Nov 19 22:25:47 prd-ubuntu1804-docker-4c-4g-9695 passwd[970]: password for 'ubuntu' changed by 'root' Nov 19 22:25:47 prd-ubuntu1804-docker-4c-4g-9695 systemd-logind[1073]: Watching system buttons on /dev/input/event0 (Power Button) Nov 19 22:25:47 prd-ubuntu1804-docker-4c-4g-9695 systemd-logind[1073]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Nov 19 22:25:47 prd-ubuntu1804-docker-4c-4g-9695 systemd-logind[1073]: New seat seat0. Nov 19 22:25:47 prd-ubuntu1804-docker-4c-4g-9695 sshd[1186]: Server listening on 0.0.0.0 port 22. Nov 19 22:25:47 prd-ubuntu1804-docker-4c-4g-9695 sshd[1186]: Server listening on :: port 22. Nov 19 22:25:52 prd-ubuntu1804-docker-4c-4g-9695 sshd[1506]: Did not receive identification string from 10.32.4.5 port 36432 Nov 19 22:25:56 prd-ubuntu1804-docker-4c-4g-9695 sshd[1544]: Invalid user jenkins from 10.32.4.5 port 36436 Nov 19 22:25:56 prd-ubuntu1804-docker-4c-4g-9695 sshd[1544]: Received disconnect from 10.32.4.5 port 36436:11: Closed due to user request. [preauth] Nov 19 22:25:56 prd-ubuntu1804-docker-4c-4g-9695 sshd[1544]: Disconnected from invalid user jenkins 10.32.4.5 port 36436 [preauth] Nov 19 22:25:58 prd-ubuntu1804-docker-4c-4g-9695 sshd[1548]: Invalid user jenkins from 10.32.4.5 port 36438 Nov 19 22:25:58 prd-ubuntu1804-docker-4c-4g-9695 sshd[1548]: Received disconnect from 10.32.4.5 port 36438:11: Closed due to user request. [preauth] Nov 19 22:25:58 prd-ubuntu1804-docker-4c-4g-9695 sshd[1548]: Disconnected from invalid user jenkins 10.32.4.5 port 36438 [preauth] Nov 19 22:26:00 prd-ubuntu1804-docker-4c-4g-9695 sshd[1568]: Invalid user jenkins from 10.32.4.5 port 36446 Nov 19 22:26:00 prd-ubuntu1804-docker-4c-4g-9695 sshd[1568]: Received disconnect from 10.32.4.5 port 36446:11: Closed due to user request. [preauth] Nov 19 22:26:00 prd-ubuntu1804-docker-4c-4g-9695 sshd[1568]: Disconnected from invalid user jenkins 10.32.4.5 port 36446 [preauth] Nov 19 22:26:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[1570]: pam_unix(cron:session): session opened for user root by (uid=0) Nov 19 22:26:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[1570]: pam_unix(cron:session): session closed for user root Nov 19 22:26:02 prd-ubuntu1804-docker-4c-4g-9695 sshd[1578]: Invalid user jenkins from 10.32.4.5 port 36448 Nov 19 22:26:02 prd-ubuntu1804-docker-4c-4g-9695 sshd[1578]: Received disconnect from 10.32.4.5 port 36448:11: Closed due to user request. [preauth] Nov 19 22:26:02 prd-ubuntu1804-docker-4c-4g-9695 sshd[1578]: Disconnected from invalid user jenkins 10.32.4.5 port 36448 [preauth] Nov 19 22:26:04 prd-ubuntu1804-docker-4c-4g-9695 sshd[1580]: Invalid user jenkins from 10.32.4.5 port 36450 Nov 19 22:26:04 prd-ubuntu1804-docker-4c-4g-9695 sshd[1580]: Received disconnect from 10.32.4.5 port 36450:11: Closed due to user request. [preauth] Nov 19 22:26:04 prd-ubuntu1804-docker-4c-4g-9695 sshd[1580]: Disconnected from invalid user jenkins 10.32.4.5 port 36450 [preauth] Nov 19 22:26:06 prd-ubuntu1804-docker-4c-4g-9695 sshd[1582]: Invalid user jenkins from 10.32.4.5 port 36452 Nov 19 22:26:06 prd-ubuntu1804-docker-4c-4g-9695 sshd[1582]: Received disconnect from 10.32.4.5 port 36452:11: Closed due to user request. [preauth] Nov 19 22:26:06 prd-ubuntu1804-docker-4c-4g-9695 sshd[1582]: Disconnected from invalid user jenkins 10.32.4.5 port 36452 [preauth] Nov 19 22:26:08 prd-ubuntu1804-docker-4c-4g-9695 sshd[1584]: Invalid user jenkins from 10.32.4.5 port 36456 Nov 19 22:26:08 prd-ubuntu1804-docker-4c-4g-9695 sshd[1584]: Received disconnect from 10.32.4.5 port 36456:11: Closed due to user request. [preauth] Nov 19 22:26:08 prd-ubuntu1804-docker-4c-4g-9695 sshd[1584]: Disconnected from invalid user jenkins 10.32.4.5 port 36456 [preauth] Nov 19 22:26:11 prd-ubuntu1804-docker-4c-4g-9695 sshd[1789]: Invalid user jenkins from 10.32.4.5 port 36458 Nov 19 22:26:11 prd-ubuntu1804-docker-4c-4g-9695 sshd[1789]: Received disconnect from 10.32.4.5 port 36458:11: Closed due to user request. [preauth] Nov 19 22:26:11 prd-ubuntu1804-docker-4c-4g-9695 sshd[1789]: Disconnected from invalid user jenkins 10.32.4.5 port 36458 [preauth] Nov 19 22:26:13 prd-ubuntu1804-docker-4c-4g-9695 sshd[1842]: Invalid user jenkins from 10.32.4.5 port 36460 Nov 19 22:26:13 prd-ubuntu1804-docker-4c-4g-9695 sshd[1842]: Received disconnect from 10.32.4.5 port 36460:11: Closed due to user request. [preauth] Nov 19 22:26:13 prd-ubuntu1804-docker-4c-4g-9695 sshd[1842]: Disconnected from invalid user jenkins 10.32.4.5 port 36460 [preauth] Nov 19 22:26:15 prd-ubuntu1804-docker-4c-4g-9695 sshd[1860]: Invalid user jenkins from 10.32.4.5 port 36462 Nov 19 22:26:15 prd-ubuntu1804-docker-4c-4g-9695 sshd[1860]: Received disconnect from 10.32.4.5 port 36462:11: Closed due to user request. [preauth] Nov 19 22:26:15 prd-ubuntu1804-docker-4c-4g-9695 sshd[1860]: Disconnected from invalid user jenkins 10.32.4.5 port 36462 [preauth] Nov 19 22:26:17 prd-ubuntu1804-docker-4c-4g-9695 sshd[1864]: Invalid user jenkins from 10.32.4.5 port 36464 Nov 19 22:26:17 prd-ubuntu1804-docker-4c-4g-9695 sshd[1864]: Received disconnect from 10.32.4.5 port 36464:11: Closed due to user request. [preauth] Nov 19 22:26:17 prd-ubuntu1804-docker-4c-4g-9695 sshd[1864]: Disconnected from invalid user jenkins 10.32.4.5 port 36464 [preauth] Nov 19 22:26:18 prd-ubuntu1804-docker-4c-4g-9695 useradd[1880]: new group: name=jenkins, GID=1001 Nov 19 22:26:18 prd-ubuntu1804-docker-4c-4g-9695 useradd[1880]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash Nov 19 22:26:18 prd-ubuntu1804-docker-4c-4g-9695 usermod[1887]: add 'jenkins' to group 'docker' Nov 19 22:26:18 prd-ubuntu1804-docker-4c-4g-9695 usermod[1887]: add 'jenkins' to shadow group 'docker' Nov 19 22:26:19 prd-ubuntu1804-docker-4c-4g-9695 sshd[1929]: Accepted publickey for jenkins from 10.32.4.5 port 36468 ssh2: RSA SHA256:MwkAMVxCcf5mjE3h3rXSsWkdX5TtX0v/kuPsZexJ1qI Nov 19 22:26:19 prd-ubuntu1804-docker-4c-4g-9695 sshd[1929]: pam_unix(sshd:session): session opened for user jenkins by (uid=0) Nov 19 22:26:19 prd-ubuntu1804-docker-4c-4g-9695 systemd-logind[1073]: New session 2 of user jenkins. Nov 19 22:26:19 prd-ubuntu1804-docker-4c-4g-9695 systemd: pam_unix(systemd-user:session): session opened for user jenkins by (uid=0) Nov 19 22:27:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[2448]: pam_unix(cron:session): session opened for user root by (uid=0) Nov 19 22:27:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[2448]: pam_unix(cron:session): session closed for user root Nov 19 22:28:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[2489]: pam_unix(cron:session): session opened for user root by (uid=0) Nov 19 22:28:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[2489]: pam_unix(cron:session): session closed for user root Nov 19 22:29:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[2937]: pam_unix(cron:session): session opened for user root by (uid=0) Nov 19 22:29:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[2937]: pam_unix(cron:session): session closed for user root Nov 19 22:30:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[3516]: pam_unix(cron:session): session opened for user root by (uid=0) Nov 19 22:30:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[3516]: pam_unix(cron:session): session closed for user root Nov 19 22:31:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[3522]: pam_unix(cron:session): session opened for user root by (uid=0) Nov 19 22:31:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[3522]: pam_unix(cron:session): session closed for user root Nov 19 22:32:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[6537]: pam_unix(cron:session): session opened for user root by (uid=0) Nov 19 22:32:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[6537]: pam_unix(cron:session): session closed for user root Nov 19 22:33:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[8378]: pam_unix(cron:session): session opened for user root by (uid=0) Nov 19 22:33:01 prd-ubuntu1804-docker-4c-4g-9695 CRON[8378]: pam_unix(cron:session): session closed for user root Nov 19 22:33:47 prd-ubuntu1804-docker-4c-4g-9695 sudo: jenkins : TTY=unknown ; PWD=/w/workspace/sim-e2-interface-docker-merge-master ; USER=root ; COMMAND=/bin/cp /var/log/auth.log /tmp Nov 19 22:33:47 prd-ubuntu1804-docker-4c-4g-9695 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)