Command: /usr/local/sbin/syslog-digest.py Time : 2.2488s Status : exited 0 Output : Syslog digest — 2026-07-08 03:05 EDT Processed 11,762 lines, filtered 6,798 (57%). 4,964 unknown (1343 distinct) from 68 host(s). == abadi-computer (2 distinct, 2 total) == Jul 8 02:49:44 abadi-computer falcon-sensor-bpf[529]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:49:44 abadi-computer falcon-sensor-bpf[529]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == ai-course (2 distinct, 2 total) == Jul 8 02:43:46 ai-course falcon-sensor-bpf[663]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:43:46 ai-course falcon-sensor-bpf[663]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == alec.cs.umd.edu (11 distinct, 15 total) == Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/gpgconf from create access on the directory /(null). For complete SELinux messages run: sealert -l 4ecdce21-3dac-40a9-a560-c9e0b74e1048 Jul 8 02:57:47 alec.cs.umd.edu sedispatch[1526]: AVC Message regarding setroubleshoot, ignoring message [x2] Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 097e900f-6f99-4556-a152-804f7d9fcd03 Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l fae96741-ebbc-43d8-8889-177dfd6762b5 [x2] Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.Go5QRq/repodata/repomd.xml. For complete SELinux messages run: sealert -l ba909f2f-be15-48cf-9e8c-ed5870b14912 Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l d95987a4-05ec-44f7-bae6-3845310a25e4 [x2] Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.Go5QRq. For complete SELinux messages run: sealert -l ab19c9e1-8ba5-492e-b96b-04d28e6db881 Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l f7fb604b-6e01-441e-98d6-05f1b39c4e6b Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 16ecfa54-c86a-44c3-8b37-a77487bcfaa8 [x2] Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 525b2353-99b1-4cc4-8ef3-593ca2de44e6 Jul 8 02:57:47 alec.cs.umd.edu setroubleshoot[925060]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.kWhCLa/repodata/repomd.xml. For complete SELinux messages run: sealert -l ba909f2f-be15-48cf-9e8c-ed5870b14912 == b0b02.cs.umd.edu (4 distinct, 4 total) == Jul 8 02:42:11 b0b02.cs.umd.edu setroubleshoot[626620]: SELinux is preventing /usr/bin/python3.9 from getattr access on the file /etc/authselect/nsswitch.conf. For complete SELinux messages run: sealert -l 9a1e2952-3fde-4937-a8ab-f7f59791a458 Jul 8 02:42:14 b0b02.cs.umd.edu setroubleshoot[626620]: SELinux is preventing /usr/bin/python3.9 from read access on the file /etc/authselect/nsswitch.conf. For complete SELinux messages run: sealert -l 97d74423-e027-4cd6-8810-ad80944900b5 Jul 8 02:42:17 b0b02.cs.umd.edu setroubleshoot[626620]: SELinux is preventing /usr/bin/python3.9 from open access on the file /etc/authselect/nsswitch.conf. For complete SELinux messages run: sealert -l 4f253f6a-62d6-46dd-8eaf-0b4d29df41c6 Jul 8 02:54:15 b0b02.cs.umd.edu rustdesk[629083]: cannot open display: == bachata (9 distinct, 9 total) == Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l d079b109-ad6d-4bc0-9ef3-e254bad3fa2e Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 0578ceb3-0a08-460b-86b4-e6371f1d0e19 Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l 80784a28-528c-435d-b86d-8a8dafb9e226 Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.urmr9Q/repodata/repomd.xml. For complete SELinux messages run: sealert -l 47fcf631-39c6-4c67-82f2-586459476365 Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 3e71ccc6-74b4-4f3e-8e58-e1d0f45ef516 Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.urmr9Q. For complete SELinux messages run: sealert -l f3ed82cd-1a14-4997-bf18-62da3edb7d18 Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l 22c2000f-ab17-4de7-bac2-285039cea9ce Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 1afc6d0d-8d51-475c-8e25-d5e2d8815f3e Jul 8 02:12:22 bachata setroubleshoot[919808]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 660eadaf-a616-461c-9100-4aa42cdb3735 == biggulp.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:38:21 biggulp.cs.umd.edu falcon-sensor-bpf[821]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:38:21 biggulp.cs.umd.edu falcon-sensor-bpf[821]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == bigtuna (12 distinct, 16 total) == Jul 8 02:06:56 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 3a2cbdec-db52-443d-b453-f08c5e847792 [x2] Jul 8 02:06:56 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l 2c04797a-4ae4-490b-b59c-3262bbbadc70 [x2] Jul 8 02:06:56 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l e3a85adf-b902-4f6e-9ff9-89ae77528af4 [x2] Jul 8 02:06:56 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.YzlZpV/mirrorlist. For complete SELinux messages run: sealert -l c8393320-131c-4ce8-8792-742e837efbff Jul 8 02:06:56 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l d5c4d9df-d535-42f2-85b2-38dcaf7f13f2 [x2] Jul 8 02:06:56 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.YzlZpV/repodata/repomd.xml.asc. For complete SELinux messages run: sealert -l c8393320-131c-4ce8-8792-742e837efbff Jul 8 02:06:56 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.YzlZpV. For complete SELinux messages run: sealert -l 3165b5b7-0078-41aa-846f-b90bb68e0f3a Jul 8 02:06:57 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l 4a2a5ca2-500f-4ad9-a028-867685399fd6 Jul 8 02:06:57 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l d7da0a24-d203-4f60-b97b-28e14aafd4f6 Jul 8 02:06:57 bigtuna setroubleshoot[136947]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 7007c35e-00aa-49a5-8a92-54350cd95457 Jul 8 02:52:47 bigtuna falcon-sensor-bpf[874]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:52:47 bigtuna falcon-sensor-bpf[874]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == borealis (16 distinct, 16 total) == Jul 8 02:49:36 borealis falcon-sensor-bpf[916]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:49:36 borealis falcon-sensor-bpf[916]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 Jul 8 02:55:27 borealis setroubleshoot[1829740]: failed to retrieve rpm info for path '/etc/insights-client/machine-id': Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from read access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 129c207a-8f4e-4a49-8851-37f6b00bd21c Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from open access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 7ad6d995-c729-4341-b28d-9b3a7c27fd6d Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from getattr access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l c943ac27-d7b7-46e2-a5cc-c1bfd6226172 Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from ioctl access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 1cc91000-f8a2-43eb-863b-652abe61b0c5 Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l a471f07a-bb4c-4542-9a8c-ed5f29db5204 Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/gpgconf from create access on the directory /(null). For complete SELinux messages run: sealert -l 92a9b07a-a599-4de8-82f1-a25eea767516 Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l d5c029ee-21f9-41a6-b257-85d05127882b Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.KwhO8G/repodata/repomd.xml. For complete SELinux messages run: sealert -l e54ee067-2a6c-4756-9b0f-67de98617a1d Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 7ac13b2d-caf9-47ff-bf0b-28b4cbe2b4ab Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.KwhO8G. For complete SELinux messages run: sealert -l 264a9a77-5587-4662-a71d-8266fe551674 Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l d1983c76-8c72-4463-a58e-a6f283f4e89f Jul 8 02:55:28 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 3c47ffa1-bc9f-4e5b-9b0a-aed5250dff05 Jul 8 02:55:29 borealis setroubleshoot[1829740]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 07614bd2-82a0-4bf6-ae18-b962f1db221b == borogove.cs.umd.edu (252 distinct, 939 total) == Jul 8 02:05:02 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/newww/files/ctools/css/07e2d10a94783acb437571b24863b61f.css': [x11] Jul 8 02:05:06 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/ctools/css/07e2d10a94783acb437571b24863b61f.css. For complete SELinux messages run: sealert -l b1326130-1866-464e-9f06-9f5534729101 [x17] Jul 8 02:05:06 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js': [x30] Jul 8 02:05:08 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js. For complete SELinux messages run: sealert -l b1326130-1866-464e-9f06-9f5534729101 [x49] Jul 8 02:05:12 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from read access on the file .htaccess. For complete SELinux messages run: sealert -l d5c242c1-beef-4a5e-b5bd-34af4f47243b [x77] Jul 8 02:05:12 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/newww/files/.htaccess': [x36] Jul 8 02:05:14 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/.htaccess. For complete SELinux messages run: sealert -l 936359f5-7c56-481e-af55-a74a13c0002f [x68] Jul 8 02:05:16 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/.htaccess. For complete SELinux messages run: sealert -l b1326130-1866-464e-9f06-9f5534729101 [x40] Jul 8 02:05:18 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from read access on the file css_MYip58jPj0SHS-ARrLeVmxTUC86Xw0JEc_G8REAjUkI.css.gz. For complete SELinux messages run: sealert -l d5c242c1-beef-4a5e-b5bd-34af4f47243b [x8] Jul 8 02:05:19 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/newww/files/css/css_MYip58jPj0SHS-ARrLeVmxTUC86Xw0JEc_G8REAjUkI.css.gz': [x6] Jul 8 02:05:21 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/css/css_MYip58jPj0SHS-ARrLeVmxTUC86Xw0JEc_G8REAjUkI.css.gz. For complete SELinux messages run: sealert -l 936359f5-7c56-481e-af55-a74a13c0002f [x8] Jul 8 02:05:23 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/bin/convert from map access on the file /fs/newww/files/css/css_MYip58jPj0SHS-ARrLeVmxTUC86Xw0JEc_G8REAjUkI.css.gz. For complete SELinux messages run: sealert -l 9f3698b3-17cb-4976-bbf9-4b1ea06c1268 [x8] Jul 8 02:05:23 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from name_connect access on the tcp_socket port 8002. For complete SELinux messages run: sealert -l 6415559d-1e6b-4ebc-9ed4-0101cacb99d4 [x71] Jul 8 02:05:25 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/newww/files/styles/slider/public/images/highlights/slider/Highlight 1.png': [x6] Jul 8 02:05:28 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/styles/slider/public/images/highlights/slider/Highlight 1.png. For complete SELinux messages run: sealert -l b1326130-1866-464e-9f06-9f5534729101 [x2] Jul 8 02:05:34 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/bin/convert from map access on the file /fs/newww/files/styles/slider/public/images/highlights/slider/Highlight 1.png. For complete SELinux messages run: sealert -l 9f3698b3-17cb-4976-bbf9-4b1ea06c1268 [x6] Jul 8 02:05:37 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from read access on the file js_GOikDsJOX04Aww72M-XK1hkq4qiL_1XgGsRdkL0XlDo.js.gz. For complete SELinux messages run: sealert -l d5c242c1-beef-4a5e-b5bd-34af4f47243b [x7] Jul 8 02:05:37 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/newww/files/js/js_GOikDsJOX04Aww72M-XK1hkq4qiL_1XgGsRdkL0XlDo.js.gz': [x8] Jul 8 02:05:39 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/js/js_GOikDsJOX04Aww72M-XK1hkq4qiL_1XgGsRdkL0XlDo.js.gz. For complete SELinux messages run: sealert -l 936359f5-7c56-481e-af55-a74a13c0002f [x6] Jul 8 02:05:41 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/bin/convert from map access on the file /fs/newww/files/js/js_GOikDsJOX04Aww72M-XK1hkq4qiL_1XgGsRdkL0XlDo.js.gz. For complete SELinux messages run: sealert -l 9f3698b3-17cb-4976-bbf9-4b1ea06c1268 [x8] Jul 8 02:05:53 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from read access on the file css_lQaZfjVpwP_oGNqdtWCSpJT1EMqXdMiU84ekLLxQnc4.css.gz. For complete SELinux messages run: sealert -l d5c242c1-beef-4a5e-b5bd-34af4f47243b [x2] Jul 8 02:05:53 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/newww/files/css/css_lQaZfjVpwP_oGNqdtWCSpJT1EMqXdMiU84ekLLxQnc4.css.gz': [x4] Jul 8 02:05:55 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/css/css_lQaZfjVpwP_oGNqdtWCSpJT1EMqXdMiU84ekLLxQnc4.css.gz. For complete SELinux messages run: sealert -l 936359f5-7c56-481e-af55-a74a13c0002f [x2] Jul 8 02:05:57 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/bin/convert from map access on the file /fs/newww/files/css/css_lQaZfjVpwP_oGNqdtWCSpJT1EMqXdMiU84ekLLxQnc4.css.gz. For complete SELinux messages run: sealert -l 9f3698b3-17cb-4976-bbf9-4b1ea06c1268 [x4] Jul 8 02:06:00 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from read access on the lnk_file theory. For complete SELinux messages run: sealert -l 930ab795-1df3-4e0c-b5f2-c183f858877b [x15] Jul 8 02:06:00 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/mediawiki/theory': [x15] Jul 8 02:06:02 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from getattr access on the lnk_file /fs/mediawiki/theory. For complete SELinux messages run: sealert -l 00f77e16-7206-47a1-a3b4-c1dd1c2a29e6 [x15] Jul 8 02:06:04 borogove.cs.umd.edu setroubleshoot[2049601]: failed to retrieve rpm info for path '/fs/newww/files/scholarly_papers/202501_Patel,_Shrey_Scholarly_Paper.pdf': Jul 8 02:06:07 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/scholarly_papers/202501_Patel,_Shrey_Scholarly_Paper.pdf. For complete SELinux messages run: sealert -l b1326130-1866-464e-9f06-9f5534729101 Jul 8 02:06:14 borogove.cs.umd.edu setroubleshoot[2049601]: SELinux is preventing /usr/bin/convert from map access on the file /fs/newww/files/scholarly_papers/202501_Patel,_Shrey_Scholarly_Paper.pdf. For complete SELinux messages run: sealert -l 9f3698b3-17cb-4976-bbf9-4b1ea06c1268 ... 222 more distinct messages not shown == cheezit.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:45:28 cheezit.cs.umd.edu falcon-sensor-bpf[1359]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:45:28 cheezit.cs.umd.edu falcon-sensor-bpf[1359]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == cmsc436-0101-redis (3 distinct, 3 total) == Jul 8 02:49:41 cmsc436-0101-redis krb5_child[917583]: Client 'admin@UMD.EDU' not found in Kerberos database Jul 8 02:49:42 cmsc436-0101-redis sshd-session[917579]: error: PAM: Authentication failure for admin from 34.38.247.68 Jul 8 02:49:44 cmsc436-0101-redis sshd-session[917586]: error: Protocol major versions differ: 2 vs. 1 == contest (9 distinct, 41 total) == Jul 8 02:06:23 contest goferd[994]: [ERROR][worker-0] gofer.messaging.adapter.connect:33 - connect: proton+amqps://satellite8.cs.umd.edu:5647, failed: Connection amqps://satellite8.cs.umd.edu:5647 disconnected: Condition('proton.pythonio', 'Connection refused to all addresses') [x33] Jul 8 02:17:13 contest setroubleshoot[94990]: SELinux is preventing /usr/libexec/platform-python3.6 from create access on the directory libdnf.9nk8bT. For complete SELinux messages run: sealert -l cb6b25c6-4765-4cf2-88a0-9b3b508e94e9 Jul 8 02:17:13 contest setroubleshoot[94990]: SELinux is preventing /usr/bin/gpgconf from add_name access on the directory repodata. For complete SELinux messages run: sealert -l 41cf7b1b-0f34-4609-98f2-b66e7825fef7 Jul 8 02:17:13 contest setroubleshoot[94990]: SELinux is preventing /usr/libexec/platform-python3.6 from create access on the file mirrorlist. For complete SELinux messages run: sealert -l fc20ff92-ea83-4f38-a24b-ddfd737a3141 Jul 8 02:17:13 contest setroubleshoot[94990]: SELinux is preventing /usr/libexec/platform-python3.6 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l ac675631-fa35-4e93-adc9-b692b18e53e5 Jul 8 02:17:13 contest setroubleshoot[94990]: SELinux is preventing /usr/libexec/platform-python3.6 from read access on the directory libdnf.9nk8bT. For complete SELinux messages run: sealert -l 45d103b6-0810-4890-a705-990118577ce8 Jul 8 02:17:18 contest setroubleshoot[94990]: SELinux is preventing /usr/libexec/platform-python3.6 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l 7e499113-2fd7-4f67-bec6-3521efbe3637 Jul 8 02:17:21 contest setroubleshoot[94990]: SELinux is preventing rhsmcertd-worke from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 22835727-7fef-4cfb-b3b5-881f66888317 Jul 8 02:17:34 contest setroubleshoot[95040]: SELinux is preventing /usr/libexec/platform-python3.6 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 3928930b-a1ed-448d-950b-0665ac2adef8 == csfw00a (1 distinct, 139 total) == Jul 8 02:05:14 csfw00a kernel: bnxt_en 0000:09:00.0 eth3: NIC Link is Down [x139] == cskayako (18 distinct, 19 total) == Jul 8 02:53:00 cskayako falcon-sensor-bpf[735]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:53:00 cskayako falcon-sensor-bpf[735]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 Jul 8 02:57:07 cskayako setroubleshoot[2153744]: failed to retrieve rpm info for path '/var/www/html/__swift/cache': Jul 8 02:57:08 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from write access on the directory /var/www/html/__swift/cache. For complete SELinux messages run: sealert -l c86f7264-b760-445b-9ee5-18a3f3d4882b Jul 8 02:57:08 cskayako setroubleshoot[2153744]: failed to retrieve rpm info for path '/var/www/html/__swift/cache/210291fbe375f76ca5c7fee95a7e8571.php': Jul 8 02:57:08 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from search access on the directory /var/www/html/__swift/cache/210291fbe375f76ca5c7fee95a7e8571.php. For complete SELinux messages run: sealert -l 5dabe20c-ddd2-4750-99c1-798ea2d8fc0d Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from getattr access on the file /var/www/html/__swift/cache/210291fbe375f76ca5c7fee95a7e8571.php. For complete SELinux messages run: sealert -l c25d7dd2-7c01-4f29-9f11-9f0afc57acba Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from getattr access on the directory /var/www/html/__swift/cache. For complete SELinux messages run: sealert -l 65d86f86-9ca2-4691-b08a-411b03476876 Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from read access on the file /var/www/html/__swift/cache/210291fbe375f76ca5c7fee95a7e8571.php. For complete SELinux messages run: sealert -l be5cdc9b-b93c-48d0-9b27-2082cb1321aa Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from open access on the file /var/www/html/__swift/cache/210291fbe375f76ca5c7fee95a7e8571.php. For complete SELinux messages run: sealert -l 524f0284-4bc7-4f64-827d-7230e6c9b83c Jul 8 02:57:09 cskayako setroubleshoot[2153744]: failed to retrieve rpm info for path '/var/www/html/__swift/logs/log.cache_08_Jul_2026_43f81095c9.txt': Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from append access on the file /var/www/html/__swift/logs/log.cache_08_Jul_2026_43f81095c9.txt. For complete SELinux messages run: sealert -l 8e7827ac-bb49-4cdd-969d-8e0abeceb42a Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from setattr access on the file /var/www/html/__swift/logs/log.cache_08_Jul_2026_43f81095c9.txt. For complete SELinux messages run: sealert -l c40264dc-bb4c-4d5d-b489-f91c1cc9c849 [x2] Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from 'read, append' accesses on the file /var/www/html/__swift/logs/log.cache_08_Jul_2026_43f81095c9.txt. For complete SELinux messages run: sealert -l 660f430a-d8bd-4a10-a19c-6d9417c48d45 Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from open access on the file /var/www/html/__swift/logs/log.cache_08_Jul_2026_43f81095c9.txt. For complete SELinux messages run: sealert -l 524f0284-4bc7-4f64-827d-7230e6c9b83c Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from getattr access on the file /var/www/html/__swift/logs/log.cache_08_Jul_2026_43f81095c9.txt. For complete SELinux messages run: sealert -l c25d7dd2-7c01-4f29-9f11-9f0afc57acba Jul 8 02:57:09 cskayako setroubleshoot[2153744]: failed to retrieve rpm info for path '/var/www/html/__swift/cache/SWIFT_Loader.cache': Jul 8 02:57:09 cskayako setroubleshoot[2153744]: SELinux is preventing /usr/bin/php from write access on the file /var/www/html/__swift/cache/SWIFT_Loader.cache. For complete SELinux messages run: sealert -l b158d6e9-8342-4eec-b95c-b636eebf4ea7 == defer (2 distinct, 2 total) == Jul 8 02:46:20 defer falcon-sensor-bpf[802]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:46:20 defer falcon-sensor-bpf[802]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == dojo (3 distinct, 3 total) == Jul 8 02:31:33 dojo sshd[1237209]: error: Protocol major versions differ: 2 vs. 1 Jul 8 02:36:30 dojo falcon-sensor-bpf[2168]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:36:30 dojo falcon-sensor-bpf[2168]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == emaar (16 distinct, 16 total) == Jul 8 02:07:23 emaar setroubleshoot[760621]: failed to retrieve rpm info for path '/etc/insights-client/machine-id': Jul 8 02:07:23 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from read access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 48ff8767-689c-4a74-b73f-0c634f851b54 Jul 8 02:07:23 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from open access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l cdd18bfe-51f2-4961-a0dc-3ddefcfa5897 Jul 8 02:07:23 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from getattr access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l fee66014-ab62-4490-ac60-4ddfddb9c427 Jul 8 02:07:23 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from ioctl access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l dcd6f7de-be79-46af-b8ea-78b1ee387cb0 Jul 8 02:07:23 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 91c8c770-edbc-4047-9943-af22d37e34c0 Jul 8 02:07:23 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l 99159071-e584-4fe7-9219-fabffc8f9219 Jul 8 02:07:24 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l 7abd13d7-9856-4ada-9677-677fe71c7ab1 Jul 8 02:07:24 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.iC0qyZ/repodata/repomd.xml. For complete SELinux messages run: sealert -l 73c0d427-7f30-4702-aadd-978deb471834 Jul 8 02:07:24 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 58571afa-ab27-4c7d-bcac-f39be990b784 Jul 8 02:07:24 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.iC0qyZ. For complete SELinux messages run: sealert -l fc60ecb8-4513-4604-9e86-dd7504f53852 Jul 8 02:07:24 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l 2e56286d-dc3c-47e1-96da-5591cf3d42eb Jul 8 02:07:24 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l c0f7f10d-f538-4a35-bcc1-4edd6ffb7e3e Jul 8 02:07:24 emaar setroubleshoot[760621]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 1dd9c513-a479-4c61-aa43-4c45a3197f77 Jul 8 02:36:50 emaar falcon-sensor-bpf[971]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:36:50 emaar falcon-sensor-bpf[971]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == florence-ruohan (20 distinct, 122 total) == Jul 8 02:59:28 florence-ruohan falcon-sensor-bpf[852]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:59:28 florence-ruohan falcon-sensor-bpf[852]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 Jul 8 03:04:08 florence-ruohan nologin[1327338]: Attempted login by UNKNOWN (UID: 65534) on UNKNOWN Jul 8 03:04:08 florence-ruohan pipewire[1327335]: mod.rt: RTKit error: org.freedesktop.DBus.Error.AccessDenied [x2] Jul 8 03:04:08 florence-ruohan pipewire[1327335]: mod.rt: could not set nice-level to -11: Permission denied Jul 8 03:04:08 florence-ruohan pipewire-media-session[1327336]: mod.rt: RTKit error: org.freedesktop.DBus.Error.AccessDenied Jul 8 03:04:08 florence-ruohan pipewire-media-session[1327336]: mod.rt: could not make thread 1327353 realtime using RTKit: Permission denied Jul 8 03:04:08 florence-ruohan pulseaudio[1327337]: Failed to create secure directory (/nonexistent/.config/pulse): No such file or directory [x5] Jul 8 03:04:08 florence-ruohan pipewire[1327335]: mod.rt: could not make thread 1327355 realtime using RTKit: Permission denied Jul 8 03:04:20 florence-ruohan puppet-agent[1327345]: (Puppet::Type::Firewall::ProviderIptables) Skipping unparsable iptables rule: keys (3) and values (8) count mismatch on line: -A PREROUTING -m conntrack --ctstate RELATED,ESTABLISHED -j CONNMARK --restore-mark --nfmask 0xff0000 --ctmask 0xff0000 [x46] Jul 8 03:04:20 florence-ruohan puppet-agent[1327345]: (Puppet::Type::Firewall::ProviderIptables) Skipping unparsable iptables rule: keys (4) and values (9) count mismatch on line: -A OUTPUT -m conntrack --ctstate NEW -m mark ! --mark 0x0/0xff0000 -j CONNMARK --save-mark --nfmask 0xff0000 --ctmask 0xff0000 [x46] Jul 8 03:04:20 florence-ruohan puppet-agent[1327345]: (Puppet::Type::Firewall::ProviderIp6tables) Skipping unparsable iptables rule: keys (3) and values (8) count mismatch on line: -A PREROUTING -m conntrack --ctstate RELATED,ESTABLISHED -j CONNMARK --restore-mark --nfmask 0xff0000 --ctmask 0xff0000 [x4] Jul 8 03:04:20 florence-ruohan puppet-agent[1327345]: (Puppet::Type::Firewall::ProviderIp6tables) Skipping unparsable iptables rule: keys (4) and values (9) count mismatch on line: -A OUTPUT -m conntrack --ctstate NEW -m mark ! --mark 0x0/0xff0000 -j CONNMARK --save-mark --nfmask 0xff0000 --ctmask 0xff0000 [x4] Jul 8 03:04:25 florence-ruohan puppet-agent[1327345]: Could not set 'file' on ensure: No such file or directory - A directory component in /etc/krb5.conf.d/umd_kdc.conf20260708-1327345-5r2mje.lock does not exist or is a dangling symbolic link (file: /etc/puppetlabs/code/environments/production/site/profile/manifests/base/ditkeytab.pp, line: 155) [x2] Jul 8 03:04:25 florence-ruohan puppet-agent[1327345]: Wrapped exception: Jul 8 03:04:25 florence-ruohan puppet-agent[1327345]: No such file or directory - A directory component in /etc/krb5.conf.d/umd_kdc.conf20260708-1327345-5r2mje.lock does not exist or is a dangling symbolic link Jul 8 03:04:25 florence-ruohan puppet-agent[1327345]: (/Stage[main]/Profile::Base::Ditkeytab/File[/etc/krb5.conf.d/umd_kdc.conf]/ensure) change from 'absent' to 'file' failed: Could not set 'file' on ensure: No such file or directory - A directory component in /etc/krb5.conf.d/umd_kdc.conf20260708-1327345-5r2mje.lock does not exist or is a dangling symbolic link (file: /etc/puppetlabs/code/environments/production/site/profile/manifests/base/ditkeytab.pp, line: 155) Jul 8 03:04:37 florence-ruohan systemd[1]: Failed to listen on SSSD NSS Service responder socket. Jul 8 03:04:37 florence-ruohan systemd[1]: Failed to listen on SSSD AutoFS Service responder socket. Jul 8 03:04:37 florence-ruohan systemd[1]: Failed to listen on SSSD SSH Service responder socket. == frabjous (4 distinct, 4 total) == Jul 8 02:31:31 frabjous krb5_child[2706265]: Client 'admin@UMD.EDU' not found in Kerberos database Jul 8 02:31:33 frabjous sshd-session[2706261]: error: PAM: Authentication failure for admin from 34.62.152.0 Jul 8 02:57:44 frabjous falcon-sensor-bpf[1357]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:57:44 frabjous falcon-sensor-bpf[1357]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == frad00 (7 distinct, 7 total) == Jul 8 02:18:56 frad00 setroubleshoot[1884857]: failed to retrieve rpm info for path '/etc/insights-client/machine-id': Jul 8 02:18:57 frad00 setroubleshoot[1884857]: SELinux is preventing /usr/bin/python3.9 from read access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 8e3e1312-cd1e-4eea-b3a8-c484a7dbf3f2 Jul 8 02:18:57 frad00 setroubleshoot[1884857]: SELinux is preventing /usr/bin/python3.9 from open access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 6972b5c7-6653-47e0-a0d0-6c2da11d7252 Jul 8 02:18:57 frad00 setroubleshoot[1884857]: SELinux is preventing /usr/bin/python3.9 from getattr access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l d7d7e2ca-6f0c-4030-a506-29e5b07acb57 Jul 8 02:18:57 frad00 setroubleshoot[1884857]: SELinux is preventing /usr/bin/python3.9 from ioctl access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 9109dac1-ae76-4146-9991-53df41af5b5d Jul 8 02:18:57 frad00 setroubleshoot[1884857]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l b31de583-cf54-4d93-b0a4-e7e23ef89983 Jul 8 02:18:57 frad00 setroubleshoot[1884857]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l 1754bd20-3682-424e-b140-c964ff9d7ae0 == frozone (2 distinct, 2 total) == Jul 8 03:00:15 frozone falcon-sensor-bpf[1050]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 03:00:15 frozone falcon-sensor-bpf[1050]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == galahad.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:50:01 galahad.cs.umd.edu falcon-sensor-bpf[970]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:50:01 galahad.cs.umd.edu falcon-sensor-bpf[970]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == gle-dind00.cs.umd.edu (8 distinct, 35 total) == Jul 8 02:05:13 gle-dind00.cs.umd.edu setroubleshoot[989251]: SELinux is preventing /usr/bin/df from getattr access on the file /run/docker/netns/default. For complete SELinux messages run: sealert -l dc8f8a6f-9eca-47fe-9948-17771b58ba35 [x25] Jul 8 03:04:53 gle-dind00.cs.umd.edu setroubleshoot[1003214]: SELinux is preventing gpg from create access on the directory labeled user_tmp_t. For complete SELinux messages run: sealert -l 1fc25a28-f27e-4232-8c70-ece2cce1f379 Jul 8 03:04:53 gle-dind00.cs.umd.edu setroubleshoot[1003214]: SELinux is preventing /usr/libexec/platform-python3.6 from add_name access on the directory labeled user_tmp_t. For complete SELinux messages run: sealert -l 607bd556-64d2-48b7-b5a6-e327d61f2fd8 Jul 8 03:04:53 gle-dind00.cs.umd.edu setroubleshoot[1003214]: SELinux is preventing /usr/libexec/platform-python3.6 from create access on the file labeled user_tmp_t. For complete SELinux messages run: sealert -l 5a6cb49c-a51d-4f3c-a109-5a908d7faede [x2] Jul 8 03:04:53 gle-dind00.cs.umd.edu setroubleshoot[1003214]: SELinux is preventing /usr/libexec/platform-python3.6 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 429de4d1-6126-44ca-ab57-0f55048beb5b [x2] Jul 8 03:04:54 gle-dind00.cs.umd.edu setroubleshoot[1003214]: SELinux is preventing /usr/bin/gpg-agent from read access on the directory libdnf.wAddl4. For complete SELinux messages run: sealert -l cbec1aae-072b-451d-890c-0e6217b4dc38 Jul 8 03:04:54 gle-dind00.cs.umd.edu setroubleshoot[1003214]: SELinux is preventing gpg-agent from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l de7330dc-b381-4359-9343-aa290eac5980 [x2] Jul 8 03:04:54 gle-dind00.cs.umd.edu setroubleshoot[1003214]: SELinux is preventing /usr/libexec/platform-python3.6 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 7ff736ad-bb2c-4d1e-a307-bc420c5f306f == gle-dind02.cs.umd.edu (1 distinct, 24 total) == Jul 8 02:05:17 gle-dind02.cs.umd.edu setroubleshoot[4165869]: SELinux is preventing /usr/bin/df from getattr access on the file /run/docker/netns/default. For complete SELinux messages run: sealert -l 3cdb217f-957d-4c0a-877c-424ff82cda9a [x24] == gle-omnibus00.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:51:11 gle-omnibus00.cs.umd.edu falcon-sensor-bpf[974]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:51:11 gle-omnibus00.cs.umd.edu falcon-sensor-bpf[974]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == grafana (10 distinct, 17 total) == Jul 8 02:52:01 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l 832abf42-07bd-435a-beaf-863c9c4da174 [x2] Jul 8 02:52:01 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 20ecc85d-f075-41e3-aadb-0d8900c8441b [x2] Jul 8 02:52:01 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l 096d9626-396b-468b-9804-1b3d4de1ee70 [x2] Jul 8 02:52:02 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.iwRHAs/repodata/repomd.xml. For complete SELinux messages run: sealert -l cb3a53e3-4a11-4193-af24-d2207b8ec8a0 [x2] Jul 8 02:52:02 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l f3433f57-90d2-4c2e-a27a-c3e701bf8fbe [x2] Jul 8 02:52:02 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.iwRHAs. For complete SELinux messages run: sealert -l a831c155-ed66-4890-8e6d-bd3b054daadb Jul 8 02:52:02 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l a50c0db7-f09e-4af2-81c2-a13365ec86f3 [x2] Jul 8 02:52:02 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l b3fb639b-c095-4af5-8f86-cedcc3727976 Jul 8 02:52:02 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 0e7cac78-520b-4770-b7c4-b3ffe81e5cd8 [x2] Jul 8 02:52:02 grafana setroubleshoot[509064]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.u4LwZR. For complete SELinux messages run: sealert -l a831c155-ed66-4890-8e6d-bd3b054daadb == hackerman (2 distinct, 2 total) == Jul 8 02:35:57 hackerman falcon-sensor-bpf[896]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:35:57 hackerman falcon-sensor-bpf[896]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == haproxy02.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:44:40 haproxy02.cs.umd.edu falcon-sensor-bpf[987]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:44:40 haproxy02.cs.umd.edu falcon-sensor-bpf[987]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == haproxy03.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:43:57 haproxy03.cs.umd.edu falcon-sensor-bpf[1401]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:43:57 haproxy03.cs.umd.edu falcon-sensor-bpf[1401]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == hasaraumd (2 distinct, 2 total) == Jul 8 02:47:38 hasaraumd falcon-sensor-bpf[730]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:47:38 hasaraumd falcon-sensor-bpf[730]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == hazfs.cs.umd.edu (3 distinct, 7 total) == Jul 8 02:41:52 hazfs.cs.umd.edu zrepl[2444237]: [hourlies_push][pruning][vUfd$LDmZ$LDmZ.WVPf.eqCp.iWCN]: target could not destroy snapshots prune_side="receiver" err="destroys failed @zrepl_20260708_063957_000: dataset is busy" [x4] Jul 8 02:41:54 hazfs.cs.umd.edu zrepl[2444237]: [hourlies_push][pruning][vUfd$LDmZ$LDmZ.WVPf.eqCp.iWCN]: target could not destroy snapshots err="destroys failed @zrepl_20260708_063957_000: dataset is busy" prune_side="receiver" Jul 8 02:41:55 hazfs.cs.umd.edu zrepl[2444237]: [hourlies_push][pruning][vUfd$LDmZ$LDmZ.WVPf.eqCp.iWCN]: target could not destroy snapshots prune_side="receiver" err="destroys failed @zrepl_20260708_063958_000: dataset is busy" [x2] == helmsdeep (9 distinct, 9 total) == Jul 8 02:18:30 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l 418de911-36e3-4005-acca-b3f101c176be Jul 8 02:18:30 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l e4bdeaa6-a3f6-451f-8e2d-770367ab992a Jul 8 02:18:30 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l dca2a603-b32f-4f7e-9d1c-3002a25d058c Jul 8 02:18:31 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.h04CG6/repodata/repomd.xml. For complete SELinux messages run: sealert -l 0f6a4267-a35e-4452-b967-99a424e4a626 Jul 8 02:18:31 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 0dabd53f-c9f5-46fc-903e-fa679f06c17d Jul 8 02:18:31 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.h04CG6. For complete SELinux messages run: sealert -l ef810612-39be-48bc-a680-def72267d972 Jul 8 02:18:31 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l d4161f59-1e7c-4a89-bd3e-2ac858344fae Jul 8 02:18:31 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 07b81c95-487c-4f6f-8056-9c3ca2b8fc3c Jul 8 02:18:31 helmsdeep setroubleshoot[3000877]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 2c31c727-5bd4-454d-8e43-b54755885c6e == hspc (2 distinct, 2 total) == Jul 8 02:49:42 hspc falcon-sensor-bpf[1008]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:49:42 hspc falcon-sensor-bpf[1008]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == itmon02 (1 distinct, 9 total) == Jul 8 02:13:15 itmon02 sshd[1904]: error: beginning MaxStartups throttling [x9] == itmon03 (81 distinct, 166 total) == Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/bash from execute access on the file /lib64/ld-linux-x86-64.so.2. For complete SELinux messages run: sealert -l 349544d1-28c9-4669-9dba-678994c8c748 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/bash from execute_no_trans access on the file /usr/bin/bash. For complete SELinux messages run: sealert -l 7a5c9f57-a04a-42e1-a4ba-e83027648fe0 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/bash from map access on the file /usr/bin/bash. For complete SELinux messages run: sealert -l eeed80ec-a9bc-4a15-b363-58ffeef80432 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/printf from execute access on the file /lib64/ld-linux-x86-64.so.2. For complete SELinux messages run: sealert -l e229e6c4-af2e-4fc7-977a-266db7b4da8a Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/printf from execute_no_trans access on the file /usr/bin/printf. For complete SELinux messages run: sealert -l 6b039573-5290-4397-907e-daeac4fd3ef5 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/printf from map access on the file /usr/bin/printf. For complete SELinux messages run: sealert -l faa804c9-b885-4bc7-b50b-e86133212921 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from 'read, write' accesses on the directory tmp. For complete SELinux messages run: sealert -l 60652938-ee80-4b0f-9876-939b1a94c2b2 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from search access on the directory /etc/pki/tls/openssl.cnf. For complete SELinux messages run: sealert -l bdd95b59-9408-4331-abfc-a2cc9dd286c6 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from read access on the file /etc/pki/tls/openssl.cnf. For complete SELinux messages run: sealert -l 08c28162-f370-4d02-8b8f-0a42e8e42b3c Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from open access on the file /etc/pki/tls/openssl.cnf. For complete SELinux messages run: sealert -l 1e2b5a16-ec21-4db7-9da1-dd14f5f43a7f [x3] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from getattr access on the file /etc/pki/tls/openssl.cnf. For complete SELinux messages run: sealert -l 1acc4d70-2859-42c1-b958-20a52523c0e0 [x3] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from getattr access on the directory /etc/pki/tls/openssl.d. For complete SELinux messages run: sealert -l bb6ea46d-58d9-4f09-b846-235d02659f8b [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from read access on the directory openssl.d. For complete SELinux messages run: sealert -l 1b06d987-9806-463d-ae56-09d776168bb9 [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from open access on the directory /etc/pki/tls/openssl.d. For complete SELinux messages run: sealert -l 4ac2c669-d847-4684-a73c-12ac4f4efec2 [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from add_name access on the directory /(null). For complete SELinux messages run: sealert -l b500d267-aefe-4140-9c2d-87929fc86ecb [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from create access on the file /(null). For complete SELinux messages run: sealert -l 316ea225-a53a-4c7e-a1e5-5224e7c9d50e [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from 'write, open' accesses on the file /tmp/s-nail-collectVTUGNx. For complete SELinux messages run: sealert -l a1d6bf67-0f13-4fed-944e-8281c88a0ea7 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from remove_name access on the directory s-nail-collectVTUGNx. For complete SELinux messages run: sealert -l 7c4bd1b4-c660-4e20-92e1-eeb3e5f1a8ca Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from unlink access on the file s-nail-collectVTUGNx. For complete SELinux messages run: sealert -l a6f88771-49e6-44a8-9a8b-dfdb09ce8234 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/bin/s-nail from setattr access on the file s-nail-infixskxdr7. For complete SELinux messages run: sealert -l 55a9ba15-123f-4ced-996f-97e288fbe318 Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from execute access on the file /lib64/ld-linux-x86-64.so.2. For complete SELinux messages run: sealert -l 2ce09fde-5dbd-4884-b840-952a46c05c84 [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from 'read, open' accesses on the file /usr/sbin/sendmail.postfix. For complete SELinux messages run: sealert -l cb2383ec-952c-46d7-b21a-929b3fa10328 [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from execute_no_trans access on the file /usr/sbin/sendmail.postfix. For complete SELinux messages run: sealert -l 3143feb3-c011-495c-89c8-554da4114a36 [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from map access on the file /usr/sbin/sendmail.postfix. For complete SELinux messages run: sealert -l 671f567f-9f3f-4067-a1fd-9d1285190110 [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from create access on the unix_dgram_socket labeled naemon_t. For complete SELinux messages run: sealert -l ce5ac082-0838-440f-aef8-7819c737dec0 [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: failed to retrieve rpm info for path '/dev/log': [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from connect access on the unix_dgram_socket /dev/log. For complete SELinux messages run: sealert -l 654b8b7b-b85f-48b6-b058-db2e4d883f3c [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from read access on the lnk_file /dev/log. For complete SELinux messages run: sealert -l e5d27f77-a70a-4dde-b736-d5d7256ce002 [x4] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from search access on the directory /dev/log. For complete SELinux messages run: sealert -l 9a4c5042-032f-4483-bcce-1920a5f4b2bf [x3] Jul 8 02:30:14 itmon03 setroubleshoot[721402]: SELinux is preventing /usr/sbin/sendmail.postfix from write access on the sock_file /dev/log. For complete SELinux messages run: sealert -l 60a963ea-13d4-443e-853a-7233ac24df5d ... 51 more distinct messages not shown == jaws.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:54:10 jaws.cs.umd.edu falcon-sensor-bpf[1185]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:54:10 jaws.cs.umd.edu falcon-sensor-bpf[1185]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == jubjub.cs.umd.edu (8 distinct, 45 total) == Jul 8 02:14:44 jubjub.cs.umd.edu setroubleshoot[1744909]: failed to retrieve rpm info for /fs/webdev/html/ugrad/login.php [x6] Jul 8 02:14:45 jubjub.cs.umd.edu setroubleshoot[1744909]: SELinux is preventing /opt/remi/php74/root/usr/sbin/php-fpm from getattr access on the file /fs/webdev/html/ugrad/login.php. For complete SELinux messages run: sealert -l 82857f2f-d8cd-4b9e-be28-38e42c1a8cf7 [x6] Jul 8 02:14:51 jubjub.cs.umd.edu setroubleshoot[1744909]: SELinux is preventing /usr/sbin/httpd from read access on the file .htaccess. For complete SELinux messages run: sealert -l f568eb48-31e0-4048-ab8e-3005dc3c3c28 [x12] Jul 8 02:14:54 jubjub.cs.umd.edu setroubleshoot[1744909]: failed to retrieve rpm info for /fs/webdev/html/.htaccess [x9] Jul 8 02:14:54 jubjub.cs.umd.edu setroubleshoot[1744909]: SELinux is preventing httpd from open access on the file /fs/webdev/html/.htaccess. For complete SELinux messages run: sealert -l b88fea68-9c29-497e-abb8-7d22d7f9d068 [x6] Jul 8 02:40:53 jubjub.cs.umd.edu setroubleshoot[1750928]: SELinux is preventing /opt/remi/php74/root/usr/sbin/php-fpm from getattr access on the file /fs/webdev/html/.htaccess. For complete SELinux messages run: sealert -l 82857f2f-d8cd-4b9e-be28-38e42c1a8cf7 [x3] Jul 8 02:40:56 jubjub.cs.umd.edu setroubleshoot[1750928]: SELinux is preventing /usr/sbin/httpd from read access on the directory html. For complete SELinux messages run: sealert -l a0637559-087c-4541-a7b6-a278264bc2ac [x2] Jul 8 03:00:15 jubjub.cs.umd.edu setroubleshoot[1754791]: SELinux is preventing /usr/sbin/httpd from read access on the directory phonelist. For complete SELinux messages run: sealert -l a0637559-087c-4541-a7b6-a278264bc2ac == kadath.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:51:32 kadath.cs.umd.edu falcon-sensor-bpf[938]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:51:32 kadath.cs.umd.edu falcon-sensor-bpf[938]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == krispykreme.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:51:18 krispykreme.cs.umd.edu falcon-sensor-bpf[1296]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:51:18 krispykreme.cs.umd.edu falcon-sensor-bpf[1296]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == mashie (2 distinct, 2 total) == Jul 8 02:49:49 mashie falcon-sensor-bpf[786]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:49:49 mashie falcon-sensor-bpf[786]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == munin (21 distinct, 227 total) == Jul 8 02:08:09 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/bash from execute access on the file /lib64/ld-linux-x86-64.so.2. For complete SELinux messages run: sealert -l 078fba18-3f42-4117-aa79-41400c3715d2 [x16] Jul 8 02:08:09 munin setroubleshoot[147832]: failed to retrieve rpm info for path '/etc/munin/send-naemon-passive.sh': [x12] Jul 8 02:08:09 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/bash from execute_no_trans access on the file /etc/munin/send-naemon-passive.sh. For complete SELinux messages run: sealert -l 90b4bb38-71c7-48cf-8a26-e8781cde0139 [x16] Jul 8 02:08:09 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/bash from getattr access on the file /usr/bin/ssh. For complete SELinux messages run: sealert -l 572fce0a-8662-4dac-874c-ddd5e14630fe [x15] Jul 8 02:08:09 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/bash from execute access on the file /usr/bin/ssh. For complete SELinux messages run: sealert -l ce4316f8-d2b3-4657-b559-81130a8943c8 [x15] Jul 8 02:08:09 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/bash from read access on the file /usr/bin/ssh. For complete SELinux messages run: sealert -l 58b4099a-64b7-4eef-9bd4-36755bfc6180 [x15] Jul 8 02:08:09 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from open access on the file /usr/bin/ssh. For complete SELinux messages run: sealert -l 7b330585-8691-4841-bd0c-ebf4a03e6def [x15] Jul 8 02:08:09 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from execute_no_trans access on the file /usr/bin/ssh. For complete SELinux messages run: sealert -l b5da5a22-e969-41c9-a178-9c2950a30245 [x15] Jul 8 02:08:09 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from map access on the file /usr/bin/ssh. For complete SELinux messages run: sealert -l 80abb7ca-c5ee-4583-8c8c-7ced0a77cf41 [x15] Jul 8 02:08:10 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from search access on the directory /var/lib/munin/.ssh. For complete SELinux messages run: sealert -l 429b6096-1b97-4570-bade-2ee408de9b6b [x10] Jul 8 02:08:10 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from name_connect access on the tcp_socket port 22. For complete SELinux messages run: sealert -l 97161da0-8882-45b7-af13-79db981dd216 [x15] Jul 8 02:08:10 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from read access on the file known_hosts. For complete SELinux messages run: sealert -l 14e7b2d1-684c-4e87-8530-df2a0a906887 [x15] Jul 8 02:08:10 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from open access on the file /var/lib/munin/.ssh/known_hosts. For complete SELinux messages run: sealert -l f24181fb-56fa-4961-949e-973d756f6c39 [x15] Jul 8 02:08:10 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from getattr access on the file /var/lib/munin/.ssh/known_hosts. For complete SELinux messages run: sealert -l 488aaccb-5f0d-41ce-8987-00135e366f48 [x14] Jul 8 02:08:10 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from search access on the directory /var/kerberos/krb5. For complete SELinux messages run: sealert -l 91742286-87f9-4b43-ad1d-a489083f3769 [x15] Jul 8 02:08:10 munin setroubleshoot[147832]: SELinux is preventing /usr/bin/ssh from search access on the directory /var/lib/munin/.ssh/known_hosts. For complete SELinux messages run: sealert -l 429b6096-1b97-4570-bade-2ee408de9b6b [x4] Jul 8 02:16:13 munin setroubleshoot[151442]: failed to retrieve rpm info for path '/etc/insights-client/machine-id': Jul 8 02:16:14 munin setroubleshoot[151442]: SELinux is preventing /usr/bin/python3.12 from read access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 3c18e1db-6230-45b5-b6db-67de38337c87 Jul 8 02:16:14 munin setroubleshoot[151442]: SELinux is preventing /usr/bin/python3.12 from open access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l bb4c5943-1639-4cef-a3b1-46dc2aa3858f Jul 8 02:16:14 munin setroubleshoot[151442]: SELinux is preventing /usr/bin/python3.12 from getattr access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 5867672d-e66c-4c36-9bcd-1ce7e1c3daf2 Jul 8 02:16:14 munin setroubleshoot[151442]: SELinux is preventing /usr/bin/python3.12 from ioctl access on the file /etc/insights-client/machine-id. For complete SELinux messages run: sealert -l 8d743638-d245-407d-957e-08bc88c57d12 == neodontcare.cs.umd.edu (2 distinct, 2 total) == Jul 8 02:45:22 neodontcare.cs.umd.edu falcon-sensor-bpf[949]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:45:22 neodontcare.cs.umd.edu falcon-sensor-bpf[949]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == neograd (2 distinct, 2 total) == Jul 8 03:00:08 neograd falcon-sensor-bpf[695]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 03:00:08 neograd falcon-sensor-bpf[695]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == netman.cs.umd.edu (5 distinct, 12 total) == Jul 8 02:15:46 netman.cs.umd.edu krb5_child[1645650]: Client 'admin@UMD.EDU' not found in Kerberos database [x8] Jul 8 02:15:51 netman.cs.umd.edu sshd[1645630]: error: PAM: Authentication failure for admin from 218.59.235.170 Jul 8 02:48:26 netman.cs.umd.edu falcon-sensor-bpf[1129]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:48:26 netman.cs.umd.edu falcon-sensor-bpf[1129]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 Jul 8 02:52:19 netman.cs.umd.edu sshd[1657607]: error: PAM: Authentication failure for admin from 34.62.152.0 == nightingale (2 distinct, 2 total) == Jul 8 02:47:36 nightingale falcon-sensor-bpf[909]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:47:36 nightingale falcon-sensor-bpf[909]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == orchids (2 distinct, 2 total) == Jul 8 02:59:41 orchids falcon-sensor-bpf[1103]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:59:41 orchids falcon-sensor-bpf[1103]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == outbound00.cs.umd.edu (2 distinct, 10 total) == Jul 8 02:06:04 outbound00.cs.umd.edu setroubleshoot[1130875]: failed to retrieve rpm info for path '/etc/puppetlabs/puppet/ssl/certs/ca.pem': [x4] Jul 8 02:09:08 outbound00.cs.umd.edu python3[1131419]: ldapdb [x6] == outbound01.cs.umd.edu (2 distinct, 12 total) == Jul 8 02:05:06 outbound01.cs.umd.edu setroubleshoot[1120878]: failed to retrieve rpm info for path '/etc/puppetlabs/puppet/ssl/certs/ca.pem': [x6] Jul 8 02:13:09 outbound01.cs.umd.edu python3[1122567]: ldapdb [x6] == quiss (78 distinct, 342 total) == Jul 8 02:06:02 quiss kernel: ata1.00: exception Emask 0x0 SAct 0x40 SErr 0x0 action 0x0 [x2] Jul 8 02:06:02 quiss kernel: ata1.00: irq_stat 0x40000008 [x30] Jul 8 02:06:02 quiss kernel: ata1.00: failed command: READ FPDMA QUEUED [x30] Jul 8 02:06:02 quiss kernel: ata1.00: cmd 60/08:30:bf:00:00/00:00:00:00:00/40 tag 6 ncq dma 4096 in#012 res 41/40:00:bf:00:00/00:00:00:00:00/00 Emask 0x409 (media error) <F> Jul 8 02:06:02 quiss kernel: ata1.00: status: { DRDY ERR } [x30] Jul 8 02:06:02 quiss kernel: ata1.00: error: { UNC } [x30] Jul 8 02:06:02 quiss kernel: ata1.00: NCQ Send/Recv Log not supported [x60] Jul 8 02:06:02 quiss kernel: I/O error, dev sdb, sector 191 op 0x0:(READ) flags 0x80700 phys_seg 1 prio class 0 [x6] Jul 8 02:06:02 quiss kernel: ata1.00: exception Emask 0x0 SAct 0x1000380 SErr 0x0 action 0x0 Jul 8 02:06:02 quiss kernel: ata1.00: cmd 60/02:c0:bf:00:00/00:00:00:00:00/40 tag 24 ncq dma 1024 in#012 res 41/40:00:bf:00:00/00:00:00:00:00/00 Emask 0x409 (media error) <F> Jul 8 02:06:02 quiss kernel: I/O error, dev sdb, sector 191 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 0 [x6] Jul 8 02:06:02 quiss kernel: Buffer I/O error on dev sdb1, logical block 64, async page read [x6] Jul 8 02:06:02 quiss kernel: ata1.00: exception Emask 0x0 SAct 0x38000 SErr 0x0 action 0x0 Jul 8 02:06:02 quiss kernel: ata1.00: cmd 60/02:78:c1:00:00/00:00:00:00:00/40 tag 15 ncq dma 1024 in#012 res 41/40:00:c1:00:00/00:00:00:00:00/00 Emask 0x409 (media error) <F> Jul 8 02:06:02 quiss kernel: I/O error, dev sdb, sector 193 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 0 [x6] Jul 8 02:06:02 quiss kernel: Buffer I/O error on dev sdb1, logical block 65, async page read [x6] Jul 8 02:06:03 quiss kernel: ata1.00: exception Emask 0x0 SAct 0xc0000 SErr 0x0 action 0x0 Jul 8 02:06:03 quiss kernel: ata1.00: cmd 60/02:90:c3:00:00/00:00:00:00:00/40 tag 18 ncq dma 1024 in#012 res 41/40:00:c3:00:00/00:00:00:00:00/00 Emask 0x409 (media error) <F> Jul 8 02:06:03 quiss kernel: I/O error, dev sdb, sector 195 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 0 [x6] Jul 8 02:06:03 quiss kernel: Buffer I/O error on dev sdb1, logical block 66, async page read [x6] Jul 8 02:06:03 quiss kernel: ata1.00: exception Emask 0x0 SAct 0x100000 SErr 0x0 action 0x0 Jul 8 02:06:03 quiss kernel: ata1.00: cmd 60/02:a0:c5:00:00/00:00:00:00:00/40 tag 20 ncq dma 1024 in#012 res 41/40:00:c5:00:00/00:00:00:00:00/00 Emask 0x409 (media error) <F> Jul 8 02:06:03 quiss kernel: I/O error, dev sdb, sector 197 op 0x0:(READ) flags 0x0 phys_seg 1 prio class 0 [x6] Jul 8 02:06:03 quiss kernel: Buffer I/O error on dev sdb1, logical block 67, async page read [x6] Jul 8 02:08:29 quiss nfsidmap[2021204]: libnfsidmap: Unable to determine the NFSv4 domain; Using 'localdomain' as the NFSv4 domain which means UIDs will be mapped to the 'Nobody-User' user defined in /etc/idmapd.conf [x24] Jul 8 02:08:29 quiss nfsidmap[2021204]: nss_getpwnam: name 'seriv@cs.umd.edu' does not map into domain 'localdomain' [x6] Jul 8 02:08:29 quiss nfsidmap[2021205]: nss_name_to_gid: name 'seriv@cs.umd.edu' does not map into domain 'localdomain' [x6] Jul 8 02:14:12 quiss nfsidmap[2021446]: nss_getpwnam: name 'josephao@cs.umd.edu' does not map into domain 'localdomain' [x6] Jul 8 02:14:12 quiss nfsidmap[2021447]: nss_name_to_gid: name 'josephao@cs.umd.edu' does not map into domain 'localdomain' [x6] Jul 8 02:16:03 quiss kernel: ata1.00: exception Emask 0x0 SAct 0x8000 SErr 0x0 action 0x0 ... 48 more distinct messages not shown == redis00.cs.umd.edu (9 distinct, 9 total) == Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l 1ca26373-9285-476f-a676-2cf90fcaf7a9 Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 42af489c-d221-44c4-b098-c0dfd3cbf3a7 Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l a4e28def-c57d-440a-af51-472bc863689a Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.IkLSFl/repodata/repomd.xml. For complete SELinux messages run: sealert -l 4de6af61-f9e7-412a-8878-8e9488da5f9c Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 3b01b3c0-69d1-4f55-9a60-48c6421908e4 Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.IkLSFl. For complete SELinux messages run: sealert -l 52747315-5cb8-421c-aa12-df09425663fc Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l 0d99d74d-9a79-41b6-9de8-56e8ecedb08b Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 2f224458-3646-4c8d-ba1d-337fc79e2955 Jul 8 02:11:12 redis00.cs.umd.edu setroubleshoot[1707493]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 83357abf-a2ea-445f-9204-2ccc712802cf == sebatinsky.cs.umd.edu (21 distinct, 21 total) == Jul 8 02:06:23 sebatinsky.cs.umd.edu setroubleshoot[3831102]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 12128. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:09:23 sebatinsky.cs.umd.edu setroubleshoot[3831553]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 15187. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:12:26 sebatinsky.cs.umd.edu setroubleshoot[3831604]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 14036. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:15:27 sebatinsky.cs.umd.edu setroubleshoot[3832337]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 19023. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:21:26 sebatinsky.cs.umd.edu setroubleshoot[3833131]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13410. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:24:30 sebatinsky.cs.umd.edu setroubleshoot[3833824]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 11947. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:27:26 sebatinsky.cs.umd.edu setroubleshoot[3834189]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 16830. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:30:26 sebatinsky.cs.umd.edu setroubleshoot[3834676]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 12000. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:33:25 sebatinsky.cs.umd.edu setroubleshoot[3834727]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13023. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:36:26 sebatinsky.cs.umd.edu setroubleshoot[3835736]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13862. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:39:27 sebatinsky.cs.umd.edu setroubleshoot[3836187]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 16901. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:41:28 sebatinsky.cs.umd.edu setroubleshoot[3836225]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 18468. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:43:26 sebatinsky.cs.umd.edu setroubleshoot[3836266]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 18174. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:44:28 sebatinsky.cs.umd.edu setroubleshoot[3836936]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 19762. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:45:28 sebatinsky.cs.umd.edu setroubleshoot[3836974]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 10429. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:48:27 sebatinsky.cs.umd.edu setroubleshoot[3837363]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13889. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:51:27 sebatinsky.cs.umd.edu setroubleshoot[3837817]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13995. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:54:28 sebatinsky.cs.umd.edu setroubleshoot[3838510]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 15422. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 02:57:27 sebatinsky.cs.umd.edu setroubleshoot[3838874]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 12960. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 03:00:27 sebatinsky.cs.umd.edu setroubleshoot[3839328]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 11689. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 Jul 8 03:03:27 sebatinsky.cs.umd.edu setroubleshoot[3839424]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13834. For complete SELinux messages run: sealert -l 0f0383ef-2d2e-42c8-969b-2334867648e0 == sign-irb0101b (10 distinct, 14 total) == Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 1b5d495b-4db4-4e9a-890d-73d981eaa3ea [x2] Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l e735b8ae-6fd6-4f46-971e-9d9d1fce5a5e [x2] Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l 51ebc2b0-96e8-4a98-9712-1d8ed7ecc83f Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.buVLg9/repodata/repomd.xml. For complete SELinux messages run: sealert -l 27c1df81-d4ce-451f-b77e-d2b323f34971 Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 0d082c0b-5747-4f27-8c29-3b26dbaa841f Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.buVLg9. For complete SELinux messages run: sealert -l 1cd9bb63-ea96-435a-a583-029be5b09458 Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l 1b3fcf59-e2ae-4b36-850f-754a27baf510 [x2] Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 352c534e-cc3a-404b-95bf-237e6c206a4c Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 013ff33b-bca7-4780-8a58-00363f669f12 [x2] Jul 8 02:06:45 sign-irb0101b setroubleshoot[634595]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.Nc7T5E. For complete SELinux messages run: sealert -l 1cd9bb63-ea96-435a-a583-029be5b09458 == sign-irb2296 (9 distinct, 9 total) == Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 795bb573-37c7-49c5-bdbe-5fcfdbc00fd5 Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l ea8d1d05-4ec5-4281-ab27-911465d2e109 Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l 90d697ae-a291-4465-b5cd-a53288da81a5 Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.Vtu73r/repodata/repomd.xml. For complete SELinux messages run: sealert -l 771b57c6-c806-469d-bf9a-b814af6b160b Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 810ca0e4-3422-4c5b-9c6c-49790ef39220 Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.Vtu73r. For complete SELinux messages run: sealert -l da33f776-d8f0-40f7-9986-669a63e1dbdf Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l 6eceb471-c845-4157-9dd1-37e5a30f500f Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 3fa346f4-5269-481d-845e-bd4e28b3607b Jul 8 03:00:51 sign-irb2296 setroubleshoot[488364]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 8a784009-4428-44e4-9118-27f0b91ecee1 == strawberry (4 distinct, 10 total) == Jul 8 02:09:44 strawberry udisksd[1067]: Error performing housekeeping for drive /org/freedesktop/UDisks2/drives/ST2000DM001_1CH164_W1E8J5KJ: Error updating SMART data: Error sending ATA command CHECK POWER MODE: Unexpected sense data returned:#0120000: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................#0120010: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................#012 (g-io-error-quark, 0) [x6] Jul 8 02:34:42 strawberry smartd[5314]: Device: /dev/sda [SAT], failed to read SMART Attribute Data [x2] Jul 8 02:53:00 strawberry falcon-sensor-bpf[808]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:53:00 strawberry falcon-sensor-bpf[808]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == submit26-b9-2 (12 distinct, 14 total) == Jul 8 02:20:07 submit26-b9-2 systemd[1]: user@1001.service: Main process exited, code=killed, status=9/KILL [x3] Jul 8 02:29:58 submit26-b9-2 systemd-coredump[2169796]: Process 2169793 (secret09) of user 1001 dumped core.#012#012Stack trace of thread 2169793:#012#0 0x00007fa5f936e9d6 __strcmp_evex (libc.so.6 + 0x16e9d6)#012#1 0x0000000000401bab find_event (secret09 + 0x1bab)#012#2 0x0000000000401d24 remove_event (secret09 + 0x1d24)#012#3 0x00000000004014bc main (secret09 + 0x14bc)#012#4 0x00007fa5f922a610 __libc_start_call_main (libc.so.6 + 0x2a610)#012#5 0x00007fa5f922a6c0 __libc_start_main@@GLIBC_2.34 (libc.so.6 + 0x2a6c0)#012#6 0x0000000000401105 _start (secret09 + 0x1105)#012ELF object binary architecture: AMD x86-64 Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l d506243c-d61e-48f3-b42a-4592c913deb0 Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 3b4752ac-1b9a-4af9-a05b-32e4c2eb13ab Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l 29e5adbd-4381-4467-b40d-a2219101e096 Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.PpV6DS/repodata/repomd.xml. For complete SELinux messages run: sealert -l 1b38f2ec-01ce-4343-8059-ba7494ecc5c4 Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l e5f9af40-1f63-4924-b012-27ab2a7b2266 Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.PpV6DS. For complete SELinux messages run: sealert -l 5c54db87-54a3-4a7c-97b4-b5c48d6c3543 Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l 63cd60e1-1e61-4276-afea-dd8526ffe8b2 Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 81c7e9ec-e023-4c6d-b1ad-c02a242e655e Jul 8 02:50:05 submit26-b9-2 setroubleshoot[2170797]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 6ae9a597-e123-4d74-8eec-a8ebe0f5e4d0 Jul 8 02:50:18 submit26-b9-2 systemd-coredump[2171092]: Process 2171089 (secret09) of user 1001 dumped core.#012#012Stack trace of thread 2171089:#012#0 0x00007f3b8456e9d6 __strcmp_evex (libc.so.6 + 0x16e9d6)#012#1 0x0000000000401bab find_event (secret09 + 0x1bab)#012#2 0x0000000000401d24 remove_event (secret09 + 0x1d24)#012#3 0x00000000004014bc main (secret09 + 0x14bc)#012#4 0x00007f3b8442a610 __libc_start_call_main (libc.so.6 + 0x2a610)#012#5 0x00007f3b8442a6c0 __libc_start_main@@GLIBC_2.34 (libc.so.6 + 0x2a6c0)#012#6 0x0000000000401105 _start (secret09 + 0x1105)#012ELF object binary architecture: AMD x86-64 == talkhosts9 (2 distinct, 2 total) == Jul 8 02:37:28 talkhosts9 falcon-sensor-bpf[709]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:37:28 talkhosts9 falcon-sensor-bpf[709]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == teaching-awards (2 distinct, 2 total) == Jul 8 02:57:08 teaching-awards falcon-sensor-bpf[762]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:57:08 teaching-awards falcon-sensor-bpf[762]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == test-ipv6 (42 distinct, 111 total) == Jul 8 02:06:35 test-ipv6 setroubleshoot[3073678]: failed to retrieve rpm info for path '/srv/falling-sky/content/images/favicon-180.png': Jul 8 02:06:37 test-ipv6 setroubleshoot[3073678]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /srv/falling-sky/content/images/favicon-180.png. For complete SELinux messages run: sealert -l 2f8e87e8-46b8-43c6-af58-546a054437ba Jul 8 02:06:37 test-ipv6 setroubleshoot[3073678]: failed to retrieve rpm info for path '/srv/falling-sky/content/images/.htaccess': [x4] Jul 8 02:06:39 test-ipv6 setroubleshoot[3073678]: SELinux is preventing /usr/sbin/httpd from read access on the file /srv/falling-sky/content/images/.htaccess. For complete SELinux messages run: sealert -l 1eadb8d1-d675-49ba-aa3c-c5f6840220ac [x5] Jul 8 02:06:40 test-ipv6 setroubleshoot[3073678]: SELinux is preventing /usr/sbin/httpd from open access on the file /srv/falling-sky/content/images/.htaccess. For complete SELinux messages run: sealert -l 02666298-fd6b-40d2-9b99-5ce0e76f618f [x5] Jul 8 02:06:56 test-ipv6 setroubleshoot[3073699]: failed to retrieve rpm info for path '/srv/falling-sky/content/images/favicon-152.png': Jul 8 02:06:58 test-ipv6 setroubleshoot[3073699]: SELinux is preventing /usr/sbin/httpd from map access on the file /srv/falling-sky/content/images/favicon-152.png. For complete SELinux messages run: sealert -l 4950ddcc-c9fc-46d0-9516-46d03a249533 Jul 8 02:08:18 test-ipv6 setroubleshoot[3074007]: failed to retrieve rpm info for path '/srv/falling-sky/content/images/hires_attention.png': [x2] Jul 8 02:08:21 test-ipv6 setroubleshoot[3074007]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /srv/falling-sky/content/images/hires_attention.png. For complete SELinux messages run: sealert -l 2f8e87e8-46b8-43c6-af58-546a054437ba Jul 8 02:08:25 test-ipv6 setroubleshoot[3074007]: SELinux is preventing /usr/sbin/httpd from map access on the file /srv/falling-sky/content/images/hires_attention.png. For complete SELinux messages run: sealert -l 4950ddcc-c9fc-46d0-9516-46d03a249533 [x2] Jul 8 02:11:32 test-ipv6 setroubleshoot[3074386]: failed to retrieve rpm info for path '/srv/falling-sky/content/site/config.js': [x8] Jul 8 02:11:34 test-ipv6 setroubleshoot[3074386]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /srv/falling-sky/content/site/config.js. For complete SELinux messages run: sealert -l 2f8e87e8-46b8-43c6-af58-546a054437ba [x8] Jul 8 02:11:35 test-ipv6 setroubleshoot[3074386]: SELinux is preventing /usr/sbin/httpd from read access on the file /srv/falling-sky/content/site/config.js. For complete SELinux messages run: sealert -l 1eadb8d1-d675-49ba-aa3c-c5f6840220ac [x8] Jul 8 02:11:37 test-ipv6 setroubleshoot[3074386]: SELinux is preventing /usr/sbin/httpd from open access on the file /srv/falling-sky/content/site/config.js. For complete SELinux messages run: sealert -l 02666298-fd6b-40d2-9b99-5ce0e76f618f [x8] Jul 8 02:11:38 test-ipv6 setroubleshoot[3074386]: SELinux is preventing /usr/sbin/httpd from map access on the file /srv/falling-sky/content/site/config.js. For complete SELinux messages run: sealert -l 4950ddcc-c9fc-46d0-9516-46d03a249533 [x8] Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l 12537bdf-8ab8-49b7-a00a-c8ca449e884b Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 1ee5f439-dea1-499f-bbc9-ef78b2cd392c Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l 36deea52-7cfb-435d-ba37-af81b26c39de Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.Pe7Vqi/repodata/repomd.xml. For complete SELinux messages run: sealert -l 982d0b1e-bcd0-4348-97af-ff6c8ad50311 Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l 7d5cb3d2-c87c-4fa8-8d97-f10d4d49f0b0 Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.Pe7Vqi. For complete SELinux messages run: sealert -l d4b3ffa6-6300-49c6-acf1-90900b11e4ba Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l a02c2502-f440-4444-b447-4b818c4710d0 Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 385020bf-a11e-42d0-b53d-8ecffb6ed9f7 Jul 8 02:19:30 test-ipv6 setroubleshoot[3075314]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 95fe7366-7c3c-4ee2-b650-4501ab26386d Jul 8 02:24:14 test-ipv6 setroubleshoot[3075740]: failed to retrieve rpm info for path '/srv/falling-sky/content/ip/.htaccess': [x4] Jul 8 02:24:16 test-ipv6 setroubleshoot[3075740]: SELinux is preventing /usr/sbin/httpd from read access on the file /srv/falling-sky/content/ip/.htaccess. For complete SELinux messages run: sealert -l 1eadb8d1-d675-49ba-aa3c-c5f6840220ac [x6] Jul 8 02:24:17 test-ipv6 setroubleshoot[3075740]: SELinux is preventing /usr/sbin/httpd from open access on the file /srv/falling-sky/content/ip/.htaccess. For complete SELinux messages run: sealert -l 02666298-fd6b-40d2-9b99-5ce0e76f618f [x6] Jul 8 02:24:19 test-ipv6 setroubleshoot[3075740]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /srv/falling-sky/content/ip/.htaccess. For complete SELinux messages run: sealert -l 2f8e87e8-46b8-43c6-af58-546a054437ba [x6] Jul 8 02:45:40 test-ipv6 setroubleshoot[3079118]: failed to retrieve rpm info for path '/srv/falling-sky/content/images/knob_info.png': Jul 8 02:45:41 test-ipv6 setroubleshoot[3079118]: SELinux is preventing /usr/sbin/httpd from map access on the file /srv/falling-sky/content/images/knob_info.png. For complete SELinux messages run: sealert -l 4950ddcc-c9fc-46d0-9516-46d03a249533 ... 12 more distinct messages not shown == tma-0 (1 distinct, 1 total) == Jul 8 02:28:23 tma-0 sshd[16464]: error: PAM: Authentication failure for admin from 42.221.140.34.bc.googleusercontent.com == tulgey.cs.umd.edu (294 distinct, 1234 total) == Jul 8 02:05:16 tulgey.cs.umd.edu setroubleshoot[2171939]: SELinux is preventing /usr/sbin/httpd from read access on the file .htaccess. For complete SELinux messages run: sealert -l 7c8840ef-9208-4f4f-b7d5-e6f511df3aac [x91] Jul 8 02:05:16 tulgey.cs.umd.edu setroubleshoot[2171939]: failed to retrieve rpm info for path '/fs/newww/files/.htaccess': [x47] Jul 8 02:05:18 tulgey.cs.umd.edu setroubleshoot[2171939]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/.htaccess. For complete SELinux messages run: sealert -l 42247982-1c1e-4a2e-a109-2f10c705efeb [x76] Jul 8 02:05:20 tulgey.cs.umd.edu setroubleshoot[2171939]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/.htaccess. For complete SELinux messages run: sealert -l 86f39992-130e-4209-b054-1e9b039dc890 [x57] Jul 8 02:05:37 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from name_connect access on the tcp_socket port 8002. For complete SELinux messages run: sealert -l f6b93ea8-aeb1-4e22-b74c-eafe6bbbf153 [x87] Jul 8 02:05:37 tulgey.cs.umd.edu setroubleshoot[2172311]: failed to retrieve rpm info for path '/fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js': [x40] Jul 8 02:05:39 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js. For complete SELinux messages run: sealert -l 86f39992-130e-4209-b054-1e9b039dc890 [x66] Jul 8 02:05:47 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from read access on the file css_0Pm39BLe1dXUNCLxAdFYe8fEYTpBWyZIes71zPoQqg0.css.gz. For complete SELinux messages run: sealert -l 7c8840ef-9208-4f4f-b7d5-e6f511df3aac [x9] Jul 8 02:05:47 tulgey.cs.umd.edu setroubleshoot[2172311]: failed to retrieve rpm info for path '/fs/newww/files/css/css_0Pm39BLe1dXUNCLxAdFYe8fEYTpBWyZIes71zPoQqg0.css.gz': [x12] Jul 8 02:05:49 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/css/css_0Pm39BLe1dXUNCLxAdFYe8fEYTpBWyZIes71zPoQqg0.css.gz. For complete SELinux messages run: sealert -l 42247982-1c1e-4a2e-a109-2f10c705efeb [x8] Jul 8 02:05:51 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/css/css_0Pm39BLe1dXUNCLxAdFYe8fEYTpBWyZIes71zPoQqg0.css.gz. For complete SELinux messages run: sealert -l b4cb992e-3215-4cba-a2ec-2ec52875b6cc [x11] Jul 8 02:05:51 tulgey.cs.umd.edu setroubleshoot[2172311]: failed to retrieve rpm info for path '/fs/newww/files/ctools/css/07e2d10a94783acb437571b24863b61f.css': [x9] Jul 8 02:05:53 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/ctools/css/07e2d10a94783acb437571b24863b61f.css. For complete SELinux messages run: sealert -l 86f39992-130e-4209-b054-1e9b039dc890 [x9] Jul 8 02:06:01 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from read access on the file js_pRvOCQ34SqqqOVSzd_1v-Psx3xiNR_dQC3xife5iWbQ.js.gz. For complete SELinux messages run: sealert -l 7c8840ef-9208-4f4f-b7d5-e6f511df3aac [x9] Jul 8 02:06:01 tulgey.cs.umd.edu setroubleshoot[2172311]: failed to retrieve rpm info for path '/fs/newww/files/js/js_pRvOCQ34SqqqOVSzd_1v-Psx3xiNR_dQC3xife5iWbQ.js.gz': [x9] Jul 8 02:06:03 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/js/js_pRvOCQ34SqqqOVSzd_1v-Psx3xiNR_dQC3xife5iWbQ.js.gz. For complete SELinux messages run: sealert -l 42247982-1c1e-4a2e-a109-2f10c705efeb [x9] Jul 8 02:06:05 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/js/js_pRvOCQ34SqqqOVSzd_1v-Psx3xiNR_dQC3xife5iWbQ.js.gz. For complete SELinux messages run: sealert -l b4cb992e-3215-4cba-a2ec-2ec52875b6cc [x10] Jul 8 02:06:13 tulgey.cs.umd.edu setroubleshoot[2172311]: failed to retrieve rpm info for path '/fs/newww/files/styles/slider/public/images/highlights/slider/be_the_future.png': [x4] Jul 8 02:06:15 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/styles/slider/public/images/highlights/slider/be_the_future.png. For complete SELinux messages run: sealert -l b4cb992e-3215-4cba-a2ec-2ec52875b6cc [x4] Jul 8 02:06:35 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from read access on the file js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js.gz. For complete SELinux messages run: sealert -l 7c8840ef-9208-4f4f-b7d5-e6f511df3aac [x10] Jul 8 02:06:35 tulgey.cs.umd.edu setroubleshoot[2172311]: failed to retrieve rpm info for path '/fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js.gz': [x9] Jul 8 02:06:37 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js.gz. For complete SELinux messages run: sealert -l 42247982-1c1e-4a2e-a109-2f10c705efeb [x10] Jul 8 02:06:39 tulgey.cs.umd.edu setroubleshoot[2172311]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js.gz. For complete SELinux messages run: sealert -l b4cb992e-3215-4cba-a2ec-2ec52875b6cc [x10] Jul 8 02:06:59 tulgey.cs.umd.edu setroubleshoot[2172731]: SELinux is preventing /usr/sbin/httpd from read access on the lnk_file theory. For complete SELinux messages run: sealert -l ba93f93e-51d0-4202-80cb-9c64e47cfab4 [x20] Jul 8 02:06:59 tulgey.cs.umd.edu setroubleshoot[2172731]: failed to retrieve rpm info for path '/fs/mediawiki/theory': [x17] Jul 8 02:07:01 tulgey.cs.umd.edu setroubleshoot[2172731]: SELinux is preventing /usr/sbin/httpd from getattr access on the lnk_file /fs/mediawiki/theory. For complete SELinux messages run: sealert -l 718db2f8-b441-45cc-9a47-adeb59662148 [x20] Jul 8 02:07:04 tulgey.cs.umd.edu setroubleshoot[2172731]: failed to retrieve rpm info for path '/fs/newww/files/scholarly_papers/Bahety_1.pdf': Jul 8 02:07:06 tulgey.cs.umd.edu setroubleshoot[2172731]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/scholarly_papers/Bahety_1.pdf. For complete SELinux messages run: sealert -l 86f39992-130e-4209-b054-1e9b039dc890 Jul 8 02:07:12 tulgey.cs.umd.edu setroubleshoot[2172731]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/scholarly_papers/Bahety_1.pdf. For complete SELinux messages run: sealert -l b4cb992e-3215-4cba-a2ec-2ec52875b6cc Jul 8 02:07:22 tulgey.cs.umd.edu setroubleshoot[2172731]: SELinux is preventing /usr/sbin/httpd from read access on the file Gray dancer photo collage (2).png. For complete SELinux messages run: sealert -l 7c8840ef-9208-4f4f-b7d5-e6f511df3aac [x2] ... 264 more distinct messages not shown == tumtum.cs.umd.edu (242 distinct, 1142 total) == Jul 8 02:05:02 tumtum.cs.umd.edu setroubleshoot[2132299]: failed to retrieve rpm info for path '/fs/newww/files/ctools/css/07e2d10a94783acb437571b24863b61f.css': [x15] Jul 8 02:05:05 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/ctools/css/07e2d10a94783acb437571b24863b61f.css. For complete SELinux messages run: sealert -l f48ac09d-3a37-4fea-8483-557bf32c3ca0 [x21] Jul 8 02:05:05 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from name_connect access on the tcp_socket port 8002. For complete SELinux messages run: sealert -l cf63d602-2a93-4bdd-8158-92aa902e0911 [x90] Jul 8 02:05:05 tumtum.cs.umd.edu setroubleshoot[2132299]: failed to retrieve rpm info for path '/fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js': [x34] Jul 8 02:05:07 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/js/js_MRdvkC2u4oGsp5wVxBG1pGV5NrCPW3mssHxIn6G9tGE.js. For complete SELinux messages run: sealert -l f48ac09d-3a37-4fea-8483-557bf32c3ca0 [x58] Jul 8 02:05:12 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from read access on the file .htaccess. For complete SELinux messages run: sealert -l e9bf7ec9-e308-4106-b71c-7deae420cd7e [x96] Jul 8 02:05:12 tumtum.cs.umd.edu setroubleshoot[2132299]: failed to retrieve rpm info for path '/fs/newww/files/.htaccess': [x45] Jul 8 02:05:14 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/.htaccess. For complete SELinux messages run: sealert -l 30a804d8-8458-4ac7-9c59-3852fe228513 [x77] Jul 8 02:05:16 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/.htaccess. For complete SELinux messages run: sealert -l f48ac09d-3a37-4fea-8483-557bf32c3ca0 [x57] Jul 8 02:05:18 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from read access on the file css_bXd75p84PGJ2GK866-ynwUzr2PtFcRe6kx_KPjRhV2A.css.gz. For complete SELinux messages run: sealert -l e9bf7ec9-e308-4106-b71c-7deae420cd7e [x5] Jul 8 02:05:18 tumtum.cs.umd.edu setroubleshoot[2132299]: failed to retrieve rpm info for path '/fs/newww/files/css/css_bXd75p84PGJ2GK866-ynwUzr2PtFcRe6kx_KPjRhV2A.css.gz': [x3] Jul 8 02:05:20 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/css/css_bXd75p84PGJ2GK866-ynwUzr2PtFcRe6kx_KPjRhV2A.css.gz. For complete SELinux messages run: sealert -l 30a804d8-8458-4ac7-9c59-3852fe228513 [x4] Jul 8 02:05:22 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/css/css_bXd75p84PGJ2GK866-ynwUzr2PtFcRe6kx_KPjRhV2A.css.gz. For complete SELinux messages run: sealert -l 8a1c1ccd-5223-4747-a09e-507a854e8100 [x3] Jul 8 02:05:24 tumtum.cs.umd.edu setroubleshoot[2132299]: failed to retrieve rpm info for path '/fs/newww/files/scholarly_papers/Krishnamoorthy_1.pdf': Jul 8 02:05:26 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from getattr access on the file /fs/newww/files/scholarly_papers/Krishnamoorthy_1.pdf. For complete SELinux messages run: sealert -l f48ac09d-3a37-4fea-8483-557bf32c3ca0 Jul 8 02:05:32 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/scholarly_papers/Krishnamoorthy_1.pdf. For complete SELinux messages run: sealert -l 8a1c1ccd-5223-4747-a09e-507a854e8100 Jul 8 02:05:42 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from read access on the file js_qnhzXrR8BjAvWj8mEl2HGCurkDv_crVPvhc3Oi3Ny98.js.gz. For complete SELinux messages run: sealert -l e9bf7ec9-e308-4106-b71c-7deae420cd7e [x9] Jul 8 02:05:42 tumtum.cs.umd.edu setroubleshoot[2132299]: failed to retrieve rpm info for path '/fs/newww/files/js/js_qnhzXrR8BjAvWj8mEl2HGCurkDv_crVPvhc3Oi3Ny98.js.gz': [x8] Jul 8 02:05:44 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/js/js_qnhzXrR8BjAvWj8mEl2HGCurkDv_crVPvhc3Oi3Ny98.js.gz. For complete SELinux messages run: sealert -l 30a804d8-8458-4ac7-9c59-3852fe228513 [x9] Jul 8 02:05:46 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/js/js_qnhzXrR8BjAvWj8mEl2HGCurkDv_crVPvhc3Oi3Ny98.js.gz. For complete SELinux messages run: sealert -l 8a1c1ccd-5223-4747-a09e-507a854e8100 [x9] Jul 8 02:05:46 tumtum.cs.umd.edu setroubleshoot[2132299]: failed to retrieve rpm info for path '/fs/newww/files/scholarly_papers/202501_Cavolowsky,_Mark_Scholarly_Paper.pdf': [x2] Jul 8 02:05:48 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/scholarly_papers/202501_Cavolowsky,_Mark_Scholarly_Paper.pdf. For complete SELinux messages run: sealert -l 8a1c1ccd-5223-4747-a09e-507a854e8100 [x2] Jul 8 02:05:50 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from read access on the lnk_file theory. For complete SELinux messages run: sealert -l e8893f3d-39a4-4000-bca1-088c8ffbb287 [x13] Jul 8 02:05:50 tumtum.cs.umd.edu setroubleshoot[2132299]: failed to retrieve rpm info for path '/fs/mediawiki/theory': [x12] Jul 8 02:05:52 tumtum.cs.umd.edu setroubleshoot[2132299]: SELinux is preventing /usr/sbin/httpd from getattr access on the lnk_file /fs/mediawiki/theory. For complete SELinux messages run: sealert -l 3290acf4-8c68-46e1-a045-aa5150584366 [x13] Jul 8 02:06:20 tumtum.cs.umd.edu setroubleshoot[2133369]: SELinux is preventing /usr/sbin/httpd from read access on the file css_0Pm39BLe1dXUNCLxAdFYe8fEYTpBWyZIes71zPoQqg0.css.gz. For complete SELinux messages run: sealert -l e9bf7ec9-e308-4106-b71c-7deae420cd7e [x13] Jul 8 02:06:20 tumtum.cs.umd.edu setroubleshoot[2133369]: failed to retrieve rpm info for path '/fs/newww/files/css/css_0Pm39BLe1dXUNCLxAdFYe8fEYTpBWyZIes71zPoQqg0.css.gz': [x11] Jul 8 02:06:22 tumtum.cs.umd.edu setroubleshoot[2133369]: SELinux is preventing /usr/sbin/httpd from open access on the file /fs/newww/files/css/css_0Pm39BLe1dXUNCLxAdFYe8fEYTpBWyZIes71zPoQqg0.css.gz. For complete SELinux messages run: sealert -l 30a804d8-8458-4ac7-9c59-3852fe228513 [x13] Jul 8 02:06:24 tumtum.cs.umd.edu setroubleshoot[2133369]: SELinux is preventing /usr/sbin/httpd from map access on the file /fs/newww/files/css/css_0Pm39BLe1dXUNCLxAdFYe8fEYTpBWyZIes71zPoQqg0.css.gz. For complete SELinux messages run: sealert -l 8a1c1ccd-5223-4747-a09e-507a854e8100 [x12] Jul 8 02:06:30 tumtum.cs.umd.edu setroubleshoot[2133369]: failed to retrieve rpm info for path '/fs/newww/files/undergrad.cs.umd.edu/css/css_lQaZfjVpwP_oGNqdtWCSpJT1EMqXdMiU84ekLLxQnc4.css.gz': ... 212 more distinct messages not shown == vault (4 distinct, 47 total) == Jul 8 02:05:24 vault setroubleshoot[2015256]: SELinux is preventing /usr/bin/who from read access on the directory userdb. For complete SELinux messages run: sealert -l 35083630-532f-451c-8d1d-4b4b4517edf9 [x11] Jul 8 02:05:24 vault setroubleshoot[2015256]: SELinux is preventing /usr/bin/who from write access on the sock_file io.systemd.DynamicUser. For complete SELinux messages run: sealert -l 993bde54-5fcf-4b78-96b9-22c6e5b5a743 [x12] Jul 8 02:05:24 vault setroubleshoot[2015256]: failed to retrieve rpm info for path '/run/systemd/userdb/io.systemd.DynamicUser': [x12] Jul 8 02:05:24 vault setroubleshoot[2015256]: SELinux is preventing /usr/bin/who from connectto access on the unix_stream_socket /run/systemd/userdb/io.systemd.DynamicUser. For complete SELinux messages run: sealert -l f18d5bb6-bbab-4d53-8e51-c8bef4b25931 [x12] == vpn00a.cs.umd.edu (3 distinct, 6 total) == Jul 8 02:26:08 vpn00a.cs.umd.edu setroubleshoot[2939371]: failed to retrieve rpm info for path '/etc/puppetlabs/puppet/ssl/crl.pem': [x2] Jul 8 02:26:09 vpn00a.cs.umd.edu setroubleshoot[2939371]: SELinux is preventing /usr/sbin/openvpn from search access on the directory /etc/puppetlabs/puppet/ssl/crl.pem. For complete SELinux messages run: sealert -l dbbce48f-aa29-4cd6-baf6-36495c5a3386 [x2] Jul 8 02:26:09 vpn00a.cs.umd.edu setroubleshoot[2939371]: SELinux is preventing /usr/sbin/openvpn from getattr access on the file /etc/puppetlabs/puppet/ssl/crl.pem. For complete SELinux messages run: sealert -l 367ce461-e52e-4bb9-a719-8ebadba7de54 [x2] == vpn01a.cs.umd.edu (9 distinct, 9 total) == Jul 8 02:56:10 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from create access on the directory /(null). For complete SELinux messages run: sealert -l 59be5836-b25d-4140-98b1-6dfae5740da8 Jul 8 02:56:10 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from add_name access on the directory /(null). For complete SELinux messages run: sealert -l 49b7d01b-1e8e-4133-b3f8-ee8cef757201 Jul 8 02:56:11 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from create access on the file /(null). For complete SELinux messages run: sealert -l 0bd58744-9fb1-4d20-9041-c6b4da7da78f Jul 8 02:56:11 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from open access on the file /tmp/libdnf.gz3vbN/repodata/repomd.xml. For complete SELinux messages run: sealert -l e8d39436-fecf-4ff4-81bf-060b3f45ed16 Jul 8 02:56:11 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from setattr access on the file repomd.xml. For complete SELinux messages run: sealert -l df8cc05b-9fad-4ac4-8136-077c5b1cf4e6 Jul 8 02:56:11 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from read access on the directory libdnf.gz3vbN. For complete SELinux messages run: sealert -l ad4f1be7-d6ef-4098-a302-e4a527a20363 Jul 8 02:56:11 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from remove_name access on the directory repomd.xml. For complete SELinux messages run: sealert -l ea89c27a-ae90-4433-9862-96a1af0c9c06 Jul 8 02:56:11 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from unlink access on the file repomd.xml. For complete SELinux messages run: sealert -l 93f5b94c-cb2c-4658-bae9-3c74ce4198df Jul 8 02:56:11 vpn01a.cs.umd.edu setroubleshoot[2932447]: SELinux is preventing /usr/bin/python3.9 from rmdir access on the directory repodata. For complete SELinux messages run: sealert -l 0f410f91-edc3-40be-b982-7a5c0c451d1d == wraith (2 distinct, 2 total) == Jul 8 02:57:34 wraith falcon-sensor-bpf[913]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:57:34 wraith falcon-sensor-bpf[913]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == yogurt (2 distinct, 2 total) == Jul 8 02:48:44 yogurt falcon-sensor-bpf[950]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 02:48:44 yogurt falcon-sensor-bpf[950]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225 == zebatinsky.cs.umd.edu (17 distinct, 17 total) == Jul 8 02:05:36 zebatinsky.cs.umd.edu setroubleshoot[3604174]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13928. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:11:35 zebatinsky.cs.umd.edu setroubleshoot[3604653]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 11532. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:14:35 zebatinsky.cs.umd.edu setroubleshoot[3604977]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 14953. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:15:35 zebatinsky.cs.umd.edu setroubleshoot[3605717]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13145. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:16:35 zebatinsky.cs.umd.edu setroubleshoot[3605742]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 13220. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:20:36 zebatinsky.cs.umd.edu setroubleshoot[3606201]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 11096. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:24:36 zebatinsky.cs.umd.edu setroubleshoot[3606505]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 14433. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:26:41 zebatinsky.cs.umd.edu setroubleshoot[3607308]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 18693. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:29:39 zebatinsky.cs.umd.edu setroubleshoot[3607385]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 11351. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:35:39 zebatinsky.cs.umd.edu setroubleshoot[3608826]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 15405. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:41:39 zebatinsky.cs.umd.edu setroubleshoot[3609303]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 19969. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:44:38 zebatinsky.cs.umd.edu setroubleshoot[3609629]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 17883. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:50:38 zebatinsky.cs.umd.edu setroubleshoot[3610822]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 12027. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:56:39 zebatinsky.cs.umd.edu setroubleshoot[3611859]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 15094. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 02:59:39 zebatinsky.cs.umd.edu setroubleshoot[3611903]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 15669. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 03:02:38 zebatinsky.cs.umd.edu setroubleshoot[3612398]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 10812. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 Jul 8 03:03:39 zebatinsky.cs.umd.edu setroubleshoot[3612423]: SELinux is preventing pdns/comm-main from name_bind access on the udp_socket port 19223. For complete SELinux messages run: sealert -l 7f48f302-3d49-4c48-bb8a-14e306e0c380 == zwicker-computer (2 distinct, 2 total) == Jul 8 03:01:46 zwicker-computer falcon-sensor-bpf[718]: CrowdStrike(4): Could not retrieve DisableProxy value: c0000225 Jul 8 03:01:46 zwicker-computer falcon-sensor-bpf[718]: CrowdStrike(4): ConnectWithProxy: Unable to get application proxy host from CsConfig: c0000225