ansible-playbook [core 2.17.6]
config file = None
configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
ansible python module location = /usr/local/lib/python3.12/site-packages/ansible
ansible collection location = /tmp/collections-n5z
executable location = /usr/local/bin/ansible-playbook
python version = 3.12.7 (main, Oct 1 2024, 00:00:00) [GCC 14.2.1 20240912 (Red Hat 14.2.1-3)] (/usr/bin/python3.12)
jinja version = 3.1.4
libyaml = True
No config file found; using defaults
running playbook inside collection fedora.linux_system_roles
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.profile_tasks to ansible.posix.profile_tasks
Skipping callback 'default', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.
PLAYBOOK: tests_certificate_runafter.yml ***************************************
1 plays in /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml
PLAY [Test certificate issuance with run_after shell script] *******************
TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:6
Monday 11 November 2024 20:05:52 -0500 (0:00:00.008) 0:00:00.008 *******
[WARNING]: Platform linux on host managed-node3 is using the discovered Python
interpreter at /usr/bin/python3.12, but future installation of another Python
interpreter could change the meaning of that path. See
https://docs.ansible.com/ansible-
core/2.17/reference_appendices/interpreter_discovery.html for more information.
ok: [managed-node3]
TASK [Install cockpit] *********************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:9
Monday 11 November 2024 20:05:54 -0500 (0:00:01.230) 0:00:01.239 *******
included: fedora.linux_system_roles.cockpit for managed-node3
TASK [fedora.linux_system_roles.cockpit : Ensure ansible_facts and variables used by role] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:2
Monday 11 November 2024 20:05:54 -0500 (0:00:00.055) 0:00:01.295 *******
included: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/set_vars.yml for managed-node3
TASK [fedora.linux_system_roles.cockpit : Ensure ansible_facts used by role] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/set_vars.yml:2
Monday 11 November 2024 20:05:54 -0500 (0:00:00.022) 0:00:01.317 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "__cockpit_required_facts | difference(ansible_facts.keys() | list) | length > 0",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Check if system is ostree] ***********
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/set_vars.yml:10
Monday 11 November 2024 20:05:54 -0500 (0:00:00.036) 0:00:01.354 *******
ok: [managed-node3] => {
"changed": false,
"stat": {
"exists": false
}
}
TASK [fedora.linux_system_roles.cockpit : Set flag to indicate system is ostree] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/set_vars.yml:15
Monday 11 November 2024 20:05:54 -0500 (0:00:00.472) 0:00:01.826 *******
ok: [managed-node3] => {
"ansible_facts": {
"__cockpit_is_ostree": false
},
"changed": false
}
TASK [fedora.linux_system_roles.cockpit : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/set_vars.yml:22
Monday 11 November 2024 20:05:54 -0500 (0:00:00.024) 0:00:01.851 *******
ok: [managed-node3] => {
"changed": false,
"stat": {
"exists": false
}
}
TASK [fedora.linux_system_roles.cockpit : Set flag if transactional-update exists] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/set_vars.yml:27
Monday 11 November 2024 20:05:55 -0500 (0:00:00.375) 0:00:02.226 *******
ok: [managed-node3] => {
"ansible_facts": {
"__cockpit_is_transactional": false
},
"changed": false
}
TASK [fedora.linux_system_roles.cockpit : Set version specific variables] ******
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/set_vars.yml:31
Monday 11 November 2024 20:05:55 -0500 (0:00:00.024) 0:00:02.251 *******
ok: [managed-node3] => (item=/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/vars/Fedora.yml) => {
"ansible_facts": {
"__cockpit_packages": {
"default": "{{ __cockpit_packages_minimal + __cockpit_packages_default }}",
"full": "{{ __cockpit_packages_minimal + __cockpit_packages_default + __cockpit_packages_full }}",
"minimal": "{{ __cockpit_packages_minimal }}"
},
"__cockpit_packages_default": [
"cockpit",
"cockpit-networkmanager",
"cockpit-packagekit",
"cockpit-selinux",
"cockpit-storaged"
],
"__cockpit_packages_exclude": [
"cockpit-docker",
"cockpit-ostree",
"cockpit-tests"
],
"__cockpit_packages_full": [
"cockpit-*"
],
"__cockpit_packages_minimal": [
"cockpit-system",
"cockpit-ws"
]
},
"ansible_included_var_files": [
"/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/vars/Fedora.yml"
],
"ansible_loop_var": "item",
"changed": false,
"item": "/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/vars/Fedora.yml"
}
TASK [fedora.linux_system_roles.cockpit : List active RHEL repositories] *******
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:11
Monday 11 November 2024 20:05:55 -0500 (0:00:00.026) 0:00:02.278 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "ansible_distribution == 'RedHat'",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Enable RHEL repositories] ************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:18
Monday 11 November 2024 20:05:55 -0500 (0:00:00.014) 0:00:02.292 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "ansible_distribution == 'RedHat'",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Manage cockpit packages using platform specific package manager if applicable] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:23
Monday 11 November 2024 20:05:55 -0500 (0:00:00.014) 0:00:02.307 *******
included: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/setup-dnf.yml for managed-node3 => (item=/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/setup-dnf.yml)
TASK [fedora.linux_system_roles.cockpit : If choosing custom package set, ensure minimal cockpit is included] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/setup-dnf.yml:2
Monday 11 November 2024 20:05:55 -0500 (0:00:00.050) 0:00:02.357 *******
ok: [managed-node3] => {
"ansible_facts": {
"cockpit_packages": "minimal"
},
"changed": false
}
TASK [fedora.linux_system_roles.cockpit : Ensure Cockpit Web Console packages are installed.] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/setup-dnf.yml:7
Monday 11 November 2024 20:05:55 -0500 (0:00:00.026) 0:00:02.383 *******
changed: [managed-node3] => {
"changed": true,
"rc": 0,
"results": [
"Installed: cockpit-bridge-327-1.fc40.x86_64",
"Installed: cockpit-ws-327-1.fc40.x86_64",
"Installed: cockpit-system-327-1.fc40.noarch"
]
}
lsrpackages: cockpit-system cockpit-ws
TASK [fedora.linux_system_roles.cockpit : Ensure full package list is installed] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/setup-dnf.yml:15
Monday 11 November 2024 20:06:07 -0500 (0:00:12.465) 0:00:14.848 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "'cockpit-*' in __pkgs",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Configure firewall] ******************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:32
Monday 11 November 2024 20:06:07 -0500 (0:00:00.019) 0:00:14.868 *******
included: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/firewall.yml for managed-node3
TASK [Ensure the cockpit service is enabled] ***********************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/firewall.yml:3
Monday 11 November 2024 20:06:07 -0500 (0:00:00.019) 0:00:14.888 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_manage_firewall | bool",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Configure selinux] *******************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:35
Monday 11 November 2024 20:06:07 -0500 (0:00:00.033) 0:00:14.921 *******
included: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/selinux.yml for managed-node3
TASK [Ensure the service and the ports status with the selinux role] ***********
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/selinux.yml:3
Monday 11 November 2024 20:06:07 -0500 (0:00:00.026) 0:00:14.948 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_manage_selinux | bool",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Create custom port configuration file directory] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:38
Monday 11 November 2024 20:06:07 -0500 (0:00:00.047) 0:00:14.995 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_port is not none",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Create custom port configuration file] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:47
Monday 11 November 2024 20:06:07 -0500 (0:00:00.021) 0:00:15.017 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_port is not none",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Clean up port configuration file for undefined custom port] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:62
Monday 11 November 2024 20:06:07 -0500 (0:00:00.020) 0:00:15.038 *******
ok: [managed-node3] => {
"changed": false,
"path": "/etc/systemd/system/cockpit.socket.d/listen.conf",
"state": "absent"
}
TASK [fedora.linux_system_roles.cockpit : Ensure Cockpit Web Console is started/stopped and enabled/disabled] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:71
Monday 11 November 2024 20:06:08 -0500 (0:00:00.492) 0:00:15.530 *******
changed: [managed-node3] => {
"changed": true,
"enabled": true,
"name": "cockpit.socket",
"state": "started",
"status": {
"Accept": "no",
"AccessSELinuxContext": "system_u:object_r:cockpit_unit_file_t:s0",
"ActiveEnterTimestampMonotonic": "0",
"ActiveExitTimestampMonotonic": "0",
"ActiveState": "inactive",
"After": "systemd-journald.socket system.slice sysinit.target",
"AllowIsolate": "no",
"AssertResult": "no",
"AssertTimestampMonotonic": "0",
"Backlog": "2147483647",
"Before": "sockets.target shutdown.target cockpit-motd.service cockpit.service",
"BindIPv6Only": "default",
"BlockIOAccounting": "no",
"BlockIOWeight": "[not set]",
"Broadcast": "no",
"CPUAccounting": "yes",
"CPUAffinityFromNUMA": "no",
"CPUQuotaPerSecUSec": "infinity",
"CPUQuotaPeriodUSec": "infinity",
"CPUSchedulingPolicy": "0",
"CPUSchedulingPriority": "0",
"CPUSchedulingResetOnFork": "no",
"CPUShares": "[not set]",
"CPUUsageNSec": "[not set]",
"CPUWeight": "[not set]",
"CacheDirectoryMode": "0755",
"CanFreeze": "no",
"CanIsolate": "no",
"CanReload": "no",
"CanStart": "yes",
"CanStop": "yes",
"CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf cap_checkpoint_restore",
"CollectMode": "inactive",
"ConditionResult": "no",
"ConditionTimestampMonotonic": "0",
"ConfigurationDirectoryMode": "0755",
"Conflicts": "shutdown.target",
"ControlGroupId": "0",
"ControlPID": "0",
"CoredumpFilter": "0x33",
"CoredumpReceive": "no",
"DefaultDependencies": "yes",
"DefaultMemoryLow": "0",
"DefaultMemoryMin": "0",
"DefaultStartupMemoryLow": "0",
"DeferAcceptUSec": "0",
"Delegate": "no",
"Description": "Cockpit Web Service Socket",
"DevicePolicy": "auto",
"DirectoryMode": "0755",
"Documentation": "\"man:cockpit-ws(8)\"",
"DynamicUser": "no",
"ExecStartPost": "{ path=/bin/ln ; argv[]=/bin/ln -snf active.motd /run/cockpit/motd ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
"ExecStopPost": "{ path=/bin/ln ; argv[]=/bin/ln -snf inactive.motd /run/cockpit/motd ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
"ExtensionImagePolicy": "root=verity+signed+encrypted+unprotected+absent:usr=verity+signed+encrypted+unprotected+absent:home=encrypted+unprotected+absent:srv=encrypted+unprotected+absent:tmp=encrypted+unprotected+absent:var=encrypted+unprotected+absent",
"FailureAction": "none",
"FileDescriptorName": "cockpit.socket",
"FinalKillSignal": "9",
"FlushPending": "no",
"FragmentPath": "/usr/lib/systemd/system/cockpit.socket",
"FreeBind": "no",
"FreezerState": "running",
"GID": "[not set]",
"IOAccounting": "no",
"IOReadBytes": "[not set]",
"IOReadOperations": "[not set]",
"IOSchedulingClass": "2",
"IOSchedulingPriority": "4",
"IOWeight": "[not set]",
"IOWriteBytes": "[not set]",
"IOWriteOperations": "[not set]",
"IPAccounting": "no",
"IPEgressBytes": "[no data]",
"IPEgressPackets": "[no data]",
"IPIngressBytes": "[no data]",
"IPIngressPackets": "[no data]",
"IPTOS": "-1",
"IPTTL": "-1",
"Id": "cockpit.socket",
"IgnoreOnIsolate": "no",
"IgnoreSIGPIPE": "yes",
"InactiveEnterTimestampMonotonic": "0",
"InactiveExitTimestampMonotonic": "0",
"JobRunningTimeoutUSec": "infinity",
"JobTimeoutAction": "none",
"JobTimeoutUSec": "infinity",
"KeepAlive": "no",
"KeepAliveIntervalUSec": "0",
"KeepAliveProbes": "0",
"KeepAliveTimeUSec": "0",
"KeyringMode": "shared",
"KillMode": "control-group",
"KillSignal": "15",
"LimitAS": "infinity",
"LimitASSoft": "infinity",
"LimitCORE": "infinity",
"LimitCORESoft": "infinity",
"LimitCPU": "infinity",
"LimitCPUSoft": "infinity",
"LimitDATA": "infinity",
"LimitDATASoft": "infinity",
"LimitFSIZE": "infinity",
"LimitFSIZESoft": "infinity",
"LimitLOCKS": "infinity",
"LimitLOCKSSoft": "infinity",
"LimitMEMLOCK": "8388608",
"LimitMEMLOCKSoft": "8388608",
"LimitMSGQUEUE": "819200",
"LimitMSGQUEUESoft": "819200",
"LimitNICE": "0",
"LimitNICESoft": "0",
"LimitNOFILE": "524288",
"LimitNOFILESoft": "1024",
"LimitNPROC": "14719",
"LimitNPROCSoft": "14719",
"LimitRSS": "infinity",
"LimitRSSSoft": "infinity",
"LimitRTPRIO": "0",
"LimitRTPRIOSoft": "0",
"LimitRTTIME": "infinity",
"LimitRTTIMESoft": "infinity",
"LimitSIGPENDING": "14719",
"LimitSIGPENDINGSoft": "14719",
"LimitSTACK": "infinity",
"LimitSTACKSoft": "8388608",
"Listen": "[::]:9090 (Stream)",
"LoadState": "loaded",
"LockPersonality": "no",
"LogLevelMax": "-1",
"LogRateLimitBurst": "0",
"LogRateLimitIntervalUSec": "0",
"LogsDirectoryMode": "0755",
"ManagedOOMMemoryPressure": "auto",
"ManagedOOMMemoryPressureLimit": "0",
"ManagedOOMPreference": "none",
"ManagedOOMSwap": "auto",
"Mark": "-1",
"MaxConnections": "64",
"MaxConnectionsPerSource": "0",
"MemoryAccounting": "yes",
"MemoryAvailable": "3515199488",
"MemoryCurrent": "[not set]",
"MemoryDenyWriteExecute": "no",
"MemoryHigh": "infinity",
"MemoryKSM": "no",
"MemoryLimit": "infinity",
"MemoryLow": "0",
"MemoryMax": "infinity",
"MemoryMin": "0",
"MemoryPeak": "[not set]",
"MemoryPressureThresholdUSec": "200ms",
"MemoryPressureWatch": "auto",
"MemorySwapCurrent": "[not set]",
"MemorySwapMax": "infinity",
"MemorySwapPeak": "[not set]",
"MemoryZSwapCurrent": "[not set]",
"MemoryZSwapMax": "infinity",
"MessageQueueMaxMessages": "0",
"MessageQueueMessageSize": "0",
"MountAPIVFS": "no",
"MountImagePolicy": "root=verity+signed+encrypted+unprotected+absent:usr=verity+signed+encrypted+unprotected+absent:home=encrypted+unprotected+absent:srv=encrypted+unprotected+absent:tmp=encrypted+unprotected+absent:var=encrypted+unprotected+absent",
"NAccepted": "0",
"NConnections": "0",
"NRefused": "0",
"NUMAPolicy": "n/a",
"Names": "cockpit.socket",
"NeedDaemonReload": "no",
"Nice": "0",
"NoDelay": "no",
"NoNewPrivileges": "no",
"NonBlocking": "no",
"OOMScoreAdjust": "0",
"OnFailureJobMode": "replace",
"OnSuccessJobMode": "fail",
"PassCredentials": "no",
"PassPacketInfo": "no",
"PassSecurity": "no",
"Perpetual": "no",
"PipeSize": "0",
"PollLimitBurst": "15",
"PollLimitIntervalUSec": "2s",
"Priority": "-1",
"PrivateDevices": "no",
"PrivateIPC": "no",
"PrivateMounts": "no",
"PrivateNetwork": "no",
"PrivateTmp": "no",
"PrivateUsers": "no",
"ProcSubset": "all",
"ProtectClock": "no",
"ProtectControlGroups": "no",
"ProtectHome": "no",
"ProtectHostname": "no",
"ProtectKernelLogs": "no",
"ProtectKernelModules": "no",
"ProtectKernelTunables": "no",
"ProtectProc": "default",
"ProtectSystem": "no",
"ReceiveBuffer": "0",
"RefuseManualStart": "no",
"RefuseManualStop": "no",
"RemoveIPC": "no",
"RemoveOnStop": "no",
"RequiredBy": "cockpit.service",
"Requires": "system.slice sysinit.target",
"RestartKillSignal": "15",
"RestrictNamespaces": "no",
"RestrictRealtime": "no",
"RestrictSUIDSGID": "no",
"Result": "success",
"ReusePort": "no",
"RootEphemeral": "no",
"RootImagePolicy": "root=verity+signed+encrypted+unprotected+absent:usr=verity+signed+encrypted+unprotected+absent:home=encrypted+unprotected+absent:srv=encrypted+unprotected+absent:tmp=encrypted+unprotected+absent:var=encrypted+unprotected+absent",
"RuntimeDirectoryMode": "0755",
"RuntimeDirectoryPreserve": "no",
"SameProcessGroup": "no",
"SecureBits": "0",
"SendBuffer": "0",
"SendSIGHUP": "no",
"SendSIGKILL": "yes",
"SetLoginEnvironment": "no",
"Slice": "system.slice",
"SocketMode": "0666",
"SocketProtocol": "0",
"StandardError": "inherit",
"StandardInput": "null",
"StandardOutput": "journal",
"StartLimitAction": "none",
"StartLimitBurst": "5",
"StartLimitIntervalUSec": "10s",
"StartupBlockIOWeight": "[not set]",
"StartupCPUShares": "[not set]",
"StartupCPUWeight": "[not set]",
"StartupIOWeight": "[not set]",
"StartupMemoryHigh": "infinity",
"StartupMemoryLow": "0",
"StartupMemoryMax": "infinity",
"StartupMemorySwapMax": "infinity",
"StartupMemoryZSwapMax": "infinity",
"StateChangeTimestampMonotonic": "0",
"StateDirectoryMode": "0755",
"StopWhenUnneeded": "no",
"SubState": "dead",
"SuccessAction": "none",
"SurviveFinalKillSignal": "no",
"SyslogFacility": "3",
"SyslogLevel": "6",
"SyslogLevelPrefix": "yes",
"SyslogPriority": "30",
"SystemCallErrorNumber": "2147483646",
"TTYReset": "no",
"TTYVHangup": "no",
"TTYVTDisallocate": "no",
"TasksAccounting": "yes",
"TasksCurrent": "[not set]",
"TasksMax": "4415",
"TimeoutCleanUSec": "infinity",
"TimeoutUSec": "45s",
"TimerSlackNSec": "50000",
"Timestamping": "off",
"Transient": "no",
"Transparent": "no",
"TriggerLimitBurst": "20",
"TriggerLimitIntervalUSec": "2s",
"Triggers": "cockpit.service",
"UID": "[not set]",
"UMask": "0022",
"UnitFilePreset": "disabled",
"UnitFileState": "disabled",
"UtmpMode": "init",
"Wants": "cockpit-motd.service",
"WatchdogSignal": "6",
"Writable": "no"
}
}
TASK [fedora.linux_system_roles.cockpit : Create cockpit.conf configuration file] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:77
Monday 11 November 2024 20:06:09 -0500 (0:00:01.147) 0:00:16.678 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_config is defined",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Check the OS version for self-sign] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:93
Monday 11 November 2024 20:06:09 -0500 (0:00:00.019) 0:00:16.697 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_certificates | length > 0",
"skip_reason": "Conditional result was False"
}
TASK [Create certificates using the certificate role] **************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:102
Monday 11 November 2024 20:06:09 -0500 (0:00:00.036) 0:00:16.734 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_certificates | length > 0",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Set cockpit_cert and cockpit_private_key] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:108
Monday 11 November 2024 20:06:09 -0500 (0:00:00.037) 0:00:16.771 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_certificates | length > 0",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Link to configured existing certificate] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:114
Monday 11 November 2024 20:06:09 -0500 (0:00:00.038) 0:00:16.810 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_cert is defined",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.cockpit : Link to configured existing certificate key] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:124
Monday 11 November 2024 20:06:09 -0500 (0:00:00.020) 0:00:16.830 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "cockpit_cert is defined",
"skip_reason": "Conditional result was False"
}
TASK [Allow certmonger to write into Cockpit's certificate directory] **********
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:20
Monday 11 November 2024 20:06:09 -0500 (0:00:00.023) 0:00:16.853 *******
ok: [managed-node3] => {
"changed": false,
"gid": 0,
"group": "root",
"mode": "0755",
"owner": "root",
"path": "/etc/cockpit/ws-certs.d/",
"secontext": "system_u:object_r:cert_t:s0",
"size": 4096,
"state": "directory",
"uid": 0
}
TASK [Get name of cockpit group to use] ****************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:28
Monday 11 November 2024 20:06:10 -0500 (0:00:00.393) 0:00:17.247 *******
included: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/get_cockpit_group.yml for managed-node3
TASK [Get name of cockpit group for tests] *************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/get_cockpit_group.yml:3
Monday 11 November 2024 20:06:10 -0500 (0:00:00.022) 0:00:17.270 *******
ok: [managed-node3] => {
"ansible_facts": {
"getent_group": {
"cockpit-wsinstance": [
"x",
"991",
""
]
}
},
"changed": false
}
TASK [Set __cockpit_test_group] ************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/get_cockpit_group.yml:9
Monday 11 November 2024 20:06:10 -0500 (0:00:00.471) 0:00:17.741 *******
ok: [managed-node3] => {
"ansible_facts": {
"__cockpit_test_group": "cockpit-wsinstance"
},
"changed": false
}
TASK [Generate certificate with certificate system role] ***********************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:32
Monday 11 November 2024 20:06:10 -0500 (0:00:00.019) 0:00:17.761 *******
included: fedora.linux_system_roles.certificate for managed-node3
TASK [fedora.linux_system_roles.certificate : Set version specific variables] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:2
Monday 11 November 2024 20:06:10 -0500 (0:00:00.044) 0:00:17.805 *******
included: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml for managed-node3
TASK [fedora.linux_system_roles.certificate : Ensure ansible_facts used by role] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2
Monday 11 November 2024 20:06:10 -0500 (0:00:00.022) 0:00:17.828 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "__certificate_required_facts | difference(ansible_facts.keys() | list) | length > 0",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.certificate : Check if system is ostree] *******
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:10
Monday 11 November 2024 20:06:10 -0500 (0:00:00.038) 0:00:17.866 *******
ok: [managed-node3] => {
"changed": false,
"stat": {
"exists": false
}
}
TASK [fedora.linux_system_roles.certificate : Set flag to indicate system is ostree] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:15
Monday 11 November 2024 20:06:11 -0500 (0:00:00.379) 0:00:18.246 *******
ok: [managed-node3] => {
"ansible_facts": {
"__certificate_is_ostree": false
},
"changed": false
}
TASK [fedora.linux_system_roles.certificate : Set platform/version specific variables] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:19
Monday 11 November 2024 20:06:11 -0500 (0:00:00.024) 0:00:18.271 *******
skipping: [managed-node3] => (item=RedHat.yml) => {
"ansible_loop_var": "item",
"changed": false,
"false_condition": "__vars_file is file",
"item": "RedHat.yml",
"skip_reason": "Conditional result was False"
}
ok: [managed-node3] => (item=Fedora.yml) => {
"ansible_facts": {
"__certificate_certmonger_packages": [
"certmonger",
"python3-packaging"
]
},
"ansible_included_var_files": [
"/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/Fedora.yml"
],
"ansible_loop_var": "item",
"changed": false,
"item": "Fedora.yml"
}
skipping: [managed-node3] => (item=Fedora_40.yml) => {
"ansible_loop_var": "item",
"changed": false,
"false_condition": "__vars_file is file",
"item": "Fedora_40.yml",
"skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=Fedora_40.yml) => {
"ansible_loop_var": "item",
"changed": false,
"false_condition": "__vars_file is file",
"item": "Fedora_40.yml",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:5
Monday 11 November 2024 20:06:11 -0500 (0:00:00.041) 0:00:18.312 *******
ok: [managed-node3] => {
"changed": false,
"rc": 0,
"results": []
}
MSG:
Nothing to do
lsrpackages: python3-cryptography python3-dbus python3-pyasn1
TASK [fedora.linux_system_roles.certificate : Ensure provider packages are installed] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:23
Monday 11 November 2024 20:06:12 -0500 (0:00:01.572) 0:00:19.885 *******
ok: [managed-node3] => (item=certmonger) => {
"__certificate_provider": "certmonger",
"ansible_loop_var": "__certificate_provider",
"changed": false,
"rc": 0,
"results": []
}
MSG:
Nothing to do
lsrpackages: certmonger python3-packaging
TASK [fedora.linux_system_roles.certificate : Ensure pre-scripts hooks directory exists] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:35
Monday 11 November 2024 20:06:14 -0500 (0:00:01.580) 0:00:21.465 *******
ok: [managed-node3] => (item=certmonger) => {
"__certificate_provider": "certmonger",
"ansible_loop_var": "__certificate_provider",
"changed": false,
"gid": 0,
"group": "root",
"mode": "0700",
"owner": "root",
"path": "/etc/certmonger//pre-scripts",
"secontext": "unconfined_u:object_r:etc_t:s0",
"size": 4096,
"state": "directory",
"uid": 0
}
TASK [fedora.linux_system_roles.certificate : Ensure post-scripts hooks directory exists] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:61
Monday 11 November 2024 20:06:14 -0500 (0:00:00.448) 0:00:21.913 *******
ok: [managed-node3] => (item=certmonger) => {
"__certificate_provider": "certmonger",
"ansible_loop_var": "__certificate_provider",
"changed": false,
"gid": 0,
"group": "root",
"mode": "0700",
"owner": "root",
"path": "/etc/certmonger//post-scripts",
"secontext": "unconfined_u:object_r:etc_t:s0",
"size": 4096,
"state": "directory",
"uid": 0
}
TASK [fedora.linux_system_roles.certificate : Ensure provider service is running] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:90
Monday 11 November 2024 20:06:15 -0500 (0:00:00.437) 0:00:22.351 *******
ok: [managed-node3] => (item=certmonger) => {
"__certificate_provider": "certmonger",
"ansible_loop_var": "__certificate_provider",
"changed": false,
"enabled": true,
"name": "certmonger",
"state": "started",
"status": {
"AccessSELinuxContext": "system_u:object_r:certmonger_unit_file_t:s0",
"ActiveEnterTimestamp": "Mon 2024-11-11 20:05:32 EST",
"ActiveEnterTimestampMonotonic": "388174296",
"ActiveExitTimestampMonotonic": "0",
"ActiveState": "active",
"After": "sysinit.target system.slice systemd-journald.socket dbus-broker.service syslog.target network.target dbus.socket basic.target",
"AllowIsolate": "no",
"AssertResult": "yes",
"AssertTimestamp": "Mon 2024-11-11 20:05:32 EST",
"AssertTimestampMonotonic": "388149070",
"Before": "shutdown.target multi-user.target",
"BlockIOAccounting": "no",
"BlockIOWeight": "[not set]",
"BusName": "org.fedorahosted.certmonger",
"CPUAccounting": "yes",
"CPUAffinityFromNUMA": "no",
"CPUQuotaPerSecUSec": "infinity",
"CPUQuotaPeriodUSec": "infinity",
"CPUSchedulingPolicy": "0",
"CPUSchedulingPriority": "0",
"CPUSchedulingResetOnFork": "no",
"CPUShares": "[not set]",
"CPUUsageNSec": "484062000",
"CPUWeight": "[not set]",
"CacheDirectoryMode": "0755",
"CanFreeze": "yes",
"CanIsolate": "no",
"CanReload": "no",
"CanStart": "yes",
"CanStop": "yes",
"CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf cap_checkpoint_restore",
"CleanResult": "success",
"CollectMode": "inactive",
"ConditionResult": "yes",
"ConditionTimestamp": "Mon 2024-11-11 20:05:32 EST",
"ConditionTimestampMonotonic": "388149066",
"ConfigurationDirectoryMode": "0755",
"Conflicts": "shutdown.target",
"ControlGroup": "/system.slice/certmonger.service",
"ControlGroupId": "6306",
"ControlPID": "0",
"CoredumpFilter": "0x33",
"CoredumpReceive": "no",
"DefaultDependencies": "yes",
"DefaultMemoryLow": "0",
"DefaultMemoryMin": "0",
"DefaultStartupMemoryLow": "0",
"Delegate": "no",
"Description": "Certificate monitoring and PKI enrollment",
"DevicePolicy": "auto",
"DropInPaths": "/usr/lib/systemd/system/service.d/10-timeout-abort.conf",
"DynamicUser": "no",
"EnvironmentFiles": "/etc/sysconfig/certmonger (ignore_errors=yes)",
"ExecMainCode": "0",
"ExecMainExitTimestampMonotonic": "0",
"ExecMainPID": "5775",
"ExecMainStartTimestamp": "Mon 2024-11-11 20:05:32 EST",
"ExecMainStartTimestampMonotonic": "388156637",
"ExecMainStatus": "0",
"ExecStart": "{ path=/usr/sbin/certmonger ; argv[]=/usr/sbin/certmonger -S -p /run/certmonger.pid -n $OPTS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
"ExecStartEx": "{ path=/usr/sbin/certmonger ; argv[]=/usr/sbin/certmonger -S -p /run/certmonger.pid -n $OPTS ; flags= ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
"ExitType": "main",
"ExtensionImagePolicy": "root=verity+signed+encrypted+unprotected+absent:usr=verity+signed+encrypted+unprotected+absent:home=encrypted+unprotected+absent:srv=encrypted+unprotected+absent:tmp=encrypted+unprotected+absent:var=encrypted+unprotected+absent",
"FailureAction": "none",
"FileDescriptorStoreMax": "0",
"FileDescriptorStorePreserve": "restart",
"FinalKillSignal": "9",
"FragmentPath": "/usr/lib/systemd/system/certmonger.service",
"FreezerState": "running",
"GID": "[not set]",
"GuessMainPID": "yes",
"IOAccounting": "no",
"IOReadBytes": "[not set]",
"IOReadOperations": "[not set]",
"IOSchedulingClass": "2",
"IOSchedulingPriority": "4",
"IOWeight": "[not set]",
"IOWriteBytes": "[not set]",
"IOWriteOperations": "[not set]",
"IPAccounting": "no",
"IPEgressBytes": "[no data]",
"IPEgressPackets": "[no data]",
"IPIngressBytes": "[no data]",
"IPIngressPackets": "[no data]",
"Id": "certmonger.service",
"IgnoreOnIsolate": "no",
"IgnoreSIGPIPE": "yes",
"InactiveEnterTimestampMonotonic": "0",
"InactiveExitTimestamp": "Mon 2024-11-11 20:05:32 EST",
"InactiveExitTimestampMonotonic": "388156924",
"InvocationID": "d7ab0964d144438a96347c2942a059ad",
"JobRunningTimeoutUSec": "infinity",
"JobTimeoutAction": "none",
"JobTimeoutUSec": "infinity",
"KeyringMode": "private",
"KillMode": "control-group",
"KillSignal": "15",
"LimitAS": "infinity",
"LimitASSoft": "infinity",
"LimitCORE": "infinity",
"LimitCORESoft": "infinity",
"LimitCPU": "infinity",
"LimitCPUSoft": "infinity",
"LimitDATA": "infinity",
"LimitDATASoft": "infinity",
"LimitFSIZE": "infinity",
"LimitFSIZESoft": "infinity",
"LimitLOCKS": "infinity",
"LimitLOCKSSoft": "infinity",
"LimitMEMLOCK": "8388608",
"LimitMEMLOCKSoft": "8388608",
"LimitMSGQUEUE": "819200",
"LimitMSGQUEUESoft": "819200",
"LimitNICE": "0",
"LimitNICESoft": "0",
"LimitNOFILE": "524288",
"LimitNOFILESoft": "1024",
"LimitNPROC": "14719",
"LimitNPROCSoft": "14719",
"LimitRSS": "infinity",
"LimitRSSSoft": "infinity",
"LimitRTPRIO": "0",
"LimitRTPRIOSoft": "0",
"LimitRTTIME": "infinity",
"LimitRTTIMESoft": "infinity",
"LimitSIGPENDING": "14719",
"LimitSIGPENDINGSoft": "14719",
"LimitSTACK": "infinity",
"LimitSTACKSoft": "8388608",
"LoadState": "loaded",
"LockPersonality": "no",
"LogLevelMax": "-1",
"LogRateLimitBurst": "0",
"LogRateLimitIntervalUSec": "0",
"LogsDirectoryMode": "0755",
"MainPID": "5775",
"ManagedOOMMemoryPressure": "auto",
"ManagedOOMMemoryPressureLimit": "0",
"ManagedOOMPreference": "none",
"ManagedOOMSwap": "auto",
"MemoryAccounting": "yes",
"MemoryAvailable": "3385090048",
"MemoryCurrent": "3538944",
"MemoryDenyWriteExecute": "no",
"MemoryHigh": "infinity",
"MemoryKSM": "no",
"MemoryLimit": "infinity",
"MemoryLow": "0",
"MemoryMax": "infinity",
"MemoryMin": "0",
"MemoryPeak": "9875456",
"MemoryPressureThresholdUSec": "200ms",
"MemoryPressureWatch": "auto",
"MemorySwapCurrent": "0",
"MemorySwapMax": "infinity",
"MemorySwapPeak": "0",
"MemoryZSwapCurrent": "0",
"MemoryZSwapMax": "infinity",
"MountAPIVFS": "no",
"MountImagePolicy": "root=verity+signed+encrypted+unprotected+absent:usr=verity+signed+encrypted+unprotected+absent:home=encrypted+unprotected+absent:srv=encrypted+unprotected+absent:tmp=encrypted+unprotected+absent:var=encrypted+unprotected+absent",
"NFileDescriptorStore": "0",
"NRestarts": "0",
"NUMAPolicy": "n/a",
"Names": "certmonger.service",
"NeedDaemonReload": "no",
"Nice": "0",
"NoNewPrivileges": "no",
"NonBlocking": "no",
"NotifyAccess": "none",
"OOMPolicy": "stop",
"OOMScoreAdjust": "0",
"OnFailureJobMode": "replace",
"OnSuccessJobMode": "fail",
"PIDFile": "/run/certmonger.pid",
"PartOf": "dbus-broker.service",
"Perpetual": "no",
"PrivateDevices": "no",
"PrivateIPC": "no",
"PrivateMounts": "no",
"PrivateNetwork": "no",
"PrivateTmp": "no",
"PrivateUsers": "no",
"ProcSubset": "all",
"ProtectClock": "no",
"ProtectControlGroups": "no",
"ProtectHome": "no",
"ProtectHostname": "no",
"ProtectKernelLogs": "no",
"ProtectKernelModules": "no",
"ProtectKernelTunables": "no",
"ProtectProc": "default",
"ProtectSystem": "no",
"RefuseManualStart": "no",
"RefuseManualStop": "no",
"ReloadResult": "success",
"ReloadSignal": "1",
"RemainAfterExit": "no",
"RemoveIPC": "no",
"Requires": "dbus.socket sysinit.target system.slice",
"Restart": "no",
"RestartKillSignal": "15",
"RestartMaxDelayUSec": "infinity",
"RestartMode": "normal",
"RestartSteps": "0",
"RestartUSec": "100ms",
"RestartUSecNext": "100ms",
"RestrictNamespaces": "no",
"RestrictRealtime": "no",
"RestrictSUIDSGID": "no",
"Result": "success",
"RootDirectoryStartOnly": "no",
"RootEphemeral": "no",
"RootImagePolicy": "root=verity+signed+encrypted+unprotected+absent:usr=verity+signed+encrypted+unprotected+absent:home=encrypted+unprotected+absent:srv=encrypted+unprotected+absent:tmp=encrypted+unprotected+absent:var=encrypted+unprotected+absent",
"RuntimeDirectoryMode": "0755",
"RuntimeDirectoryPreserve": "no",
"RuntimeMaxUSec": "infinity",
"RuntimeRandomizedExtraUSec": "0",
"SameProcessGroup": "no",
"SecureBits": "0",
"SendSIGHUP": "no",
"SendSIGKILL": "yes",
"SetLoginEnvironment": "no",
"Slice": "system.slice",
"StandardError": "inherit",
"StandardInput": "null",
"StandardOutput": "journal",
"StartLimitAction": "none",
"StartLimitBurst": "5",
"StartLimitIntervalUSec": "10s",
"StartupBlockIOWeight": "[not set]",
"StartupCPUShares": "[not set]",
"StartupCPUWeight": "[not set]",
"StartupIOWeight": "[not set]",
"StartupMemoryHigh": "infinity",
"StartupMemoryLow": "0",
"StartupMemoryMax": "infinity",
"StartupMemorySwapMax": "infinity",
"StartupMemoryZSwapMax": "infinity",
"StateChangeTimestamp": "Mon 2024-11-11 20:06:09 EST",
"StateChangeTimestampMonotonic": "424861877",
"StateDirectoryMode": "0755",
"StatusErrno": "0",
"StopWhenUnneeded": "no",
"SubState": "running",
"SuccessAction": "none",
"SurviveFinalKillSignal": "no",
"SyslogFacility": "3",
"SyslogLevel": "6",
"SyslogLevelPrefix": "yes",
"SyslogPriority": "30",
"SystemCallErrorNumber": "2147483646",
"TTYReset": "no",
"TTYVHangup": "no",
"TTYVTDisallocate": "no",
"TasksAccounting": "yes",
"TasksCurrent": "1",
"TasksMax": "4415",
"TimeoutAbortUSec": "45s",
"TimeoutCleanUSec": "infinity",
"TimeoutStartFailureMode": "terminate",
"TimeoutStartUSec": "45s",
"TimeoutStopFailureMode": "abort",
"TimeoutStopUSec": "45s",
"TimerSlackNSec": "50000",
"Transient": "no",
"Type": "dbus",
"UID": "[not set]",
"UMask": "0022",
"UnitFilePreset": "disabled",
"UnitFileState": "enabled",
"UtmpMode": "init",
"WantedBy": "multi-user.target",
"WatchdogSignal": "6",
"WatchdogTimestampMonotonic": "0",
"WatchdogUSec": "0"
}
}
TASK [fedora.linux_system_roles.certificate : Ensure certificate requests] *****
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:101
Monday 11 November 2024 20:06:15 -0500 (0:00:00.620) 0:00:22.972 *******
changed: [managed-node3] => (item={'name': 'monger-cockpit', 'dns': ['localhost', 'www.example.com'], 'ca': 'local', 'group': 'cockpit-wsinstance', 'run_after': 'DEST=/etc/cockpit/ws-certs.d/monger-cockpit.cert\ncat /etc/pki/tls/certs/monger-cockpit.crt \\\n/etc/pki/tls/private/monger-cockpit.key > $DEST\nchmod 640 $DEST\nchown root:cockpit-wsinstance $DEST\n'}) => {
"ansible_loop_var": "item",
"changed": true,
"item": {
"ca": "local",
"dns": [
"localhost",
"www.example.com"
],
"group": "cockpit-wsinstance",
"name": "monger-cockpit",
"run_after": "DEST=/etc/cockpit/ws-certs.d/monger-cockpit.cert\ncat /etc/pki/tls/certs/monger-cockpit.crt \\\n/etc/pki/tls/private/monger-cockpit.key > $DEST\nchmod 640 $DEST\nchown root:cockpit-wsinstance $DEST\n"
}
}
MSG:
Certificate requested (new). Pre/Post run hooks updated. File attributes updated.
TASK [fedora.linux_system_roles.certificate : Slurp the contents of the files] ***
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:152
Monday 11 November 2024 20:06:16 -0500 (0:00:00.961) 0:00:23.933 *******
skipping: [managed-node3] => (item=['cert', {'name': 'monger-cockpit', 'dns': ['localhost', 'www.example.com'], 'ca': 'local', 'group': 'cockpit-wsinstance', 'run_after': 'DEST=/etc/cockpit/ws-certs.d/monger-cockpit.cert\ncat /etc/pki/tls/certs/monger-cockpit.crt \\\n/etc/pki/tls/private/monger-cockpit.key > $DEST\nchmod 640 $DEST\nchown root:cockpit-wsinstance $DEST\n'}]) => {
"ansible_loop_var": "item",
"changed": false,
"false_condition": "certificate_test_mode | d(false)",
"item": [
"cert",
{
"ca": "local",
"dns": [
"localhost",
"www.example.com"
],
"group": "cockpit-wsinstance",
"name": "monger-cockpit",
"run_after": "DEST=/etc/cockpit/ws-certs.d/monger-cockpit.cert\ncat /etc/pki/tls/certs/monger-cockpit.crt \\\n/etc/pki/tls/private/monger-cockpit.key > $DEST\nchmod 640 $DEST\nchown root:cockpit-wsinstance $DEST\n"
}
],
"skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=['key', {'name': 'monger-cockpit', 'dns': ['localhost', 'www.example.com'], 'ca': 'local', 'group': 'cockpit-wsinstance', 'run_after': 'DEST=/etc/cockpit/ws-certs.d/monger-cockpit.cert\ncat /etc/pki/tls/certs/monger-cockpit.crt \\\n/etc/pki/tls/private/monger-cockpit.key > $DEST\nchmod 640 $DEST\nchown root:cockpit-wsinstance $DEST\n'}]) => {
"ansible_loop_var": "item",
"changed": false,
"false_condition": "certificate_test_mode | d(false)",
"item": [
"key",
{
"ca": "local",
"dns": [
"localhost",
"www.example.com"
],
"group": "cockpit-wsinstance",
"name": "monger-cockpit",
"run_after": "DEST=/etc/cockpit/ws-certs.d/monger-cockpit.cert\ncat /etc/pki/tls/certs/monger-cockpit.crt \\\n/etc/pki/tls/private/monger-cockpit.key > $DEST\nchmod 640 $DEST\nchown root:cockpit-wsinstance $DEST\n"
}
],
"skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=['ca', {'name': 'monger-cockpit', 'dns': ['localhost', 'www.example.com'], 'ca': 'local', 'group': 'cockpit-wsinstance', 'run_after': 'DEST=/etc/cockpit/ws-certs.d/monger-cockpit.cert\ncat /etc/pki/tls/certs/monger-cockpit.crt \\\n/etc/pki/tls/private/monger-cockpit.key > $DEST\nchmod 640 $DEST\nchown root:cockpit-wsinstance $DEST\n'}]) => {
"ansible_loop_var": "item",
"changed": false,
"false_condition": "certificate_test_mode | d(false)",
"item": [
"ca",
{
"ca": "local",
"dns": [
"localhost",
"www.example.com"
],
"group": "cockpit-wsinstance",
"name": "monger-cockpit",
"run_after": "DEST=/etc/cockpit/ws-certs.d/monger-cockpit.cert\ncat /etc/pki/tls/certs/monger-cockpit.crt \\\n/etc/pki/tls/private/monger-cockpit.key > $DEST\nchmod 640 $DEST\nchown root:cockpit-wsinstance $DEST\n"
}
],
"skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => {
"changed": false
}
MSG:
All items skipped
TASK [fedora.linux_system_roles.certificate : Create return data] **************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:160
Monday 11 November 2024 20:06:16 -0500 (0:00:00.081) 0:00:24.014 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "certificate_test_mode | d(false)",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.certificate : Stop tracking certificates] ******
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:176
Monday 11 November 2024 20:06:16 -0500 (0:00:00.052) 0:00:24.067 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "certificate_test_mode | d(false)",
"skip_reason": "Conditional result was False"
}
TASK [fedora.linux_system_roles.certificate : Remove files] ********************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:181
Monday 11 November 2024 20:06:16 -0500 (0:00:00.053) 0:00:24.121 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "certificate_test_mode | d(false)",
"skip_reason": "Conditional result was False"
}
TASK [Restart cockpit to use the new certificates] *****************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:57
Monday 11 November 2024 20:06:17 -0500 (0:00:00.067) 0:00:24.188 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "__cockpit_is_ostree | d(false)",
"skip_reason": "Conditional result was False"
}
TASK [Get PEM of certmonger's local CA] ****************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:64
Monday 11 November 2024 20:06:17 -0500 (0:00:00.042) 0:00:24.230 *******
changed: [managed-node3] => {
"changed": true,
"cmd": [
"openssl",
"pkcs12",
"-in",
"/var/lib/certmonger/local/creds",
"-out",
"/var/lib/certmonger/local/ca.pem",
"-nokeys",
"-nodes",
"-passin",
"pass:"
],
"delta": "0:00:00.017005",
"end": "2024-11-11 20:06:17.573401",
"rc": 0,
"start": "2024-11-11 20:06:17.556396"
}
TASK [Test - cockpit works with TLS and expected certificate] ******************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:72
Monday 11 November 2024 20:06:17 -0500 (0:00:00.563) 0:00:24.793 *******
ok: [managed-node3] => {
"changed": false,
"cmd": [
"curl",
"--cacert",
"/var/lib/certmonger/local/ca.pem",
"https://localhost:9090"
],
"delta": "0:00:00.203715",
"end": "2024-11-11 20:06:18.177816",
"rc": 0,
"start": "2024-11-11 20:06:17.974101"
}
STDOUT:
Loading...
Please enable JavaScript to use the Web Console.
A modern browser is required for security, reliability, and performance.
Download a new browser for free
Bypass browser check
Validating authentication token
STDERR:
% Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
0 0 0 0 0 0 0 0 --:--:-- --:--:-- --:--:-- 0
100 11893 0 11893 0 0 60938 0 --:--:-- --:--:-- --:--:-- 60989
TASK [Test - get certmonger tracking status] ***********************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:82
Monday 11 November 2024 20:06:18 -0500 (0:00:00.608) 0:00:25.402 *******
ok: [managed-node3] => {
"changed": false,
"cmd": [
"getcert",
"list",
"--tracking-only",
"-f",
"/etc/pki/tls/certs/monger-cockpit.crt"
],
"delta": "0:00:00.036135",
"end": "2024-11-11 20:06:18.606302",
"rc": 0,
"start": "2024-11-11 20:06:18.570167"
}
STDOUT:
Number of certificates and requests being tracked: 1.
Request ID '20241112010616':
status: MONITORING
stuck: no
key pair storage: type=FILE,location='/etc/pki/tls/private/monger-cockpit.key'
certificate: type=FILE,location='/etc/pki/tls/certs/monger-cockpit.crt'
CA: local
issuer: CN=0559bc19-aa16449a-9f5a1b5c-6c596b03,CN=Local Signing Authority
subject: CN=localhost
issued: 2024-11-11 20:06:16 EST
expires: 2025-11-11 20:05:32 EST
dns: localhost,www.example.com
key usage: digitalSignature,keyEncipherment
eku: id-kp-serverAuth,id-kp-clientAuth
pre-save command:
post-save command: /etc/certmonger/post-scripts/monger-cockpit-59d1099.sh
track: yes
auto-renew: yes
TASK [Test - ensure certificate generation succeeded] **************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:89
Monday 11 November 2024 20:06:18 -0500 (0:00:00.458) 0:00:25.861 *******
ok: [managed-node3] => {
"changed": false
}
MSG:
All assertions passed
TASK [Test - clean up tracked certificate] *************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:93
Monday 11 November 2024 20:06:18 -0500 (0:00:00.038) 0:00:25.899 *******
ok: [managed-node3] => {
"changed": false,
"cmd": [
"getcert",
"stop-tracking",
"-f",
"/etc/pki/tls/certs/monger-cockpit.crt"
],
"delta": "0:00:00.029816",
"end": "2024-11-11 20:06:19.128593",
"rc": 0,
"start": "2024-11-11 20:06:19.098777"
}
STDOUT:
Request "20241112010616" removed.
TASK [Test - clean up generated certificate] ***********************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:100
Monday 11 November 2024 20:06:19 -0500 (0:00:00.449) 0:00:26.349 *******
changed: [managed-node3] => {
"changed": true,
"path": "/etc/pki/tls/certs/monger-cockpit.crt",
"state": "absent"
}
TASK [Test - clean up generated private key] ***********************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:105
Monday 11 November 2024 20:06:19 -0500 (0:00:00.388) 0:00:26.737 *******
changed: [managed-node3] => {
"changed": true,
"path": "/etc/pki/tls/private/monger-cockpit.key",
"state": "absent"
}
TASK [Test - clean up copied certificate] **************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:110
Monday 11 November 2024 20:06:19 -0500 (0:00:00.400) 0:00:27.138 *******
changed: [managed-node3] => {
"changed": true,
"path": "/etc/cockpit/ws-certs.d/monger-cockpit.cert",
"state": "absent"
}
TASK [Test - generic cleanup] **************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:115
Monday 11 November 2024 20:06:20 -0500 (0:00:00.402) 0:00:27.541 *******
included: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml for managed-node3
TASK [Cleanup - packages] ******************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:2
Monday 11 November 2024 20:06:20 -0500 (0:00:00.039) 0:00:27.580 *******
changed: [managed-node3] => {
"changed": true,
"rc": 0,
"results": [
"Removed: cockpit-bridge-327-1.fc40.x86_64",
"Removed: cockpit-system-327-1.fc40.noarch",
"Removed: cockpit-ws-327-1.fc40.x86_64"
]
}
TASK [Cleanup - services] ******************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:15
Monday 11 November 2024 20:06:30 -0500 (0:00:09.846) 0:00:37.427 *******
skipping: [managed-node3] => {
"changed": false,
"false_condition": "__cockpit_is_ostree | d(false)",
"skip_reason": "Conditional result was False"
}
TASK [Cleanup - find certificates] *********************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:25
Monday 11 November 2024 20:06:30 -0500 (0:00:00.034) 0:00:37.461 *******
[WARNING]: Skipped '/etc/cockpit/ws-certs.d/' path due to this access issue:
'/etc/cockpit/ws-certs.d/' is not a directory
ok: [managed-node3] => {
"changed": false,
"examined": 0,
"files": [],
"matched": 0,
"skipped_paths": {
"/etc/cockpit/ws-certs.d/": "'/etc/cockpit/ws-certs.d/' is not a directory"
}
}
MSG:
Not all paths examined, check warnings for details
TASK [Cleanup - certificates] **************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:35
Monday 11 November 2024 20:06:30 -0500 (0:00:00.546) 0:00:38.007 *******
skipping: [managed-node3] => {
"changed": false,
"skipped_reason": "No items in the list"
}
TASK [Cleanup - config file] ***************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:44
Monday 11 November 2024 20:06:30 -0500 (0:00:00.014) 0:00:38.022 *******
ok: [managed-node3] => {
"changed": false,
"path": "/etc/cockpit/cockpit.conf",
"state": "absent"
}
TASK [Cleanup - port customization] ********************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:52
Monday 11 November 2024 20:06:31 -0500 (0:00:00.378) 0:00:38.400 *******
ok: [managed-node3] => {
"changed": false,
"path": "/etc/systemd/system/cockpit.socket.d/",
"state": "absent"
}
TASK [Cleanup - Reload systemd] ************************************************
task path: /tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:60
Monday 11 November 2024 20:06:31 -0500 (0:00:00.381) 0:00:38.782 *******
ok: [managed-node3] => {
"changed": false,
"name": null,
"status": {}
}
PLAY RECAP *********************************************************************
managed-node3 : ok=44 changed=8 unreachable=0 failed=0 skipped=22 rescued=0 ignored=0
Monday 11 November 2024 20:06:32 -0500 (0:00:00.810) 0:00:39.592 *******
===============================================================================
fedora.linux_system_roles.cockpit : Ensure Cockpit Web Console packages are installed. -- 12.47s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/setup-dnf.yml:7
Cleanup - packages ------------------------------------------------------ 9.85s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:2
fedora.linux_system_roles.certificate : Ensure provider packages are installed --- 1.58s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:23
fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed --- 1.57s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:5
Gathering Facts --------------------------------------------------------- 1.23s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:6
fedora.linux_system_roles.cockpit : Ensure Cockpit Web Console is started/stopped and enabled/disabled --- 1.15s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:71
fedora.linux_system_roles.certificate : Ensure certificate requests ----- 0.96s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:101
Cleanup - Reload systemd ------------------------------------------------ 0.81s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:60
fedora.linux_system_roles.certificate : Ensure provider service is running --- 0.62s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:90
Test - cockpit works with TLS and expected certificate ------------------ 0.61s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:72
Get PEM of certmonger's local CA ---------------------------------------- 0.56s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:64
Cleanup - find certificates --------------------------------------------- 0.55s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/cleanup.yml:25
fedora.linux_system_roles.cockpit : Clean up port configuration file for undefined custom port --- 0.49s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/main.yml:62
fedora.linux_system_roles.cockpit : Check if system is ostree ----------- 0.47s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/cockpit/tasks/set_vars.yml:10
Get name of cockpit group for tests ------------------------------------- 0.47s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tasks/get_cockpit_group.yml:3
Test - get certmonger tracking status ----------------------------------- 0.46s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:82
Test - clean up tracked certificate ------------------------------------- 0.45s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:93
fedora.linux_system_roles.certificate : Ensure pre-scripts hooks directory exists --- 0.45s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:35
fedora.linux_system_roles.certificate : Ensure post-scripts hooks directory exists --- 0.44s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:61
Test - clean up copied certificate -------------------------------------- 0.40s
/tmp/collections-n5z/ansible_collections/fedora/linux_system_roles/tests/cockpit/tests_certificate_runafter.yml:110