Jun 13 07:01:44 prd-ubuntu1804-docker-4c-4g-2710 passwd[937]: password for 'ubuntu' changed by 'root' Jun 13 07:01:44 prd-ubuntu1804-docker-4c-4g-2710 systemd-logind[1056]: Watching system buttons on /dev/input/event0 (Power Button) Jun 13 07:01:44 prd-ubuntu1804-docker-4c-4g-2710 systemd-logind[1056]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Jun 13 07:01:44 prd-ubuntu1804-docker-4c-4g-2710 systemd-logind[1056]: New seat seat0. Jun 13 07:01:44 prd-ubuntu1804-docker-4c-4g-2710 sshd[1106]: Server listening on 0.0.0.0 port 22. Jun 13 07:01:44 prd-ubuntu1804-docker-4c-4g-2710 sshd[1106]: Server listening on :: port 22. Jun 13 07:01:49 prd-ubuntu1804-docker-4c-4g-2710 sshd[1471]: Did not receive identification string from 10.32.4.5 port 35532 Jun 13 07:01:56 prd-ubuntu1804-docker-4c-4g-2710 sshd[1529]: Invalid user jenkins from 10.32.4.5 port 35536 Jun 13 07:01:56 prd-ubuntu1804-docker-4c-4g-2710 sshd[1529]: Received disconnect from 10.32.4.5 port 35536:11: Closed due to user request. [preauth] Jun 13 07:01:56 prd-ubuntu1804-docker-4c-4g-2710 sshd[1529]: Disconnected from invalid user jenkins 10.32.4.5 port 35536 [preauth] Jun 13 07:01:58 prd-ubuntu1804-docker-4c-4g-2710 sshd[1533]: Invalid user jenkins from 10.32.4.5 port 35538 Jun 13 07:01:58 prd-ubuntu1804-docker-4c-4g-2710 sshd[1533]: Received disconnect from 10.32.4.5 port 35538:11: Closed due to user request. [preauth] Jun 13 07:01:58 prd-ubuntu1804-docker-4c-4g-2710 sshd[1533]: Disconnected from invalid user jenkins 10.32.4.5 port 35538 [preauth] Jun 13 07:02:00 prd-ubuntu1804-docker-4c-4g-2710 sshd[1535]: Invalid user jenkins from 10.32.4.5 port 35540 Jun 13 07:02:00 prd-ubuntu1804-docker-4c-4g-2710 sshd[1535]: Received disconnect from 10.32.4.5 port 35540:11: Closed due to user request. [preauth] Jun 13 07:02:00 prd-ubuntu1804-docker-4c-4g-2710 sshd[1535]: Disconnected from invalid user jenkins 10.32.4.5 port 35540 [preauth] Jun 13 07:02:01 prd-ubuntu1804-docker-4c-4g-2710 CRON[1537]: pam_unix(cron:session): session opened for user root by (uid=0) Jun 13 07:02:01 prd-ubuntu1804-docker-4c-4g-2710 CRON[1537]: pam_unix(cron:session): session closed for user root Jun 13 07:02:02 prd-ubuntu1804-docker-4c-4g-2710 sshd[1546]: Invalid user jenkins from 10.32.4.5 port 35542 Jun 13 07:02:02 prd-ubuntu1804-docker-4c-4g-2710 sshd[1546]: Received disconnect from 10.32.4.5 port 35542:11: Closed due to user request. [preauth] Jun 13 07:02:02 prd-ubuntu1804-docker-4c-4g-2710 sshd[1546]: Disconnected from invalid user jenkins 10.32.4.5 port 35542 [preauth] Jun 13 07:02:04 prd-ubuntu1804-docker-4c-4g-2710 sshd[1548]: Invalid user jenkins from 10.32.4.5 port 35546 Jun 13 07:02:04 prd-ubuntu1804-docker-4c-4g-2710 sshd[1548]: Received disconnect from 10.32.4.5 port 35546:11: Closed due to user request. [preauth] Jun 13 07:02:04 prd-ubuntu1804-docker-4c-4g-2710 sshd[1548]: Disconnected from invalid user jenkins 10.32.4.5 port 35546 [preauth] Jun 13 07:02:06 prd-ubuntu1804-docker-4c-4g-2710 sshd[1561]: Invalid user jenkins from 10.32.4.5 port 35548 Jun 13 07:02:06 prd-ubuntu1804-docker-4c-4g-2710 sshd[1561]: Received disconnect from 10.32.4.5 port 35548:11: Closed due to user request. [preauth] Jun 13 07:02:06 prd-ubuntu1804-docker-4c-4g-2710 sshd[1561]: Disconnected from invalid user jenkins 10.32.4.5 port 35548 [preauth] Jun 13 07:02:08 prd-ubuntu1804-docker-4c-4g-2710 sshd[1784]: Invalid user jenkins from 10.32.4.5 port 35550 Jun 13 07:02:09 prd-ubuntu1804-docker-4c-4g-2710 sshd[1784]: Received disconnect from 10.32.4.5 port 35550:11: Closed due to user request. [preauth] Jun 13 07:02:09 prd-ubuntu1804-docker-4c-4g-2710 sshd[1784]: Disconnected from invalid user jenkins 10.32.4.5 port 35550 [preauth] Jun 13 07:02:11 prd-ubuntu1804-docker-4c-4g-2710 sshd[1824]: Invalid user jenkins from 10.32.4.5 port 35554 Jun 13 07:02:11 prd-ubuntu1804-docker-4c-4g-2710 sshd[1824]: Received disconnect from 10.32.4.5 port 35554:11: Closed due to user request. [preauth] Jun 13 07:02:11 prd-ubuntu1804-docker-4c-4g-2710 sshd[1824]: Disconnected from invalid user jenkins 10.32.4.5 port 35554 [preauth] Jun 13 07:02:13 prd-ubuntu1804-docker-4c-4g-2710 useradd[1843]: new group: name=jenkins, GID=1001 Jun 13 07:02:13 prd-ubuntu1804-docker-4c-4g-2710 useradd[1843]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Jun 13 07:02:13 prd-ubuntu1804-docker-4c-4g-2710 usermod[1851]: add 'jenkins' to group 'docker' Jun 13 07:02:13 prd-ubuntu1804-docker-4c-4g-2710 usermod[1851]: add 'jenkins' to shadow group 'docker' Jun 13 07:02:13 prd-ubuntu1804-docker-4c-4g-2710 sshd[1842]: Received disconnect from 10.32.4.5 port 35562:11: Closed due to user request. [preauth] Jun 13 07:02:13 prd-ubuntu1804-docker-4c-4g-2710 sshd[1842]: Disconnected from authenticating user jenkins 10.32.4.5 port 35562 [preauth] Jun 13 07:02:15 prd-ubuntu1804-docker-4c-4g-2710 sshd[1885]: Accepted publickey for jenkins from 10.32.4.5 port 35564 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Jun 13 07:02:15 prd-ubuntu1804-docker-4c-4g-2710 sshd[1885]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Jun 13 07:02:15 prd-ubuntu1804-docker-4c-4g-2710 systemd-logind[1056]: New session 2 of user jenkins. Jun 13 07:02:15 prd-ubuntu1804-docker-4c-4g-2710 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Jun 13 07:03:01 prd-ubuntu1804-docker-4c-4g-2710 CRON[2434]: pam_unix(cron:session): session opened for user root by (uid=0) Jun 13 07:03:01 prd-ubuntu1804-docker-4c-4g-2710 CRON[2434]: pam_unix(cron:session): session closed for user root Jun 13 07:04:01 prd-ubuntu1804-docker-4c-4g-2710 CRON[3363]: pam_unix(cron:session): session opened for user root by (uid=0) Jun 13 07:04:01 prd-ubuntu1804-docker-4c-4g-2710 CRON[3363]: pam_unix(cron:session): session closed for user root Jun 13 07:04:24 prd-ubuntu1804-docker-4c-4g-2710 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/nonrtric-plt-auth-token-fetch-docker-merge-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Jun 13 07:04:24 prd-ubuntu1804-docker-4c-4g-2710 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)