Oct 16 13:50:49 prd-ubuntu1804-docker-4c-4g-7833 passwd[949]: password for 'ubuntu' changed by 'root' Oct 16 13:50:49 prd-ubuntu1804-docker-4c-4g-7833 systemd-logind[1048]: Watching system buttons on /dev/input/event0 (Power Button) Oct 16 13:50:49 prd-ubuntu1804-docker-4c-4g-7833 systemd-logind[1048]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Oct 16 13:50:49 prd-ubuntu1804-docker-4c-4g-7833 systemd-logind[1048]: New seat seat0. Oct 16 13:50:49 prd-ubuntu1804-docker-4c-4g-7833 sshd[1278]: Server listening on 0.0.0.0 port 22. Oct 16 13:50:49 prd-ubuntu1804-docker-4c-4g-7833 sshd[1278]: Server listening on :: port 22. Oct 16 13:50:53 prd-ubuntu1804-docker-4c-4g-7833 sshd[1507]: Did not receive identification string from 10.32.4.5 port 59578 Oct 16 13:51:01 prd-ubuntu1804-docker-4c-4g-7833 sshd[1557]: Invalid user jenkins from 10.32.4.5 port 59582 Oct 16 13:51:01 prd-ubuntu1804-docker-4c-4g-7833 sshd[1557]: Received disconnect from 10.32.4.5 port 59582:11: Closed due to user request. [preauth] Oct 16 13:51:01 prd-ubuntu1804-docker-4c-4g-7833 sshd[1557]: Disconnected from invalid user jenkins 10.32.4.5 port 59582 [preauth] Oct 16 13:51:01 prd-ubuntu1804-docker-4c-4g-7833 CRON[1561]: pam_unix(cron:session): session opened for user root by (uid=0) Oct 16 13:51:01 prd-ubuntu1804-docker-4c-4g-7833 CRON[1561]: pam_unix(cron:session): session closed for user root Oct 16 13:51:03 prd-ubuntu1804-docker-4c-4g-7833 sshd[1569]: Invalid user jenkins from 10.32.4.5 port 59584 Oct 16 13:51:03 prd-ubuntu1804-docker-4c-4g-7833 sshd[1569]: Received disconnect from 10.32.4.5 port 59584:11: Closed due to user request. [preauth] Oct 16 13:51:03 prd-ubuntu1804-docker-4c-4g-7833 sshd[1569]: Disconnected from invalid user jenkins 10.32.4.5 port 59584 [preauth] Oct 16 13:51:05 prd-ubuntu1804-docker-4c-4g-7833 sshd[1571]: Invalid user jenkins from 10.32.4.5 port 59586 Oct 16 13:51:05 prd-ubuntu1804-docker-4c-4g-7833 sshd[1571]: Received disconnect from 10.32.4.5 port 59586:11: Closed due to user request. [preauth] Oct 16 13:51:05 prd-ubuntu1804-docker-4c-4g-7833 sshd[1571]: Disconnected from invalid user jenkins 10.32.4.5 port 59586 [preauth] Oct 16 13:51:07 prd-ubuntu1804-docker-4c-4g-7833 sshd[1573]: Invalid user jenkins from 10.32.4.5 port 59588 Oct 16 13:51:07 prd-ubuntu1804-docker-4c-4g-7833 sshd[1573]: Received disconnect from 10.32.4.5 port 59588:11: Closed due to user request. [preauth] Oct 16 13:51:07 prd-ubuntu1804-docker-4c-4g-7833 sshd[1573]: Disconnected from invalid user jenkins 10.32.4.5 port 59588 [preauth] Oct 16 13:51:09 prd-ubuntu1804-docker-4c-4g-7833 sshd[1575]: Invalid user jenkins from 10.32.4.5 port 59592 Oct 16 13:51:09 prd-ubuntu1804-docker-4c-4g-7833 sshd[1575]: Received disconnect from 10.32.4.5 port 59592:11: Closed due to user request. [preauth] Oct 16 13:51:09 prd-ubuntu1804-docker-4c-4g-7833 sshd[1575]: Disconnected from invalid user jenkins 10.32.4.5 port 59592 [preauth] Oct 16 13:51:11 prd-ubuntu1804-docker-4c-4g-7833 sshd[1654]: Invalid user jenkins from 10.32.4.5 port 59594 Oct 16 13:51:11 prd-ubuntu1804-docker-4c-4g-7833 sshd[1654]: Received disconnect from 10.32.4.5 port 59594:11: Closed due to user request. [preauth] Oct 16 13:51:11 prd-ubuntu1804-docker-4c-4g-7833 sshd[1654]: Disconnected from invalid user jenkins 10.32.4.5 port 59594 [preauth] Oct 16 13:51:13 prd-ubuntu1804-docker-4c-4g-7833 sshd[1820]: Invalid user jenkins from 10.32.4.5 port 59596 Oct 16 13:51:13 prd-ubuntu1804-docker-4c-4g-7833 sshd[1820]: Received disconnect from 10.32.4.5 port 59596:11: Closed due to user request. [preauth] Oct 16 13:51:13 prd-ubuntu1804-docker-4c-4g-7833 sshd[1820]: Disconnected from invalid user jenkins 10.32.4.5 port 59596 [preauth] Oct 16 13:51:15 prd-ubuntu1804-docker-4c-4g-7833 sshd[1857]: Invalid user jenkins from 10.32.4.5 port 59604 Oct 16 13:51:15 prd-ubuntu1804-docker-4c-4g-7833 sshd[1857]: Received disconnect from 10.32.4.5 port 59604:11: Closed due to user request. [preauth] Oct 16 13:51:15 prd-ubuntu1804-docker-4c-4g-7833 sshd[1857]: Disconnected from invalid user jenkins 10.32.4.5 port 59604 [preauth] Oct 16 13:51:17 prd-ubuntu1804-docker-4c-4g-7833 useradd[1875]: new group: name=jenkins, GID=1001 Oct 16 13:51:17 prd-ubuntu1804-docker-4c-4g-7833 useradd[1875]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Oct 16 13:51:18 prd-ubuntu1804-docker-4c-4g-7833 usermod[1884]: add 'jenkins' to group 'docker' Oct 16 13:51:18 prd-ubuntu1804-docker-4c-4g-7833 usermod[1884]: add 'jenkins' to shadow group 'docker' Oct 16 13:51:18 prd-ubuntu1804-docker-4c-4g-7833 sshd[1876]: Received disconnect from 10.32.4.5 port 59606:11: Closed due to user request. [preauth] Oct 16 13:51:18 prd-ubuntu1804-docker-4c-4g-7833 sshd[1876]: Disconnected from authenticating user jenkins 10.32.4.5 port 59606 [preauth] Oct 16 13:51:20 prd-ubuntu1804-docker-4c-4g-7833 sshd[1926]: Accepted publickey for jenkins from 10.32.4.5 port 59608 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Oct 16 13:51:20 prd-ubuntu1804-docker-4c-4g-7833 sshd[1926]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Oct 16 13:51:20 prd-ubuntu1804-docker-4c-4g-7833 systemd-logind[1048]: New session 2 of user jenkins. Oct 16 13:51:20 prd-ubuntu1804-docker-4c-4g-7833 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Oct 16 13:52:01 prd-ubuntu1804-docker-4c-4g-7833 CRON[2670]: pam_unix(cron:session): session opened for user root by (uid=0) Oct 16 13:52:01 prd-ubuntu1804-docker-4c-4g-7833 CRON[2670]: pam_unix(cron:session): session closed for user root Oct 16 13:53:01 prd-ubuntu1804-docker-4c-4g-7833 CRON[3674]: pam_unix(cron:session): session opened for user root by (uid=0) Oct 16 13:53:01 prd-ubuntu1804-docker-4c-4g-7833 CRON[3674]: pam_unix(cron:session): session closed for user root Oct 16 13:53:52 prd-ubuntu1804-docker-4c-4g-7833 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/aiml-fw-awmf-tm-docker-docker-verify-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Oct 16 13:53:52 prd-ubuntu1804-docker-4c-4g-7833 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)