Mar 2 15:45:38 prd-ubuntu2204-docker-8c-8g-1065 passwd[739]: password for 'ubuntu' changed by 'root' Mar 2 15:45:38 prd-ubuntu2204-docker-8c-8g-1065 systemd-logind[771]: New seat seat0. Mar 2 15:45:38 prd-ubuntu2204-docker-8c-8g-1065 systemd-logind[771]: Watching system buttons on /dev/input/event0 (Power Button) Mar 2 15:45:38 prd-ubuntu2204-docker-8c-8g-1065 systemd-logind[771]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) Mar 2 15:45:38 prd-ubuntu2204-docker-8c-8g-1065 sshd[822]: Server listening on 0.0.0.0 port 22. Mar 2 15:45:38 prd-ubuntu2204-docker-8c-8g-1065 sshd[822]: Server listening on :: port 22. Mar 2 15:45:40 prd-ubuntu2204-docker-8c-8g-1065 sshd[1030]: error: kex_exchange_identification: Connection closed by remote host Mar 2 15:45:40 prd-ubuntu2204-docker-8c-8g-1065 sshd[1030]: Connection closed by 10.30.104.4 port 50178 Mar 2 15:45:48 prd-ubuntu2204-docker-8c-8g-1065 sshd[1038]: Invalid user jenkins from 10.30.104.4 port 50184 Mar 2 15:45:48 prd-ubuntu2204-docker-8c-8g-1065 sshd[1038]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Mar 2 15:45:48 prd-ubuntu2204-docker-8c-8g-1065 sshd[1038]: Received disconnect from 10.30.104.4 port 50184:11: Closed due to user request. [preauth] Mar 2 15:45:48 prd-ubuntu2204-docker-8c-8g-1065 sshd[1038]: Disconnected from invalid user jenkins 10.30.104.4 port 50184 [preauth] Mar 2 15:45:50 prd-ubuntu2204-docker-8c-8g-1065 sshd[1040]: Invalid user jenkins from 10.30.104.4 port 50188 Mar 2 15:45:50 prd-ubuntu2204-docker-8c-8g-1065 sshd[1040]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Mar 2 15:45:50 prd-ubuntu2204-docker-8c-8g-1065 sshd[1040]: Received disconnect from 10.30.104.4 port 50188:11: Closed due to user request. [preauth] Mar 2 15:45:50 prd-ubuntu2204-docker-8c-8g-1065 sshd[1040]: Disconnected from invalid user jenkins 10.30.104.4 port 50188 [preauth] Mar 2 15:45:53 prd-ubuntu2204-docker-8c-8g-1065 sshd[1042]: Invalid user jenkins from 10.30.104.4 port 50190 Mar 2 15:45:53 prd-ubuntu2204-docker-8c-8g-1065 sshd[1042]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Mar 2 15:45:53 prd-ubuntu2204-docker-8c-8g-1065 sshd[1042]: Received disconnect from 10.30.104.4 port 50190:11: Closed due to user request. [preauth] Mar 2 15:45:53 prd-ubuntu2204-docker-8c-8g-1065 sshd[1042]: Disconnected from invalid user jenkins 10.30.104.4 port 50190 [preauth] Mar 2 15:45:55 prd-ubuntu2204-docker-8c-8g-1065 sshd[1064]: Invalid user jenkins from 10.30.104.4 port 50194 Mar 2 15:45:55 prd-ubuntu2204-docker-8c-8g-1065 sshd[1064]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Mar 2 15:45:55 prd-ubuntu2204-docker-8c-8g-1065 sshd[1064]: Received disconnect from 10.30.104.4 port 50194:11: Closed due to user request. [preauth] Mar 2 15:45:55 prd-ubuntu2204-docker-8c-8g-1065 sshd[1064]: Disconnected from invalid user jenkins 10.30.104.4 port 50194 [preauth] Mar 2 15:45:57 prd-ubuntu2204-docker-8c-8g-1065 sshd[1306]: Invalid user jenkins from 10.30.104.4 port 50196 Mar 2 15:45:57 prd-ubuntu2204-docker-8c-8g-1065 sshd[1306]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Mar 2 15:45:57 prd-ubuntu2204-docker-8c-8g-1065 sshd[1306]: Received disconnect from 10.30.104.4 port 50196:11: Closed due to user request. [preauth] Mar 2 15:45:57 prd-ubuntu2204-docker-8c-8g-1065 sshd[1306]: Disconnected from invalid user jenkins 10.30.104.4 port 50196 [preauth] Mar 2 15:46:00 prd-ubuntu2204-docker-8c-8g-1065 sshd[1312]: Invalid user jenkins from 10.30.104.4 port 50198 Mar 2 15:46:00 prd-ubuntu2204-docker-8c-8g-1065 sshd[1312]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Mar 2 15:46:00 prd-ubuntu2204-docker-8c-8g-1065 sshd[1312]: Received disconnect from 10.30.104.4 port 50198:11: Closed due to user request. [preauth] Mar 2 15:46:00 prd-ubuntu2204-docker-8c-8g-1065 sshd[1312]: Disconnected from invalid user jenkins 10.30.104.4 port 50198 [preauth] Mar 2 15:46:01 prd-ubuntu2204-docker-8c-8g-1065 useradd[1333]: new group: name=jenkins, GID=1001 Mar 2 15:46:01 prd-ubuntu2204-docker-8c-8g-1065 useradd[1333]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash, from=none Mar 2 15:46:01 prd-ubuntu2204-docker-8c-8g-1065 usermod[1342]: add 'jenkins' to group 'docker' Mar 2 15:46:01 prd-ubuntu2204-docker-8c-8g-1065 usermod[1342]: add 'jenkins' to shadow group 'docker' Mar 2 15:46:02 prd-ubuntu2204-docker-8c-8g-1065 sshd[1355]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] Mar 2 15:46:02 prd-ubuntu2204-docker-8c-8g-1065 sshd[1355]: Received disconnect from 10.30.104.4 port 50202:11: Closed due to user request. [preauth] Mar 2 15:46:02 prd-ubuntu2204-docker-8c-8g-1065 sshd[1355]: Disconnected from authenticating user jenkins 10.30.104.4 port 50202 [preauth] Mar 2 15:46:02 prd-ubuntu2204-docker-8c-8g-1065 CRON[1368]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:46:02 prd-ubuntu2204-docker-8c-8g-1065 CRON[1368]: pam_unix(cron:session): session closed for user root Mar 2 15:46:04 prd-ubuntu2204-docker-8c-8g-1065 sshd[1400]: Accepted publickey for jenkins from 10.30.104.4 port 50204 ssh2: RSA SHA256:V0799BjlU//1ruj1g81rY7MeNIJkwAJ0Kr3lNX3XaN4 Mar 2 15:46:04 prd-ubuntu2204-docker-8c-8g-1065 sshd[1400]: pam_unix(sshd:session): session opened for user jenkins(uid=1001) by (uid=0) Mar 2 15:46:04 prd-ubuntu2204-docker-8c-8g-1065 systemd-logind[771]: New session 2 of user jenkins. Mar 2 15:46:04 prd-ubuntu2204-docker-8c-8g-1065 systemd: pam_unix(systemd-user:session): session opened for user jenkins(uid=1001) by (uid=0) Mar 2 15:47:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[1912]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:47:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[1912]: pam_unix(cron:session): session closed for user root Mar 2 15:47:05 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/java java /usr/lib/jvm/java-21-openjdk-amd64/bin/java 1 Mar 2 15:47:05 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:47:05 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/javac javac /usr/lib/jvm/java-21-openjdk-amd64/bin/javac 1 Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/lib/jvm/java-openjdk java_sdk_openjdk /usr/lib/jvm/java-21-openjdk-amd64 1 Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java /usr/lib/jvm/java-21-openjdk-amd64/bin/java Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set javac /usr/lib/jvm/java-21-openjdk-amd64/bin/javac Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java_sdk_openjdk /usr/lib/jvm/java-21-openjdk-amd64 Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:47:06 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:48:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[2548]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:48:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[2548]: pam_unix(cron:session): session closed for user root Mar 2 15:49:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[3495]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:49:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[3495]: pam_unix(cron:session): session closed for user root Mar 2 15:50:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[4493]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:50:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[4493]: pam_unix(cron:session): session closed for user root Mar 2 15:51:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[4861]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:51:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[4861]: pam_unix(cron:session): session closed for user root Mar 2 15:52:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[5108]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:52:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[5108]: pam_unix(cron:session): session closed for user root Mar 2 15:53:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[5385]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:53:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[5385]: pam_unix(cron:session): session closed for user root Mar 2 15:54:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[5627]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:54:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[5627]: pam_unix(cron:session): session closed for user root Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/java java /usr/lib/jvm/java-17-openjdk-amd64/bin/java 1 Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/javac javac /usr/lib/jvm/java-17-openjdk-amd64/bin/javac 1 Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/lib/jvm/java-openjdk java_sdk_openjdk /usr/lib/jvm/java-17-openjdk-amd64 1 Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java /usr/lib/jvm/java-17-openjdk-amd64/bin/java Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set javac /usr/lib/jvm/java-17-openjdk-amd64/bin/javac Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java_sdk_openjdk /usr/lib/jvm/java-17-openjdk-amd64 Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) Mar 2 15:54:10 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session closed for user root Mar 2 15:55:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[5920]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) Mar 2 15:55:01 prd-ubuntu2204-docker-8c-8g-1065 CRON[5920]: pam_unix(cron:session): session closed for user root Mar 2 15:55:37 prd-ubuntu2204-docker-8c-8g-1065 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/cp /var/log/auth.log /tmp Mar 2 15:55:37 prd-ubuntu2204-docker-8c-8g-1065 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001)