Aug 16 05:44:39 prd-ubuntu1804-docker-4c-4g-2585 passwd[939]: password for 'ubuntu' changed by 'root' Aug 16 05:44:39 prd-ubuntu1804-docker-4c-4g-2585 systemd-logind[1004]: Watching system buttons on /dev/input/event0 (Power Button) Aug 16 05:44:39 prd-ubuntu1804-docker-4c-4g-2585 systemd-logind[1004]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Aug 16 05:44:39 prd-ubuntu1804-docker-4c-4g-2585 systemd-logind[1004]: New seat seat0. Aug 16 05:44:39 prd-ubuntu1804-docker-4c-4g-2585 sshd[1123]: Server listening on 0.0.0.0 port 22. Aug 16 05:44:39 prd-ubuntu1804-docker-4c-4g-2585 sshd[1123]: Server listening on :: port 22. Aug 16 05:44:42 prd-ubuntu1804-docker-4c-4g-2585 sshd[1452]: Did not receive identification string from 10.32.4.5 port 34844 Aug 16 05:44:50 prd-ubuntu1804-docker-4c-4g-2585 sshd[1521]: Invalid user jenkins from 10.32.4.5 port 34852 Aug 16 05:44:50 prd-ubuntu1804-docker-4c-4g-2585 sshd[1521]: Received disconnect from 10.32.4.5 port 34852:11: Closed due to user request. [preauth] Aug 16 05:44:50 prd-ubuntu1804-docker-4c-4g-2585 sshd[1521]: Disconnected from invalid user jenkins 10.32.4.5 port 34852 [preauth] Aug 16 05:44:52 prd-ubuntu1804-docker-4c-4g-2585 sshd[1525]: Invalid user jenkins from 10.32.4.5 port 34856 Aug 16 05:44:52 prd-ubuntu1804-docker-4c-4g-2585 sshd[1525]: Received disconnect from 10.32.4.5 port 34856:11: Closed due to user request. [preauth] Aug 16 05:44:52 prd-ubuntu1804-docker-4c-4g-2585 sshd[1525]: Disconnected from invalid user jenkins 10.32.4.5 port 34856 [preauth] Aug 16 05:44:54 prd-ubuntu1804-docker-4c-4g-2585 sshd[1527]: Invalid user jenkins from 10.32.4.5 port 34858 Aug 16 05:44:54 prd-ubuntu1804-docker-4c-4g-2585 sshd[1527]: Received disconnect from 10.32.4.5 port 34858:11: Closed due to user request. [preauth] Aug 16 05:44:54 prd-ubuntu1804-docker-4c-4g-2585 sshd[1527]: Disconnected from invalid user jenkins 10.32.4.5 port 34858 [preauth] Aug 16 05:44:56 prd-ubuntu1804-docker-4c-4g-2585 sshd[1529]: Invalid user jenkins from 10.32.4.5 port 34860 Aug 16 05:44:56 prd-ubuntu1804-docker-4c-4g-2585 sshd[1529]: Received disconnect from 10.32.4.5 port 34860:11: Closed due to user request. [preauth] Aug 16 05:44:56 prd-ubuntu1804-docker-4c-4g-2585 sshd[1529]: Disconnected from invalid user jenkins 10.32.4.5 port 34860 [preauth] Aug 16 05:44:59 prd-ubuntu1804-docker-4c-4g-2585 sshd[1531]: Invalid user jenkins from 10.32.4.5 port 34862 Aug 16 05:44:59 prd-ubuntu1804-docker-4c-4g-2585 sshd[1531]: Received disconnect from 10.32.4.5 port 34862:11: Closed due to user request. [preauth] Aug 16 05:44:59 prd-ubuntu1804-docker-4c-4g-2585 sshd[1531]: Disconnected from invalid user jenkins 10.32.4.5 port 34862 [preauth] Aug 16 05:45:01 prd-ubuntu1804-docker-4c-4g-2585 sshd[1543]: Invalid user jenkins from 10.32.4.5 port 34868 Aug 16 05:45:01 prd-ubuntu1804-docker-4c-4g-2585 sshd[1543]: Received disconnect from 10.32.4.5 port 34868:11: Closed due to user request. [preauth] Aug 16 05:45:01 prd-ubuntu1804-docker-4c-4g-2585 sshd[1543]: Disconnected from invalid user jenkins 10.32.4.5 port 34868 [preauth] Aug 16 05:45:01 prd-ubuntu1804-docker-4c-4g-2585 CRON[1608]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 05:45:01 prd-ubuntu1804-docker-4c-4g-2585 CRON[1608]: pam_unix(cron:session): session closed for user root Aug 16 05:45:03 prd-ubuntu1804-docker-4c-4g-2585 sshd[1775]: Invalid user jenkins from 10.32.4.5 port 34898 Aug 16 05:45:03 prd-ubuntu1804-docker-4c-4g-2585 sshd[1775]: Received disconnect from 10.32.4.5 port 34898:11: Closed due to user request. [preauth] Aug 16 05:45:03 prd-ubuntu1804-docker-4c-4g-2585 sshd[1775]: Disconnected from invalid user jenkins 10.32.4.5 port 34898 [preauth] Aug 16 05:45:06 prd-ubuntu1804-docker-4c-4g-2585 sshd[1815]: Invalid user jenkins from 10.32.4.5 port 34900 Aug 16 05:45:06 prd-ubuntu1804-docker-4c-4g-2585 sshd[1815]: Received disconnect from 10.32.4.5 port 34900:11: Closed due to user request. [preauth] Aug 16 05:45:06 prd-ubuntu1804-docker-4c-4g-2585 sshd[1815]: Disconnected from invalid user jenkins 10.32.4.5 port 34900 [preauth] Aug 16 05:45:08 prd-ubuntu1804-docker-4c-4g-2585 sshd[1825]: Invalid user jenkins from 10.32.4.5 port 34902 Aug 16 05:45:08 prd-ubuntu1804-docker-4c-4g-2585 sshd[1825]: Received disconnect from 10.32.4.5 port 34902:11: Closed due to user request. [preauth] Aug 16 05:45:08 prd-ubuntu1804-docker-4c-4g-2585 sshd[1825]: Disconnected from invalid user jenkins 10.32.4.5 port 34902 [preauth] Aug 16 05:45:08 prd-ubuntu1804-docker-4c-4g-2585 useradd[1835]: new group: name=jenkins, GID=1001 Aug 16 05:45:08 prd-ubuntu1804-docker-4c-4g-2585 useradd[1835]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Aug 16 05:45:08 prd-ubuntu1804-docker-4c-4g-2585 usermod[1842]: add 'jenkins' to group 'docker' Aug 16 05:45:08 prd-ubuntu1804-docker-4c-4g-2585 usermod[1842]: add 'jenkins' to shadow group 'docker' Aug 16 05:45:10 prd-ubuntu1804-docker-4c-4g-2585 sshd[1876]: Accepted publickey for jenkins from 10.32.4.5 port 34906 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Aug 16 05:45:10 prd-ubuntu1804-docker-4c-4g-2585 sshd[1876]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Aug 16 05:45:10 prd-ubuntu1804-docker-4c-4g-2585 systemd-logind[1004]: New session 2 of user jenkins. Aug 16 05:45:10 prd-ubuntu1804-docker-4c-4g-2585 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Aug 16 05:46:02 prd-ubuntu1804-docker-4c-4g-2585 CRON[2616]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 05:46:02 prd-ubuntu1804-docker-4c-4g-2585 CRON[2616]: pam_unix(cron:session): session closed for user root Aug 16 05:47:01 prd-ubuntu1804-docker-4c-4g-2585 CRON[3666]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 05:47:01 prd-ubuntu1804-docker-4c-4g-2585 CRON[3666]: pam_unix(cron:session): session closed for user root Aug 16 05:47:09 prd-ubuntu1804-docker-4c-4g-2585 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/nonrtric-rapp-ransliceassurance-icsversion-docker-merge-g-release ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Aug 16 05:47:09 prd-ubuntu1804-docker-4c-4g-2585 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)