Dec 28 10:04:54 prd-ubuntu1804-docker-4c-4g-1902 passwd[938]: password for 'ubuntu' changed by 'root' Dec 28 10:04:54 prd-ubuntu1804-docker-4c-4g-1902 systemd-logind[1045]: Watching system buttons on /dev/input/event0 (Power Button) Dec 28 10:04:54 prd-ubuntu1804-docker-4c-4g-1902 systemd-logind[1045]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Dec 28 10:04:54 prd-ubuntu1804-docker-4c-4g-1902 systemd-logind[1045]: New seat seat0. Dec 28 10:04:54 prd-ubuntu1804-docker-4c-4g-1902 sshd[1204]: Server listening on 0.0.0.0 port 22. Dec 28 10:04:54 prd-ubuntu1804-docker-4c-4g-1902 sshd[1204]: Server listening on :: port 22. Dec 28 10:04:55 prd-ubuntu1804-docker-4c-4g-1902 sshd[1358]: Did not receive identification string from 10.32.4.5 port 39964 Dec 28 10:05:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[1500]: pam_unix(cron:session): session opened for user root by (uid=0) Dec 28 10:05:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[1500]: pam_unix(cron:session): session closed for user root Dec 28 10:05:02 prd-ubuntu1804-docker-4c-4g-1902 sshd[1512]: Invalid user jenkins from 10.32.4.5 port 39978 Dec 28 10:05:02 prd-ubuntu1804-docker-4c-4g-1902 sshd[1512]: Received disconnect from 10.32.4.5 port 39978:11: Closed due to user request. [preauth] Dec 28 10:05:02 prd-ubuntu1804-docker-4c-4g-1902 sshd[1512]: Disconnected from invalid user jenkins 10.32.4.5 port 39978 [preauth] Dec 28 10:05:04 prd-ubuntu1804-docker-4c-4g-1902 sshd[1516]: Invalid user jenkins from 10.32.4.5 port 39988 Dec 28 10:05:04 prd-ubuntu1804-docker-4c-4g-1902 sshd[1516]: Received disconnect from 10.32.4.5 port 39988:11: Closed due to user request. [preauth] Dec 28 10:05:04 prd-ubuntu1804-docker-4c-4g-1902 sshd[1516]: Disconnected from invalid user jenkins 10.32.4.5 port 39988 [preauth] Dec 28 10:05:06 prd-ubuntu1804-docker-4c-4g-1902 sshd[1518]: Invalid user jenkins from 10.32.4.5 port 39994 Dec 28 10:05:06 prd-ubuntu1804-docker-4c-4g-1902 sshd[1518]: Received disconnect from 10.32.4.5 port 39994:11: Closed due to user request. [preauth] Dec 28 10:05:06 prd-ubuntu1804-docker-4c-4g-1902 sshd[1518]: Disconnected from invalid user jenkins 10.32.4.5 port 39994 [preauth] Dec 28 10:05:08 prd-ubuntu1804-docker-4c-4g-1902 sshd[1520]: Invalid user jenkins from 10.32.4.5 port 40004 Dec 28 10:05:08 prd-ubuntu1804-docker-4c-4g-1902 sshd[1520]: Received disconnect from 10.32.4.5 port 40004:11: Closed due to user request. [preauth] Dec 28 10:05:08 prd-ubuntu1804-docker-4c-4g-1902 sshd[1520]: Disconnected from invalid user jenkins 10.32.4.5 port 40004 [preauth] Dec 28 10:05:10 prd-ubuntu1804-docker-4c-4g-1902 sshd[1522]: Invalid user jenkins from 10.32.4.5 port 40008 Dec 28 10:05:10 prd-ubuntu1804-docker-4c-4g-1902 sshd[1522]: Received disconnect from 10.32.4.5 port 40008:11: Closed due to user request. [preauth] Dec 28 10:05:10 prd-ubuntu1804-docker-4c-4g-1902 sshd[1522]: Disconnected from invalid user jenkins 10.32.4.5 port 40008 [preauth] Dec 28 10:05:12 prd-ubuntu1804-docker-4c-4g-1902 sshd[1524]: Invalid user jenkins from 10.32.4.5 port 40014 Dec 28 10:05:12 prd-ubuntu1804-docker-4c-4g-1902 sshd[1524]: Received disconnect from 10.32.4.5 port 40014:11: Closed due to user request. [preauth] Dec 28 10:05:12 prd-ubuntu1804-docker-4c-4g-1902 sshd[1524]: Disconnected from invalid user jenkins 10.32.4.5 port 40014 [preauth] Dec 28 10:05:14 prd-ubuntu1804-docker-4c-4g-1902 sshd[1526]: Invalid user jenkins from 10.32.4.5 port 40020 Dec 28 10:05:15 prd-ubuntu1804-docker-4c-4g-1902 sshd[1526]: Received disconnect from 10.32.4.5 port 40020:11: Closed due to user request. [preauth] Dec 28 10:05:15 prd-ubuntu1804-docker-4c-4g-1902 sshd[1526]: Disconnected from invalid user jenkins 10.32.4.5 port 40020 [preauth] Dec 28 10:05:17 prd-ubuntu1804-docker-4c-4g-1902 sshd[1727]: Invalid user jenkins from 10.32.4.5 port 40028 Dec 28 10:05:17 prd-ubuntu1804-docker-4c-4g-1902 sshd[1727]: Received disconnect from 10.32.4.5 port 40028:11: Closed due to user request. [preauth] Dec 28 10:05:17 prd-ubuntu1804-docker-4c-4g-1902 sshd[1727]: Disconnected from invalid user jenkins 10.32.4.5 port 40028 [preauth] Dec 28 10:05:19 prd-ubuntu1804-docker-4c-4g-1902 sshd[1789]: Invalid user jenkins from 10.32.4.5 port 40030 Dec 28 10:05:19 prd-ubuntu1804-docker-4c-4g-1902 sshd[1789]: Received disconnect from 10.32.4.5 port 40030:11: Closed due to user request. [preauth] Dec 28 10:05:19 prd-ubuntu1804-docker-4c-4g-1902 sshd[1789]: Disconnected from invalid user jenkins 10.32.4.5 port 40030 [preauth] Dec 28 10:05:21 prd-ubuntu1804-docker-4c-4g-1902 sshd[1808]: Invalid user jenkins from 10.32.4.5 port 40032 Dec 28 10:05:21 prd-ubuntu1804-docker-4c-4g-1902 sshd[1808]: Received disconnect from 10.32.4.5 port 40032:11: Closed due to user request. [preauth] Dec 28 10:05:21 prd-ubuntu1804-docker-4c-4g-1902 sshd[1808]: Disconnected from invalid user jenkins 10.32.4.5 port 40032 [preauth] Dec 28 10:05:23 prd-ubuntu1804-docker-4c-4g-1902 sshd[1812]: Invalid user jenkins from 10.32.4.5 port 40040 Dec 28 10:05:23 prd-ubuntu1804-docker-4c-4g-1902 sshd[1812]: Received disconnect from 10.32.4.5 port 40040:11: Closed due to user request. [preauth] Dec 28 10:05:23 prd-ubuntu1804-docker-4c-4g-1902 sshd[1812]: Disconnected from invalid user jenkins 10.32.4.5 port 40040 [preauth] Dec 28 10:05:24 prd-ubuntu1804-docker-4c-4g-1902 useradd[1828]: new group: name=jenkins, GID=1001 Dec 28 10:05:24 prd-ubuntu1804-docker-4c-4g-1902 useradd[1828]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Dec 28 10:05:24 prd-ubuntu1804-docker-4c-4g-1902 usermod[1837]: add 'jenkins' to group 'docker' Dec 28 10:05:24 prd-ubuntu1804-docker-4c-4g-1902 usermod[1837]: add 'jenkins' to shadow group 'docker' Dec 28 10:05:25 prd-ubuntu1804-docker-4c-4g-1902 sshd[1881]: Accepted publickey for jenkins from 10.32.4.5 port 40042 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Dec 28 10:05:25 prd-ubuntu1804-docker-4c-4g-1902 sshd[1881]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Dec 28 10:05:25 prd-ubuntu1804-docker-4c-4g-1902 systemd-logind[1045]: New session 2 of user jenkins. Dec 28 10:05:25 prd-ubuntu1804-docker-4c-4g-1902 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Dec 28 10:06:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[2403]: pam_unix(cron:session): session opened for user root by (uid=0) Dec 28 10:06:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[2403]: pam_unix(cron:session): session closed for user root Dec 28 10:07:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[2449]: pam_unix(cron:session): session opened for user root by (uid=0) Dec 28 10:07:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[2449]: pam_unix(cron:session): session closed for user root Dec 28 10:08:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[2870]: pam_unix(cron:session): session opened for user root by (uid=0) Dec 28 10:08:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[2870]: pam_unix(cron:session): session closed for user root Dec 28 10:09:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[3606]: pam_unix(cron:session): session opened for user root by (uid=0) Dec 28 10:09:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[3606]: pam_unix(cron:session): session closed for user root Dec 28 10:10:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[3613]: pam_unix(cron:session): session opened for user root by (uid=0) Dec 28 10:10:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[3613]: pam_unix(cron:session): session closed for user root Dec 28 10:11:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[5338]: pam_unix(cron:session): session opened for user root by (uid=0) Dec 28 10:11:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[5338]: pam_unix(cron:session): session closed for user root Dec 28 10:12:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[6762]: pam_unix(cron:session): session opened for user root by (uid=0) Dec 28 10:12:01 prd-ubuntu1804-docker-4c-4g-1902 CRON[6762]: pam_unix(cron:session): session closed for user root Dec 28 10:12:59 prd-ubuntu1804-docker-4c-4g-1902 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/it-test-ric-benchmarking-docker-merge-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Dec 28 10:12:59 prd-ubuntu1804-docker-4c-4g-1902 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)