---- time->Thu Aug 7 05:54:50 2025 type=PROCTITLE msg=audit(1754560490.469:12923): proctitle=676574656E740067726F7570006D7373716C type=SYSCALL msg=audit(1754560490.469:12923): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffd83dd6d90 a2=2d a3=0 items=0 ppid=75319 pid=75320 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="getent" exe="/usr/bin/getent" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560490.469:12923): avc: denied { connectto } for pid=75320 comm="getent" path="/run/systemd/userdb/io.systemd.DynamicUser" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=unix_stream_socket permissive=0 ---- time->Thu Aug 7 05:54:50 2025 type=PROCTITLE msg=audit(1754560490.469:12924): proctitle=676574656E740067726F7570006D7373716C type=SYSCALL msg=audit(1754560490.469:12924): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffd83dd6d80 a2=2d a3=5627a2931a00 items=0 ppid=75319 pid=75320 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="getent" exe="/usr/bin/getent" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560490.469:12924): avc: denied { connectto } for pid=75320 comm="getent" path="/run/systemd/userdb/io.systemd.DynamicUser" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=unix_stream_socket permissive=0 ---- time->Thu Aug 7 05:54:50 2025 type=PROCTITLE msg=audit(1754560490.484:12925): proctitle=676574656E740067726F7570006D7373716C type=SYSCALL msg=audit(1754560490.484:12925): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffd60469c20 a2=2d a3=0 items=0 ppid=75323 pid=75324 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="getent" exe="/usr/bin/getent" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560490.484:12925): avc: denied { connectto } for pid=75324 comm="getent" path="/run/systemd/userdb/io.systemd.DynamicUser" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=unix_stream_socket permissive=0 ---- time->Thu Aug 7 05:54:50 2025 type=PROCTITLE msg=audit(1754560490.484:12926): proctitle=676574656E740067726F7570006D7373716C type=SYSCALL msg=audit(1754560490.484:12926): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffd60469c10 a2=2d a3=55af2c0afa00 items=0 ppid=75323 pid=75324 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="getent" exe="/usr/bin/getent" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560490.484:12926): avc: denied { connectto } for pid=75324 comm="getent" path="/run/systemd/userdb/io.systemd.DynamicUser" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=unix_stream_socket permissive=0 ---- time->Thu Aug 7 05:54:50 2025 type=PROCTITLE msg=audit(1754560490.509:12927): proctitle=2F62696E2F7368002D63006966202020686173682064706B673B207468656E20636D643D2264706B67202D2D6C697374223B2020202020202020202020202020202020202020656C69662068617368202072706D3B207468656E20636D643D2272706D202D7161223B20202020202020202020202020202020202020656C7365 type=SYSCALL msg=audit(1754560490.509:12927): arch=c000003e syscall=262 success=no exit=-13 a0=ffffff9c a1=56305ea14260 a2=7ffe681a9dc0 a3=0 items=0 ppid=75318 pid=75329 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="sh" exe="/usr/bin/bash" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560490.509:12927): avc: denied { getattr } for pid=75329 comm="sh" path="/usr/bin/rpm" dev="xvda1" ino=640124 scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:object_r:rpm_exec_t:s0 tclass=file permissive=0 ---- time->Thu Aug 7 05:54:50 2025 type=PROCTITLE msg=audit(1754560490.539:12930): proctitle=7375002D70002D63002F6F70742F6D7373716C2F62696E2F73716C7365727672202D2D7365747570202D2D72657365742D73612D70617373776F7264006D7373716C type=SYSCALL msg=audit(1754560490.539:12930): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffc0e5812f0 a2=2d a3=5586cd778750 items=0 ppid=75332 pid=75338 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="su" exe="/usr/bin/su" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560490.539:12930): avc: denied { connectto } for pid=75338 comm="su" path="/run/systemd/userdb/io.systemd.DynamicUser" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=unix_stream_socket permissive=0 ---- time->Thu Aug 7 05:54:50 2025 type=PROCTITLE msg=audit(1754560490.539:12932): proctitle=7375002D70002D63002F6F70742F6D7373716C2F62696E2F73716C7365727672202D2D7365747570202D2D72657365742D73612D70617373776F7264006D7373716C type=SYSCALL msg=audit(1754560490.539:12932): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffc0e580eb0 a2=2d a3=5586cd778700 items=0 ppid=75332 pid=75338 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="su" exe="/usr/bin/su" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560490.539:12932): avc: denied { connectto } for pid=75338 comm="su" path="/run/systemd/userdb/io.systemd.DynamicUser" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=unix_stream_socket permissive=0 ---- time->Thu Aug 7 05:54:56 2025 type=PROCTITLE msg=audit(1754560496.813:12936): proctitle="(sd-askpwagent)" type=SYSCALL msg=audit(1754560496.813:12936): arch=c000003e syscall=59 success=no exit=-13 a0=7f6e01cc4f78 a1=7ffcb91eafe0 a2=7ffcb91eb878 a3=0 items=0 ppid=75534 pid=75535 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="(sd-askpwagent)" exe="/usr/bin/systemctl" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=SELINUX_ERR msg=audit(1754560496.813:12936): op=security_compute_sid invalid_context="unconfined_u:unconfined_r:systemd_passwd_agent_t:s0-s0:c0.c1023" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:object_r:systemd_passwd_agent_exec_t:s0 tclass=process ---- time->Thu Aug 7 05:55:23 2025 type=PROCTITLE msg=audit(1754560523.181:13482): proctitle=676574656E740067726F7570006D7373716C type=SYSCALL msg=audit(1754560523.181:13482): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffc900ee1f0 a2=2d a3=0 items=0 ppid=78623 pid=78624 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="getent" exe="/usr/bin/getent" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560523.181:13482): avc: denied { connectto } for pid=78624 comm="getent" path="/run/systemd/userdb/io.systemd.DynamicUser" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=unix_stream_socket permissive=0 ---- time->Thu Aug 7 05:55:23 2025 type=PROCTITLE msg=audit(1754560523.181:13483): proctitle=676574656E740067726F7570006D7373716C type=SYSCALL msg=audit(1754560523.181:13483): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffc900ee1e0 a2=2d a3=55fc703d4a00 items=0 ppid=78623 pid=78624 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="getent" exe="/usr/bin/getent" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560523.181:13483): avc: denied { connectto } for pid=78624 comm="getent" path="/run/systemd/userdb/io.systemd.DynamicUser" scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:system_r:kernel_t:s0 tclass=unix_stream_socket permissive=0 ---- time->Thu Aug 7 05:55:23 2025 type=PROCTITLE msg=audit(1754560523.191:13484): proctitle=707974686F6E33002F6F70742F6D7373716C2F62696E2F2E2E2F6C69622F6D7373716C2D636F6E662F6D7373716C2D636F6E662E707900736574006E6574776F726B2E746370706F72740031343333 type=SYSCALL msg=audit(1754560523.191:13484): arch=c000003e syscall=42 success=no exit=-13 a0=4 a1=7ffcd50f7dd0 a2=10 a3=7fe2f1e1b9f1 items=0 ppid=78620 pid=78622 auid=0 uid=0 gid=0 euid=0 suid=0 fsuid=0 egid=0 sgid=0 fsgid=0 tty=pts0 ses=7 comm="python3" exe="/usr/bin/python3.9" subj=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 key=(null) type=AVC msg=audit(1754560523.191:13484): avc: denied { name_connect } for pid=78622 comm="python3" dest=1433 scontext=unconfined_u:unconfined_r:mssql_conf_t:s0-s0:c0.c1023 tcontext=system_u:object_r:mssql_port_t:s0 tclass=tcp_socket permissive=0 ---- time->Thu Aug 7 05:56:16 2025 type=PROCTITLE msg=audit(1754560576.282:14208): proctitle="/opt/mssql/bin/sqlservr" type=SYSCALL msg=audit(1754560576.282:14208): arch=c000003e syscall=262 success=no exit=-2 a0=ffffff9c a1=7fc9d5bf5400 a2=7fc9d5a7e0c0 a3=0 items=0 ppid=78931 pid=78957 auid=4294967295 uid=993 gid=993 euid=993 suid=993 fsuid=993 egid=993 sgid=993 fsgid=993 tty=(none) ses=4294967295 comm="sqlservr" exe="/opt/mssql/bin/sqlservr" subj=system_u:object_r:unlabeled_t:s0 key=(null) type=AVC msg=audit(1754560576.282:14208): avc: denied { search } for pid=78957 comm="sqlservr" name="mssql" dev="xvda1" ino=469762242 scontext=system_u:object_r:unlabeled_t:s0 tcontext=unconfined_u:object_r:var_t:s0 tclass=dir permissive=1 srawcon="system_u:system_r:mssql_server_t:s0" type=AVC msg=audit(1754560576.282:14208): avc: denied { search } for pid=78957 comm="sqlservr" name="var" dev="xvda1" ino=133 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:var_t:s0 tclass=dir permissive=1 srawcon="system_u:system_r:mssql_server_t:s0" type=AVC msg=audit(1754560576.282:14208): avc: denied { search } for pid=78957 comm="sqlservr" name="/" dev="xvda1" ino=128 scontext=system_u:object_r:unlabeled_t:s0 tcontext=system_u:object_r:root_t:s0 tclass=dir permissive=1 srawcon="system_u:system_r:mssql_server_t:s0" ---- time->Thu Aug 7 05:56:53 2025 type=AVC msg=audit(1754560613.258:15161): avc: denied { signal } for pid=1 comm="systemd" scontext=system_u:system_r:init_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=process permissive=1 trawcon="system_u:system_r:mssql_server_t:s0" ---- time->Thu Aug 7 05:56:53 2025 type=AVC msg=audit(1754560613.262:15165): avc: denied { read } for pid=521 comm="systemd-journal" name="status" dev="proc" ino=278909 scontext=system_u:system_r:syslogd_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=file permissive=1 trawcon="system_u:system_r:mssql_server_t:s0" ---- time->Thu Aug 7 05:56:53 2025 type=AVC msg=audit(1754560613.262:15166): avc: denied { open } for pid=521 comm="systemd-journal" path="/proc/78957/status" dev="proc" ino=278909 scontext=system_u:system_r:syslogd_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=file permissive=1 trawcon="system_u:system_r:mssql_server_t:s0" ---- time->Thu Aug 7 05:56:53 2025 type=AVC msg=audit(1754560613.262:15167): avc: denied { getattr } for pid=521 comm="systemd-journal" path="/proc/78957/status" dev="proc" ino=278909 scontext=system_u:system_r:syslogd_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=file permissive=1 trawcon="system_u:system_r:mssql_server_t:s0" ---- time->Thu Aug 7 05:56:53 2025 type=AVC msg=audit(1754560613.262:15168): avc: denied { ioctl } for pid=521 comm="systemd-journal" path="/proc/78957/status" dev="proc" ino=278909 ioctlcmd=0x5401 scontext=system_u:system_r:syslogd_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=file permissive=1 trawcon="system_u:system_r:mssql_server_t:s0" ---- time->Thu Aug 7 05:56:53 2025 type=AVC msg=audit(1754560613.262:15169): avc: denied { read } for pid=521 comm="systemd-journal" name="exe" dev="proc" ino=280667 scontext=system_u:system_r:syslogd_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=lnk_file permissive=1 trawcon="system_u:system_r:mssql_server_t:s0" ---- time->Thu Aug 7 05:56:53 2025 type=AVC msg=audit(1754560613.262:15170): avc: denied { getattr } for pid=521 comm="systemd-journal" scontext=system_u:system_r:syslogd_t:s0 tcontext=system_u:object_r:unlabeled_t:s0 tclass=process permissive=1 trawcon="system_u:system_r:mssql_server_t:s0"