Apr 28 23:41:50 prd-ubuntu1804-docker-4c-4g-1826 passwd[938]: password for 'ubuntu' changed by 'root' Apr 28 23:41:50 prd-ubuntu1804-docker-4c-4g-1826 systemd-logind[1083]: Watching system buttons on /dev/input/event0 (Power Button) Apr 28 23:41:50 prd-ubuntu1804-docker-4c-4g-1826 systemd-logind[1083]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Apr 28 23:41:50 prd-ubuntu1804-docker-4c-4g-1826 systemd-logind[1083]: New seat seat0. Apr 28 23:41:50 prd-ubuntu1804-docker-4c-4g-1826 sshd[1270]: Server listening on 0.0.0.0 port 22. Apr 28 23:41:50 prd-ubuntu1804-docker-4c-4g-1826 sshd[1270]: Server listening on :: port 22. Apr 28 23:41:53 prd-ubuntu1804-docker-4c-4g-1826 sshd[1506]: Did not receive identification string from 10.32.4.5 port 59348 Apr 28 23:41:56 prd-ubuntu1804-docker-4c-4g-1826 sshd[1542]: Invalid user jenkins from 10.32.4.5 port 59352 Apr 28 23:41:57 prd-ubuntu1804-docker-4c-4g-1826 sshd[1542]: Received disconnect from 10.32.4.5 port 59352:11: Closed due to user request. [preauth] Apr 28 23:41:57 prd-ubuntu1804-docker-4c-4g-1826 sshd[1542]: Disconnected from invalid user jenkins 10.32.4.5 port 59352 [preauth] Apr 28 23:41:59 prd-ubuntu1804-docker-4c-4g-1826 sshd[1561]: Invalid user jenkins from 10.32.4.5 port 59354 Apr 28 23:41:59 prd-ubuntu1804-docker-4c-4g-1826 sshd[1561]: Received disconnect from 10.32.4.5 port 59354:11: Closed due to user request. [preauth] Apr 28 23:41:59 prd-ubuntu1804-docker-4c-4g-1826 sshd[1561]: Disconnected from invalid user jenkins 10.32.4.5 port 59354 [preauth] Apr 28 23:42:01 prd-ubuntu1804-docker-4c-4g-1826 sshd[1563]: Invalid user jenkins from 10.32.4.5 port 59356 Apr 28 23:42:01 prd-ubuntu1804-docker-4c-4g-1826 sshd[1563]: Received disconnect from 10.32.4.5 port 59356:11: Closed due to user request. [preauth] Apr 28 23:42:01 prd-ubuntu1804-docker-4c-4g-1826 sshd[1563]: Disconnected from invalid user jenkins 10.32.4.5 port 59356 [preauth] Apr 28 23:42:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[1566]: pam_unix(cron:session): session opened for user root by (uid=0) Apr 28 23:42:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[1566]: pam_unix(cron:session): session closed for user root Apr 28 23:42:03 prd-ubuntu1804-docker-4c-4g-1826 sshd[1574]: Invalid user jenkins from 10.32.4.5 port 59358 Apr 28 23:42:03 prd-ubuntu1804-docker-4c-4g-1826 sshd[1574]: Received disconnect from 10.32.4.5 port 59358:11: Closed due to user request. [preauth] Apr 28 23:42:03 prd-ubuntu1804-docker-4c-4g-1826 sshd[1574]: Disconnected from invalid user jenkins 10.32.4.5 port 59358 [preauth] Apr 28 23:42:05 prd-ubuntu1804-docker-4c-4g-1826 sshd[1576]: Invalid user jenkins from 10.32.4.5 port 59360 Apr 28 23:42:05 prd-ubuntu1804-docker-4c-4g-1826 sshd[1576]: Received disconnect from 10.32.4.5 port 59360:11: Closed due to user request. [preauth] Apr 28 23:42:05 prd-ubuntu1804-docker-4c-4g-1826 sshd[1576]: Disconnected from invalid user jenkins 10.32.4.5 port 59360 [preauth] Apr 28 23:42:07 prd-ubuntu1804-docker-4c-4g-1826 sshd[1578]: Invalid user jenkins from 10.32.4.5 port 59362 Apr 28 23:42:07 prd-ubuntu1804-docker-4c-4g-1826 sshd[1578]: Received disconnect from 10.32.4.5 port 59362:11: Closed due to user request. [preauth] Apr 28 23:42:07 prd-ubuntu1804-docker-4c-4g-1826 sshd[1578]: Disconnected from invalid user jenkins 10.32.4.5 port 59362 [preauth] Apr 28 23:42:09 prd-ubuntu1804-docker-4c-4g-1826 sshd[1580]: Invalid user jenkins from 10.32.4.5 port 59364 Apr 28 23:42:09 prd-ubuntu1804-docker-4c-4g-1826 sshd[1580]: Received disconnect from 10.32.4.5 port 59364:11: Closed due to user request. [preauth] Apr 28 23:42:09 prd-ubuntu1804-docker-4c-4g-1826 sshd[1580]: Disconnected from invalid user jenkins 10.32.4.5 port 59364 [preauth] Apr 28 23:42:11 prd-ubuntu1804-docker-4c-4g-1826 sshd[1592]: Invalid user jenkins from 10.32.4.5 port 59368 Apr 28 23:42:11 prd-ubuntu1804-docker-4c-4g-1826 sshd[1592]: Received disconnect from 10.32.4.5 port 59368:11: Closed due to user request. [preauth] Apr 28 23:42:11 prd-ubuntu1804-docker-4c-4g-1826 sshd[1592]: Disconnected from invalid user jenkins 10.32.4.5 port 59368 [preauth] Apr 28 23:42:14 prd-ubuntu1804-docker-4c-4g-1826 sshd[1808]: Invalid user jenkins from 10.32.4.5 port 59370 Apr 28 23:42:14 prd-ubuntu1804-docker-4c-4g-1826 sshd[1808]: Received disconnect from 10.32.4.5 port 59370:11: Closed due to user request. [preauth] Apr 28 23:42:14 prd-ubuntu1804-docker-4c-4g-1826 sshd[1808]: Disconnected from invalid user jenkins 10.32.4.5 port 59370 [preauth] Apr 28 23:42:16 prd-ubuntu1804-docker-4c-4g-1826 sshd[1857]: Invalid user jenkins from 10.32.4.5 port 59372 Apr 28 23:42:16 prd-ubuntu1804-docker-4c-4g-1826 sshd[1857]: Received disconnect from 10.32.4.5 port 59372:11: Closed due to user request. [preauth] Apr 28 23:42:16 prd-ubuntu1804-docker-4c-4g-1826 sshd[1857]: Disconnected from invalid user jenkins 10.32.4.5 port 59372 [preauth] Apr 28 23:42:19 prd-ubuntu1804-docker-4c-4g-1826 sshd[1865]: Invalid user jenkins from 10.32.4.5 port 59374 Apr 28 23:42:19 prd-ubuntu1804-docker-4c-4g-1826 sshd[1865]: Received disconnect from 10.32.4.5 port 59374:11: Closed due to user request. [preauth] Apr 28 23:42:19 prd-ubuntu1804-docker-4c-4g-1826 sshd[1865]: Disconnected from invalid user jenkins 10.32.4.5 port 59374 [preauth] Apr 28 23:42:20 prd-ubuntu1804-docker-4c-4g-1826 useradd[1872]: new group: name=jenkins, GID=1001 Apr 28 23:42:20 prd-ubuntu1804-docker-4c-4g-1826 useradd[1872]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Apr 28 23:42:20 prd-ubuntu1804-docker-4c-4g-1826 usermod[1879]: add 'jenkins' to group 'docker' Apr 28 23:42:20 prd-ubuntu1804-docker-4c-4g-1826 usermod[1879]: add 'jenkins' to shadow group 'docker' Apr 28 23:42:21 prd-ubuntu1804-docker-4c-4g-1826 sshd[1913]: Accepted publickey for jenkins from 10.32.4.5 port 59376 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Apr 28 23:42:21 prd-ubuntu1804-docker-4c-4g-1826 sshd[1913]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Apr 28 23:42:21 prd-ubuntu1804-docker-4c-4g-1826 systemd-logind[1083]: New session 2 of user jenkins. Apr 28 23:42:21 prd-ubuntu1804-docker-4c-4g-1826 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Apr 28 23:43:02 prd-ubuntu1804-docker-4c-4g-1826 CRON[2447]: pam_unix(cron:session): session opened for user root by (uid=0) Apr 28 23:43:02 prd-ubuntu1804-docker-4c-4g-1826 CRON[2447]: pam_unix(cron:session): session closed for user root Apr 28 23:44:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[2484]: pam_unix(cron:session): session opened for user root by (uid=0) Apr 28 23:44:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[2484]: pam_unix(cron:session): session closed for user root Apr 28 23:45:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[3073]: pam_unix(cron:session): session opened for user root by (uid=0) Apr 28 23:45:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[3073]: pam_unix(cron:session): session closed for user root Apr 28 23:46:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[5758]: pam_unix(cron:session): session opened for user root by (uid=0) Apr 28 23:46:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[5758]: pam_unix(cron:session): session closed for user root Apr 28 23:47:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[6291]: pam_unix(cron:session): session opened for user root by (uid=0) Apr 28 23:47:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[6291]: pam_unix(cron:session): session closed for user root Apr 28 23:48:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[6695]: pam_unix(cron:session): session opened for user root by (uid=0) Apr 28 23:48:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[6695]: pam_unix(cron:session): session closed for user root Apr 28 23:49:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[7826]: pam_unix(cron:session): session opened for user root by (uid=0) Apr 28 23:49:01 prd-ubuntu1804-docker-4c-4g-1826 CRON[7826]: pam_unix(cron:session): session closed for user root Apr 28 23:49:59 prd-ubuntu1804-docker-4c-4g-1826 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/nonrtric-sample-icsproducer-docker-merge-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Apr 28 23:49:59 prd-ubuntu1804-docker-4c-4g-1826 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)