[ 0.081449] Security Framework initialized [ 0.089072] AppArmor: AppArmor initialized [ 1.217486] evm: security.selinux [ 1.220799] evm: security.SMACK64 [ 1.224109] evm: security.SMACK64EXEC [ 1.227768] evm: security.SMACK64TRANSMUTE [ 1.231868] evm: security.SMACK64MMAP [ 1.235530] evm: security.ima [ 1.238496] evm: security.capability [ 2.250329] AppArmor: AppArmor Filesystem Enabled [ 3.264217] audit: type=2000 audit(1527794889.644:1): initialized [ 5.472105] AppArmor: AppArmor sha1 policy hashing enabled [ 9.395457] SGI XFS with ACLs, security attributes, realtime, no debug enabled [ 10.480650] systemd[1]: systemd 229 running in system mode. (+PAM +AUDIT +SELINUX +IMA +APPARMOR +SMACK +SYSVINIT +UTMP +LIBCRYPTSETUP +GCRYPT +GNUTLS +ACL +XZ -LZ4 +SECCOMP +BLKID +ELFUTILS +KMOD -IDN) [ 14.884020] audit: type=1400 audit(1527794903.907:2): apparmor="STATUS" operation="profile_load" profile="unconfined" name="/usr/bin/lxc-start" pid=2014 comm="apparmor_parser" [ 14.884370] audit: type=1400 audit(1527794903.907:3): apparmor="STATUS" operation="profile_load" profile="unconfined" name="/usr/lib/snapd/snap-confine" pid=2017 comm="apparmor_parser" [ 14.884376] audit: type=1400 audit(1527794903.907:4): apparmor="STATUS" operation="profile_load" profile="unconfined" name="/usr/lib/snapd/snap-confine//mount-namespace-capture-helper" pid=2017 comm="apparmor_parser" [ 14.886774] audit: type=1400 audit(1527794903.911:5): apparmor="STATUS" operation="profile_load" profile="unconfined" name="lxc-container-default" pid=2011 comm="apparmor_parser" [ 14.886781] audit: type=1400 audit(1527794903.911:6): apparmor="STATUS" operation="profile_load" profile="unconfined" name="lxc-container-default-cgns" pid=2011 comm="apparmor_parser" [ 14.886786] audit: type=1400 audit(1527794903.911:7): apparmor="STATUS" operation="profile_load" profile="unconfined" name="lxc-container-default-with-mounting" pid=2011 comm="apparmor_parser" [ 14.886792] audit: type=1400 audit(1527794903.911:8): apparmor="STATUS" operation="profile_load" profile="unconfined" name="lxc-container-default-with-nesting" pid=2011 comm="apparmor_parser" [ 14.911215] audit: type=1400 audit(1527794903.935:9): apparmor="STATUS" operation="profile_load" profile="unconfined" name="/snap/core/4650/usr/lib/snapd/snap-confine" pid=2013 comm="apparmor_parser" [ 14.911221] audit: type=1400 audit(1527794903.935:10): apparmor="STATUS" operation="profile_load" profile="unconfined" name="/snap/core/4650/usr/lib/snapd/snap-confine//mount-namespace-capture-helper" pid=2013 comm="apparmor_parser" [ 14.915425] audit: type=1400 audit(1527794903.939:11): apparmor="STATUS" operation="profile_load" profile="unconfined" name="/usr/sbin/libvirtd" pid=2018 comm="apparmor_parser" [ 26.302245] audit: type=1400 audit(1527794915.327:23): apparmor="DENIED" operation="capable" profile="/usr/sbin/ntpd" pid=3896 comm="ntpd" capability=12 capname="net_admin" [1023462.879607] audit: type=1400 audit(1528818337.976:24): apparmor="STATUS" operation="profile_load" profile="unconfined" name="libvirt-198fba7e-e024-41d1-926a-698a5aec1a59" pid=2033484 comm="apparmor_parser" [1023463.209999] audit: type=1400 audit(1528818338.308:25): apparmor="STATUS" operation="profile_replace" profile="unconfined" name="libvirt-198fba7e-e024-41d1-926a-698a5aec1a59" pid=2033582 comm="apparmor_parser"