these 35 derivations will be built: /nix/store/mpr5qx66phn2fl8ifvi6yklk3rbpfjb5-system-path.drv /nix/store/b8vzvxc3ryvkij80rbcmhnqlsz7xb1zc-dbus-1.drv /nix/store/2rp66dwx4nilw0zvz7s0qsqr8qn60329-X-Restart-Triggers-dbus-broker.drv /nix/store/83g2ip1ij4ahdixx7m8nxnam8d3xg3vf-unit-dbus-broker.service.drv /nix/store/07bd2lqmzy4f0azq3q1slsrn7134764g-user-units.drv /nix/store/ycsj7a1c37qlq16jp799vw4dy1g4c8q7-system-path.drv /nix/store/d8k44svkrbv680fx9a14wzyblqga4ba6-dbus-1.drv /nix/store/2wd56sfqilqrg3l4wiw08ibcdp93nqrm-X-Restart-Triggers-dbus-broker.drv /nix/store/pr1igd33f2llbj0dncg7vbfzbgrjanq0-system-path.drv /nix/store/4w0cxjgh5f60hzrbpq2rq5wmrffh1fyq-dbus-1.drv /nix/store/qh4g5ndf49ai2niq2pc6zqcw56qd7j8g-unit-dbus-broker.service.drv /nix/store/6amd6d2phpdvphvmwfjali5lp5y2a341-system-units.drv /nix/store/jgdh5rndiciappcaj71frsmbbf0c6yq4-etc.drv /nix/store/80zxg9di916n6qsr0cz88r1kzz57lnwn-activate.drv /nix/store/b4gyc9r2c0rkij0w8npdvsz2y16cfp9a-nixos-system-server-test.drv /nix/store/jmw8r1z8aw1bwdh9ms147dlkcz1macrx-unit-dbus-broker.service.drv /nix/store/qrpis5aml3gr4q8li1zbnn830q666jna-system-units.drv /nix/store/8g8gmn8irgr2csmn8cggm468sfrl61id-unit-dbus-broker.service.drv /nix/store/wf59z4as9x38fs1lmg3n0vy9y6xxbldq-user-units.drv /nix/store/hx2zcbisbxxcbj25hr3qq33ilsln62z2-etc.drv /nix/store/gccskziir2kn0zb84nciph0k6y1ppxll-activate.drv /nix/store/pk36l246xlcqfry80hcpp2567h9wn35c-nixos-system-ca-test.drv /nix/store/g5rzvx7761p6626yn54hxj4501nr1h64-closure-info.drv /nix/store/vkl4d3xjlshnqvbw2cn8j5556p4vgpfc-X-Restart-Triggers-dbus-broker.drv /nix/store/i0hpw4a5i4v0cz91m8pfiqppnfl09ikz-unit-dbus-broker.service.drv /nix/store/9whgkp98iacnj2y3d83a0gx5q2m1mymi-system-units.drv /nix/store/v77js6ml3a6aj2b23ry23vpgy0raanz0-unit-dbus-broker.service.drv /nix/store/ws5fs11b986v2khcb7dz83i03za73f59-user-units.drv /nix/store/d3h513s5y6a9p92iqn7kkw794yqhwpss-etc.drv /nix/store/ljg78jrwadsnvpl6ywkzj2c5qz5pa8ah-activate.drv /nix/store/mvl2d18hzdqz97c429dznd212kycqb4x-nixos-system-client-test.drv /nix/store/gxki7k2291h739rqw5syvd1gwx39hc9z-closure-info.drv /nix/store/zi4idl3nraaix4kkdpjmqrq6z5iyvp5d-closure-info.drv /nix/store/fk812dwq7rhy27q1d58k6w6p436pgfi2-nixos-test-driver-certificates.drv /nix/store/83lm0ik1xk3kqr8hbdkjdjnfivzc1d5i-container-test-run-certificates.drv building '/nix/store/mpr5qx66phn2fl8ifvi6yklk3rbpfjb5-system-path.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/mpr5qx66phn2fl8ifvi6yklk3rbpfjb5-system-path.drv' system-path> structuredAttrs is enabled system-path> created 1811 symlinks in user environment building '/nix/store/pr1igd33f2llbj0dncg7vbfzbgrjanq0-system-path.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/ycsj7a1c37qlq16jp799vw4dy1g4c8q7-system-path.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/b8vzvxc3ryvkij80rbcmhnqlsz7xb1zc-dbus-1.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/pr1igd33f2llbj0dncg7vbfzbgrjanq0-system-path.drv' system-path> structuredAttrs is enabled system-path> created 1811 symlinks in user environment warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/b8vzvxc3ryvkij80rbcmhnqlsz7xb1zc-dbus-1.drv' building '/nix/store/ycsj7a1c37qlq16jp799vw4dy1g4c8q7-system-path.drv' system-path> structuredAttrs is enabled system-path> created 1811 symlinks in user environment building '/nix/store/4w0cxjgh5f60hzrbpq2rq5wmrffh1fyq-dbus-1.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/d8k44svkrbv680fx9a14wzyblqga4ba6-dbus-1.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/4w0cxjgh5f60hzrbpq2rq5wmrffh1fyq-dbus-1.drv' building '/nix/store/vkl4d3xjlshnqvbw2cn8j5556p4vgpfc-X-Restart-Triggers-dbus-broker.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/d8k44svkrbv680fx9a14wzyblqga4ba6-dbus-1.drv' building '/nix/store/2wd56sfqilqrg3l4wiw08ibcdp93nqrm-X-Restart-Triggers-dbus-broker.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/vkl4d3xjlshnqvbw2cn8j5556p4vgpfc-X-Restart-Triggers-dbus-broker.drv' building '/nix/store/2wd56sfqilqrg3l4wiw08ibcdp93nqrm-X-Restart-Triggers-dbus-broker.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/8g8gmn8irgr2csmn8cggm468sfrl61id-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/jmw8r1z8aw1bwdh9ms147dlkcz1macrx-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/i0hpw4a5i4v0cz91m8pfiqppnfl09ikz-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/v77js6ml3a6aj2b23ry23vpgy0raanz0-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/i0hpw4a5i4v0cz91m8pfiqppnfl09ikz-unit-dbus-broker.service.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/8g8gmn8irgr2csmn8cggm468sfrl61id-unit-dbus-broker.service.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/wf59z4as9x38fs1lmg3n0vy9y6xxbldq-user-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/2rp66dwx4nilw0zvz7s0qsqr8qn60329-X-Restart-Triggers-dbus-broker.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/9whgkp98iacnj2y3d83a0gx5q2m1mymi-system-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/jmw8r1z8aw1bwdh9ms147dlkcz1macrx-unit-dbus-broker.service.drv' building '/nix/store/v77js6ml3a6aj2b23ry23vpgy0raanz0-unit-dbus-broker.service.drv' building '/nix/store/ws5fs11b986v2khcb7dz83i03za73f59-user-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/qrpis5aml3gr4q8li1zbnn830q666jna-system-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/wf59z4as9x38fs1lmg3n0vy9y6xxbldq-user-units.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/2rp66dwx4nilw0zvz7s0qsqr8qn60329-X-Restart-Triggers-dbus-broker.drv' building '/nix/store/83g2ip1ij4ahdixx7m8nxnam8d3xg3vf-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/qh4g5ndf49ai2niq2pc6zqcw56qd7j8g-unit-dbus-broker.service.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/9whgkp98iacnj2y3d83a0gx5q2m1mymi-system-units.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/ws5fs11b986v2khcb7dz83i03za73f59-user-units.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/qrpis5aml3gr4q8li1zbnn830q666jna-system-units.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/d3h513s5y6a9p92iqn7kkw794yqhwpss-etc.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/83g2ip1ij4ahdixx7m8nxnam8d3xg3vf-unit-dbus-broker.service.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/qh4g5ndf49ai2niq2pc6zqcw56qd7j8g-unit-dbus-broker.service.drv' building '/nix/store/07bd2lqmzy4f0azq3q1slsrn7134764g-user-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/hx2zcbisbxxcbj25hr3qq33ilsln62z2-etc.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/6amd6d2phpdvphvmwfjali5lp5y2a341-system-units.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/d3h513s5y6a9p92iqn7kkw794yqhwpss-etc.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/6amd6d2phpdvphvmwfjali5lp5y2a341-system-units.drv' building '/nix/store/hx2zcbisbxxcbj25hr3qq33ilsln62z2-etc.drv' building '/nix/store/07bd2lqmzy4f0azq3q1slsrn7134764g-user-units.drv' building '/nix/store/ljg78jrwadsnvpl6ywkzj2c5qz5pa8ah-activate.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/jgdh5rndiciappcaj71frsmbbf0c6yq4-etc.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/gccskziir2kn0zb84nciph0k6y1ppxll-activate.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/jgdh5rndiciappcaj71frsmbbf0c6yq4-etc.drv' building '/nix/store/ljg78jrwadsnvpl6ywkzj2c5qz5pa8ah-activate.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/gccskziir2kn0zb84nciph0k6y1ppxll-activate.drv' building '/nix/store/pk36l246xlcqfry80hcpp2567h9wn35c-nixos-system-ca-test.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/mvl2d18hzdqz97c429dznd212kycqb4x-nixos-system-client-test.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/80zxg9di916n6qsr0cz88r1kzz57lnwn-activate.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/80zxg9di916n6qsr0cz88r1kzz57lnwn-activate.drv' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/mvl2d18hzdqz97c429dznd212kycqb4x-nixos-system-client-test.drv' nixos-system-client-test> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/pk36l246xlcqfry80hcpp2567h9wn35c-nixos-system-ca-test.drv' nixos-system-ca-test> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/b4gyc9r2c0rkij0w8npdvsz2y16cfp9a-nixos-system-server-test.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/b4gyc9r2c0rkij0w8npdvsz2y16cfp9a-nixos-system-server-test.drv' nixos-system-server-test> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/zi4idl3nraaix4kkdpjmqrq6z5iyvp5d-closure-info.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/g5rzvx7761p6626yn54hxj4501nr1h64-closure-info.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/gxki7k2291h739rqw5syvd1gwx39hc9z-closure-info.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/g5rzvx7761p6626yn54hxj4501nr1h64-closure-info.drv' closure-info> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/zi4idl3nraaix4kkdpjmqrq6z5iyvp5d-closure-info.drv' closure-info> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/gxki7k2291h739rqw5syvd1gwx39hc9z-closure-info.drv' closure-info> structuredAttrs is enabled warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/fk812dwq7rhy27q1d58k6w6p436pgfi2-nixos-test-driver-certificates.drv' on 'ssh-ng://builder@build01.clan.lol' building '/nix/store/fk812dwq7rhy27q1d58k6w6p436pgfi2-nixos-test-driver-certificates.drv' nixos-test-driver-certificates> Running type check (enable/disable: config.skipTypeCheck) nixos-test-driver-certificates> See https://nixos.org/manual/nixos/stable/#test-opt-skipTypeCheck nixos-test-driver-certificates> Success: no issues found in 1 source file warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/83lm0ik1xk3kqr8hbdkjdjnfivzc1d5i-container-test-run-certificates.drv' on 'ssh-ng://builder@build01.clan.lol' warning: SQLite database '/nix/var/nix/db/db.sqlite' is busy building '/nix/store/83lm0ik1xk3kqr8hbdkjdjnfivzc1d5i-container-test-run-certificates.drv' container-test-run-certificates> additionally exposed symbols: container-test-run-certificates> ca, client, server, container-test-run-certificates> start_all, machines, driver, Machine, wait_for_signal container-test-run-certificates> Starting ca container-test-run-certificates> Starting client container-test-run-certificates> Starting server container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> <<< NixOS Stage 2 >>> container-test-run-certificates> container-test-run-certificates> booting system configuration /nix/store/qz8dvm23pih55cfc29yc13d0cznvm3pl-nixos-system-ca-test container-test-run-certificates> running activation script... container-test-run-certificates> setting up /etc... container-test-run-certificates> 2: host0@if3: mtu 1500 qdisc noop state DOWN mode DEFAULT group default qlen 1000 container-test-run-certificates> link/ether 42:06:76:42:a9:8d brd ff:ff:ff:ff:ff:ff link-netnsid 0 container-test-run-certificates> setting up age secrets... container-test-run-certificates> starting systemd... container-test-run-certificates> systemd 260.2 running in system mode (+PAM +AUDIT -SELINUX +APPARMOR +IMA +IPE +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL +ACL +BLKID +CURL +ELFUTILS +FIDO2 +IDN2 +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 +PWQUALITY +P11KIT +QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD +BPF_FRAMEWORK -BTF -XKBCOMMON +UTMP +LIBARCHIVE) container-test-run-certificates> Detected virtualization systemd-nspawn. container-test-run-certificates> Detected architecture arm64. container-test-run-certificates> Detected first boot. container-test-run-certificates> Initializing machine ID from container UUID. container-test-run-certificates> Applying preset policy. container-test-run-certificates> Populated /etc with preset unit settings. container-test-run-certificates> Queued start job for default target Multi-User System. container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> <<< Welcome to NixOS test (aarch64) - console >>> container-test-run-certificates> + systemd-run /bin/sh -c '/nix/store/hlc4nqfx0l06f6p7z7lmd77qcwszi7wc-coreutils-9.11/bin/sleep 999999999 && echo a740d561-3c2c-4837-a1f9-52964748732b' container-test-run-certificates> Running as unit: run-p461-i113118664.service; invocation ID: 21a9a85af19a41889bc5d5472e9bea9b container-test-run-certificates> To attach to container ca run on the same machine that runs the test: container-test-run-certificates> sudo nsenter --user --target $(\pgrep -f '^/bin/sh.*a740d561-3c2c-4837-a1f9-52964748732b') --mount --uts --ipc --net --pid --cgroup /bin/sh -c bash container-test-run-certificates> container-test-run-certificates> To inject external network and continue test, run: container-test-run-certificates> sudo /nix/store/d6kq2phq0zy5invmkfgg8h35zxaf13s9-python3-3.13.15/bin/python3.13 /nix/store/f4nvkcws5x7zcpbn7zsscrdviq2jxrpi-test-driver-0.0.1/lib/python3.13/site-packages/test_driver/inject_network.py a740d561-3c2c-4837-a1f9-52964748732b container-test-run-certificates> container-test-run-certificates> <<< NixOS Stage 2 >>> container-test-run-certificates> container-test-run-certificates> booting system configuration /nix/store/fnv8i0lxqcbqy88f542ixg9g6fhx22z5-nixos-system-client-test container-test-run-certificates> running activation script... container-test-run-certificates> setting up /etc... container-test-run-certificates> 2: host0@if4: mtu 1500 qdisc noop state DOWN mode DEFAULT group default qlen 1000 container-test-run-certificates> link/ether 2a:42:35:28:b1:2f brd ff:ff:ff:ff:ff:ff link-netnsid 0 container-test-run-certificates> setting up age secrets... container-test-run-certificates> starting systemd... container-test-run-certificates> systemd 260.2 running in system mode (+PAM +AUDIT -SELINUX +APPARMOR +IMA +IPE +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL +ACL +BLKID +CURL +ELFUTILS +FIDO2 +IDN2 +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 +PWQUALITY +P11KIT +QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD +BPF_FRAMEWORK -BTF -XKBCOMMON +UTMP +LIBARCHIVE) container-test-run-certificates> Detected virtualization systemd-nspawn. container-test-run-certificates> Detected architecture arm64. container-test-run-certificates> Detected first boot. container-test-run-certificates> Initializing machine ID from container UUID. container-test-run-certificates> Applying preset policy. container-test-run-certificates> Populated /etc with preset unit settings. container-test-run-certificates> Queued start job for default target Multi-User System. container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> <<< Welcome to NixOS test (aarch64) - console >>> container-test-run-certificates> + systemd-run /bin/sh -c '/nix/store/hlc4nqfx0l06f6p7z7lmd77qcwszi7wc-coreutils-9.11/bin/sleep 999999999 && echo 3eef8384-20eb-43d8-93f6-4ae5d3bae9a5' container-test-run-certificates> Running as unit: run-p304-i113118676.service; invocation ID: 0b4d8dcad91d42eabc7a73da2cd40c8d container-test-run-certificates> To attach to container client run on the same machine that runs the test: container-test-run-certificates> sudo nsenter --user --target $(\pgrep -f '^/bin/sh.*3eef8384-20eb-43d8-93f6-4ae5d3bae9a5') --mount --uts --ipc --net --pid --cgroup /bin/sh -c bash container-test-run-certificates> container-test-run-certificates> To inject external network and continue test, run: container-test-run-certificates> sudo /nix/store/d6kq2phq0zy5invmkfgg8h35zxaf13s9-python3-3.13.15/bin/python3.13 /nix/store/f4nvkcws5x7zcpbn7zsscrdviq2jxrpi-test-driver-0.0.1/lib/python3.13/site-packages/test_driver/inject_network.py 3eef8384-20eb-43d8-93f6-4ae5d3bae9a5 container-test-run-certificates> container-test-run-certificates> <<< NixOS Stage 2 >>> container-test-run-certificates> container-test-run-certificates> booting system configuration /nix/store/4c67nw500gx859jvl6lb1lcrbpjkd9qm-nixos-system-server-test container-test-run-certificates> running activation script... container-test-run-certificates> setting up /etc... container-test-run-certificates> 2: host0@if5: mtu 1500 qdisc noop state DOWN mode DEFAULT group default qlen 1000 container-test-run-certificates> link/ether be:aa:dd:39:86:e7 brd ff:ff:ff:ff:ff:ff link-netnsid 0 container-test-run-certificates> setting up age secrets... container-test-run-certificates> starting systemd... container-test-run-certificates> systemd 260.2 running in system mode (+PAM +AUDIT -SELINUX +APPARMOR +IMA +IPE +SMACK +SECCOMP +GCRYPT -GNUTLS +OPENSSL +ACL +BLKID +CURL +ELFUTILS +FIDO2 +IDN2 +KMOD +LIBCRYPTSETUP +LIBCRYPTSETUP_PLUGINS +LIBFDISK +PCRE2 +PWQUALITY +P11KIT +QRENCODE +TPM2 +BZIP2 +LZ4 +XZ +ZLIB +ZSTD +BPF_FRAMEWORK -BTF -XKBCOMMON +UTMP +LIBARCHIVE) container-test-run-certificates> Detected virtualization systemd-nspawn. container-test-run-certificates> Detected architecture arm64. container-test-run-certificates> Detected first boot. container-test-run-certificates> Initializing machine ID from container UUID. container-test-run-certificates> Applying preset policy. container-test-run-certificates> Populated /etc with preset unit settings. container-test-run-certificates> Queued start job for default target Multi-User System. container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> <<< Welcome to NixOS test (aarch64) - console >>> container-test-run-certificates> + systemd-run /bin/sh -c '/nix/store/hlc4nqfx0l06f6p7z7lmd77qcwszi7wc-coreutils-9.11/bin/sleep 999999999 && echo 05185165-9d8f-4349-b6f3-e0daea1f28cd' container-test-run-certificates> Running as unit: run-p395-i113118681.service; invocation ID: 06c82a081077493fa75eb4d585ab27ed container-test-run-certificates> To attach to container server run on the same machine that runs the test: container-test-run-certificates> sudo nsenter --user --target $(\pgrep -f '^/bin/sh.*05185165-9d8f-4349-b6f3-e0daea1f28cd') --mount --uts --ipc --net --pid --cgroup /bin/sh -c bash container-test-run-certificates> container-test-run-certificates> To inject external network and continue test, run: container-test-run-certificates> sudo /nix/store/d6kq2phq0zy5invmkfgg8h35zxaf13s9-python3-3.13.15/bin/python3.13 /nix/store/f4nvkcws5x7zcpbn7zsscrdviq2jxrpi-test-driver-0.0.1/lib/python3.13/site-packages/test_driver/inject_network.py 05185165-9d8f-4349-b6f3-e0daea1f28cd container-test-run-certificates> + systemctl restart acme-order-renew-ca.foo.service container-test-run-certificates> + systemctl restart acme-test.foo.service container-test-run-certificates> client: waiting for success: curl -v https://test.foo container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [1011 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [111 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 31 00:10:24 2026 GMT container-test-run-certificates> * expire date: Sep 30 00:10:24 2028 GMT container-test-run-certificates> * issuer: CN=minica root ca 447f2f container-test-run-certificates> * Certificate level 0: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * Certificate level 1: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 13 container-test-run-certificates> * SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> * closing connection #0 container-test-run-certificates> curl: (60) SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> More details here: https://curl.se/docs/sslcerts.html container-test-run-certificates> container-test-run-certificates> curl failed to verify the legitimacy of the server and therefore could not container-test-run-certificates> establish a secure connection to it. To learn more about this situation and container-test-run-certificates> how to fix it, please visit the webpage mentioned above. container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [1011 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [112 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 31 00:10:24 2026 GMT container-test-run-certificates> * expire date: Sep 30 00:10:24 2028 GMT container-test-run-certificates> * issuer: CN=minica root ca 447f2f container-test-run-certificates> * Certificate level 0: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * Certificate level 1: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 13 container-test-run-certificates> * SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> * closing connection #0 container-test-run-certificates> curl: (60) SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> More details here: https://curl.se/docs/sslcerts.html container-test-run-certificates> container-test-run-certificates> curl failed to verify the legitimacy of the server and therefore could not container-test-run-certificates> establish a secure connection to it. To learn more about this situation and container-test-run-certificates> how to fix it, please visit the webpage mentioned above. container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [1011 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [110 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 31 00:10:24 2026 GMT container-test-run-certificates> * expire date: Sep 30 00:10:24 2028 GMT container-test-run-certificates> * issuer: CN=minica root ca 447f2f container-test-run-certificates> * Certificate level 0: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * Certificate level 1: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 13 container-test-run-certificates> * SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> * closing connection #0 container-test-run-certificates> curl: (60) SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> More details here: https://curl.se/docs/sslcerts.html container-test-run-certificates> container-test-run-certificates> curl failed to verify the legitimacy of the server and therefore could not container-test-run-certificates> establish a secure connection to it. To learn more about this situation and container-test-run-certificates> how to fix it, please visit the webpage mentioned above. container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [1011 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [111 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 31 00:10:24 2026 GMT container-test-run-certificates> * expire date: Sep 30 00:10:24 2028 GMT container-test-run-certificates> * issuer: CN=minica root ca 447f2f container-test-run-certificates> * Certificate level 0: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * Certificate level 1: Public key type EC/secp384r1 (384/192 Bits/secBits), signed using ecdsa-with-SHA384 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 13 container-test-run-certificates> * SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> * closing connection #0 container-test-run-certificates> curl: (60) SSL certificate OpenSSL verify result: self-signed certificate in certificate chain (19) container-test-run-certificates> More details here: https://curl.se/docs/sslcerts.html container-test-run-certificates> container-test-run-certificates> curl failed to verify the legitimacy of the server and therefore could not container-test-run-certificates> establish a secure connection to it. To learn more about this situation and container-test-run-certificates> how to fix it, please visit the webpage mentioned above. container-test-run-certificates> + curl -v https://test.foo container-test-run-certificates> * Host test.foo:443 was resolved. container-test-run-certificates> * IPv6: (none) container-test-run-certificates> * IPv4: 192.168.1.3 container-test-run-certificates> * Trying 192.168.1.3:443... container-test-run-certificates> * ALPN: curl offers h2,http/1.1 container-test-run-certificates> } [5 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Client hello (1): container-test-run-certificates> } [1552 bytes data] container-test-run-certificates> * SSL Trust Anchors: container-test-run-certificates> * OpenSSL default paths (fallback) container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Server hello (2): container-test-run-certificates> { [1210 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS change cipher, Change cipher spec (1): container-test-run-certificates> { [1 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8): container-test-run-certificates> { [19 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Certificate (11): container-test-run-certificates> { [930 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, CERT verify (15): container-test-run-certificates> { [80 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Finished (20): container-test-run-certificates> { [52 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1): container-test-run-certificates> } [1 bytes data] container-test-run-certificates> * TLSv1.3 (OUT), TLS handshake, Finished (20): container-test-run-certificates> } [52 bytes data] container-test-run-certificates> * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 / X25519MLKEM768 / id-ecPublicKey container-test-run-certificates> * ALPN: server accepted h2 container-test-run-certificates> * Server certificate: container-test-run-certificates> * subject: CN=test.foo container-test-run-certificates> * start date: Aug 31 00:09:37 2026 GMT container-test-run-certificates> * expire date: Nov 29 00:10:37 2026 GMT container-test-run-certificates> * issuer: CN=Clan Intermediate CA container-test-run-certificates> * Certificate level 0: Public key type EC/prime256v1 (256/128 Bits/secBits), signed using ecdsa-with-SHA256 container-test-run-certificates> * Certificate level 1: Public key type EC/prime256v1 (256/128 Bits/secBits), signed using ecdsa-with-SHA256 container-test-run-certificates> * Certificate level 2: Public key type EC/prime256v1 (256/128 Bits/secBits), signed using ecdsa-with-SHA256 container-test-run-certificates> * subjectAltName: "test.foo" matches cert's "test.foo" container-test-run-certificates> * OpenSSL verify result: 0 container-test-run-certificates> * SSL certificate verified via OpenSSL. container-test-run-certificates> * Established connection to test.foo (192.168.1.3 port 443) from 192.168.1.2 port 55028 container-test-run-certificates> % Total % Received % Xferd Average Speed Time Time Time Current container-test-run-certificates> Dload Upload Total Spent Left Speed container-test-run-certificates> 0 0 0 0 0 0 0 0 0* using HTTP/2 container-test-run-certificates> * [HTTP/2] [1] OPENED stream for https://test.foo/ container-test-run-certificates> * [HTTP/2] [1] [:method: GET] container-test-run-certificates> * [HTTP/2] [1] [:scheme: https] container-test-run-certificates> * [HTTP/2] [1] [:authority: test.foo] container-test-run-certificates> * [HTTP/2] [1] [:path: /] container-test-run-certificates> * [HTTP/2] [1] [user-agent: curl/8.21.0] container-test-run-certificates> * [HTTP/2] [1] [accept: */*] container-test-run-certificates> } [5 bytes data] container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> * Request completely sent off container-test-run-certificates> { [5 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Newsession Ticket (4): container-test-run-certificates> { [265 bytes data] container-test-run-certificates> * TLSv1.3 (IN), TLS handshake, Newsession Ticket (4): container-test-run-certificates> { [265 bytes data] container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> { [5 bytes data] container-test-run-certificates> 100 20 100 20 0 0 689 0 0 container-test-run-certificates> * Connection #0 to host test.foo:443 left intact container-test-run-certificates> (finished: waiting for success: curl -v https://test.foo, in 4.23 seconds) container-test-run-certificates> + openssl s_client -connect test.foo:443 -servername test.foo container-test-run-certificates> + openssl x509 -text -noout container-test-run-certificates> Certificate: container-test-run-certificates> Data: container-test-run-certificates> Version: 3 (0x2) container-test-run-certificates> Serial Number: container-test-run-certificates> 19:6b:91:c9:9e:0a:8a:e0:ca:88:9f:ca:92:48:31:5f container-test-run-certificates> Signature Algorithm: ecdsa-with-SHA256 container-test-run-certificates> Issuer: CN=Clan Intermediate CA container-test-run-certificates> Validity container-test-run-certificates> Not Before: Aug 31 00:09:37 2026 GMT container-test-run-certificates> Not After : Nov 29 00:10:37 2026 GMT container-test-run-certificates> Subject: CN=test.foo container-test-run-certificates> Subject Public Key Info: container-test-run-certificates> Public Key Algorithm: id-ecPublicKey container-test-run-certificates> Public-Key: (256 bit) container-test-run-certificates> pub: container-test-run-certificates> 04:74:55:79:e8:1c:ca:96:fc:e9:17:18:e6:51:1b: container-test-run-certificates> aa:85:4c:b3:d8:c7:a5:ce:4c:68:07:7c:da:fd:4c: container-test-run-certificates> 6a:9c:e3:4f:a7:51:95:a5:b0:0b:1e:9e:42:0f:65: container-test-run-certificates> 44:ab:5d:f6:f5:6c:bc:ec:22:66:7d:e5:05:ea:8a: container-test-run-certificates> 7a:44:65:a2:09 container-test-run-certificates> ASN1 OID: prime256v1 container-test-run-certificates> NIST CURVE: P-256 container-test-run-certificates> X509v3 extensions: container-test-run-certificates> X509v3 Key Usage: critical container-test-run-certificates> Digital Signature container-test-run-certificates> X509v3 Extended Key Usage: container-test-run-certificates> TLS Web Server Authentication, TLS Web Client Authentication container-test-run-certificates> X509v3 Subject Key Identifier: container-test-run-certificates> 33:5B:5A:7F:28:50:BB:2B:F3:CA:24:38:F7:EB:3C:2C:2E:B7:C9:84 container-test-run-certificates> X509v3 Authority Key Identifier: container-test-run-certificates> 94:F6:ED:DB:7E:35:E4:5B:DA:2B:DD:8A:F6:33:A4:D5:E4:9F:47:FB container-test-run-certificates> X509v3 Subject Alternative Name: container-test-run-certificates> DNS:test.foo container-test-run-certificates> 1.3.6.1.4.1.37476.9000.64.1: container-test-run-certificates> 0......acme.. container-test-run-certificates> Signature Algorithm: ecdsa-with-SHA256 container-test-run-certificates> Signature Value: container-test-run-certificates> 30:45:02:21:00:90:ff:9d:e0:99:f4:e3:23:5f:1a:b5:2f:58: container-test-run-certificates> f0:69:f9:c1:4b:bf:9f:ac:93:91:00:ee:d1:ee:4f:34:92:dd: container-test-run-certificates> 9b:02:20:25:9a:90:63:3a:be:d9:87:ee:33:e4:29:33:f9:5e: container-test-run-certificates> 34:08:9f:fd:f1:fb:05:3e:3b:15:1a:4c:7c:9b:26:5e:4b container-test-run-certificates> container-test-run-certificates> container-test-run-certificates> post-build step Upload to niks3: ok time=2026-08-31T00:10:42.352Z level=INFO msg="Uploading 0 paths to niks3.clan.lol (1 already cached)" time=2026-08-31T00:10:42.627Z level=INFO msg="Uploading 1 narinfos" time=2026-08-31T00:10:42.829Z level=INFO msg="Upload complete. (525ms)"