kazulog@sv1:~$ sudo journalctl --no-pager -o short-precise | awk '/STEP10-BEGIN-20260912-082825/{f=1} f' Sep 12 08:33:18.056557 sv1 KAZULOG[6586]: STEP10-BEGIN-20260912-082825 Sep 12 08:33:18.106282 sv1 sshd-session[6507]: syslogin_perform_logout: logout() returned an error Sep 12 08:33:18.108209 sv1 sshd-session[6553]: Received disconnect from 10.100.3.1 port 51274:11: disconnected by user Sep 12 08:33:18.109034 sv1 sshd-session[6553]: Disconnected from user kazulog 10.100.3.1 port 51274 Sep 12 08:33:18.110638 sv1 sshd-session[6507]: pam_unix(sshd:session): session closed for user kazulog Sep 12 08:33:18.113867 sv1 systemd[1]: session-57.scope: Deactivated successfully. Sep 12 08:33:18.118229 sv1 systemd-logind[1132]: Session 57 logged out. Waiting for processes to exit. Sep 12 08:33:18.122657 sv1 systemd-logind[1132]: Removed session 57. Sep 12 08:33:21.373800 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52844) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.375061 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52844 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.375621 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52844) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.375621 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52844 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.395746 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52856) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.396391 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52856) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.396391 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52856 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.396861 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52856 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.416951 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52868) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.417575 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52868) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.417996 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52868 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.418430 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52868 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.438748 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52882) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.438748 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52882 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.439361 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52882) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.439386 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52882 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.492962 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52894) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.493374 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52894) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.493374 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52894 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.493735 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52894 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.513703 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52902) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.514373 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52902) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.514373 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52902 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.514965 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52902 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.534913 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52912) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.535769 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52912) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.536254 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52912 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.536622 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52912 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.566427 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52918) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.566974 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52918) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.567640 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52918 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.567619 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52918 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.588212 sv1 rsyslogd[5887]: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52934) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.588747 sv1 rsyslogd[5887]: rsyslogd: connection request from disallowed sender 192.168.100.20 (192.168.100.20:52934) discarded [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.588747 sv1 rsyslogd[5887]: rsyslogd: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52934 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:21.589515 sv1 rsyslogd[5887]: tcpsrv listener (inputname: 'imtcp') failed to process incoming connection from 192.168.100.20:52934 to 192.168.100.10:514 with error -2063 [v8.2512.0 try https://www.rsyslog.com/e/2063 ] Sep 12 08:33:28.155224 sv1 systemd[1]: Stopping user@1000.service - User Manager for UID 1000... Sep 12 08:33:28.159910 sv1 systemd[5699]: Activating special unit exit.target... Sep 12 08:33:28.161338 sv1 systemd[5699]: Stopped target default.target - Main User Target. Sep 12 08:33:28.161553 sv1 systemd[5699]: Stopped target basic.target - Basic System. Sep 12 08:33:28.161662 sv1 systemd[5699]: Stopped target paths.target - Paths. Sep 12 08:33:28.161759 sv1 systemd[5699]: Stopped target sockets.target - Sockets. Sep 12 08:33:28.161874 sv1 systemd[5699]: Stopped target timers.target - Timers. Sep 12 08:33:28.161965 sv1 systemd[5699]: Stopped launchpadlib-cache-clean.timer - Clean up old files in the Launchpadlib cache. Sep 12 08:33:28.165740 sv1 systemd[5699]: Closed dbus.socket - D-Bus User Message Bus Socket. Sep 12 08:33:28.165950 sv1 systemd[5699]: Closed dirmngr.socket - GnuPG network certificate management daemon. Sep 12 08:33:28.166206 sv1 systemd[5699]: Closed gpg-agent-browser.socket - GnuPG cryptographic agent and passphrase cache (access for web browsers). Sep 12 08:33:28.166373 sv1 systemd[5699]: Closed gpg-agent-extra.socket - GnuPG cryptographic agent and passphrase cache (restricted). Sep 12 08:33:28.171766 sv1 systemd[5699]: Stopping gpg-agent-ssh.socket - GnuPG cryptographic agent (ssh-agent emulation)... Sep 12 08:33:28.175603 sv1 systemd[5699]: Stopping gpg-agent.socket - GnuPG cryptographic agent and passphrase cache... Sep 12 08:33:28.175717 sv1 systemd[5699]: Closed keyboxd.socket - GnuPG public key management service. Sep 12 08:33:28.175884 sv1 systemd[5699]: Closed pk-debconf-helper.socket - debconf communication socket. Sep 12 08:33:28.176009 sv1 systemd[5699]: Closed snapd.session-agent.socket - REST API socket for snapd user session agent. Sep 12 08:33:28.181606 sv1 systemd[5699]: Stopping ssh-agent.socket - OpenSSH Agent socket... Sep 12 08:33:28.181714 sv1 systemd[5699]: Closed systemd-ask-password.socket - Query the User Interactively for a Password. Sep 12 08:33:28.263608 sv1 systemd[5699]: Closed ssh-agent.socket - OpenSSH Agent socket. Sep 12 08:33:28.267262 sv1 systemd[5699]: Closed gpg-agent.socket - GnuPG cryptographic agent and passphrase cache. Sep 12 08:33:28.274175 sv1 systemd[5699]: Closed gpg-agent-ssh.socket - GnuPG cryptographic agent (ssh-agent emulation). Sep 12 08:33:28.277178 sv1 systemd[5699]: Removed slice app.slice - User Application Slice. Sep 12 08:33:28.277514 sv1 systemd[5699]: Reached target shutdown.target - Shutdown. Sep 12 08:33:28.277776 sv1 systemd[5699]: Finished systemd-exit.service - Exit the Session. Sep 12 08:33:28.277853 sv1 systemd[5699]: Reached target exit.target - Exit the Session. Sep 12 08:33:28.286185 sv1 systemd-logind[1132]: Removed session 49. Sep 12 08:33:28.291625 sv1 systemd[1]: user@1000.service: Deactivated successfully. Sep 12 08:33:28.293703 sv1 systemd[1]: Stopped user@1000.service - User Manager for UID 1000. Sep 12 08:33:28.303496 sv1 systemd[1]: Stopping user-runtime-dir@1000.service - User Runtime Directory /run/user/1000... Sep 12 08:33:28.335356 sv1 systemd[1]: run-user-1000.mount: Deactivated successfully. Sep 12 08:33:28.337619 sv1 systemd[1]: user-runtime-dir@1000.service: Deactivated successfully. Sep 12 08:33:28.338239 sv1 systemd[1]: Stopped user-runtime-dir@1000.service - User Runtime Directory /run/user/1000. Sep 12 08:33:28.344624 sv1 systemd[1]: Removed slice user-1000.slice - User Slice of UID 1000. Sep 12 08:33:28.344978 sv1 systemd[1]: user-1000.slice: Consumed 4.111s CPU time over 23.982s wall clock time, 36.9M memory peak. Sep 12 08:33:36.426427 sv1 sshd-session[6613]: Accepted publickey for kazulog from 10.100.3.1 port 51282 ssh2: ED25519 SHA256:NdURwOz/PbiL79UHvTtYE5vuTJfA2RD5RXsn/rG76rw Sep 12 08:33:36.434619 sv1 sshd-session[6613]: pam_unix(sshd:session): session opened for user kazulog(uid=1000) by kazulog(uid=0) Sep 12 08:33:36.451716 sv1 systemd[1]: Created slice user-1000.slice - User Slice of UID 1000. Sep 12 08:33:36.456714 sv1 systemd[1]: Starting user-runtime-dir@1000.service - User Runtime Directory /run/user/1000... Sep 12 08:33:36.477341 sv1 systemd-logind[1132]: New session '58' of user 'kazulog' with class 'user' and type 'tty'. Sep 12 08:33:36.502022 sv1 systemd[1]: Finished user-runtime-dir@1000.service - User Runtime Directory /run/user/1000. Sep 12 08:33:36.512202 sv1 systemd[1]: Starting user@1000.service - User Manager for UID 1000... Sep 12 08:33:36.533171 sv1 (systemd)[6618]: pam_unix(systemd-user:session): session opened for user kazulog(uid=1000) by kazulog(uid=0) Sep 12 08:33:36.537038 sv1 systemd-logind[1132]: New session '59' of user 'kazulog' with class 'manager' and type 'unspecified'. Sep 12 08:33:36.814731 sv1 systemd[6618]: Queued start job for default target default.target. Sep 12 08:33:36.821028 sv1 systemd[6618]: Created slice app.slice - User Application Slice. Sep 12 08:33:36.821320 sv1 systemd[6618]: Started launchpadlib-cache-clean.timer - Clean up old files in the Launchpadlib cache. Sep 12 08:33:36.821382 sv1 systemd[6618]: Reached target paths.target - Paths. Sep 12 08:33:36.822009 sv1 systemd[6618]: Reached target timers.target - Timers. Sep 12 08:33:36.827022 sv1 systemd[6618]: Starting dbus.socket - D-Bus User Message Bus Socket... Sep 12 08:33:36.827762 sv1 systemd[6618]: Listening on dirmngr.socket - GnuPG network certificate management daemon. Sep 12 08:33:36.828550 sv1 systemd[6618]: Listening on gpg-agent-browser.socket - GnuPG cryptographic agent and passphrase cache (access for web browsers). Sep 12 08:33:36.828762 sv1 systemd[6618]: Listening on gpg-agent-extra.socket - GnuPG cryptographic agent and passphrase cache (restricted). Sep 12 08:33:36.834048 sv1 systemd[6618]: Starting gpg-agent-ssh.socket - GnuPG cryptographic agent (ssh-agent emulation)... Sep 12 08:33:36.838340 sv1 systemd[6618]: Starting gpg-agent.socket - GnuPG cryptographic agent and passphrase cache... Sep 12 08:33:36.838994 sv1 systemd[6618]: Listening on keyboxd.socket - GnuPG public key management service. Sep 12 08:33:36.840684 sv1 systemd[6618]: Listening on pk-debconf-helper.socket - debconf communication socket. Sep 12 08:33:36.841344 sv1 systemd[6618]: Listening on snapd.session-agent.socket - REST API socket for snapd user session agent. Sep 12 08:33:36.845362 sv1 systemd[6618]: Starting ssh-agent.socket - OpenSSH Agent socket... Sep 12 08:33:36.852922 sv1 systemd[6618]: Listening on systemd-ask-password.socket - Query the User Interactively for a Password. Sep 12 08:33:36.991956 sv1 systemd[6618]: Listening on gpg-agent-ssh.socket - GnuPG cryptographic agent (ssh-agent emulation). Sep 12 08:33:36.996045 sv1 systemd[6618]: Listening on gpg-agent.socket - GnuPG cryptographic agent and passphrase cache. Sep 12 08:33:37.007407 sv1 systemd[6618]: Listening on dbus.socket - D-Bus User Message Bus Socket. Sep 12 08:33:37.008064 sv1 systemd[6618]: Listening on ssh-agent.socket - OpenSSH Agent socket. Sep 12 08:33:37.012238 sv1 systemd[6618]: Reached target sockets.target - Sockets. Sep 12 08:33:37.012948 sv1 systemd[6618]: Reached target basic.target - Basic System. Sep 12 08:33:37.013801 sv1 systemd[6618]: Reached target default.target - Main User Target. Sep 12 08:33:37.013931 sv1 systemd[6618]: Startup finished in 464ms. Sep 12 08:33:37.014329 sv1 systemd[1]: Started user@1000.service - User Manager for UID 1000. Sep 12 08:33:37.021614 sv1 systemd[1]: Started session-58.scope - Session 58 of User kazulog. Sep 12 08:33:37.664857 sv1 sudo[6766]: pam_unix(sudo:session): session opened for user root(uid=0) by kazulog(uid=1000) Sep 12 08:33:37.665341 sv1 sudo[6766]: kazulog : TTY=/dev/pts/0 ; PWD=/home/kazulog ; USER=root ; COMMAND=/usr/bin/ss -ulnp sport = :514 Sep 12 08:33:37.683392 sv1 sudo[6766]: pam_unix(sudo:session): session closed for user root Sep 12 08:33:37.731169 sv1 sudo[6779]: pam_unix(sudo:session): session opened for user root(uid=0) by kazulog(uid=1000) Sep 12 08:33:37.731856 sv1 sudo[6779]: kazulog : TTY=/dev/pts/0 ; PWD=/home/kazulog ; USER=root ; COMMAND=/usr/bin/ss -tlnp sport = :514 Sep 12 08:33:37.749715 sv1 sudo[6779]: pam_unix(sudo:session): session closed for user root Sep 12 08:33:37.799637 sv1 sudo[6792]: pam_unix(sudo:session): session opened for user root(uid=0) by kazulog(uid=1000) Sep 12 08:33:37.800378 sv1 sudo[6792]: kazulog : TTY=/dev/pts/0 ; PWD=/home/kazulog ; USER=root ; COMMAND=/usr/bin/ls -l /var/log/remote/ /var/log/remote/192.168.100.1/ /var/log/remote/sv2/ Sep 12 08:33:37.811440 sv1 sudo[6792]: pam_unix(sudo:session): session closed for user root Sep 12 08:33:37.854236 sv1 sshd-session[6613]: syslogin_perform_logout: logout() returned an error Sep 12 08:33:37.856266 sv1 sshd-session[6681]: Received disconnect from 10.100.3.1 port 51282:11: disconnected by user Sep 12 08:33:37.856626 sv1 sshd-session[6681]: Disconnected from user kazulog 10.100.3.1 port 51282 Sep 12 08:33:37.858704 sv1 sshd-session[6613]: pam_unix(sshd:session): session closed for user kazulog Sep 12 08:33:37.861785 sv1 systemd[1]: session-58.scope: Deactivated successfully. Sep 12 08:33:37.865658 sv1 systemd-logind[1132]: Session 58 logged out. Waiting for processes to exit. Sep 12 08:33:37.870433 sv1 systemd-logind[1132]: Removed session 58. Sep 12 08:33:38.004272 sv1 sshd-session[6807]: Accepted publickey for kazulog from 10.100.3.1 port 51283 ssh2: ED25519 SHA256:NdURwOz/PbiL79UHvTtYE5vuTJfA2RD5RXsn/rG76rw Sep 12 08:33:38.008417 sv1 sshd-session[6807]: pam_unix(sshd:session): session opened for user kazulog(uid=1000) by kazulog(uid=0) Sep 12 08:33:38.015712 sv1 systemd-logind[1132]: New session '60' of user 'kazulog' with class 'user' and type 'tty'. Sep 12 08:33:38.021434 sv1 systemd[1]: Started session-60.scope - Session 60 of User kazulog. Sep 12 08:33:38.403653 sv1 sudo[6886]: pam_unix(sudo:session): session opened for user root(uid=0) by kazulog(uid=1000) Sep 12 08:33:38.404313 sv1 sudo[6886]: kazulog : TTY=/dev/pts/0 ; PWD=/home/kazulog ; USER=root ; COMMAND=/usr/bin/journalctl --no-pager -o short-precise