Sep 25 08:52:56 prd-ubuntu2204-docker-8c-8g-1096 passwd[744]: password for 'ubuntu' changed by 'root' Sep 25 08:52:56 prd-ubuntu2204-docker-8c-8g-1096 systemd-logind[776]: New seat seat0. Sep 25 08:52:56 prd-ubuntu2204-docker-8c-8g-1096 systemd-logind[776]: Watching system buttons on /dev/input/event0 (Power Button) Sep 25 08:52:56 prd-ubuntu2204-docker-8c-8g-1096 systemd-logind[776]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Sep 25 08:52:56 prd-ubuntu2204-docker-8c-8g-1096 sshd[813]: Server listening on 0.0.0.0 port 22. Sep 25 08:52:56 prd-ubuntu2204-docker-8c-8g-1096 sshd[813]: Server listening on :: port 22. Sep 25 08:52:59 prd-ubuntu2204-docker-8c-8g-1096 sshd[1012]: error: kex_exchange_identification: Connection closed by remote host Sep 25 08:52:59 prd-ubuntu2204-docker-8c-8g-1096 sshd[1012]: Connection closed by 10.30.168.15 port 50172 Sep 25 08:53:01 prd-ubuntu2204-docker-8c-8g-1096 CRON[1013]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Sep 25 08:53:01 prd-ubuntu2204-docker-8c-8g-1096 CRON[1013]: pam_unix(cron:session): session closed for user root Sep 25 08:53:09 prd-ubuntu2204-docker-8c-8g-1096 sshd[1022]: Invalid user jenkins from 10.30.168.15 port 50256 Sep 25 08:53:09 prd-ubuntu2204-docker-8c-8g-1096 sshd[1022]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Sep 25 08:53:10 prd-ubuntu2204-docker-8c-8g-1096 sshd[1022]: Received disconnect from 10.30.168.15 port 50256:11: Closed due to user request. [preauth] Sep 25 08:53:10 prd-ubuntu2204-docker-8c-8g-1096 sshd[1022]: Disconnected from invalid user jenkins 10.30.168.15 port 50256 [preauth] Sep 25 08:53:18 prd-ubuntu2204-docker-8c-8g-1096 sshd[1305]: Invalid user jenkins from 10.30.168.15 port 50388 Sep 25 08:53:18 prd-ubuntu2204-docker-8c-8g-1096 sshd[1305]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Sep 25 08:53:18 prd-ubuntu2204-docker-8c-8g-1096 sshd[1305]: Received disconnect from 10.30.168.15 port 50388:11: Closed due to user request. [preauth] Sep 25 08:53:18 prd-ubuntu2204-docker-8c-8g-1096 sshd[1305]: Disconnected from invalid user jenkins 10.30.168.15 port 50388 [preauth] Sep 25 08:53:23 prd-ubuntu2204-docker-8c-8g-1096 useradd[1408]: new group: name=jenkins, GID=1001 Sep 25 08:53:23 prd-ubuntu2204-docker-8c-8g-1096 useradd[1408]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash, from=none Sep 25 08:53:23 prd-ubuntu2204-docker-8c-8g-1096 usermod[1417]: add 'jenkins' to group 'docker' Sep 25 08:53:23 prd-ubuntu2204-docker-8c-8g-1096 usermod[1417]: add 'jenkins' to shadow group 'docker' Sep 25 08:53:29 prd-ubuntu2204-docker-8c-8g-1096 sshd[1451]: Accepted publickey for jenkins from 10.30.168.15 port 50486 ssh2: RSA SHA256:BBsm4mRgG5V0fGum4Y1Rmy/vs16stdRVhwvexlLUhUs Sep 25 08:53:29 prd-ubuntu2204-docker-8c-8g-1096 sshd[1451]: pam_unix(sshd:session): session opened for user jenkins(uid=1001) by (uid=0) Sep 25 08:53:29 prd-ubuntu2204-docker-8c-8g-1096 systemd-logind[776]: New session 2 of user jenkins. Sep 25 08:53:29 prd-ubuntu2204-docker-8c-8g-1096 systemd: pam_unix(systemd-user:session): session opened for user jenkins(uid=1001) by (uid=0) Sep 25 08:54:03 prd-ubuntu2204-docker-8c-8g-1096 CRON[1941]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Sep 25 08:54:03 prd-ubuntu2204-docker-8c-8g-1096 CRON[1941]: pam_unix(cron:session): session closed for user root Sep 25 08:55:01 prd-ubuntu2204-docker-8c-8g-1096 CRON[2319]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Sep 25 08:55:01 prd-ubuntu2204-docker-8c-8g-1096 CRON[2319]: pam_unix(cron:session): session closed for user root Sep 25 08:56:01 prd-ubuntu2204-docker-8c-8g-1096 CRON[3604]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Sep 25 08:56:01 prd-ubuntu2204-docker-8c-8g-1096 CRON[3604]: pam_unix(cron:session): session closed for user root Sep 25 08:56:05 prd-ubuntu2204-docker-8c-8g-1096 sudo: jenkins : PWD=/w/workspace/bgpcep-tox-verify-master ; USER=root ; COMMAND=/usr/bin/cp /var/log/auth.log /tmp Sep 25 08:56:05 prd-ubuntu2204-docker-8c-8g-1096 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001)