Jul 3 09:03:51 prd-ubuntu2204-docker-v1-8c-8g-4802 passwd[688]: password for 'ubuntu' changed by 'root' Jul 3 09:03:51 prd-ubuntu2204-docker-v1-8c-8g-4802 systemd-logind[720]: New seat seat0. Jul 3 09:03:51 prd-ubuntu2204-docker-v1-8c-8g-4802 systemd-logind[720]: Watching system buttons on /dev/input/event0 (Power Button) Jul 3 09:03:51 prd-ubuntu2204-docker-v1-8c-8g-4802 systemd-logind[720]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Jul 3 09:03:51 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[764]: Server listening on 0.0.0.0 port 22. Jul 3 09:03:51 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[764]: Server listening on :: port 22. Jul 3 09:03:55 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[964]: error: kex_exchange_identification: Connection closed by remote host Jul 3 09:03:55 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[964]: Connection closed by 10.30.104.4 port 35546 Jul 3 09:04:01 prd-ubuntu2204-docker-v1-8c-8g-4802 CRON[972]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Jul 3 09:04:01 prd-ubuntu2204-docker-v1-8c-8g-4802 CRON[972]: pam_unix(cron:session): session closed for user root Jul 3 09:04:03 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[975]: Invalid user jenkins from 10.30.104.4 port 35562 Jul 3 09:04:03 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[975]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Jul 3 09:04:03 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[975]: Received disconnect from 10.30.104.4 port 35562:11: Closed due to user request. [preauth] Jul 3 09:04:03 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[975]: Disconnected from invalid user jenkins 10.30.104.4 port 35562 [preauth] Jul 3 09:04:05 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[977]: Invalid user jenkins from 10.30.104.4 port 35570 Jul 3 09:04:05 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[977]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Jul 3 09:04:05 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[977]: Received disconnect from 10.30.104.4 port 35570:11: Closed due to user request. [preauth] Jul 3 09:04:05 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[977]: Disconnected from invalid user jenkins 10.30.104.4 port 35570 [preauth] Jul 3 09:04:07 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[979]: Invalid user jenkins from 10.30.104.4 port 35576 Jul 3 09:04:07 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[979]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Jul 3 09:04:07 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[979]: Received disconnect from 10.30.104.4 port 35576:11: Closed due to user request. [preauth] Jul 3 09:04:07 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[979]: Disconnected from invalid user jenkins 10.30.104.4 port 35576 [preauth] Jul 3 09:04:10 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1190]: Invalid user jenkins from 10.30.104.4 port 35580 Jul 3 09:04:10 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1190]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Jul 3 09:04:10 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1190]: Received disconnect from 10.30.104.4 port 35580:11: Closed due to user request. [preauth] Jul 3 09:04:10 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1190]: Disconnected from invalid user jenkins 10.30.104.4 port 35580 [preauth] Jul 3 09:04:12 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1244]: Invalid user jenkins from 10.30.104.4 port 35582 Jul 3 09:04:12 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1244]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Jul 3 09:04:12 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1244]: Received disconnect from 10.30.104.4 port 35582:11: Closed due to user request. [preauth] Jul 3 09:04:12 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1244]: Disconnected from invalid user jenkins 10.30.104.4 port 35582 [preauth] Jul 3 09:04:14 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1248]: Invalid user jenkins from 10.30.104.4 port 35588 Jul 3 09:04:14 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1248]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Jul 3 09:04:14 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1248]: Received disconnect from 10.30.104.4 port 35588:11: Closed due to user request. [preauth] Jul 3 09:04:14 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1248]: Disconnected from invalid user jenkins 10.30.104.4 port 35588 [preauth] Jul 3 09:04:15 prd-ubuntu2204-docker-v1-8c-8g-4802 useradd[1255]: new group: name=jenkins, GID=1001 Jul 3 09:04:15 prd-ubuntu2204-docker-v1-8c-8g-4802 useradd[1255]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash, from=none Jul 3 09:04:15 prd-ubuntu2204-docker-v1-8c-8g-4802 usermod[1264]: add 'jenkins' to group 'docker' Jul 3 09:04:15 prd-ubuntu2204-docker-v1-8c-8g-4802 usermod[1264]: add 'jenkins' to shadow group 'docker' Jul 3 09:04:17 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1303]: Accepted publickey for jenkins from 10.30.104.4 port 35592 ssh2: RSA SHA256:V0799BjlU//1ruj1g81rY7MeNIJkwAJ0Kr3lNX3XaN4 Jul 3 09:04:17 prd-ubuntu2204-docker-v1-8c-8g-4802 sshd[1303]: pam_unix(sshd:session): session opened for user jenkins(uid=1001) by (uid=0) Jul 3 09:04:17 prd-ubuntu2204-docker-v1-8c-8g-4802 systemd-logind[720]: New session 2 of user jenkins. Jul 3 09:04:17 prd-ubuntu2204-docker-v1-8c-8g-4802 systemd: pam_unix(systemd-user:session): session opened for user jenkins(uid=1001) by (uid=0) Jul 3 09:05:02 prd-ubuntu2204-docker-v1-8c-8g-4802 CRON[1822]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Jul 3 09:05:02 prd-ubuntu2204-docker-v1-8c-8g-4802 CRON[1822]: pam_unix(cron:session): session closed for user root Jul 3 09:06:01 prd-ubuntu2204-docker-v1-8c-8g-4802 CRON[2649]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Jul 3 09:06:01 prd-ubuntu2204-docker-v1-8c-8g-4802 CRON[2649]: pam_unix(cron:session): session closed for user root Jul 3 09:06:07 prd-ubuntu2204-docker-v1-8c-8g-4802 sudo: jenkins : PWD=/w/workspace/multicloud-k8s-master-validation-scripts-verify-python ; USER=root ; COMMAND=/usr/bin/cp /var/log/auth.log /tmp Jul 3 09:06:07 prd-ubuntu2204-docker-v1-8c-8g-4802 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001)