Sep 8 10:28:41 prd-ubuntu1804-docker-4c-4g-3159 passwd[918]: password for 'ubuntu' changed by 'root' Sep 8 10:28:41 prd-ubuntu1804-docker-4c-4g-3159 systemd-logind[955]: Watching system buttons on /dev/input/event0 (Power Button) Sep 8 10:28:41 prd-ubuntu1804-docker-4c-4g-3159 systemd-logind[955]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Sep 8 10:28:41 prd-ubuntu1804-docker-4c-4g-3159 systemd-logind[955]: New seat seat0. Sep 8 10:28:41 prd-ubuntu1804-docker-4c-4g-3159 sshd[1251]: Server listening on 0.0.0.0 port 22. Sep 8 10:28:41 prd-ubuntu1804-docker-4c-4g-3159 sshd[1251]: Server listening on :: port 22. Sep 8 10:28:47 prd-ubuntu1804-docker-4c-4g-3159 sshd[1503]: Did not receive identification string from 10.32.4.5 port 36674 Sep 8 10:28:56 prd-ubuntu1804-docker-4c-4g-3159 sshd[1525]: Invalid user jenkins from 10.32.4.5 port 36680 Sep 8 10:28:56 prd-ubuntu1804-docker-4c-4g-3159 sshd[1525]: Received disconnect from 10.32.4.5 port 36680:11: Closed due to user request. [preauth] Sep 8 10:28:56 prd-ubuntu1804-docker-4c-4g-3159 sshd[1525]: Disconnected from invalid user jenkins 10.32.4.5 port 36680 [preauth] Sep 8 10:28:58 prd-ubuntu1804-docker-4c-4g-3159 sshd[1529]: Invalid user jenkins from 10.32.4.5 port 36690 Sep 8 10:28:58 prd-ubuntu1804-docker-4c-4g-3159 sshd[1529]: Received disconnect from 10.32.4.5 port 36690:11: Closed due to user request. [preauth] Sep 8 10:28:58 prd-ubuntu1804-docker-4c-4g-3159 sshd[1529]: Disconnected from invalid user jenkins 10.32.4.5 port 36690 [preauth] Sep 8 10:29:00 prd-ubuntu1804-docker-4c-4g-3159 sshd[1531]: Invalid user jenkins from 10.32.4.5 port 36704 Sep 8 10:29:00 prd-ubuntu1804-docker-4c-4g-3159 sshd[1531]: Received disconnect from 10.32.4.5 port 36704:11: Closed due to user request. [preauth] Sep 8 10:29:00 prd-ubuntu1804-docker-4c-4g-3159 sshd[1531]: Disconnected from invalid user jenkins 10.32.4.5 port 36704 [preauth] Sep 8 10:29:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[1541]: pam_unix(cron:session): session opened for user root by (uid=0) Sep 8 10:29:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[1541]: pam_unix(cron:session): session closed for user root Sep 8 10:29:02 prd-ubuntu1804-docker-4c-4g-3159 sshd[1560]: Invalid user jenkins from 10.32.4.5 port 36708 Sep 8 10:29:02 prd-ubuntu1804-docker-4c-4g-3159 sshd[1560]: Received disconnect from 10.32.4.5 port 36708:11: Closed due to user request. [preauth] Sep 8 10:29:02 prd-ubuntu1804-docker-4c-4g-3159 sshd[1560]: Disconnected from invalid user jenkins 10.32.4.5 port 36708 [preauth] Sep 8 10:29:04 prd-ubuntu1804-docker-4c-4g-3159 sshd[1758]: Invalid user jenkins from 10.32.4.5 port 36716 Sep 8 10:29:04 prd-ubuntu1804-docker-4c-4g-3159 sshd[1758]: Received disconnect from 10.32.4.5 port 36716:11: Closed due to user request. [preauth] Sep 8 10:29:04 prd-ubuntu1804-docker-4c-4g-3159 sshd[1758]: Disconnected from invalid user jenkins 10.32.4.5 port 36716 [preauth] Sep 8 10:29:07 prd-ubuntu1804-docker-4c-4g-3159 sshd[1803]: Invalid user jenkins from 10.32.4.5 port 36722 Sep 8 10:29:07 prd-ubuntu1804-docker-4c-4g-3159 sshd[1803]: Received disconnect from 10.32.4.5 port 36722:11: Closed due to user request. [preauth] Sep 8 10:29:07 prd-ubuntu1804-docker-4c-4g-3159 sshd[1803]: Disconnected from invalid user jenkins 10.32.4.5 port 36722 [preauth] Sep 8 10:29:09 prd-ubuntu1804-docker-4c-4g-3159 sshd[1821]: Invalid user jenkins from 10.32.4.5 port 36728 Sep 8 10:29:09 prd-ubuntu1804-docker-4c-4g-3159 sshd[1821]: Received disconnect from 10.32.4.5 port 36728:11: Closed due to user request. [preauth] Sep 8 10:29:09 prd-ubuntu1804-docker-4c-4g-3159 sshd[1821]: Disconnected from invalid user jenkins 10.32.4.5 port 36728 [preauth] Sep 8 10:29:11 prd-ubuntu1804-docker-4c-4g-3159 sshd[1825]: Invalid user jenkins from 10.32.4.5 port 36734 Sep 8 10:29:11 prd-ubuntu1804-docker-4c-4g-3159 sshd[1825]: Received disconnect from 10.32.4.5 port 36734:11: Closed due to user request. [preauth] Sep 8 10:29:11 prd-ubuntu1804-docker-4c-4g-3159 sshd[1825]: Disconnected from invalid user jenkins 10.32.4.5 port 36734 [preauth] Sep 8 10:29:12 prd-ubuntu1804-docker-4c-4g-3159 useradd[1850]: new group: name=jenkins, GID=1001 Sep 8 10:29:12 prd-ubuntu1804-docker-4c-4g-3159 useradd[1850]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Sep 8 10:29:12 prd-ubuntu1804-docker-4c-4g-3159 usermod[1857]: add 'jenkins' to group 'docker' Sep 8 10:29:12 prd-ubuntu1804-docker-4c-4g-3159 usermod[1857]: add 'jenkins' to shadow group 'docker' Sep 8 10:29:13 prd-ubuntu1804-docker-4c-4g-3159 sshd[1908]: Accepted publickey for jenkins from 10.32.4.5 port 36740 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Sep 8 10:29:13 prd-ubuntu1804-docker-4c-4g-3159 sshd[1908]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Sep 8 10:29:13 prd-ubuntu1804-docker-4c-4g-3159 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Sep 8 10:29:13 prd-ubuntu1804-docker-4c-4g-3159 systemd-logind[955]: New session 2 of user jenkins. Sep 8 10:30:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[2457]: pam_unix(cron:session): session opened for user root by (uid=0) Sep 8 10:30:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[2457]: pam_unix(cron:session): session closed for user root Sep 8 10:31:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[2498]: pam_unix(cron:session): session opened for user root by (uid=0) Sep 8 10:31:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[2498]: pam_unix(cron:session): session closed for user root Sep 8 10:32:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[3604]: pam_unix(cron:session): session opened for user root by (uid=0) Sep 8 10:32:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[3604]: pam_unix(cron:session): session closed for user root Sep 8 10:33:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[3989]: pam_unix(cron:session): session opened for user root by (uid=0) Sep 8 10:33:01 prd-ubuntu1804-docker-4c-4g-3159 CRON[3989]: pam_unix(cron:session): session closed for user root Sep 8 10:33:28 prd-ubuntu1804-docker-4c-4g-3159 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/aiml-fw-awmf-tm-docker-docker-verify-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Sep 8 10:33:28 prd-ubuntu1804-docker-4c-4g-3159 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)