May 19 23:41:45 prd-ubuntu1804-docker-4c-4g-1308 passwd[945]: password for 'ubuntu' changed by 'root' May 19 23:41:45 prd-ubuntu1804-docker-4c-4g-1308 systemd-logind[1030]: Watching system buttons on /dev/input/event0 (Power Button) May 19 23:41:45 prd-ubuntu1804-docker-4c-4g-1308 systemd-logind[1030]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) May 19 23:41:45 prd-ubuntu1804-docker-4c-4g-1308 systemd-logind[1030]: New seat seat0. May 19 23:41:45 prd-ubuntu1804-docker-4c-4g-1308 sshd[1274]: Server listening on 0.0.0.0 port 22. May 19 23:41:45 prd-ubuntu1804-docker-4c-4g-1308 sshd[1274]: Server listening on :: port 22. May 19 23:41:46 prd-ubuntu1804-docker-4c-4g-1308 sshd[1368]: Did not receive identification string from 10.32.4.5 port 59976 May 19 23:41:52 prd-ubuntu1804-docker-4c-4g-1308 sshd[1535]: Invalid user jenkins from 10.32.4.5 port 59980 May 19 23:41:52 prd-ubuntu1804-docker-4c-4g-1308 sshd[1535]: Received disconnect from 10.32.4.5 port 59980:11: Closed due to user request. [preauth] May 19 23:41:52 prd-ubuntu1804-docker-4c-4g-1308 sshd[1535]: Disconnected from invalid user jenkins 10.32.4.5 port 59980 [preauth] May 19 23:41:54 prd-ubuntu1804-docker-4c-4g-1308 sshd[1554]: Invalid user jenkins from 10.32.4.5 port 59982 May 19 23:41:54 prd-ubuntu1804-docker-4c-4g-1308 sshd[1554]: Received disconnect from 10.32.4.5 port 59982:11: Closed due to user request. [preauth] May 19 23:41:54 prd-ubuntu1804-docker-4c-4g-1308 sshd[1554]: Disconnected from invalid user jenkins 10.32.4.5 port 59982 [preauth] May 19 23:41:56 prd-ubuntu1804-docker-4c-4g-1308 sshd[1556]: Invalid user jenkins from 10.32.4.5 port 59984 May 19 23:41:56 prd-ubuntu1804-docker-4c-4g-1308 sshd[1556]: Received disconnect from 10.32.4.5 port 59984:11: Closed due to user request. [preauth] May 19 23:41:56 prd-ubuntu1804-docker-4c-4g-1308 sshd[1556]: Disconnected from invalid user jenkins 10.32.4.5 port 59984 [preauth] May 19 23:41:58 prd-ubuntu1804-docker-4c-4g-1308 sshd[1558]: Invalid user jenkins from 10.32.4.5 port 59986 May 19 23:41:58 prd-ubuntu1804-docker-4c-4g-1308 sshd[1558]: Received disconnect from 10.32.4.5 port 59986:11: Closed due to user request. [preauth] May 19 23:41:58 prd-ubuntu1804-docker-4c-4g-1308 sshd[1558]: Disconnected from invalid user jenkins 10.32.4.5 port 59986 [preauth] May 19 23:42:00 prd-ubuntu1804-docker-4c-4g-1308 sshd[1560]: Invalid user jenkins from 10.32.4.5 port 59990 May 19 23:42:00 prd-ubuntu1804-docker-4c-4g-1308 sshd[1560]: Received disconnect from 10.32.4.5 port 59990:11: Closed due to user request. [preauth] May 19 23:42:00 prd-ubuntu1804-docker-4c-4g-1308 sshd[1560]: Disconnected from invalid user jenkins 10.32.4.5 port 59990 [preauth] May 19 23:42:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[1563]: pam_unix(cron:session): session opened for user root by (uid=0) May 19 23:42:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[1563]: pam_unix(cron:session): session closed for user root May 19 23:42:02 prd-ubuntu1804-docker-4c-4g-1308 sshd[1570]: Invalid user jenkins from 10.32.4.5 port 59992 May 19 23:42:02 prd-ubuntu1804-docker-4c-4g-1308 sshd[1570]: Received disconnect from 10.32.4.5 port 59992:11: Closed due to user request. [preauth] May 19 23:42:02 prd-ubuntu1804-docker-4c-4g-1308 sshd[1570]: Disconnected from invalid user jenkins 10.32.4.5 port 59992 [preauth] May 19 23:42:04 prd-ubuntu1804-docker-4c-4g-1308 sshd[1572]: Invalid user jenkins from 10.32.4.5 port 59994 May 19 23:42:05 prd-ubuntu1804-docker-4c-4g-1308 sshd[1572]: Received disconnect from 10.32.4.5 port 59994:11: Closed due to user request. [preauth] May 19 23:42:05 prd-ubuntu1804-docker-4c-4g-1308 sshd[1572]: Disconnected from invalid user jenkins 10.32.4.5 port 59994 [preauth] May 19 23:42:07 prd-ubuntu1804-docker-4c-4g-1308 sshd[1592]: Invalid user jenkins from 10.32.4.5 port 59996 May 19 23:42:07 prd-ubuntu1804-docker-4c-4g-1308 sshd[1592]: Received disconnect from 10.32.4.5 port 59996:11: Closed due to user request. [preauth] May 19 23:42:07 prd-ubuntu1804-docker-4c-4g-1308 sshd[1592]: Disconnected from invalid user jenkins 10.32.4.5 port 59996 [preauth] May 19 23:42:10 prd-ubuntu1804-docker-4c-4g-1308 sshd[1810]: Invalid user jenkins from 10.32.4.5 port 59998 May 19 23:42:10 prd-ubuntu1804-docker-4c-4g-1308 sshd[1810]: Received disconnect from 10.32.4.5 port 59998:11: Closed due to user request. [preauth] May 19 23:42:10 prd-ubuntu1804-docker-4c-4g-1308 sshd[1810]: Disconnected from invalid user jenkins 10.32.4.5 port 59998 [preauth] May 19 23:42:12 prd-ubuntu1804-docker-4c-4g-1308 sshd[1851]: Invalid user jenkins from 10.32.4.5 port 60000 May 19 23:42:12 prd-ubuntu1804-docker-4c-4g-1308 sshd[1851]: Received disconnect from 10.32.4.5 port 60000:11: Closed due to user request. [preauth] May 19 23:42:12 prd-ubuntu1804-docker-4c-4g-1308 sshd[1851]: Disconnected from invalid user jenkins 10.32.4.5 port 60000 [preauth] May 19 23:42:14 prd-ubuntu1804-docker-4c-4g-1308 sshd[1859]: Invalid user jenkins from 10.32.4.5 port 60002 May 19 23:42:14 prd-ubuntu1804-docker-4c-4g-1308 sshd[1859]: Received disconnect from 10.32.4.5 port 60002:11: Closed due to user request. [preauth] May 19 23:42:14 prd-ubuntu1804-docker-4c-4g-1308 sshd[1859]: Disconnected from invalid user jenkins 10.32.4.5 port 60002 [preauth] May 19 23:42:16 prd-ubuntu1804-docker-4c-4g-1308 useradd[1866]: new group: name=jenkins, GID=1001 May 19 23:42:16 prd-ubuntu1804-docker-4c-4g-1308 useradd[1866]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash May 19 23:42:16 prd-ubuntu1804-docker-4c-4g-1308 usermod[1873]: add 'jenkins' to group 'docker' May 19 23:42:16 prd-ubuntu1804-docker-4c-4g-1308 usermod[1873]: add 'jenkins' to shadow group 'docker' May 19 23:42:16 prd-ubuntu1804-docker-4c-4g-1308 sshd[1914]: Accepted publickey for jenkins from 10.32.4.5 port 60006 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI May 19 23:42:16 prd-ubuntu1804-docker-4c-4g-1308 sshd[1914]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) May 19 23:42:16 prd-ubuntu1804-docker-4c-4g-1308 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) May 19 23:42:16 prd-ubuntu1804-docker-4c-4g-1308 systemd-logind[1030]: New session 2 of user jenkins. May 19 23:43:03 prd-ubuntu1804-docker-4c-4g-1308 CRON[2458]: pam_unix(cron:session): session opened for user root by (uid=0) May 19 23:43:03 prd-ubuntu1804-docker-4c-4g-1308 CRON[2458]: pam_unix(cron:session): session closed for user root May 19 23:44:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[2771]: pam_unix(cron:session): session opened for user root by (uid=0) May 19 23:44:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[2771]: pam_unix(cron:session): session closed for user root May 19 23:45:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[3183]: pam_unix(cron:session): session opened for user root by (uid=0) May 19 23:45:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[3183]: pam_unix(cron:session): session closed for user root May 19 23:46:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[5847]: pam_unix(cron:session): session opened for user root by (uid=0) May 19 23:46:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[5847]: pam_unix(cron:session): session closed for user root May 19 23:47:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[6399]: pam_unix(cron:session): session opened for user root by (uid=0) May 19 23:47:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[6399]: pam_unix(cron:session): session closed for user root May 19 23:48:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[6784]: pam_unix(cron:session): session opened for user root by (uid=0) May 19 23:48:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[6784]: pam_unix(cron:session): session closed for user root May 19 23:49:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[8102]: pam_unix(cron:session): session opened for user root by (uid=0) May 19 23:49:01 prd-ubuntu1804-docker-4c-4g-1308 CRON[8102]: pam_unix(cron:session): session closed for user root May 19 23:49:48 prd-ubuntu1804-docker-4c-4g-1308 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/nonrtric-sample-icsproducer-docker-merge-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp May 19 23:49:48 prd-ubuntu1804-docker-4c-4g-1308 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)