RNG=0x3f979998 MEMRESERVE=0x3db84598 Jul 16 23:18:30.156837 kernel: random: crng init done Jul 16 23:18:30.156842 kernel: secureboot: Secure boot disabled Jul 16 23:18:30.156846 kernel: ACPI: Early table checksum verification disabled Jul 16 23:18:30.156850 kernel: ACPI: RSDP 0x000000003F979018 000024 (v02 VRTUAL) Jul 16 23:18:30.156855 kernel: ACPI: XSDT 0x000000003F979F18 00006C (v01 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156860 kernel: ACPI: FACP 0x000000003F979C18 000114 (v06 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156864 kernel: ACPI: DSDT 0x000000003F95A018 01E046 (v02 MSFTVM DSDT01 00000001 INTL 20230628) Jul 16 23:18:30.156870 kernel: ACPI: DBG2 0x000000003F979B18 000072 (v00 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156875 kernel: ACPI: GTDT 0x000000003F979D98 000060 (v02 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156880 kernel: ACPI: OEM0 0x000000003F979098 000064 (v01 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156886 kernel: ACPI: SPCR 0x000000003F979A98 000050 (v02 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156890 kernel: ACPI: APIC 0x000000003F979818 0000FC (v04 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156895 kernel: ACPI: SRAT 0x000000003F979198 000234 (v03 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156900 kernel: ACPI: PPTT 0x000000003F979418 000120 (v01 VRTUAL MICROSFT 00000000 MSFT 00000000) Jul 16 23:18:30.156905 kernel: ACPI: BGRT 0x000000003F979E98 000038 (v01 VRTUAL MICROSFT 00000001 MSFT 00000001) Jul 16 23:18:30.156911 kernel: ACPI: SPCR: console: pl011,mmio32,0xeffec000,115200 Jul 16 23:18:30.156916 kernel: ACPI: Use ACPI SPCR as default console: Yes Jul 16 23:18:30.156922 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x00000000-0x3fffffff] hotplug Jul 16 23:18:30.156926 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x100000000-0x1bfffffff] hotplug Jul 16 23:18:30.156931 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x1c0000000-0xfbfffffff] hotplug Jul 16 23:18:30.156937 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x1000000000-0xffffffffff] hotplug Jul 16 23:18:30.156942 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x10000000000-0x1ffffffffff] hotplug Jul 16 23:18:30.156947 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x20000000000-0x3ffffffffff] hotplug Jul 16 23:18:30.156952 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x40000000000-0x7ffffffffff] hotplug Jul 16 23:18:30.156958 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x80000000000-0xfffffffffff] hotplug Jul 16 23:18:30.156963 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x100000000000-0x1fffffffffff] hotplug Jul 16 23:18:30.156967 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x200000000000-0x3fffffffffff] hotplug Jul 16 23:18:30.156973 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x400000000000-0x7fffffffffff] hotplug Jul 16 23:18:30.156977 kernel: ACPI: SRAT: Node 0 PXM 0 [mem 0x800000000000-0xffffffffffff] hotplug Jul 16 23:18:30.156983 kernel: NUMA: Node 0 [mem 0x00000000-0x3fffffff] + [mem 0x100000000-0x1bfffffff] -> [mem 0x00000000-0x1bfffffff] Jul 16 23:18:30.156988 kernel: NODE_DATA(0) allocated [mem 0x1bf800a00-0x1bf807fff] Jul 16 23:18:30.156993 kernel: Zone ranges: Jul 16 23:18:30.156998 kernel: DMA [mem 0x0000000000000000-0x00000000ffffffff] Jul 16 23:18:30.157005 kernel: DMA32 empty Jul 16 23:18:30.157010 kernel: Normal [mem 0x0000000100000000-0x00000001bfffffff] Jul 16 23:18:30.157016 kernel: Device empty Jul 16 23:18:30.157020 kernel: Movable zone start for each node Jul 16 23:18:30.157024 kernel: Early memory node ranges Jul 16 23:18:30.157030 kernel: node 0: [mem 0x0000000000000000-0x00000000007fffff] Jul 16 23:18:30.157034 kernel: node 0: [mem 0x0000000000824000-0x000000003f38ffff] Jul 16 23:18:30.157039 kernel: node 0: [mem 0x000000003f390000-0x000000003f93ffff] Jul 16 23:18:30.157043 kernel: node 0: [mem 0x000000003f940000-0x000000003f9effff] Jul 16 23:18:30.157048 kernel: node 0: [mem 0x000000003f9f0000-0x000000003fdeffff] Jul 16 23:18:30.157052 kernel: node 0: [mem 0x000000003fdf0000-0x000000003fffffff] Jul 16 23:18:30.157056 kernel: node 0: [mem 0x0000000100000000-0x00000001bfffffff] Jul 16 23:18:30.157061 kernel: Initmem setup node 0 [mem 0x0000000000000000-0x00000001bfffffff] Jul 16 23:18:30.157067 kernel: On node 0, zone DMA: 36 pages in unavailable ranges Jul 16 23:18:30.157071 kernel: cma: Reserved 16 MiB at 0x000000003ca00000 on node -1 Jul 16 23:18:30.157076 kernel: psci: probing for conduit method from ACPI. Jul 16 23:18:30.157081 kernel: psci: PSCIv1.3 detected in firmware. Jul 16 23:18:30.157087 kernel: psci: Using standard PSCI v0.2 function IDs Jul 16 23:18:30.157092 kernel: psci: MIGRATE_INFO_TYPE not supported. Jul 16 23:18:30.157097 kernel: psci: SMC Calling Convention v1.4 Jul 16 23:18:30.157101 kernel: ACPI: NUMA: SRAT: PXM 0 -> MPIDR 0x0 -> Node 0 Jul 16 23:18:30.157107 kernel: ACPI: NUMA: SRAT: PXM 0 -> MPIDR 0x1 -> Node 0 Jul 16 23:18:30.157111 kernel: percpu: Embedded 34 pages/cpu s98904 r8192 d32168 u139264 Jul 16 23:18:30.157117 kernel: pcpu-alloc: s98904 r8192 d32168 u139264 alloc=34*4096 Jul 16 23:18:30.157122 kernel: pcpu-alloc: [0] 0 [0] 1 Jul 16 23:18:30.157127 kernel: Detected PIPT I-cache on CPU0 Jul 16 23:18:30.157152 kernel: CPU features: detected: Address authentication (architected QARMA5 algorithm) Jul 16 23:18:30.157159 kernel: CPU features: detected: GIC system register CPU interface Jul 16 23:18:30.157164 kernel: CPU features: detected: Spectre-v4 Jul 16 23:18:30.157170 kernel: CPU features: detected: Spectre-BHB Jul 16 23:18:30.157174 kernel: CPU features: kernel page table isolation forced ON by KASLR Jul 16 23:18:30.157179 kernel: CPU features: detected: Kernel page table isolation (KPTI) Jul 16 23:18:30.157183 kernel: CPU features: detected: ARM erratum 2067961 or 2054223 Jul 16 23:18:30.157187 kernel: CPU features: detected: Broken broadcast TLBI completion Jul 16 23:18:30.157193 kernel: CPU features: detected: SSBS not fully self-synchronizing Jul 16 23:18:30.157198 kernel: alternatives: applying boot alternatives Jul 16 23:18:30.157203 kernel: Kernel command line: BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyAMA0,115200n8 earlycon=pl011,0xeffec000 flatcar.first_boot=detected acpi=force flatcar.oem.id=azure flatcar.autologin verity.usrhash=a2be8f7dfb56092fbc90f9ca862a96ff2dda158db060da5eadf96a8218201e3d Jul 16 23:18:30.157209 kernel: Dentry cache hash table entries: 524288 (order: 10, 4194304 bytes, linear) Jul 16 23:18:30.157215 kernel: Inode-cache hash table entries: 262144 (order: 9, 2097152 bytes, linear) Jul 16 23:18:30.157219 kernel: Fallback order for Node 0: 0 Jul 16 23:18:30.157224 kernel: Built 1 zonelists, mobility grouping on. Total pages: 1048540 Jul 16 23:18:30.157228 kernel: Policy zone: Normal Jul 16 23:18:30.157233 kernel: mem auto-init: stack:off, heap alloc:off, heap free:off Jul 16 23:18:30.157238 kernel: software IO TLB: area num 2. Jul 16 23:18:30.157243 kernel: software IO TLB: mapped [mem 0x00000000370d0000-0x000000003b0d0000] (64MB) Jul 16 23:18:30.157247 kernel: SLUB: HWalign=64, Order=0-3, MinObjects=0, CPUs=2, Nodes=1 Jul 16 23:18:30.157252 kernel: ftrace: allocating 41315 entries in 162 pages Jul 16 23:18:30.157256 kernel: ftrace: allocated 162 pages with 3 groups Jul 16 23:18:30.157263 kernel: rcu: Preemptible hierarchical RCU implementation. Jul 16 23:18:30.157268 kernel: rcu: RCU event tracing is enabled. Jul 16 23:18:30.157273 kernel: rcu: RCU restricting CPUs from NR_CPUS=512 to nr_cpu_ids=2. Jul 16 23:18:30.157277 kernel: Trampoline variant of Tasks RCU enabled. Jul 16 23:18:30.157282 kernel: Rude variant of Tasks RCU enabled. Jul 16 23:18:30.157287 kernel: Tracing variant of Tasks RCU enabled. Jul 16 23:18:30.157291 kernel: rcu: RCU calculated value of scheduler-enlistment delay is 100 jiffies. Jul 16 23:18:30.157296 kernel: rcu: Adjusting geometry for rcu_fanout_leaf=16, nr_cpu_ids=2 Jul 16 23:18:30.157300 kernel: RCU Tasks: Setting shift to 1 and lim to 1 rcu_task_cb_adjust=1 rcu_task_cpu_ids=2. Jul 16 23:18:30.157305 kernel: RCU Tasks Rude: Setting shift to 1 and lim to 1 rcu_task_cb_adjust=1 rcu_task_cpu_ids=2. Jul 16 23:18:30.157309 kernel: RCU Tasks Trace: Setting shift to 1 and lim to 1 rcu_task_cb_adjust=1 rcu_task_cpu_ids=2. Jul 16 23:18:30.157316 kernel: NR_IRQS: 64, nr_irqs: 64, preallocated irqs: 0 Jul 16 23:18:30.157320 kernel: GICv3: 960 SPIs implemented Jul 16 23:18:30.157326 kernel: GICv3: 0 Extended SPIs implemented Jul 16 23:18:30.157332 kernel: Root IRQ handler: gic_handle_irq Jul 16 23:18:30.157337 kernel: GICv3: GICv3 features: 16 PPIs, RSS Jul 16 23:18:30.157341 kernel: GICv3: GICD_CTRL.DS=0, SCR_EL3.FIQ=0 Jul 16 23:18:30.157345 kernel: GICv3: CPU0: found redistributor 0 region 0:0x00000000effee000 Jul 16 23:18:30.157351 kernel: ITS: No ITS available, not enabling LPIs Jul 16 23:18:30.157356 kernel: rcu: srcu_init: Setting srcu_struct sizes based on contention. Jul 16 23:18:30.157362 kernel: arch_timer: cp15 timer(s) running at 1000.00MHz (virt). Jul 16 23:18:30.157366 kernel: clocksource: arch_sys_counter: mask: 0x1fffffffffffffff max_cycles: 0x1cd42e4dffb, max_idle_ns: 881590591483 ns Jul 16 23:18:30.157372 kernel: sched_clock: 61 bits at 1000MHz, resolution 1ns, wraps every 4398046511103ns Jul 16 23:18:30.157376 kernel: Console: colour dummy device 80x25 Jul 16 23:18:30.157382 kernel: printk: legacy console [tty1] enabled Jul 16 23:18:30.157389 kernel: ACPI: Core revision 20240827 Jul 16 23:18:30.157396 kernel: Calibrating delay loop (skipped), value calculated using timer frequency.. 2000.00 BogoMIPS (lpj=1000000) Jul 16 23:18:30.157401 kernel: pid_max: default: 32768 minimum: 301 Jul 16 23:18:30.157406 kernel: LSM: initializing lsm=lockdown,capability,landlock,selinux,ima Jul 16 23:18:30.157412 kernel: landlock: Up and running. Jul 16 23:18:30.157421 kernel: SELinux: Initializing. Jul 16 23:18:30.157426 kernel: Mount-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Jul 16 23:18:30.157431 kernel: Mountpoint-cache hash table entries: 8192 (order: 4, 65536 bytes, linear) Jul 16 23:18:30.157436 kernel: Hyper-V: privilege flags low 0x2e7f, high 0x3b8030, hints 0xa0000e, misc 0x31e1 Jul 16 23:18:30.157442 kernel: Hyper-V: Host Build 10.0.26102.1373-1-0 Jul 16 23:18:30.157447 kernel: Hyper-V: enabling crash_kexec_post_notifiers Jul 16 23:18:30.157452 kernel: rcu: Hierarchical SRCU implementation. Jul 16 23:18:30.157458 kernel: rcu: Max phase no-delay instances is 400. Jul 16 23:18:30.157463 kernel: Timer migration: 1 hierarchy levels; 8 children per group; 1 crossnode level Jul 16 23:18:30.157468 kernel: Remapping and enabling EFI services. Jul 16 23:18:30.157473 kernel: smp: Bringing up secondary CPUs ... Jul 16 23:18:30.157478 kernel: Detected PIPT I-cache on CPU1 Jul 16 23:18:30.157484 kernel: GICv3: CPU1: found redistributor 1 region 1:0x00000000f000e000 Jul 16 23:18:30.157490 kernel: CPU1: Booted secondary processor 0x0000000001 [0x410fd490] Jul 16 23:18:30.157495 kernel: smp: Brought up 1 node, 2 CPUs Jul 16 23:18:30.157499 kernel: SMP: Total of 2 processors activated. Jul 16 23:18:30.157506 kernel: CPU: All CPU(s) started at EL1 Jul 16 23:18:30.157513 kernel: CPU features: detected: 32-bit EL0 Support Jul 16 23:18:30.157518 kernel: CPU features: detected: Instruction cache invalidation not required for I/D coherence Jul 16 23:18:30.157523 kernel: CPU features: detected: Data cache clean to the PoU not required for I/D coherence Jul 16 23:18:30.157529 kernel: CPU features: detected: Common not Private translations Jul 16 23:18:30.157534 kernel: CPU features: detected: CRC32 instructions Jul 16 23:18:30.157539 kernel: CPU features: detected: Generic authentication (architected QARMA5 algorithm) Jul 16 23:18:30.157545 kernel: CPU features: detected: RCpc load-acquire (LDAPR) Jul 16 23:18:30.157550 kernel: CPU features: detected: LSE atomic instructions Jul 16 23:18:30.157555 kernel: CPU features: detected: Privileged Access Never Jul 16 23:18:30.157560 kernel: CPU features: detected: Speculation barrier (SB) Jul 16 23:18:30.157565 kernel: CPU features: detected: TLB range maintenance instructions Jul 16 23:18:30.157571 kernel: CPU features: detected: Speculative Store Bypassing Safe (SSBS) Jul 16 23:18:30.157576 kernel: CPU features: detected: Scalable Vector Extension Jul 16 23:18:30.157581 kernel: alternatives: applying system-wide alternatives Jul 16 23:18:30.157586 kernel: CPU features: detected: Hardware dirty bit management on CPU0-1 Jul 16 23:18:30.157592 kernel: SVE: maximum available vector length 16 bytes per vector Jul 16 23:18:30.157597 kernel: SVE: default vector length 16 bytes per vector Jul 16 23:18:30.157602 kernel: Memory: 3976452K/4194160K available (12480K kernel code, 2492K rwdata, 9560K rodata, 13312K init, 1043K bss, 195764K reserved, 16384K cma-reserved) Jul 16 23:18:30.157608 kernel: devtmpfs: initialized Jul 16 23:18:30.157613 kernel: clocksource: jiffies: mask: 0xffffffff max_cycles: 0xffffffff, max_idle_ns: 1911260446275000 ns Jul 16 23:18:30.157618 kernel: futex hash table entries: 512 (order: 3, 32768 bytes, linear) Jul 16 23:18:30.157623 kernel: 2G module region forced by RANDOMIZE_MODULE_REGION_FULL Jul 16 23:18:30.157629 kernel: 0 pages in range for non-PLT usage Jul 16 23:18:30.157634 kernel: 514496 pages in range for PLT usage Jul 16 23:18:30.157639 kernel: pinctrl core: initialized pinctrl subsystem Jul 16 23:18:30.157645 kernel: SMBIOS 3.1.0 present. Jul 16 23:18:30.157650 kernel: DMI: Microsoft Corporation Virtual Machine/Virtual Machine, BIOS Hyper-V UEFI Release v4.1 01/08/2026 Jul 16 23:18:30.157655 kernel: DMI: Memory slots populated: 2/2 Jul 16 23:18:30.157660 kernel: NET: Registered PF_NETLINK/PF_ROUTE protocol family Jul 16 23:18:30.157665 kernel: DMA: preallocated 512 KiB GFP_KERNEL pool for atomic allocations Jul 16 23:18:30.157669 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA pool for atomic allocations Jul 16 23:18:30.157674 kernel: DMA: preallocated 512 KiB GFP_KERNEL|GFP_DMA32 pool for atomic allocations Jul 16 23:18:30.157680 kernel: audit: initializing netlink subsys (disabled) Jul 16 23:18:30.157685 kernel: audit: type=2000 audit(0.060:1): state=initialized audit_enabled=0 res=1 Jul 16 23:18:30.157690 kernel: thermal_sys: Registered thermal governor 'step_wise' Jul 16 23:18:30.157695 kernel: cpuidle: using governor menu Jul 16 23:18:30.157700 kernel: hw-breakpoint: found 6 breakpoint and 4 watchpoint registers. Jul 16 23:18:30.157705 kernel: ASID allocator initialised with 32768 entries Jul 16 23:18:30.157710 kernel: acpiphp: ACPI Hot Plug PCI Controller Driver version: 0.5 Jul 16 23:18:30.157715 kernel: Serial: AMBA PL011 UART driver Jul 16 23:18:30.157720 kernel: HugeTLB: registered 1.00 GiB page size, pre-allocated 0 pages Jul 16 23:18:30.157725 kernel: HugeTLB: 0 KiB vmemmap can be freed for a 1.00 GiB page Jul 16 23:18:30.157730 kernel: HugeTLB: registered 32.0 MiB page size, pre-allocated 0 pages Jul 16 23:18:30.157735 kernel: HugeTLB: 0 KiB vmemmap can be freed for a 32.0 MiB page Jul 16 23:18:30.157740 kernel: HugeTLB: registered 2.00 MiB page size, pre-allocated 0 pages Jul 16 23:18:30.157745 kernel: HugeTLB: 0 KiB vmemmap can be freed for a 2.00 MiB page Jul 16 23:18:30.157750 kernel: HugeTLB: registered 64.0 KiB page size, pre-allocated 0 pages Jul 16 23:18:30.157755 kernel: HugeTLB: 0 KiB vmemmap can be freed for a 64.0 KiB page Jul 16 23:18:30.157760 kernel: ACPI: Added _OSI(Module Device) Jul 16 23:18:30.157765 kernel: ACPI: Added _OSI(Processor Device) Jul 16 23:18:30.157770 kernel: ACPI: Added _OSI(Processor Aggregator Device) Jul 16 23:18:30.157775 kernel: ACPI: 1 ACPI AML tables successfully acquired and loaded Jul 16 23:18:30.157780 kernel: ACPI: Interpreter enabled Jul 16 23:18:30.157786 kernel: ACPI: Using GIC for interrupt routing Jul 16 23:18:30.157790 kernel: ARMH0011:00: ttyAMA0 at MMIO 0xeffec000 (irq = 12, base_baud = 0) is a SBSA Jul 16 23:18:30.157796 kernel: printk: legacy console [ttyAMA0] enabled Jul 16 23:18:30.157800 kernel: printk: legacy bootconsole [pl11] disabled Jul 16 23:18:30.157805 kernel: ARMH0011:01: ttyAMA1 at MMIO 0xeffeb000 (irq = 13, base_baud = 0) is a SBSA Jul 16 23:18:30.157817 kernel: ACPI: CPU0 has been hot-added Jul 16 23:18:30.157822 kernel: ACPI: CPU1 has been hot-added Jul 16 23:18:30.157828 kernel: iommu: Default domain type: Translated Jul 16 23:18:30.157833 kernel: iommu: DMA domain TLB invalidation policy: strict mode Jul 16 23:18:30.157838 kernel: efivars: Registered efivars operations Jul 16 23:18:30.157842 kernel: vgaarb: loaded Jul 16 23:18:30.157847 kernel: clocksource: Switched to clocksource arch_sys_counter Jul 16 23:18:30.157852 kernel: VFS: Disk quotas dquot_6.6.0 Jul 16 23:18:30.157857 kernel: VFS: Dquot-cache hash table entries: 512 (order 0, 4096 bytes) Jul 16 23:18:30.157862 kernel: pnp: PnP ACPI init Jul 16 23:18:30.157868 kernel: pnp: PnP ACPI: found 0 devices Jul 16 23:18:30.157873 kernel: NET: Registered PF_INET protocol family Jul 16 23:18:30.157877 kernel: IP idents hash table entries: 65536 (order: 7, 524288 bytes, linear) Jul 16 23:18:30.157882 kernel: tcp_listen_portaddr_hash hash table entries: 2048 (order: 3, 32768 bytes, linear) Jul 16 23:18:30.157887 kernel: Table-perturb hash table entries: 65536 (order: 6, 262144 bytes, linear) Jul 16 23:18:30.157892 kernel: TCP established hash table entries: 32768 (order: 6, 262144 bytes, linear) Jul 16 23:18:30.157897 kernel: TCP bind hash table entries: 32768 (order: 8, 1048576 bytes, linear) Jul 16 23:18:30.157903 kernel: TCP: Hash tables configured (established 32768 bind 32768) Jul 16 23:18:30.157908 kernel: UDP hash table entries: 2048 (order: 4, 65536 bytes, linear) Jul 16 23:18:30.157913 kernel: UDP-Lite hash table entries: 2048 (order: 4, 65536 bytes, linear) Jul 16 23:18:30.157918 kernel: NET: Registered PF_UNIX/PF_LOCAL protocol family Jul 16 23:18:30.157923 kernel: PCI: CLS 0 bytes, default 64 Jul 16 23:18:30.157928 kernel: kvm [1]: HYP mode not available Jul 16 23:18:30.157933 kernel: Initialise system trusted keyrings Jul 16 23:18:30.157938 kernel: workingset: timestamp_bits=39 max_order=20 bucket_order=0 Jul 16 23:18:30.157943 kernel: Key type asymmetric registered Jul 16 23:18:30.157948 kernel: Asymmetric key parser 'x509' registered Jul 16 23:18:30.157953 kernel: Block layer SCSI generic (bsg) driver version 0.4 loaded (major 249) Jul 16 23:18:30.157958 kernel: io scheduler mq-deadline registered Jul 16 23:18:30.157963 kernel: io scheduler kyber registered Jul 16 23:18:30.157968 kernel: io scheduler bfq registered Jul 16 23:18:30.157974 kernel: Serial: 8250/16550 driver, 4 ports, IRQ sharing enabled Jul 16 23:18:30.157978 kernel: ACPI: bus type drm_connector registered Jul 16 23:18:30.157983 kernel: thunder_xcv, ver 1.0 Jul 16 23:18:30.157988 kernel: thunder_bgx, ver 1.0 Jul 16 23:18:30.157993 kernel: nicpf, ver 1.0 Jul 16 23:18:30.157998 kernel: nicvf, ver 1.0 Jul 16 23:18:30.158199 kernel: rtc-efi rtc-efi.0: registered as rtc0 Jul 16 23:18:30.158294 kernel: rtc-efi rtc-efi.0: setting system clock to 2026-07-16T23:18:25 UTC (1784243905) Jul 16 23:18:30.158301 kernel: efifb: probing for efifb Jul 16 23:18:30.158307 kernel: efifb: framebuffer at 0x40000000, using 3072k, total 3072k Jul 16 23:18:30.158312 kernel: efifb: mode is 1024x768x32, linelength=4096, pages=1 Jul 16 23:18:30.158317 kernel: efifb: scrolling: redraw Jul 16 23:18:30.158322 kernel: efifb: Truecolor: size=8:8:8:8, shift=24:16:8:0 Jul 16 23:18:30.158328 kernel: Console: switching to colour frame buffer device 128x48 Jul 16 23:18:30.158332 kernel: fb0: EFI VGA frame buffer device Jul 16 23:18:30.158337 kernel: SMCCC: SOC_ID: ARCH_SOC_ID not implemented, skipping .... Jul 16 23:18:30.158342 kernel: hid: raw HID events driver (C) Jiri Kosina Jul 16 23:18:30.158347 kernel: hw perfevents: enabled with armv8_pmuv3_0 PMU driver, 7 (0,8000003f) counters available Jul 16 23:18:30.158352 kernel: watchdog: NMI not fully supported Jul 16 23:18:30.158357 kernel: NET: Registered PF_INET6 protocol family Jul 16 23:18:30.158362 kernel: watchdog: Hard watchdog permanently disabled Jul 16 23:18:30.158368 kernel: Segment Routing with IPv6 Jul 16 23:18:30.158373 kernel: In-situ OAM (IOAM) with IPv6 Jul 16 23:18:30.158378 kernel: NET: Registered PF_PACKET protocol family Jul 16 23:18:30.158383 kernel: Key type dns_resolver registered Jul 16 23:18:30.158388 kernel: registered taskstats version 1 Jul 16 23:18:30.158393 kernel: Loading compiled-in X.509 certificates Jul 16 23:18:30.158398 kernel: Loaded X.509 cert 'Kinvolk GmbH: Module signing key for 6.12.95-flatcar: 0df0487c6caf2bd85c0c32b3be9cecfa4fa2c214' Jul 16 23:18:30.158404 kernel: Demotion targets for Node 0: null Jul 16 23:18:30.158409 kernel: Key type .fscrypt registered Jul 16 23:18:30.158414 kernel: Key type fscrypt-provisioning registered Jul 16 23:18:30.158419 kernel: ima: No TPM chip found, activating TPM-bypass! Jul 16 23:18:30.158424 kernel: ima: Allocated hash algorithm: sha1 Jul 16 23:18:30.158429 kernel: ima: No architecture policies found Jul 16 23:18:30.158434 kernel: alg: No test for fips(ansi_cprng) (fips_ansi_cprng) Jul 16 23:18:30.158440 kernel: clk: Disabling unused clocks Jul 16 23:18:30.158445 kernel: PM: genpd: Disabling unused power domains Jul 16 23:18:30.158449 kernel: Freeing unused kernel memory: 13312K Jul 16 23:18:30.158454 kernel: Run /init as init process Jul 16 23:18:30.158459 kernel: with arguments: Jul 16 23:18:30.158464 kernel: /init Jul 16 23:18:30.158469 kernel: with environment: Jul 16 23:18:30.158475 kernel: HOME=/ Jul 16 23:18:30.158482 kernel: TERM=linux Jul 16 23:18:30.158487 kernel: hv_vmbus: hv_mmio=[mem 0x40000000-0xfed3ffff],[mem 0xfc0000000-0xfffffffff] fb=[mem 0x40000000-0x47ffffff] Jul 16 23:18:30.158492 kernel: hv_vmbus: Vmbus version:5.3 Jul 16 23:18:30.158497 kernel: hv_vmbus: registering driver hid_hyperv Jul 16 23:18:30.158502 kernel: SCSI subsystem initialized Jul 16 23:18:30.158507 kernel: input: Microsoft Vmbus HID-compliant Mouse as /devices/0006:045E:0621.0001/input/input0 Jul 16 23:18:30.158610 kernel: hid-hyperv 0006:045E:0621.0001: input: VIRTUAL HID v0.01 Mouse [Microsoft Vmbus HID-compliant Mouse] on Jul 16 23:18:30.158617 kernel: hv_vmbus: registering driver hyperv_keyboard Jul 16 23:18:30.158623 kernel: input: AT Translated Set 2 keyboard as /devices/LNXSYSTM:00/LNXSYBUS:00/ACPI0004:00/MSFT1000:00/d34b2567-b9b6-42b9-8778-0a4ec0b955bf/serio0/input/input1 Jul 16 23:18:30.158628 kernel: pps_core: LinuxPPS API ver. 1 registered Jul 16 23:18:30.158633 kernel: pps_core: Software ver. 5.3.6 - Copyright 2005-2007 Rodolfo Giometti Jul 16 23:18:30.158638 kernel: PTP clock support registered Jul 16 23:18:30.158643 kernel: hv_utils: Registering HyperV Utility Driver Jul 16 23:18:30.158649 kernel: hv_vmbus: registering driver hv_utils Jul 16 23:18:30.158654 kernel: hv_utils: Heartbeat IC version 3.0 Jul 16 23:18:30.158659 kernel: hv_utils: Shutdown IC version 3.2 Jul 16 23:18:30.158664 kernel: hv_utils: TimeSync IC version 4.0 Jul 16 23:18:30.158669 kernel: hv_vmbus: registering driver hv_storvsc Jul 16 23:18:30.158785 kernel: scsi host0: storvsc_host_t Jul 16 23:18:30.158887 kernel: scsi host1: storvsc_host_t Jul 16 23:18:30.158997 kernel: scsi 0:0:0:0: Direct-Access Msft Virtual Disk 1.0 PQ: 0 ANSI: 5 Jul 16 23:18:30.159106 kernel: scsi 0:0:0:2: CD-ROM Msft Virtual DVD-ROM 1.0 PQ: 0 ANSI: 5 Jul 16 23:18:30.159235 kernel: sd 0:0:0:0: [sda] 63737856 512-byte logical blocks: (32.6 GB/30.4 GiB) Jul 16 23:18:30.160168 kernel: sd 0:0:0:0: [sda] 4096-byte physical blocks Jul 16 23:18:30.160302 kernel: sd 0:0:0:0: [sda] Write Protect is off Jul 16 23:18:30.160413 kernel: sd 0:0:0:0: [sda] Mode Sense: 0f 00 10 00 Jul 16 23:18:30.160513 kernel: sd 0:0:0:0: [sda] Write cache: disabled, read cache: enabled, supports DPO and FUA Jul 16 23:18:30.160520 kernel: sda: sda1 sda2 sda3 sda4 sda6 sda7 sda9 Jul 16 23:18:30.160618 kernel: sd 0:0:0:0: [sda] Attached SCSI disk Jul 16 23:18:30.160719 kernel: sr 0:0:0:2: [sr0] scsi-1 drive Jul 16 23:18:30.160726 kernel: cdrom: Uniform CD-ROM driver Revision: 3.20 Jul 16 23:18:30.160826 kernel: sr 0:0:0:2: Attached scsi CD-ROM sr0 Jul 16 23:18:30.160832 kernel: device-mapper: core: CONFIG_IMA_DISABLE_HTABLE is disabled. Duplicate IMA measurements will not be recorded in the IMA log. Jul 16 23:18:30.160837 kernel: device-mapper: uevent: version 1.0.3 Jul 16 23:18:30.160842 kernel: device-mapper: ioctl: 4.48.0-ioctl (2023-03-01) initialised: dm-devel@lists.linux.dev Jul 16 23:18:30.160848 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:30.160853 kernel: raid6: neonx8 gen() 18522 MB/s Jul 16 23:18:30.160858 kernel: raid6: neonx4 gen() 18566 MB/s Jul 16 23:18:30.160865 kernel: raid6: neonx2 gen() 16968 MB/s Jul 16 23:18:30.160870 kernel: raid6: neonx1 gen() 15118 MB/s Jul 16 23:18:30.160875 kernel: raid6: int64x8 gen() 8929 MB/s Jul 16 23:18:30.160880 kernel: raid6: int64x4 gen() 10756 MB/s Jul 16 23:18:30.160885 kernel: raid6: int64x2 gen() 8849 MB/s Jul 16 23:18:30.160890 kernel: raid6: int64x1 gen() 7110 MB/s Jul 16 23:18:30.160895 kernel: raid6: using algorithm neonx4 gen() 18566 MB/s Jul 16 23:18:30.160902 kernel: raid6: .... xor() 15164 MB/s, rmw enabled Jul 16 23:18:30.160907 kernel: raid6: using neon recovery algorithm Jul 16 23:18:30.160912 kernel: xor: measuring software checksum speed Jul 16 23:18:30.160917 kernel: 8regs : 29581 MB/sec Jul 16 23:18:30.160923 kernel: 32regs : 29598 MB/sec Jul 16 23:18:30.160928 kernel: arm64_neon : 37154 MB/sec Jul 16 23:18:30.160933 kernel: xor: using function: arm64_neon (37154 MB/sec) Jul 16 23:18:30.160939 kernel: Btrfs loaded, zoned=no, fsverity=no Jul 16 23:18:30.160945 kernel: BTRFS: device fsid 8d533d0a-523d-4ee3-ae6c-54cb4c65417c devid 1 transid 38 /dev/mapper/usr (254:0) scanned by mount (321) Jul 16 23:18:30.160950 kernel: BTRFS info (device dm-0): first mount of filesystem 8d533d0a-523d-4ee3-ae6c-54cb4c65417c Jul 16 23:18:30.160955 kernel: BTRFS info (device dm-0): using crc32c (crc32c-generic) checksum algorithm Jul 16 23:18:30.160961 kernel: BTRFS info (device dm-0 state E): disabling log replay at mount time Jul 16 23:18:30.160966 kernel: BTRFS info (device dm-0 state E): enabling free space tree Jul 16 23:18:30.160971 kernel: loop: module loaded Jul 16 23:18:30.160977 kernel: loop0: detected capacity change from 0 to 99800 Jul 16 23:18:30.160982 kernel: squashfs: version 4.0 (2009/01/31) Phillip Lougher Jul 16 23:18:30.160989 systemd[1]: Successfully made /usr/ read-only. Jul 16 23:18:30.160996 systemd[1]: systemd 260.1 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +IPE +SMACK +SECCOMP -GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL +ELFUTILS -FIDO2 +IDN2 +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -BTF -XKBCOMMON +UTMP +LIBARCHIVE) Jul 16 23:18:30.161002 systemd[1]: Detected virtualization microsoft. Jul 16 23:18:30.161008 systemd[1]: Detected architecture arm64. Jul 16 23:18:30.161014 systemd[1]: Running in initrd. Jul 16 23:18:30.161020 systemd[1]: Initializing machine ID from random generator. Jul 16 23:18:30.161026 systemd[1]: No hostname configured, using default hostname. Jul 16 23:18:30.161031 systemd[1]: Hostname set to . Jul 16 23:18:30.161037 systemd[1]: Queued start job for default target initrd.target. Jul 16 23:18:30.161042 systemd[1]: Unnecessary job was removed for dev-mapper-usr.device - /dev/mapper/usr. Jul 16 23:18:30.161048 systemd[1]: Started clevis-luks-askpass.path - Forward Password Requests to Clevis Directory Watch. Jul 16 23:18:30.161054 systemd[1]: Started systemd-ask-password-console.path - Dispatch Password Requests to Console Directory Watch. Jul 16 23:18:30.161061 systemd[1]: Expecting device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device - /dev/disk/by-label/EFI-SYSTEM... Jul 16 23:18:30.161067 systemd[1]: Expecting device dev-disk-by\x2dlabel-OEM.device - /dev/disk/by-label/OEM... Jul 16 23:18:30.161073 systemd[1]: Expecting device dev-disk-by\x2dlabel-ROOT.device - /dev/disk/by-label/ROOT... Jul 16 23:18:30.161079 systemd[1]: Expecting device dev-disk-by\x2dpartlabel-USR\x2dA.device - /dev/disk/by-partlabel/USR-A... Jul 16 23:18:30.161086 systemd[1]: Reached target cryptsetup-pre.target - Local Encrypted Volumes (Pre). Jul 16 23:18:30.161091 systemd[1]: Reached target cryptsetup.target - Local Encrypted Volumes. Jul 16 23:18:30.161097 systemd[1]: Reached target initrd-usr-fs.target - Initrd /usr File System. Jul 16 23:18:30.161102 systemd[1]: Reached target paths.target - Path Units. Jul 16 23:18:30.161108 systemd[1]: Reached target slices.target - Slice Units. Jul 16 23:18:30.161113 systemd[1]: Reached target swap.target - Swaps. Jul 16 23:18:30.161119 systemd[1]: Reached target timers.target - Timer Units. Jul 16 23:18:30.161126 systemd[1]: Listening on iscsid.socket - Open-iSCSI iscsid Socket. Jul 16 23:18:30.161149 systemd[1]: Listening on iscsiuio.socket - Open-iSCSI iscsiuio Socket. Jul 16 23:18:30.161167 systemd[1]: Listening on systemd-coredump.socket - Process Core Dump Socket. Jul 16 23:18:30.161173 systemd[1]: Listening on systemd-journald-audit.socket - Journal Audit Socket. Jul 16 23:18:30.161179 systemd[1]: Listening on systemd-journald-dev-log.socket - Journal Socket (/dev/log). Jul 16 23:18:30.161186 systemd[1]: Listening on systemd-journald.socket - Journal Sockets. Jul 16 23:18:30.161192 systemd[1]: Listening on systemd-networkd-resolve-hook.socket - Network Management Resolve Hook Socket. Jul 16 23:18:30.161197 systemd[1]: Listening on systemd-networkd.socket - Network Management Netlink Socket. Jul 16 23:18:30.161203 systemd[1]: Listening on systemd-udevd-control.socket - udev Control Socket. Jul 16 23:18:30.161209 systemd[1]: Listening on systemd-udevd-kernel.socket - udev Kernel Socket. Jul 16 23:18:30.161214 systemd[1]: Reached target sockets.target - Socket Units. Jul 16 23:18:30.161220 systemd[1]: afterburn-network-kargs.service - Afterburn Initrd Setup Network Kernel Arguments skipped, no trigger condition checks were met. Jul 16 23:18:30.161227 systemd[1]: Starting ignition-setup-pre.service - Ignition env setup... Jul 16 23:18:30.161233 systemd[1]: Starting kmod-static-nodes.service - Create List of Static Device Nodes... Jul 16 23:18:30.161239 systemd[1]: Finished network-cleanup.service - Network Cleanup. Jul 16 23:18:30.161245 systemd[1]: systemd-battery-check.service - Early Battery Level Check skipped, unmet condition check ConditionDirectoryNotEmpty=/sys/class/power_supply Jul 16 23:18:30.161251 systemd[1]: Starting systemd-fsck-usr.service... Jul 16 23:18:30.161257 systemd[1]: Starting systemd-journald.service - Journal Service... Jul 16 23:18:30.161263 systemd[1]: Starting systemd-modules-load.service - Load Kernel Modules... Jul 16 23:18:30.161289 systemd-journald[515]: Collecting audit messages is enabled. Jul 16 23:18:30.161306 systemd-journald[515]: Journal started Jul 16 23:18:30.161319 systemd-journald[515]: Runtime Journal (/run/log/journal/b6695eab1f6044768c457262d976c744) is 8M, max 78.3M, 70.3M free. Jul 16 23:18:30.165795 systemd-modules-load[518]: Using 2 probe threads Jul 16 23:18:30.176835 systemd[1]: Starting systemd-vconsole-setup.service - Virtual Console Setup... Jul 16 23:18:30.195075 systemd[1]: Started systemd-journald.service - Journal Service. Jul 16 23:18:30.194000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.209360 systemd[1]: Finished ignition-setup-pre.service - Ignition env setup. Jul 16 23:18:30.213000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup-pre comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.231079 systemd[1]: Finished kmod-static-nodes.service - Create List of Static Device Nodes. Jul 16 23:18:30.243000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.266964 kernel: audit: type=1130 audit(1784243910.194:2): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.266607 systemd[1]: Finished systemd-fsck-usr.service. Jul 16 23:18:30.270382 kernel: audit: type=1130 audit(1784243910.213:3): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup-pre comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.270396 kernel: audit: type=1130 audit(1784243910.243:4): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.270404 kernel: bridge: filtering via arp/ip/ip6tables is no longer available by default. Update your scripts to load br_netfilter if you need this. Jul 16 23:18:30.273000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.282450 systemd[1]: Starting systemd-tmpfiles-setup-dev-early.service - Create Static Device Nodes in /dev gracefully... Jul 16 23:18:30.299015 kernel: audit: type=1130 audit(1784243910.273:5): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.315855 systemd[1]: Starting systemd-tmpfiles-setup.service - Create System Files and Directories... Jul 16 23:18:30.337955 systemd-vconsole-setup[520]: Configuration of first virtual console was skipped, ignoring remaining ones. Jul 16 23:18:30.340694 systemd-modules-load[518]: Inserted module 'br_netfilter' Jul 16 23:18:30.351000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.373677 kernel: Bridge firewalling registered Jul 16 23:18:30.344096 systemd-tmpfiles[546]: /usr/lib/tmpfiles.d/systemd.conf:30: Duplicate line for path "/var/lib/systemd", ignoring. Jul 16 23:18:30.372000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.394457 kernel: audit: type=1130 audit(1784243910.351:6): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.344153 systemd-tmpfiles[546]: /usr/lib/tmpfiles.d/var.conf:14: Duplicate line for path "/var/log", ignoring. Jul 16 23:18:30.401864 kernel: audit: type=1130 audit(1784243910.372:7): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.346678 systemd[1]: Finished systemd-tmpfiles-setup-dev-early.service - Create Static Device Nodes in /dev gracefully. Jul 16 23:18:30.406000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.353849 systemd[1]: Finished systemd-modules-load.service - Load Kernel Modules. Jul 16 23:18:30.401702 systemd[1]: Finished systemd-vconsole-setup.service - Virtual Console Setup. Jul 16 23:18:30.435000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.453717 kernel: audit: type=1130 audit(1784243910.406:8): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.429860 systemd[1]: Finished systemd-tmpfiles-setup.service - Create System Files and Directories. Jul 16 23:18:30.460429 kernel: audit: type=1130 audit(1784243910.435:9): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.461350 systemd[1]: Starting dracut-cmdline-ask.service - dracut ask for additional cmdline parameters... Jul 16 23:18:30.468043 systemd[1]: Starting systemd-sysctl.service - Apply Kernel Variables... Jul 16 23:18:30.487283 systemd[1]: Starting systemd-tmpfiles-setup-dev.service - Create Static Device Nodes in /dev... Jul 16 23:18:30.499763 systemd[1]: systemd-sysctl.service: Deactivated successfully. Jul 16 23:18:30.502162 systemd[1]: Finished systemd-sysctl.service - Apply Kernel Variables. Jul 16 23:18:30.507000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.525058 systemd[1]: Finished systemd-tmpfiles-setup-dev.service - Create Static Device Nodes in /dev. Jul 16 23:18:30.507000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.549000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.550000 audit: BPF prog-id=5 op=LOAD Jul 16 23:18:30.552420 kernel: audit: type=1130 audit(1784243910.507:10): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.552437 kernel: audit: type=1131 audit(1784243910.507:11): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.554789 systemd[1]: Starting systemd-resolved.service - Network Name Resolution... Jul 16 23:18:30.575587 systemd[1]: Finished dracut-cmdline-ask.service - dracut ask for additional cmdline parameters. Jul 16 23:18:30.583000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.588811 systemd[1]: Starting dracut-cmdline.service - dracut cmdline hook... Jul 16 23:18:30.618838 systemd-resolved[572]: Positive Trust Anchors: Jul 16 23:18:30.618850 systemd-resolved[572]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Jul 16 23:18:30.631953 dracut-cmdline[584]: dracut-110 Jul 16 23:18:30.618853 systemd-resolved[572]: . IN DS 38696 8 2 683d2d0acb8c9b712a1948b27f741219298d0a450d612c483af444a4c0fb2b16 Jul 16 23:18:30.618874 systemd-resolved[572]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 170.0.0.192.in-addr.arpa 171.0.0.192.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa ipv4only.arpa resolver.arpa corp home internal intranet lan local private test Jul 16 23:18:30.647000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:30.634658 systemd-resolved[572]: Defaulting to hostname 'linux'. Jul 16 23:18:30.689019 dracut-cmdline[584]: Using kernel command line parameters: SYSTEMD_SULOGIN_FORCE=1 BOOT_IMAGE=/flatcar/vmlinuz-a mount.usr=/dev/mapper/usr verity.usr=PARTUUID=7130c94a-213a-4e5a-8e26-6cce9662f132 rootflags=rw mount.usrflags=ro consoleblank=0 root=LABEL=ROOT console=tty1 console=ttyAMA0,115200n8 earlycon=pl011,0xeffec000 flatcar.first_boot=detected acpi=force flatcar.oem.id=azure flatcar.autologin verity.usrhash=a2be8f7dfb56092fbc90f9ca862a96ff2dda158db060da5eadf96a8218201e3d Jul 16 23:18:30.635946 systemd[1]: Started systemd-resolved.service - Network Name Resolution. Jul 16 23:18:30.648777 systemd[1]: Reached target nss-lookup.target - Host and Network Name Lookups. Jul 16 23:18:30.843162 kernel: Loading iSCSI transport class v2.0-870. Jul 16 23:18:30.882181 kernel: iscsi: registered transport (tcp) Jul 16 23:18:30.917562 kernel: iscsi: registered transport (qla4xxx) Jul 16 23:18:30.917638 kernel: QLogic iSCSI HBA Driver Jul 16 23:18:30.998179 systemd[1]: Starting systemd-network-generator.service - Generate Network Units from Kernel Command Line... Jul 16 23:18:31.022246 systemd[1]: Finished systemd-network-generator.service - Generate Network Units from Kernel Command Line. Jul 16 23:18:31.026000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.028592 systemd[1]: Reached target network-pre.target - Preparation for Network. Jul 16 23:18:31.109700 systemd[1]: Finished dracut-cmdline.service - dracut cmdline hook. Jul 16 23:18:31.113000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.117017 systemd[1]: Starting dracut-pre-udev.service - dracut pre-udev hook... Jul 16 23:18:31.139744 systemd[1]: Starting parse-ip-for-networkd.service - Write systemd-networkd units from cmdline... Jul 16 23:18:31.167433 systemd[1]: Finished dracut-pre-udev.service - dracut pre-udev hook. Jul 16 23:18:31.172000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.176000 audit: BPF prog-id=6 op=LOAD Jul 16 23:18:31.176000 audit: BPF prog-id=7 op=LOAD Jul 16 23:18:31.180296 systemd[1]: Starting systemd-udevd.service - Rule-based Manager for Device Events and Files... Jul 16 23:18:31.274096 systemd[1]: Finished parse-ip-for-networkd.service - Write systemd-networkd units from cmdline. Jul 16 23:18:31.280000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.281334 systemd-udevd[808]: Using default interface naming scheme 'v260'. Jul 16 23:18:31.294710 systemd[1]: Started systemd-udevd.service - Rule-based Manager for Device Events and Files. Jul 16 23:18:31.300000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.305089 systemd[1]: Starting dracut-pre-trigger.service - dracut pre-trigger hook... Jul 16 23:18:31.321000 audit: BPF prog-id=8 op=LOAD Jul 16 23:18:31.325256 systemd[1]: Starting systemd-networkd.service - Network Management... Jul 16 23:18:31.341317 dracut-pre-trigger[932]: rd.md=0: removing MD RAID activation Jul 16 23:18:31.369582 systemd-networkd[945]: Failed to open nftables netlink socket. IPMasquerade= and NFTSet= settings will not be applied. Ignoring: Protocol not supported Jul 16 23:18:31.382499 systemd[1]: Finished dracut-pre-trigger.service - dracut pre-trigger hook. Jul 16 23:18:31.385353 systemd-networkd[945]: lo: Link UP Jul 16 23:18:31.393000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.385357 systemd-networkd[945]: lo: Gained carrier Jul 16 23:18:31.404000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.394746 systemd[1]: Started systemd-networkd.service - Network Management. Jul 16 23:18:31.405589 systemd[1]: Reached target network.target - Network. Jul 16 23:18:31.415800 systemd[1]: Starting systemd-udev-trigger.service - Coldplug All udev Devices... Jul 16 23:18:31.498702 systemd[1]: Finished systemd-udev-trigger.service - Coldplug All udev Devices. Jul 16 23:18:31.503000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.505925 systemd[1]: Starting dracut-initqueue.service - dracut initqueue hook... Jul 16 23:18:31.636353 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Jul 16 23:18:31.640957 systemd[1]: Stopped systemd-vconsole-setup.service - Virtual Console Setup. Jul 16 23:18:31.647000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.661735 kernel: hv_storvsc f8b3781a-1e82-4818-a1c3-63d806ec15bb: tag#4 cmd 0x85 status: scsi 0x2 srb 0x6 hv 0xc0000001 Jul 16 23:18:31.660855 systemd[1]: Stopping systemd-vconsole-setup.service - Virtual Console Setup... Jul 16 23:18:31.675403 systemd[1]: Starting systemd-vconsole-setup.service - Virtual Console Setup... Jul 16 23:18:31.691612 kernel: hv_vmbus: registering driver hv_netvsc Jul 16 23:18:31.729487 systemd-vconsole-setup[1029]: Configuration of first virtual console was skipped, ignoring remaining ones. Jul 16 23:18:31.737468 systemd[1]: Finished systemd-vconsole-setup.service - Virtual Console Setup. Jul 16 23:18:31.741000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:31.787167 kernel: hv_netvsc 7ced8db8-c4d8-7ced-8db8-c4d87ced8db8 eth0: VF slot 1 added Jul 16 23:18:31.805324 systemd-networkd[945]: eth0: Found matching .network file, based on potentially unpredictable interface name: /usr/lib/systemd/network/zz-default.network Jul 16 23:18:31.809175 systemd-networkd[945]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Jul 16 23:18:31.810152 systemd-networkd[945]: eth0: Link UP Jul 16 23:18:31.810442 systemd-networkd[945]: eth0: Gained carrier Jul 16 23:18:31.810452 systemd-networkd[945]: eth0: Found matching .network file, based on potentially unpredictable interface name: /usr/lib/systemd/network/zz-default.network Jul 16 23:18:31.861430 kernel: hv_vmbus: registering driver hv_pci Jul 16 23:18:31.861487 kernel: hv_pci 849c5dfb-eea3-4aa7-98a3-8bf0d5a70943: PCI VMBus probing: Using version 0x10004 Jul 16 23:18:31.881595 kernel: hv_pci 849c5dfb-eea3-4aa7-98a3-8bf0d5a70943: PCI host bridge to bus eea3:00 Jul 16 23:18:31.881802 kernel: pci_bus eea3:00: root bus resource [mem 0xfc0000000-0xfc00fffff window] Jul 16 23:18:31.887728 kernel: pci_bus eea3:00: No busn resource found for root bus, will use [bus 00-ff] Jul 16 23:18:31.894505 kernel: pci eea3:00:02.0: [15b3:101a] type 00 class 0x020000 PCIe Endpoint Jul 16 23:18:31.895186 systemd-networkd[945]: eth0: DHCPv4 address 10.0.0.31/24, gateway 10.0.0.1 acquired from 168.63.129.16 Jul 16 23:18:31.908228 kernel: pci eea3:00:02.0: BAR 0 [mem 0xfc0000000-0xfc00fffff 64bit pref] Jul 16 23:18:31.913142 kernel: pci eea3:00:02.0: enabling Extended Tags Jul 16 23:18:31.930226 kernel: pci eea3:00:02.0: 0.000 Gb/s available PCIe bandwidth, limited by Unknown x0 link at eea3:00:02.0 (capable of 252.048 Gb/s with 16.0 GT/s PCIe x16 link) Jul 16 23:18:31.942580 kernel: pci_bus eea3:00: busn_res: [bus 00-ff] end is updated to 00 Jul 16 23:18:31.942753 kernel: pci eea3:00:02.0: BAR 0 [mem 0xfc0000000-0xfc00fffff 64bit pref]: assigned Jul 16 23:18:32.122701 systemd[1]: Found device dev-disk-by\x2dpartlabel-USR\x2dA.device - Virtual_Disk USR-A. Jul 16 23:18:32.136315 systemd[1]: Starting disk-uuid.service - Generate new UUID for disk GPT if necessary... Jul 16 23:18:32.203211 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device - Virtual_Disk OEM. Jul 16 23:18:32.226409 kernel: mlx5_core eea3:00:02.0: enabling device (0000 -> 0002) Jul 16 23:18:32.226634 kernel: mlx5_core eea3:00:02.0: PTM is not supported by PCIe Jul 16 23:18:32.230610 kernel: mlx5_core eea3:00:02.0: firmware version: 16.30.5026 Jul 16 23:18:32.242293 systemd[1]: Mounting oem.mount - /oem... Jul 16 23:18:32.281895 systemd[1]: Found device dev-disk-by\x2dlabel-EFI\x2dSYSTEM.device - Virtual_Disk EFI-SYSTEM. Jul 16 23:18:32.305088 systemd[1]: Found device dev-disk-by\x2dlabel-ROOT.device - Virtual_Disk ROOT. Jul 16 23:18:32.372177 kernel: BTRFS: device label OEM devid 1 transid 11 /dev/sda6 (8:6) scanned by mount (1099) Jul 16 23:18:32.383174 kernel: BTRFS info (device sda6): first mount of filesystem f290cbee-d9cf-4027-8c9a-9e1772542953 Jul 16 23:18:32.383220 kernel: BTRFS info (device sda6): using crc32c (crc32c-generic) checksum algorithm Jul 16 23:18:32.432745 kernel: BTRFS info (device sda6): turning on async discard Jul 16 23:18:32.432788 kernel: BTRFS info (device sda6): enabling free space tree Jul 16 23:18:32.436609 systemd[1]: Mounted oem.mount - /oem. Jul 16 23:18:32.457812 kernel: hv_netvsc 7ced8db8-c4d8-7ced-8db8-c4d87ced8db8 eth0: VF registering: eth1 Jul 16 23:18:32.458030 kernel: mlx5_core eea3:00:02.0 eth1: joined to eth0 Jul 16 23:18:32.458968 systemd[1]: Starting ignition-fetch-offline.service - Ignition (fetch-offline)... Jul 16 23:18:32.488277 kernel: mlx5_core eea3:00:02.0: MLX5E: StrdRq(1) RqSz(8) StrdSz(2048) RxCqeCmprss(0 basic) Jul 16 23:18:32.522152 kernel: mlx5_core eea3:00:02.0 enP61091s1: renamed from eth1 Jul 16 23:18:32.522793 systemd-networkd[945]: eth1: Interface name change detected, renamed to enP61091s1. Jul 16 23:18:32.546226 systemd[1]: Finished dracut-initqueue.service - dracut initqueue hook. Jul 16 23:18:32.550000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:32.552735 systemd[1]: Reached target remote-fs-pre.target - Preparation for Remote File Systems. Jul 16 23:18:32.562863 systemd[1]: Reached target remote-cryptsetup.target - Remote Encrypted Volumes. Jul 16 23:18:32.574781 systemd[1]: Reached target remote-fs.target - Remote File Systems. Jul 16 23:18:32.588383 systemd[1]: Starting dracut-pre-mount.service - dracut pre-mount hook... Jul 16 23:18:32.617759 systemd[1]: Finished dracut-pre-mount.service - dracut pre-mount hook. Jul 16 23:18:32.622000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:32.635147 kernel: mlx5_core eea3:00:02.0 enP61091s1: Link up Jul 16 23:18:32.672102 systemd-networkd[945]: enP61091s1: Link UP Jul 16 23:18:32.676012 kernel: hv_netvsc 7ced8db8-c4d8-7ced-8db8-c4d87ced8db8 eth0: Data path switched to VF: enP61091s1 Jul 16 23:18:32.816371 systemd-networkd[945]: enP61091s1: Gained carrier Jul 16 23:18:33.224267 systemd-networkd[945]: eth0: Gained IPv6LL Jul 16 23:18:33.370184 disk-uuid[1066]: Warning: The kernel is still using the old partition table. Jul 16 23:18:33.370184 disk-uuid[1066]: The new table will be used at the next reboot or after you Jul 16 23:18:33.370184 disk-uuid[1066]: run partprobe(8) or kpartx(8) Jul 16 23:18:33.370184 disk-uuid[1066]: The operation has completed successfully. Jul 16 23:18:33.393000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.393000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=disk-uuid comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.384685 systemd[1]: disk-uuid.service: Deactivated successfully. Jul 16 23:18:33.385830 systemd[1]: Finished disk-uuid.service - Generate new UUID for disk GPT if necessary. Jul 16 23:18:33.638647 ignition[1196]: Ignition 2.24.0 Jul 16 23:18:33.638665 ignition[1196]: Stage: fetch-offline Jul 16 23:18:33.645985 systemd[1]: Finished ignition-fetch-offline.service - Ignition (fetch-offline). Jul 16 23:18:33.638876 ignition[1196]: no config dir at "/usr/lib/ignition/base.d" Jul 16 23:18:33.657000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.660829 systemd[1]: Starting ignition-fetch.service - Ignition (fetch)... Jul 16 23:18:33.638885 ignition[1196]: no config dir at "/usr/lib/ignition/base.platform.d/azure" Jul 16 23:18:33.638956 ignition[1196]: parsed url from cmdline: "" Jul 16 23:18:33.638958 ignition[1196]: no config URL provided Jul 16 23:18:33.638961 ignition[1196]: reading system config file "/usr/lib/ignition/user.ign" Jul 16 23:18:33.638976 ignition[1196]: no config at "/usr/lib/ignition/user.ign" Jul 16 23:18:33.638979 ignition[1196]: failed to fetch config: resource requires networking Jul 16 23:18:33.639103 ignition[1196]: Ignition finished successfully Jul 16 23:18:33.695567 ignition[1263]: Ignition 2.24.0 Jul 16 23:18:33.695572 ignition[1263]: Stage: fetch Jul 16 23:18:33.695747 ignition[1263]: no config dir at "/usr/lib/ignition/base.d" Jul 16 23:18:33.695754 ignition[1263]: no config dir at "/usr/lib/ignition/base.platform.d/azure" Jul 16 23:18:33.695806 ignition[1263]: parsed url from cmdline: "" Jul 16 23:18:33.695808 ignition[1263]: no config URL provided Jul 16 23:18:33.695811 ignition[1263]: reading system config file "/usr/lib/ignition/user.ign" Jul 16 23:18:33.695818 ignition[1263]: no config at "/usr/lib/ignition/user.ign" Jul 16 23:18:33.695831 ignition[1263]: GET http://169.254.169.254/metadata/instance/compute/userData?api-version=2021-01-01&format=text: attempt #1 Jul 16 23:18:33.776735 ignition[1263]: GET result: OK Jul 16 23:18:33.777328 ignition[1263]: config has been read from IMDS userdata Jul 16 23:18:33.777339 ignition[1263]: parsing config with SHA512: b7ff45a1ebbdb0c56ab6237cf1ffdfaf07edc6dfe4861ae3fe653369649d53e8b3ff3ec4b514ff6c052f9025580e3f82491fecbf7eb16adf5927a64206bc1273 Jul 16 23:18:33.780638 unknown[1263]: fetched base config from "system" Jul 16 23:18:33.780827 ignition[1263]: fetch: fetch complete Jul 16 23:18:33.792000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.780644 unknown[1263]: fetched base config from "system" Jul 16 23:18:33.780839 ignition[1263]: fetch: fetch passed Jul 16 23:18:33.780650 unknown[1263]: fetched user config from "azure" Jul 16 23:18:33.780883 ignition[1263]: Ignition finished successfully Jul 16 23:18:33.785801 systemd[1]: Finished ignition-fetch.service - Ignition (fetch). Jul 16 23:18:33.795246 systemd[1]: Starting ignition-kargs.service - Ignition (kargs)... Jul 16 23:18:33.829889 ignition[1271]: Ignition 2.24.0 Jul 16 23:18:33.829908 ignition[1271]: Stage: kargs Jul 16 23:18:33.830086 ignition[1271]: no config dir at "/usr/lib/ignition/base.d" Jul 16 23:18:33.836704 systemd[1]: Finished ignition-kargs.service - Ignition (kargs). Jul 16 23:18:33.844000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.830093 ignition[1271]: no config dir at "/usr/lib/ignition/base.platform.d/azure" Jul 16 23:18:33.846866 systemd[1]: Starting ignition-disks.service - Ignition (disks)... Jul 16 23:18:33.830433 ignition[1271]: kargs: kargs passed Jul 16 23:18:33.830471 ignition[1271]: Ignition finished successfully Jul 16 23:18:33.892060 systemd[1]: ignition-kargs.service: Deactivated successfully. Jul 16 23:18:33.892279 systemd[1]: Stopped ignition-kargs.service - Ignition (kargs). Jul 16 23:18:33.900000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-kargs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.902627 systemd[1]: ignition-fetch.service: Deactivated successfully. Jul 16 23:18:33.909000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.902730 systemd[1]: Stopped ignition-fetch.service - Ignition (fetch). Jul 16 23:18:33.920000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-fetch-offline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.912090 systemd[1]: ignition-fetch-offline.service: Deactivated successfully. Jul 16 23:18:33.912250 systemd[1]: Stopped ignition-fetch-offline.service - Ignition (fetch-offline). Jul 16 23:18:33.924257 systemd[1]: Unmounting oem.mount - /oem... Jul 16 23:18:33.954323 kernel: BTRFS info (device sda6): last unmount of filesystem f290cbee-d9cf-4027-8c9a-9e1772542953 Jul 16 23:18:33.954731 systemd[1]: oem.mount: Deactivated successfully. Jul 16 23:18:33.955706 systemd[1]: Unmounted oem.mount - /oem. Jul 16 23:18:33.984374 ignition[1293]: Ignition 2.24.0 Jul 16 23:18:33.984391 ignition[1293]: Stage: disks Jul 16 23:18:33.988903 systemd[1]: Finished ignition-disks.service - Ignition (disks). Jul 16 23:18:33.995000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:33.984577 ignition[1293]: no config dir at "/usr/lib/ignition/base.d" Jul 16 23:18:33.996244 systemd[1]: Reached target initrd-root-device.target - Initrd Root Device. Jul 16 23:18:33.984584 ignition[1293]: no config dir at "/usr/lib/ignition/base.platform.d/azure" Jul 16 23:18:34.006005 systemd[1]: Reached target local-fs-pre.target - Preparation for Local File Systems. Jul 16 23:18:33.984899 ignition[1293]: disks: disks passed Jul 16 23:18:34.016045 systemd[1]: Reached target local-fs.target - Local File Systems. Jul 16 23:18:33.984934 ignition[1293]: Ignition finished successfully Jul 16 23:18:34.026369 systemd[1]: Reached target sysinit.target - System Initialization. Jul 16 23:18:34.036488 systemd[1]: Reached target basic.target - Basic System. Jul 16 23:18:34.049842 systemd[1]: Starting systemd-fsck-root.service - File System Check on /dev/disk/by-label/ROOT... Jul 16 23:18:34.199927 systemd-fsck[1303]: ROOT: clean, 15/6361680 files, 408771/6359552 blocks Jul 16 23:18:34.210211 systemd[1]: Finished systemd-fsck-root.service - File System Check on /dev/disk/by-label/ROOT. Jul 16 23:18:34.215000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:34.218294 systemd[1]: Mounting sysroot.mount - /sysroot... Jul 16 23:18:34.512150 kernel: EXT4-fs (sda9): mounted filesystem 113bb294-e8c8-46d0-bd4c-0c5c9f00d510 r/w with ordered data mode. Quota mode: none. Jul 16 23:18:34.512781 systemd[1]: Mounted sysroot.mount - /sysroot. Jul 16 23:18:34.520659 systemd[1]: Reached target initrd-root-fs.target - Initrd Root File System. Jul 16 23:18:34.546436 systemd[1]: Mounting sysroot-usr.mount - /sysroot/usr... Jul 16 23:18:34.551826 systemd[1]: Starting flatcar-metadata-hostname.service - Flatcar Metadata Hostname Agent... Jul 16 23:18:34.560507 systemd[1]: ignition-remount-sysroot.service - Remount /sysroot read-write for Ignition skipped, unmet condition check ConditionPathIsReadWrite=!/sysroot Jul 16 23:18:34.560549 systemd[1]: Reached target ignition-diskful.target - Ignition Boot Disk Setup. Jul 16 23:18:34.585358 systemd[1]: Mounted sysroot-usr.mount - /sysroot/usr. Jul 16 23:18:34.597710 systemd[1]: Starting initrd-setup-root.service - Root filesystem setup... Jul 16 23:18:34.880770 systemd-tmpfiles[1342]: /sysroot/usr/lib/tmpfiles.d/base_image_var.conf:1: Duplicate line for path "/sysroot/var", ignoring. Jul 16 23:18:34.880795 systemd-tmpfiles[1342]: /sysroot/usr/lib/tmpfiles.d/base_image_var.conf:7: Duplicate line for path "/sysroot/var/empty", ignoring. Jul 16 23:18:34.880853 systemd-tmpfiles[1342]: /sysroot/usr/lib/tmpfiles.d/base_image_var.conf:28: Duplicate line for path "/sysroot/var/log", ignoring. Jul 16 23:18:35.118658 coreos-metadata[1322]: Jul 16 23:18:35.118 INFO Fetching http://168.63.129.16/?comp=versions: Attempt #1 Jul 16 23:18:35.127922 coreos-metadata[1322]: Jul 16 23:18:35.127 INFO Fetch successful Jul 16 23:18:35.127922 coreos-metadata[1322]: Jul 16 23:18:35.127 INFO Fetching http://169.254.169.254/metadata/instance/compute/name?api-version=2017-08-01&format=text: Attempt #1 Jul 16 23:18:35.142923 coreos-metadata[1322]: Jul 16 23:18:35.142 INFO Fetch successful Jul 16 23:18:35.148446 coreos-metadata[1322]: Jul 16 23:18:35.142 INFO wrote hostname ci-4722.1.0-n-b7f0200810 to /sysroot/etc/hostname Jul 16 23:18:35.149964 systemd[1]: Finished flatcar-metadata-hostname.service - Flatcar Metadata Hostname Agent. Jul 16 23:18:35.160000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=flatcar-metadata-hostname comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:35.912159 kernel: loop1: detected capacity change from 0 to 44152 Jul 16 23:18:35.961426 kernel: loop1: p1 p2 p3 Jul 16 23:18:36.320789 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:36.320837 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:36.328457 kernel: device-mapper: table: 254:1: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:36.331975 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:36.332461 systemd-confext[1402]: device-mapper: reload ioctl on loop1p1-14-verity (254:1) failed: Invalid argument Jul 16 23:18:36.378256 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:36.466184 kernel: erofs: (device dm-1): mounted with root inode @ nid 40. Jul 16 23:18:36.489325 kernel: loop2: detected capacity change from 0 to 44152 Jul 16 23:18:36.492233 kernel: loop2: p1 p2 p3 Jul 16 23:18:36.506135 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:36.506183 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:36.511378 kernel: device-mapper: table: 254:1: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:36.515564 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:36.515623 (sd-merge)[1413]: device-mapper: reload ioctl on loop2p1-18-verity (254:1) failed: Invalid argument Jul 16 23:18:36.528539 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:36.544933 (sd-merge)[1413]: Using extensions '00-flatcar-default.raw'. Jul 16 23:18:36.549651 kernel: erofs: (device dm-1): mounted with root inode @ nid 40. Jul 16 23:18:36.547759 (sd-merge)[1413]: Merged extensions into '/sysroot/etc'. Jul 16 23:18:36.555792 initrd-setup-root[1420]: /etc 00-flatcar-default Thu 2026-07-16 23:18:30 UTC Jul 16 23:18:36.563197 systemd[1]: Finished initrd-setup-root.service - Root filesystem setup. Jul 16 23:18:36.572000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.576669 kernel: kauditd_printk_skb: 30 callbacks suppressed Jul 16 23:18:36.576687 kernel: audit: type=1130 audit(1784243916.572:42): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.582265 systemd[1]: Starting ignition-mount.service - Ignition (mount)... Jul 16 23:18:36.605301 systemd[1]: Starting sysroot-boot.service - /sysroot/boot... Jul 16 23:18:36.631892 ignition[1429]: INFO : Ignition 2.24.0 Jul 16 23:18:36.631892 ignition[1429]: INFO : Stage: mount Jul 16 23:18:36.641592 ignition[1429]: INFO : no config dir at "/usr/lib/ignition/base.d" Jul 16 23:18:36.641592 ignition[1429]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/azure" Jul 16 23:18:36.641592 ignition[1429]: INFO : mount: mount passed Jul 16 23:18:36.641592 ignition[1429]: INFO : Ignition finished successfully Jul 16 23:18:36.646000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.637728 systemd[1]: Finished ignition-mount.service - Ignition (mount). Jul 16 23:18:36.688999 kernel: audit: type=1130 audit(1784243916.646:43): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.672361 systemd[1]: Starting ignition-files.service - Ignition (files)... Jul 16 23:18:36.689269 systemd[1]: Finished sysroot-boot.service - /sysroot/boot. Jul 16 23:18:36.699000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.718139 kernel: audit: type=1130 audit(1784243916.699:44): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.720329 systemd[1]: Mounting oem.mount - /oem... Jul 16 23:18:36.747409 kernel: BTRFS: device label OEM devid 1 transid 11 /dev/sda6 (8:6) scanned by mount (1444) Jul 16 23:18:36.759289 kernel: BTRFS info (device sda6): first mount of filesystem f290cbee-d9cf-4027-8c9a-9e1772542953 Jul 16 23:18:36.759330 kernel: BTRFS info (device sda6): using crc32c (crc32c-generic) checksum algorithm Jul 16 23:18:36.770584 kernel: BTRFS info (device sda6): turning on async discard Jul 16 23:18:36.770637 kernel: BTRFS info (device sda6): enabling free space tree Jul 16 23:18:36.772362 systemd[1]: Mounted oem.mount - /oem. Jul 16 23:18:36.780918 systemd[1]: Mounting sysroot-oem.mount - /sysroot/oem... Jul 16 23:18:36.801310 systemd[1]: Mounted sysroot-oem.mount - /sysroot/oem. Jul 16 23:18:36.829891 ignition[1465]: INFO : Ignition 2.24.0 Jul 16 23:18:36.829891 ignition[1465]: INFO : Stage: files Jul 16 23:18:36.836390 ignition[1465]: INFO : no config dir at "/usr/lib/ignition/base.d" Jul 16 23:18:36.836390 ignition[1465]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/azure" Jul 16 23:18:36.836390 ignition[1465]: DEBUG : files: compiled without relabeling support, skipping Jul 16 23:18:36.836390 ignition[1465]: INFO : files: ensureUsers: op(1): [started] creating or modifying user "core" Jul 16 23:18:36.836390 ignition[1465]: DEBUG : files: ensureUsers: op(1): executing: "usermod" "--root" "/sysroot" "core" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: ensureUsers: op(1): [finished] creating or modifying user "core" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: ensureUsers: op(2): [started] adding ssh keys to user "core" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: ensureUsers: op(2): [finished] adding ssh keys to user "core" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: createFilesystemsFiles: createFiles: op(3): [started] writing file "/sysroot/etc/flatcar/update.conf" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: createFilesystemsFiles: createFiles: op(3): [finished] writing file "/sysroot/etc/flatcar/update.conf" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: createFilesystemsFiles: createFiles: op(4): [started] writing link "/sysroot/etc/extensions/docker-flatcar.raw" -> "/dev/null" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: createFilesystemsFiles: createFiles: op(4): [finished] writing link "/sysroot/etc/extensions/docker-flatcar.raw" -> "/dev/null" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: createFilesystemsFiles: createFiles: op(5): [started] writing link "/sysroot/etc/extensions/containerd-flatcar.raw" -> "/dev/null" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: createFilesystemsFiles: createFiles: op(5): [finished] writing link "/sysroot/etc/extensions/containerd-flatcar.raw" -> "/dev/null" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: createResultFile: createFiles: op(6): [started] writing file "/sysroot/etc/.ignition-result.json" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: createResultFile: createFiles: op(6): [finished] writing file "/sysroot/etc/.ignition-result.json" Jul 16 23:18:36.864992 ignition[1465]: INFO : files: files passed Jul 16 23:18:36.864992 ignition[1465]: INFO : Ignition finished successfully Jul 16 23:18:36.874000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.960000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.960000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.856361 unknown[1465]: wrote ssh authorized keys file for user: core Jul 16 23:18:37.023174 kernel: audit: type=1130 audit(1784243916.874:45): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.866529 systemd[1]: Finished ignition-files.service - Ignition (files). Jul 16 23:18:37.030404 kernel: audit: type=1130 audit(1784243916.960:46): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.876972 systemd[1]: Starting ignition-quench.service - Ignition (record completion)... Jul 16 23:18:37.038178 kernel: audit: type=1131 audit(1784243916.960:47): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-quench comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:36.915350 systemd[1]: Starting initrd-setup-root-after-ignition.service - Root filesystem completion... Jul 16 23:18:37.044581 kernel: loop3: detected capacity change from 0 to 44152 Jul 16 23:18:36.937924 systemd[1]: ignition-quench.service: Deactivated successfully. Jul 16 23:18:37.052149 kernel: loop3: p1 p2 p3 Jul 16 23:18:37.052165 initrd-setup-root-after-ignition[1501]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Jul 16 23:18:37.052165 initrd-setup-root-after-ignition[1501]: grep: /sysroot/usr/share/flatcar/enabled-sysext.conf: No such file or directory Jul 16 23:18:36.949280 systemd[1]: Finished ignition-quench.service - Ignition (record completion). Jul 16 23:18:37.089786 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:37.089811 initrd-setup-root-after-ignition[1505]: grep: /sysroot/etc/flatcar/enabled-sysext.conf: No such file or directory Jul 16 23:18:37.072878 systemd-confext[1507]: device-mapper: reload ioctl on loop3p1-21-verity (254:2) failed: Invalid argument Jul 16 23:18:37.108851 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:37.108870 kernel: device-mapper: table: 254:2: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:37.108878 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:37.108885 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:37.122156 kernel: erofs: (device dm-2): mounted with root inode @ nid 40. Jul 16 23:18:37.143150 kernel: loop4: detected capacity change from 0 to 44152 Jul 16 23:18:37.146171 kernel: loop4: p1 p2 p3 Jul 16 23:18:37.157700 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:37.157735 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:37.163397 kernel: device-mapper: table: 254:2: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:37.167645 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:37.167793 (sd-merge)[1517]: device-mapper: reload ioctl on loop4p1-25-verity (254:2) failed: Invalid argument Jul 16 23:18:37.185152 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:37.202913 (sd-merge)[1517]: Skipping extension refresh because no change was found, use --always-refresh=yes to always do a refresh. Jul 16 23:18:37.209789 kernel: erofs: (device dm-2): mounted with root inode @ nid 40. Jul 16 23:18:37.265175 kernel: loop4: detected capacity change from 0 to 142648 Jul 16 23:18:37.309147 kernel: loop4: p1 p2 p3 Jul 16 23:18:37.681855 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:37.681912 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:37.686720 kernel: device-mapper: table: 254:2: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:37.689975 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:37.690204 systemd-sysext[1525]: device-mapper: reload ioctl on loop4p1-29-verity (254:2) failed: Invalid argument Jul 16 23:18:37.703306 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:37.759148 kernel: erofs: (device dm-2): mounted with root inode @ nid 39. Jul 16 23:18:37.779154 kernel: loop5: detected capacity change from 0 to 142648 Jul 16 23:18:37.782426 kernel: loop5: p1 p2 p3 Jul 16 23:18:37.794382 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:37.794424 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:37.799350 kernel: device-mapper: table: 254:2: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:37.802541 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:37.802903 (sd-merge)[1534]: device-mapper: reload ioctl on loop5p1-33-verity (254:2) failed: Invalid argument Jul 16 23:18:37.813290 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:37.837152 kernel: erofs: (device dm-2): mounted with root inode @ nid 39. Jul 16 23:18:37.837428 (sd-merge)[1534]: Using extensions 'oem-azure-4722.1.0+nightly-20260716-2100.raw'. Jul 16 23:18:37.838161 (sd-merge)[1534]: Merged extensions into '/sysroot/usr'. Jul 16 23:18:37.849212 systemd[1]: Finished initrd-setup-root-after-ignition.service - Root filesystem completion. Jul 16 23:18:37.855000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:37.878551 kernel: audit: type=1130 audit(1784243917.855:48): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:37.873435 systemd[1]: Starting initrd-parse-etc.service - Mountpoints Configured in the Real Root... Jul 16 23:18:37.900482 systemd[1]: initrd-parse-etc.service: Deactivated successfully. Jul 16 23:18:37.905215 systemd[1]: Finished initrd-parse-etc.service - Mountpoints Configured in the Real Root. Jul 16 23:18:37.909000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:37.910868 systemd[1]: initrd-parse-etc.service: Triggering OnSuccess= dependencies. Jul 16 23:18:37.909000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:37.949415 kernel: audit: type=1130 audit(1784243917.909:49): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:37.912578 systemd[1]: Reached target initrd-fs.target - Initrd File Systems. Jul 16 23:18:37.958992 kernel: audit: type=1131 audit(1784243917.909:50): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-parse-etc comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:37.952296 systemd[1]: Starting dracut-mount.service - dracut mount hook... Jul 16 23:18:38.261585 systemd[1]: Finished dracut-mount.service - dracut mount hook. Jul 16 23:18:38.265000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.282190 kernel: audit: type=1130 audit(1784243918.265:51): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.282393 systemd[1]: Starting dracut-pre-pivot.service - dracut pre-pivot and cleanup hook... Jul 16 23:18:38.313722 systemd[1]: Finished dracut-pre-pivot.service - dracut pre-pivot and cleanup hook. Jul 16 23:18:38.323000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.326901 systemd[1]: Starting initrd-cleanup.service - Cleaning Up and Shutting Down Daemons... Jul 16 23:18:38.354374 systemd[1]: Stopped target basic.target - Basic System. Jul 16 23:18:38.358528 systemd[1]: Stopped target ignition-diskful.target - Ignition Boot Disk Setup. Jul 16 23:18:38.367516 systemd[1]: Stopped target initrd-root-device.target - Initrd Root Device. Jul 16 23:18:38.377032 systemd[1]: Stopped target initrd-usr-fs.target - Initrd /usr File System. Jul 16 23:18:38.386317 systemd[1]: Stopped target nss-lookup.target - Host and Network Name Lookups. Jul 16 23:18:38.394882 systemd[1]: Stopped target paths.target - Path Units. Jul 16 23:18:38.403897 systemd[1]: Stopped target remote-cryptsetup.target - Remote Encrypted Volumes. Jul 16 23:18:38.413106 systemd[1]: Stopped target slices.target - Slice Units. Jul 16 23:18:38.422813 systemd[1]: Stopped target sockets.target - Socket Units. Jul 16 23:18:38.431439 systemd[1]: Stopped target sysinit.target - System Initialization. Jul 16 23:18:38.440168 systemd[1]: Stopped target local-fs.target - Local File Systems. Jul 16 23:18:38.449684 systemd[1]: Stopped target swap.target - Swaps. Jul 16 23:18:38.457810 systemd[1]: Stopped target timers.target - Timer Units. Jul 16 23:18:38.465607 systemd[1]: iscsid.socket: Deactivated successfully. Jul 16 23:18:38.465709 systemd[1]: Closed iscsid.socket - Open-iSCSI iscsid Socket. Jul 16 23:18:38.475868 systemd[1]: iscsiuio.socket: Deactivated successfully. Jul 16 23:18:38.475965 systemd[1]: Closed iscsiuio.socket - Open-iSCSI iscsiuio Socket. Jul 16 23:18:38.484493 systemd[1]: systemd-coredump.socket: Deactivated successfully. Jul 16 23:18:38.511000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-pivot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.484600 systemd[1]: Closed systemd-coredump.socket - Process Core Dump Socket. Jul 16 23:18:38.493410 systemd[1]: systemd-journald-audit.socket: Deactivated successfully. Jul 16 23:18:38.493499 systemd[1]: Closed systemd-journald-audit.socket - Journal Audit Socket. Jul 16 23:18:38.503540 systemd[1]: dracut-pre-pivot.service: Deactivated successfully. Jul 16 23:18:38.545000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.503643 systemd[1]: Stopped dracut-pre-pivot.service - dracut pre-pivot and cleanup hook. Jul 16 23:18:38.517410 systemd[1]: Stopped target remote-fs.target - Remote File Systems. Jul 16 23:18:38.561000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.526664 systemd[1]: Stopped target remote-fs-pre.target - Preparation for Remote File Systems. Jul 16 23:18:38.536798 systemd[1]: dracut-mount.service: Deactivated successfully. Jul 16 23:18:38.536911 systemd[1]: Stopped dracut-mount.service - dracut mount hook. Jul 16 23:18:38.552786 systemd[1]: dracut-pre-mount.service: Deactivated successfully. Jul 16 23:18:38.552898 systemd[1]: Stopped dracut-pre-mount.service - dracut pre-mount hook. Jul 16 23:18:38.613000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-initqueue comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.563851 systemd[1]: Stopped target cryptsetup.target - Local Encrypted Volumes. Jul 16 23:18:38.571805 systemd[1]: systemd-ask-password-console.path: Deactivated successfully. Jul 16 23:18:38.628000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root-after-ignition comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.572110 systemd[1]: Stopped systemd-ask-password-console.path - Dispatch Password Requests to Console Directory Watch. Jul 16 23:18:38.584125 systemd[1]: Stopped target cryptsetup-pre.target - Local Encrypted Volumes (Pre). Jul 16 23:18:38.643000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-files comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.594367 systemd[1]: clevis-luks-askpass.path: Deactivated successfully. Jul 16 23:18:38.594657 systemd[1]: Stopped clevis-luks-askpass.path - Forward Password Requests to Clevis Directory Watch. Jul 16 23:18:38.657000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=flatcar-metadata-hostname comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.604353 systemd[1]: dracut-initqueue.service: Deactivated successfully. Jul 16 23:18:38.604506 systemd[1]: Stopped dracut-initqueue.service - dracut initqueue hook. Jul 16 23:18:38.618824 systemd[1]: initrd-setup-root-after-ignition.service: Deactivated successfully. Jul 16 23:18:38.618963 systemd[1]: Stopped initrd-setup-root-after-ignition.service - Root filesystem completion. Jul 16 23:18:38.634171 systemd[1]: ignition-files.service: Deactivated successfully. Jul 16 23:18:38.634279 systemd[1]: Stopped ignition-files.service - Ignition (files). Jul 16 23:18:38.649314 systemd[1]: flatcar-metadata-hostname.service: Deactivated successfully. Jul 16 23:18:38.704581 ignition[1599]: INFO : Ignition 2.24.0 Jul 16 23:18:38.704581 ignition[1599]: INFO : Stage: umount Jul 16 23:18:38.704581 ignition[1599]: INFO : no config dir at "/usr/lib/ignition/base.d" Jul 16 23:18:38.704581 ignition[1599]: INFO : no config dir at "/usr/lib/ignition/base.platform.d/azure" Jul 16 23:18:38.704581 ignition[1599]: INFO : umount: umount passed Jul 16 23:18:38.704581 ignition[1599]: INFO : Ignition finished successfully Jul 16 23:18:38.715000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.728000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.741000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.750000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.649430 systemd[1]: Stopped flatcar-metadata-hostname.service - Flatcar Metadata Hostname Agent. Jul 16 23:18:38.669329 systemd[1]: Stopping ignition-mount.service - Ignition (mount)... Jul 16 23:18:38.764000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-mount comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.701880 systemd[1]: Stopping sysroot-boot.service - /sysroot/boot... Jul 16 23:18:38.708025 systemd[1]: systemd-modules-load.service: Deactivated successfully. Jul 16 23:18:38.780000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-disks comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.708208 systemd[1]: Stopped systemd-modules-load.service - Load Kernel Modules. Jul 16 23:18:38.788000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=ignition-setup-pre comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.721857 systemd[1]: systemd-tmpfiles-setup.service: Deactivated successfully. Jul 16 23:18:38.721967 systemd[1]: Stopped systemd-tmpfiles-setup.service - Create System Files and Directories. Jul 16 23:18:38.731818 systemd[1]: systemd-udev-trigger.service: Deactivated successfully. Jul 16 23:18:38.731977 systemd[1]: Stopped systemd-udev-trigger.service - Coldplug All udev Devices. Jul 16 23:18:38.743824 systemd[1]: dracut-pre-trigger.service: Deactivated successfully. Jul 16 23:18:38.743996 systemd[1]: Stopped dracut-pre-trigger.service - dracut pre-trigger hook. Jul 16 23:18:38.835000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.754995 systemd[1]: ignition-mount.service: Deactivated successfully. Jul 16 23:18:38.755824 systemd[1]: Stopped ignition-mount.service - Ignition (mount). Jul 16 23:18:38.768053 systemd[1]: Stopped target network.target - Network. Jul 16 23:18:38.773513 systemd[1]: ignition-disks.service: Deactivated successfully. Jul 16 23:18:38.859000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.773571 systemd[1]: Stopped ignition-disks.service - Ignition (disks). Jul 16 23:18:38.783823 systemd[1]: ignition-setup-pre.service: Deactivated successfully. Jul 16 23:18:38.875000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.875000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.783873 systemd[1]: Stopped ignition-setup-pre.service - Ignition env setup. Jul 16 23:18:38.885000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=sysroot-boot comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.885000 audit: BPF prog-id=5 op=UNLOAD Jul 16 23:18:38.890000 audit: BPF prog-id=8 op=UNLOAD Jul 16 23:18:38.795475 systemd[1]: Stopping systemd-networkd.service - Network Management... Jul 16 23:18:38.803730 systemd[1]: Stopping systemd-resolved.service - Network Name Resolution... Jul 16 23:18:38.816821 systemd[1]: sysroot-boot.mount: Deactivated successfully. Jul 16 23:18:38.826127 systemd[1]: systemd-networkd.service: Deactivated successfully. Jul 16 23:18:38.830571 systemd[1]: Stopped systemd-networkd.service - Network Management. Jul 16 23:18:38.932000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-setup-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.848463 systemd[1]: systemd-resolved.service: Deactivated successfully. Jul 16 23:18:38.849348 systemd[1]: Stopped systemd-resolved.service - Network Name Resolution. Jul 16 23:18:38.867012 systemd[1]: initrd-cleanup.service: Deactivated successfully. Jul 16 23:18:38.867859 systemd[1]: Finished initrd-cleanup.service - Cleaning Up and Shutting Down Daemons. Jul 16 23:18:38.967000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=parse-ip-for-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.878038 systemd[1]: sysroot-boot.service: Deactivated successfully. Jul 16 23:18:38.878829 systemd[1]: Stopped sysroot-boot.service - /sysroot/boot. Jul 16 23:18:38.890522 systemd[1]: Stopped target network-pre.target - Preparation for Network. Jul 16 23:18:38.897079 systemd[1]: systemd-networkd-resolve-hook.socket: Deactivated successfully. Jul 16 23:18:38.897185 systemd[1]: Closed systemd-networkd-resolve-hook.socket - Network Management Resolve Hook Socket. Jul 16 23:18:38.913903 systemd[1]: systemd-networkd.socket: Deactivated successfully. Jul 16 23:18:38.913957 systemd[1]: Closed systemd-networkd.socket - Network Management Netlink Socket. Jul 16 23:18:39.021000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.925830 systemd[1]: initrd-setup-root.service: Deactivated successfully. Jul 16 23:18:38.925885 systemd[1]: Stopped initrd-setup-root.service - Root filesystem setup. Jul 16 23:18:39.041000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-pre-udev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.939269 systemd[1]: Stopping network-cleanup.service - Network Cleanup... Jul 16 23:18:39.051000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:38.953394 systemd[1]: parse-ip-for-networkd.service: Deactivated successfully. Jul 16 23:18:38.953446 systemd[1]: Stopped parse-ip-for-networkd.service - Write systemd-networkd units from cmdline. Jul 16 23:18:39.079000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=dracut-cmdline-ask comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.080479 kernel: hv_netvsc 7ced8db8-c4d8-7ced-8db8-c4d87ced8db8 eth0: Data path switched from VF: enP61091s1 Jul 16 23:18:38.972830 systemd[1]: Stopping systemd-udevd.service - Rule-based Manager for Device Events and Files... Jul 16 23:18:39.012250 systemd[1]: systemd-udevd.service: Deactivated successfully. Jul 16 23:18:39.014036 systemd[1]: Stopped systemd-udevd.service - Rule-based Manager for Device Events and Files. Jul 16 23:18:39.026073 systemd[1]: systemd-udevd-control.socket: Deactivated successfully. Jul 16 23:18:39.026124 systemd[1]: Closed systemd-udevd-control.socket - udev Control Socket. Jul 16 23:18:39.112000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.036803 systemd[1]: dracut-pre-udev.service: Deactivated successfully. Jul 16 23:18:39.128000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.036852 systemd[1]: Stopped dracut-pre-udev.service - dracut pre-udev hook. Jul 16 23:18:39.139000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-tmpfiles-setup-dev-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.044798 systemd[1]: dracut-cmdline.service: Deactivated successfully. Jul 16 23:18:39.149000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.044842 systemd[1]: Stopped dracut-cmdline.service - dracut cmdline hook. Jul 16 23:18:39.160000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.053797 systemd[1]: dracut-cmdline-ask.service: Deactivated successfully. Jul 16 23:18:39.053843 systemd[1]: Stopped dracut-cmdline-ask.service - dracut ask for additional cmdline parameters. Jul 16 23:18:39.175000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=network-cleanup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.097881 systemd[1]: Starting initrd-udevadm-cleanup-db.service - Cleanup udev Database... Jul 16 23:18:39.186000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.186000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=kernel msg='unit=initrd-udevadm-cleanup-db comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:39.107594 systemd[1]: systemd-network-generator.service: Deactivated successfully. Jul 16 23:18:39.107644 systemd[1]: Stopped systemd-network-generator.service - Generate Network Units from Kernel Command Line. Jul 16 23:18:39.115061 systemd[1]: systemd-tmpfiles-setup-dev.service: Deactivated successfully. Jul 16 23:18:39.115109 systemd[1]: Stopped systemd-tmpfiles-setup-dev.service - Create Static Device Nodes in /dev. Jul 16 23:18:39.131541 systemd[1]: systemd-tmpfiles-setup-dev-early.service: Deactivated successfully. Jul 16 23:18:39.131591 systemd[1]: Stopped systemd-tmpfiles-setup-dev-early.service - Create Static Device Nodes in /dev gracefully. Jul 16 23:18:39.141517 systemd[1]: kmod-static-nodes.service: Deactivated successfully. Jul 16 23:18:39.141571 systemd[1]: Stopped kmod-static-nodes.service - Create List of Static Device Nodes. Jul 16 23:18:39.153785 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Jul 16 23:18:39.153841 systemd[1]: Stopped systemd-vconsole-setup.service - Virtual Console Setup. Jul 16 23:18:39.165742 systemd[1]: network-cleanup.service: Deactivated successfully. Jul 16 23:18:39.166834 systemd[1]: Stopped network-cleanup.service - Network Cleanup. Jul 16 23:18:39.177954 systemd[1]: initrd-udevadm-cleanup-db.service: Deactivated successfully. Jul 16 23:18:39.178725 systemd[1]: Finished initrd-udevadm-cleanup-db.service - Cleanup udev Database. Jul 16 23:18:39.190338 systemd[1]: Reached target initrd-switch-root.target - Switch Root. Jul 16 23:18:39.202407 systemd[1]: Starting initrd-switch-root.service - Switch Root... Jul 16 23:18:39.242432 systemd[1]: Switching root. Jul 16 23:18:39.416530 systemd-journald[515]: Journal stopped Jul 16 23:18:45.159237 systemd-journald[515]: Received SIGTERM from PID 1 (systemd). Jul 16 23:18:45.159289 kernel: SELinux: policy capability network_peer_controls=1 Jul 16 23:18:45.159304 kernel: SELinux: policy capability open_perms=1 Jul 16 23:18:45.159314 kernel: SELinux: policy capability extended_socket_class=1 Jul 16 23:18:45.159321 kernel: SELinux: policy capability always_check_network=0 Jul 16 23:18:45.159329 kernel: SELinux: policy capability cgroup_seclabel=1 Jul 16 23:18:45.159337 kernel: SELinux: policy capability nnp_nosuid_transition=1 Jul 16 23:18:45.159346 kernel: SELinux: policy capability genfs_seclabel_symlinks=0 Jul 16 23:18:45.159354 kernel: SELinux: policy capability ioctl_skip_cloexec=0 Jul 16 23:18:45.159361 kernel: SELinux: policy capability userspace_initial_context=0 Jul 16 23:18:45.159370 systemd[1]: Successfully loaded SELinux policy in 182.763ms. Jul 16 23:18:45.159383 systemd[1]: Relabeled /dev/, /dev/shm/, /run/ in 5.164ms. Jul 16 23:18:45.159392 systemd[1]: systemd 260.1 running in system mode (+PAM +AUDIT +SELINUX -APPARMOR +IMA +IPE +SMACK +SECCOMP -GCRYPT -GNUTLS +OPENSSL -ACL +BLKID +CURL +ELFUTILS -FIDO2 +IDN2 +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 -PWQUALITY -P11KIT -QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD -BPF_FRAMEWORK -BTF -XKBCOMMON +UTMP +LIBARCHIVE) Jul 16 23:18:45.159401 systemd[1]: Detected virtualization microsoft. Jul 16 23:18:45.159410 systemd[1]: Detected architecture arm64. Jul 16 23:18:45.159418 systemd[1]: Detected first boot. Jul 16 23:18:45.159428 systemd[1]: Initializing machine ID from random generator. Jul 16 23:18:45.159434 systemd[1]: Hostname set to . Jul 16 23:18:45.159440 kernel: kauditd_printk_skb: 38 callbacks suppressed Jul 16 23:18:45.159451 kernel: audit: type=1334 audit(1784243921.847:90): prog-id=9 op=LOAD Jul 16 23:18:45.159457 kernel: audit: type=1334 audit(1784243921.847:91): prog-id=9 op=UNLOAD Jul 16 23:18:45.159464 zram_generator::config[1901]: No configuration found. Jul 16 23:18:45.159470 kernel: NET: Registered PF_VSOCK protocol family Jul 16 23:18:45.159478 systemd[1]: Applying preset policy. Jul 16 23:18:45.159486 systemd[1]: Populated /etc with preset unit settings. Jul 16 23:18:45.159492 kernel: audit: type=1334 audit(1784243924.158:92): prog-id=10 op=LOAD Jul 16 23:18:45.159498 kernel: audit: type=1334 audit(1784243924.158:93): prog-id=2 op=UNLOAD Jul 16 23:18:45.159507 kernel: audit: type=1334 audit(1784243924.158:94): prog-id=11 op=LOAD Jul 16 23:18:45.159513 kernel: audit: type=1334 audit(1784243924.158:95): prog-id=12 op=LOAD Jul 16 23:18:45.159519 kernel: audit: type=1334 audit(1784243924.158:96): prog-id=3 op=UNLOAD Jul 16 23:18:45.159525 kernel: audit: type=1334 audit(1784243924.159:97): prog-id=4 op=UNLOAD Jul 16 23:18:45.159531 kernel: audit: type=1334 audit(1784243924.164:98): prog-id=13 op=LOAD Jul 16 23:18:45.159538 kernel: audit: type=1334 audit(1784243924.164:99): prog-id=10 op=UNLOAD Jul 16 23:18:45.159545 systemd[1]: initrd-switch-root.service: Deactivated successfully. Jul 16 23:18:45.159552 systemd[1]: Stopped initrd-switch-root.service - Switch Root. Jul 16 23:18:45.159559 systemd[1]: systemd-journald.service: Scheduled restart job, restart counter is at 1. Jul 16 23:18:45.159567 systemd[1]: Created slice system-addon\x2dconfig.slice - Slice /system/addon-config. Jul 16 23:18:45.159574 systemd[1]: Created slice system-addon\x2drun.slice - Slice /system/addon-run. Jul 16 23:18:45.159580 systemd[1]: Created slice system-getty.slice - Slice /system/getty. Jul 16 23:18:45.159588 systemd[1]: Created slice system-modprobe.slice - Slice /system/modprobe. Jul 16 23:18:45.159597 systemd[1]: Created slice system-serial\x2dgetty.slice - Slice /system/serial-getty. Jul 16 23:18:45.159603 systemd[1]: Created slice system-system\x2dcloudinit.slice - Slice /system/system-cloudinit. Jul 16 23:18:45.159611 systemd[1]: Created slice system-systemd\x2dfsck.slice - Slice /system/systemd-fsck. Jul 16 23:18:45.159617 systemd[1]: Created slice user.slice - User and Session Slice. Jul 16 23:18:45.159623 systemd[1]: Started clevis-luks-askpass.path - Forward Password Requests to Clevis Directory Watch. Jul 16 23:18:45.159630 systemd[1]: Started systemd-ask-password-console.path - Dispatch Password Requests to Console Directory Watch. Jul 16 23:18:45.159637 systemd[1]: Started systemd-ask-password-wall.path - Forward Password Requests to Wall Directory Watch. Jul 16 23:18:45.159645 systemd[1]: Set up automount boot.automount - Boot partition Automount Point. Jul 16 23:18:45.159652 systemd[1]: Set up automount proc-sys-fs-binfmt_misc.automount - Arbitrary Executable File Formats File System Automount Point. Jul 16 23:18:45.159658 systemd[1]: Expecting device dev-disk-by\x2dlabel-OEM.device - /dev/disk/by-label/OEM... Jul 16 23:18:45.159664 systemd[1]: Expecting device dev-ptp_hyperv.device - /dev/ptp_hyperv... Jul 16 23:18:45.159671 systemd[1]: Expecting device dev-ttyAMA0.device - /dev/ttyAMA0... Jul 16 23:18:45.159678 systemd[1]: Reached target cryptsetup-pre.target - Local Encrypted Volumes (Pre). Jul 16 23:18:45.159685 systemd[1]: Reached target cryptsetup.target - Local Encrypted Volumes. Jul 16 23:18:45.159692 systemd[1]: Reached target imports.target - Image Downloads. Jul 16 23:18:45.159699 systemd[1]: Stopped target initrd-switch-root.target - Switch Root. Jul 16 23:18:45.159706 systemd[1]: Stopped target initrd-fs.target - Initrd File Systems. Jul 16 23:18:45.159713 systemd[1]: Stopped target initrd-root-fs.target - Initrd Root File System. Jul 16 23:18:45.159720 systemd[1]: Reached target integritysetup.target - Local Integrity Protected Volumes. Jul 16 23:18:45.159727 systemd[1]: Reached target remote-cryptsetup.target - Remote Encrypted Volumes. Jul 16 23:18:45.159735 systemd[1]: Reached target remote-fs.target - Remote File Systems. Jul 16 23:18:45.159742 systemd[1]: Reached target remote-integritysetup.target - Remote Integrity Protected Volumes. Jul 16 23:18:45.159749 systemd[1]: Reached target remote-veritysetup.target - Remote Verity Protected Volumes. Jul 16 23:18:45.159756 systemd[1]: Reached target slices.target - Slice Units. Jul 16 23:18:45.159763 systemd[1]: Reached target swap.target - Swaps. Jul 16 23:18:45.159769 systemd[1]: Reached target veritysetup.target - Local Verity Protected Volumes. Jul 16 23:18:45.159776 systemd[1]: Listening on systemd-ask-password.socket - Query the User Interactively for a Password. Jul 16 23:18:45.159782 systemd[1]: Listening on systemd-coredump.socket - Process Core Dump Socket. Jul 16 23:18:45.159788 systemd[1]: Listening on systemd-creds.socket - Credential Encryption/Decryption. Jul 16 23:18:45.159796 systemd[1]: Listening on systemd-factory-reset.socket - Factory Reset Management. Jul 16 23:18:45.159802 systemd[1]: Listening on systemd-journald-audit.socket - Journal Audit Socket. Jul 16 23:18:45.159808 systemd[1]: Listening on systemd-mountfsd.socket - DDI File System Mounter Socket. Jul 16 23:18:45.159815 systemd[1]: Listening on systemd-mute-console.socket - Console Output Muting Service Socket. Jul 16 23:18:45.159821 systemd[1]: Listening on systemd-networkd-resolve-hook.socket - Network Management Resolve Hook Socket. Jul 16 23:18:45.159828 systemd[1]: Listening on systemd-networkd-varlink-metrics.socket - Network Management Metrics Varlink Socket. Jul 16 23:18:45.159834 systemd[1]: Listening on systemd-networkd-varlink.socket - Network Management Varlink Socket. Jul 16 23:18:45.159841 systemd[1]: Listening on systemd-networkd.socket - Network Management Netlink Socket. Jul 16 23:18:45.159848 systemd[1]: Listening on systemd-nsresourced.socket - Namespace Resource Manager Socket. Jul 16 23:18:45.159854 systemd[1]: Listening on systemd-oomd.socket - Userspace Out-Of-Memory (OOM) Killer Socket. Jul 16 23:18:45.159861 systemd[1]: Listening on systemd-repart.socket - Disk Repartitioning Service Socket. Jul 16 23:18:45.159867 systemd[1]: Listening on systemd-resolved-monitor.socket - Resolve Monitor Varlink Socket. Jul 16 23:18:45.159874 systemd[1]: Listening on systemd-resolved-varlink.socket - Resolve Service Varlink Socket. Jul 16 23:18:45.159882 systemd[1]: Listening on systemd-udevd-control.socket - udev Control Socket. Jul 16 23:18:45.159888 systemd[1]: Listening on systemd-udevd-varlink.socket - udev Varlink Socket. Jul 16 23:18:45.159894 systemd[1]: Listening on systemd-userdbd.socket - User Database Manager Socket. Jul 16 23:18:45.159901 systemd[1]: Mounting dev-hugepages.mount - Huge Pages File System... Jul 16 23:18:45.159907 systemd[1]: Mounting dev-mqueue.mount - POSIX Message Queue File System... Jul 16 23:18:45.159913 systemd[1]: Mounting media.mount - External Media Directory... Jul 16 23:18:45.159920 systemd[1]: Mounting sys-kernel-debug.mount - Kernel Debug File System... Jul 16 23:18:45.159927 systemd[1]: Mounting sys-kernel-tracing.mount - Kernel Trace File System... Jul 16 23:18:45.159935 systemd[1]: tmp.mount: x-systemd.graceful-option=usrquota specified, but option is not available, suppressing. Jul 16 23:18:45.159942 systemd[1]: Mounting tmp.mount - Temporary Directory /tmp... Jul 16 23:18:45.159948 systemd[1]: var-lib-machines.mount - Virtual Machine and Container Storage (Compatibility) skipped, unmet condition check ConditionPathExists=/var/lib/machines.raw Jul 16 23:18:45.159955 systemd[1]: Reached target machines.target - Virtual Machines and Containers. Jul 16 23:18:45.159961 systemd[1]: Starting flatcar-tmpfiles.service - Create missing system files... Jul 16 23:18:45.159968 systemd[1]: ignition-delete-config.service - Ignition (delete config) skipped, no trigger condition checks were met. Jul 16 23:18:45.159975 systemd[1]: Starting kmod-static-nodes.service - Create List of Static Device Nodes... Jul 16 23:18:45.159982 systemd[1]: Starting modprobe@configfs.service - Load Kernel Module configfs... Jul 16 23:18:45.159988 systemd[1]: modprobe@drm.service - Load Kernel Module drm skipped, unmet condition check ConditionKernelModuleLoaded=!drm Jul 16 23:18:45.159995 systemd[1]: Starting modprobe@efi_pstore.service - Load Kernel Module efi_pstore... Jul 16 23:18:45.160001 systemd[1]: Starting modprobe@fuse.service - Load Kernel Module fuse... Jul 16 23:18:45.160008 systemd[1]: setup-nsswitch.service - Create /etc/nsswitch.conf skipped, unmet condition check ConditionPathExists=!/etc/nsswitch.conf Jul 16 23:18:45.160015 systemd[1]: systemd-fsck-root.service: Deactivated successfully. Jul 16 23:18:45.160022 systemd[1]: Stopped systemd-fsck-root.service - File System Check on Root Device. Jul 16 23:18:45.160028 systemd[1]: systemd-fsck-usr.service: Deactivated successfully. Jul 16 23:18:45.160035 systemd[1]: Stopped systemd-fsck-usr.service. Jul 16 23:18:45.160041 systemd[1]: systemd-hibernate-clear.service - Clear Stale Hibernate Storage Info skipped, unmet condition check ConditionPathExists=/sys/firmware/efi/efivars/HibernateLocation-8cf2644b-4b0b-428f-9387-6d876050dc67 Jul 16 23:18:45.160048 systemd[1]: Starting systemd-journald.service - Journal Service... Jul 16 23:18:45.160054 systemd[1]: Starting systemd-modules-load.service - Load Kernel Modules... Jul 16 23:18:45.160063 kernel: fuse: init (API version 7.41) Jul 16 23:18:45.160069 systemd[1]: Starting systemd-network-generator.service - Generate Network Units from Kernel Command Line... Jul 16 23:18:45.160075 systemd[1]: Reached target time-set.target - System Time Set. Jul 16 23:18:45.160082 systemd[1]: Starting systemd-remount-fs.service - Remount Root and Kernel File Systems... Jul 16 23:18:45.160113 systemd-journald[1980]: Collecting audit messages is enabled. Jul 16 23:18:45.160146 systemd-journald[1980]: Journal started Jul 16 23:18:45.160161 systemd-journald[1980]: Runtime Journal (/run/log/journal/890c0026af5346c6a9b3c1efa91dbe4c) is 8M, max 78.3M, 70.3M free. Jul 16 23:18:44.611000 audit[1]: EVENT_LISTENER pid=1 uid=0 auid=4294967295 tty=(none) ses=4294967295 subj=system_u:system_r:kernel_t:s0 comm="systemd" exe="/usr/lib/systemd/systemd" nl-mcgrp=1 op=connect res=1 Jul 16 23:18:45.060000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-root comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.072000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck-usr comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.086000 audit: BPF prog-id=18 op=UNLOAD Jul 16 23:18:45.086000 audit: BPF prog-id=17 op=UNLOAD Jul 16 23:18:45.086000 audit: BPF prog-id=19 op=LOAD Jul 16 23:18:45.086000 audit: BPF prog-id=20 op=LOAD Jul 16 23:18:45.086000 audit: BPF prog-id=21 op=LOAD Jul 16 23:18:45.154000 audit: CONFIG_CHANGE op=set audit_enabled=1 old=1 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 res=1 Jul 16 23:18:45.154000 audit[1980]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=60 a0=6 a1=ffffd4866330 a2=4000 a3=0 items=0 ppid=1 pid=1980 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="systemd-journal" exe="/usr/lib/systemd/systemd-journald" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:18:45.154000 audit: PROCTITLE proctitle="/usr/lib/systemd/systemd-journald" Jul 16 23:18:44.067674 systemd[1]: Queued start job for default target multi-user.target. Jul 16 23:18:44.173886 systemd[1]: Unnecessary job was removed for dev-sda6.device - /dev/sda6. Jul 16 23:18:44.174438 systemd[1]: systemd-journald.service: Deactivated successfully. Jul 16 23:18:44.225455 systemd[1]: systemd-journald.service: Consumed 2.762s CPU time over 14.055s wall clock time. Jul 16 23:18:45.176721 systemd[1]: Starting systemd-udev-load-credentials.service - Load udev Rules from Credentials... Jul 16 23:18:45.177039 systemd-modules-load[1982]: Using 2 probe threads Jul 16 23:18:45.193737 systemd[1]: Starting systemd-udev-trigger.service - Coldplug All udev Devices... Jul 16 23:18:45.204877 systemd[1]: Started systemd-journald.service - Journal Service. Jul 16 23:18:45.205000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journald comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.206862 systemd[1]: Mounted dev-hugepages.mount - Huge Pages File System. Jul 16 23:18:45.213507 systemd[1]: Mounted dev-mqueue.mount - POSIX Message Queue File System. Jul 16 23:18:45.218596 systemd[1]: Mounted media.mount - External Media Directory. Jul 16 23:18:45.222994 systemd[1]: Mounted sys-kernel-debug.mount - Kernel Debug File System. Jul 16 23:18:45.229431 systemd[1]: Mounted sys-kernel-tracing.mount - Kernel Trace File System. Jul 16 23:18:45.234491 systemd[1]: Mounted tmp.mount - Temporary Directory /tmp. Jul 16 23:18:45.238578 systemd[1]: Finished kmod-static-nodes.service - Create List of Static Device Nodes. Jul 16 23:18:45.246519 systemd[1]: modprobe@configfs.service: Deactivated successfully. Jul 16 23:18:45.245000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=kmod-static-nodes comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.246704 systemd[1]: Finished modprobe@configfs.service - Load Kernel Module configfs. Jul 16 23:18:45.252000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.252000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@configfs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.253923 systemd[1]: modprobe@efi_pstore.service: Deactivated successfully. Jul 16 23:18:45.254082 systemd[1]: Finished modprobe@efi_pstore.service - Load Kernel Module efi_pstore. Jul 16 23:18:45.258000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.258000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@efi_pstore comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.259838 systemd[1]: modprobe@fuse.service: Deactivated successfully. Jul 16 23:18:45.259973 systemd[1]: Finished modprobe@fuse.service - Load Kernel Module fuse. Jul 16 23:18:45.263000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.263000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@fuse comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.264685 systemd[1]: Finished systemd-modules-load.service - Load Kernel Modules. Jul 16 23:18:45.269000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-modules-load comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.270750 systemd[1]: Finished systemd-network-generator.service - Generate Network Units from Kernel Command Line. Jul 16 23:18:45.276000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-network-generator comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.279174 systemd[1]: Finished systemd-remount-fs.service - Remount Root and Kernel File Systems. Jul 16 23:18:45.283000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-remount-fs comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.284713 systemd[1]: Finished systemd-udev-load-credentials.service - Load udev Rules from Credentials. Jul 16 23:18:45.289000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-load-credentials comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.298867 systemd[1]: Reached target network-pre.target - Preparation for Network. Jul 16 23:18:45.305603 systemd[1]: Listening on systemd-importd.socket - Disk Image Download Service Socket. Jul 16 23:18:45.314265 systemd[1]: Mounting sys-fs-fuse-connections.mount - FUSE Control File System... Jul 16 23:18:45.333823 systemd[1]: Mounting sys-kernel-config.mount - Kernel Configuration File System... Jul 16 23:18:45.342232 systemd[1]: remount-root.service - Remount Root File System skipped, unmet condition check ConditionPathIsReadWrite=!/ Jul 16 23:18:45.342270 systemd[1]: Reached target local-fs.target - Local File Systems. Jul 16 23:18:45.347726 systemd[1]: Listening on systemd-sysext.socket - System Extension Image Management. Jul 16 23:18:45.354802 systemd[1]: systemd-binfmt.service - Set Up Additional Binary Formats skipped, no trigger condition checks were met. Jul 16 23:18:45.357252 systemd[1]: Starting systemd-confext.service - Merge System Configuration Images into /etc/... Jul 16 23:18:45.365145 systemd[1]: Starting systemd-hwdb-update.service - Rebuild Hardware Database... Jul 16 23:18:45.371359 systemd[1]: Starting systemd-journal-flush.service - Flush Journal to Persistent Storage... Jul 16 23:18:45.376516 systemd[1]: systemd-pstore.service - Platform Persistent Storage Archival skipped, unmet condition check ConditionDirectoryNotEmpty=/sys/fs/pstore Jul 16 23:18:45.380269 systemd[1]: Starting systemd-random-seed.service - Load/Save OS Random Seed... Jul 16 23:18:45.388867 systemd[1]: Starting systemd-sysctl.service - Apply Kernel Variables... Jul 16 23:18:45.396532 systemd[1]: Starting systemd-tmpfiles-setup-dev-early.service - Create Static Device Nodes in /dev gracefully... Jul 16 23:18:45.405273 systemd[1]: Starting systemd-userdb-load-credentials.service - Load JSON user/group Records from Credentials... Jul 16 23:18:45.412366 systemd[1]: Finished systemd-udev-trigger.service - Coldplug All udev Devices. Jul 16 23:18:45.417000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udev-trigger comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.419330 systemd[1]: Finished flatcar-tmpfiles.service - Create missing system files. Jul 16 23:18:45.423000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=flatcar-tmpfiles comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.424411 systemd[1]: Mounted sys-fs-fuse-connections.mount - FUSE Control File System. Jul 16 23:18:45.429585 systemd[1]: Mounted sys-kernel-config.mount - Kernel Configuration File System. Jul 16 23:18:45.437297 systemd[1]: Finished systemd-random-seed.service - Load/Save OS Random Seed. Jul 16 23:18:45.442000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-random-seed comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.447766 systemd[1]: Reached target first-boot-complete.target - First Boot Complete. Jul 16 23:18:45.460316 systemd-journald[1980]: Time spent on flushing to /var/log/journal/890c0026af5346c6a9b3c1efa91dbe4c is 13.254ms for 1119 entries. Jul 16 23:18:45.460316 systemd-journald[1980]: System Journal (/var/log/journal/890c0026af5346c6a9b3c1efa91dbe4c) is 8M, max 2.2G, 2.2G free. Jul 16 23:18:45.476000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdb-load-credentials comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.484000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysctl comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.455294 systemd[1]: Starting systemd-machine-id-commit.service - Save Transient machine-id to Disk... Jul 16 23:18:45.487080 systemd-journald[1980]: Received client request to flush runtime journal. Jul 16 23:18:45.471410 systemd[1]: Finished systemd-userdb-load-credentials.service - Load JSON user/group Records from Credentials. Jul 16 23:18:45.480885 systemd[1]: Finished systemd-sysctl.service - Apply Kernel Variables. Jul 16 23:18:45.488034 systemd[1]: Finished systemd-journal-flush.service - Flush Journal to Persistent Storage. Jul 16 23:18:45.493000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-flush comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.506158 kernel: loop6: detected capacity change from 0 to 44152 Jul 16 23:18:45.510821 kernel: loop6: p1 p2 p3 Jul 16 23:18:45.527965 systemd[1]: Finished systemd-machine-id-commit.service - Save Transient machine-id to Disk. Jul 16 23:18:45.533000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-machine-id-commit comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.563458 systemd-tmpfiles[2033]: ACLs are not supported, ignoring. Jul 16 23:18:45.563854 systemd-tmpfiles[2033]: ACLs are not supported, ignoring. Jul 16 23:18:45.566587 systemd[1]: Finished systemd-tmpfiles-setup-dev-early.service - Create Static Device Nodes in /dev gracefully. Jul 16 23:18:45.571000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup-dev-early comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.575011 systemd[1]: Starting systemd-sysusers.service - Create System Users... Jul 16 23:18:45.589744 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:45.589833 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:45.595728 kernel: device-mapper: table: 254:3: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:45.599375 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:45.599704 systemd-confext[2035]: device-mapper: reload ioctl on loop6p1-36-verity (254:3) failed: Invalid argument Jul 16 23:18:45.609153 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:45.697018 systemd[1]: Finished systemd-sysusers.service - Create System Users. Jul 16 23:18:45.701000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysusers comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.704328 systemd[1]: Starting systemd-journalctl.socket - Journal Log Access Socket... Jul 16 23:18:45.712000 audit: BPF prog-id=22 op=LOAD Jul 16 23:18:45.712000 audit: BPF prog-id=23 op=LOAD Jul 16 23:18:45.712000 audit: BPF prog-id=24 op=LOAD Jul 16 23:18:45.714475 systemd[1]: Starting systemd-oomd.service - Userspace Out-Of-Memory (OOM) Killer... Jul 16 23:18:45.719000 audit: BPF prog-id=25 op=LOAD Jul 16 23:18:45.722288 systemd[1]: Starting systemd-resolved.service - Network Name Resolution... Jul 16 23:18:45.730881 systemd[1]: Starting systemd-tmpfiles-setup-dev.service - Create Static Device Nodes in /dev... Jul 16 23:18:45.737891 systemd[1]: Listening on systemd-journalctl.socket - Journal Log Access Socket. Jul 16 23:18:45.747279 systemd[1]: Starting modprobe@tun.service - Load Kernel Module tun... Jul 16 23:18:45.752000 audit: BPF prog-id=26 op=LOAD Jul 16 23:18:45.752000 audit: BPF prog-id=27 op=LOAD Jul 16 23:18:45.752000 audit: BPF prog-id=28 op=LOAD Jul 16 23:18:45.756355 systemd[1]: Starting systemd-userdbd.service - User Database Manager... Jul 16 23:18:45.762831 systemd-tmpfiles[2060]: ACLs are not supported, ignoring. Jul 16 23:18:45.763124 systemd-tmpfiles[2060]: ACLs are not supported, ignoring. Jul 16 23:18:45.767599 systemd[1]: Finished systemd-tmpfiles-setup-dev.service - Create Static Device Nodes in /dev. Jul 16 23:18:45.776000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup-dev comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.777789 systemd[1]: proc-sys-fs-binfmt_misc.automount: Got automount request for /proc/sys/fs/binfmt_misc, triggered by 2062 ((systemd-userd)) Jul 16 23:18:45.777981 systemd[1]: systemd-repart.service - Repartition Root Disk skipped, no trigger condition checks were met. Jul 16 23:18:45.846209 kernel: tun: Universal TUN/TAP device driver, 1.6 Jul 16 23:18:45.846316 systemd[1]: modprobe@tun.service: Deactivated successfully. Jul 16 23:18:45.846505 systemd[1]: Finished modprobe@tun.service - Load Kernel Module tun. Jul 16 23:18:45.850000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@tun comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.850000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=modprobe@tun comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:45.851000 audit: BPF prog-id=29 op=LOAD Jul 16 23:18:45.851000 audit: BPF prog-id=30 op=LOAD Jul 16 23:18:45.851000 audit: BPF prog-id=31 op=LOAD Jul 16 23:18:45.853084 systemd[1]: Starting systemd-nsresourced.service - Namespace Resource Manager... Jul 16 23:18:46.063315 systemd[1]: Finished systemd-hwdb-update.service - Rebuild Hardware Database. Jul 16 23:18:46.067000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-hwdb-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.068000 audit: BPF prog-id=32 op=LOAD Jul 16 23:18:46.068000 audit: BPF prog-id=33 op=LOAD Jul 16 23:18:46.070364 systemd[1]: Starting systemd-udevd.service - Rule-based Manager for Device Events and Files... Jul 16 23:18:46.253290 systemd-udevd[2067]: Using default interface naming scheme 'v260'. Jul 16 23:18:46.279079 systemd[1]: etc-machine\x2did.mount: Deactivated successfully. Jul 16 23:18:46.280321 systemd[1]: Mounting proc-sys-fs-binfmt_misc.mount - Arbitrary Executable File Formats File System... Jul 16 23:18:46.299359 systemd[1]: Mounted proc-sys-fs-binfmt_misc.mount - Arbitrary Executable File Formats File System. Jul 16 23:18:46.338572 systemd-nsresourced[2065]: Not setting up BPF subsystem, as functionality has been disabled at compile time. Jul 16 23:18:46.339846 systemd[1]: Started systemd-userdbd.service - User Database Manager. Jul 16 23:18:46.348068 systemd[1]: Started systemd-nsresourced.service - Namespace Resource Manager. Jul 16 23:18:46.346000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-userdbd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.353000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-nsresourced comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.408101 systemd-oomd[2058]: No swap; memory pressure usage will be degraded Jul 16 23:18:46.409617 systemd[1]: Started systemd-oomd.service - Userspace Out-Of-Memory (OOM) Killer. Jul 16 23:18:46.414000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-oomd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.429836 systemd-resolved[2059]: Positive Trust Anchors: Jul 16 23:18:46.429856 systemd-resolved[2059]: . IN DS 20326 8 2 e06d44b80b8f1d39a95c0b0d7c65d08458e880409bbc683457104237c7f8ec8d Jul 16 23:18:46.429859 systemd-resolved[2059]: . IN DS 38696 8 2 683d2d0acb8c9b712a1948b27f741219298d0a450d612c483af444a4c0fb2b16 Jul 16 23:18:46.429880 systemd-resolved[2059]: Negative trust anchors: home.arpa 10.in-addr.arpa 16.172.in-addr.arpa 17.172.in-addr.arpa 18.172.in-addr.arpa 19.172.in-addr.arpa 20.172.in-addr.arpa 21.172.in-addr.arpa 22.172.in-addr.arpa 23.172.in-addr.arpa 24.172.in-addr.arpa 25.172.in-addr.arpa 26.172.in-addr.arpa 27.172.in-addr.arpa 28.172.in-addr.arpa 29.172.in-addr.arpa 30.172.in-addr.arpa 31.172.in-addr.arpa 170.0.0.192.in-addr.arpa 171.0.0.192.in-addr.arpa 168.192.in-addr.arpa d.f.ip6.arpa ipv4only.arpa resolver.arpa corp home internal intranet lan local private test Jul 16 23:18:46.479675 systemd-resolved[2059]: Using system hostname 'ci-4722.1.0-n-b7f0200810'. Jul 16 23:18:46.480871 systemd[1]: Started systemd-resolved.service - Network Name Resolution. Jul 16 23:18:46.484000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-resolved comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.486183 systemd[1]: Reached target nss-lookup.target - Host and Network Name Lookups. Jul 16 23:18:46.512296 systemd[1]: Started systemd-udevd.service - Rule-based Manager for Device Events and Files. Jul 16 23:18:46.517000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-udevd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.518000 audit: BPF prog-id=34 op=LOAD Jul 16 23:18:46.522297 systemd[1]: Starting systemd-networkd.service - Network Management... Jul 16 23:18:46.527000 audit: BPF prog-id=7 op=UNLOAD Jul 16 23:18:46.527000 audit: BPF prog-id=6 op=UNLOAD Jul 16 23:18:46.591365 systemd[1]: Condition check resulted in dev-ttyAMA0.device - /dev/ttyAMA0 being skipped. Jul 16 23:18:46.671191 kernel: hv_storvsc f8b3781a-1e82-4818-a1c3-63d806ec15bb: tag#20 cmd 0x85 status: scsi 0x2 srb 0x6 hv 0xc0000001 Jul 16 23:18:46.699757 systemd-networkd[2086]: lo: Link UP Jul 16 23:18:46.701202 systemd-networkd[2086]: lo: Gained carrier Jul 16 23:18:46.702588 systemd-networkd[2086]: eth0: Found matching .network file, based on potentially unpredictable interface name: /usr/lib/systemd/network/zz-default.network Jul 16 23:18:46.702591 systemd-networkd[2086]: eth0: Configuring with /usr/lib/systemd/network/zz-default.network. Jul 16 23:18:46.702605 systemd[1]: Started systemd-networkd.service - Network Management. Jul 16 23:18:46.710000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.711700 systemd[1]: Reached target network.target - Network. Jul 16 23:18:46.720175 systemd[1]: Starting systemd-networkd-persistent-storage.service - Enable Persistent Storage in systemd-networkd... Jul 16 23:18:46.730159 kernel: mousedev: PS/2 mouse device common for all mice Jul 16 23:18:46.731913 systemd[1]: Starting systemd-networkd-wait-online.service - Wait for Network to be Online... Jul 16 23:18:46.753152 kernel: hv_vmbus: registering driver hv_balloon Jul 16 23:18:46.757355 kernel: hv_balloon: Using Dynamic Memory protocol version 2.0 Jul 16 23:18:46.765281 kernel: hv_vmbus: registering driver hyperv_fb Jul 16 23:18:46.765370 kernel: hv_balloon: Memory hot add disabled on ARM64 Jul 16 23:18:46.765388 kernel: hyperv_fb: Synthvid Version major 3, minor 5 Jul 16 23:18:46.774532 kernel: hyperv_fb: Screen resolution: 1024x768, Color depth: 32, Frame buffer size: 8388608 Jul 16 23:18:46.782160 kernel: Console: switching to colour dummy device 80x25 Jul 16 23:18:46.790543 kernel: Console: switching to colour frame buffer device 128x48 Jul 16 23:18:46.801198 kernel: mlx5_core eea3:00:02.0 enP61091s1: Link up Jul 16 23:18:46.824072 systemd[1]: Condition check resulted in dev-ptp_hyperv.device - /dev/ptp_hyperv being skipped. Jul 16 23:18:46.828185 kernel: hv_netvsc 7ced8db8-c4d8-7ced-8db8-c4d87ced8db8 eth0: Data path switched to VF: enP61091s1 Jul 16 23:18:46.831839 systemd-networkd[2086]: enP61091s1: Link UP Jul 16 23:18:46.831989 systemd-networkd[2086]: eth0: Link UP Jul 16 23:18:46.831994 systemd-networkd[2086]: eth0: Gained carrier Jul 16 23:18:46.832007 systemd-networkd[2086]: eth0: Found matching .network file, based on potentially unpredictable interface name: /usr/lib/systemd/network/zz-default.network Jul 16 23:18:46.834898 systemd-networkd[2086]: enP61091s1: Gained carrier Jul 16 23:18:46.836367 systemd[1]: Finished systemd-networkd-persistent-storage.service - Enable Persistent Storage in systemd-networkd. Jul 16 23:18:46.844000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-networkd-persistent-storage comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.848278 systemd-networkd[2086]: eth0: DHCPv4 address 10.0.0.31/24, gateway 10.0.0.1 acquired from 168.63.129.16 Jul 16 23:18:46.874723 systemd[1]: Starting systemd-vconsole-setup.service - Virtual Console Setup... Jul 16 23:18:46.893159 kernel: MACsec IEEE 802.1AE Jul 16 23:18:46.952183 kernel: erofs: (device dm-3): mounted with root inode @ nid 40. Jul 16 23:18:46.987424 systemd[1]: systemd-vconsole-setup.service: Deactivated successfully. Jul 16 23:18:46.987595 systemd[1]: Stopped systemd-vconsole-setup.service - Virtual Console Setup. Jul 16 23:18:46.994000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.999071 kernel: kauditd_printk_skb: 72 callbacks suppressed Jul 16 23:18:46.999125 kernel: audit: type=1130 audit(1784243926.994:170): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:46.999156 kernel: loop7: detected capacity change from 0 to 44152 Jul 16 23:18:46.994000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.029204 kernel: audit: type=1131 audit(1784243926.994:171): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.029261 kernel: loop7: p1 p2 p3 Jul 16 23:18:47.032769 systemd[1]: Found device dev-disk-by\x2dlabel-OEM.device - Virtual_Disk OEM. Jul 16 23:18:47.042672 systemd[1]: Starting systemd-fsck@dev-disk-by\x2dlabel-OEM.service - File System Check on /dev/disk/by-label/OEM... Jul 16 23:18:47.062487 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:47.062580 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:47.068801 kernel: device-mapper: table: 254:3: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:47.071510 systemd[1]: Starting systemd-vconsole-setup.service - Virtual Console Setup... Jul 16 23:18:47.075387 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:47.073671 (sd-merge)[2210]: device-mapper: reload ioctl on loop7p1-40-verity (254:3) failed: Invalid argument Jul 16 23:18:47.084197 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:47.107214 kernel: erofs: (device dm-3): mounted with root inode @ nid 40. Jul 16 23:18:47.107302 (sd-merge)[2210]: Skipping extension refresh because no change was found, use --always-refresh=yes to always do a refresh. Jul 16 23:18:47.109797 systemd[1]: Finished systemd-confext.service - Merge System Configuration Images into /etc/. Jul 16 23:18:47.114000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-confext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.131350 systemd[1]: Starting systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/... Jul 16 23:18:47.136314 kernel: audit: type=1130 audit(1784243927.114:172): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-confext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.142638 systemd[1]: Finished systemd-fsck@dev-disk-by\x2dlabel-OEM.service - File System Check on /dev/disk/by-label/OEM. Jul 16 23:18:47.149000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.166173 kernel: audit: type=1130 audit(1784243927.149:173): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-fsck@dev-disk-by\x2dlabel-OEM comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.176165 kernel: loop7: detected capacity change from 0 to 142648 Jul 16 23:18:47.179550 kernel: loop7: p1 p2 p3 Jul 16 23:18:47.199576 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:47.199676 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:47.205485 kernel: device-mapper: table: 254:3: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:47.209663 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:47.209778 systemd-sysext[2222]: device-mapper: reload ioctl on loop7p1-44-verity (254:3) failed: Invalid argument Jul 16 23:18:47.222152 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:47.243290 kernel: erofs: (device dm-3): mounted with root inode @ nid 39. Jul 16 23:18:47.262152 kernel: loop1: detected capacity change from 0 to 142648 Jul 16 23:18:47.266153 kernel: loop1: p1 p2 p3 Jul 16 23:18:47.280558 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:47.280614 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:18:47.286744 kernel: device-mapper: table: 254:3: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:18:47.291154 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:18:47.291226 (sd-merge)[2232]: device-mapper: reload ioctl on loop1p1-49-verity (254:3) failed: Invalid argument Jul 16 23:18:47.299153 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:18:47.318660 (sd-merge)[2232]: Skipping extension refresh because no change was found, use --always-refresh=yes to always do a refresh. Jul 16 23:18:47.319156 kernel: erofs: (device dm-3): mounted with root inode @ nid 39. Jul 16 23:18:47.321335 systemd[1]: Finished systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/. Jul 16 23:18:47.326000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.329677 systemd[1]: Starting systemd-tmpfiles-setup.service - Create System Files and Directories... Jul 16 23:18:47.347585 kernel: audit: type=1130 audit(1784243927.326:174): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.361882 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/base_image_var.conf:29: Duplicate line for path "/var/log/audit", ignoring. Jul 16 23:18:47.362563 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/base_image_var_late.conf:44: Duplicate line for path "/var/log/audit", ignoring. Jul 16 23:18:47.362743 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/baselayout.conf:15: Duplicate line for path "/var", ignoring. Jul 16 23:18:47.362752 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/baselayout.conf:16: Duplicate line for path "/var/empty", ignoring. Jul 16 23:18:47.362762 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/baselayout.conf:21: Duplicate line for path "/var/log", ignoring. Jul 16 23:18:47.362842 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/dbus.conf:5: Duplicate line for path "/var/lib/dbus", ignoring. Jul 16 23:18:47.363041 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/nfs-utils.conf:2: Duplicate line for path "/var/lib/nfs/v4recovery", ignoring. Jul 16 23:18:47.363732 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/nfs-utils.conf:6: Duplicate line for path "/var/lib/nfs/sm", ignoring. Jul 16 23:18:47.363755 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/nfs-utils.conf:7: Duplicate line for path "/var/lib/nfs/sm.bak", ignoring. Jul 16 23:18:47.363902 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/provision.conf:20: Duplicate line for path "/root", ignoring. Jul 16 23:18:47.364719 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/tpm2-tss-fapi.conf:2: Duplicate line for path "/var/lib/tpm2-tss/system/keystore", ignoring. Jul 16 23:18:47.364735 systemd-tmpfiles[2240]: ACLs are not supported, ignoring. Jul 16 23:18:47.364768 systemd-tmpfiles[2240]: ACLs are not supported, ignoring. Jul 16 23:18:47.365588 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/var.conf:10: Duplicate line for path "/var", ignoring. Jul 16 23:18:47.365604 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/var.conf:14: Duplicate line for path "/var/log", ignoring. Jul 16 23:18:47.365654 systemd-tmpfiles[2240]: /usr/lib/tmpfiles.d/var.conf:21: Duplicate line for path "/var/lib", ignoring. Jul 16 23:18:47.368901 systemd-tmpfiles[2240]: Detected autofs mount point '/boot' during canonicalization of 'boot'. Jul 16 23:18:47.368916 systemd-tmpfiles[2240]: Skipping /boot Jul 16 23:18:47.374666 systemd-tmpfiles[2240]: Detected autofs mount point '/boot' during canonicalization of 'boot'. Jul 16 23:18:47.374683 systemd-tmpfiles[2240]: Skipping /boot Jul 16 23:18:47.385325 systemd[1]: Finished systemd-tmpfiles-setup.service - Create System Files and Directories. Jul 16 23:18:47.390000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.397291 systemd[1]: Starting audit-rules.service - Load Audit Rules... Jul 16 23:18:47.410830 kernel: audit: type=1130 audit(1784243927.390:175): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-tmpfiles-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.417286 systemd[1]: Starting clean-ca-certificates.service - Clean up broken links in /etc/ssl/certs... Jul 16 23:18:47.427877 systemd[1]: Starting ldconfig.service - Rebuild Dynamic Linker Cache... Jul 16 23:18:47.434365 systemd[1]: Starting systemd-journal-catalog-update.service - Rebuild Journal Catalog... Jul 16 23:18:47.444375 systemd[1]: Starting systemd-update-utmp.service - Record System Boot/Shutdown in UTMP... Jul 16 23:18:47.479488 systemd-vconsole-setup[2214]: Configuration of first virtual console was skipped, ignoring remaining ones. Jul 16 23:18:47.482306 systemd[1]: Finished systemd-vconsole-setup.service - Virtual Console Setup. Jul 16 23:18:47.486000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.508340 systemd[1]: Finished systemd-update-utmp.service - Record System Boot/Shutdown in UTMP. Jul 16 23:18:47.504000 audit[2250]: AUDIT1127 pid=2250 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.530365 kernel: audit: type=1130 audit(1784243927.486:176): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-vconsole-setup comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.530414 kernel: audit: type=1127 audit(1784243927.504:177): pid=2250 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg=' comm="systemd-update-utmp" exe="/usr/lib/systemd/systemd-update-utmp" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.514000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.547592 kernel: audit: type=1130 audit(1784243927.514:178): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-update-utmp comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.572763 systemd[1]: Finished systemd-journal-catalog-update.service - Rebuild Journal Catalog. Jul 16 23:18:47.578000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.597197 kernel: audit: type=1130 audit(1784243927.578:179): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-journal-catalog-update comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:18:47.620000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=add_rule key=(null) list=5 res=1 Jul 16 23:18:47.620000 audit[2273]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd95f3270 a2=420 a3=0 items=0 ppid=2245 pid=2273 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/bin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:18:47.620000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Jul 16 23:18:47.622089 augenrules[2273]: No rules Jul 16 23:18:47.623293 systemd[1]: audit-rules.service: Deactivated successfully. Jul 16 23:18:47.623635 systemd[1]: Finished audit-rules.service - Load Audit Rules. Jul 16 23:18:47.771912 systemd[1]: Finished clean-ca-certificates.service - Clean up broken links in /etc/ssl/certs. Jul 16 23:18:47.777893 systemd[1]: update-ca-certificates.service - Update CA bundle at /etc/ssl/certs/ca-certificates.crt skipped, unmet condition check ConditionPathIsSymbolicLink=!/etc/ssl/certs/ca-certificates.crt Jul 16 23:18:48.520360 systemd-networkd[2086]: eth0: Gained IPv6LL Jul 16 23:18:48.523115 systemd[1]: Finished systemd-networkd-wait-online.service - Wait for Network to be Online. Jul 16 23:18:48.529684 systemd[1]: Reached target network-online.target - Network is Online. Jul 16 23:18:53.468488 ldconfig[2248]: ldconfig: /usr/lib/ld.so.conf is not an ELF file - it has the wrong magic bytes at the start. Jul 16 23:18:53.481684 systemd[1]: Finished ldconfig.service - Rebuild Dynamic Linker Cache. Jul 16 23:18:53.490092 systemd[1]: Starting systemd-update-done.service - Update is Completed... Jul 16 23:18:53.508233 systemd[1]: Finished systemd-update-done.service - Update is Completed. Jul 16 23:18:53.513117 systemd[1]: Reached target sysinit.target - System Initialization. Jul 16 23:18:53.517481 systemd[1]: Started motdgen.path - Watch for update engine configuration changes. Jul 16 23:18:53.522454 systemd[1]: Started user-cloudinit@var-lib-flatcar\x2dinstall-user_data.path - Watch for a cloud-config at /var/lib/flatcar-install/user_data. Jul 16 23:18:53.528386 systemd[1]: Started logrotate.timer - Daily rotation of log files. Jul 16 23:18:53.532821 systemd[1]: Started mdadm.timer - Weekly check for MD array's redundancy information.. Jul 16 23:18:53.537989 systemd[1]: Started systemd-sysupdate-reboot.timer - Reboot Automatically After System Update. Jul 16 23:18:53.545776 systemd[1]: Started systemd-sysupdate.timer - Automatic System Update. Jul 16 23:18:53.550946 systemd[1]: Started systemd-tmpfiles-clean.timer - Daily Cleanup of Temporary Directories. Jul 16 23:18:53.556821 systemd[1]: update-engine-stub.timer - Update Engine Stub Timer skipped, unmet condition check ConditionPathExists=/usr/.noupdate Jul 16 23:18:53.557007 systemd[1]: Reached target paths.target - Path Units. Jul 16 23:18:53.561263 systemd[1]: Reached target timers.target - Timer Units. Jul 16 23:18:53.568255 systemd[1]: Listening on dbus.socket - D-Bus System Message Bus Socket. Jul 16 23:18:53.575114 systemd[1]: Listening on sshd-unix-local.socket - OpenSSH Server Socket (systemd-ssh-generator, AF_UNIX Local). Jul 16 23:18:53.590775 systemd[1]: Listening on sshd.socket - OpenSSH Server Socket. Jul 16 23:18:53.596227 systemd[1]: Listening on systemd-hostnamed.socket - Hostname Service Socket. Jul 16 23:18:53.602172 systemd[1]: Listening on systemd-logind-varlink.socket - User Login Management Varlink Socket. Jul 16 23:18:53.608193 systemd[1]: Listening on systemd-machined.socket - Virtual Machine and Container Registration Service Socket. Jul 16 23:18:53.613343 systemd[1]: Reached target sockets.target - Socket Units. Jul 16 23:18:53.617866 systemd[1]: Reached target basic.target - Basic System. Jul 16 23:18:53.622292 systemd[1]: addon-config@oem.service - Configure Addon /oem skipped, no trigger condition checks were met. Jul 16 23:18:53.622418 systemd[1]: addon-run@oem.service - Run Addon /oem skipped, no trigger condition checks were met. Jul 16 23:18:53.624289 systemd[1]: Starting chronyd.service - NTP client/server... Jul 16 23:18:53.630922 systemd[1]: Starting dbus.service - D-Bus System Message Bus... Jul 16 23:18:53.638488 systemd[1]: Starting dracut-shutdown.service - Restore /run/initramfs on shutdown... Jul 16 23:18:53.646856 systemd[1]: Starting enable-oem-cloudinit.service - Enable cloudinit... Jul 16 23:18:53.657898 systemd[1]: Starting extend-filesystems.service - Extend Filesystems... Jul 16 23:18:53.662999 systemd[1]: flatcar-setup-environment.service - Modifies /etc/environment for CoreOS skipped, unmet condition check ConditionPathExists=/oem/bin/flatcar-setup-environment Jul 16 23:18:53.665337 systemd[1]: Started hv_kvp_daemon.service - Hyper-V KVP daemon. Jul 16 23:18:53.670435 systemd[1]: hv_vss_daemon.service - Hyper-V VSS daemon skipped, unmet condition check ConditionPathExists=/dev/vmbus/hv_vss Jul 16 23:18:53.673308 systemd[1]: Starting motdgen.service - Generate /run/flatcar/motd... Jul 16 23:18:53.679666 KVP[2291]: KVP starting; pid is:2291 Jul 16 23:18:53.680923 systemd[1]: Starting nvidia.service - NVIDIA Configure Service... Jul 16 23:18:53.687018 jq[2289]: false Jul 16 23:18:53.692389 KVP[2291]: KVP LIC Version: 3.1 Jul 16 23:18:53.693492 kernel: hv_utils: KVP IC version 4.0 Jul 16 23:18:53.694326 systemd[1]: Starting ssh-key-proc-cmdline.service - Install an ssh key from /proc/cmdline... Jul 16 23:18:53.700201 systemd[1]: Starting sshd-keygen.service - Generate sshd host keys... Jul 16 23:18:53.704627 chronyd[2286]: chronyd version 4.8 starting (+CMDMON +REFCLOCK +RTC +PRIVDROP +SCFILTER -SIGND +NTS +SECHASH +IPV6 -DEBUG) Jul 16 23:18:53.707039 chronyd[2286]: Timezone right/UTC failed leap second check, ignoring Jul 16 23:18:53.707176 chronyd[2286]: Loaded seccomp filter (level 2) Jul 16 23:18:53.710949 systemd[1]: Starting systemd-logind.service - User Login Management... Jul 16 23:18:53.718280 systemd[1]: tcsd.service - TCG Core Services Daemon skipped, unmet condition check ConditionPathExists=/dev/tpm0 Jul 16 23:18:53.720307 systemd[1]: Starting update-engine.service - Update Engine... Jul 16 23:18:53.727971 systemd[1]: Starting update-ssh-keys-after-ignition.service - Run update-ssh-keys once after Ignition... Jul 16 23:18:53.733991 motdgen[2314]: /oem/oem-release: line 2: Azure: command not found Jul 16 23:18:53.736775 systemd[1]: Started chronyd.service - NTP client/server. Jul 16 23:18:53.740429 jq[2311]: true Jul 16 23:18:53.741957 systemd[1]: Finished dracut-shutdown.service - Restore /run/initramfs on shutdown. Jul 16 23:18:53.749982 systemd[1]: enable-oem-cloudinit.service: Skipped due to 'exec-condition'. Jul 16 23:18:53.750348 systemd[1]: Condition check resulted in enable-oem-cloudinit.service - Enable cloudinit being skipped. Jul 16 23:18:53.750625 systemd[1]: ssh-key-proc-cmdline.service: Deactivated successfully. Jul 16 23:18:53.751054 systemd[1]: Finished ssh-key-proc-cmdline.service - Install an ssh key from /proc/cmdline. Jul 16 23:18:53.757234 systemd[1]: motdgen.service: Deactivated successfully. Jul 16 23:18:53.759317 systemd[1]: Finished motdgen.service - Generate /run/flatcar/motd. Jul 16 23:18:53.765220 extend-filesystems[2290]: Found /dev/sda6 Jul 16 23:18:53.779888 jq[2320]: true Jul 16 23:18:53.787648 extend-filesystems[2290]: Found /dev/sda9 Jul 16 23:18:53.795555 extend-filesystems[2290]: Checking size of /dev/sda9 Jul 16 23:18:53.810642 update_engine[2302]: I20260716 23:18:53.791814 2302 main.cc:92] Flatcar Update Engine starting Jul 16 23:18:53.800878 systemd-logind[2301]: New seat seat0. Jul 16 23:18:53.803429 systemd-logind[2301]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Jul 16 23:18:53.803728 systemd[1]: Started systemd-logind.service - User Login Management. Jul 16 23:18:53.821050 systemd[1]: Finished nvidia.service - NVIDIA Configure Service. Jul 16 23:18:53.833306 extend-filesystems[2290]: Resized partition /dev/sda9 Jul 16 23:18:53.867815 extend-filesystems[2370]: resize2fs 1.47.4 (6-Mar-2025) Jul 16 23:18:53.893040 kernel: EXT4-fs (sda9): resizing filesystem from 6359552 to 6376955 blocks Jul 16 23:18:53.893402 kernel: EXT4-fs (sda9): resized filesystem to 6376955 Jul 16 23:18:53.923383 extend-filesystems[2370]: Filesystem at /dev/sda9 is mounted on /; on-line resizing required Jul 16 23:18:53.923383 extend-filesystems[2370]: old_desc_blocks = 4, new_desc_blocks = 4 Jul 16 23:18:53.923383 extend-filesystems[2370]: The filesystem on /dev/sda9 is now 6376955 (4k) blocks long. Jul 16 23:18:53.925885 systemd[1]: extend-filesystems.service: Deactivated successfully. Jul 16 23:18:53.972468 bash[2358]: Updated "/home/core/.ssh/authorized_keys" Jul 16 23:18:53.972553 extend-filesystems[2290]: Resized filesystem in /dev/sda9 Jul 16 23:18:53.927253 systemd[1]: Finished extend-filesystems.service - Extend Filesystems. Jul 16 23:18:53.986270 update_engine[2302]: I20260716 23:18:53.977116 2302 update_check_scheduler.cc:74] Next update check in 10m44s Jul 16 23:18:53.975551 dbus-daemon[2287]: [system] SELinux support is enabled Jul 16 23:18:53.944588 systemd[1]: Finished update-ssh-keys-after-ignition.service - Run update-ssh-keys once after Ignition. Jul 16 23:18:53.986662 sshd_keygen[2312]: ssh-keygen: generating new host keys: RSA ECDSA ED25519 Jul 16 23:18:53.951156 systemd[1]: sshkeys.service skipped, no trigger condition checks were met. Jul 16 23:18:53.976329 systemd[1]: Started dbus.service - D-Bus System Message Bus. Jul 16 23:18:53.994823 dbus-daemon[2287]: [system] Successfully activated service 'org.freedesktop.systemd1' Jul 16 23:18:53.995223 systemd[1]: Started update-engine.service - Update Engine. Jul 16 23:18:54.002846 systemd[1]: system-cloudinit@usr-share-coreos-cloud\x2dconfig.yml.service - Load cloud-config from /usr/share/coreos/cloud-config.yml skipped, unmet condition check ConditionFileNotEmpty=/usr/share/coreos/cloud-config.yml Jul 16 23:18:54.003058 systemd[1]: Reached target system-config.target - Load system-provided cloud configs. Jul 16 23:18:54.012629 systemd[1]: user-cloudinit-proc-cmdline.service - Load cloud-config from url defined in /proc/cmdline skipped, unmet condition check ConditionKernelCommandLine=cloud-config-url Jul 16 23:18:54.012728 systemd[1]: Reached target user-config.target - Load user-provided cloud configs. Jul 16 23:18:54.022368 systemd[1]: Started locksmithd.service - Cluster reboot manager. Jul 16 23:18:54.028879 systemd[1]: Finished sshd-keygen.service - Generate sshd host keys. Jul 16 23:18:54.050350 systemd[1]: Starting issuegen.service - Generate /run/issue... Jul 16 23:18:54.060343 systemd[1]: Starting waagent.service - Microsoft Azure Linux Agent... Jul 16 23:18:54.077918 systemd[1]: issuegen.service: Deactivated successfully. Jul 16 23:18:54.080395 systemd[1]: Finished issuegen.service - Generate /run/issue. Jul 16 23:18:54.085635 systemd[1]: Started waagent.service - Microsoft Azure Linux Agent. Jul 16 23:18:54.096977 systemd[1]: Starting systemd-user-sessions.service - Permit User Sessions... Jul 16 23:18:54.112419 systemd[1]: Finished systemd-user-sessions.service - Permit User Sessions. Jul 16 23:18:54.119204 systemd[1]: Started getty@tty1.service - Getty on tty1. Jul 16 23:18:54.126412 systemd[1]: Started serial-getty@ttyAMA0.service - Serial Getty on ttyAMA0. Jul 16 23:18:54.131120 systemd[1]: Reached target getty.target - Login Prompts. Jul 16 23:18:54.136932 systemd[1]: Reached target multi-user.target - Multi-User System. Jul 16 23:18:54.142259 systemd[1]: Startup finished in 2.760s (kernel) + 11.863s (initrd) + 14.388s (userspace) = 29.013s. Jul 16 23:18:54.254308 locksmithd[2420]: locksmithd starting currentOperation="UPDATE_STATUS_IDLE" strategy="reboot" Jul 16 23:18:54.523065 login[2454]: pam_unix(login:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:18:54.529046 systemd[1]: Created slice user-500.slice - User Slice of UID 500. Jul 16 23:18:54.530520 systemd[1]: Starting user-runtime-dir@500.service - User Runtime Directory /run/user/500... Jul 16 23:18:54.532597 systemd-logind[2301]: New session '1' of user 'core' with class 'user-light' and type 'tty'. Jul 16 23:18:54.566976 systemd[1]: Finished user-runtime-dir@500.service - User Runtime Directory /run/user/500. Jul 16 23:18:54.576575 systemd[1]: Started session-1.scope - Session 1 of User core. Jul 16 23:18:54.873085 login[2455]: pam_unix(login:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:18:54.877610 systemd-logind[2301]: New session '2' of user 'core' with class 'user-light' and type 'tty'. Jul 16 23:18:54.884283 systemd[1]: Started session-2.scope - Session 2 of User core. Jul 16 23:18:57.398942 waagent[2449]: 2026-07-16T23:18:57.394743Z INFO Daemon Daemon Azure Linux Agent Version: 2.12.0.4 Jul 16 23:18:57.399552 waagent[2449]: 2026-07-16T23:18:57.399513Z INFO Daemon Daemon OS: flatcar 4722.1.0 Jul 16 23:18:57.403505 waagent[2449]: 2026-07-16T23:18:57.403472Z INFO Daemon Daemon Python: 3.12.13 Jul 16 23:18:57.407171 waagent[2449]: 2026-07-16T23:18:57.406997Z INFO Daemon Daemon Run daemon Jul 16 23:18:57.411008 waagent[2449]: 2026-07-16T23:18:57.410972Z INFO Daemon Daemon No RDMA handler exists for distro='Flatcar Container Linux by Kinvolk' version='4722.1.0' Jul 16 23:18:57.417917 waagent[2449]: 2026-07-16T23:18:57.417889Z INFO Daemon Daemon Using waagent for provisioning Jul 16 23:18:57.421868 waagent[2449]: 2026-07-16T23:18:57.421838Z INFO Daemon Daemon Activate resource disk Jul 16 23:18:57.425384 waagent[2449]: 2026-07-16T23:18:57.425356Z INFO Daemon Daemon Searching gen1 prefix 00000000-0001 or gen2 f8b3781a-1e82-4818-a1c3-63d806ec15bb Jul 16 23:18:57.433544 waagent[2449]: 2026-07-16T23:18:57.433510Z INFO Daemon Daemon Found device: None Jul 16 23:18:57.437165 waagent[2449]: 2026-07-16T23:18:57.437127Z ERROR Daemon Daemon Failed to mount resource disk [ResourceDiskError] unable to detect disk topology Jul 16 23:18:57.443648 waagent[2449]: 2026-07-16T23:18:57.443617Z ERROR Daemon Daemon Event: name=WALinuxAgent, op=ActivateResourceDisk, message=[ResourceDiskError] unable to detect disk topology, duration=0 Jul 16 23:18:57.452476 waagent[2449]: 2026-07-16T23:18:57.452437Z INFO Daemon Daemon Clean protocol and wireserver endpoint Jul 16 23:18:57.457039 waagent[2449]: 2026-07-16T23:18:57.457008Z INFO Daemon Daemon Running default provisioning handler Jul 16 23:18:57.466230 waagent[2449]: 2026-07-16T23:18:57.466184Z INFO Daemon Daemon Unable to get cloud-init enabled status from systemctl: Command '['systemctl', 'is-enabled', 'cloud-init-local.service']' returned non-zero exit status 4. Jul 16 23:18:57.476336 waagent[2449]: 2026-07-16T23:18:57.476299Z INFO Daemon Daemon Unable to get cloud-init enabled status from service: [Errno 2] No such file or directory: 'service' Jul 16 23:18:57.483936 waagent[2449]: 2026-07-16T23:18:57.483904Z INFO Daemon Daemon cloud-init is enabled: False Jul 16 23:18:57.487601 waagent[2449]: 2026-07-16T23:18:57.487575Z INFO Daemon Daemon Copying ovf-env.xml Jul 16 23:18:57.582161 waagent[2449]: 2026-07-16T23:18:57.581211Z INFO Daemon Daemon Successfully mounted dvd Jul 16 23:18:57.684066 systemd[1]: mnt-cdrom-secure.mount: Deactivated successfully. Jul 16 23:18:57.686671 waagent[2449]: 2026-07-16T23:18:57.686608Z INFO Daemon Daemon Detect protocol endpoint Jul 16 23:18:57.690302 waagent[2449]: 2026-07-16T23:18:57.690266Z INFO Daemon Daemon Clean protocol and wireserver endpoint Jul 16 23:18:57.694758 waagent[2449]: 2026-07-16T23:18:57.694728Z INFO Daemon Daemon WireServer endpoint is not found. Rerun dhcp handler Jul 16 23:18:57.700535 waagent[2449]: 2026-07-16T23:18:57.700506Z INFO Daemon Daemon Test for route to 168.63.129.16 Jul 16 23:18:57.704491 waagent[2449]: 2026-07-16T23:18:57.704458Z INFO Daemon Daemon Route to 168.63.129.16 exists Jul 16 23:18:57.708220 waagent[2449]: 2026-07-16T23:18:57.708190Z INFO Daemon Daemon Wire server endpoint:168.63.129.16 Jul 16 23:18:57.735006 waagent[2449]: 2026-07-16T23:18:57.734964Z INFO Daemon Daemon Fabric preferred wire protocol version:2015-04-05 Jul 16 23:18:57.739704 waagent[2449]: 2026-07-16T23:18:57.739680Z INFO Daemon Daemon Wire protocol version:2012-11-30 Jul 16 23:18:57.743361 waagent[2449]: 2026-07-16T23:18:57.743336Z INFO Daemon Daemon Server preferred version:2015-04-05 Jul 16 23:18:57.843994 waagent[2449]: 2026-07-16T23:18:57.843903Z INFO Daemon Daemon Initializing goal state during protocol detection Jul 16 23:18:57.849176 waagent[2449]: 2026-07-16T23:18:57.849125Z INFO Daemon Daemon Forcing an update of the goal state. Jul 16 23:18:57.858938 waagent[2449]: 2026-07-16T23:18:57.858899Z INFO Daemon Fetched a new incarnation for the WireServer goal state [incarnation 1] Jul 16 23:18:57.876771 waagent[2449]: 2026-07-16T23:18:57.876732Z INFO Daemon Daemon HostGAPlugin version: 1.0.8.184 Jul 16 23:18:57.881299 waagent[2449]: 2026-07-16T23:18:57.881266Z INFO Daemon Jul 16 23:18:57.883434 waagent[2449]: 2026-07-16T23:18:57.883405Z INFO Daemon Fetched new vmSettings [HostGAPlugin correlation ID: e5d24781-09eb-4231-afe6-29a442a23a2b eTag: 126733164562186637 source: Fabric] Jul 16 23:18:57.892404 waagent[2449]: 2026-07-16T23:18:57.892374Z INFO Daemon The vmSettings originated via Fabric; will ignore them. Jul 16 23:18:57.898096 waagent[2449]: 2026-07-16T23:18:57.898066Z INFO Daemon Jul 16 23:18:57.900720 waagent[2449]: 2026-07-16T23:18:57.900688Z INFO Daemon Fetching full goal state from the WireServer [incarnation 1] Jul 16 23:18:57.909168 waagent[2449]: 2026-07-16T23:18:57.909121Z INFO Daemon Daemon Downloading artifacts profile blob Jul 16 23:18:57.995300 waagent[2449]: 2026-07-16T23:18:57.995191Z INFO Daemon Downloaded certificate {'thumbprint': 'A775666EBADF48454F35FEA6B5A6861560EF2A88', 'hasPrivateKey': True} Jul 16 23:18:58.003052 waagent[2449]: 2026-07-16T23:18:58.003012Z INFO Daemon Fetch goal state completed Jul 16 23:18:58.012868 waagent[2449]: 2026-07-16T23:18:58.012839Z INFO Daemon Daemon Starting provisioning Jul 16 23:18:58.017057 waagent[2449]: 2026-07-16T23:18:58.017025Z INFO Daemon Daemon Handle ovf-env.xml. Jul 16 23:18:58.020991 waagent[2449]: 2026-07-16T23:18:58.020964Z INFO Daemon Daemon Set hostname [ci-4722.1.0-n-b7f0200810] Jul 16 23:18:58.040818 waagent[2449]: 2026-07-16T23:18:58.040768Z INFO Daemon Daemon Publish hostname [ci-4722.1.0-n-b7f0200810] Jul 16 23:18:58.045643 waagent[2449]: 2026-07-16T23:18:58.045606Z INFO Daemon Daemon Examine /proc/net/route for primary interface Jul 16 23:18:58.050695 waagent[2449]: 2026-07-16T23:18:58.050663Z INFO Daemon Daemon Primary interface is [eth0] Jul 16 23:18:58.061226 systemd-networkd[2086]: eth0: Found matching .network file, based on potentially unpredictable interface name: /usr/lib/systemd/network/zz-default.network Jul 16 23:18:58.061239 systemd-networkd[2086]: eth0: Reconfiguring with /usr/lib/systemd/network/zz-default.network. Jul 16 23:18:58.061287 systemd-networkd[2086]: eth0: DHCP lease lost Jul 16 23:18:58.074150 waagent[2449]: 2026-07-16T23:18:58.071384Z INFO Daemon Daemon Create user account if not exists Jul 16 23:18:58.075958 waagent[2449]: 2026-07-16T23:18:58.075918Z INFO Daemon Daemon User core already exists, skip useradd Jul 16 23:18:58.080696 waagent[2449]: 2026-07-16T23:18:58.080660Z INFO Daemon Daemon Configure sudoer Jul 16 23:18:58.081172 systemd-networkd[2086]: eth0: DHCPv4 address 10.0.0.31/24, gateway 10.0.0.1 acquired from 168.63.129.16 Jul 16 23:18:58.084832 waagent[2449]: 2026-07-16T23:18:58.084784Z INFO Daemon Daemon Configure sshd Jul 16 23:18:58.088378 waagent[2449]: 2026-07-16T23:18:58.088338Z INFO Daemon Daemon Added a configuration snippet disabling SSH password-based authentication methods. It also configures SSH client probing to keep connections alive. Jul 16 23:18:58.099082 waagent[2449]: 2026-07-16T23:18:58.099028Z INFO Daemon Daemon Deploy ssh public key. Jul 16 23:18:59.220040 waagent[2449]: 2026-07-16T23:18:59.219992Z INFO Daemon Daemon Provisioning complete Jul 16 23:18:59.231376 waagent[2449]: 2026-07-16T23:18:59.231342Z INFO Daemon Daemon RDMA capabilities are not enabled, skipping Jul 16 23:18:59.236582 waagent[2449]: 2026-07-16T23:18:59.236547Z INFO Daemon Daemon End of log to /dev/console. The agent will now check for updates and then will process extensions. Jul 16 23:18:59.244591 waagent[2449]: 2026-07-16T23:18:59.244560Z INFO Daemon Daemon Installed Agent WALinuxAgent-2.12.0.4 is the most current agent Jul 16 23:18:59.347874 waagent[2520]: 2026-07-16T23:18:59.347408Z INFO ExtHandler ExtHandler Azure Linux Agent (Goal State Agent version 2.12.0.4) Jul 16 23:18:59.347874 waagent[2520]: 2026-07-16T23:18:59.347547Z INFO ExtHandler ExtHandler OS: flatcar 4722.1.0 Jul 16 23:18:59.347874 waagent[2520]: 2026-07-16T23:18:59.347594Z INFO ExtHandler ExtHandler Python: 3.12.13 Jul 16 23:18:59.347874 waagent[2520]: 2026-07-16T23:18:59.347627Z INFO ExtHandler ExtHandler CPU Arch: aarch64 Jul 16 23:18:59.428871 waagent[2520]: 2026-07-16T23:18:59.428807Z INFO ExtHandler ExtHandler Distro: flatcar-4722.1.0; OSUtil: FlatcarUtil; AgentService: waagent; Python: 3.12.13; Arch: aarch64; systemd: True; LISDrivers: Absent; logrotate: logrotate 3.22.0; Jul 16 23:18:59.429244 waagent[2520]: 2026-07-16T23:18:59.429210Z INFO ExtHandler ExtHandler WireServer endpoint 168.63.129.16 read from file Jul 16 23:18:59.429390 waagent[2520]: 2026-07-16T23:18:59.429363Z INFO ExtHandler ExtHandler Wire server endpoint:168.63.129.16 Jul 16 23:18:59.434911 waagent[2520]: 2026-07-16T23:18:59.434861Z INFO ExtHandler Fetched a new incarnation for the WireServer goal state [incarnation 1] Jul 16 23:18:59.440174 waagent[2520]: 2026-07-16T23:18:59.439529Z INFO ExtHandler ExtHandler HostGAPlugin version: 1.0.8.184 Jul 16 23:18:59.440174 waagent[2520]: 2026-07-16T23:18:59.439878Z INFO ExtHandler Jul 16 23:18:59.440174 waagent[2520]: 2026-07-16T23:18:59.439935Z INFO ExtHandler Fetched new vmSettings [HostGAPlugin correlation ID: 07cfe1b8-4260-4645-bfee-58133cbb7bdd eTag: 126733164562186637 source: Fabric] Jul 16 23:18:59.440174 waagent[2520]: 2026-07-16T23:18:59.440126Z INFO ExtHandler The vmSettings originated via Fabric; will ignore them. Jul 16 23:18:59.440597 waagent[2520]: 2026-07-16T23:18:59.440563Z INFO ExtHandler Jul 16 23:18:59.440638 waagent[2520]: 2026-07-16T23:18:59.440620Z INFO ExtHandler Fetching full goal state from the WireServer [incarnation 1] Jul 16 23:18:59.443108 waagent[2520]: 2026-07-16T23:18:59.443078Z INFO ExtHandler ExtHandler Downloading artifacts profile blob Jul 16 23:18:59.497660 waagent[2520]: 2026-07-16T23:18:59.497553Z INFO ExtHandler Downloaded certificate {'thumbprint': 'A775666EBADF48454F35FEA6B5A6861560EF2A88', 'hasPrivateKey': True} Jul 16 23:18:59.497953 waagent[2520]: 2026-07-16T23:18:59.497918Z INFO ExtHandler Fetch goal state completed Jul 16 23:18:59.507468 waagent[2520]: 2026-07-16T23:18:59.507419Z INFO ExtHandler ExtHandler OpenSSL version: OpenSSL 3.5.6 7 Apr 2026 (Library: OpenSSL 3.5.6 7 Apr 2026) Jul 16 23:18:59.510416 waagent[2520]: 2026-07-16T23:18:59.510375Z INFO ExtHandler ExtHandler WALinuxAgent-2.12.0.4 running as process 2520 Jul 16 23:18:59.510523 waagent[2520]: 2026-07-16T23:18:59.510495Z INFO ExtHandler ExtHandler ******** AutoUpdate.Enabled is set to False, not processing the operation ******** Jul 16 23:18:59.510763 waagent[2520]: 2026-07-16T23:18:59.510735Z INFO ExtHandler ExtHandler ******** AutoUpdate.UpdateToLatestVersion is set to False, not processing the operation ******** Jul 16 23:18:59.511852 waagent[2520]: 2026-07-16T23:18:59.511818Z INFO ExtHandler ExtHandler [CGI] Cgroup monitoring is not supported on ['flatcar', '4722.1.0', '', 'Flatcar Container Linux by Kinvolk'] Jul 16 23:18:59.512197 waagent[2520]: 2026-07-16T23:18:59.512128Z INFO ExtHandler ExtHandler [CGI] Agent will reset the quotas in case distro: ['flatcar', '4722.1.0', '', 'Flatcar Container Linux by Kinvolk'] went from supported to unsupported Jul 16 23:18:59.512304 waagent[2520]: 2026-07-16T23:18:59.512280Z INFO ExtHandler ExtHandler [CGI] Agent cgroups enabled: False Jul 16 23:18:59.512723 waagent[2520]: 2026-07-16T23:18:59.512694Z INFO ExtHandler ExtHandler Starting setup for Persistent firewall rules Jul 16 23:18:59.557818 waagent[2520]: 2026-07-16T23:18:59.557424Z INFO ExtHandler ExtHandler Firewalld service not running/unavailable, trying to set up waagent-network-setup.service Jul 16 23:18:59.557818 waagent[2520]: 2026-07-16T23:18:59.557626Z INFO ExtHandler ExtHandler Successfully updated the Binary file /var/lib/waagent/waagent-network-setup.py for firewall setup Jul 16 23:18:59.561818 waagent[2520]: 2026-07-16T23:18:59.561791Z INFO ExtHandler ExtHandler Service: waagent-network-setup.service not enabled. Adding it now Jul 16 23:18:59.566407 systemd[1]: Reload requested from client PID 2535 ('systemctl') (unit waagent.service)... Jul 16 23:18:59.566655 systemd[1]: Reloading... Jul 16 23:18:59.646324 zram_generator::config[2588]: No configuration found. Jul 16 23:18:59.836687 systemd[1]: Reloading finished in 269 ms. Jul 16 23:18:59.853971 waagent[2520]: 2026-07-16T23:18:59.853338Z INFO ExtHandler ExtHandler Successfully added and enabled the waagent-network-setup.service Jul 16 23:18:59.853971 waagent[2520]: 2026-07-16T23:18:59.853481Z INFO ExtHandler ExtHandler Persistent firewall rules setup successfully Jul 16 23:19:00.105368 waagent[2520]: 2026-07-16T23:19:00.105243Z INFO ExtHandler ExtHandler DROP rule is not available which implies no firewall rules are set yet. Environment thread will set it up. Jul 16 23:19:00.105748 waagent[2520]: 2026-07-16T23:19:00.105716Z INFO ExtHandler ExtHandler Checking if log collection is allowed at this time [False]. All three conditions must be met: 1. configuration enabled [True], 2. cgroups v1 enabled [False] OR cgroups v2 is in use and v2 resource limiting configuration enabled [False], 3. python supported: [True] Jul 16 23:19:00.106584 waagent[2520]: 2026-07-16T23:19:00.106547Z INFO ExtHandler ExtHandler Starting env monitor service. Jul 16 23:19:00.106696 waagent[2520]: 2026-07-16T23:19:00.106658Z INFO MonitorHandler ExtHandler WireServer endpoint 168.63.129.16 read from file Jul 16 23:19:00.106767 waagent[2520]: 2026-07-16T23:19:00.106745Z INFO MonitorHandler ExtHandler Wire server endpoint:168.63.129.16 Jul 16 23:19:00.106953 waagent[2520]: 2026-07-16T23:19:00.106924Z INFO MonitorHandler ExtHandler Monitor.NetworkConfigurationChanges is disabled. Jul 16 23:19:00.107358 waagent[2520]: 2026-07-16T23:19:00.107324Z INFO ExtHandler ExtHandler Start SendTelemetryHandler service. Jul 16 23:19:00.107685 waagent[2520]: 2026-07-16T23:19:00.107646Z INFO MonitorHandler ExtHandler Routing table from /proc/net/route: Jul 16 23:19:00.107685 waagent[2520]: Iface Destination Gateway Flags RefCnt Use Metric Mask MTU Window IRTT Jul 16 23:19:00.107685 waagent[2520]: eth0 00000000 0100000A 0003 0 0 1024 00000000 0 0 0 Jul 16 23:19:00.107685 waagent[2520]: eth0 0000000A 00000000 0001 0 0 1024 00FFFFFF 0 0 0 Jul 16 23:19:00.107685 waagent[2520]: eth0 0100000A 00000000 0005 0 0 1024 FFFFFFFF 0 0 0 Jul 16 23:19:00.107685 waagent[2520]: eth0 10813FA8 0100000A 0007 0 0 1024 FFFFFFFF 0 0 0 Jul 16 23:19:00.107685 waagent[2520]: eth0 FEA9FEA9 0100000A 0007 0 0 1024 FFFFFFFF 0 0 0 Jul 16 23:19:00.107976 waagent[2520]: 2026-07-16T23:19:00.107947Z INFO SendTelemetryHandler ExtHandler Successfully started the SendTelemetryHandler thread Jul 16 23:19:00.108096 waagent[2520]: 2026-07-16T23:19:00.108057Z INFO ExtHandler ExtHandler Start Extension Telemetry service. Jul 16 23:19:00.108168 waagent[2520]: 2026-07-16T23:19:00.108137Z INFO EnvHandler ExtHandler WireServer endpoint 168.63.129.16 read from file Jul 16 23:19:00.108240 waagent[2520]: 2026-07-16T23:19:00.108202Z INFO EnvHandler ExtHandler Wire server endpoint:168.63.129.16 Jul 16 23:19:00.108336 waagent[2520]: 2026-07-16T23:19:00.108308Z INFO EnvHandler ExtHandler Configure routes Jul 16 23:19:00.108413 waagent[2520]: 2026-07-16T23:19:00.108360Z INFO EnvHandler ExtHandler Gateway:None Jul 16 23:19:00.108480 waagent[2520]: 2026-07-16T23:19:00.108438Z INFO EnvHandler ExtHandler Routes:None Jul 16 23:19:00.108879 waagent[2520]: 2026-07-16T23:19:00.108849Z INFO TelemetryEventsCollector ExtHandler Extension Telemetry pipeline enabled: True Jul 16 23:19:00.108992 waagent[2520]: 2026-07-16T23:19:00.108958Z INFO ExtHandler ExtHandler Goal State Period: 6 sec. This indicates how often the agent checks for new goal states and reports status. Jul 16 23:19:00.109189 waagent[2520]: 2026-07-16T23:19:00.109165Z INFO TelemetryEventsCollector ExtHandler Successfully started the TelemetryEventsCollector thread Jul 16 23:19:00.114737 waagent[2520]: 2026-07-16T23:19:00.114707Z INFO ExtHandler ExtHandler Jul 16 23:19:00.114875 waagent[2520]: 2026-07-16T23:19:00.114853Z INFO ExtHandler ExtHandler ProcessExtensionsGoalState started [incarnation_1 channel: WireServer source: Fabric activity: 3f4d9589-db94-4a1b-9cc6-911547afc111 correlation b6868c60-3a30-426b-8416-18e5ef1c0809 created: 2026-07-16T23:17:59.504448Z] Jul 16 23:19:00.115246 waagent[2520]: 2026-07-16T23:19:00.115215Z INFO ExtHandler ExtHandler No extension handlers found, not processing anything. Jul 16 23:19:00.115743 waagent[2520]: 2026-07-16T23:19:00.115714Z INFO ExtHandler ExtHandler ProcessExtensionsGoalState completed [incarnation_1 1 ms] Jul 16 23:19:00.159857 waagent[2520]: 2026-07-16T23:19:00.159804Z INFO ExtHandler ExtHandler [HEARTBEAT] Agent WALinuxAgent-2.12.0.4 is running as the goal state agent [DEBUG HeartbeatCounter: 0;HeartbeatId: 1D16C3F9-A9D4-4225-99FC-ACF18864A66E;DroppedPackets: 0;UpdateGSErrors: 0;AutoUpdate: 0;UpdateMode: SelfUpdate;] Jul 16 23:19:00.163976 waagent[2520]: 2026-07-16T23:19:00.163928Z INFO MonitorHandler ExtHandler Network interfaces: Jul 16 23:19:00.163976 waagent[2520]: Executing ['ip', '-a', '-o', 'link']: Jul 16 23:19:00.163976 waagent[2520]: 1: lo: mtu 65536 qdisc noqueue state UNKNOWN mode DEFAULT group default qlen 1000\ link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00 Jul 16 23:19:00.163976 waagent[2520]: 2: eth0: mtu 1500 qdisc mq state UP mode DEFAULT group default qlen 1000\ link/ether 7c:ed:8d:b8:c4:d8 brd ff:ff:ff:ff:ff:ff\ altname enx7ced8db8c4d8 Jul 16 23:19:00.163976 waagent[2520]: 3: enP61091s1: mtu 1500 qdisc mq master eth0 state UP mode DEFAULT group default qlen 1000\ link/ether 7c:ed:8d:b8:c4:d8 brd ff:ff:ff:ff:ff:ff\ altname enP61091p0s2 Jul 16 23:19:00.163976 waagent[2520]: Executing ['ip', '-4', '-a', '-o', 'address']: Jul 16 23:19:00.163976 waagent[2520]: 1: lo inet 127.0.0.1/8 scope host lo\ valid_lft forever preferred_lft forever Jul 16 23:19:00.163976 waagent[2520]: 2: eth0 inet 10.0.0.31/24 metric 1024 brd 10.0.0.255 scope global eth0\ valid_lft forever preferred_lft forever Jul 16 23:19:00.163976 waagent[2520]: Executing ['ip', '-6', '-a', '-o', 'address']: Jul 16 23:19:00.163976 waagent[2520]: 1: lo inet6 ::1/128 scope host noprefixroute \ valid_lft forever preferred_lft forever Jul 16 23:19:00.163976 waagent[2520]: 2: eth0 inet6 fe80::7eed:8dff:feb8:c4d8/64 scope link proto kernel_ll \ valid_lft forever preferred_lft forever Jul 16 23:19:00.230170 waagent[2520]: 2026-07-16T23:19:00.229713Z INFO EnvHandler ExtHandler Created firewall rules for the Azure Fabric: Jul 16 23:19:00.230170 waagent[2520]: Chain INPUT (policy ACCEPT 0 packets, 0 bytes) Jul 16 23:19:00.230170 waagent[2520]: pkts bytes target prot opt in out source destination Jul 16 23:19:00.230170 waagent[2520]: Chain FORWARD (policy ACCEPT 0 packets, 0 bytes) Jul 16 23:19:00.230170 waagent[2520]: pkts bytes target prot opt in out source destination Jul 16 23:19:00.230170 waagent[2520]: Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) Jul 16 23:19:00.230170 waagent[2520]: pkts bytes target prot opt in out source destination Jul 16 23:19:00.230170 waagent[2520]: 0 0 ACCEPT tcp -- * * 0.0.0.0/0 168.63.129.16 tcp dpt:53 Jul 16 23:19:00.230170 waagent[2520]: 0 0 ACCEPT tcp -- * * 0.0.0.0/0 168.63.129.16 owner UID match 0 Jul 16 23:19:00.230170 waagent[2520]: 0 0 DROP tcp -- * * 0.0.0.0/0 168.63.129.16 ctstate INVALID,NEW Jul 16 23:19:00.232205 waagent[2520]: 2026-07-16T23:19:00.232164Z INFO EnvHandler ExtHandler Current Firewall rules: Jul 16 23:19:00.232205 waagent[2520]: Chain INPUT (policy ACCEPT 0 packets, 0 bytes) Jul 16 23:19:00.232205 waagent[2520]: pkts bytes target prot opt in out source destination Jul 16 23:19:00.232205 waagent[2520]: Chain FORWARD (policy ACCEPT 0 packets, 0 bytes) Jul 16 23:19:00.232205 waagent[2520]: pkts bytes target prot opt in out source destination Jul 16 23:19:00.232205 waagent[2520]: Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) Jul 16 23:19:00.232205 waagent[2520]: pkts bytes target prot opt in out source destination Jul 16 23:19:00.232205 waagent[2520]: 0 0 ACCEPT tcp -- * * 0.0.0.0/0 168.63.129.16 tcp dpt:53 Jul 16 23:19:00.232205 waagent[2520]: 0 0 ACCEPT tcp -- * * 0.0.0.0/0 168.63.129.16 owner UID match 0 Jul 16 23:19:00.232205 waagent[2520]: 0 0 DROP tcp -- * * 0.0.0.0/0 168.63.129.16 ctstate INVALID,NEW Jul 16 23:19:00.232423 waagent[2520]: 2026-07-16T23:19:00.232394Z INFO EnvHandler ExtHandler Set block dev timeout: sda with timeout: 300 Jul 16 23:19:10.994346 systemd[1]: Created slice system-sshd.slice - Slice /system/sshd. Jul 16 23:19:10.995648 systemd[1]: Started sshd@0-1-10.0.0.31:22-101.96.192.88:53566.service - OpenSSH per-connection server daemon (101.96.192.88:53566). Jul 16 23:19:12.436873 sshd[2671]: Connection closed by authenticating user root 101.96.192.88 port 53566 [preauth] Jul 16 23:19:12.439009 systemd[1]: sshd@0-1-10.0.0.31:22-101.96.192.88:53566.service: Deactivated successfully. Jul 16 23:19:12.601495 systemd[1]: Started sshd@1-2-10.0.0.31:22-101.96.192.88:36220.service - OpenSSH per-connection server daemon (101.96.192.88:36220). Jul 16 23:19:14.058604 sshd[2677]: Connection closed by authenticating user root 101.96.192.88 port 36220 [preauth] Jul 16 23:19:14.059385 systemd[1]: sshd@1-2-10.0.0.31:22-101.96.192.88:36220.service: Deactivated successfully. Jul 16 23:19:14.822392 systemd[1]: Started sshd@2-3-10.0.0.31:22-101.96.192.88:36226.service - OpenSSH per-connection server daemon (101.96.192.88:36226). Jul 16 23:19:15.860882 sshd[2683]: Connection closed by authenticating user root 101.96.192.88 port 36226 [preauth] Jul 16 23:19:15.862485 systemd[1]: sshd@2-3-10.0.0.31:22-101.96.192.88:36226.service: Deactivated successfully. Jul 16 23:19:16.026658 systemd[1]: Started sshd@3-4097-10.0.0.31:22-101.96.192.88:36240.service - OpenSSH per-connection server daemon (101.96.192.88:36240). Jul 16 23:19:17.515827 chronyd[2286]: Selected source PHC0 Jul 16 23:19:17.533965 sshd[2689]: Connection closed by authenticating user root 101.96.192.88 port 36240 [preauth] Jul 16 23:19:17.535845 systemd[1]: sshd@3-4097-10.0.0.31:22-101.96.192.88:36240.service: Deactivated successfully. Jul 16 23:19:17.701911 systemd[1]: Started sshd@4-4098-10.0.0.31:22-101.96.192.88:36244.service - OpenSSH per-connection server daemon (101.96.192.88:36244). Jul 16 23:19:17.817092 systemd[1]: Started sshd@5-4099-10.0.0.31:22-20.103.240.199:55668.service - OpenSSH per-connection server daemon (20.103.240.199:55668). Jul 16 23:19:18.599985 sshd[2699]: Accepted publickey for core from 20.103.240.199 port 55668 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:18.601037 sshd-session[2699]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:18.616342 systemd[1]: Starting user@500.service - User Manager for UID 500... Jul 16 23:19:18.618294 systemd-logind[2301]: New session '3' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:18.624776 (systemd)[2703]: pam_unix(systemd-user:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:18.627173 systemd-logind[2301]: New session '4' of user 'core' with class 'manager-early' and type 'unspecified'. Jul 16 23:19:18.801275 systemd[2703]: Queued start job for default target default.target. Jul 16 23:19:18.810932 systemd[2703]: Created slice app.slice - User Application Slice. Jul 16 23:19:18.810968 systemd[2703]: Started systemd-tmpfiles-clean.timer - Daily Cleanup of User's Temporary Directories. Jul 16 23:19:18.810978 systemd[2703]: Reached target machines.target - Virtual Machines and Containers. Jul 16 23:19:18.811025 systemd[2703]: Reached target paths.target - Paths. Jul 16 23:19:18.811042 systemd[2703]: Reached target timers.target - Timers. Jul 16 23:19:18.812212 systemd[2703]: Starting dbus.socket - D-Bus User Message Bus Socket... Jul 16 23:19:18.813367 systemd[2703]: Listening on systemd-ask-password.socket - Query the User Interactively for a Password. Jul 16 23:19:18.813507 systemd[2703]: Listening on systemd-importd.socket - Disk Image Download Service Socket. Jul 16 23:19:18.814169 systemd[2703]: Listening on systemd-journalctl.socket - Journal Log Access Socket. Jul 16 23:19:18.814348 systemd[2703]: Listening on systemd-machined.socket - Virtual Machine and Container Registration Service Socket. Jul 16 23:19:18.814946 systemd[2703]: Starting systemd-tmpfiles-setup.service - Create User Files and Directories... Jul 16 23:19:18.822046 systemd[2703]: Listening on dbus.socket - D-Bus User Message Bus Socket. Jul 16 23:19:18.822101 systemd[2703]: Reached target sockets.target - Sockets. Jul 16 23:19:18.825567 systemd[2703]: Finished systemd-tmpfiles-setup.service - Create User Files and Directories. Jul 16 23:19:18.825626 systemd[2703]: Reached target basic.target - Basic System. Jul 16 23:19:18.825667 systemd[2703]: Reached target default.target - Main User Target. Jul 16 23:19:18.825689 systemd[2703]: Startup finished in 193ms. Jul 16 23:19:18.826187 systemd[1]: Started user@500.service - User Manager for UID 500. Jul 16 23:19:18.835306 systemd[1]: Started session-3.scope - Session 3 of User core. Jul 16 23:19:19.167492 sshd[2695]: Connection closed by authenticating user root 101.96.192.88 port 36244 [preauth] Jul 16 23:19:19.169758 systemd[1]: sshd@4-4098-10.0.0.31:22-101.96.192.88:36244.service: Deactivated successfully. Jul 16 23:19:19.303399 systemd[1]: Started sshd@6-4-10.0.0.31:22-20.103.240.199:55682.service - OpenSSH per-connection server daemon (20.103.240.199:55682). Jul 16 23:19:20.100481 sshd[2719]: Accepted publickey for core from 20.103.240.199 port 55682 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:20.101562 sshd-session[2719]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:20.105565 systemd-logind[2301]: New session '5' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:20.115302 systemd[1]: Started session-5.scope - Session 5 of User core. Jul 16 23:19:20.560488 sshd[2723]: Connection closed by 20.103.240.199 port 55682 Jul 16 23:19:20.561097 sshd-session[2719]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:20.564370 systemd[1]: sshd@6-4-10.0.0.31:22-20.103.240.199:55682.service: Deactivated successfully. Jul 16 23:19:20.566463 systemd[1]: session-5.scope: Deactivated successfully. Jul 16 23:19:20.569296 systemd-logind[2301]: Session 5 logged out. Waiting for processes to exit. Jul 16 23:19:20.570621 systemd-logind[2301]: Removed session 5. Jul 16 23:19:20.708964 systemd[1]: Started sshd@7-4100-10.0.0.31:22-20.103.240.199:55692.service - OpenSSH per-connection server daemon (20.103.240.199:55692). Jul 16 23:19:21.465816 sshd[2729]: Accepted publickey for core from 20.103.240.199 port 55692 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:21.466632 sshd-session[2729]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:21.470527 systemd-logind[2301]: New session '6' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:21.478287 systemd[1]: Started session-6.scope - Session 6 of User core. Jul 16 23:19:21.897367 sshd[2733]: Connection closed by 20.103.240.199 port 55692 Jul 16 23:19:21.897227 sshd-session[2729]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:21.900390 systemd[1]: sshd@7-4100-10.0.0.31:22-20.103.240.199:55692.service: Deactivated successfully. Jul 16 23:19:21.902410 systemd[1]: session-6.scope: Deactivated successfully. Jul 16 23:19:21.903397 systemd-logind[2301]: Session 6 logged out. Waiting for processes to exit. Jul 16 23:19:21.905903 systemd-logind[2301]: Removed session 6. Jul 16 23:19:22.043081 systemd[1]: Started sshd@8-4101-10.0.0.31:22-20.103.240.199:49596.service - OpenSSH per-connection server daemon (20.103.240.199:49596). Jul 16 23:19:22.774162 sshd[2739]: Accepted publickey for core from 20.103.240.199 port 49596 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:22.775052 sshd-session[2739]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:22.779053 systemd-logind[2301]: New session '7' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:22.785489 systemd[1]: Started session-7.scope - Session 7 of User core. Jul 16 23:19:23.193474 sshd[2743]: Connection closed by 20.103.240.199 port 49596 Jul 16 23:19:23.194101 sshd-session[2739]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:23.197010 systemd[1]: sshd@8-4101-10.0.0.31:22-20.103.240.199:49596.service: Deactivated successfully. Jul 16 23:19:23.198842 systemd[1]: session-7.scope: Deactivated successfully. Jul 16 23:19:23.199830 systemd-logind[2301]: Session 7 logged out. Waiting for processes to exit. Jul 16 23:19:23.201054 systemd-logind[2301]: Removed session 7. Jul 16 23:19:23.350976 systemd[1]: Started sshd@9-4102-10.0.0.31:22-20.103.240.199:49600.service - OpenSSH per-connection server daemon (20.103.240.199:49600). Jul 16 23:19:24.042205 systemd[1]: Started sshd@10-4103-10.0.0.31:22-101.96.192.88:36246.service - OpenSSH per-connection server daemon (101.96.192.88:36246). Jul 16 23:19:24.104913 sshd[2749]: Accepted publickey for core from 20.103.240.199 port 49600 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:24.106017 sshd-session[2749]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:24.109900 systemd-logind[2301]: New session '8' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:24.121293 systemd[1]: Started session-8.scope - Session 8 of User core. Jul 16 23:19:24.572319 sudo[2758]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/setenforce 1 Jul 16 23:19:24.572542 sudo[2758]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:19:24.580467 sudo[2758]: pam_unix(sudo:session): session closed for user root Jul 16 23:19:24.668905 sshd[2753]: Connection closed by authenticating user root 101.96.192.88 port 36246 [preauth] Jul 16 23:19:24.671078 systemd[1]: sshd@10-4103-10.0.0.31:22-101.96.192.88:36246.service: Deactivated successfully. Jul 16 23:19:24.723967 sshd[2757]: Connection closed by 20.103.240.199 port 49600 Jul 16 23:19:24.724590 sshd-session[2749]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:24.727852 systemd[1]: sshd@9-4102-10.0.0.31:22-20.103.240.199:49600.service: Deactivated successfully. Jul 16 23:19:24.729456 systemd[1]: session-8.scope: Deactivated successfully. Jul 16 23:19:24.730295 systemd-logind[2301]: Session 8 logged out. Waiting for processes to exit. Jul 16 23:19:24.731452 systemd-logind[2301]: Removed session 8. Jul 16 23:19:24.832519 systemd[1]: Started sshd@11-4104-10.0.0.31:22-101.96.192.88:42234.service - OpenSSH per-connection server daemon (101.96.192.88:42234). Jul 16 23:19:24.887498 systemd[1]: Started sshd@12-4105-10.0.0.31:22-20.103.240.199:49606.service - OpenSSH per-connection server daemon (20.103.240.199:49606). Jul 16 23:19:25.666554 sshd[2771]: Accepted publickey for core from 20.103.240.199 port 49606 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:25.667660 sshd-session[2771]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:25.672040 systemd-logind[2301]: New session '9' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:25.677299 systemd[1]: Started session-9.scope - Session 9 of User core. Jul 16 23:19:25.969055 sudo[2777]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/rm -rf /etc/audit/rules.d/80-selinux.rules /etc/audit/rules.d/99-default.rules Jul 16 23:19:25.969317 sudo[2777]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:19:25.970597 sudo[2777]: pam_unix(sudo:session): session closed for user root Jul 16 23:19:25.975799 sudo[2776]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/systemctl restart audit-rules Jul 16 23:19:25.975998 sudo[2776]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:19:25.981157 systemd[1]: Starting audit-rules.service - Load Audit Rules... Jul 16 23:19:26.009000 audit: CONFIG_CHANGE auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Jul 16 23:19:26.010565 augenrules[2801]: No rules Jul 16 23:19:26.013407 kernel: kauditd_printk_skb: 3 callbacks suppressed Jul 16 23:19:26.013482 kernel: audit: type=1305 audit(1784243966.009:181): auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 op=remove_rule key=(null) list=5 res=1 Jul 16 23:19:26.020624 systemd[1]: audit-rules.service: Deactivated successfully. Jul 16 23:19:26.020981 systemd[1]: Finished audit-rules.service - Load Audit Rules. Jul 16 23:19:26.009000 audit[2801]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd8cc2700 a2=420 a3=0 items=0 ppid=2782 pid=2801 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/bin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:26.059744 kernel: audit: type=1300 audit(1784243966.009:181): arch=c00000b7 syscall=206 success=yes exit=1056 a0=3 a1=ffffd8cc2700 a2=420 a3=0 items=0 ppid=2782 pid=2801 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="auditctl" exe="/usr/bin/auditctl" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:26.060098 sudo[2776]: pam_unix(sudo:session): session closed for user root Jul 16 23:19:26.009000 audit: PROCTITLE proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Jul 16 23:19:26.069977 kernel: audit: type=1327 audit(1784243966.009:181): proctitle=2F7362696E2F617564697463746C002D52002F6574632F61756469742F61756469742E72756C6573 Jul 16 23:19:26.018000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.018000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.101749 kernel: audit: type=1130 audit(1784243966.018:182): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.101788 kernel: audit: type=1131 audit(1784243966.018:183): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=audit-rules comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.059000 audit[2776]: AUDIT1106 pid=2776 uid=500 auid=500 ses=9 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.117663 kernel: audit: type=1106 audit(1784243966.059:184): pid=2776 uid=500 auid=500 ses=9 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.059000 audit[2776]: AUDIT1104 pid=2776 uid=500 auid=500 ses=9 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.117788 kernel: audit: type=1104 audit(1784243966.059:185): pid=2776 uid=500 auid=500 ses=9 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.208632 sshd[2775]: Connection closed by 20.103.240.199 port 49606 Jul 16 23:19:26.209489 sshd-session[2771]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:26.208000 audit[2771]: AUDIT1106 pid=2771 uid=0 auid=500 ses=9 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:26.233272 sshd[2767]: Connection closed by authenticating user root 101.96.192.88 port 42234 [preauth] Jul 16 23:19:26.208000 audit[2771]: AUDIT1104 pid=2771 uid=0 auid=500 ses=9 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:26.234482 systemd[1]: sshd@12-4105-10.0.0.31:22-20.103.240.199:49606.service: Deactivated successfully. Jul 16 23:19:26.236536 systemd[1]: sshd@11-4104-10.0.0.31:22-101.96.192.88:42234.service: Deactivated successfully. Jul 16 23:19:26.237913 systemd[1]: session-9.scope: Deactivated successfully. Jul 16 23:19:26.250906 kernel: audit: type=1106 audit(1784243966.208:186): pid=2771 uid=0 auid=500 ses=9 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:26.251032 kernel: audit: type=1104 audit(1784243966.208:187): pid=2771 uid=0 auid=500 ses=9 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:26.231000 audit[2767]: AUDIT1109 pid=2767 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:26.266165 kernel: audit: type=1109 audit(1784243966.231:188): pid=2767 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:26.267027 systemd-logind[2301]: Session 9 logged out. Waiting for processes to exit. Jul 16 23:19:26.233000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@12-4105-10.0.0.31:22-20.103.240.199:49606 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.235000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@11-4104-10.0.0.31:22-101.96.192.88:42234 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.268102 systemd-logind[2301]: Removed session 9. Jul 16 23:19:26.396392 systemd[1]: Started sshd@13-4106-10.0.0.31:22-101.96.192.88:42242.service - OpenSSH per-connection server daemon (101.96.192.88:42242). Jul 16 23:19:26.395000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-4106-10.0.0.31:22-101.96.192.88:42242 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.397000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@14-4107-10.0.0.31:22-20.103.240.199:49614 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:26.398371 systemd[1]: Started sshd@14-4107-10.0.0.31:22-20.103.240.199:49614.service - OpenSSH per-connection server daemon (20.103.240.199:49614). Jul 16 23:19:27.035781 sshd[2813]: Connection closed by authenticating user root 101.96.192.88 port 42242 [preauth] Jul 16 23:19:27.035000 audit[2813]: AUDIT1109 pid=2813 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:27.037310 systemd[1]: sshd@13-4106-10.0.0.31:22-101.96.192.88:42242.service: Deactivated successfully. Jul 16 23:19:27.038000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@13-4106-10.0.0.31:22-101.96.192.88:42242 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:27.203000 audit[2814]: AUDIT1101 pid=2814 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:27.204841 sshd[2814]: Accepted publickey for core from 20.103.240.199 port 49614 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:27.205000 audit[2814]: AUDIT1103 pid=2814 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:27.205000 audit[2814]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=fffffacbfc10 a2=3 a3=0 items=0 ppid=1 pid=2814 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=10 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:27.205000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:19:27.205980 sshd-session[2814]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:27.210096 systemd-logind[2301]: New session '10' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:27.218516 systemd[1]: Started session-10.scope - Session 10 of User core. Jul 16 23:19:27.220000 audit[2814]: AUDIT1105 pid=2814 uid=0 auid=500 ses=10 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:27.222000 audit[2822]: AUDIT1103 pid=2822 uid=0 auid=500 ses=10 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:27.662484 sshd[2822]: Connection closed by 20.103.240.199 port 49614 Jul 16 23:19:27.662410 sshd-session[2814]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:27.663000 audit[2814]: AUDIT1106 pid=2814 uid=0 auid=500 ses=10 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:27.663000 audit[2814]: AUDIT1104 pid=2814 uid=0 auid=500 ses=10 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:27.665920 systemd[1]: sshd@14-4107-10.0.0.31:22-20.103.240.199:49614.service: Deactivated successfully. Jul 16 23:19:27.666000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@14-4107-10.0.0.31:22-20.103.240.199:49614 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:27.667589 systemd[1]: session-10.scope: Deactivated successfully. Jul 16 23:19:27.668896 systemd-logind[2301]: Session 10 logged out. Waiting for processes to exit. Jul 16 23:19:27.669815 systemd-logind[2301]: Removed session 10. Jul 16 23:19:27.811107 systemd[1]: Started sshd@15-4108-10.0.0.31:22-20.103.240.199:49630.service - OpenSSH per-connection server daemon (20.103.240.199:49630). Jul 16 23:19:27.811000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@15-4108-10.0.0.31:22-20.103.240.199:49630 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:28.200000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-4109-10.0.0.31:22-101.96.192.88:42256 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:28.200394 systemd[1]: Started sshd@16-4109-10.0.0.31:22-101.96.192.88:42256.service - OpenSSH per-connection server daemon (101.96.192.88:42256). Jul 16 23:19:28.564000 audit[2829]: AUDIT1101 pid=2829 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:28.566209 sshd[2829]: Accepted publickey for core from 20.103.240.199 port 49630 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:28.565000 audit[2829]: AUDIT1103 pid=2829 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:28.565000 audit[2829]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=ffffc4285220 a2=3 a3=0 items=0 ppid=1 pid=2829 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=11 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:28.565000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:19:28.567308 sshd-session[2829]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:28.571440 systemd-logind[2301]: New session '11' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:28.578292 systemd[1]: Started session-11.scope - Session 11 of User core. Jul 16 23:19:28.580000 audit[2829]: AUDIT1105 pid=2829 uid=0 auid=500 ses=11 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:28.581000 audit[2837]: AUDIT1103 pid=2837 uid=0 auid=500 ses=11 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:28.839209 sshd[2833]: Connection closed by authenticating user root 101.96.192.88 port 42256 [preauth] Jul 16 23:19:28.838000 audit[2833]: AUDIT1109 pid=2833 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:28.841520 systemd[1]: sshd@16-4109-10.0.0.31:22-101.96.192.88:42256.service: Deactivated successfully. Jul 16 23:19:28.840000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@16-4109-10.0.0.31:22-101.96.192.88:42256 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:28.998693 systemd[1]: Started sshd@17-5-10.0.0.31:22-101.96.192.88:42262.service - OpenSSH per-connection server daemon (101.96.192.88:42262). Jul 16 23:19:28.997000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-5-10.0.0.31:22-101.96.192.88:42262 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:29.626185 sshd[2843]: Connection closed by authenticating user root 101.96.192.88 port 42262 [preauth] Jul 16 23:19:29.625000 audit[2843]: AUDIT1109 pid=2843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:29.628817 systemd[1]: sshd@17-5-10.0.0.31:22-101.96.192.88:42262.service: Deactivated successfully. Jul 16 23:19:29.628000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@17-5-10.0.0.31:22-101.96.192.88:42262 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:29.792309 systemd[1]: Started sshd@18-6-10.0.0.31:22-101.96.192.88:42274.service - OpenSSH per-connection server daemon (101.96.192.88:42274). Jul 16 23:19:29.791000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@18-6-10.0.0.31:22-101.96.192.88:42274 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:29.846687 sshd[2837]: Connection closed by 20.103.240.199 port 49630 Jul 16 23:19:29.847292 sshd-session[2829]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:29.846000 audit[2829]: AUDIT1106 pid=2829 uid=0 auid=500 ses=11 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:29.846000 audit[2829]: AUDIT1104 pid=2829 uid=0 auid=500 ses=11 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:29.850628 systemd[1]: sshd@15-4108-10.0.0.31:22-20.103.240.199:49630.service: Deactivated successfully. Jul 16 23:19:29.849000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@15-4108-10.0.0.31:22-20.103.240.199:49630 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:29.852989 systemd[1]: session-11.scope: Deactivated successfully. Jul 16 23:19:29.854273 systemd-logind[2301]: Session 11 logged out. Waiting for processes to exit. Jul 16 23:19:29.856099 systemd-logind[2301]: Removed session 11. Jul 16 23:19:30.017000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@19-7-10.0.0.31:22-20.103.240.199:49638 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:30.018392 systemd[1]: Started sshd@19-7-10.0.0.31:22-20.103.240.199:49638.service - OpenSSH per-connection server daemon (20.103.240.199:49638). Jul 16 23:19:30.419823 sshd[2856]: Connection closed by authenticating user root 101.96.192.88 port 42274 [preauth] Jul 16 23:19:30.419000 audit[2856]: AUDIT1109 pid=2856 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:30.422055 systemd[1]: sshd@18-6-10.0.0.31:22-101.96.192.88:42274.service: Deactivated successfully. Jul 16 23:19:30.421000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@18-6-10.0.0.31:22-101.96.192.88:42274 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:30.582000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@20-4110-10.0.0.31:22-101.96.192.88:42280 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:30.583288 systemd[1]: Started sshd@20-4110-10.0.0.31:22-101.96.192.88:42280.service - OpenSSH per-connection server daemon (101.96.192.88:42280). Jul 16 23:19:30.820000 audit[2863]: AUDIT1101 pid=2863 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:30.821876 sshd[2863]: Accepted publickey for core from 20.103.240.199 port 49638 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:30.821000 audit[2863]: AUDIT1103 pid=2863 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:30.821000 audit[2863]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=ffffdf6c2020 a2=3 a3=0 items=0 ppid=1 pid=2863 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=12 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:30.821000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:19:30.823257 sshd-session[2863]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:30.827200 systemd-logind[2301]: New session '12' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:30.833429 systemd[1]: Started session-12.scope - Session 12 of User core. Jul 16 23:19:30.834000 audit[2863]: AUDIT1105 pid=2863 uid=0 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:30.835000 audit[2873]: AUDIT1103 pid=2873 uid=0 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:31.376982 systemd[1]: Started sshd@21-4111-10.0.0.31:22-101.96.192.88:42286.service - OpenSSH per-connection server daemon (101.96.192.88:42286). Jul 16 23:19:31.376000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@21-4111-10.0.0.31:22-101.96.192.88:42286 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:31.381759 kernel: kauditd_printk_skb: 45 callbacks suppressed Jul 16 23:19:31.381799 kernel: audit: type=1130 audit(1784243971.376:228): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@21-4111-10.0.0.31:22-101.96.192.88:42286 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:32.019904 sshd[2869]: Connection closed by authenticating user root 101.96.192.88 port 42280 [preauth] Jul 16 23:19:32.019000 audit[2869]: AUDIT1109 pid=2869 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:32.037041 systemd[1]: sshd@20-4110-10.0.0.31:22-101.96.192.88:42280.service: Deactivated successfully. Jul 16 23:19:32.036000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@20-4110-10.0.0.31:22-101.96.192.88:42280 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:32.054294 kernel: audit: type=1109 audit(1784243972.019:229): pid=2869 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:32.054391 kernel: audit: type=1131 audit(1784243972.036:230): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@20-4110-10.0.0.31:22-101.96.192.88:42280 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:32.795167 sshd[2881]: Connection closed by authenticating user root 101.96.192.88 port 42286 [preauth] Jul 16 23:19:32.794000 audit[2881]: AUDIT1109 pid=2881 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:32.799340 systemd[1]: sshd@21-4111-10.0.0.31:22-101.96.192.88:42286.service: Deactivated successfully. Jul 16 23:19:32.798000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@21-4111-10.0.0.31:22-101.96.192.88:42286 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:32.825020 kernel: audit: type=1109 audit(1784243972.794:231): pid=2881 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:32.825086 kernel: audit: type=1131 audit(1784243972.798:232): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@21-4111-10.0.0.31:22-101.96.192.88:42286 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:32.969889 systemd[1]: Started sshd@22-8-10.0.0.31:22-101.96.192.88:34052.service - OpenSSH per-connection server daemon (101.96.192.88:34052). Jul 16 23:19:32.968000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@22-8-10.0.0.31:22-101.96.192.88:34052 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:32.988168 kernel: audit: type=1130 audit(1784243972.968:233): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@22-8-10.0.0.31:22-101.96.192.88:34052 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:34.689942 sshd[2889]: Connection closed by authenticating user root 101.96.192.88 port 34052 [preauth] Jul 16 23:19:34.689000 audit[2889]: AUDIT1109 pid=2889 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:34.692455 systemd[1]: sshd@22-8-10.0.0.31:22-101.96.192.88:34052.service: Deactivated successfully. Jul 16 23:19:34.691000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@22-8-10.0.0.31:22-101.96.192.88:34052 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:34.719018 kernel: audit: type=1109 audit(1784243974.689:234): pid=2889 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:34.719063 kernel: audit: type=1131 audit(1784243974.691:235): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@22-8-10.0.0.31:22-101.96.192.88:34052 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:34.904754 kernel: hv_balloon: Max. dynamic memory size: 4096 MB Jul 16 23:19:35.367888 systemd[1]: Started sshd@23-9-10.0.0.31:22-101.96.192.88:34062.service - OpenSSH per-connection server daemon (101.96.192.88:34062). Jul 16 23:19:35.369000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@23-9-10.0.0.31:22-101.96.192.88:34062 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:35.387909 kernel: audit: type=1130 audit(1784243975.369:236): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@23-9-10.0.0.31:22-101.96.192.88:34062 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:36.016755 sshd[2921]: Connection closed by authenticating user root 101.96.192.88 port 34062 [preauth] Jul 16 23:19:36.017000 audit[2921]: AUDIT1109 pid=2921 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:36.020728 systemd[1]: sshd@23-9-10.0.0.31:22-101.96.192.88:34062.service: Deactivated successfully. Jul 16 23:19:36.017000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@23-9-10.0.0.31:22-101.96.192.88:34062 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:36.035345 kernel: audit: type=1109 audit(1784243976.017:237): pid=2921 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:36.180000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@24-10-10.0.0.31:22-101.96.192.88:34068 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:36.181409 systemd[1]: Started sshd@24-10-10.0.0.31:22-101.96.192.88:34068.service - OpenSSH per-connection server daemon (101.96.192.88:34068). Jul 16 23:19:37.087000 audit[2874]: AUDIT1101 pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.092336 sudo[2874]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/mv docker.raw containerd.raw /etc/extensions/ Jul 16 23:19:37.093466 kernel: kauditd_printk_skb: 2 callbacks suppressed Jul 16 23:19:37.092577 sudo[2874]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:19:37.093666 kernel: audit: type=1101 audit(1784243977.087:240): pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.091000 audit[2874]: AUDIT1110 pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.118642 kernel: audit: type=1110 audit(1784243977.091:241): pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.091000 audit[2874]: AUDIT1105 pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.134154 kernel: audit: type=1105 audit(1784243977.091:242): pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.218999 sudo[2874]: pam_unix(sudo:session): session closed for user root Jul 16 23:19:37.218000 audit[2874]: AUDIT1106 pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.218000 audit[2874]: AUDIT1104 pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.246919 kernel: audit: type=1106 audit(1784243977.218:243): pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.246969 kernel: audit: type=1104 audit(1784243977.218:244): pid=2874 uid=500 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.386032 sshd[2873]: Connection closed by 20.103.240.199 port 49638 Jul 16 23:19:37.387486 sshd-session[2863]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:37.386000 audit[2863]: AUDIT1106 pid=2863 uid=0 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:37.410809 systemd[1]: sshd@19-7-10.0.0.31:22-20.103.240.199:49638.service: Deactivated successfully. Jul 16 23:19:37.386000 audit[2863]: AUDIT1104 pid=2863 uid=0 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:37.413917 systemd[1]: session-12.scope: Deactivated successfully. Jul 16 23:19:37.414167 systemd[1]: session-12.scope: Consumed 2.178s CPU time over 6.580s wall clock time, 397.6M memory peak. Jul 16 23:19:37.426861 kernel: audit: type=1106 audit(1784243977.386:245): pid=2863 uid=0 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:37.426945 kernel: audit: type=1104 audit(1784243977.386:246): pid=2863 uid=0 auid=500 ses=12 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:37.409000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@19-7-10.0.0.31:22-20.103.240.199:49638 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.442533 kernel: audit: type=1131 audit(1784243977.409:247): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@19-7-10.0.0.31:22-20.103.240.199:49638 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.443679 systemd-logind[2301]: Session 12 logged out. Waiting for processes to exit. Jul 16 23:19:37.445419 systemd-logind[2301]: Removed session 12. Jul 16 23:19:37.528000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@25-4112-10.0.0.31:22-20.103.240.199:56686 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.529400 systemd[1]: Started sshd@25-4112-10.0.0.31:22-20.103.240.199:56686.service - OpenSSH per-connection server daemon (20.103.240.199:56686). Jul 16 23:19:37.546168 kernel: audit: type=1130 audit(1784243977.528:248): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@25-4112-10.0.0.31:22-20.103.240.199:56686 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.905154 sshd[2931]: Connection closed by authenticating user root 101.96.192.88 port 34068 [preauth] Jul 16 23:19:37.904000 audit[2931]: AUDIT1109 pid=2931 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:37.910246 systemd[1]: sshd@24-10-10.0.0.31:22-101.96.192.88:34068.service: Deactivated successfully. Jul 16 23:19:37.909000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@24-10-10.0.0.31:22-101.96.192.88:34068 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:37.921148 kernel: audit: type=1109 audit(1784243977.904:249): pid=2931 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:38.066983 systemd[1]: Started sshd@26-4113-10.0.0.31:22-101.96.192.88:34074.service - OpenSSH per-connection server daemon (101.96.192.88:34074). Jul 16 23:19:38.066000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@26-4113-10.0.0.31:22-101.96.192.88:34074 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:38.287000 audit[2958]: AUDIT1101 pid=2958 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:38.288978 sshd[2958]: Accepted publickey for core from 20.103.240.199 port 56686 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:38.288000 audit[2958]: AUDIT1103 pid=2958 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:38.288000 audit[2958]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=ffffff77e990 a2=3 a3=0 items=0 ppid=1 pid=2958 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=13 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:38.288000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:19:38.289928 sshd-session[2958]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:38.293776 systemd-logind[2301]: New session '13' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:38.310299 systemd[1]: Started session-13.scope - Session 13 of User core. Jul 16 23:19:38.312000 audit[2958]: AUDIT1105 pid=2958 uid=0 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:38.313000 audit[2968]: AUDIT1103 pid=2968 uid=0 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:38.574000 audit[2970]: AUDIT1101 pid=2970 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:38.575966 sudo[2970]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/systemctl restart systemd-sysext Jul 16 23:19:38.574000 audit[2970]: AUDIT1110 pid=2970 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:38.575000 audit[2970]: AUDIT1105 pid=2970 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:38.576255 sudo[2970]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:19:38.581451 systemd[1]: Stopping systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/... Jul 16 23:19:38.601215 (sd-unmerge)[2974]: Unmerged '/usr'. Jul 16 23:19:38.606271 systemd[1]: Reload requested from client PID 2973 ('systemd-sysext') (unit systemd-sysext.service)... Jul 16 23:19:38.606390 systemd[1]: Reloading... Jul 16 23:19:38.682166 zram_generator::config[3032]: No configuration found. Jul 16 23:19:38.882994 systemd[1]: Reloading finished in 276 ms. Jul 16 23:19:38.890000 audit: BPF prog-id=59 op=LOAD Jul 16 23:19:38.890000 audit: BPF prog-id=39 op=UNLOAD Jul 16 23:19:38.890000 audit: BPF prog-id=60 op=LOAD Jul 16 23:19:38.890000 audit: BPF prog-id=61 op=LOAD Jul 16 23:19:38.890000 audit: BPF prog-id=40 op=UNLOAD Jul 16 23:19:38.890000 audit: BPF prog-id=41 op=UNLOAD Jul 16 23:19:38.891000 audit: BPF prog-id=62 op=LOAD Jul 16 23:19:38.891000 audit: BPF prog-id=42 op=UNLOAD Jul 16 23:19:38.891000 audit: BPF prog-id=63 op=LOAD Jul 16 23:19:38.891000 audit: BPF prog-id=64 op=LOAD Jul 16 23:19:38.891000 audit: BPF prog-id=43 op=UNLOAD Jul 16 23:19:38.891000 audit: BPF prog-id=44 op=UNLOAD Jul 16 23:19:38.891000 audit: BPF prog-id=65 op=LOAD Jul 16 23:19:38.891000 audit: BPF prog-id=66 op=LOAD Jul 16 23:19:38.891000 audit: BPF prog-id=45 op=UNLOAD Jul 16 23:19:38.891000 audit: BPF prog-id=46 op=UNLOAD Jul 16 23:19:38.891000 audit: BPF prog-id=67 op=LOAD Jul 16 23:19:38.891000 audit: BPF prog-id=47 op=UNLOAD Jul 16 23:19:38.892000 audit: BPF prog-id=68 op=LOAD Jul 16 23:19:38.892000 audit: BPF prog-id=48 op=UNLOAD Jul 16 23:19:38.892000 audit: BPF prog-id=69 op=LOAD Jul 16 23:19:38.892000 audit: BPF prog-id=70 op=LOAD Jul 16 23:19:38.892000 audit: BPF prog-id=49 op=UNLOAD Jul 16 23:19:38.892000 audit: BPF prog-id=50 op=UNLOAD Jul 16 23:19:38.894000 audit: BPF prog-id=71 op=LOAD Jul 16 23:19:38.894000 audit: BPF prog-id=52 op=UNLOAD Jul 16 23:19:38.894000 audit: BPF prog-id=72 op=LOAD Jul 16 23:19:38.894000 audit: BPF prog-id=73 op=LOAD Jul 16 23:19:38.894000 audit: BPF prog-id=53 op=UNLOAD Jul 16 23:19:38.894000 audit: BPF prog-id=54 op=UNLOAD Jul 16 23:19:38.895000 audit: BPF prog-id=74 op=LOAD Jul 16 23:19:38.895000 audit: BPF prog-id=55 op=UNLOAD Jul 16 23:19:38.896000 audit: BPF prog-id=75 op=LOAD Jul 16 23:19:38.896000 audit: BPF prog-id=56 op=UNLOAD Jul 16 23:19:38.896000 audit: BPF prog-id=76 op=LOAD Jul 16 23:19:38.896000 audit: BPF prog-id=77 op=LOAD Jul 16 23:19:38.896000 audit: BPF prog-id=57 op=UNLOAD Jul 16 23:19:38.896000 audit: BPF prog-id=58 op=UNLOAD Jul 16 23:19:38.903874 systemd[1]: systemd-sysext.service: Deactivated successfully. Jul 16 23:19:38.904069 systemd[1]: Stopped systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/. Jul 16 23:19:38.902000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:38.908488 systemd[1]: Starting systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/... Jul 16 23:19:38.926166 kernel: loop1: detected capacity change from 0 to 315600 Jul 16 23:19:39.145730 update_engine[2302]: I20260716 23:19:39.145166 2302 update_attempter.cc:509] Updating boot flags... Jul 16 23:19:39.257151 kernel: EXT4-fs (loop1): write access unavailable, skipping orphan cleanup Jul 16 23:19:39.257255 kernel: EXT4-fs (loop1): mounted filesystem 20ac047a-a7b3-45f4-863d-e15c722f66d3 ro without journal. Quota mode: none. Jul 16 23:19:39.302196 kernel: EXT4-fs (loop1): unmounting filesystem 20ac047a-a7b3-45f4-863d-e15c722f66d3. Jul 16 23:19:39.317215 kernel: loop1: detected capacity change from 0 to 142648 Jul 16 23:19:39.321164 kernel: loop1: p1 p2 p3 Jul 16 23:19:39.335658 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:19:39.335747 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:19:39.341387 kernel: device-mapper: table: 254:3: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:19:39.349654 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:19:39.351317 systemd-sysext[3087]: device-mapper: reload ioctl on loop1p1-56-verity (254:3) failed: Invalid argument Jul 16 23:19:39.364237 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:19:39.492929 kernel: erofs: (device dm-3): mounted with root inode @ nid 39. Jul 16 23:19:39.524313 sshd[2964]: Connection closed by authenticating user root 101.96.192.88 port 34074 [preauth] Jul 16 23:19:39.523000 audit[2964]: AUDIT1109 pid=2964 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:39.526988 systemd[1]: sshd@26-4113-10.0.0.31:22-101.96.192.88:34074.service: Deactivated successfully. Jul 16 23:19:39.526000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@26-4113-10.0.0.31:22-101.96.192.88:34074 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:39.528305 kernel: loop1: detected capacity change from 0 to 301296 Jul 16 23:19:39.683162 systemd[1]: Started sshd@27-11-10.0.0.31:22-101.96.192.88:34086.service - OpenSSH per-connection server daemon (101.96.192.88:34086). Jul 16 23:19:39.682000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@27-11-10.0.0.31:22-101.96.192.88:34086 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:39.846258 kernel: EXT4-fs (loop1): write access unavailable, skipping orphan cleanup Jul 16 23:19:39.846323 kernel: EXT4-fs (loop1): mounted filesystem f2f513b9-bfd3-497e-a033-752d45a5434c ro without journal. Quota mode: none. Jul 16 23:19:39.885154 kernel: EXT4-fs (loop1): unmounting filesystem f2f513b9-bfd3-497e-a033-752d45a5434c. Jul 16 23:19:39.904153 kernel: loop1: detected capacity change from 0 to 315600 Jul 16 23:19:39.952649 kernel: EXT4-fs (loop1): write access unavailable, skipping orphan cleanup Jul 16 23:19:39.952736 kernel: EXT4-fs (loop1): mounted filesystem 20ac047a-a7b3-45f4-863d-e15c722f66d3 ro without journal. Quota mode: none. Jul 16 23:19:39.959153 kernel: loop3: detected capacity change from 0 to 142648 Jul 16 23:19:39.964159 kernel: loop3: p1 p2 p3 Jul 16 23:19:39.980171 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:19:39.980224 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:19:39.985464 kernel: device-mapper: table: 254:3: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:19:39.989027 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:19:39.989394 (sd-merge)[3283]: device-mapper: reload ioctl on loop3p1-66-verity (254:3) failed: Invalid argument Jul 16 23:19:39.998165 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:19:40.029154 kernel: erofs: (device dm-3): mounted with root inode @ nid 39. Jul 16 23:19:40.029244 kernel: loop4: detected capacity change from 0 to 301296 Jul 16 23:19:40.058025 kernel: EXT4-fs (loop4): write access unavailable, skipping orphan cleanup Jul 16 23:19:40.058149 kernel: EXT4-fs (loop4): mounted filesystem f2f513b9-bfd3-497e-a033-752d45a5434c ro without journal. Quota mode: none. Jul 16 23:19:40.059563 (sd-merge)[3283]: Using extensions 'containerd.raw', 'docker.raw', 'oem-azure-4722.1.0+nightly-20260716-2100.raw'. Jul 16 23:19:40.060594 (sd-merge)[3283]: Merged extensions into '/usr'. Jul 16 23:19:40.063973 systemd[1]: Reload requested from client PID 3087 ('systemd-sysext') (unit systemd-sysext.service)... Jul 16 23:19:40.063987 systemd[1]: Reloading... Jul 16 23:19:40.149295 zram_generator::config[3348]: No configuration found. Jul 16 23:19:40.319770 sshd[3280]: Connection closed by authenticating user root 101.96.192.88 port 34086 [preauth] Jul 16 23:19:40.319000 audit[3280]: AUDIT1109 pid=3280 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:40.330010 systemd[1]: /usr/lib/systemd/system/docker.socket:5: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 16 23:19:40.398606 systemd[1]: Reloading finished in 333 ms. Jul 16 23:19:40.411000 audit: BPF prog-id=78 op=LOAD Jul 16 23:19:40.411000 audit: BPF prog-id=59 op=UNLOAD Jul 16 23:19:40.411000 audit: BPF prog-id=79 op=LOAD Jul 16 23:19:40.411000 audit: BPF prog-id=80 op=LOAD Jul 16 23:19:40.411000 audit: BPF prog-id=60 op=UNLOAD Jul 16 23:19:40.411000 audit: BPF prog-id=61 op=UNLOAD Jul 16 23:19:40.412000 audit: BPF prog-id=81 op=LOAD Jul 16 23:19:40.412000 audit: BPF prog-id=62 op=UNLOAD Jul 16 23:19:40.412000 audit: BPF prog-id=82 op=LOAD Jul 16 23:19:40.412000 audit: BPF prog-id=83 op=LOAD Jul 16 23:19:40.412000 audit: BPF prog-id=63 op=UNLOAD Jul 16 23:19:40.412000 audit: BPF prog-id=64 op=UNLOAD Jul 16 23:19:40.413000 audit: BPF prog-id=84 op=LOAD Jul 16 23:19:40.413000 audit: BPF prog-id=85 op=LOAD Jul 16 23:19:40.413000 audit: BPF prog-id=65 op=UNLOAD Jul 16 23:19:40.413000 audit: BPF prog-id=66 op=UNLOAD Jul 16 23:19:40.413000 audit: BPF prog-id=86 op=LOAD Jul 16 23:19:40.413000 audit: BPF prog-id=67 op=UNLOAD Jul 16 23:19:40.414000 audit: BPF prog-id=87 op=LOAD Jul 16 23:19:40.414000 audit: BPF prog-id=68 op=UNLOAD Jul 16 23:19:40.414000 audit: BPF prog-id=88 op=LOAD Jul 16 23:19:40.414000 audit: BPF prog-id=89 op=LOAD Jul 16 23:19:40.414000 audit: BPF prog-id=69 op=UNLOAD Jul 16 23:19:40.414000 audit: BPF prog-id=70 op=UNLOAD Jul 16 23:19:40.415000 audit: BPF prog-id=90 op=LOAD Jul 16 23:19:40.415000 audit: BPF prog-id=51 op=UNLOAD Jul 16 23:19:40.416000 audit: BPF prog-id=91 op=LOAD Jul 16 23:19:40.416000 audit: BPF prog-id=71 op=UNLOAD Jul 16 23:19:40.416000 audit: BPF prog-id=92 op=LOAD Jul 16 23:19:40.416000 audit: BPF prog-id=93 op=LOAD Jul 16 23:19:40.416000 audit: BPF prog-id=72 op=UNLOAD Jul 16 23:19:40.416000 audit: BPF prog-id=73 op=UNLOAD Jul 16 23:19:40.418000 audit: BPF prog-id=94 op=LOAD Jul 16 23:19:40.418000 audit: BPF prog-id=74 op=UNLOAD Jul 16 23:19:40.419000 audit: BPF prog-id=95 op=LOAD Jul 16 23:19:40.419000 audit: BPF prog-id=75 op=UNLOAD Jul 16 23:19:40.419000 audit: BPF prog-id=96 op=LOAD Jul 16 23:19:40.419000 audit: BPF prog-id=97 op=LOAD Jul 16 23:19:40.419000 audit: BPF prog-id=76 op=UNLOAD Jul 16 23:19:40.419000 audit: BPF prog-id=77 op=UNLOAD Jul 16 23:19:40.425000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@27-11-10.0.0.31:22-101.96.192.88:34086 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.426728 systemd[1]: sshd@27-11-10.0.0.31:22-101.96.192.88:34086.service: Deactivated successfully. Jul 16 23:19:40.429639 systemd[1]: Finished systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/. Jul 16 23:19:40.428000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.430214 sudo[2970]: pam_unix(sudo:session): session closed for user root Jul 16 23:19:40.429000 audit[2970]: AUDIT1106 pid=2970 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.429000 audit[2970]: AUDIT1104 pid=2970 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.441689 systemd[1]: Starting docker.socket - Docker Socket for the API... Jul 16 23:19:40.441000 audit[2969]: AUDIT1101 pid=2969 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.443096 sudo[2969]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/systemctl daemon-reload Jul 16 23:19:40.442000 audit[2969]: AUDIT1110 pid=2969 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.442000 audit[2969]: AUDIT1105 pid=2969 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.443413 sudo[2969]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:19:40.446320 systemd[1]: Starting containerd.service - containerd container runtime... Jul 16 23:19:40.446597 systemd[1]: Listening on docker.socket - Docker Socket for the API. Jul 16 23:19:40.449323 systemd[1]: Reload requested from client PID 3411 ('systemctl') (unit session-13.scope)... Jul 16 23:19:40.449335 systemd[1]: Reloading... Jul 16 23:19:40.527208 zram_generator::config[3470]: No configuration found. Jul 16 23:19:40.671818 systemd[1]: /usr/lib/systemd/system/docker.socket:5: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 16 23:19:40.731396 systemd[1]: Reloading finished in 281 ms. Jul 16 23:19:40.741000 audit: BPF prog-id=98 op=LOAD Jul 16 23:19:40.741000 audit: BPF prog-id=78 op=UNLOAD Jul 16 23:19:40.741000 audit: BPF prog-id=99 op=LOAD Jul 16 23:19:40.741000 audit: BPF prog-id=100 op=LOAD Jul 16 23:19:40.741000 audit: BPF prog-id=79 op=UNLOAD Jul 16 23:19:40.741000 audit: BPF prog-id=80 op=UNLOAD Jul 16 23:19:40.742000 audit: BPF prog-id=101 op=LOAD Jul 16 23:19:40.742000 audit: BPF prog-id=81 op=UNLOAD Jul 16 23:19:40.742000 audit: BPF prog-id=102 op=LOAD Jul 16 23:19:40.742000 audit: BPF prog-id=103 op=LOAD Jul 16 23:19:40.742000 audit: BPF prog-id=82 op=UNLOAD Jul 16 23:19:40.742000 audit: BPF prog-id=83 op=UNLOAD Jul 16 23:19:40.742000 audit: BPF prog-id=104 op=LOAD Jul 16 23:19:40.742000 audit: BPF prog-id=105 op=LOAD Jul 16 23:19:40.742000 audit: BPF prog-id=84 op=UNLOAD Jul 16 23:19:40.742000 audit: BPF prog-id=85 op=UNLOAD Jul 16 23:19:40.743000 audit: BPF prog-id=106 op=LOAD Jul 16 23:19:40.743000 audit: BPF prog-id=86 op=UNLOAD Jul 16 23:19:40.743000 audit: BPF prog-id=107 op=LOAD Jul 16 23:19:40.743000 audit: BPF prog-id=87 op=UNLOAD Jul 16 23:19:40.743000 audit: BPF prog-id=108 op=LOAD Jul 16 23:19:40.743000 audit: BPF prog-id=109 op=LOAD Jul 16 23:19:40.743000 audit: BPF prog-id=88 op=UNLOAD Jul 16 23:19:40.744000 audit: BPF prog-id=89 op=UNLOAD Jul 16 23:19:40.744000 audit: BPF prog-id=110 op=LOAD Jul 16 23:19:40.744000 audit: BPF prog-id=90 op=UNLOAD Jul 16 23:19:40.746000 audit: BPF prog-id=111 op=LOAD Jul 16 23:19:40.746000 audit: BPF prog-id=91 op=UNLOAD Jul 16 23:19:40.746000 audit: BPF prog-id=112 op=LOAD Jul 16 23:19:40.746000 audit: BPF prog-id=113 op=LOAD Jul 16 23:19:40.746000 audit: BPF prog-id=92 op=UNLOAD Jul 16 23:19:40.746000 audit: BPF prog-id=93 op=UNLOAD Jul 16 23:19:40.747000 audit: BPF prog-id=114 op=LOAD Jul 16 23:19:40.747000 audit: BPF prog-id=94 op=UNLOAD Jul 16 23:19:40.748000 audit: BPF prog-id=115 op=LOAD Jul 16 23:19:40.748000 audit: BPF prog-id=95 op=UNLOAD Jul 16 23:19:40.748000 audit: BPF prog-id=116 op=LOAD Jul 16 23:19:40.748000 audit: BPF prog-id=117 op=LOAD Jul 16 23:19:40.748000 audit: BPF prog-id=96 op=UNLOAD Jul 16 23:19:40.748000 audit: BPF prog-id=97 op=UNLOAD Jul 16 23:19:40.754344 sudo[2969]: pam_unix(sudo:session): session closed for user root Jul 16 23:19:40.754000 audit[2969]: AUDIT1106 pid=2969 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.754000 audit[2969]: AUDIT1104 pid=2969 uid=500 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.770107 systemd[1]: Started containerd.service - containerd container runtime. Jul 16 23:19:40.769000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=containerd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.774420 systemd[1]: Started sshd@28-12-10.0.0.31:22-101.96.192.88:34102.service - OpenSSH per-connection server daemon (101.96.192.88:34102). Jul 16 23:19:40.774000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@28-12-10.0.0.31:22-101.96.192.88:34102 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.900046 sshd[2968]: Connection closed by 20.103.240.199 port 56686 Jul 16 23:19:40.899000 audit[2958]: AUDIT1106 pid=2958 uid=0 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:40.899000 audit[2958]: AUDIT1104 pid=2958 uid=0 auid=500 ses=13 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:40.899717 sshd-session[2958]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:40.903221 systemd[1]: sshd@25-4112-10.0.0.31:22-20.103.240.199:56686.service: Deactivated successfully. Jul 16 23:19:40.902000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@25-4112-10.0.0.31:22-20.103.240.199:56686 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:40.905415 systemd[1]: session-13.scope: Deactivated successfully. Jul 16 23:19:40.907070 systemd-logind[2301]: Session 13 logged out. Waiting for processes to exit. Jul 16 23:19:40.908777 systemd-logind[2301]: Removed session 13. Jul 16 23:19:41.058000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@29-13-10.0.0.31:22-20.103.240.199:45010 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:41.059780 systemd[1]: Started sshd@29-13-10.0.0.31:22-20.103.240.199:45010.service - OpenSSH per-connection server daemon (20.103.240.199:45010). Jul 16 23:19:41.403141 sshd[3526]: Connection closed by authenticating user root 101.96.192.88 port 34102 [preauth] Jul 16 23:19:41.402000 audit[3526]: AUDIT1109 pid=3526 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:41.405399 systemd[1]: sshd@28-12-10.0.0.31:22-101.96.192.88:34102.service: Deactivated successfully. Jul 16 23:19:41.404000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@28-12-10.0.0.31:22-101.96.192.88:34102 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:41.560000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@30-4114-10.0.0.31:22-101.96.192.88:34118 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:41.561695 systemd[1]: Started sshd@30-4114-10.0.0.31:22-101.96.192.88:34118.service - OpenSSH per-connection server daemon (101.96.192.88:34118). Jul 16 23:19:41.813000 audit[3533]: AUDIT1101 pid=3533 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:41.814419 sshd[3533]: Accepted publickey for core from 20.103.240.199 port 45010 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:41.813000 audit[3533]: AUDIT1103 pid=3533 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:41.813000 audit[3533]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=ffffd1fcd1f0 a2=3 a3=0 items=0 ppid=1 pid=3533 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=14 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:41.813000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:19:41.815423 sshd-session[3533]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:41.819549 systemd-logind[2301]: New session '14' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:41.826283 systemd[1]: Started session-14.scope - Session 14 of User core. Jul 16 23:19:41.827000 audit[3533]: AUDIT1105 pid=3533 uid=0 auid=500 ses=14 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:41.829000 audit[3547]: AUDIT1103 pid=3547 uid=0 auid=500 ses=14 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:42.806101 sshd[3539]: Connection closed by authenticating user root 101.96.192.88 port 34118 [preauth] Jul 16 23:19:42.806000 audit[3539]: AUDIT1109 pid=3539 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:42.809734 kernel: kauditd_printk_skb: 160 callbacks suppressed Jul 16 23:19:42.809794 kernel: audit: type=1109 audit(1784243982.806:406): pid=3539 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:42.810406 systemd[1]: sshd@30-4114-10.0.0.31:22-101.96.192.88:34118.service: Deactivated successfully. Jul 16 23:19:42.809000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@30-4114-10.0.0.31:22-101.96.192.88:34118 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:42.837985 kernel: audit: type=1131 audit(1784243982.809:407): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@30-4114-10.0.0.31:22-101.96.192.88:34118 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:42.973526 systemd[1]: Started sshd@31-14-10.0.0.31:22-101.96.192.88:51554.service - OpenSSH per-connection server daemon (101.96.192.88:51554). Jul 16 23:19:42.973000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@31-14-10.0.0.31:22-101.96.192.88:51554 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:42.989160 kernel: audit: type=1130 audit(1784243982.973:408): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@31-14-10.0.0.31:22-101.96.192.88:51554 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:44.035952 sshd[3556]: Connection closed by authenticating user root 101.96.192.88 port 51554 [preauth] Jul 16 23:19:44.036000 audit[3556]: AUDIT1109 pid=3556 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:44.051537 systemd[1]: sshd@31-14-10.0.0.31:22-101.96.192.88:51554.service: Deactivated successfully. Jul 16 23:19:44.051000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@31-14-10.0.0.31:22-101.96.192.88:51554 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:44.067428 kernel: audit: type=1109 audit(1784243984.036:409): pid=3556 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:44.067523 kernel: audit: type=1131 audit(1784243984.051:410): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@31-14-10.0.0.31:22-101.96.192.88:51554 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:44.670023 systemd[1]: Started sshd@32-15-10.0.0.31:22-101.96.192.88:51568.service - OpenSSH per-connection server daemon (101.96.192.88:51568). Jul 16 23:19:44.669000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@32-15-10.0.0.31:22-101.96.192.88:51568 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:44.687197 kernel: audit: type=1130 audit(1784243984.669:411): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@32-15-10.0.0.31:22-101.96.192.88:51568 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:45.480790 containerd[3523]: time="2026-07-16T23:19:45.480723464Z" level=info msg="starting containerd" revision=1c90a442489720eec95342e1789ee8a5e1b9536f version=v1.6.9 Jul 16 23:19:45.496152 containerd[3523]: time="2026-07-16T23:19:45.495980294Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Jul 16 23:19:45.496152 containerd[3523]: time="2026-07-16T23:19:45.496151132Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Jul 16 23:19:45.500978 containerd[3523]: time="2026-07-16T23:19:45.497587447Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/6.12.95-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Jul 16 23:19:45.500978 containerd[3523]: time="2026-07-16T23:19:45.500973312Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." type=io.containerd.snapshotter.v1 Jul 16 23:19:45.501248 containerd[3523]: time="2026-07-16T23:19:45.501227289Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.btrfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.btrfs (ext4) must be a btrfs filesystem to be used with the btrfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Jul 16 23:19:45.501248 containerd[3523]: time="2026-07-16T23:19:45.501246728Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Jul 16 23:19:45.501288 containerd[3523]: time="2026-07-16T23:19:45.501257567Z" level=warning msg="failed to load plugin io.containerd.snapshotter.v1.devmapper" error="devmapper not configured" Jul 16 23:19:45.501288 containerd[3523]: time="2026-07-16T23:19:45.501265015Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Jul 16 23:19:45.501353 containerd[3523]: time="2026-07-16T23:19:45.501337771Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Jul 16 23:19:45.501506 containerd[3523]: time="2026-07-16T23:19:45.501486250Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Jul 16 23:19:45.501627 containerd[3523]: time="2026-07-16T23:19:45.501608835Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Jul 16 23:19:45.501627 containerd[3523]: time="2026-07-16T23:19:45.501624106Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Jul 16 23:19:45.501690 containerd[3523]: time="2026-07-16T23:19:45.501677223Z" level=warning msg="could not use snapshotter devmapper in metadata plugin" error="devmapper not configured" Jul 16 23:19:45.501710 containerd[3523]: time="2026-07-16T23:19:45.501689694Z" level=info msg="metadata content store policy set" policy=shared Jul 16 23:19:45.515013 containerd[3523]: time="2026-07-16T23:19:45.514976824Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Jul 16 23:19:45.515013 containerd[3523]: time="2026-07-16T23:19:45.515020838Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Jul 16 23:19:45.515107 containerd[3523]: time="2026-07-16T23:19:45.515031541Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Jul 16 23:19:45.515107 containerd[3523]: time="2026-07-16T23:19:45.515066467Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515107 containerd[3523]: time="2026-07-16T23:19:45.515077498Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515107 containerd[3523]: time="2026-07-16T23:19:45.515086498Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515107 containerd[3523]: time="2026-07-16T23:19:45.515094417Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515412 containerd[3523]: time="2026-07-16T23:19:45.515389352Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515412 containerd[3523]: time="2026-07-16T23:19:45.515410831Z" level=info msg="loading plugin \"io.containerd.service.v1.leases-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515439 containerd[3523]: time="2026-07-16T23:19:45.515422174Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515439 containerd[3523]: time="2026-07-16T23:19:45.515431302Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515466 containerd[3523]: time="2026-07-16T23:19:45.515439669Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Jul 16 23:19:45.515585 containerd[3523]: time="2026-07-16T23:19:45.515570069Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Jul 16 23:19:45.515662 containerd[3523]: time="2026-07-16T23:19:45.515648681Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Jul 16 23:19:45.515824 containerd[3523]: time="2026-07-16T23:19:45.515810983Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Jul 16 23:19:45.515837 containerd[3523]: time="2026-07-16T23:19:45.515832646Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515852 containerd[3523]: time="2026-07-16T23:19:45.515845677Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Jul 16 23:19:45.515890 containerd[3523]: time="2026-07-16T23:19:45.515879331Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515908 containerd[3523]: time="2026-07-16T23:19:45.515891282Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515908 containerd[3523]: time="2026-07-16T23:19:45.515899234Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515908 containerd[3523]: time="2026-07-16T23:19:45.515907154Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515942 containerd[3523]: time="2026-07-16T23:19:45.515914593Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515942 containerd[3523]: time="2026-07-16T23:19:45.515923049Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515942 containerd[3523]: time="2026-07-16T23:19:45.515929928Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515942 containerd[3523]: time="2026-07-16T23:19:45.515936888Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.515993 containerd[3523]: time="2026-07-16T23:19:45.515945535Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Jul 16 23:19:45.516085 containerd[3523]: time="2026-07-16T23:19:45.516069120Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.516099 containerd[3523]: time="2026-07-16T23:19:45.516085383Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.516099 containerd[3523]: time="2026-07-16T23:19:45.516093279Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.516124 containerd[3523]: time="2026-07-16T23:19:45.516101030Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Jul 16 23:19:45.516124 containerd[3523]: time="2026-07-16T23:19:45.516110630Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="no OpenTelemetry endpoint: skip plugin" type=io.containerd.tracing.processor.v1 Jul 16 23:19:45.516124 containerd[3523]: time="2026-07-16T23:19:45.516118293Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Jul 16 23:19:45.516180 containerd[3523]: time="2026-07-16T23:19:45.516149595Z" level=error msg="failed to initialize a tracing processor \"otlp\"" error="no OpenTelemetry endpoint: skip plugin" Jul 16 23:19:45.516180 containerd[3523]: time="2026-07-16T23:19:45.516177610Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Jul 16 23:19:45.516356 containerd[3523]: time="2026-07-16T23:19:45.516319721Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:false SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.6 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Jul 16 23:19:45.516431 containerd[3523]: time="2026-07-16T23:19:45.516363863Z" level=info msg="Connect containerd service" Jul 16 23:19:45.516431 containerd[3523]: time="2026-07-16T23:19:45.516391549Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Jul 16 23:19:45.530700 containerd[3523]: time="2026-07-16T23:19:45.530664134Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Jul 16 23:19:45.531050 containerd[3523]: time="2026-07-16T23:19:45.531025592Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Jul 16 23:19:45.531084 containerd[3523]: time="2026-07-16T23:19:45.531073142Z" level=info msg=serving... address=/run/containerd/containerd.sock Jul 16 23:19:45.531110 containerd[3523]: time="2026-07-16T23:19:45.531087829Z" level=info msg="containerd successfully booted in 0.057254s" Jul 16 23:19:45.536497 containerd[3523]: time="2026-07-16T23:19:45.536457089Z" level=info msg="Start subscribing containerd event" Jul 16 23:19:45.536784 containerd[3523]: time="2026-07-16T23:19:45.536761375Z" level=info msg="Start recovering state" Jul 16 23:19:45.536850 containerd[3523]: time="2026-07-16T23:19:45.536835106Z" level=info msg="Start event monitor" Jul 16 23:19:45.536865 containerd[3523]: time="2026-07-16T23:19:45.536855081Z" level=info msg="Start snapshots syncer" Jul 16 23:19:45.536878 containerd[3523]: time="2026-07-16T23:19:45.536866281Z" level=info msg="Start cni network conf syncer for default" Jul 16 23:19:45.536878 containerd[3523]: time="2026-07-16T23:19:45.536872520Z" level=info msg="Start streaming server" Jul 16 23:19:45.731855 sshd[3563]: Connection closed by authenticating user root 101.96.192.88 port 51568 [preauth] Jul 16 23:19:45.731000 audit[3563]: AUDIT1109 pid=3563 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:45.748590 systemd[1]: sshd@32-15-10.0.0.31:22-101.96.192.88:51568.service: Deactivated successfully. Jul 16 23:19:45.747000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@32-15-10.0.0.31:22-101.96.192.88:51568 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:45.763278 kernel: audit: type=1109 audit(1784243985.731:412): pid=3563 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:45.763304 kernel: audit: type=1131 audit(1784243985.747:413): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@32-15-10.0.0.31:22-101.96.192.88:51568 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:45.896893 systemd[1]: Started sshd@33-16-10.0.0.31:22-101.96.192.88:51570.service - OpenSSH per-connection server daemon (101.96.192.88:51570). Jul 16 23:19:45.895000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@33-16-10.0.0.31:22-101.96.192.88:51570 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:45.915167 kernel: audit: type=1130 audit(1784243985.895:414): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@33-16-10.0.0.31:22-101.96.192.88:51570 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:46.883317 systemd[1]: Starting docker.service - Docker Application Container Engine... Jul 16 23:19:46.889406 (dockerd)[3578]: docker.service: Referenced but unset environment variable evaluates to an empty string: DOCKER_CGROUPS, DOCKER_OPTS, DOCKER_OPT_BIP, DOCKER_OPT_IPMASQ, DOCKER_OPT_MTU Jul 16 23:19:47.960951 sshd[3573]: Connection closed by authenticating user root 101.96.192.88 port 51570 [preauth] Jul 16 23:19:47.960000 audit[3573]: AUDIT1109 pid=3573 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:47.963336 systemd[1]: sshd@33-16-10.0.0.31:22-101.96.192.88:51570.service: Deactivated successfully. Jul 16 23:19:47.962000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@33-16-10.0.0.31:22-101.96.192.88:51570 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:47.992224 kernel: audit: type=1109 audit(1784243987.960:415): pid=3573 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:47.992342 kernel: audit: type=1131 audit(1784243987.962:416): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@33-16-10.0.0.31:22-101.96.192.88:51570 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:48.741245 systemd[1]: Started sshd@34-17-10.0.0.31:22-101.96.192.88:51580.service - OpenSSH per-connection server daemon (101.96.192.88:51580). Jul 16 23:19:48.740000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@34-17-10.0.0.31:22-101.96.192.88:51580 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:48.757368 kernel: audit: type=1130 audit(1784243988.740:417): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@34-17-10.0.0.31:22-101.96.192.88:51580 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:49.386122 sshd[3586]: Connection closed by authenticating user root 101.96.192.88 port 51580 [preauth] Jul 16 23:19:49.385000 audit[3586]: AUDIT1109 pid=3586 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:49.389950 systemd[1]: sshd@34-17-10.0.0.31:22-101.96.192.88:51580.service: Deactivated successfully. Jul 16 23:19:49.389000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@34-17-10.0.0.31:22-101.96.192.88:51580 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:49.416053 kernel: audit: type=1109 audit(1784243989.385:418): pid=3586 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:49.416128 kernel: audit: type=1131 audit(1784243989.389:419): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@34-17-10.0.0.31:22-101.96.192.88:51580 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:49.566802 systemd[1]: Started sshd@35-4115-10.0.0.31:22-101.96.192.88:51582.service - OpenSSH per-connection server daemon (101.96.192.88:51582). Jul 16 23:19:49.565000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@35-4115-10.0.0.31:22-101.96.192.88:51582 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:49.583162 kernel: audit: type=1130 audit(1784243989.565:420): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@35-4115-10.0.0.31:22-101.96.192.88:51582 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:50.218167 sshd[3592]: Connection closed by authenticating user root 101.96.192.88 port 51582 [preauth] Jul 16 23:19:50.217000 audit[3592]: AUDIT1109 pid=3592 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:50.220783 systemd[1]: sshd@35-4115-10.0.0.31:22-101.96.192.88:51582.service: Deactivated successfully. Jul 16 23:19:50.222000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@35-4115-10.0.0.31:22-101.96.192.88:51582 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:50.249237 kernel: audit: type=1109 audit(1784243990.217:421): pid=3592 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:50.249299 kernel: audit: type=1131 audit(1784243990.222:422): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@35-4115-10.0.0.31:22-101.96.192.88:51582 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:50.376807 systemd[1]: Started sshd@36-4116-10.0.0.31:22-101.96.192.88:51598.service - OpenSSH per-connection server daemon (101.96.192.88:51598). Jul 16 23:19:50.375000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@36-4116-10.0.0.31:22-101.96.192.88:51598 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:50.393184 kernel: audit: type=1130 audit(1784243990.375:423): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@36-4116-10.0.0.31:22-101.96.192.88:51598 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:51.315038 sshd[3599]: Connection closed by authenticating user root 101.96.192.88 port 51598 [preauth] Jul 16 23:19:51.314000 audit[3599]: AUDIT1109 pid=3599 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:51.320004 systemd[1]: sshd@36-4116-10.0.0.31:22-101.96.192.88:51598.service: Deactivated successfully. Jul 16 23:19:51.319000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@36-4116-10.0.0.31:22-101.96.192.88:51598 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:51.332152 kernel: audit: type=1109 audit(1784243991.314:424): pid=3599 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:51.959980 systemd[1]: Started sshd@37-4117-10.0.0.31:22-101.96.192.88:51602.service - OpenSSH per-connection server daemon (101.96.192.88:51602). Jul 16 23:19:51.959000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@37-4117-10.0.0.31:22-101.96.192.88:51602 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:53.100314 dockerd[3578]: time="2026-07-16T23:19:53.099717800Z" level=info msg="Starting up" Jul 16 23:19:53.105969 dockerd[3578]: time="2026-07-16T23:19:53.105937267Z" level=info msg="parsed scheme: \"unix\"" module=grpc Jul 16 23:19:53.105969 dockerd[3578]: time="2026-07-16T23:19:53.105962321Z" level=info msg="scheme \"unix\" not registered, fallback to default scheme" module=grpc Jul 16 23:19:53.105969 dockerd[3578]: time="2026-07-16T23:19:53.105980824Z" level=info msg="ccResolverWrapper: sending update to cc: {[{unix:///run/containerd/containerd.sock 0 }] }" module=grpc Jul 16 23:19:53.106103 dockerd[3578]: time="2026-07-16T23:19:53.105989696Z" level=info msg="ClientConn switching balancer to \"pick_first\"" module=grpc Jul 16 23:19:53.128746 dockerd[3578]: time="2026-07-16T23:19:53.128708675Z" level=info msg="parsed scheme: \"unix\"" module=grpc Jul 16 23:19:53.128746 dockerd[3578]: time="2026-07-16T23:19:53.128737521Z" level=info msg="scheme \"unix\" not registered, fallback to default scheme" module=grpc Jul 16 23:19:53.128746 dockerd[3578]: time="2026-07-16T23:19:53.128753416Z" level=info msg="ccResolverWrapper: sending update to cc: {[{unix:///run/containerd/containerd.sock 0 }] }" module=grpc Jul 16 23:19:53.129188 dockerd[3578]: time="2026-07-16T23:19:53.128761288Z" level=info msg="ClientConn switching balancer to \"pick_first\"" module=grpc Jul 16 23:19:53.670461 sshd[3605]: Connection closed by authenticating user root 101.96.192.88 port 51602 [preauth] Jul 16 23:19:53.669000 audit[3605]: AUDIT1109 pid=3605 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:53.676338 kernel: kauditd_printk_skb: 2 callbacks suppressed Jul 16 23:19:53.676445 kernel: audit: type=1109 audit(1784243993.669:427): pid=3605 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:53.676795 systemd[1]: sshd@37-4117-10.0.0.31:22-101.96.192.88:51602.service: Deactivated successfully. Jul 16 23:19:53.676000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@37-4117-10.0.0.31:22-101.96.192.88:51602 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:53.704387 kernel: audit: type=1131 audit(1784243993.676:428): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@37-4117-10.0.0.31:22-101.96.192.88:51602 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:53.837000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@38-18-10.0.0.31:22-101.96.192.88:37474 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:53.838808 systemd[1]: Started sshd@38-18-10.0.0.31:22-101.96.192.88:37474.service - OpenSSH per-connection server daemon (101.96.192.88:37474). Jul 16 23:19:53.855163 kernel: audit: type=1130 audit(1784243993.837:429): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@38-18-10.0.0.31:22-101.96.192.88:37474 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:54.014386 dockerd[3578]: time="2026-07-16T23:19:54.014343059Z" level=info msg="Loading containers: start." Jul 16 23:19:54.083000 audit[3638]: NETFILTER_CFG table=nat:5 family=2 entries=2 op=nft_register_chain pid=3638 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.083000 audit[3638]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=116 a0=3 a1=ffffdb54f060 a2=0 a3=0 items=0 ppid=3578 pid=3638 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.112659 kernel: audit: type=1325 audit(1784243994.083:430): table=nat:5 family=2 entries=2 op=nft_register_chain pid=3638 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.113185 kernel: audit: type=1300 audit(1784243994.083:430): arch=c00000b7 syscall=211 success=yes exit=116 a0=3 a1=ffffdb54f060 a2=0 a3=0 items=0 ppid=3578 pid=3638 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.083000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4E00444F434B4552 Jul 16 23:19:54.122177 kernel: audit: type=1327 audit(1784243994.083:430): proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4E00444F434B4552 Jul 16 23:19:54.095000 audit[3640]: NETFILTER_CFG table=filter:6 family=2 entries=2 op=nft_register_chain pid=3640 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.132412 kernel: audit: type=1325 audit(1784243994.095:431): table=filter:6 family=2 entries=2 op=nft_register_chain pid=3640 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.095000 audit[3640]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=124 a0=3 a1=ffffc5249870 a2=0 a3=0 items=0 ppid=3578 pid=3640 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.152273 kernel: audit: type=1300 audit(1784243994.095:431): arch=c00000b7 syscall=211 success=yes exit=124 a0=3 a1=ffffc5249870 a2=0 a3=0 items=0 ppid=3578 pid=3640 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.095000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B4552 Jul 16 23:19:54.160538 kernel: audit: type=1327 audit(1784243994.095:431): proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B4552 Jul 16 23:19:54.096000 audit[3642]: NETFILTER_CFG table=filter:7 family=2 entries=1 op=nft_register_chain pid=3642 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.170061 kernel: audit: type=1325 audit(1784243994.096:432): table=filter:7 family=2 entries=1 op=nft_register_chain pid=3642 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.096000 audit[3642]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=fffff453f770 a2=0 a3=0 items=0 ppid=3578 pid=3642 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.096000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D49534F4C4154494F4E2D53544147452D31 Jul 16 23:19:54.098000 audit[3644]: NETFILTER_CFG table=filter:8 family=2 entries=1 op=nft_register_chain pid=3644 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.098000 audit[3644]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=fffff475f6e0 a2=0 a3=0 items=0 ppid=3578 pid=3644 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.098000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:19:54.100000 audit[3646]: NETFILTER_CFG table=filter:9 family=2 entries=1 op=nft_register_rule pid=3646 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.100000 audit[3646]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffdc107430 a2=0 a3=0 items=0 ppid=3578 pid=3646 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.100000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4100444F434B45522D49534F4C4154494F4E2D53544147452D31002D6A0052455455524E Jul 16 23:19:54.102000 audit[3648]: NETFILTER_CFG table=filter:10 family=2 entries=1 op=nft_register_rule pid=3648 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.102000 audit[3648]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffe84174c0 a2=0 a3=0 items=0 ppid=3578 pid=3648 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.102000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4100444F434B45522D49534F4C4154494F4E2D53544147452D32002D6A0052455455524E Jul 16 23:19:54.128000 audit[3651]: NETFILTER_CFG table=filter:11 family=2 entries=1 op=nft_register_chain pid=3651 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.128000 audit[3651]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=fffff48a4a60 a2=0 a3=0 items=0 ppid=3578 pid=3651 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.128000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D55534552 Jul 16 23:19:54.151000 audit[3653]: NETFILTER_CFG table=filter:12 family=2 entries=1 op=nft_register_rule pid=3653 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.151000 audit[3653]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=212 a0=3 a1=ffffcb076b80 a2=0 a3=0 items=0 ppid=3578 pid=3653 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.151000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4100444F434B45522D55534552002D6A0052455455524E Jul 16 23:19:54.170000 audit[3655]: NETFILTER_CFG table=filter:13 family=2 entries=2 op=nft_register_chain pid=3655 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.170000 audit[3655]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=336 a0=3 a1=ffffc561fa20 a2=0 a3=0 items=0 ppid=3578 pid=3655 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.170000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D55534552 Jul 16 23:19:54.189000 audit[3659]: NETFILTER_CFG table=filter:14 family=2 entries=1 op=nft_unregister_rule pid=3659 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.189000 audit[3659]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=216 a0=3 a1=ffffc6851790 a2=0 a3=0 items=0 ppid=3578 pid=3659 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.189000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4400464F5257415244002D6A00444F434B45522D55534552 Jul 16 23:19:54.198000 audit[3660]: NETFILTER_CFG table=filter:15 family=2 entries=1 op=nft_register_rule pid=3660 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.198000 audit[3660]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=224 a0=3 a1=ffffcfac8a40 a2=0 a3=0 items=0 ppid=3578 pid=3660 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.198000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D55534552 Jul 16 23:19:54.235932 kernel: Initializing XFRM netlink socket Jul 16 23:19:54.253745 dockerd[3578]: time="2026-07-16T23:19:54.253700980Z" level=info msg="Default bridge (docker0) is assigned with an IP address 172.17.0.0/16. Daemon option --bip can be used to set a preferred IP address" Jul 16 23:19:54.342000 audit[3668]: NETFILTER_CFG table=nat:16 family=2 entries=2 op=nft_register_chain pid=3668 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.342000 audit[3668]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=520 a0=3 a1=ffffd90b3440 a2=0 a3=0 items=0 ppid=3578 pid=3668 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.342000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4900504F5354524F5554494E47002D73003137322E31372E302E302F31360000002D6F00646F636B657230002D6A004D415351554552414445 Jul 16 23:19:54.373000 audit[3671]: NETFILTER_CFG table=nat:17 family=2 entries=1 op=nft_register_rule pid=3671 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.373000 audit[3671]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=288 a0=3 a1=ffffc392d6e0 a2=0 a3=0 items=0 ppid=3578 pid=3671 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.373000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4900444F434B4552002D6900646F636B657230002D6A0052455455524E Jul 16 23:19:54.375000 audit[3674]: NETFILTER_CFG table=filter:18 family=2 entries=1 op=nft_register_rule pid=3674 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.375000 audit[3674]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=376 a0=3 a1=ffffd2d7fdd0 a2=0 a3=0 items=0 ppid=3578 pid=3674 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.375000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6900646F636B657230002D6F00646F636B657230002D6A00414343455054 Jul 16 23:19:54.377000 audit[3676]: NETFILTER_CFG table=filter:19 family=2 entries=1 op=nft_register_rule pid=3676 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.377000 audit[3676]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=376 a0=3 a1=ffffd505e970 a2=0 a3=0 items=0 ppid=3578 pid=3676 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.377000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6900646F636B6572300000002D6F00646F636B657230002D6A00414343455054 Jul 16 23:19:54.379000 audit[3678]: NETFILTER_CFG table=nat:20 family=2 entries=2 op=nft_register_chain pid=3678 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.379000 audit[3678]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=384 a0=3 a1=ffffc4cb30f0 a2=0 a3=0 items=0 ppid=3578 pid=3678 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.379000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4100505245524F5554494E47002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B4552 Jul 16 23:19:54.381000 audit[3680]: NETFILTER_CFG table=nat:21 family=2 entries=2 op=nft_register_chain pid=3680 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.381000 audit[3680]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=472 a0=3 a1=ffffcd8f92e0 a2=0 a3=0 items=0 ppid=3578 pid=3680 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.381000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D41004F5554505554002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B45520000002D2D647374003132372E302E302E302F38 Jul 16 23:19:54.383000 audit[3682]: NETFILTER_CFG table=filter:22 family=2 entries=1 op=nft_register_rule pid=3682 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.383000 audit[3682]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=304 a0=3 a1=ffffc84c19c0 a2=0 a3=0 items=0 ppid=3578 pid=3682 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.383000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6F00646F636B657230002D6A00444F434B4552 Jul 16 23:19:54.385000 audit[3684]: NETFILTER_CFG table=filter:23 family=2 entries=1 op=nft_register_rule pid=3684 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.385000 audit[3684]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=508 a0=3 a1=ffffd41aa490 a2=0 a3=0 items=0 ppid=3578 pid=3684 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.385000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6F00646F636B657230002D6D00636F6E6E747261636B002D2D637473746174650052454C415445442C45535441424C4953484544002D6A00414343455054 Jul 16 23:19:54.386000 audit[3686]: NETFILTER_CFG table=filter:24 family=2 entries=1 op=nft_register_rule pid=3686 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.386000 audit[3686]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=240 a0=3 a1=ffffc546fbd0 a2=0 a3=0 items=0 ppid=3578 pid=3686 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.386000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D31 Jul 16 23:19:54.388000 audit[3688]: NETFILTER_CFG table=filter:25 family=2 entries=1 op=nft_register_rule pid=3688 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.388000 audit[3688]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=428 a0=3 a1=ffffde28b2d0 a2=0 a3=0 items=0 ppid=3578 pid=3688 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.388000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4900444F434B45522D49534F4C4154494F4E2D53544147452D31002D6900646F636B6572300000002D6F00646F636B657230002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:19:54.390000 audit[3690]: NETFILTER_CFG table=filter:26 family=2 entries=1 op=nft_register_rule pid=3690 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.390000 audit[3690]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffc7326350 a2=0 a3=0 items=0 ppid=3578 pid=3690 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.390000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4900444F434B45522D49534F4C4154494F4E2D53544147452D32002D6F00646F636B657230002D6A0044524F50 Jul 16 23:19:54.391969 systemd-networkd[2086]: docker0: Link UP Jul 16 23:19:54.415000 audit[3694]: NETFILTER_CFG table=filter:27 family=2 entries=1 op=nft_unregister_rule pid=3694 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.415000 audit[3694]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffdded2ed0 a2=0 a3=0 items=0 ppid=3578 pid=3694 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.415000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4400464F5257415244002D6A00444F434B45522D55534552 Jul 16 23:19:54.420000 audit[3695]: NETFILTER_CFG table=filter:28 family=2 entries=1 op=nft_register_rule pid=3695 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:19:54.420000 audit[3695]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=224 a0=3 a1=ffffca334a40 a2=0 a3=0 items=0 ppid=3578 pid=3695 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:54.420000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D55534552 Jul 16 23:19:54.422339 dockerd[3578]: time="2026-07-16T23:19:54.422310407Z" level=info msg="Loading containers: done." Jul 16 23:19:54.526547 systemd[1]: var-lib-docker-overlay2-opaque\x2dbug\x2dcheck3410139111-merged.mount: Deactivated successfully. Jul 16 23:19:54.586077 dockerd[3578]: time="2026-07-16T23:19:54.585547629Z" level=warning msg="Not using native diff for overlay2, this may cause degraded performance for building images: kernel has CONFIG_OVERLAY_FS_REDIRECT_DIR enabled" storage-driver=overlay2 Jul 16 23:19:54.586077 dockerd[3578]: time="2026-07-16T23:19:54.585749121Z" level=info msg="Docker daemon" commit=3056208 graphdriver(s)=overlay2 version=20.10.21 Jul 16 23:19:54.586077 dockerd[3578]: time="2026-07-16T23:19:54.585868794Z" level=info msg="Daemon has completed initialization" Jul 16 23:19:54.617411 systemd[1]: Started docker.service - Docker Application Container Engine. Jul 16 23:19:54.616000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=docker comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:54.624307 dockerd[3578]: time="2026-07-16T23:19:54.624187388Z" level=info msg="API listen on /run/docker.sock" Jul 16 23:19:54.920292 sshd[3614]: Connection closed by authenticating user root 101.96.192.88 port 37474 [preauth] Jul 16 23:19:54.919000 audit[3614]: AUDIT1109 pid=3614 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:54.920000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@38-18-10.0.0.31:22-101.96.192.88:37474 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:54.921812 systemd[1]: sshd@38-18-10.0.0.31:22-101.96.192.88:37474.service: Deactivated successfully. Jul 16 23:19:55.079000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@39-19-10.0.0.31:22-101.96.192.88:37482 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:55.080006 systemd[1]: Started sshd@39-19-10.0.0.31:22-101.96.192.88:37482.service - OpenSSH per-connection server daemon (101.96.192.88:37482). Jul 16 23:19:55.704053 sshd[3716]: Connection closed by authenticating user root 101.96.192.88 port 37482 [preauth] Jul 16 23:19:55.703000 audit[3716]: AUDIT1109 pid=3716 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:55.705937 systemd[1]: sshd@39-19-10.0.0.31:22-101.96.192.88:37482.service: Deactivated successfully. Jul 16 23:19:55.705000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@39-19-10.0.0.31:22-101.96.192.88:37482 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:55.753438 systemd[1]: var-lib-docker-overlay2-4284767775af37a6a009e08b6fe9b9864f536657110c6920d8c03d407e29b6e4\x2dinit-merged.mount: Deactivated successfully. Jul 16 23:19:55.798537 systemd[1]: var-lib-docker-overlay2-4284767775af37a6a009e08b6fe9b9864f536657110c6920d8c03d407e29b6e4-merged.mount: Deactivated successfully. Jul 16 23:19:55.845745 kernel: docker0: port 1(veth7fa6217) entered blocking state Jul 16 23:19:55.845858 kernel: docker0: port 1(veth7fa6217) entered disabled state Jul 16 23:19:55.848687 kernel: veth7fa6217: entered allmulticast mode Jul 16 23:19:55.851601 kernel: veth7fa6217: entered promiscuous mode Jul 16 23:19:55.837000 audit: ANOM_PROMISCUOUS dev=veth7fa6217 prom=256 old_prom=0 auid=4294967295 uid=0 gid=0 ses=4294967295 Jul 16 23:19:55.837000 audit[3578]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=40 a0=f a1=4000a6a7e0 a2=28 a3=0 items=0 ppid=1 pid=3578 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dockerd" exe="/usr/bin/dockerd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:55.837000 audit: PROCTITLE proctitle=2F7573722F62696E2F646F636B657264002D2D686F73743D66643A2F2F002D2D636F6E7461696E6572643D2F72756E2F636F6E7461696E6572642F636F6E7461696E6572642E736F636B002D2D73656C696E75782D656E61626C65643D74727565 Jul 16 23:19:55.855744 systemd-networkd[2086]: veth7fa6217: Link UP Jul 16 23:19:55.996632 containerd[3523]: time="2026-07-16T23:19:55.996185612Z" level=info msg="loading plugin \"io.containerd.event.v1.publisher\"..." runtime=io.containerd.runc.v2 type=io.containerd.event.v1 Jul 16 23:19:55.996632 containerd[3523]: time="2026-07-16T23:19:55.996229505Z" level=info msg="loading plugin \"io.containerd.internal.v1.shutdown\"..." runtime=io.containerd.runc.v2 type=io.containerd.internal.v1 Jul 16 23:19:55.997257 containerd[3523]: time="2026-07-16T23:19:55.996237128Z" level=info msg="loading plugin \"io.containerd.ttrpc.v1.task\"..." runtime=io.containerd.runc.v2 type=io.containerd.ttrpc.v1 Jul 16 23:19:55.997257 containerd[3523]: time="2026-07-16T23:19:55.996381296Z" level=info msg="starting signal loop" namespace=moby path=/run/containerd/io.containerd.runtime.v2.task/moby/cab7b26286bb20eeb3c5be73b09af7c506b1ea8883412297a09a96e97a02da25 pid=3748 runtime=io.containerd.runc.v2 Jul 16 23:19:56.022295 systemd[1]: Started docker-cab7b26286bb20eeb3c5be73b09af7c506b1ea8883412297a09a96e97a02da25.scope - libcontainer container cab7b26286bb20eeb3c5be73b09af7c506b1ea8883412297a09a96e97a02da25. Jul 16 23:19:56.030000 audit: BPF prog-id=118 op=LOAD Jul 16 23:19:56.030000 audit: BPF prog-id=119 op=LOAD Jul 16 23:19:56.030000 audit[3758]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001c38e0 a2=78 a3=0 items=0 ppid=3748 pid=3758 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:56.030000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F63616237623236323836626232306565623363356265373362 Jul 16 23:19:56.030000 audit: BPF prog-id=120 op=LOAD Jul 16 23:19:56.030000 audit[3758]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=17 a0=5 a1=40001c3670 a2=78 a3=0 items=0 ppid=3748 pid=3758 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:56.030000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F63616237623236323836626232306565623363356265373362 Jul 16 23:19:56.030000 audit: BPF prog-id=120 op=UNLOAD Jul 16 23:19:56.030000 audit[3758]: SYSCALL arch=c00000b7 syscall=57 success=yes exit=0 a0=11 a1=0 a2=0 a3=0 items=0 ppid=3748 pid=3758 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:56.030000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F63616237623236323836626232306565623363356265373362 Jul 16 23:19:56.030000 audit: BPF prog-id=119 op=UNLOAD Jul 16 23:19:56.030000 audit[3758]: SYSCALL arch=c00000b7 syscall=57 success=yes exit=0 a0=f a1=0 a2=0 a3=0 items=0 ppid=3748 pid=3758 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:56.030000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F63616237623236323836626232306565623363356265373362 Jul 16 23:19:56.030000 audit: BPF prog-id=121 op=LOAD Jul 16 23:19:56.030000 audit[3758]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=15 a0=5 a1=40001c3b40 a2=78 a3=0 items=0 ppid=3748 pid=3758 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:56.030000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F63616237623236323836626232306565623363356265373362 Jul 16 23:19:56.088037 kernel: eth0: renamed from veth882811d Jul 16 23:19:56.088151 kernel: docker0: port 1(veth7fa6217) entered blocking state Jul 16 23:19:56.092248 kernel: docker0: port 1(veth7fa6217) entered forwarding state Jul 16 23:19:56.092798 systemd-networkd[2086]: veth7fa6217: Gained carrier Jul 16 23:19:56.093184 systemd-networkd[2086]: docker0: Gained carrier Jul 16 23:19:56.110192 systemd[1]: docker-cab7b26286bb20eeb3c5be73b09af7c506b1ea8883412297a09a96e97a02da25.scope: Deactivated successfully. Jul 16 23:19:56.109000 audit: BPF prog-id=118 op=UNLOAD Jul 16 23:19:56.113871 containerd[3523]: time="2026-07-16T23:19:56.113795301Z" level=warning msg="error from *cgroupsv2.Manager.EventChan" error="failed to add inotify watch for \"/sys/fs/cgroup/system.slice/docker-cab7b26286bb20eeb3c5be73b09af7c506b1ea8883412297a09a96e97a02da25.scope/memory.events\": no such file or directory" Jul 16 23:19:56.134308 dockerd[3578]: time="2026-07-16T23:19:56.134253648Z" level=info msg="ignoring event" container=cab7b26286bb20eeb3c5be73b09af7c506b1ea8883412297a09a96e97a02da25 module=libcontainerd namespace=moby topic=/tasks/delete type="*events.TaskDelete" Jul 16 23:19:56.135287 containerd[3523]: time="2026-07-16T23:19:56.135097622Z" level=info msg="shim disconnected" id=cab7b26286bb20eeb3c5be73b09af7c506b1ea8883412297a09a96e97a02da25 Jul 16 23:19:56.135287 containerd[3523]: time="2026-07-16T23:19:56.135174185Z" level=warning msg="cleaning up after shim disconnected" id=cab7b26286bb20eeb3c5be73b09af7c506b1ea8883412297a09a96e97a02da25 namespace=moby Jul 16 23:19:56.135287 containerd[3523]: time="2026-07-16T23:19:56.135184408Z" level=info msg="cleaning up dead shim" Jul 16 23:19:56.140332 containerd[3523]: time="2026-07-16T23:19:56.140298917Z" level=warning msg="cleanup warnings time=\"2026-07-16T23:19:56Z\" level=info msg=\"starting signal loop\" namespace=moby pid=3800 runtime=io.containerd.runc.v2\n" Jul 16 23:19:56.155155 kernel: veth882811d: renamed from eth0 Jul 16 23:19:56.155245 kernel: docker0: port 1(veth7fa6217) entered disabled state Jul 16 23:19:56.155461 systemd-networkd[2086]: veth7fa6217: Lost carrier Jul 16 23:19:56.168568 systemd-networkd[2086]: veth7fa6217: Link DOWN Jul 16 23:19:56.174159 kernel: docker0: port 1(veth7fa6217) entered disabled state Jul 16 23:19:56.182821 kernel: veth7fa6217 (unregistering): left allmulticast mode Jul 16 23:19:56.182890 kernel: veth7fa6217 (unregistering): left promiscuous mode Jul 16 23:19:56.167000 audit: ANOM_PROMISCUOUS dev=veth7fa6217 prom=0 old_prom=256 auid=4294967295 uid=0 gid=0 ses=4294967295 Jul 16 23:19:56.186855 kernel: docker0: port 1(veth7fa6217) entered disabled state Jul 16 23:19:56.167000 audit[3578]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=32 a0=f a1=40009f44a0 a2=20 a3=0 items=0 ppid=1 pid=3578 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dockerd" exe="/usr/bin/dockerd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:56.167000 audit: PROCTITLE proctitle=2F7573722F62696E2F646F636B657264002D2D686F73743D66643A2F2F002D2D636F6E7461696E6572643D2F72756E2F636F6E7461696E6572642F636F6E7461696E6572642E736F636B002D2D73656C696E75782D656E61626C65643D74727565 Jul 16 23:19:56.207000 audit: BPF prog-id=121 op=UNLOAD Jul 16 23:19:56.349000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@40-20-10.0.0.31:22-101.96.192.88:37494 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:56.350389 systemd[1]: Started sshd@40-20-10.0.0.31:22-101.96.192.88:37494.service - OpenSSH per-connection server daemon (101.96.192.88:37494). Jul 16 23:19:56.409569 sshd[3547]: Connection closed by 20.103.240.199 port 45010 Jul 16 23:19:56.410014 sshd-session[3533]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:56.409000 audit[3533]: AUDIT1106 pid=3533 uid=0 auid=500 ses=14 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:56.410000 audit[3533]: AUDIT1104 pid=3533 uid=0 auid=500 ses=14 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:56.413724 systemd[1]: sshd@29-13-10.0.0.31:22-20.103.240.199:45010.service: Deactivated successfully. Jul 16 23:19:56.415000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@29-13-10.0.0.31:22-20.103.240.199:45010 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:56.418098 systemd[1]: session-14.scope: Deactivated successfully. Jul 16 23:19:56.419936 systemd-logind[2301]: Session 14 logged out. Waiting for processes to exit. Jul 16 23:19:56.421034 systemd-logind[2301]: Removed session 14. Jul 16 23:19:56.571580 systemd[1]: Started sshd@41-21-10.0.0.31:22-20.103.240.199:35950.service - OpenSSH per-connection server daemon (20.103.240.199:35950). Jul 16 23:19:56.570000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@41-21-10.0.0.31:22-20.103.240.199:35950 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:56.750106 systemd[1]: var-lib-docker-overlay2-4284767775af37a6a009e08b6fe9b9864f536657110c6920d8c03d407e29b6e4-merged.mount: Deactivated successfully. Jul 16 23:19:56.872387 systemd-networkd[2086]: docker0: Lost carrier Jul 16 23:19:56.980152 sshd[3815]: Connection closed by authenticating user root 101.96.192.88 port 37494 [preauth] Jul 16 23:19:56.979000 audit[3815]: AUDIT1109 pid=3815 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:56.982345 systemd[1]: sshd@40-20-10.0.0.31:22-101.96.192.88:37494.service: Deactivated successfully. Jul 16 23:19:56.981000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@40-20-10.0.0.31:22-101.96.192.88:37494 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:57.140000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@42-22-10.0.0.31:22-101.96.192.88:37504 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:57.141189 systemd[1]: Started sshd@42-22-10.0.0.31:22-101.96.192.88:37504.service - OpenSSH per-connection server daemon (101.96.192.88:37504). Jul 16 23:19:57.337000 audit[3822]: AUDIT1101 pid=3822 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:57.339301 sshd[3822]: Accepted publickey for core from 20.103.240.199 port 35950 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:57.339000 audit[3822]: AUDIT1103 pid=3822 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:57.339000 audit[3822]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=ffffd0ff5930 a2=3 a3=0 items=0 ppid=1 pid=3822 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=15 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:57.339000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:19:57.340742 sshd-session[3822]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:57.344627 systemd-logind[2301]: New session '15' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:57.353278 systemd[1]: Started session-15.scope - Session 15 of User core. Jul 16 23:19:57.354000 audit[3822]: AUDIT1105 pid=3822 uid=0 auid=500 ses=15 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:57.355000 audit[3832]: AUDIT1103 pid=3832 uid=0 auid=500 ses=15 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:57.512345 systemd-networkd[2086]: docker0: Gained IPv6LL Jul 16 23:19:57.774254 sshd[3828]: Connection closed by authenticating user root 101.96.192.88 port 37504 [preauth] Jul 16 23:19:57.774000 audit[3828]: AUDIT1109 pid=3828 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:57.776583 systemd[1]: sshd@42-22-10.0.0.31:22-101.96.192.88:37504.service: Deactivated successfully. Jul 16 23:19:57.775000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@42-22-10.0.0.31:22-101.96.192.88:37504 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:57.887189 sshd[3832]: Connection closed by 20.103.240.199 port 35950 Jul 16 23:19:57.887794 sshd-session[3822]: pam_unix(sshd:session): session closed for user core Jul 16 23:19:57.887000 audit[3822]: AUDIT1106 pid=3822 uid=0 auid=500 ses=15 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:57.887000 audit[3822]: AUDIT1104 pid=3822 uid=0 auid=500 ses=15 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:57.891069 systemd[1]: sshd@41-21-10.0.0.31:22-20.103.240.199:35950.service: Deactivated successfully. Jul 16 23:19:57.890000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@41-21-10.0.0.31:22-20.103.240.199:35950 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:57.893361 systemd[1]: session-15.scope: Deactivated successfully. Jul 16 23:19:57.894482 systemd-logind[2301]: Session 15 logged out. Waiting for processes to exit. Jul 16 23:19:57.896539 systemd-logind[2301]: Removed session 15. Jul 16 23:19:58.044000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@43-23-10.0.0.31:22-20.103.240.199:35952 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:58.045559 systemd[1]: Started sshd@43-23-10.0.0.31:22-20.103.240.199:35952.service - OpenSSH per-connection server daemon (20.103.240.199:35952). Jul 16 23:19:58.408000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@44-24-10.0.0.31:22-101.96.192.88:37506 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:58.409789 systemd[1]: Started sshd@44-24-10.0.0.31:22-101.96.192.88:37506.service - OpenSSH per-connection server daemon (101.96.192.88:37506). Jul 16 23:19:58.809000 audit[3843]: AUDIT1101 pid=3843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:58.813533 kernel: kauditd_printk_skb: 117 callbacks suppressed Jul 16 23:19:58.813597 kernel: audit: type=1101 audit(1784243998.809:490): pid=3843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:58.814419 sshd[3843]: Accepted publickey for core from 20.103.240.199 port 35952 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:19:58.830000 audit[3843]: AUDIT1103 pid=3843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:58.831835 sshd-session[3843]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:19:58.847183 kernel: audit: type=1103 audit(1784243998.830:491): pid=3843 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:58.857038 kernel: audit: type=1006 audit(1784243998.830:492): pid=3843 uid=0 subj=system_u:system_r:kernel_t:s0 old-auid=4294967295 auid=500 tty=(none) old-ses=4294967295 ses=16 res=1 Jul 16 23:19:58.830000 audit[3843]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=fffffac24fc0 a2=3 a3=0 items=0 ppid=1 pid=3843 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=16 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:58.860122 systemd-logind[2301]: New session '16' of user 'core' with class 'user' and type 'tty'. Jul 16 23:19:58.875596 kernel: audit: type=1300 audit(1784243998.830:492): arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=fffffac24fc0 a2=3 a3=0 items=0 ppid=1 pid=3843 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=16 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:19:58.830000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:19:58.883273 kernel: audit: type=1327 audit(1784243998.830:492): proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:19:58.885302 systemd[1]: Started session-16.scope - Session 16 of User core. Jul 16 23:19:58.887000 audit[3843]: AUDIT1105 pid=3843 uid=0 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:58.910181 kernel: audit: type=1105 audit(1784243998.887:493): pid=3843 uid=0 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:58.909000 audit[3851]: AUDIT1103 pid=3851 uid=0 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:58.927154 kernel: audit: type=1103 audit(1784243998.909:494): pid=3851 uid=0 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:19:59.460160 sshd[3847]: Connection closed by authenticating user root 101.96.192.88 port 37506 [preauth] Jul 16 23:19:59.460000 audit[3847]: AUDIT1109 pid=3847 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:59.476000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@44-24-10.0.0.31:22-101.96.192.88:37506 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:59.476419 systemd[1]: sshd@44-24-10.0.0.31:22-101.96.192.88:37506.service: Deactivated successfully. Jul 16 23:19:59.491264 kernel: audit: type=1109 audit(1784243999.460:495): pid=3847 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:19:59.491344 kernel: audit: type=1131 audit(1784243999.476:496): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@44-24-10.0.0.31:22-101.96.192.88:37506 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:59.621000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@45-4118-10.0.0.31:22-101.96.192.88:37518 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:19:59.621399 systemd[1]: Started sshd@45-4118-10.0.0.31:22-101.96.192.88:37518.service - OpenSSH per-connection server daemon (101.96.192.88:37518). Jul 16 23:19:59.637187 kernel: audit: type=1130 audit(1784243999.621:497): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@45-4118-10.0.0.31:22-101.96.192.88:37518 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:00.268000 audit[3861]: AUDIT1109 pid=3861 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:00.269420 sshd[3861]: Connection closed by authenticating user root 101.96.192.88 port 37518 [preauth] Jul 16 23:20:00.271453 systemd[1]: sshd@45-4118-10.0.0.31:22-101.96.192.88:37518.service: Deactivated successfully. Jul 16 23:20:00.271000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@45-4118-10.0.0.31:22-101.96.192.88:37518 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:00.431621 systemd[1]: Started sshd@46-4119-10.0.0.31:22-101.96.192.88:37522.service - OpenSSH per-connection server daemon (101.96.192.88:37522). Jul 16 23:20:00.431000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@46-4119-10.0.0.31:22-101.96.192.88:37522 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:01.980556 sshd[3867]: Connection closed by authenticating user root 101.96.192.88 port 37522 [preauth] Jul 16 23:20:01.979000 audit[3867]: AUDIT1109 pid=3867 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:01.982000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@46-4119-10.0.0.31:22-101.96.192.88:37522 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:01.983385 systemd[1]: sshd@46-4119-10.0.0.31:22-101.96.192.88:37522.service: Deactivated successfully. Jul 16 23:20:03.074000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@47-4120-10.0.0.31:22-101.96.192.88:37524 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:03.075413 systemd[1]: Started sshd@47-4120-10.0.0.31:22-101.96.192.88:37524.service - OpenSSH per-connection server daemon (101.96.192.88:37524). Jul 16 23:20:04.123152 sshd[3898]: Connection closed by authenticating user root 101.96.192.88 port 37524 [preauth] Jul 16 23:20:04.124000 audit[3898]: AUDIT1109 pid=3898 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:04.130254 kernel: kauditd_printk_skb: 6 callbacks suppressed Jul 16 23:20:04.130292 kernel: audit: type=1109 audit(1784244004.124:504): pid=3898 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:04.130709 systemd[1]: sshd@47-4120-10.0.0.31:22-101.96.192.88:37524.service: Deactivated successfully. Jul 16 23:20:04.128000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@47-4120-10.0.0.31:22-101.96.192.88:37524 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:04.159308 kernel: audit: type=1131 audit(1784244004.128:505): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@47-4120-10.0.0.31:22-101.96.192.88:37524 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:04.757000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@48-4121-10.0.0.31:22-101.96.192.88:58142 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:04.758181 systemd[1]: Started sshd@48-4121-10.0.0.31:22-101.96.192.88:58142.service - OpenSSH per-connection server daemon (101.96.192.88:58142). Jul 16 23:20:04.774161 kernel: audit: type=1130 audit(1784244004.757:506): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@48-4121-10.0.0.31:22-101.96.192.88:58142 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.085846 sudo[3852]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/mv docker.raw containerd.raw /etc/extensions/ Jul 16 23:20:05.084000 audit[3852]: AUDIT1101 pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.086089 sudo[3852]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:20:05.084000 audit[3852]: AUDIT1110 pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.114449 kernel: audit: type=1101 audit(1784244005.084:507): pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.114535 kernel: audit: type=1110 audit(1784244005.084:508): pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.084000 audit[3852]: AUDIT1105 pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.129499 kernel: audit: type=1105 audit(1784244005.084:509): pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.220990 sudo[3852]: pam_unix(sudo:session): session closed for user root Jul 16 23:20:05.220000 audit[3852]: AUDIT1106 pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.220000 audit[3852]: AUDIT1104 pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.249892 kernel: audit: type=1106 audit(1784244005.220:510): pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.249934 kernel: audit: type=1104 audit(1784244005.220:511): pid=3852 uid=500 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.383247 sshd[3851]: Connection closed by 20.103.240.199 port 35952 Jul 16 23:20:05.383379 sshd-session[3843]: pam_unix(sshd:session): session closed for user core Jul 16 23:20:05.382000 audit[3843]: AUDIT1106 pid=3843 uid=0 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:05.382000 audit[3843]: AUDIT1104 pid=3843 uid=0 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:05.422410 systemd[1]: sshd@43-23-10.0.0.31:22-20.103.240.199:35952.service: Deactivated successfully. Jul 16 23:20:05.421000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@43-23-10.0.0.31:22-20.103.240.199:35952 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.422000 audit[3924]: AUDIT1109 pid=3924 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:05.425433 kernel: audit: type=1106 audit(1784244005.382:512): pid=3843 uid=0 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:05.425459 sshd[3924]: Connection closed by authenticating user root 101.96.192.88 port 58142 [preauth] Jul 16 23:20:05.425110 systemd[1]: session-16.scope: Deactivated successfully. Jul 16 23:20:05.425639 kernel: audit: type=1104 audit(1784244005.382:513): pid=3843 uid=0 auid=500 ses=16 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:05.426371 systemd[1]: session-16.scope: Consumed 2.427s CPU time over 6.540s wall clock time, 432.1M memory peak. Jul 16 23:20:05.427229 systemd[1]: sshd@48-4121-10.0.0.31:22-101.96.192.88:58142.service: Deactivated successfully. Jul 16 23:20:05.426000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@48-4121-10.0.0.31:22-101.96.192.88:58142 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.429514 systemd-logind[2301]: Session 16 logged out. Waiting for processes to exit. Jul 16 23:20:05.432877 systemd-logind[2301]: Removed session 16. Jul 16 23:20:05.556000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@49-4122-10.0.0.31:22-20.103.240.199:52408 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:05.558019 systemd[1]: Started sshd@49-4122-10.0.0.31:22-20.103.240.199:52408.service - OpenSSH per-connection server daemon (20.103.240.199:52408). Jul 16 23:20:06.298000 audit[3937]: AUDIT1101 pid=3937 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:06.299894 sshd[3937]: Accepted publickey for core from 20.103.240.199 port 52408 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:20:06.299000 audit[3937]: AUDIT1103 pid=3937 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:06.299000 audit[3937]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=ffffd3fb51d0 a2=3 a3=0 items=0 ppid=1 pid=3937 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=17 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:06.299000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:20:06.301474 sshd-session[3937]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:20:06.306034 systemd-logind[2301]: New session '17' of user 'core' with class 'user' and type 'tty'. Jul 16 23:20:06.315319 systemd[1]: Started session-17.scope - Session 17 of User core. Jul 16 23:20:06.316000 audit[3937]: AUDIT1105 pid=3937 uid=0 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:06.317000 audit[3941]: AUDIT1103 pid=3941 uid=0 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:06.586000 audit[3943]: AUDIT1101 pid=3943 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:06.588100 sudo[3943]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/systemctl restart systemd-sysext Jul 16 23:20:06.587000 audit[3943]: AUDIT1110 pid=3943 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:06.587000 audit[3943]: AUDIT1105 pid=3943 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:06.588372 sudo[3943]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:20:06.594596 systemd[1]: Stopping systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/... Jul 16 23:20:06.614213 (sd-unmerge)[3947]: Unmerged '/usr'. Jul 16 23:20:06.618290 systemd[1]: Reload requested from client PID 3946 ('systemd-sysext') (unit systemd-sysext.service)... Jul 16 23:20:06.618432 systemd[1]: Reloading... Jul 16 23:20:06.711267 zram_generator::config[4005]: No configuration found. Jul 16 23:20:06.909810 systemd[1]: docker.socket: Unit configuration changed while unit was running, and no socket file descriptors are open. Unit not functional until restarted. Jul 16 23:20:06.910791 systemd[1]: Reloading finished in 292 ms. Jul 16 23:20:06.918000 audit: BPF prog-id=122 op=LOAD Jul 16 23:20:06.918000 audit: BPF prog-id=98 op=UNLOAD Jul 16 23:20:06.918000 audit: BPF prog-id=123 op=LOAD Jul 16 23:20:06.918000 audit: BPF prog-id=124 op=LOAD Jul 16 23:20:06.918000 audit: BPF prog-id=99 op=UNLOAD Jul 16 23:20:06.918000 audit: BPF prog-id=100 op=UNLOAD Jul 16 23:20:06.919000 audit: BPF prog-id=125 op=LOAD Jul 16 23:20:06.919000 audit: BPF prog-id=101 op=UNLOAD Jul 16 23:20:06.919000 audit: BPF prog-id=126 op=LOAD Jul 16 23:20:06.919000 audit: BPF prog-id=127 op=LOAD Jul 16 23:20:06.919000 audit: BPF prog-id=102 op=UNLOAD Jul 16 23:20:06.919000 audit: BPF prog-id=103 op=UNLOAD Jul 16 23:20:06.919000 audit: BPF prog-id=128 op=LOAD Jul 16 23:20:06.919000 audit: BPF prog-id=129 op=LOAD Jul 16 23:20:06.919000 audit: BPF prog-id=104 op=UNLOAD Jul 16 23:20:06.919000 audit: BPF prog-id=105 op=UNLOAD Jul 16 23:20:06.919000 audit: BPF prog-id=130 op=LOAD Jul 16 23:20:06.919000 audit: BPF prog-id=106 op=UNLOAD Jul 16 23:20:06.920000 audit: BPF prog-id=131 op=LOAD Jul 16 23:20:06.920000 audit: BPF prog-id=107 op=UNLOAD Jul 16 23:20:06.920000 audit: BPF prog-id=132 op=LOAD Jul 16 23:20:06.920000 audit: BPF prog-id=133 op=LOAD Jul 16 23:20:06.920000 audit: BPF prog-id=108 op=UNLOAD Jul 16 23:20:06.920000 audit: BPF prog-id=109 op=UNLOAD Jul 16 23:20:06.922000 audit: BPF prog-id=134 op=LOAD Jul 16 23:20:06.922000 audit: BPF prog-id=111 op=UNLOAD Jul 16 23:20:06.922000 audit: BPF prog-id=135 op=LOAD Jul 16 23:20:06.922000 audit: BPF prog-id=136 op=LOAD Jul 16 23:20:06.922000 audit: BPF prog-id=112 op=UNLOAD Jul 16 23:20:06.922000 audit: BPF prog-id=113 op=UNLOAD Jul 16 23:20:06.949000 audit: BPF prog-id=137 op=LOAD Jul 16 23:20:06.949000 audit: BPF prog-id=114 op=UNLOAD Jul 16 23:20:06.949000 audit: BPF prog-id=138 op=LOAD Jul 16 23:20:06.949000 audit: BPF prog-id=115 op=UNLOAD Jul 16 23:20:06.949000 audit: BPF prog-id=139 op=LOAD Jul 16 23:20:06.949000 audit: BPF prog-id=140 op=LOAD Jul 16 23:20:06.949000 audit: BPF prog-id=116 op=UNLOAD Jul 16 23:20:06.949000 audit: BPF prog-id=117 op=UNLOAD Jul 16 23:20:06.989155 systemd[1]: systemd-sysext.service: Deactivated successfully. Jul 16 23:20:06.989570 systemd[1]: Stopped systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/. Jul 16 23:20:06.988000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:06.996416 systemd[1]: Starting systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/... Jul 16 23:20:07.010345 kernel: loop6: detected capacity change from 0 to 342008 Jul 16 23:20:07.443936 kernel: EXT4-fs (loop6): write access unavailable, skipping orphan cleanup Jul 16 23:20:07.444091 kernel: EXT4-fs (loop6): mounted filesystem 6aec1d23-8a1e-429b-bd34-e9e8fccca852 ro without journal. Quota mode: none. Jul 16 23:20:07.485154 kernel: EXT4-fs (loop6): unmounting filesystem 6aec1d23-8a1e-429b-bd34-e9e8fccca852. Jul 16 23:20:07.504156 kernel: loop6: detected capacity change from 0 to 142648 Jul 16 23:20:07.508198 kernel: loop6: p1 p2 p3 Jul 16 23:20:07.522729 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:20:07.522786 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:20:07.528743 kernel: device-mapper: table: 254:4: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:20:07.532532 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:20:07.532874 systemd-sysext[4060]: device-mapper: reload ioctl on loop6p1-75-verity (254:4) failed: Invalid argument Jul 16 23:20:07.540984 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:20:07.561190 kernel: erofs: (device dm-4): mounted with root inode @ nid 39. Jul 16 23:20:07.584368 kernel: loop6: detected capacity change from 0 to 301312 Jul 16 23:20:07.883873 kernel: EXT4-fs (loop6): write access unavailable, skipping orphan cleanup Jul 16 23:20:07.883945 kernel: EXT4-fs (loop6): mounted filesystem ebe84465-3ba3-4ff9-a4b7-b9cc188e516e ro without journal. Quota mode: none. Jul 16 23:20:07.925155 kernel: EXT4-fs (loop6): unmounting filesystem ebe84465-3ba3-4ff9-a4b7-b9cc188e516e. Jul 16 23:20:07.939160 kernel: loop6: detected capacity change from 0 to 342008 Jul 16 23:20:07.966643 kernel: EXT4-fs (loop6): write access unavailable, skipping orphan cleanup Jul 16 23:20:07.966742 kernel: EXT4-fs (loop6): mounted filesystem 6aec1d23-8a1e-429b-bd34-e9e8fccca852 ro without journal. Quota mode: none. Jul 16 23:20:07.973168 kernel: loop7: detected capacity change from 0 to 142648 Jul 16 23:20:07.979157 kernel: loop7: p1 p2 p3 Jul 16 23:20:07.997170 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:20:07.997257 kernel: device-mapper: verity: Unrecognized verity feature request: root_hash_sig_key_desc Jul 16 23:20:08.003301 kernel: device-mapper: table: 254:4: verity: Unrecognized verity feature request (-EINVAL) Jul 16 23:20:08.009896 kernel: device-mapper: ioctl: error adding target to table Jul 16 23:20:08.010266 (sd-merge)[4081]: device-mapper: reload ioctl on loop7p1-85-verity (254:4) failed: Invalid argument Jul 16 23:20:08.023185 kernel: device-mapper: verity: sha256 using shash "sha256-ce" Jul 16 23:20:08.047165 kernel: erofs: (device dm-4): mounted with root inode @ nid 39. Jul 16 23:20:08.052159 kernel: loop8: detected capacity change from 0 to 301312 Jul 16 23:20:08.081519 kernel: EXT4-fs (loop8): write access unavailable, skipping orphan cleanup Jul 16 23:20:08.081625 kernel: EXT4-fs (loop8): mounted filesystem ebe84465-3ba3-4ff9-a4b7-b9cc188e516e ro without journal. Quota mode: none. Jul 16 23:20:08.082778 (sd-merge)[4081]: Using extensions 'containerd.raw', 'docker.raw', 'oem-azure-4722.1.0+nightly-20260716-2100.raw'. Jul 16 23:20:08.083809 (sd-merge)[4081]: Merged extensions into '/usr'. Jul 16 23:20:08.087625 systemd[1]: Reload requested from client PID 4060 ('systemd-sysext') (unit systemd-sysext.service)... Jul 16 23:20:08.087640 systemd[1]: Reloading... Jul 16 23:20:08.177157 zram_generator::config[4148]: No configuration found. Jul 16 23:20:08.334614 systemd[1]: /usr/lib/systemd/system/docker.socket:5: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 16 23:20:08.402435 systemd[1]: docker.socket: Unit configuration changed while unit was running, and no socket file descriptors are open. Unit not functional until restarted. Jul 16 23:20:08.403402 systemd[1]: Reloading finished in 314 ms. Jul 16 23:20:08.415000 audit: BPF prog-id=141 op=LOAD Jul 16 23:20:08.416000 audit: BPF prog-id=122 op=UNLOAD Jul 16 23:20:08.416000 audit: BPF prog-id=142 op=LOAD Jul 16 23:20:08.416000 audit: BPF prog-id=143 op=LOAD Jul 16 23:20:08.416000 audit: BPF prog-id=123 op=UNLOAD Jul 16 23:20:08.416000 audit: BPF prog-id=124 op=UNLOAD Jul 16 23:20:08.417000 audit: BPF prog-id=144 op=LOAD Jul 16 23:20:08.417000 audit: BPF prog-id=125 op=UNLOAD Jul 16 23:20:08.417000 audit: BPF prog-id=145 op=LOAD Jul 16 23:20:08.417000 audit: BPF prog-id=146 op=LOAD Jul 16 23:20:08.417000 audit: BPF prog-id=126 op=UNLOAD Jul 16 23:20:08.417000 audit: BPF prog-id=127 op=UNLOAD Jul 16 23:20:08.417000 audit: BPF prog-id=147 op=LOAD Jul 16 23:20:08.417000 audit: BPF prog-id=148 op=LOAD Jul 16 23:20:08.417000 audit: BPF prog-id=128 op=UNLOAD Jul 16 23:20:08.417000 audit: BPF prog-id=129 op=UNLOAD Jul 16 23:20:08.418000 audit: BPF prog-id=149 op=LOAD Jul 16 23:20:08.418000 audit: BPF prog-id=130 op=UNLOAD Jul 16 23:20:08.419000 audit: BPF prog-id=150 op=LOAD Jul 16 23:20:08.419000 audit: BPF prog-id=131 op=UNLOAD Jul 16 23:20:08.419000 audit: BPF prog-id=151 op=LOAD Jul 16 23:20:08.419000 audit: BPF prog-id=152 op=LOAD Jul 16 23:20:08.419000 audit: BPF prog-id=132 op=UNLOAD Jul 16 23:20:08.419000 audit: BPF prog-id=133 op=UNLOAD Jul 16 23:20:08.420000 audit: BPF prog-id=153 op=LOAD Jul 16 23:20:08.420000 audit: BPF prog-id=110 op=UNLOAD Jul 16 23:20:08.421000 audit: BPF prog-id=154 op=LOAD Jul 16 23:20:08.421000 audit: BPF prog-id=134 op=UNLOAD Jul 16 23:20:08.421000 audit: BPF prog-id=155 op=LOAD Jul 16 23:20:08.421000 audit: BPF prog-id=156 op=LOAD Jul 16 23:20:08.421000 audit: BPF prog-id=135 op=UNLOAD Jul 16 23:20:08.421000 audit: BPF prog-id=136 op=UNLOAD Jul 16 23:20:08.423000 audit: BPF prog-id=157 op=LOAD Jul 16 23:20:08.423000 audit: BPF prog-id=137 op=UNLOAD Jul 16 23:20:08.423000 audit: BPF prog-id=158 op=LOAD Jul 16 23:20:08.423000 audit: BPF prog-id=138 op=UNLOAD Jul 16 23:20:08.423000 audit: BPF prog-id=159 op=LOAD Jul 16 23:20:08.423000 audit: BPF prog-id=160 op=LOAD Jul 16 23:20:08.423000 audit: BPF prog-id=139 op=UNLOAD Jul 16 23:20:08.423000 audit: BPF prog-id=140 op=UNLOAD Jul 16 23:20:08.436396 systemd[1]: Finished systemd-sysext.service - Merge System Extension Images into /usr/ and /opt/. Jul 16 23:20:08.435000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=systemd-sysext comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.437340 sudo[3943]: pam_unix(sudo:session): session closed for user root Jul 16 23:20:08.436000 audit[3943]: AUDIT1106 pid=3943 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.436000 audit[3943]: AUDIT1104 pid=3943 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.444000 audit[4205]: AUDIT1101 pid=4205 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.446279 sudo[4205]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/systemctl daemon-reload Jul 16 23:20:08.445000 audit[4205]: AUDIT1110 pid=4205 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.446900 sudo[4205]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:20:08.445000 audit[4205]: AUDIT1105 pid=4205 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.451093 systemd[1]: Reload requested from client PID 4207 ('systemctl') (unit session-17.scope)... Jul 16 23:20:08.451114 systemd[1]: Reloading... Jul 16 23:20:08.551355 zram_generator::config[4279]: No configuration found. Jul 16 23:20:08.673518 systemd[1]: /usr/lib/systemd/system/docker.socket:5: ListenStream= references a path below legacy directory /var/run/, updating /var/run/docker.sock → /run/docker.sock; please update the unit file accordingly. Jul 16 23:20:08.732906 systemd[1]: docker.socket: Unit configuration changed while unit was running, and no socket file descriptors are open. Unit not functional until restarted. Jul 16 23:20:08.734655 systemd[1]: Reloading finished in 283 ms. Jul 16 23:20:08.741000 audit: BPF prog-id=161 op=LOAD Jul 16 23:20:08.741000 audit: BPF prog-id=141 op=UNLOAD Jul 16 23:20:08.741000 audit: BPF prog-id=162 op=LOAD Jul 16 23:20:08.741000 audit: BPF prog-id=163 op=LOAD Jul 16 23:20:08.741000 audit: BPF prog-id=142 op=UNLOAD Jul 16 23:20:08.741000 audit: BPF prog-id=143 op=UNLOAD Jul 16 23:20:08.742000 audit: BPF prog-id=164 op=LOAD Jul 16 23:20:08.742000 audit: BPF prog-id=144 op=UNLOAD Jul 16 23:20:08.742000 audit: BPF prog-id=165 op=LOAD Jul 16 23:20:08.742000 audit: BPF prog-id=166 op=LOAD Jul 16 23:20:08.742000 audit: BPF prog-id=145 op=UNLOAD Jul 16 23:20:08.742000 audit: BPF prog-id=146 op=UNLOAD Jul 16 23:20:08.743000 audit: BPF prog-id=167 op=LOAD Jul 16 23:20:08.743000 audit: BPF prog-id=168 op=LOAD Jul 16 23:20:08.743000 audit: BPF prog-id=147 op=UNLOAD Jul 16 23:20:08.743000 audit: BPF prog-id=148 op=UNLOAD Jul 16 23:20:08.743000 audit: BPF prog-id=169 op=LOAD Jul 16 23:20:08.743000 audit: BPF prog-id=149 op=UNLOAD Jul 16 23:20:08.744000 audit: BPF prog-id=170 op=LOAD Jul 16 23:20:08.744000 audit: BPF prog-id=150 op=UNLOAD Jul 16 23:20:08.745000 audit: BPF prog-id=171 op=LOAD Jul 16 23:20:08.745000 audit: BPF prog-id=172 op=LOAD Jul 16 23:20:08.745000 audit: BPF prog-id=151 op=UNLOAD Jul 16 23:20:08.745000 audit: BPF prog-id=152 op=UNLOAD Jul 16 23:20:08.746000 audit: BPF prog-id=173 op=LOAD Jul 16 23:20:08.746000 audit: BPF prog-id=153 op=UNLOAD Jul 16 23:20:08.747000 audit: BPF prog-id=174 op=LOAD Jul 16 23:20:08.747000 audit: BPF prog-id=154 op=UNLOAD Jul 16 23:20:08.747000 audit: BPF prog-id=175 op=LOAD Jul 16 23:20:08.747000 audit: BPF prog-id=176 op=LOAD Jul 16 23:20:08.747000 audit: BPF prog-id=155 op=UNLOAD Jul 16 23:20:08.748000 audit: BPF prog-id=156 op=UNLOAD Jul 16 23:20:08.749000 audit: BPF prog-id=177 op=LOAD Jul 16 23:20:08.749000 audit: BPF prog-id=157 op=UNLOAD Jul 16 23:20:08.750000 audit: BPF prog-id=178 op=LOAD Jul 16 23:20:08.750000 audit: BPF prog-id=158 op=UNLOAD Jul 16 23:20:08.750000 audit: BPF prog-id=179 op=LOAD Jul 16 23:20:08.750000 audit: BPF prog-id=180 op=LOAD Jul 16 23:20:08.750000 audit: BPF prog-id=159 op=UNLOAD Jul 16 23:20:08.750000 audit: BPF prog-id=160 op=UNLOAD Jul 16 23:20:08.756178 sudo[4205]: pam_unix(sudo:session): session closed for user root Jul 16 23:20:08.755000 audit[4205]: AUDIT1106 pid=4205 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.755000 audit[4205]: AUDIT1104 pid=4205 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.764000 audit[3942]: AUDIT1101 pid=3942 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_unix,pam_faillock acct="core" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.765479 sudo[3942]: core : PWD=/home/core ; USER=root ; COMMAND=/usr/sbin/systemctl restart docker containerd Jul 16 23:20:08.764000 audit[3942]: AUDIT1110 pid=3942 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.764000 audit[3942]: AUDIT1105 pid=3942 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.765974 sudo[3942]: pam_unix(sudo:session): session opened for user root(uid=0) by core(uid=500) Jul 16 23:20:08.771358 dockerd[3578]: time="2026-07-16T23:20:08.771308990Z" level=info msg="Processing signal 'terminated'" Jul 16 23:20:08.771983 systemd[1]: Stopping docker.service - Docker Application Container Engine... Jul 16 23:20:08.772497 dockerd[3578]: time="2026-07-16T23:20:08.772477635Z" level=info msg="Daemon shutdown complete" Jul 16 23:20:08.775658 systemd[1]: docker.service: Deactivated successfully. Jul 16 23:20:08.776023 systemd[1]: Stopped docker.service - Docker Application Container Engine. Jul 16 23:20:08.776091 systemd[1]: docker.service: Consumed 383ms CPU time over 21.892s wall clock time, 97.4M memory peak. Jul 16 23:20:08.774000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=docker comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.776865 systemd[1]: docker.socket: Deactivated successfully. Jul 16 23:20:08.777572 systemd[1]: Closed docker.socket - Docker Socket for the API. Jul 16 23:20:08.777615 systemd[1]: Stopping docker.socket - Docker Socket for the API... Jul 16 23:20:08.779586 systemd[1]: Starting docker.socket - Docker Socket for the API... Jul 16 23:20:08.780228 systemd[1]: Stopping containerd.service - containerd container runtime... Jul 16 23:20:08.780401 containerd[3523]: time="2026-07-16T23:20:08.780272431Z" level=info msg="Stop CRI service" Jul 16 23:20:08.781866 systemd[1]: Listening on docker.socket - Docker Socket for the API. Jul 16 23:20:08.784249 containerd[3523]: time="2026-07-16T23:20:08.784186400Z" level=info msg="Stop CRI service" Jul 16 23:20:08.786126 systemd[1]: containerd.service: Deactivated successfully. Jul 16 23:20:08.786513 systemd[1]: Stopped containerd.service - containerd container runtime. Jul 16 23:20:08.785000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=containerd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.786593 systemd[1]: containerd.service: Consumed 204ms CPU time over 28.340s wall clock time, 75.3M memory peak. Jul 16 23:20:08.788697 systemd[1]: Starting containerd.service - containerd container runtime... Jul 16 23:20:08.815066 systemd[1]: Started containerd.service - containerd container runtime. Jul 16 23:20:08.814000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=containerd comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:08.819837 systemd[1]: Starting docker.service - Docker Application Container Engine... Jul 16 23:20:08.822577 (dockerd)[4328]: docker.service: Referenced but unset environment variable evaluates to an empty string: DOCKER_CGROUPS, DOCKER_OPTS, DOCKER_OPT_BIP, DOCKER_OPT_IPMASQ, DOCKER_OPT_MTU Jul 16 23:20:10.692000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@50-25-10.0.0.31:22-101.96.192.88:58156 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:10.693810 systemd[1]: Started sshd@50-25-10.0.0.31:22-101.96.192.88:58156.service - OpenSSH per-connection server daemon (101.96.192.88:58156). Jul 16 23:20:10.697773 kernel: kauditd_printk_skb: 147 callbacks suppressed Jul 16 23:20:10.697837 kernel: audit: type=1130 audit(1784244010.692:659): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@50-25-10.0.0.31:22-101.96.192.88:58156 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:11.337065 sshd[4337]: Connection closed by authenticating user root 101.96.192.88 port 58156 [preauth] Jul 16 23:20:11.336000 audit[4337]: AUDIT1109 pid=4337 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:11.354242 systemd[1]: sshd@50-25-10.0.0.31:22-101.96.192.88:58156.service: Deactivated successfully. Jul 16 23:20:11.353000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@50-25-10.0.0.31:22-101.96.192.88:58156 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:11.370964 kernel: audit: type=1109 audit(1784244011.336:660): pid=4337 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:11.371044 kernel: audit: type=1131 audit(1784244011.353:661): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@50-25-10.0.0.31:22-101.96.192.88:58156 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:11.498725 systemd[1]: Started sshd@51-4123-10.0.0.31:22-101.96.192.88:58166.service - OpenSSH per-connection server daemon (101.96.192.88:58166). Jul 16 23:20:11.497000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@51-4123-10.0.0.31:22-101.96.192.88:58166 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:11.517278 kernel: audit: type=1130 audit(1784244011.497:662): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@51-4123-10.0.0.31:22-101.96.192.88:58166 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:12.601601 containerd[4327]: time="2026-07-16T23:20:12.601514198Z" level=info msg="starting containerd" revision=05044ec0a9a75232cad458027ca83437aae3f4da version=v1.7.27 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.679722236Z" level=info msg="loading plugin \"io.containerd.event.v1.exchange\"..." type=io.containerd.event.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.679776961Z" level=info msg="loading plugin \"io.containerd.internal.v1.opt\"..." type=io.containerd.internal.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.679809623Z" level=info msg="loading plugin \"io.containerd.warning.v1.deprecations\"..." type=io.containerd.warning.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.679818871Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.blockfile\"..." type=io.containerd.snapshotter.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.679957031Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.blockfile\"..." error="no scratch file generator: skip plugin" type=io.containerd.snapshotter.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.679965838Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." type=io.containerd.snapshotter.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.679980134Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.devmapper\"..." error="devmapper not configured: skip plugin" type=io.containerd.snapshotter.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.679987157Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.native\"..." type=io.containerd.snapshotter.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.680000772Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.overlayfs\"..." type=io.containerd.snapshotter.v1 Jul 16 23:20:12.680163 containerd[4327]: time="2026-07-16T23:20:12.680104342Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.aufs\"..." type=io.containerd.snapshotter.v1 Jul 16 23:20:12.682713 containerd[4327]: time="2026-07-16T23:20:12.682678724Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.aufs\"..." error="aufs is not supported (modprobe aufs failed: exit status 1 \"modprobe: FATAL: Module aufs not found in directory /lib/modules/6.12.95-flatcar\\n\"): skip plugin" type=io.containerd.snapshotter.v1 Jul 16 23:20:12.682713 containerd[4327]: time="2026-07-16T23:20:12.682709098Z" level=info msg="loading plugin \"io.containerd.snapshotter.v1.zfs\"..." type=io.containerd.snapshotter.v1 Jul 16 23:20:12.682876 containerd[4327]: time="2026-07-16T23:20:12.682857609Z" level=info msg="skip loading plugin \"io.containerd.snapshotter.v1.zfs\"..." error="path /var/lib/containerd/io.containerd.snapshotter.v1.zfs must be a zfs filesystem to be used with the zfs snapshotter: skip plugin" type=io.containerd.snapshotter.v1 Jul 16 23:20:12.682876 containerd[4327]: time="2026-07-16T23:20:12.682872177Z" level=info msg="loading plugin \"io.containerd.content.v1.content\"..." type=io.containerd.content.v1 Jul 16 23:20:12.682915 containerd[4327]: time="2026-07-16T23:20:12.682891112Z" level=info msg="loading plugin \"io.containerd.metadata.v1.bolt\"..." type=io.containerd.metadata.v1 Jul 16 23:20:12.682915 containerd[4327]: time="2026-07-16T23:20:12.682905943Z" level=info msg="metadata content store policy set" policy=shared Jul 16 23:20:12.683033 containerd[4327]: time="2026-07-16T23:20:12.682997226Z" level=info msg="loading plugin \"io.containerd.gc.v1.scheduler\"..." type=io.containerd.gc.v1 Jul 16 23:20:12.683033 containerd[4327]: time="2026-07-16T23:20:12.683027208Z" level=info msg="loading plugin \"io.containerd.differ.v1.walking\"..." type=io.containerd.differ.v1 Jul 16 23:20:12.683075 containerd[4327]: time="2026-07-16T23:20:12.683036895Z" level=info msg="loading plugin \"io.containerd.lease.v1.manager\"..." type=io.containerd.lease.v1 Jul 16 23:20:12.683075 containerd[4327]: time="2026-07-16T23:20:12.683046015Z" level=info msg="loading plugin \"io.containerd.streaming.v1.manager\"..." type=io.containerd.streaming.v1 Jul 16 23:20:12.683075 containerd[4327]: time="2026-07-16T23:20:12.683054046Z" level=info msg="loading plugin \"io.containerd.runtime.v1.linux\"..." type=io.containerd.runtime.v1 Jul 16 23:20:12.683161 containerd[4327]: time="2026-07-16T23:20:12.683078581Z" level=info msg="loading plugin \"io.containerd.monitor.v1.cgroups\"..." type=io.containerd.monitor.v1 Jul 16 23:20:12.686280 containerd[4327]: time="2026-07-16T23:20:12.686256928Z" level=info msg="loading plugin \"io.containerd.runtime.v2.task\"..." type=io.containerd.runtime.v2 Jul 16 23:20:12.686384 containerd[4327]: time="2026-07-16T23:20:12.686368945Z" level=info msg="loading plugin \"io.containerd.runtime.v2.shim\"..." type=io.containerd.runtime.v2 Jul 16 23:20:12.686397 containerd[4327]: time="2026-07-16T23:20:12.686385472Z" level=info msg="loading plugin \"io.containerd.sandbox.store.v1.local\"..." type=io.containerd.sandbox.store.v1 Jul 16 23:20:12.686410 containerd[4327]: time="2026-07-16T23:20:12.686396808Z" level=info msg="loading plugin \"io.containerd.sandbox.controller.v1.local\"..." type=io.containerd.sandbox.controller.v1 Jul 16 23:20:12.686410 containerd[4327]: time="2026-07-16T23:20:12.686406175Z" level=info msg="loading plugin \"io.containerd.service.v1.containers-service\"..." type=io.containerd.service.v1 Jul 16 23:20:12.686438 containerd[4327]: time="2026-07-16T23:20:12.686413735Z" level=info msg="loading plugin \"io.containerd.service.v1.content-service\"..." type=io.containerd.service.v1 Jul 16 23:20:12.686438 containerd[4327]: time="2026-07-16T23:20:12.686421838Z" level=info msg="loading plugin \"io.containerd.service.v1.diff-service\"..." type=io.containerd.service.v1 Jul 16 23:20:12.686438 containerd[4327]: time="2026-07-16T23:20:12.686433846Z" level=info msg="loading plugin \"io.containerd.service.v1.images-service\"..." type=io.containerd.service.v1 Jul 16 23:20:12.686479 containerd[4327]: time="2026-07-16T23:20:12.686446189Z" level=info msg="loading plugin \"io.containerd.service.v1.introspection-service\"..." type=io.containerd.service.v1 Jul 16 23:20:12.686479 containerd[4327]: time="2026-07-16T23:20:12.686454484Z" level=info msg="loading plugin \"io.containerd.service.v1.namespaces-service\"..." type=io.containerd.service.v1 Jul 16 23:20:12.686479 containerd[4327]: time="2026-07-16T23:20:12.686461244Z" level=info msg="loading plugin \"io.containerd.service.v1.snapshots-service\"..." type=io.containerd.service.v1 Jul 16 23:20:12.686479 containerd[4327]: time="2026-07-16T23:20:12.686467220Z" level=info msg="loading plugin \"io.containerd.service.v1.tasks-service\"..." type=io.containerd.service.v1 Jul 16 23:20:12.686530 containerd[4327]: time="2026-07-16T23:20:12.686480579Z" level=info msg="loading plugin \"io.containerd.grpc.v1.containers\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686530 containerd[4327]: time="2026-07-16T23:20:12.686489178Z" level=info msg="loading plugin \"io.containerd.grpc.v1.content\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686530 containerd[4327]: time="2026-07-16T23:20:12.686500122Z" level=info msg="loading plugin \"io.containerd.grpc.v1.diff\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686530 containerd[4327]: time="2026-07-16T23:20:12.686507225Z" level=info msg="loading plugin \"io.containerd.grpc.v1.events\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686530 containerd[4327]: time="2026-07-16T23:20:12.686514897Z" level=info msg="loading plugin \"io.containerd.grpc.v1.images\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686530 containerd[4327]: time="2026-07-16T23:20:12.686523233Z" level=info msg="loading plugin \"io.containerd.grpc.v1.introspection\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686530 containerd[4327]: time="2026-07-16T23:20:12.686529888Z" level=info msg="loading plugin \"io.containerd.grpc.v1.leases\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686614 containerd[4327]: time="2026-07-16T23:20:12.686538048Z" level=info msg="loading plugin \"io.containerd.grpc.v1.namespaces\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686614 containerd[4327]: time="2026-07-16T23:20:12.686545055Z" level=info msg="loading plugin \"io.containerd.grpc.v1.sandbox-controllers\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686614 containerd[4327]: time="2026-07-16T23:20:12.686554383Z" level=info msg="loading plugin \"io.containerd.grpc.v1.sandboxes\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686614 containerd[4327]: time="2026-07-16T23:20:12.686560910Z" level=info msg="loading plugin \"io.containerd.grpc.v1.snapshots\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686614 containerd[4327]: time="2026-07-16T23:20:12.686567582Z" level=info msg="loading plugin \"io.containerd.grpc.v1.streaming\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686614 containerd[4327]: time="2026-07-16T23:20:12.686574390Z" level=info msg="loading plugin \"io.containerd.grpc.v1.tasks\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686614 containerd[4327]: time="2026-07-16T23:20:12.686582477Z" level=info msg="loading plugin \"io.containerd.transfer.v1.local\"..." type=io.containerd.transfer.v1 Jul 16 23:20:12.686614 containerd[4327]: time="2026-07-16T23:20:12.686610996Z" level=info msg="loading plugin \"io.containerd.grpc.v1.transfer\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686711 containerd[4327]: time="2026-07-16T23:20:12.686618875Z" level=info msg="loading plugin \"io.containerd.grpc.v1.version\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.686711 containerd[4327]: time="2026-07-16T23:20:12.686627219Z" level=info msg="loading plugin \"io.containerd.internal.v1.restart\"..." type=io.containerd.internal.v1 Jul 16 23:20:12.691195 containerd[4327]: time="2026-07-16T23:20:12.691168744Z" level=info msg="loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." type=io.containerd.tracing.processor.v1 Jul 16 23:20:12.691232 containerd[4327]: time="2026-07-16T23:20:12.691200078Z" level=info msg="skip loading plugin \"io.containerd.tracing.processor.v1.otlp\"..." error="skip plugin: tracing endpoint not configured" type=io.containerd.tracing.processor.v1 Jul 16 23:20:12.691232 containerd[4327]: time="2026-07-16T23:20:12.691207941Z" level=info msg="loading plugin \"io.containerd.internal.v1.tracing\"..." type=io.containerd.internal.v1 Jul 16 23:20:12.691351 containerd[4327]: time="2026-07-16T23:20:12.691332502Z" level=info msg="skip loading plugin \"io.containerd.internal.v1.tracing\"..." error="skip plugin: tracing endpoint not configured" type=io.containerd.internal.v1 Jul 16 23:20:12.691351 containerd[4327]: time="2026-07-16T23:20:12.691347022Z" level=info msg="loading plugin \"io.containerd.grpc.v1.healthcheck\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.691385 containerd[4327]: time="2026-07-16T23:20:12.691360173Z" level=info msg="loading plugin \"io.containerd.nri.v1.nri\"..." type=io.containerd.nri.v1 Jul 16 23:20:12.691385 containerd[4327]: time="2026-07-16T23:20:12.691368092Z" level=info msg="NRI interface is disabled by configuration." Jul 16 23:20:12.691385 containerd[4327]: time="2026-07-16T23:20:12.691375932Z" level=info msg="loading plugin \"io.containerd.grpc.v1.cri\"..." type=io.containerd.grpc.v1 Jul 16 23:20:12.694961 containerd[4327]: time="2026-07-16T23:20:12.694918394Z" level=info msg="Start cri plugin with config {PluginConfig:{ContainerdConfig:{Snapshotter:overlayfs DefaultRuntimeName:runc DefaultRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false PrivilegedWithoutHostDevicesAllDevicesAllowed:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0 Snapshotter: SandboxMode:} UntrustedWorkloadRuntime:{Type: Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[] PrivilegedWithoutHostDevices:false PrivilegedWithoutHostDevicesAllDevicesAllowed:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0 Snapshotter: SandboxMode:} Runtimes:map[runc:{Type:io.containerd.runc.v2 Path: Engine: PodAnnotations:[] ContainerAnnotations:[] Root: Options:map[SystemdCgroup:true] PrivilegedWithoutHostDevices:false PrivilegedWithoutHostDevicesAllDevicesAllowed:false BaseRuntimeSpec: NetworkPluginConfDir: NetworkPluginMaxConfNum:0 Snapshotter: SandboxMode:podsandbox}] NoPivot:false DisableSnapshotAnnotations:true DiscardUnpackedLayers:false IgnoreBlockIONotEnabledErrors:false IgnoreRdtNotEnabledErrors:false} CniConfig:{NetworkPluginBinDir:/opt/cni/bin NetworkPluginConfDir:/etc/cni/net.d NetworkPluginMaxConfNum:1 NetworkPluginSetupSerially:false NetworkPluginConfTemplate: IPPreference:} Registry:{ConfigPath: Mirrors:map[] Configs:map[] Auths:map[] Headers:map[]} ImageDecryption:{KeyModel:node} DisableTCPService:true StreamServerAddress:127.0.0.1 StreamServerPort:0 StreamIdleTimeout:4h0m0s EnableSelinux:false SelinuxCategoryRange:1024 SandboxImage:registry.k8s.io/pause:3.8 StatsCollectPeriod:10 SystemdCgroup:false EnableTLSStreaming:false X509KeyPairStreaming:{TLSCertFile: TLSKeyFile:} MaxContainerLogLineSize:16384 DisableCgroup:false DisableApparmor:false RestrictOOMScoreAdj:false MaxConcurrentDownloads:3 DisableProcMount:false UnsetSeccompProfile: TolerateMissingHugetlbController:true DisableHugetlbController:true DeviceOwnershipFromSecurityContext:false IgnoreImageDefinedVolumes:false NetNSMountsUnderStateDir:false EnableUnprivilegedPorts:false EnableUnprivilegedICMP:false EnableCDI:false CDISpecDirs:[/etc/cdi /var/run/cdi] ImagePullProgressTimeout:5m0s DrainExecSyncIOTimeout:0s ImagePullWithSyncFs:false IgnoreDeprecationWarnings:[]} ContainerdRootDir:/var/lib/containerd ContainerdEndpoint:/run/containerd/containerd.sock RootDir:/var/lib/containerd/io.containerd.grpc.v1.cri StateDir:/run/containerd/io.containerd.grpc.v1.cri}" Jul 16 23:20:12.695039 containerd[4327]: time="2026-07-16T23:20:12.694968423Z" level=info msg="Connect containerd service" Jul 16 23:20:12.695039 containerd[4327]: time="2026-07-16T23:20:12.695001285Z" level=info msg="using legacy CRI server" Jul 16 23:20:12.695039 containerd[4327]: time="2026-07-16T23:20:12.695006237Z" level=info msg="using experimental NRI integration - disable nri plugin to prevent this" Jul 16 23:20:12.695088 containerd[4327]: time="2026-07-16T23:20:12.695081185Z" level=info msg="Get image filesystem path \"/var/lib/containerd/io.containerd.snapshotter.v1.overlayfs\"" Jul 16 23:20:12.708899 containerd[4327]: time="2026-07-16T23:20:12.708864495Z" level=error msg="failed to load cni during init, please check CRI plugin status before setting up network for pods" error="cni config load failed: no network config found in /etc/cni/net.d: cni plugin not initialized: failed to load cni config" Jul 16 23:20:12.715120 containerd[4327]: time="2026-07-16T23:20:12.715077957Z" level=info msg="Start subscribing containerd event" Jul 16 23:20:12.715158 containerd[4327]: time="2026-07-16T23:20:12.715143513Z" level=info msg="Start recovering state" Jul 16 23:20:12.715222 containerd[4327]: time="2026-07-16T23:20:12.715210381Z" level=info msg="Start event monitor" Jul 16 23:20:12.715247 containerd[4327]: time="2026-07-16T23:20:12.715223445Z" level=info msg="Start snapshots syncer" Jul 16 23:20:12.715247 containerd[4327]: time="2026-07-16T23:20:12.715231180Z" level=info msg="Start cni network conf syncer for default" Jul 16 23:20:12.715247 containerd[4327]: time="2026-07-16T23:20:12.715238932Z" level=info msg="Start streaming server" Jul 16 23:20:12.715518 containerd[4327]: time="2026-07-16T23:20:12.715496157Z" level=info msg=serving... address=/run/containerd/containerd.sock.ttrpc Jul 16 23:20:12.715570 containerd[4327]: time="2026-07-16T23:20:12.715545938Z" level=info msg=serving... address=/run/containerd/containerd.sock Jul 16 23:20:12.715896 containerd[4327]: time="2026-07-16T23:20:12.715868440Z" level=info msg="containerd successfully booted in 0.117902s" Jul 16 23:20:13.137189 sshd[4343]: Connection closed by authenticating user root 101.96.192.88 port 58166 [preauth] Jul 16 23:20:13.136000 audit[4343]: AUDIT1109 pid=4343 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:13.155733 systemd[1]: sshd@51-4123-10.0.0.31:22-101.96.192.88:58166.service: Deactivated successfully. Jul 16 23:20:13.155000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@51-4123-10.0.0.31:22-101.96.192.88:58166 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:13.173253 kernel: audit: type=1109 audit(1784244013.136:663): pid=4343 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:13.173322 kernel: audit: type=1131 audit(1784244013.155:664): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@51-4123-10.0.0.31:22-101.96.192.88:58166 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:13.319087 systemd[1]: Started sshd@52-4124-10.0.0.31:22-101.96.192.88:52580.service - OpenSSH per-connection server daemon (101.96.192.88:52580). Jul 16 23:20:13.318000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@52-4124-10.0.0.31:22-101.96.192.88:52580 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:13.338247 kernel: audit: type=1130 audit(1784244013.318:665): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@52-4124-10.0.0.31:22-101.96.192.88:52580 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:14.959619 sshd[4354]: Connection closed by authenticating user root 101.96.192.88 port 52580 [preauth] Jul 16 23:20:14.959000 audit[4354]: AUDIT1109 pid=4354 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:14.979085 systemd[1]: sshd@52-4124-10.0.0.31:22-101.96.192.88:52580.service: Deactivated successfully. Jul 16 23:20:14.979364 kernel: audit: type=1109 audit(1784244014.959:666): pid=4354 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:14.978000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@52-4124-10.0.0.31:22-101.96.192.88:52580 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:14.998154 kernel: audit: type=1131 audit(1784244014.978:667): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@52-4124-10.0.0.31:22-101.96.192.88:52580 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:15.119640 dockerd[4328]: time="2026-07-16T23:20:15.119583155Z" level=info msg="Starting up" Jul 16 23:20:15.125432 systemd[1]: Started sshd@53-4125-10.0.0.31:22-101.96.192.88:52588.service - OpenSSH per-connection server daemon (101.96.192.88:52588). Jul 16 23:20:15.124000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@53-4125-10.0.0.31:22-101.96.192.88:52588 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:15.144168 kernel: audit: type=1130 audit(1784244015.124:668): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@53-4125-10.0.0.31:22-101.96.192.88:52588 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:15.146333 dockerd[4328]: time="2026-07-16T23:20:15.146299735Z" level=info msg="OTEL tracing is not configured, using no-op tracer provider" Jul 16 23:20:16.673225 systemd[1]: Started sshd@54-4126-10.0.0.31:22-101.96.192.88:52592.service - OpenSSH per-connection server daemon (101.96.192.88:52592). Jul 16 23:20:16.673000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@54-4126-10.0.0.31:22-101.96.192.88:52592 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:16.690382 kernel: audit: type=1130 audit(1784244016.673:669): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@54-4126-10.0.0.31:22-101.96.192.88:52592 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:16.743469 dockerd[4328]: time="2026-07-16T23:20:16.743371350Z" level=info msg="Creating a containerd client" address=/run/containerd/containerd.sock timeout=1m0s Jul 16 23:20:16.800855 systemd[1]: var-lib-docker-overlay2-check\x2doverlayfs\x2dsupport842893130-merged.mount: Deactivated successfully. Jul 16 23:20:16.906428 sshd[4361]: Connection closed by authenticating user root 101.96.192.88 port 52588 [preauth] Jul 16 23:20:16.906000 audit[4361]: AUDIT1109 pid=4361 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:16.908981 systemd[1]: sshd@53-4125-10.0.0.31:22-101.96.192.88:52588.service: Deactivated successfully. Jul 16 23:20:16.909000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@53-4125-10.0.0.31:22-101.96.192.88:52588 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:16.941137 kernel: audit: type=1109 audit(1784244016.906:670): pid=4361 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:16.941225 kernel: audit: type=1131 audit(1784244016.909:671): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@53-4125-10.0.0.31:22-101.96.192.88:52588 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:17.767655 systemd[1]: var-lib-docker-overlay2-metacopy\x2dcheck2047558429-merged.mount: Deactivated successfully. Jul 16 23:20:17.772869 dockerd[4328]: time="2026-07-16T23:20:17.771687861Z" level=info msg="[graphdriver] using prior storage driver: overlay2" Jul 16 23:20:17.778113 dockerd[4328]: time="2026-07-16T23:20:17.778086488Z" level=info msg="Loading containers: start." Jul 16 23:20:17.783000 audit[4385]: NETFILTER_CFG table=nat:29 family=2 entries=1 op=nft_unregister_rule pid=4385 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.783000 audit[4385]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=268 a0=3 a1=ffffd40933a0 a2=0 a3=0 items=0 ppid=4328 pid=4385 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.814412 kernel: audit: type=1325 audit(1784244017.783:672): table=nat:29 family=2 entries=1 op=nft_unregister_rule pid=4385 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.814486 kernel: audit: type=1300 audit(1784244017.783:672): arch=c00000b7 syscall=211 success=yes exit=268 a0=3 a1=ffffd40933a0 a2=0 a3=0 items=0 ppid=4328 pid=4385 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.783000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4400505245524F5554494E47002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B4552 Jul 16 23:20:17.827727 kernel: audit: type=1327 audit(1784244017.783:672): proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4400505245524F5554494E47002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B4552 Jul 16 23:20:17.829000 audit[4386]: NETFILTER_CFG table=nat:30 family=2 entries=1 op=nft_unregister_rule pid=4386 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.829000 audit[4386]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=360 a0=3 a1=ffffe2a27690 a2=0 a3=0 items=0 ppid=4328 pid=4386 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.860285 kernel: audit: type=1325 audit(1784244017.829:673): table=nat:30 family=2 entries=1 op=nft_unregister_rule pid=4386 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.860340 kernel: audit: type=1300 audit(1784244017.829:673): arch=c00000b7 syscall=211 success=yes exit=360 a0=3 a1=ffffe2a27690 a2=0 a3=0 items=0 ppid=4328 pid=4386 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.829000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D44004F5554505554002D6D006164647274797065002D2D6473742D74797065004C4F43414C0000002D2D647374003132372E302E302E302F38002D6A00444F434B4552 Jul 16 23:20:17.877038 kernel: audit: type=1327 audit(1784244017.829:673): proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D44004F5554505554002D6D006164647274797065002D2D6473742D74797065004C4F43414C0000002D2D647374003132372E302E302E302F38002D6A00444F434B4552 Jul 16 23:20:17.881000 audit[4390]: NETFILTER_CFG table=nat:31 family=2 entries=1 op=nft_unregister_rule pid=4390 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.881000 audit[4390]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=88 a0=3 a1=ffffc8947160 a2=0 a3=0 items=0 ppid=4328 pid=4390 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.881000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4600444F434B4552 Jul 16 23:20:17.891158 kernel: audit: type=1325 audit(1784244017.881:674): table=nat:31 family=2 entries=1 op=nft_unregister_rule pid=4390 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.892000 audit[4391]: NETFILTER_CFG table=nat:32 family=2 entries=1 op=nft_unregister_chain pid=4391 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.892000 audit[4391]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffdd0747d0 a2=0 a3=0 items=0 ppid=4328 pid=4391 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.892000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D5800444F434B4552 Jul 16 23:20:17.905000 audit[4400]: NETFILTER_CFG table=filter:33 family=2 entries=2 op=nft_unregister_rule pid=4400 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.905000 audit[4400]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=ffffc3ba32e0 a2=0 a3=0 items=0 ppid=4328 pid=4400 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.905000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4600444F434B45522D49534F4C4154494F4E2D53544147452D31 Jul 16 23:20:17.918000 audit[4402]: NETFILTER_CFG table=filter:34 family=2 entries=2 op=nft_unregister_rule pid=4402 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.918000 audit[4402]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=ffffdfd40160 a2=0 a3=0 items=0 ppid=4328 pid=4402 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.918000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4600444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:20:17.923000 audit[4403]: NETFILTER_CFG table=filter:35 family=2 entries=1 op=nft_unregister_chain pid=4403 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.923000 audit[4403]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=120 a0=3 a1=ffffeacfd530 a2=0 a3=0 items=0 ppid=4328 pid=4403 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.923000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D5800444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:20:17.930000 audit[4407]: NETFILTER_CFG table=nat:36 family=2 entries=1 op=nft_register_chain pid=4407 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.930000 audit[4407]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=88 a0=3 a1=ffffe7f664f0 a2=0 a3=0 items=0 ppid=4328 pid=4407 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.930000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4E00444F434B4552 Jul 16 23:20:17.933000 audit[4410]: NETFILTER_CFG table=filter:37 family=2 entries=1 op=nft_register_chain pid=4410 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.933000 audit[4410]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc6cde830 a2=0 a3=0 items=0 ppid=4328 pid=4410 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.933000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D464F5257415244 Jul 16 23:20:17.934000 audit[4412]: NETFILTER_CFG table=filter:38 family=2 entries=1 op=nft_register_chain pid=4412 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.934000 audit[4412]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffc499d1c0 a2=0 a3=0 items=0 ppid=4328 pid=4412 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.934000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D425249444745 Jul 16 23:20:17.936000 audit[4414]: NETFILTER_CFG table=filter:39 family=2 entries=1 op=nft_register_chain pid=4414 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.936000 audit[4414]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffd60fb800 a2=0 a3=0 items=0 ppid=4328 pid=4414 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.936000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D4354 Jul 16 23:20:17.938000 audit[4417]: NETFILTER_CFG table=filter:40 family=2 entries=1 op=nft_register_chain pid=4417 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.938000 audit[4417]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=ffffd7ffd280 a2=0 a3=0 items=0 ppid=4328 pid=4417 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.938000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:20:17.940000 audit[4419]: NETFILTER_CFG table=nat:41 family=2 entries=1 op=nft_register_rule pid=4419 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.940000 audit[4419]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=276 a0=3 a1=ffffd16d9e70 a2=0 a3=0 items=0 ppid=4328 pid=4419 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.940000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4100505245524F5554494E47002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B4552 Jul 16 23:20:17.942000 audit[4421]: NETFILTER_CFG table=nat:42 family=2 entries=1 op=nft_register_rule pid=4421 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.942000 audit[4421]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=368 a0=3 a1=ffffd08d6b30 a2=0 a3=0 items=0 ppid=4328 pid=4421 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.942000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D41004F5554505554002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B45520000002D2D647374003132372E302E302E302F38 Jul 16 23:20:17.944000 audit[4423]: NETFILTER_CFG table=filter:43 family=2 entries=1 op=nft_register_rule pid=4423 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.944000 audit[4423]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=fffffccef0b0 a2=0 a3=0 items=0 ppid=4328 pid=4423 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.944000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D464F5257415244 Jul 16 23:20:17.945000 audit[4425]: NETFILTER_CFG table=filter:44 family=2 entries=1 op=nft_register_rule pid=4425 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.945000 audit[4425]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=236 a0=3 a1=fffffcd798b0 a2=0 a3=0 items=0 ppid=4328 pid=4425 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.945000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900444F434B45522D464F5257415244002D6A00444F434B45522D425249444745 Jul 16 23:20:17.947000 audit[4427]: NETFILTER_CFG table=filter:45 family=2 entries=1 op=nft_register_rule pid=4427 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.947000 audit[4427]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=248 a0=3 a1=fffffdd3c1a0 a2=0 a3=0 items=0 ppid=4328 pid=4427 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.947000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900444F434B45522D464F5257415244002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D31 Jul 16 23:20:17.948000 audit[4429]: NETFILTER_CFG table=filter:46 family=2 entries=1 op=nft_register_rule pid=4429 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:17.948000 audit[4429]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=232 a0=3 a1=ffffe453b710 a2=0 a3=0 items=0 ppid=4328 pid=4429 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:17.948000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900444F434B45522D464F5257415244002D6A00444F434B45522D4354 Jul 16 23:20:18.031000 audit[4434]: NETFILTER_CFG table=filter:47 family=2 entries=1 op=nft_unregister_rule pid=4434 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.031000 audit[4434]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=244 a0=3 a1=fffffc34d0a0 a2=0 a3=0 items=0 ppid=4328 pid=4434 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.031000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4400464F5257415244002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D31 Jul 16 23:20:18.053000 audit[4462]: NETFILTER_CFG table=nat:48 family=10 entries=2 op=nft_register_chain pid=4462 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.053000 audit[4462]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=116 a0=3 a1=fffff1d53850 a2=0 a3=0 items=0 ppid=4328 pid=4462 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.053000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D74006E6174002D4E00444F434B4552 Jul 16 23:20:18.055000 audit[4464]: NETFILTER_CFG table=filter:49 family=10 entries=2 op=nft_register_chain pid=4464 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.055000 audit[4464]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=124 a0=3 a1=ffffd55e34a0 a2=0 a3=0 items=0 ppid=4328 pid=4464 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.055000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D740066696C746572002D4E00444F434B4552 Jul 16 23:20:18.057000 audit[4466]: NETFILTER_CFG table=filter:50 family=10 entries=1 op=nft_register_chain pid=4466 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.057000 audit[4466]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=fffff8ac2140 a2=0 a3=0 items=0 ppid=4328 pid=4466 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.057000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D464F5257415244 Jul 16 23:20:18.058000 audit[4468]: NETFILTER_CFG table=filter:51 family=10 entries=1 op=nft_register_chain pid=4468 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.058000 audit[4468]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=100 a0=3 a1=ffffcac98df0 a2=0 a3=0 items=0 ppid=4328 pid=4468 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.058000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D425249444745 Jul 16 23:20:18.060000 audit[4470]: NETFILTER_CFG table=filter:52 family=10 entries=1 op=nft_register_chain pid=4470 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.060000 audit[4470]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffd7aaa8a0 a2=0 a3=0 items=0 ppid=4328 pid=4470 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.060000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D4354 Jul 16 23:20:18.061000 audit[4472]: NETFILTER_CFG table=filter:53 family=10 entries=1 op=nft_register_chain pid=4472 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.061000 audit[4472]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=fffff07152d0 a2=0 a3=0 items=0 ppid=4328 pid=4472 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.061000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D49534F4C4154494F4E2D53544147452D31 Jul 16 23:20:18.063000 audit[4474]: NETFILTER_CFG table=filter:54 family=10 entries=1 op=nft_register_chain pid=4474 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.063000 audit[4474]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=112 a0=3 a1=ffffe3dbf080 a2=0 a3=0 items=0 ppid=4328 pid=4474 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.063000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:20:18.064000 audit[4476]: NETFILTER_CFG table=nat:55 family=10 entries=2 op=nft_register_chain pid=4476 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.064000 audit[4476]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=384 a0=3 a1=fffffb2713c0 a2=0 a3=0 items=0 ppid=4328 pid=4476 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.064000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D74006E6174002D4100505245524F5554494E47002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B4552 Jul 16 23:20:18.066000 audit[4478]: NETFILTER_CFG table=nat:56 family=10 entries=2 op=nft_register_chain pid=4478 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.066000 audit[4478]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=484 a0=3 a1=fffff88e1710 a2=0 a3=0 items=0 ppid=4328 pid=4478 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.066000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D74006E6174002D41004F5554505554002D6D006164647274797065002D2D6473742D74797065004C4F43414C002D6A00444F434B45520000002D2D647374003A3A312F313238 Jul 16 23:20:18.068000 audit[4480]: NETFILTER_CFG table=filter:57 family=10 entries=2 op=nft_register_chain pid=4480 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.068000 audit[4480]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=340 a0=3 a1=fffffa10b4c0 a2=0 a3=0 items=0 ppid=4328 pid=4480 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.068000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D464F5257415244 Jul 16 23:20:18.069000 audit[4482]: NETFILTER_CFG table=filter:58 family=10 entries=1 op=nft_register_rule pid=4482 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.069000 audit[4482]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=236 a0=3 a1=ffffd89c16e0 a2=0 a3=0 items=0 ppid=4328 pid=4482 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.069000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D4900444F434B45522D464F5257415244002D6A00444F434B45522D425249444745 Jul 16 23:20:18.071000 audit[4484]: NETFILTER_CFG table=filter:59 family=10 entries=1 op=nft_register_rule pid=4484 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.071000 audit[4484]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=248 a0=3 a1=fffffe133e90 a2=0 a3=0 items=0 ppid=4328 pid=4484 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.071000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D4900444F434B45522D464F5257415244002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D31 Jul 16 23:20:18.072000 audit[4486]: NETFILTER_CFG table=filter:60 family=10 entries=1 op=nft_register_rule pid=4486 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.072000 audit[4486]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=232 a0=3 a1=ffffe7093460 a2=0 a3=0 items=0 ppid=4328 pid=4486 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.072000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D4900444F434B45522D464F5257415244002D6A00444F434B45522D4354 Jul 16 23:20:18.078000 audit[4492]: NETFILTER_CFG table=nat:61 family=2 entries=1 op=nft_register_rule pid=4492 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.078000 audit[4492]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=288 a0=3 a1=ffffe31c0190 a2=0 a3=0 items=0 ppid=4328 pid=4492 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.078000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4900444F434B4552002D6900646F636B657230002D6A0052455455524E Jul 16 23:20:18.082000 audit[4497]: NETFILTER_CFG table=filter:62 family=2 entries=1 op=nft_unregister_rule pid=4497 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.082000 audit[4497]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=380 a0=3 a1=ffffc16ed540 a2=0 a3=0 items=0 ppid=4328 pid=4497 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.082000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4400464F5257415244002D6900646F636B657230002D6F00646F636B657230002D6A00414343455054 Jul 16 23:20:18.088000 audit[4500]: NETFILTER_CFG table=filter:63 family=2 entries=1 op=nft_unregister_rule pid=4500 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.088000 audit[4500]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=380 a0=3 a1=ffffc9d825e0 a2=0 a3=0 items=0 ppid=4328 pid=4500 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.088000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4400464F5257415244002D6900646F636B6572300000002D6F00646F636B657230002D6A00414343455054 Jul 16 23:20:18.096000 audit[4502]: NETFILTER_CFG table=filter:64 family=2 entries=1 op=nft_register_rule pid=4502 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.096000 audit[4502]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=300 a0=3 a1=ffffe2d36880 a2=0 a3=0 items=0 ppid=4328 pid=4502 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.096000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45522D464F5257415244002D6900646F636B657230002D6A00414343455054 Jul 16 23:20:18.099000 audit[4505]: NETFILTER_CFG table=filter:65 family=2 entries=1 op=nft_unregister_rule pid=4505 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.099000 audit[4505]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=308 a0=3 a1=ffffdf9b80e0 a2=0 a3=0 items=0 ppid=4328 pid=4505 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.099000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4400464F5257415244002D6F00646F636B657230002D6A00444F434B4552 Jul 16 23:20:18.106000 audit[4507]: NETFILTER_CFG table=filter:66 family=2 entries=1 op=nft_unregister_rule pid=4507 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.106000 audit[4507]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=512 a0=3 a1=ffffe0be8a50 a2=0 a3=0 items=0 ppid=4328 pid=4507 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.106000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4400464F5257415244002D6F00646F636B657230002D6D00636F6E6E747261636B002D2D637473746174650052454C415445442C45535441424C4953484544002D6A00414343455054 Jul 16 23:20:18.112000 audit[4509]: NETFILTER_CFG table=filter:67 family=2 entries=1 op=nft_register_rule pid=4509 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.112000 audit[4509]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=376 a0=3 a1=fffffd480900 a2=0 a3=0 items=0 ppid=4328 pid=4509 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.112000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45520000002D6900646F636B657230002D6F00646F636B657230002D6A0044524F50 Jul 16 23:20:18.114000 audit[4511]: NETFILTER_CFG table=filter:68 family=2 entries=1 op=nft_register_rule pid=4511 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.114000 audit[4511]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=512 a0=3 a1=fffff7615f50 a2=0 a3=0 items=0 ppid=4328 pid=4511 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.114000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45522D4354002D6F00646F636B657230002D6D00636F6E6E747261636B002D2D637473746174650052454C415445442C45535441424C4953484544002D6A00414343455054 Jul 16 23:20:18.116000 audit[4513]: NETFILTER_CFG table=filter:69 family=2 entries=1 op=nft_register_rule pid=4513 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.116000 audit[4513]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffd1c2c750 a2=0 a3=0 items=0 ppid=4328 pid=4513 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.116000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45522D425249444745002D6F00646F636B657230002D6A00444F434B4552 Jul 16 23:20:18.118000 audit[4515]: NETFILTER_CFG table=filter:70 family=2 entries=1 op=nft_register_rule pid=4515 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.118000 audit[4515]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=428 a0=3 a1=ffffd026eb40 a2=0 a3=0 items=0 ppid=4328 pid=4515 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.118000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45522D49534F4C4154494F4E2D53544147452D31002D6900646F636B6572300000002D6F00646F636B657230002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:20:18.119000 audit[4517]: NETFILTER_CFG table=filter:71 family=2 entries=1 op=nft_register_rule pid=4517 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.119000 audit[4517]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffeea92a20 a2=0 a3=0 items=0 ppid=4328 pid=4517 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.119000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4900444F434B45522D49534F4C4154494F4E2D53544147452D32002D6F00646F636B657230002D6A0044524F50 Jul 16 23:20:18.124000 audit[4522]: NETFILTER_CFG table=filter:72 family=2 entries=1 op=nft_unregister_rule pid=4522 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.124000 audit[4522]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=228 a0=3 a1=ffffd4a96760 a2=0 a3=0 items=0 ppid=4328 pid=4522 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.124000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4400464F5257415244002D6A00444F434B45522D55534552 Jul 16 23:20:18.130000 audit[4523]: NETFILTER_CFG table=filter:73 family=2 entries=1 op=nft_register_rule pid=4523 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.130000 audit[4523]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=224 a0=3 a1=fffff1e96e50 a2=0 a3=0 items=0 ppid=4328 pid=4523 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.130000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D55534552 Jul 16 23:20:18.132000 audit[4525]: NETFILTER_CFG table=filter:74 family=10 entries=1 op=nft_register_chain pid=4525 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.132000 audit[4525]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=96 a0=3 a1=ffffe46710d0 a2=0 a3=0 items=0 ppid=4328 pid=4525 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.132000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D740066696C746572002D4E00444F434B45522D55534552 Jul 16 23:20:18.133000 audit[4527]: NETFILTER_CFG table=filter:75 family=10 entries=1 op=nft_register_rule pid=4527 subj=system_u:system_r:kernel_t:s0 comm="ip6tables" Jul 16 23:20:18.133000 audit[4527]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=224 a0=3 a1=ffffec31d300 a2=0 a3=0 items=0 ppid=4328 pid=4527 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="ip6tables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.133000 audit: PROCTITLE proctitle=2F7573722F62696E2F6970367461626C6573002D2D77616974002D4900464F5257415244002D6A00444F434B45522D55534552 Jul 16 23:20:18.139000 audit[4529]: NETFILTER_CFG table=nat:76 family=2 entries=1 op=nft_unregister_rule pid=4529 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.139000 audit[4529]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=404 a0=3 a1=ffffd56dab80 a2=0 a3=0 items=0 ppid=4328 pid=4529 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.139000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4400504F5354524F5554494E47002D73003137322E31372E302E302F31360000002D6F00646F636B657230002D6A004D415351554552414445 Jul 16 23:20:18.147000 audit[4531]: NETFILTER_CFG table=nat:77 family=2 entries=1 op=nft_unregister_rule pid=4531 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.147000 audit[4531]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=280 a0=3 a1=ffffd0c77f10 a2=0 a3=0 items=0 ppid=4328 pid=4531 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.147000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4400444F434B4552002D6900646F636B657230002D6A0052455455524E Jul 16 23:20:18.154000 audit[4536]: NETFILTER_CFG table=filter:78 family=2 entries=1 op=nft_unregister_rule pid=4536 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.154000 audit[4536]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=304 a0=3 a1=ffffc2cc5a20 a2=0 a3=0 items=0 ppid=4328 pid=4536 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.154000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4400444F434B45522D464F5257415244002D6900646F636B657230002D6A00414343455054 Jul 16 23:20:18.158000 audit[4538]: NETFILTER_CFG table=filter:79 family=2 entries=1 op=nft_unregister_rule pid=4538 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.158000 audit[4538]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=368 a0=3 a1=ffffdcd801a0 a2=0 a3=0 items=0 ppid=4328 pid=4538 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.158000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4400444F434B45520000002D6900646F636B657230002D6F00646F636B657230002D6A0044524F50 Jul 16 23:20:18.162000 audit[4540]: NETFILTER_CFG table=filter:80 family=2 entries=1 op=nft_unregister_rule pid=4540 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.162000 audit[4540]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=504 a0=3 a1=ffffd7def370 a2=0 a3=0 items=0 ppid=4328 pid=4540 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.162000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4400444F434B45522D4354002D6F00646F636B657230002D6D00636F6E6E747261636B002D2D637473746174650052454C415445442C45535441424C4953484544002D6A00414343455054 Jul 16 23:20:18.169000 audit[4542]: NETFILTER_CFG table=filter:81 family=2 entries=1 op=nft_unregister_rule pid=4542 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.169000 audit[4542]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=304 a0=3 a1=fffffe1a4710 a2=0 a3=0 items=0 ppid=4328 pid=4542 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.169000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4400444F434B45522D425249444745002D6F00646F636B657230002D6A00444F434B4552 Jul 16 23:20:18.176000 audit[4544]: NETFILTER_CFG table=filter:82 family=2 entries=1 op=nft_unregister_rule pid=4544 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.176000 audit[4544]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=420 a0=3 a1=fffffb2e0bc0 a2=0 a3=0 items=0 ppid=4328 pid=4544 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.176000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4400444F434B45522D49534F4C4154494F4E2D53544147452D31002D6900646F636B6572300000002D6F00646F636B657230002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:20:18.182000 audit[4546]: NETFILTER_CFG table=filter:83 family=2 entries=1 op=nft_unregister_rule pid=4546 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.182000 audit[4546]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=304 a0=3 a1=ffffdd96e360 a2=0 a3=0 items=0 ppid=4328 pid=4546 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.182000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4400444F434B45522D49534F4C4154494F4E2D53544147452D32002D6F00646F636B657230002D6A0044524F50 Jul 16 23:20:18.195165 dockerd[4328]: time="2026-07-16T23:20:18.195106446Z" level=warning msg="Error (Unable to complete atomic operation, key modified) deleting object [endpoint_count 1cce030c00e2d1a0ad368f20c2cbdb7c216edb64964fd1fe83e1defd6e93913e], retrying...." Jul 16 23:20:18.208000 audit[4548]: NETFILTER_CFG table=nat:84 family=2 entries=1 op=nft_register_rule pid=4548 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.208000 audit[4548]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=412 a0=3 a1=ffffe937a9d0 a2=0 a3=0 items=0 ppid=4328 pid=4548 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.208000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4900504F5354524F5554494E47002D73003137322E31372E302E302F31360000002D6F00646F636B657230002D6A004D415351554552414445 Jul 16 23:20:18.210000 audit[4550]: NETFILTER_CFG table=nat:85 family=2 entries=1 op=nft_register_rule pid=4550 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.210000 audit[4550]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=288 a0=3 a1=ffffdfbbf350 a2=0 a3=0 items=0 ppid=4328 pid=4550 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.210000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D74006E6174002D4900444F434B4552002D6900646F636B657230002D6A0052455455524E Jul 16 23:20:18.217000 audit[4558]: NETFILTER_CFG table=filter:86 family=2 entries=1 op=nft_register_rule pid=4558 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.217000 audit[4558]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=300 a0=3 a1=ffffc50bd580 a2=0 a3=0 items=0 ppid=4328 pid=4558 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.217000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45522D464F5257415244002D6900646F636B657230002D6A00414343455054 Jul 16 23:20:18.221000 audit[4563]: NETFILTER_CFG table=filter:87 family=2 entries=1 op=nft_register_rule pid=4563 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.221000 audit[4563]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=376 a0=3 a1=fffff68d7530 a2=0 a3=0 items=0 ppid=4328 pid=4563 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.221000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45520000002D6900646F636B657230002D6F00646F636B657230002D6A0044524F50 Jul 16 23:20:18.223000 audit[4565]: NETFILTER_CFG table=filter:88 family=2 entries=1 op=nft_register_rule pid=4565 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.223000 audit[4565]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=512 a0=3 a1=fffff9f41ce0 a2=0 a3=0 items=0 ppid=4328 pid=4565 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.223000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45522D4354002D6F00646F636B657230002D6D00636F6E6E747261636B002D2D637473746174650052454C415445442C45535441424C4953484544002D6A00414343455054 Jul 16 23:20:18.224000 audit[4567]: NETFILTER_CFG table=filter:89 family=2 entries=1 op=nft_register_rule pid=4567 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.224000 audit[4567]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffdf91ae60 a2=0 a3=0 items=0 ppid=4328 pid=4567 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.224000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45522D425249444745002D6F00646F636B657230002D6A00444F434B4552 Jul 16 23:20:18.226000 audit[4569]: NETFILTER_CFG table=filter:90 family=2 entries=1 op=nft_register_rule pid=4569 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.226000 audit[4569]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=428 a0=3 a1=ffffd9c71d50 a2=0 a3=0 items=0 ppid=4328 pid=4569 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.226000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4100444F434B45522D49534F4C4154494F4E2D53544147452D31002D6900646F636B6572300000002D6F00646F636B657230002D6A00444F434B45522D49534F4C4154494F4E2D53544147452D32 Jul 16 23:20:18.228000 audit[4571]: NETFILTER_CFG table=filter:91 family=2 entries=1 op=nft_register_rule pid=4571 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:18.228000 audit[4571]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=312 a0=3 a1=ffffc23d08b0 a2=0 a3=0 items=0 ppid=4328 pid=4571 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:18.228000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D740066696C746572002D4900444F434B45522D49534F4C4154494F4E2D53544147452D32002D6F00646F636B657230002D6A0044524F50 Jul 16 23:20:18.238566 dockerd[4328]: time="2026-07-16T23:20:18.238526365Z" level=info msg="Loading containers: done." Jul 16 23:20:18.248855 systemd[1]: var-lib-docker-overlay2-opaque\x2dbug\x2dcheck1898443623-merged.mount: Deactivated successfully. Jul 16 23:20:18.293650 dockerd[4328]: time="2026-07-16T23:20:18.293347460Z" level=warning msg="Not using native diff for overlay2, this may cause degraded performance for building images: kernel has CONFIG_OVERLAY_FS_REDIRECT_DIR enabled" storage-driver=overlay2 Jul 16 23:20:18.293650 dockerd[4328]: time="2026-07-16T23:20:18.293507891Z" level=info msg="Docker daemon" commit=45873be containerd-snapshotter=false storage-driver=overlay2 version=28.2.2 Jul 16 23:20:18.293650 dockerd[4328]: time="2026-07-16T23:20:18.293546504Z" level=info msg="Initializing buildkit" Jul 16 23:20:18.294593 dockerd[4328]: time="2026-07-16T23:20:18.294568909Z" level=warning msg="CDI setup error /etc/cdi: failed to monitor for changes: no such file or directory" Jul 16 23:20:18.294593 dockerd[4328]: time="2026-07-16T23:20:18.294586948Z" level=warning msg="CDI setup error /var/run/cdi: failed to monitor for changes: no such file or directory" Jul 16 23:20:18.319789 dockerd[4328]: time="2026-07-16T23:20:18.319750554Z" level=info msg="Completed buildkit initialization" Jul 16 23:20:18.325740 dockerd[4328]: time="2026-07-16T23:20:18.325703255Z" level=info msg="Daemon has completed initialization" Jul 16 23:20:18.326715 dockerd[4328]: time="2026-07-16T23:20:18.326068218Z" level=info msg="API listen on /run/docker.sock" Jul 16 23:20:18.326303 systemd[1]: Started docker.service - Docker Application Container Engine. Jul 16 23:20:18.326000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=docker comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:18.328000 audit[3942]: AUDIT1106 pid=3942 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_limits,pam_env,pam_umask,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:18.328000 audit[3942]: AUDIT1104 pid=3942 uid=500 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success' Jul 16 23:20:18.328878 sudo[3942]: pam_unix(sudo:session): session closed for user root Jul 16 23:20:18.359022 sshd[4373]: Connection closed by authenticating user root 101.96.192.88 port 52592 [preauth] Jul 16 23:20:18.359000 audit[4373]: AUDIT1109 pid=4373 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:18.362243 systemd[1]: sshd@54-4126-10.0.0.31:22-101.96.192.88:52592.service: Deactivated successfully. Jul 16 23:20:18.362000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@54-4126-10.0.0.31:22-101.96.192.88:52592 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:18.470463 sshd[3941]: Connection closed by 20.103.240.199 port 52408 Jul 16 23:20:18.471120 sshd-session[3937]: pam_unix(sshd:session): session closed for user core Jul 16 23:20:18.470000 audit[3937]: AUDIT1106 pid=3937 uid=0 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:18.471000 audit[3937]: AUDIT1104 pid=3937 uid=0 auid=500 ses=17 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:18.486148 kernel: EXT4-fs (loop4): unmounting filesystem f2f513b9-bfd3-497e-a033-752d45a5434c. Jul 16 23:20:18.497171 kernel: EXT4-fs (loop1): unmounting filesystem 20ac047a-a7b3-45f4-863d-e15c722f66d3. Jul 16 23:20:18.524010 systemd[1]: sshd@49-4122-10.0.0.31:22-20.103.240.199:52408.service: Deactivated successfully. Jul 16 23:20:18.523000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@49-4122-10.0.0.31:22-20.103.240.199:52408 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:18.526474 systemd[1]: session-17.scope: Deactivated successfully. Jul 16 23:20:18.527961 systemd-logind[2301]: Session 17 logged out. Waiting for processes to exit. Jul 16 23:20:18.528794 systemd-logind[2301]: Removed session 17. Jul 16 23:20:18.623000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@55-26-10.0.0.31:22-20.103.240.199:60610 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:18.624633 systemd[1]: Started sshd@55-26-10.0.0.31:22-20.103.240.199:60610.service - OpenSSH per-connection server daemon (20.103.240.199:60610). Jul 16 23:20:19.007000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@56-27-10.0.0.31:22-101.96.192.88:52598 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:19.008383 systemd[1]: Started sshd@56-27-10.0.0.31:22-101.96.192.88:52598.service - OpenSSH per-connection server daemon (101.96.192.88:52598). Jul 16 23:20:19.364000 audit[4607]: AUDIT1101 pid=4607 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:accounting grantors=pam_access,pam_time,pam_unix,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:19.366216 sshd[4607]: Accepted publickey for core from 20.103.240.199 port 60610 ssh2: RSA SHA256:9z7PcVGh+BDy/w38jCx62SRzDRswt2Z/b932VDNKUqw Jul 16 23:20:19.366000 audit[4607]: AUDIT1103 pid=4607 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:19.366000 audit[4607]: SYSCALL arch=c00000b7 syscall=64 success=yes exit=3 a0=8 a1=fffffb89c800 a2=3 a3=0 items=0 ppid=1 pid=4607 auid=500 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=18 comm="sshd-session" exe="/usr/lib64/misc/sshd-session" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.366000 audit: PROCTITLE proctitle=737368642D73657373696F6E3A20636F7265205B707269765D Jul 16 23:20:19.367693 sshd-session[4607]: pam_unix(sshd:session): session opened for user core(uid=500) by core(uid=0) Jul 16 23:20:19.371790 systemd-logind[2301]: New session '18' of user 'core' with class 'user' and type 'tty'. Jul 16 23:20:19.381296 systemd[1]: Started session-18.scope - Session 18 of User core. Jul 16 23:20:19.382000 audit[4607]: AUDIT1105 pid=4607 uid=0 auid=500 ses=18 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_open grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:19.384000 audit[4615]: AUDIT1103 pid=4615 uid=0 auid=500 ses=18 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:19.640366 sshd[4611]: Connection closed by authenticating user root 101.96.192.88 port 52598 [preauth] Jul 16 23:20:19.639000 audit[4611]: AUDIT1109 pid=4611 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:19.642561 systemd[1]: sshd@56-27-10.0.0.31:22-101.96.192.88:52598.service: Deactivated successfully. Jul 16 23:20:19.641000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@56-27-10.0.0.31:22-101.96.192.88:52598 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:19.804000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@57-4127-10.0.0.31:22-101.96.192.88:52610 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:19.805430 systemd[1]: Started sshd@57-4127-10.0.0.31:22-101.96.192.88:52610.service - OpenSSH per-connection server daemon (101.96.192.88:52610). Jul 16 23:20:19.822934 systemd[1]: var-lib-docker-overlay2-9eb4fec77477797cfc3a161a157309fbb8194145e394add950a4a3c83e2d2461-merged.mount: Deactivated successfully. Jul 16 23:20:19.922755 systemd[1]: Started docker-983f395da75779fdf45c3a81b54b30c8c728444c3cf12e6cd96f32fb2a24b3cd.scope - libcontainer container 983f395da75779fdf45c3a81b54b30c8c728444c3cf12e6cd96f32fb2a24b3cd. Jul 16 23:20:19.929000 audit: BPF prog-id=181 op=LOAD Jul 16 23:20:19.929000 audit: BPF prog-id=182 op=LOAD Jul 16 23:20:19.929000 audit[4649]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=19 a0=5 a1=40001599d8 a2=90 a3=0 items=0 ppid=4639 pid=4649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.929000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F39383366333935646137353737396664663435633361383162 Jul 16 23:20:19.930000 audit: BPF prog-id=182 op=UNLOAD Jul 16 23:20:19.930000 audit[4649]: SYSCALL arch=c00000b7 syscall=57 success=yes exit=0 a0=13 a1=0 a2=0 a3=0 items=0 ppid=4639 pid=4649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.930000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F39383366333935646137353737396664663435633361383162 Jul 16 23:20:19.931000 audit: BPF prog-id=183 op=LOAD Jul 16 23:20:19.931000 audit[4649]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=19 a0=5 a1=4000159b60 a2=90 a3=0 items=0 ppid=4639 pid=4649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F39383366333935646137353737396664663435633361383162 Jul 16 23:20:19.931000 audit: BPF prog-id=184 op=LOAD Jul 16 23:20:19.931000 audit[4649]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=21 a0=5 a1=40001598d0 a2=90 a3=0 items=0 ppid=4639 pid=4649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F39383366333935646137353737396664663435633361383162 Jul 16 23:20:19.931000 audit: BPF prog-id=184 op=UNLOAD Jul 16 23:20:19.931000 audit[4649]: SYSCALL arch=c00000b7 syscall=57 success=yes exit=0 a0=15 a1=0 a2=0 a3=0 items=0 ppid=4639 pid=4649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F39383366333935646137353737396664663435633361383162 Jul 16 23:20:19.931000 audit: BPF prog-id=183 op=UNLOAD Jul 16 23:20:19.931000 audit[4649]: SYSCALL arch=c00000b7 syscall=57 success=yes exit=0 a0=13 a1=0 a2=0 a3=0 items=0 ppid=4639 pid=4649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F39383366333935646137353737396664663435633361383162 Jul 16 23:20:19.931000 audit: BPF prog-id=185 op=LOAD Jul 16 23:20:19.931000 audit[4649]: SYSCALL arch=c00000b7 syscall=280 success=yes exit=19 a0=5 a1=4000159dc0 a2=90 a3=0 items=0 ppid=4639 pid=4649 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="runc" exe="/usr/bin/runc" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.931000 audit: PROCTITLE proctitle=72756E63002D2D726F6F74002F7661722F72756E2F646F636B65722F72756E74696D652D72756E632F6D6F6279002D2D6C6F67002F72756E2F636F6E7461696E6572642F696F2E636F6E7461696E6572642E72756E74696D652E76322E7461736B2F6D6F62792F39383366333935646137353737396664663435633361383162 Jul 16 23:20:19.956635 kernel: docker0: port 1(vethc4644b4) entered blocking state Jul 16 23:20:19.956726 kernel: docker0: port 1(vethc4644b4) entered disabled state Jul 16 23:20:19.960057 kernel: vethc4644b4: entered allmulticast mode Jul 16 23:20:19.963606 kernel: vethc4644b4: entered promiscuous mode Jul 16 23:20:19.947000 audit: ANOM_PROMISCUOUS dev=vethc4644b4 prom=256 old_prom=0 auid=4294967295 uid=0 gid=0 ses=4294967295 Jul 16 23:20:19.947000 audit[4328]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=40 a0=d a1=400072c1b0 a2=28 a3=0 items=0 ppid=1 pid=4328 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dockerd" exe="/usr/bin/dockerd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.947000 audit: PROCTITLE proctitle=2F7573722F62696E2F646F636B657264002D2D686F73743D66643A2F2F002D2D636F6E7461696E6572643D2F72756E2F636F6E7461696E6572642F636F6E7461696E6572642E736F636B002D2D73656C696E75782D656E61626C65643D74727565 Jul 16 23:20:19.966000 audit[4671]: NETFILTER_CFG table=raw:92 family=2 entries=3 op=nft_register_chain pid=4671 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:19.966000 audit[4671]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=528 a0=3 a1=fffff339bdb0 a2=0 a3=0 items=0 ppid=4328 pid=4671 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:19.966000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D7400726177002D4100505245524F5554494E47002D64003137322E31372E302E320000002D6900646F636B657230002D6A0044524F50 Jul 16 23:20:19.968455 systemd-networkd[2086]: vethc4644b4: Link UP Jul 16 23:20:19.985173 kernel: eth0: renamed from vethd85414b Jul 16 23:20:19.993548 kernel: docker0: port 1(vethc4644b4) entered blocking state Jul 16 23:20:19.993625 kernel: docker0: port 1(vethc4644b4) entered forwarding state Jul 16 23:20:19.994004 systemd-networkd[2086]: vethc4644b4: Gained carrier Jul 16 23:20:19.994925 systemd-networkd[2086]: docker0: Gained carrier Jul 16 23:20:20.021592 systemd[1]: docker-983f395da75779fdf45c3a81b54b30c8c728444c3cf12e6cd96f32fb2a24b3cd.scope: Deactivated successfully. Jul 16 23:20:20.044979 dockerd[4328]: time="2026-07-16T23:20:20.044924188Z" level=info msg="ignoring event" container=983f395da75779fdf45c3a81b54b30c8c728444c3cf12e6cd96f32fb2a24b3cd module=libcontainerd namespace=moby topic=/tasks/delete type="*events.TaskDelete" Jul 16 23:20:20.046004 containerd[4327]: time="2026-07-16T23:20:20.045423631Z" level=info msg="shim disconnected" id=983f395da75779fdf45c3a81b54b30c8c728444c3cf12e6cd96f32fb2a24b3cd namespace=moby Jul 16 23:20:20.046004 containerd[4327]: time="2026-07-16T23:20:20.045456669Z" level=warning msg="cleaning up after shim disconnected" id=983f395da75779fdf45c3a81b54b30c8c728444c3cf12e6cd96f32fb2a24b3cd namespace=moby Jul 16 23:20:20.046004 containerd[4327]: time="2026-07-16T23:20:20.045462581Z" level=info msg="cleaning up dead shim" namespace=moby Jul 16 23:20:20.068523 systemd-networkd[2086]: vethc4644b4: Lost carrier Jul 16 23:20:20.069153 kernel: docker0: port 1(vethc4644b4) entered disabled state Jul 16 23:20:20.072154 kernel: vethd85414b: renamed from eth0 Jul 16 23:20:20.086000 audit[4700]: NETFILTER_CFG table=raw:93 family=2 entries=1 op=nft_unregister_rule pid=4700 subj=system_u:system_r:kernel_t:s0 comm="iptables" Jul 16 23:20:20.086000 audit[4700]: SYSCALL arch=c00000b7 syscall=211 success=yes exit=380 a0=3 a1=ffffc19788c0 a2=0 a3=0 items=0 ppid=4328 pid=4700 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="iptables" exe="/usr/bin/xtables-nft-multi" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:20.086000 audit: PROCTITLE proctitle=2F7573722F62696E2F69707461626C6573002D2D77616974002D7400726177002D4400505245524F5554494E47002D64003137322E31372E302E320000002D6900646F636B657230002D6A0044524F50 Jul 16 23:20:20.094633 systemd-networkd[2086]: vethc4644b4: Link DOWN Jul 16 23:20:20.103570 kernel: docker0: port 1(vethc4644b4) entered disabled state Jul 16 23:20:20.103627 kernel: vethc4644b4 (unregistering): left allmulticast mode Jul 16 23:20:20.108374 kernel: vethc4644b4 (unregistering): left promiscuous mode Jul 16 23:20:20.093000 audit: ANOM_PROMISCUOUS dev=vethc4644b4 prom=0 old_prom=256 auid=4294967295 uid=0 gid=0 ses=4294967295 Jul 16 23:20:20.112810 kernel: docker0: port 1(vethc4644b4) entered disabled state Jul 16 23:20:20.093000 audit[4328]: SYSCALL arch=c00000b7 syscall=206 success=yes exit=32 a0=d a1=4000a9e720 a2=20 a3=0 items=0 ppid=1 pid=4328 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="dockerd" exe="/usr/bin/dockerd" subj=system_u:system_r:kernel_t:s0 key=(null) Jul 16 23:20:20.093000 audit: PROCTITLE proctitle=2F7573722F62696E2F646F636B657264002D2D686F73743D66643A2F2F002D2D636F6E7461696E6572643D2F72756E2F636F6E7461696E6572642F636F6E7461696E6572642E736F636B002D2D73656C696E75782D656E61626C65643D74727565 Jul 16 23:20:20.140000 audit: BPF prog-id=181 op=UNLOAD Jul 16 23:20:20.140000 audit: BPF prog-id=185 op=UNLOAD Jul 16 23:20:20.330677 sshd[4615]: Connection closed by 20.103.240.199 port 60610 Jul 16 23:20:20.331830 sshd-session[4607]: pam_unix(sshd:session): session closed for user core Jul 16 23:20:20.331000 audit[4607]: AUDIT1106 pid=4607 uid=0 auid=500 ses=18 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:session_close grantors=pam_loginuid,pam_env,pam_namespace,pam_keyinit,pam_limits,pam_env,pam_umask,pam_unix,pam_systemd,pam_lastlog,pam_mail acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:20.331000 audit[4607]: AUDIT1104 pid=4607 uid=0 auid=500 ses=18 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:setcred grantors=pam_env,pam_faillock acct="core" exe="/usr/lib64/misc/sshd-session" hostname=20.103.240.199 addr=20.103.240.199 terminal=ssh res=success' Jul 16 23:20:20.335025 systemd[1]: sshd@55-26-10.0.0.31:22-20.103.240.199:60610.service: Deactivated successfully. Jul 16 23:20:20.334000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@55-26-10.0.0.31:22-20.103.240.199:60610 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:20.337772 systemd[1]: session-18.scope: Deactivated successfully. Jul 16 23:20:20.339316 systemd-logind[2301]: Session 18 logged out. Waiting for processes to exit. Jul 16 23:20:20.340182 systemd-logind[2301]: Removed session 18. Jul 16 23:20:20.449661 sshd[4626]: Connection closed by authenticating user root 101.96.192.88 port 52610 [preauth] Jul 16 23:20:20.449000 audit[4626]: AUDIT1109 pid=4626 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:20.451701 systemd[1]: sshd@57-4127-10.0.0.31:22-101.96.192.88:52610.service: Deactivated successfully. Jul 16 23:20:20.450000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@57-4127-10.0.0.31:22-101.96.192.88:52610 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:20.609000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@58-4128-10.0.0.31:22-101.96.192.88:52616 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:20.610437 systemd[1]: Started sshd@58-4128-10.0.0.31:22-101.96.192.88:52616.service - OpenSSH per-connection server daemon (101.96.192.88:52616). Jul 16 23:20:20.725613 systemd[1]: run-docker-netns-26b8f44d08ae.mount: Deactivated successfully. Jul 16 23:20:20.725702 systemd[1]: var-lib-docker-overlay2-9eb4fec77477797cfc3a161a157309fbb8194145e394add950a4a3c83e2d2461-merged.mount: Deactivated successfully. Jul 16 23:20:21.000570 systemd-networkd[2086]: docker0: Lost carrier Jul 16 23:20:21.234289 sshd[4707]: Connection closed by authenticating user root 101.96.192.88 port 52616 [preauth] Jul 16 23:20:21.233000 audit[4707]: AUDIT1109 pid=4707 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:21.235773 systemd[1]: sshd@58-4128-10.0.0.31:22-101.96.192.88:52616.service: Deactivated successfully. Jul 16 23:20:21.237000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@58-4128-10.0.0.31:22-101.96.192.88:52616 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:21.393000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@59-4129-10.0.0.31:22-101.96.192.88:52628 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:21.394768 systemd[1]: Started sshd@59-4129-10.0.0.31:22-101.96.192.88:52628.service - OpenSSH per-connection server daemon (101.96.192.88:52628). Jul 16 23:20:22.425178 sshd[4713]: Connection closed by authenticating user root 101.96.192.88 port 52628 [preauth] Jul 16 23:20:22.424000 audit[4713]: AUDIT1109 pid=4713 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:22.430101 systemd[1]: sshd@59-4129-10.0.0.31:22-101.96.192.88:52628.service: Deactivated successfully. Jul 16 23:20:22.430428 kernel: kauditd_printk_skb: 247 callbacks suppressed Jul 16 23:20:22.430465 kernel: audit: type=1109 audit(1784244022.424:776): pid=4713 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='op=PAM:bad_ident grantors=? acct="?" exe="/usr/lib64/misc/sshd-session" hostname=101.96.192.88 addr=101.96.192.88 terminal=ssh res=failed' Jul 16 23:20:22.429000 audit[1]: SERVICE_STOP pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@59-4129-10.0.0.31:22-101.96.192.88:52628 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:22.462405 kernel: audit: type=1131 audit(1784244022.429:777): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@59-4129-10.0.0.31:22-101.96.192.88:52628 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:22.594353 systemd[1]: Started sshd@60-4130-10.0.0.31:22-101.96.192.88:47774.service - OpenSSH per-connection server daemon (101.96.192.88:47774). Jul 16 23:20:22.593000 audit[1]: SERVICE_START pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@60-4130-10.0.0.31:22-101.96.192.88:47774 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success' Jul 16 23:20:22.611162 kernel: audit: type=1130 audit(1784244022.593:778): pid=1 uid=0 auid=4294967295 ses=4294967295 subj=system_u:system_r:kernel_t:s0 msg='unit=sshd@60-4130-10.0.0.31:22-101.96.192.88:47774 comm="systemd" exe="/usr/lib/systemd/systemd" hostname=? addr=? terminal=? res=success'