these 35 derivations will be built: /nix/store/8w228f02bv0qxy25f3b2w3gnav5sscxk-system-path.drv /nix/store/z5mimvk31s700z1b75q834cj9br9gyrx-dbus-1.drv /nix/store/papz1qwwsifx7xn9yh736yvja60hvfjp-X-Restart-Triggers-dbus-broker.drv /nix/store/0yhv7v4ql5s6cqdj6v8qla73cqm0y5xm-unit-dbus-broker.service.drv /nix/store/w7cwcjjyw5hs63zqqzgg1lnaf2b6mjih-system-path.drv /nix/store/326vhd92im988rid5c9l3mr2vkpll7d1-dbus-1.drv /nix/store/6sd5lkjkwfwb9qhvjbg3d72hrvfznnl4-X-Restart-Triggers-dbus-broker.drv /nix/store/2a19hfkd3qjgm75wnazkd036914fcx0k-unit-dbus-broker.service.drv /nix/store/a6p5b6vvdzbi4j796whbbmmx3wllcbl8-system-path.drv /nix/store/n3cn9ri7anbr1lmriqpk37nwqcdaj5lp-dbus-1.drv /nix/store/nbmdjrhsikgbnj4x6nsg8znhsdi2lnnn-X-Restart-Triggers-dbus-broker.drv /nix/store/g1csl8vvsk9qqfp47i0a0j0nyi1zjfw2-unit-dbus-broker.service.drv /nix/store/3bag35ys189midxjmml2f7m2jgna6y02-user-units.drv /nix/store/qfbkbri014bhjj1avn1w1ndypr71sh0p-unit-dbus-broker.service.drv /nix/store/xxr9q80rryy0bny5lbr4m1fca1dsdf42-system-units.drv /nix/store/3ybs65rz7z5a3azhif81v2601b24xid2-etc.drv /nix/store/kvg76l8ypr1z6fv5jan9f1kjxfbwg3i5-activate.drv /nix/store/pja1xl6svkwlvjk2x74xmrm8myh9awg4-nixos-system-server-test.drv /nix/store/59fvbx1qbaa84kn010d6yf78hzh0nkls-closure-info.drv /nix/store/m7isc2miv9bl5a4h7y49qzkwfmbrq6v6-user-units.drv /nix/store/klgvaqdnj81gphv46zjyfsr99b25kk8r-unit-dbus-broker.service.drv /nix/store/qbl6444ma7w4vdjhlvqy4wm7iz0fmsvy-system-units.drv /nix/store/yks72y83gb6sbnlzzkwxzxrmbphwh1jn-etc.drv /nix/store/9axcx2rixcxdzn1k1d54lhslwdyb7qi1-activate.drv /nix/store/60k39rrdxz1khd544bfwkmaws4qr38ip-nixos-system-ca-test.drv /nix/store/mgvdg9v3r813srfzmrxa2dbmr0152li3-unit-dbus-broker.service.drv /nix/store/ipxqxbmdfzr565s0cy7bjhmsh0mxayqh-user-units.drv /nix/store/ny9zk2mn18a44cd30dhqawsscwvl8h0y-system-units.drv /nix/store/zxs1jbvv96ypjp8ad2ihkqbbh1si4l9s-etc.drv /nix/store/z2m3qvm0ivaa0anp19mjs6gk1z1v28yn-activate.drv /nix/store/nc9p9wfv78110a07q2h52g1rj44fya52-nixos-system-client-test.drv /nix/store/dlq97r2a4a9a6p0mqfnrlz86zwzhqfid-closure-info.drv /nix/store/k9y1mhdjkx1clmfbn0gw4c7bdsgxphsa-closure-info.drv /nix/store/n70cd5yn3500lz2paxl592pkp6yw776a-nixos-test-driver-certificates.drv /nix/store/z1k4p43fsn75inmvmwlz91kc42y5isw6-container-test-run-certificates.drv building '/nix/store/8w228f02bv0qxy25f3b2w3gnav5sscxk-system-path.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/8w228f02bv0qxy25f3b2w3gnav5sscxk-system-path.drv' system-path> structuredAttrs is enabled system-path> created 1811 symlinks in user environment building '/nix/store/a6p5b6vvdzbi4j796whbbmmx3wllcbl8-system-path.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/w7cwcjjyw5hs63zqqzgg1lnaf2b6mjih-system-path.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/z5mimvk31s700z1b75q834cj9br9gyrx-dbus-1.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/z5mimvk31s700z1b75q834cj9br9gyrx-dbus-1.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/papz1qwwsifx7xn9yh736yvja60hvfjp-X-Restart-Triggers-dbus-broker.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/w7cwcjjyw5hs63zqqzgg1lnaf2b6mjih-system-path.drv' system-path> structuredAttrs is enabled system-path> created 1811 symlinks in user environment building '/nix/store/a6p5b6vvdzbi4j796whbbmmx3wllcbl8-system-path.drv' system-path> structuredAttrs is enabled system-path> created 1811 symlinks in user environment warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/326vhd92im988rid5c9l3mr2vkpll7d1-dbus-1.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/n3cn9ri7anbr1lmriqpk37nwqcdaj5lp-dbus-1.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/papz1qwwsifx7xn9yh736yvja60hvfjp-X-Restart-Triggers-dbus-broker.drv' building '/nix/store/0yhv7v4ql5s6cqdj6v8qla73cqm0y5xm-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/klgvaqdnj81gphv46zjyfsr99b25kk8r-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/326vhd92im988rid5c9l3mr2vkpll7d1-dbus-1.drv' building '/nix/store/6sd5lkjkwfwb9qhvjbg3d72hrvfznnl4-X-Restart-Triggers-dbus-broker.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/n3cn9ri7anbr1lmriqpk37nwqcdaj5lp-dbus-1.drv' building '/nix/store/nbmdjrhsikgbnj4x6nsg8znhsdi2lnnn-X-Restart-Triggers-dbus-broker.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/0yhv7v4ql5s6cqdj6v8qla73cqm0y5xm-unit-dbus-broker.service.drv' building '/nix/store/m7isc2miv9bl5a4h7y49qzkwfmbrq6v6-user-units.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/klgvaqdnj81gphv46zjyfsr99b25kk8r-unit-dbus-broker.service.drv' building '/nix/store/qbl6444ma7w4vdjhlvqy4wm7iz0fmsvy-system-units.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/6sd5lkjkwfwb9qhvjbg3d72hrvfznnl4-X-Restart-Triggers-dbus-broker.drv' building '/nix/store/2a19hfkd3qjgm75wnazkd036914fcx0k-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/mgvdg9v3r813srfzmrxa2dbmr0152li3-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/m7isc2miv9bl5a4h7y49qzkwfmbrq6v6-user-units.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/nbmdjrhsikgbnj4x6nsg8znhsdi2lnnn-X-Restart-Triggers-dbus-broker.drv' building '/nix/store/g1csl8vvsk9qqfp47i0a0j0nyi1zjfw2-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/qfbkbri014bhjj1avn1w1ndypr71sh0p-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/qbl6444ma7w4vdjhlvqy4wm7iz0fmsvy-system-units.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/g1csl8vvsk9qqfp47i0a0j0nyi1zjfw2-unit-dbus-broker.service.drv' building '/nix/store/mgvdg9v3r813srfzmrxa2dbmr0152li3-unit-dbus-broker.service.drv' building '/nix/store/ipxqxbmdfzr565s0cy7bjhmsh0mxayqh-user-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/2a19hfkd3qjgm75wnazkd036914fcx0k-unit-dbus-broker.service.drv' building '/nix/store/yks72y83gb6sbnlzzkwxzxrmbphwh1jn-etc.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/qfbkbri014bhjj1avn1w1ndypr71sh0p-unit-dbus-broker.service.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/xxr9q80rryy0bny5lbr4m1fca1dsdf42-system-units.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/ipxqxbmdfzr565s0cy7bjhmsh0mxayqh-user-units.drv' building '/nix/store/ny9zk2mn18a44cd30dhqawsscwvl8h0y-system-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/yks72y83gb6sbnlzzkwxzxrmbphwh1jn-etc.drv' building '/nix/store/9axcx2rixcxdzn1k1d54lhslwdyb7qi1-activate.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/3bag35ys189midxjmml2f7m2jgna6y02-user-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/xxr9q80rryy0bny5lbr4m1fca1dsdf42-system-units.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/ny9zk2mn18a44cd30dhqawsscwvl8h0y-system-units.drv' building '/nix/store/9axcx2rixcxdzn1k1d54lhslwdyb7qi1-activate.drv' building '/nix/store/60k39rrdxz1khd544bfwkmaws4qr38ip-nixos-system-ca-test.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/3bag35ys189midxjmml2f7m2jgna6y02-user-units.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/3ybs65rz7z5a3azhif81v2601b24xid2-etc.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/3ybs65rz7z5a3azhif81v2601b24xid2-etc.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/kvg76l8ypr1z6fv5jan9f1kjxfbwg3i5-activate.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/60k39rrdxz1khd544bfwkmaws4qr38ip-nixos-system-ca-test.drv' nixos-system-ca-test> structuredAttrs is enabled building '/nix/store/zxs1jbvv96ypjp8ad2ihkqbbh1si4l9s-etc.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/kvg76l8ypr1z6fv5jan9f1kjxfbwg3i5-activate.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/pja1xl6svkwlvjk2x74xmrm8myh9awg4-nixos-system-server-test.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/zxs1jbvv96ypjp8ad2ihkqbbh1si4l9s-etc.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/z2m3qvm0ivaa0anp19mjs6gk1z1v28yn-activate.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/z2m3qvm0ivaa0anp19mjs6gk1z1v28yn-activate.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/pja1xl6svkwlvjk2x74xmrm8myh9awg4-nixos-system-server-test.drv' nixos-system-server-test> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/k9y1mhdjkx1clmfbn0gw4c7bdsgxphsa-closure-info.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/k9y1mhdjkx1clmfbn0gw4c7bdsgxphsa-closure-info.drv' closure-info> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/59fvbx1qbaa84kn010d6yf78hzh0nkls-closure-info.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/59fvbx1qbaa84kn010d6yf78hzh0nkls-closure-info.drv' closure-info> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/nc9p9wfv78110a07q2h52g1rj44fya52-nixos-system-client-test.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/nc9p9wfv78110a07q2h52g1rj44fya52-nixos-system-client-test.drv' nixos-system-client-test> structuredAttrs is enabled building '/nix/store/dlq97r2a4a9a6p0mqfnrlz86zwzhqfid-closure-info.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/dlq97r2a4a9a6p0mqfnrlz86zwzhqfid-closure-info.drv' closure-info> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/n70cd5yn3500lz2paxl592pkp6yw776a-nixos-test-driver-certificates.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/n70cd5yn3500lz2paxl592pkp6yw776a-nixos-test-driver-certificates.drv' nixos-test-driver-certificates> Running type check (enable/disable: config.skipTypeCheck) nixos-test-driver-certificates> See https://nixos.org/manual/nixos/stable/#test-opt-skipTypeCheck nixos-test-driver-certificates> Success: no issues found in 1 source file warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/z1k4p43fsn75inmvmwlz91kc42y5isw6-container-test-run-certificates.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/z1k4p43fsn75inmvmwlz91kc42y5isw6-container-test-run-certificates.drv' container-test-run-certificates> additionally exposed symbols: container-test-run-certificates> ca, client, server, container-test-run-certificates> start_all, machines, driver, Machine, wait_for_signal container-test-run-certificates> Starting ca container-test-run-certificates> Starting client container-test-run-certificates> Starting server container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> <<< NixOS Stage 2 >>> container-test-run-certificates> container-test-run-certificates> booting system configuration /nix/store/kk93hngmb6vq4fjcqqijz4fqsvwg8mhf-nixos-system-ca-test container-test-run-certificates> running activation script... container-test-run-certificates> setting up /etc... container-test-run-certificates> 2: host0@if3: mtu 1500 qdisc noop state DOWN mode DEFAULT group default qlen 1000 container-test-run-certificates> link/ether 42:06:76:42:a9:8d brd ff:ff:ff:ff:ff:ff link-netnsid 0 container-test-run-certificates> setting up age secrets... container-test-run-certificates> starting systemd... container-test-run-certificates> systemd 260.2 running in system mode (+PAM +AUDIT -SELINUX +APPARMOR +IMA +IPE +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL +ACL +BLKID +CURL +ELFUTILS +FIDO2 +IDN2 +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 +PWQUALITY +P11KIT +QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD +BPF_FRAMEWORK -BTF -XKBCOMMON +UTMP +LIBARCHIVE) container-test-run-certificates> Detected virtualization systemd-nspawn. container-test-run-certificates> Detected architecture arm64. container-test-run-certificates> Detected first boot. container-test-run-certificates> Initializing machine ID from container UUID. container-test-run-certificates> Applying preset policy. container-test-run-certificates> Populated /etc with preset unit settings. container-test-run-certificates> Queued start job for default target Multi-User System. container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> <<< Welcome to NixOS test (aarch64) - console >>> container-test-run-certificates> + systemd-run /bin/sh -c '/nix/store/vpnizxs18sv6agrsqplsvaml9y3bfx0k-coreutils-9.11/bin/sleep 999999999 && echo 43451463-db53-47c9-b311-2b90023b07e3' container-test-run-certificates> Running as unit: run-p467-i87316954.service; invocation ID: f20548e01e8f450b87c0c365fa5aaa33 container-test-run-certificates> To attach to container ca run on the same machine that runs the test: container-test-run-certificates> sudo nsenter --user --target $(\pgrep -f '^/bin/sh.*43451463-db53-47c9-b311-2b90023b07e3') --mount --uts --ipc --net --pid --cgroup /bin/sh -c bash container-test-run-certificates> container-test-run-certificates> To inject external network and continue test, run: container-test-run-certificates> sudo /nix/store/1bhl5b9821ifsz1dbfm4wxbjbfywmsaq-python3-3.13.14/bin/python3.13 /nix/store/lf6lngb6dzima2m8nqbna4lc6bm1qw85-test-driver-0.0.1/lib/python3.13/site-packages/test_driver/inject_network.py 43451463-db53-47c9-b311-2b90023b07e3 container-test-run-certificates> container-test-run-certificates> <<< NixOS Stage 2 >>> container-test-run-certificates> container-test-run-certificates> booting system configuration /nix/store/h01zqw09207safrl95l1a9n82jaiq0zj-nixos-system-client-test container-test-run-certificates> running activation script... container-test-run-certificates> setting up /etc... container-test-run-certificates> 2: host0@if5: mtu 1500 qdisc noop state DOWN mode DEFAULT group default qlen 1000 container-test-run-certificates> link/ether 2a:42:35:28:b1:2f brd ff:ff:ff:ff:ff:ff link-netnsid 0 container-test-run-certificates> setting up age secrets... container-test-run-certificates> starting systemd... container-test-run-certificates> systemd 260.2 running in system mode (+PAM +AUDIT -SELINUX +APPARMOR +IMA +IPE +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL +ACL +BLKID +CURL +ELFUTILS +FIDO2 +IDN2 +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 +PWQUALITY +P11KIT +QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD +BPF_FRAMEWORK -BTF -XKBCOMMON +UTMP +LIBARCHIVE) container-test-run-certificates> Detected virtualization systemd-nspawn. container-test-run-certificates> Detected architecture arm64. container-test-run-certificates> Detected first boot. container-test-run-certificates> Initializing machine ID from container UUID. container-test-run-certificates> Applying preset policy. container-test-run-certificates> Populated /etc with preset unit settings. container-test-run-certificates> Queued start job for default target Multi-User System. container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> <<< Welcome to NixOS test (aarch64) - console >>> container-test-run-certificates> + systemd-run /bin/sh -c '/nix/store/vpnizxs18sv6agrsqplsvaml9y3bfx0k-coreutils-9.11/bin/sleep 999999999 && echo b5777629-7e72-47a1-85c4-9c04654dd3f7' container-test-run-certificates> Running as unit: run-p304-i87316959.service; invocation ID: 2b89d3f52376414a922bb3f43cdd09a5 container-test-run-certificates> To attach to container client run on the same machine that runs the test: container-test-run-certificates> sudo nsenter --user --target $(\pgrep -f '^/bin/sh.*b5777629-7e72-47a1-85c4-9c04654dd3f7') --mount --uts --ipc --net --pid --cgroup /bin/sh -c bash container-test-run-certificates> container-test-run-certificates> To inject external network and continue test, run: container-test-run-certificates> sudo /nix/store/1bhl5b9821ifsz1dbfm4wxbjbfywmsaq-python3-3.13.14/bin/python3.13 /nix/store/lf6lngb6dzima2m8nqbna4lc6bm1qw85-test-driver-0.0.1/lib/python3.13/site-packages/test_driver/inject_network.py b5777629-7e72-47a1-85c4-9c04654dd3f7 container-test-run-certificates> container-test-run-certificates> <<< NixOS Stage 2 >>> container-test-run-certificates> container-test-run-certificates> booting system configuration /nix/store/bw3fm5ixf3njpqqcs44plwylpswmjixn-nixos-system-server-test container-test-run-certificates> running activation script... container-test-run-certificates> setting up /etc... container-test-run-certificates> 2: host0@if4: mtu 1500 qdisc noop state DOWN mode DEFAULT group default qlen 1000 container-test-run-certificates> link/ether be:aa:dd:39:86:e7 brd ff:ff:ff:ff:ff:ff link-netnsid 0 container-test-run-certificates> setting up age secrets... container-test-run-certificates> starting systemd... container-test-run-certificates> systemd 260.2 running in system mode (+PAM +AUDIT -SELINUX +APPARMOR +IMA +IPE +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL +ACL +BLKID +CURL +ELFUTILS +FIDO2 +IDN2 +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 +PWQUALITY +P11KIT +QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD +BPF_FRAMEWORK -BTF -XKBCOMMON +UTMP +LIBARCHIVE) container-test-run-certificates> Detected virtualization systemd-nspawn. container-test-run-certificates> Detected architecture arm64. container-test-run-certificates> Detected first boot. container-test-run-certificates> Initializing machine ID from container UUID. container-test-run-certificates> Applying preset policy. container-test-run-certificates> Populated /etc with preset unit settings. container-test-run-certificates> Queued start job for default target Multi-User System. container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> <<< Welcome to NixOS test (aarch64) - console >>> container-test-run-certificates> + systemd-run /bin/sh -c '/nix/store/vpnizxs18sv6agrsqplsvaml9y3bfx0k-coreutils-9.11/bin/sleep 999999999 && echo bb1989e6-6b46-4df5-819a-782a74947881' container-test-run-certificates> Running as unit: run-p399-i87316967.service; invocation ID: 1c4c0819a73a41bba21c4d314757266e container-test-run-certificates> To attach to container server run on the same machine that runs the test: container-test-run-certificates> sudo nsenter --user --target $(\pgrep -f '^/bin/sh.*bb1989e6-6b46-4df5-819a-782a74947881') --mount --uts --ipc --net --pid --cgroup /bin/sh -c bash container-test-run-certificates> container-test-run-certificates> To inject external network and continue test, run: container-test-run-certificates> sudo /nix/store/1bhl5b9821ifsz1dbfm4wxbjbfywmsaq-python3-3.13.14/bin/python3.13 /nix/store/lf6lngb6dzima2m8nqbna4lc6bm1qw85-test-driver-0.0.1/lib/python3.13/site-packages/test_driver/inject_network.py bb1989e6-6b46-4df5-819a-782a74947881 container-test-run-certificates> + systemctl restart acme-order-renew-ca.foo.service container-test-run-certificates> + systemctl restart acme-test.foo.service container-test-run-certificates> client: waiting for success: curl -v https://test.foo container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [1010 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [111 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 13 05:34:20 2026 GMT container-test-run-certificates> * expire date: Sep 12 05:34:20 2028 GMT container-test-run-certificates> * issuer: CN=minica root ca 6d14c1 container-test-run-certificates> * Certificate level 0: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * Certificate level 1: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 13 container-test-run-certificates> * SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> * closing connection #0 container-test-run-certificates> curl: (60) SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> More details here: https://curl.se/docs/sslcerts.html container-test-run-certificates> container-test-run-certificates> curl failed to verify the legitimacy of the server and therefore could not container-test-run-certificates> establish a secure connection to it. To learn more about this situation and container-test-run-certificates> how to fix it, please visit the webpage mentioned above. container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [1010 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [111 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 13 05:34:20 2026 GMT container-test-run-certificates> * expire date: Sep 12 05:34:20 2028 GMT container-test-run-certificates> * issuer: CN=minica root ca 6d14c1 container-test-run-certificates> * Certificate level 0: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * Certificate level 1: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 13 container-test-run-certificates> * SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> * closing connection #0 container-test-run-certificates> curl: (60) SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> More details here: https://curl.se/docs/sslcerts.html container-test-run-certificates> container-test-run-certificates> curl failed to verify the legitimacy of the server and therefore could not container-test-run-certificates> establish a secure connection to it. To learn more about this situation and container-test-run-certificates> how to fix it, please visit the webpage mentioned above. container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [1010 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [110 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 13 05:34:20 2026 GMT container-test-run-certificates> * expire date: Sep 12 05:34:20 2028 GMT container-test-run-certificates> * issuer: CN=minica root ca 6d14c1 container-test-run-certificates> * Certificate level 0: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * Certificate level 1: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 13 container-test-run-certificates> * SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> * closing connection #0 container-test-run-certificates> curl: (60) SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> More details here: https://curl.se/docs/sslcerts.html container-test-run-certificates> container-test-run-certificates> curl failed to verify the legitimacy of the server and therefore could not container-test-run-certificates> establish a secure connection to it. To learn more about this situation and container-test-run-certificates> how to fix it, please visit the webpage mentioned above. container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [1010 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [111 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 13 05:34:20 2026 GMT container-test-run-certificates> * expire date: Sep 12 05:34:20 2028 GMT container-test-run-certificates> * issuer: CN=minica root ca 6d14c1 container-test-run-certificates> * Certificate level 0: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * Certificate level 1: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 13 container-test-run-certificates> * SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> * closing connection #0 container-test-run-certificates> curl: (60) SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> More details here: https://curl.se/docs/sslcerts.html container-test-run-certificates> container-test-run-certificates> curl failed to verify the legitimacy of the server and therefore could not container-test-run-certificates> establish a secure connection to it. To learn more about this situation and container-test-run-certificates> how to fix it, please visit the webpage mentioned above. container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [932 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [79 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 13 05:33:34 2026 GMT container-test-run-certificates> * expire date: Nov 11 05:34:34 2026 GMT container-test-run-certificates> * issuer: CN=Clan Intermediate CA container-test-run-certificates> * Certificate level 0: Public key type EC/prime256v1 (256/128 Bits/secBits), signed using ecdsa-with-SHA256 container-test-run-certificates> * Certificate level 1: Public key type EC/prime256v1 (256/128 Bits/secBits), signed using ecdsa-with-SHA256 container-test-run-certificates> * Certificate level 2: Public key type EC/prime256v1 (256/128 Bits/secBits), signed using ecdsa-with-SHA256 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 0 container-test-run-certificates> * SSL certificate verified via OpenSSL. container-test-run-certificates> * Established connection to test.foo (192.168.1.3 port 443) from 192.168.1.2 port 55616 container-test-run-certificates> % Total % Received % Xferd Average Speed Time Time Time Current container-test-run-certificates> Dload Upload Total Spent Left Speed container-test-run-certificates> 0 0 0 0 0 0 0 0 0* using HTTP/2 container-test-run-certificates> * [HTTP/2] [1] OPENED stream for https://test.foo/ container-test-run-certificates> * [HTTP/2] [1] [:method: GET] container-test-run-certificates> * [HTTP/2] [1] [:scheme: https] container-test-run-certificates> * [HTTP/2] [1] [:authority: test.foo] container-test-run-certificates> * [HTTP/2] [1] [:path: /] container-test-run-certificates> * [HTTP/2] [1] [user-agent: curl/8.21.0] container-test-run-certificates> * [HTTP/2] [1] [accept: */*] container-test-run-certificates> } [5 bytes data] container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> * Request completely sent off container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Newsession Ticket (4): container-test-run-certificates> { [265 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Newsession Ticket (4): container-test-run-certificates> { [265 bytes data] container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> { [5 bytes data] container-test-run-certificates> 100 20 100 20 0 0 843 0 0 container-test-run-certificates> * Connection #0 to host test.foo:443 left intact container-test-run-certificates> (finished: waiting for success: curl -v https://test.foo, in 4.22 seconds) container-test-run-certificates> + openssl s_client -connect test.foo:443 -servername test.foo container-test-run-certificates> + openssl x509 -text -noout container-test-run-certificates> Certificate: container-test-run-certificates> Data: container-test-run-certificates> Version: 3 (0x2) container-test-run-certificates> Serial Number: container-test-run-certificates> 4d:9e:1b:45:ee:ff:b1:1b:5b:82:8c:24:7b:a2:00:02 container-test-run-certificates> Signature Algorithm: ecdsa-with-SHA256 container-test-run-certificates> Issuer: CN=Clan Intermediate CA container-test-run-certificates> Validity container-test-run-certificates> Not Before: Aug 13 05:33:34 2026 GMT container-test-run-certificates> Not After : Nov 11 05:34:34 2026 GMT container-test-run-certificates> Subject: CN=test.foo container-test-run-certificates> Subject Public Key Info: container-test-run-certificates> Public Key Algorithm: id-ecPublicKey container-test-run-certificates> Public-Key: (256 bit) container-test-run-certificates> pub: container-test-run-certificates> 04:bd:39:3f:80:5e:e6:ee:10:4f:03:09:5f:b6:ff: container-test-run-certificates> 0d:ae:dd:39:e1:b4:20:ac:c0:e5:9c:7a:ee:ad:84: container-test-run-certificates> b2:46:c7:28:c2:16:72:91:d4:92:a0:b5:19:3d:27: container-test-run-certificates> a8:37:84:ed:5b:5a:9e:a4:d6:b8:60:e9:ce:78:41: container-test-run-certificates> 0f:57:31:73:ea container-test-run-certificates> ASN1 OID: prime256v1 container-test-run-certificates> NIST CURVE: P-256 container-test-run-certificates> X509v3 extensions: container-test-run-certificates> X509v3 Key Usage: critical container-test-run-certificates> Digital Signature container-test-run-certificates> X509v3 Extended Key Usage: container-test-run-certificates> TLS Web Server Authentication, TLS Web Client Authentication container-test-run-certificates> X509v3 Subject Key Identifier: container-test-run-certificates> 39:F6:B9:38:35:AB:C1:6B:C1:17:DF:FB:D0:A4:18:DA:13:41:BA:E6 container-test-run-certificates> X509v3 Authority Key Identifier: container-test-run-certificates> 98:3E:13:B5:3D:61:46:5D:52:69:C3:A3:BF:8A:2E:05:49:62:F8:DE container-test-run-certificates> X509v3 Subject Alternative Name: container-test-run-certificates> DNS:test.foo container-test-run-certificates> 1.3.6.1.4.1.37476.9000.64.1: container-test-run-certificates> 0......acme.. container-test-run-certificates> Signature Algorithm: ecdsa-with-SHA256 container-test-run-certificates> Signature Value: container-test-run-certificates> 30:46:02:21:00:9f:5a:8e:eb:26:14:a2:60:e9:07:3e:43:05: container-test-run-certificates> 2f:bd:17:a0:c2:77:b9:ea:0d:8a:c4:34:7d:b3:96:43:15:03: container-test-run-certificates> 65:02:21:00:e6:25:f0:1d:8f:7d:f1:1c:69:f6:cc:64:1e:7a: container-test-run-certificates> e4:9c:5a:14:d2:64:90:c9:08:ed:05:79:95:6b:e8:05:8f:e9 container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy post-build step Upload to niks3: ok time=2026-08-13T05:34:40.573Z level=INFO msg="Uploading 0 paths to niks3.clan.lol (1 already cached)" time=2026-08-13T05:34:40.947Z level=INFO msg="Uploading 1 narinfos" time=2026-08-13T05:34:41.113Z level=INFO msg="Upload complete. (589ms)"