May 25 11:47:16 prd-ubuntu2204-docker-8c-8g-3537 passwd[737]: password for 'ubuntu' changed by 'root' May 25 11:47:16 prd-ubuntu2204-docker-8c-8g-3537 systemd-logind[769]: New seat seat0. May 25 11:47:16 prd-ubuntu2204-docker-8c-8g-3537 systemd-logind[769]: Watching system buttons on /dev/input/event0 (Power Button) May 25 11:47:16 prd-ubuntu2204-docker-8c-8g-3537 systemd-logind[769]: Watching system buttons on /dev/input/event1 (AT Translated Set 2 keyboard) May 25 11:47:16 prd-ubuntu2204-docker-8c-8g-3537 sshd[821]: Server listening on 0.0.0.0 port 22. May 25 11:47:16 prd-ubuntu2204-docker-8c-8g-3537 sshd[821]: Server listening on :: port 22. May 25 11:47:17 prd-ubuntu2204-docker-8c-8g-3537 sshd[957]: error: kex_exchange_identification: Connection closed by remote host May 25 11:47:17 prd-ubuntu2204-docker-8c-8g-3537 sshd[957]: Connection closed by 10.30.104.4 port 59188 May 25 11:47:26 prd-ubuntu2204-docker-8c-8g-3537 sshd[1036]: Invalid user jenkins from 10.30.104.4 port 59192 May 25 11:47:26 prd-ubuntu2204-docker-8c-8g-3537 sshd[1036]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] May 25 11:47:26 prd-ubuntu2204-docker-8c-8g-3537 sshd[1036]: Received disconnect from 10.30.104.4 port 59192:11: Closed due to user request. [preauth] May 25 11:47:26 prd-ubuntu2204-docker-8c-8g-3537 sshd[1036]: Disconnected from invalid user jenkins 10.30.104.4 port 59192 [preauth] May 25 11:47:28 prd-ubuntu2204-docker-8c-8g-3537 sshd[1038]: Invalid user jenkins from 10.30.104.4 port 59194 May 25 11:47:28 prd-ubuntu2204-docker-8c-8g-3537 sshd[1038]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] May 25 11:47:29 prd-ubuntu2204-docker-8c-8g-3537 sshd[1038]: Received disconnect from 10.30.104.4 port 59194:11: Closed due to user request. [preauth] May 25 11:47:29 prd-ubuntu2204-docker-8c-8g-3537 sshd[1038]: Disconnected from invalid user jenkins 10.30.104.4 port 59194 [preauth] May 25 11:47:31 prd-ubuntu2204-docker-8c-8g-3537 sshd[1040]: Invalid user jenkins from 10.30.104.4 port 59202 May 25 11:47:31 prd-ubuntu2204-docker-8c-8g-3537 sshd[1040]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] May 25 11:47:31 prd-ubuntu2204-docker-8c-8g-3537 sshd[1040]: Received disconnect from 10.30.104.4 port 59202:11: Closed due to user request. [preauth] May 25 11:47:31 prd-ubuntu2204-docker-8c-8g-3537 sshd[1040]: Disconnected from invalid user jenkins 10.30.104.4 port 59202 [preauth] May 25 11:47:33 prd-ubuntu2204-docker-8c-8g-3537 sshd[1042]: Invalid user jenkins from 10.30.104.4 port 59204 May 25 11:47:33 prd-ubuntu2204-docker-8c-8g-3537 sshd[1042]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] May 25 11:47:33 prd-ubuntu2204-docker-8c-8g-3537 sshd[1042]: Received disconnect from 10.30.104.4 port 59204:11: Closed due to user request. [preauth] May 25 11:47:33 prd-ubuntu2204-docker-8c-8g-3537 sshd[1042]: Disconnected from invalid user jenkins 10.30.104.4 port 59204 [preauth] May 25 11:47:35 prd-ubuntu2204-docker-8c-8g-3537 sshd[1273]: Invalid user jenkins from 10.30.104.4 port 59206 May 25 11:47:35 prd-ubuntu2204-docker-8c-8g-3537 sshd[1273]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] May 25 11:47:35 prd-ubuntu2204-docker-8c-8g-3537 sshd[1273]: Received disconnect from 10.30.104.4 port 59206:11: Closed due to user request. [preauth] May 25 11:47:35 prd-ubuntu2204-docker-8c-8g-3537 sshd[1273]: Disconnected from invalid user jenkins 10.30.104.4 port 59206 [preauth] May 25 11:47:37 prd-ubuntu2204-docker-8c-8g-3537 sshd[1311]: Invalid user jenkins from 10.30.104.4 port 59210 May 25 11:47:37 prd-ubuntu2204-docker-8c-8g-3537 sshd[1311]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] May 25 11:47:37 prd-ubuntu2204-docker-8c-8g-3537 sshd[1311]: Received disconnect from 10.30.104.4 port 59210:11: Closed due to user request. [preauth] May 25 11:47:37 prd-ubuntu2204-docker-8c-8g-3537 sshd[1311]: Disconnected from invalid user jenkins 10.30.104.4 port 59210 [preauth] May 25 11:47:39 prd-ubuntu2204-docker-8c-8g-3537 sshd[1313]: Invalid user jenkins from 10.30.104.4 port 59212 May 25 11:47:39 prd-ubuntu2204-docker-8c-8g-3537 sshd[1313]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] May 25 11:47:39 prd-ubuntu2204-docker-8c-8g-3537 sshd[1313]: Received disconnect from 10.30.104.4 port 59212:11: Closed due to user request. [preauth] May 25 11:47:39 prd-ubuntu2204-docker-8c-8g-3537 sshd[1313]: Disconnected from invalid user jenkins 10.30.104.4 port 59212 [preauth] May 25 11:47:41 prd-ubuntu2204-docker-8c-8g-3537 sshd[1315]: Invalid user jenkins from 10.30.104.4 port 59214 May 25 11:47:41 prd-ubuntu2204-docker-8c-8g-3537 sshd[1315]: userauth_pubkey: key type ssh-rsa not in PubkeyAcceptedAlgorithms [preauth] May 25 11:47:41 prd-ubuntu2204-docker-8c-8g-3537 sshd[1315]: Received disconnect from 10.30.104.4 port 59214:11: Closed due to user request. [preauth] May 25 11:47:41 prd-ubuntu2204-docker-8c-8g-3537 sshd[1315]: Disconnected from invalid user jenkins 10.30.104.4 port 59214 [preauth] May 25 11:47:42 prd-ubuntu2204-docker-8c-8g-3537 useradd[1322]: new group: name=jenkins, GID=1001 May 25 11:47:42 prd-ubuntu2204-docker-8c-8g-3537 useradd[1322]: new user: name=jenkins, UID=1001, GID=1001, home=/home/jenkins, shell=/bin/bash, from=none May 25 11:47:42 prd-ubuntu2204-docker-8c-8g-3537 usermod[1331]: add 'jenkins' to group 'docker' May 25 11:47:42 prd-ubuntu2204-docker-8c-8g-3537 usermod[1331]: add 'jenkins' to shadow group 'docker' May 25 11:47:44 prd-ubuntu2204-docker-8c-8g-3537 sshd[1346]: Accepted publickey for jenkins from 10.30.104.4 port 59216 ssh2: RSA SHA256:V0799BjlU//1ruj1g81rY7MeNIJkwAJ0Kr3lNX3XaN4 May 25 11:47:44 prd-ubuntu2204-docker-8c-8g-3537 sshd[1346]: pam_unix(sshd:session): session opened for user jenkins(uid=1001) by (uid=0) May 25 11:47:44 prd-ubuntu2204-docker-8c-8g-3537 systemd-logind[769]: New session 1 of user jenkins. May 25 11:47:44 prd-ubuntu2204-docker-8c-8g-3537 systemd: pam_unix(systemd-user:session): session opened for user jenkins(uid=1001) by (uid=0) May 25 11:48:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[1836]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:48:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[1836]: pam_unix(cron:session): session closed for user root May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/java java /usr/lib/jvm/java-21-openjdk-amd64/bin/java 1 May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/javac javac /usr/lib/jvm/java-21-openjdk-amd64/bin/javac 1 May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/lib/jvm/java-openjdk java_sdk_openjdk /usr/lib/jvm/java-21-openjdk-amd64 1 May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java /usr/lib/jvm/java-21-openjdk-amd64/bin/java May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set javac /usr/lib/jvm/java-21-openjdk-amd64/bin/javac May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java_sdk_openjdk /usr/lib/jvm/java-21-openjdk-amd64 May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:48:53 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:49:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[2216]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:49:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[2216]: pam_unix(cron:session): session closed for user root May 25 11:50:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[2955]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:50:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[2955]: pam_unix(cron:session): session closed for user root May 25 11:51:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[4340]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:51:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[4340]: pam_unix(cron:session): session closed for user root May 25 11:52:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[7996]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:52:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[7996]: pam_unix(cron:session): session closed for user root May 25 11:53:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[9055]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:53:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[9055]: pam_unix(cron:session): session closed for user root May 25 11:54:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[9331]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:54:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[9331]: pam_unix(cron:session): session closed for user root May 25 11:55:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[9611]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:55:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[9611]: pam_unix(cron:session): session closed for user root May 25 11:56:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[9917]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:56:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[9917]: pam_unix(cron:session): session closed for user root May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/java java /usr/lib/jvm/java-17-openjdk-amd64/bin/java 1 May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/bin/javac javac /usr/lib/jvm/java-17-openjdk-amd64/bin/javac 1 May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --install /usr/lib/jvm/java-openjdk java_sdk_openjdk /usr/lib/jvm/java-17-openjdk-amd64 1 May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java /usr/lib/jvm/java-17-openjdk-amd64/bin/java May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set javac /usr/lib/jvm/java-17-openjdk-amd64/bin/javac May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/update-alternatives --set java_sdk_openjdk /usr/lib/jvm/java-17-openjdk-amd64 May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=1001) May 25 11:56:03 prd-ubuntu2204-docker-8c-8g-3537 sudo: pam_unix(sudo:session): session closed for user root May 25 11:57:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[10181]: pam_unix(cron:session): session opened for user root(uid=0) by (uid=0) May 25 11:57:01 prd-ubuntu2204-docker-8c-8g-3537 CRON[10181]: pam_unix(cron:session): session closed for user root May 25 11:57:22 prd-ubuntu2204-docker-8c-8g-3537 sudo: jenkins : PWD=/w/workspace/policy-clamp-sonar-verify ; USER=root ; COMMAND=/usr/bin/cp /var/log/auth.log /tmp