Aug 16 08:23:38 prd-ubuntu1804-docker-4c-4g-1120 passwd[939]: password for 'ubuntu' changed by 'root' Aug 16 08:23:38 prd-ubuntu1804-docker-4c-4g-1120 systemd-logind[965]: Watching system buttons on /dev/input/event0 (Power Button) Aug 16 08:23:38 prd-ubuntu1804-docker-4c-4g-1120 systemd-logind[965]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Aug 16 08:23:38 prd-ubuntu1804-docker-4c-4g-1120 systemd-logind[965]: New seat seat0. Aug 16 08:23:38 prd-ubuntu1804-docker-4c-4g-1120 sshd[1188]: Server listening on 0.0.0.0 port 22. Aug 16 08:23:38 prd-ubuntu1804-docker-4c-4g-1120 sshd[1188]: Server listening on :: port 22. Aug 16 08:23:41 prd-ubuntu1804-docker-4c-4g-1120 sshd[1430]: Did not receive identification string from 10.32.4.5 port 54100 Aug 16 08:23:46 prd-ubuntu1804-docker-4c-4g-1120 sshd[1485]: Invalid user jenkins from 10.32.4.5 port 54102 Aug 16 08:23:46 prd-ubuntu1804-docker-4c-4g-1120 sshd[1485]: Received disconnect from 10.32.4.5 port 54102:11: Closed due to user request. [preauth] Aug 16 08:23:46 prd-ubuntu1804-docker-4c-4g-1120 sshd[1485]: Disconnected from invalid user jenkins 10.32.4.5 port 54102 [preauth] Aug 16 08:23:48 prd-ubuntu1804-docker-4c-4g-1120 sshd[1495]: Invalid user jenkins from 10.32.4.5 port 54104 Aug 16 08:23:48 prd-ubuntu1804-docker-4c-4g-1120 sshd[1495]: Received disconnect from 10.32.4.5 port 54104:11: Closed due to user request. [preauth] Aug 16 08:23:48 prd-ubuntu1804-docker-4c-4g-1120 sshd[1495]: Disconnected from invalid user jenkins 10.32.4.5 port 54104 [preauth] Aug 16 08:23:50 prd-ubuntu1804-docker-4c-4g-1120 sshd[1497]: Invalid user jenkins from 10.32.4.5 port 54106 Aug 16 08:23:50 prd-ubuntu1804-docker-4c-4g-1120 sshd[1497]: Received disconnect from 10.32.4.5 port 54106:11: Closed due to user request. [preauth] Aug 16 08:23:50 prd-ubuntu1804-docker-4c-4g-1120 sshd[1497]: Disconnected from invalid user jenkins 10.32.4.5 port 54106 [preauth] Aug 16 08:23:52 prd-ubuntu1804-docker-4c-4g-1120 sshd[1499]: Invalid user jenkins from 10.32.4.5 port 54110 Aug 16 08:23:52 prd-ubuntu1804-docker-4c-4g-1120 sshd[1499]: Received disconnect from 10.32.4.5 port 54110:11: Closed due to user request. [preauth] Aug 16 08:23:52 prd-ubuntu1804-docker-4c-4g-1120 sshd[1499]: Disconnected from invalid user jenkins 10.32.4.5 port 54110 [preauth] Aug 16 08:23:54 prd-ubuntu1804-docker-4c-4g-1120 sshd[1501]: Invalid user jenkins from 10.32.4.5 port 54112 Aug 16 08:23:54 prd-ubuntu1804-docker-4c-4g-1120 sshd[1501]: Received disconnect from 10.32.4.5 port 54112:11: Closed due to user request. [preauth] Aug 16 08:23:54 prd-ubuntu1804-docker-4c-4g-1120 sshd[1501]: Disconnected from invalid user jenkins 10.32.4.5 port 54112 [preauth] Aug 16 08:23:56 prd-ubuntu1804-docker-4c-4g-1120 sshd[1503]: Invalid user jenkins from 10.32.4.5 port 54114 Aug 16 08:23:56 prd-ubuntu1804-docker-4c-4g-1120 sshd[1503]: Received disconnect from 10.32.4.5 port 54114:11: Closed due to user request. [preauth] Aug 16 08:23:56 prd-ubuntu1804-docker-4c-4g-1120 sshd[1503]: Disconnected from invalid user jenkins 10.32.4.5 port 54114 [preauth] Aug 16 08:23:58 prd-ubuntu1804-docker-4c-4g-1120 sshd[1505]: Invalid user jenkins from 10.32.4.5 port 54116 Aug 16 08:23:58 prd-ubuntu1804-docker-4c-4g-1120 sshd[1505]: Received disconnect from 10.32.4.5 port 54116:11: Closed due to user request. [preauth] Aug 16 08:23:58 prd-ubuntu1804-docker-4c-4g-1120 sshd[1505]: Disconnected from invalid user jenkins 10.32.4.5 port 54116 [preauth] Aug 16 08:24:01 prd-ubuntu1804-docker-4c-4g-1120 sshd[1635]: Invalid user jenkins from 10.32.4.5 port 54124 Aug 16 08:24:01 prd-ubuntu1804-docker-4c-4g-1120 sshd[1635]: Received disconnect from 10.32.4.5 port 54124:11: Closed due to user request. [preauth] Aug 16 08:24:01 prd-ubuntu1804-docker-4c-4g-1120 sshd[1635]: Disconnected from invalid user jenkins 10.32.4.5 port 54124 [preauth] Aug 16 08:24:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[1637]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 08:24:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[1637]: pam_unix(cron:session): session closed for user root Aug 16 08:24:03 prd-ubuntu1804-docker-4c-4g-1120 sshd[1755]: Invalid user jenkins from 10.32.4.5 port 54126 Aug 16 08:24:03 prd-ubuntu1804-docker-4c-4g-1120 sshd[1755]: Received disconnect from 10.32.4.5 port 54126:11: Closed due to user request. [preauth] Aug 16 08:24:03 prd-ubuntu1804-docker-4c-4g-1120 sshd[1755]: Disconnected from invalid user jenkins 10.32.4.5 port 54126 [preauth] Aug 16 08:24:05 prd-ubuntu1804-docker-4c-4g-1120 sshd[1794]: Invalid user jenkins from 10.32.4.5 port 54128 Aug 16 08:24:06 prd-ubuntu1804-docker-4c-4g-1120 sshd[1794]: Received disconnect from 10.32.4.5 port 54128:11: Closed due to user request. [preauth] Aug 16 08:24:06 prd-ubuntu1804-docker-4c-4g-1120 sshd[1794]: Disconnected from invalid user jenkins 10.32.4.5 port 54128 [preauth] Aug 16 08:24:08 prd-ubuntu1804-docker-4c-4g-1120 sshd[1798]: Invalid user jenkins from 10.32.4.5 port 54132 Aug 16 08:24:08 prd-ubuntu1804-docker-4c-4g-1120 sshd[1798]: Received disconnect from 10.32.4.5 port 54132:11: Closed due to user request. [preauth] Aug 16 08:24:08 prd-ubuntu1804-docker-4c-4g-1120 sshd[1798]: Disconnected from invalid user jenkins 10.32.4.5 port 54132 [preauth] Aug 16 08:24:10 prd-ubuntu1804-docker-4c-4g-1120 useradd[1827]: new group: name=jenkins, GID=1001 Aug 16 08:24:10 prd-ubuntu1804-docker-4c-4g-1120 useradd[1827]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Aug 16 08:24:10 prd-ubuntu1804-docker-4c-4g-1120 usermod[1834]: add 'jenkins' to group 'docker' Aug 16 08:24:10 prd-ubuntu1804-docker-4c-4g-1120 usermod[1834]: add 'jenkins' to shadow group 'docker' Aug 16 08:24:10 prd-ubuntu1804-docker-4c-4g-1120 sshd[1865]: Accepted publickey for jenkins from 10.32.4.5 port 54134 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Aug 16 08:24:10 prd-ubuntu1804-docker-4c-4g-1120 sshd[1865]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Aug 16 08:24:10 prd-ubuntu1804-docker-4c-4g-1120 systemd-logind[965]: New session 2 of user jenkins. Aug 16 08:24:10 prd-ubuntu1804-docker-4c-4g-1120 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Aug 16 08:25:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[2402]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 08:25:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[2402]: pam_unix(cron:session): session closed for user root Aug 16 08:26:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[2459]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 08:26:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[2459]: pam_unix(cron:session): session closed for user root Aug 16 08:27:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[3073]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 08:27:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[3073]: pam_unix(cron:session): session closed for user root Aug 16 08:28:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[5772]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 08:28:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[5772]: pam_unix(cron:session): session closed for user root Aug 16 08:29:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[6585]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 08:29:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[6585]: pam_unix(cron:session): session closed for user root Aug 16 08:30:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[7739]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 08:30:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[7739]: pam_unix(cron:session): session closed for user root Aug 16 08:31:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[8543]: pam_unix(cron:session): session opened for user root by (uid=0) Aug 16 08:31:01 prd-ubuntu1804-docker-4c-4g-1120 CRON[8543]: pam_unix(cron:session): session closed for user root Aug 16 08:31:11 prd-ubuntu1804-docker-4c-4g-1120 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/nonrtric-sample-simplekafkaconsumer-docker-merge-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Aug 16 08:31:11 prd-ubuntu1804-docker-4c-4g-1120 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)