Jun 5 19:44:49 prd-ubuntu1804-docker-4c-4g-2675 passwd[935]: password for 'ubuntu' changed by 'root' Jun 5 19:44:49 prd-ubuntu1804-docker-4c-4g-2675 systemd-logind[975]: Watching system buttons on /dev/input/event0 (Power Button) Jun 5 19:44:49 prd-ubuntu1804-docker-4c-4g-2675 systemd-logind[975]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Jun 5 19:44:49 prd-ubuntu1804-docker-4c-4g-2675 systemd-logind[975]: New seat seat0. Jun 5 19:44:50 prd-ubuntu1804-docker-4c-4g-2675 sshd[1250]: Server listening on 0.0.0.0 port 22. Jun 5 19:44:50 prd-ubuntu1804-docker-4c-4g-2675 sshd[1250]: Server listening on :: port 22. Jun 5 19:44:52 prd-ubuntu1804-docker-4c-4g-2675 sshd[1355]: Did not receive identification string from 10.32.4.5 port 40758 Jun 5 19:44:52 prd-ubuntu1804-docker-4c-4g-2675 sshd[1420]: Invalid user jenkins from 10.32.4.5 port 40760 Jun 5 19:44:52 prd-ubuntu1804-docker-4c-4g-2675 sshd[1420]: Received disconnect from 10.32.4.5 port 40760:11: Closed due to user request. [preauth] Jun 5 19:44:52 prd-ubuntu1804-docker-4c-4g-2675 sshd[1420]: Disconnected from invalid user jenkins 10.32.4.5 port 40760 [preauth] Jun 5 19:44:54 prd-ubuntu1804-docker-4c-4g-2675 sshd[1472]: Invalid user jenkins from 10.32.4.5 port 40762 Jun 5 19:44:54 prd-ubuntu1804-docker-4c-4g-2675 sshd[1472]: Received disconnect from 10.32.4.5 port 40762:11: Closed due to user request. [preauth] Jun 5 19:44:54 prd-ubuntu1804-docker-4c-4g-2675 sshd[1472]: Disconnected from invalid user jenkins 10.32.4.5 port 40762 [preauth] Jun 5 19:44:56 prd-ubuntu1804-docker-4c-4g-2675 sshd[1500]: Invalid user jenkins from 10.32.4.5 port 40764 Jun 5 19:44:57 prd-ubuntu1804-docker-4c-4g-2675 sshd[1500]: Received disconnect from 10.32.4.5 port 40764:11: Closed due to user request. [preauth] Jun 5 19:44:57 prd-ubuntu1804-docker-4c-4g-2675 sshd[1500]: Disconnected from invalid user jenkins 10.32.4.5 port 40764 [preauth] Jun 5 19:44:59 prd-ubuntu1804-docker-4c-4g-2675 sshd[1516]: Invalid user jenkins from 10.32.4.5 port 40766 Jun 5 19:44:59 prd-ubuntu1804-docker-4c-4g-2675 sshd[1516]: Received disconnect from 10.32.4.5 port 40766:11: Closed due to user request. [preauth] Jun 5 19:44:59 prd-ubuntu1804-docker-4c-4g-2675 sshd[1516]: Disconnected from invalid user jenkins 10.32.4.5 port 40766 [preauth] Jun 5 19:45:01 prd-ubuntu1804-docker-4c-4g-2675 sshd[1518]: Invalid user jenkins from 10.32.4.5 port 40778 Jun 5 19:45:01 prd-ubuntu1804-docker-4c-4g-2675 sshd[1518]: Received disconnect from 10.32.4.5 port 40778:11: Closed due to user request. [preauth] Jun 5 19:45:01 prd-ubuntu1804-docker-4c-4g-2675 sshd[1518]: Disconnected from invalid user jenkins 10.32.4.5 port 40778 [preauth] Jun 5 19:45:01 prd-ubuntu1804-docker-4c-4g-2675 CRON[1520]: pam_unix(cron:session): session opened for user root by (uid=0) Jun 5 19:45:01 prd-ubuntu1804-docker-4c-4g-2675 CRON[1520]: pam_unix(cron:session): session closed for user root Jun 5 19:45:03 prd-ubuntu1804-docker-4c-4g-2675 sshd[1528]: Invalid user jenkins from 10.32.4.5 port 40790 Jun 5 19:45:03 prd-ubuntu1804-docker-4c-4g-2675 sshd[1528]: Received disconnect from 10.32.4.5 port 40790:11: Closed due to user request. [preauth] Jun 5 19:45:03 prd-ubuntu1804-docker-4c-4g-2675 sshd[1528]: Disconnected from invalid user jenkins 10.32.4.5 port 40790 [preauth] Jun 5 19:45:05 prd-ubuntu1804-docker-4c-4g-2675 sshd[1530]: Invalid user jenkins from 10.32.4.5 port 40792 Jun 5 19:45:05 prd-ubuntu1804-docker-4c-4g-2675 sshd[1530]: Received disconnect from 10.32.4.5 port 40792:11: Closed due to user request. [preauth] Jun 5 19:45:05 prd-ubuntu1804-docker-4c-4g-2675 sshd[1530]: Disconnected from invalid user jenkins 10.32.4.5 port 40792 [preauth] Jun 5 19:45:07 prd-ubuntu1804-docker-4c-4g-2675 sshd[1532]: Invalid user jenkins from 10.32.4.5 port 40794 Jun 5 19:45:07 prd-ubuntu1804-docker-4c-4g-2675 sshd[1532]: Received disconnect from 10.32.4.5 port 40794:11: Closed due to user request. [preauth] Jun 5 19:45:07 prd-ubuntu1804-docker-4c-4g-2675 sshd[1532]: Disconnected from invalid user jenkins 10.32.4.5 port 40794 [preauth] Jun 5 19:45:09 prd-ubuntu1804-docker-4c-4g-2675 sshd[1534]: Invalid user jenkins from 10.32.4.5 port 40796 Jun 5 19:45:09 prd-ubuntu1804-docker-4c-4g-2675 sshd[1534]: Received disconnect from 10.32.4.5 port 40796:11: Closed due to user request. [preauth] Jun 5 19:45:09 prd-ubuntu1804-docker-4c-4g-2675 sshd[1534]: Disconnected from invalid user jenkins 10.32.4.5 port 40796 [preauth] Jun 5 19:45:11 prd-ubuntu1804-docker-4c-4g-2675 sshd[1546]: Invalid user jenkins from 10.32.4.5 port 40798 Jun 5 19:45:11 prd-ubuntu1804-docker-4c-4g-2675 sshd[1546]: Received disconnect from 10.32.4.5 port 40798:11: Closed due to user request. [preauth] Jun 5 19:45:11 prd-ubuntu1804-docker-4c-4g-2675 sshd[1546]: Disconnected from invalid user jenkins 10.32.4.5 port 40798 [preauth] Jun 5 19:45:14 prd-ubuntu1804-docker-4c-4g-2675 sshd[1760]: Invalid user jenkins from 10.32.4.5 port 40800 Jun 5 19:45:14 prd-ubuntu1804-docker-4c-4g-2675 sshd[1760]: Received disconnect from 10.32.4.5 port 40800:11: Closed due to user request. [preauth] Jun 5 19:45:14 prd-ubuntu1804-docker-4c-4g-2675 sshd[1760]: Disconnected from invalid user jenkins 10.32.4.5 port 40800 [preauth] Jun 5 19:45:16 prd-ubuntu1804-docker-4c-4g-2675 sshd[1809]: Invalid user jenkins from 10.32.4.5 port 40804 Jun 5 19:45:17 prd-ubuntu1804-docker-4c-4g-2675 sshd[1809]: Received disconnect from 10.32.4.5 port 40804:11: Closed due to user request. [preauth] Jun 5 19:45:17 prd-ubuntu1804-docker-4c-4g-2675 sshd[1809]: Disconnected from invalid user jenkins 10.32.4.5 port 40804 [preauth] Jun 5 19:45:19 prd-ubuntu1804-docker-4c-4g-2675 sshd[1817]: Invalid user jenkins from 10.32.4.5 port 40816 Jun 5 19:45:19 prd-ubuntu1804-docker-4c-4g-2675 sshd[1817]: Received disconnect from 10.32.4.5 port 40816:11: Closed due to user request. [preauth] Jun 5 19:45:19 prd-ubuntu1804-docker-4c-4g-2675 sshd[1817]: Disconnected from invalid user jenkins 10.32.4.5 port 40816 [preauth] Jun 5 19:45:20 prd-ubuntu1804-docker-4c-4g-2675 useradd[1824]: new group: name=jenkins, GID=1001 Jun 5 19:45:20 prd-ubuntu1804-docker-4c-4g-2675 useradd[1824]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Jun 5 19:45:20 prd-ubuntu1804-docker-4c-4g-2675 usermod[1831]: add 'jenkins' to group 'docker' Jun 5 19:45:20 prd-ubuntu1804-docker-4c-4g-2675 usermod[1831]: add 'jenkins' to shadow group 'docker' Jun 5 19:45:21 prd-ubuntu1804-docker-4c-4g-2675 sshd[1865]: Accepted publickey for jenkins from 10.32.4.5 port 40822 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Jun 5 19:45:21 prd-ubuntu1804-docker-4c-4g-2675 sshd[1865]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Jun 5 19:45:21 prd-ubuntu1804-docker-4c-4g-2675 systemd-logind[975]: New session 2 of user jenkins. Jun 5 19:45:21 prd-ubuntu1804-docker-4c-4g-2675 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Jun 5 19:46:02 prd-ubuntu1804-docker-4c-4g-2675 CRON[2403]: pam_unix(cron:session): session opened for user root by (uid=0) Jun 5 19:46:02 prd-ubuntu1804-docker-4c-4g-2675 CRON[2403]: pam_unix(cron:session): session closed for user root Jun 5 19:47:01 prd-ubuntu1804-docker-4c-4g-2675 CRON[2432]: pam_unix(cron:session): session opened for user root by (uid=0) Jun 5 19:47:01 prd-ubuntu1804-docker-4c-4g-2675 CRON[2432]: pam_unix(cron:session): session closed for user root Jun 5 19:48:01 prd-ubuntu1804-docker-4c-4g-2675 CRON[4648]: pam_unix(cron:session): session opened for user root by (uid=0) Jun 5 19:48:01 prd-ubuntu1804-docker-4c-4g-2675 CRON[4648]: pam_unix(cron:session): session closed for user root Jun 5 19:49:01 prd-ubuntu1804-docker-4c-4g-2675 CRON[5461]: pam_unix(cron:session): session opened for user root by (uid=0) Jun 5 19:49:01 prd-ubuntu1804-docker-4c-4g-2675 CRON[5461]: pam_unix(cron:session): session closed for user root Jun 5 19:49:05 prd-ubuntu1804-docker-4c-4g-2675 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/nonrtric-plt-ranpm-pm-file-converter-docker-merge-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Jun 5 19:49:05 prd-ubuntu1804-docker-4c-4g-2675 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)