Jan 15 22:25:42 prd-ubuntu1804-docker-4c-4g-1947 passwd[932]: password for 'ubuntu' changed by 'root' Jan 15 22:25:42 prd-ubuntu1804-docker-4c-4g-1947 systemd-logind[1019]: Watching system buttons on /dev/input/event0 (Power Button) Jan 15 22:25:42 prd-ubuntu1804-docker-4c-4g-1947 systemd-logind[1019]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Jan 15 22:25:42 prd-ubuntu1804-docker-4c-4g-1947 systemd-logind[1019]: New seat seat0. Jan 15 22:25:42 prd-ubuntu1804-docker-4c-4g-1947 sshd[1251]: Server listening on 0.0.0.0 port 22. Jan 15 22:25:42 prd-ubuntu1804-docker-4c-4g-1947 sshd[1251]: Server listening on :: port 22. Jan 15 22:25:48 prd-ubuntu1804-docker-4c-4g-1947 sshd[1504]: Did not receive identification string from 10.32.4.5 port 33192 Jan 15 22:25:57 prd-ubuntu1804-docker-4c-4g-1947 sshd[1525]: Invalid user jenkins from 10.32.4.5 port 33200 Jan 15 22:25:57 prd-ubuntu1804-docker-4c-4g-1947 sshd[1525]: Received disconnect from 10.32.4.5 port 33200:11: Closed due to user request. [preauth] Jan 15 22:25:57 prd-ubuntu1804-docker-4c-4g-1947 sshd[1525]: Disconnected from invalid user jenkins 10.32.4.5 port 33200 [preauth] Jan 15 22:26:00 prd-ubuntu1804-docker-4c-4g-1947 sshd[1529]: Invalid user jenkins from 10.32.4.5 port 33204 Jan 15 22:26:00 prd-ubuntu1804-docker-4c-4g-1947 sshd[1529]: Received disconnect from 10.32.4.5 port 33204:11: Closed due to user request. [preauth] Jan 15 22:26:00 prd-ubuntu1804-docker-4c-4g-1947 sshd[1529]: Disconnected from invalid user jenkins 10.32.4.5 port 33204 [preauth] Jan 15 22:26:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[1531]: pam_unix(cron:session): session opened for user root by (uid=0) Jan 15 22:26:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[1531]: pam_unix(cron:session): session closed for user root Jan 15 22:26:02 prd-ubuntu1804-docker-4c-4g-1947 sshd[1539]: Invalid user jenkins from 10.32.4.5 port 33208 Jan 15 22:26:02 prd-ubuntu1804-docker-4c-4g-1947 sshd[1539]: Received disconnect from 10.32.4.5 port 33208:11: Closed due to user request. [preauth] Jan 15 22:26:02 prd-ubuntu1804-docker-4c-4g-1947 sshd[1539]: Disconnected from invalid user jenkins 10.32.4.5 port 33208 [preauth] Jan 15 22:26:04 prd-ubuntu1804-docker-4c-4g-1947 sshd[1551]: Invalid user jenkins from 10.32.4.5 port 33210 Jan 15 22:26:04 prd-ubuntu1804-docker-4c-4g-1947 sshd[1551]: Received disconnect from 10.32.4.5 port 33210:11: Closed due to user request. [preauth] Jan 15 22:26:04 prd-ubuntu1804-docker-4c-4g-1947 sshd[1551]: Disconnected from invalid user jenkins 10.32.4.5 port 33210 [preauth] Jan 15 22:26:07 prd-ubuntu1804-docker-4c-4g-1947 sshd[1781]: Invalid user jenkins from 10.32.4.5 port 33212 Jan 15 22:26:07 prd-ubuntu1804-docker-4c-4g-1947 sshd[1781]: Received disconnect from 10.32.4.5 port 33212:11: Closed due to user request. [preauth] Jan 15 22:26:07 prd-ubuntu1804-docker-4c-4g-1947 sshd[1781]: Disconnected from invalid user jenkins 10.32.4.5 port 33212 [preauth] Jan 15 22:26:09 prd-ubuntu1804-docker-4c-4g-1947 sshd[1822]: Invalid user jenkins from 10.32.4.5 port 33214 Jan 15 22:26:09 prd-ubuntu1804-docker-4c-4g-1947 sshd[1822]: Received disconnect from 10.32.4.5 port 33214:11: Closed due to user request. [preauth] Jan 15 22:26:09 prd-ubuntu1804-docker-4c-4g-1947 sshd[1822]: Disconnected from invalid user jenkins 10.32.4.5 port 33214 [preauth] Jan 15 22:26:11 prd-ubuntu1804-docker-4c-4g-1947 sshd[1826]: Invalid user jenkins from 10.32.4.5 port 33216 Jan 15 22:26:11 prd-ubuntu1804-docker-4c-4g-1947 sshd[1826]: Received disconnect from 10.32.4.5 port 33216:11: Closed due to user request. [preauth] Jan 15 22:26:11 prd-ubuntu1804-docker-4c-4g-1947 sshd[1826]: Disconnected from invalid user jenkins 10.32.4.5 port 33216 [preauth] Jan 15 22:26:11 prd-ubuntu1804-docker-4c-4g-1947 useradd[1842]: new group: name=jenkins, GID=1001 Jan 15 22:26:11 prd-ubuntu1804-docker-4c-4g-1947 useradd[1842]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Jan 15 22:26:11 prd-ubuntu1804-docker-4c-4g-1947 usermod[1849]: add 'jenkins' to group 'docker' Jan 15 22:26:11 prd-ubuntu1804-docker-4c-4g-1947 usermod[1849]: add 'jenkins' to shadow group 'docker' Jan 15 22:26:13 prd-ubuntu1804-docker-4c-4g-1947 sshd[1883]: Accepted publickey for jenkins from 10.32.4.5 port 33218 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Jan 15 22:26:13 prd-ubuntu1804-docker-4c-4g-1947 sshd[1883]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Jan 15 22:26:13 prd-ubuntu1804-docker-4c-4g-1947 systemd-logind[1019]: New session 2 of user jenkins. Jan 15 22:26:13 prd-ubuntu1804-docker-4c-4g-1947 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Jan 15 22:27:02 prd-ubuntu1804-docker-4c-4g-1947 CRON[2441]: pam_unix(cron:session): session opened for user root by (uid=0) Jan 15 22:27:02 prd-ubuntu1804-docker-4c-4g-1947 CRON[2441]: pam_unix(cron:session): session closed for user root Jan 15 22:28:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[3260]: pam_unix(cron:session): session opened for user root by (uid=0) Jan 15 22:28:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[3260]: pam_unix(cron:session): session closed for user root Jan 15 22:29:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[3519]: pam_unix(cron:session): session opened for user root by (uid=0) Jan 15 22:29:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[3519]: pam_unix(cron:session): session closed for user root Jan 15 22:30:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[3523]: pam_unix(cron:session): session opened for user root by (uid=0) Jan 15 22:30:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[3523]: pam_unix(cron:session): session closed for user root Jan 15 22:31:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[8170]: pam_unix(cron:session): session opened for user root by (uid=0) Jan 15 22:31:01 prd-ubuntu1804-docker-4c-4g-1947 CRON[8170]: pam_unix(cron:session): session closed for user root Jan 15 22:31:58 prd-ubuntu1804-docker-4c-4g-1947 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/sim-e2-interface-docker-merge-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Jan 15 22:31:58 prd-ubuntu1804-docker-4c-4g-1947 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)