ansible-playbook [core 2.16.14]
  config file = None
  configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
  ansible python module location = /usr/local/lib/python3.12/site-packages/ansible
  ansible collection location = /tmp/collections-iRb
  executable location = /usr/local/bin/ansible-playbook
  python version = 3.12.1 (main, Feb 21 2024, 14:18:26) [GCC 8.5.0 20210514 (Red Hat 8.5.0-21)] (/usr/bin/python3.12)
  jinja version = 3.1.5
  libyaml = True
No config file found; using defaults
running playbook inside collection fedora.linux_system_roles
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.profile_tasks to ansible.posix.profile_tasks
Skipping callback 'default', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.

PLAYBOOK: tests_update.yml *****************************************************
1 plays in /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml

PLAY [Ensure that we can set the policy using this role (without reboot)] ******

TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:3
Friday 27 December 2024  23:26:24 -0500 (0:00:00.009)       0:00:00.009 ******* 
ok: [managed-node3]

TASK [Set correct base policy] *************************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:8
Friday 27 December 2024  23:26:25 -0500 (0:00:01.035)       0:00:01.045 ******* 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Friday 27 December 2024  23:26:25 -0500 (0:00:00.050)       0:00:01.096 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Friday 27 December 2024  23:26:25 -0500 (0:00:00.019)       0:00:01.116 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Friday 27 December 2024  23:26:25 -0500 (0:00:00.033)       0:00:01.149 ******* 
ok: [managed-node3] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Friday 27 December 2024  23:26:26 -0500 (0:00:00.428)       0:00:01.578 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "__crypto_policies_is_ostree": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Friday 27 December 2024  23:26:26 -0500 (0:00:00.021)       0:00:01.599 ******* 
ok: [managed-node3] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Friday 27 December 2024  23:26:26 -0500 (0:00:00.335)       0:00:01.934 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "__crypto_policies_is_transactional": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Friday 27 December 2024  23:26:26 -0500 (0:00:00.021)       0:00:01.955 ******* 
skipping: [managed-node3] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Friday 27 December 2024  23:26:26 -0500 (0:00:00.030)       0:00:01.986 ******* 
ok: [managed-node3] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: crypto-policies crypto-policies-scripts

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Friday 27 December 2024  23:26:29 -0500 (0:00:03.016)       0:00:05.003 ******* 
skipping: [managed-node3] => {
    "false_condition": "__crypto_policies_is_transactional | d(false)"
}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Friday 27 December 2024  23:26:29 -0500 (0:00:00.032)       0:00:05.035 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Friday 27 December 2024  23:26:29 -0500 (0:00:00.032)       0:00:05.068 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Friday 27 December 2024  23:26:29 -0500 (0:00:00.032)       0:00:05.100 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 27 December 2024  23:26:29 -0500 (0:00:00.017)       0:00:05.118 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.050243",
    "end": "2024-12-27 23:26:30.196796",
    "rc": 0,
    "start": "2024-12-27 23:26:30.146553"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 27 December 2024  23:26:30 -0500 (0:00:00.474)       0:00:05.593 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Friday 27 December 2024  23:26:30 -0500 (0:00:00.017)       0:00:05.611 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1716968748.851,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Friday 27 December 2024  23:26:30 -0500 (0:00:00.434)       0:00:06.045 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FIPS",
            "FUTURE",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Friday 27 December 2024  23:26:30 -0500 (0:00:00.038)       0:00:06.083 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Friday 27 December 2024  23:26:31 -0500 (0:00:00.331)       0:00:06.415 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Friday 27 December 2024  23:26:31 -0500 (0:00:00.036)       0:00:06.452 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Friday 27 December 2024  23:26:31 -0500 (0:00:00.015)       0:00:06.467 ******* 
Notification for handler __crypto_policies_handler_modified has been saved.
changed: [managed-node3] => {
    "changed": true,
    "cmd": [
        "update-crypto-policies",
        "--no-reload",
        "--set",
        "LEGACY"
    ],
    "delta": "0:00:00.111212",
    "end": "2024-12-27 23:26:31.522101",
    "rc": 0,
    "start": "2024-12-27 23:26:31.410889"
}

STDOUT:

Setting system policy to LEGACY
Note: System-wide crypto policies are applied on application start-up.
It is recommended to restart the system for the change of policies
to fully take place.

TASK [fedora.linux_system_roles.crypto_policies : Set the reboot_required flag if needed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:87
Friday 27 December 2024  23:26:31 -0500 (0:00:00.450)       0:00:06.918 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_reboot_required": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update facts after applying policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:95
Friday 27 December 2024  23:26:31 -0500 (0:00:00.022)       0:00:06.940 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 27 December 2024  23:26:31 -0500 (0:00:00.017)       0:00:06.958 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.050177",
    "end": "2024-12-27 23:26:31.937826",
    "rc": 0,
    "start": "2024-12-27 23:26:31.887649"
}

STDOUT:

LEGACY

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 27 December 2024  23:26:31 -0500 (0:00:00.373)       0:00:07.331 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "LEGACY"
    },
    "changed": false
}

TASK [Verify that base policy was updated] *************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:14
Friday 27 December 2024  23:26:32 -0500 (0:00:00.020)       0:00:07.352 ******* 
ok: [managed-node3] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Set policy and subpolicy to use for test] ********************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:20
Friday 27 December 2024  23:26:32 -0500 (0:00:00.033)       0:00:07.385 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "__policy_and_sub": "DEFAULT:NO-SHA1"
    },
    "changed": false
}

TASK [Set correct base policy and subpolicy] ***********************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:24
Friday 27 December 2024  23:26:32 -0500 (0:00:00.015)       0:00:07.401 ******* 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Friday 27 December 2024  23:26:32 -0500 (0:00:00.041)       0:00:07.443 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Friday 27 December 2024  23:26:32 -0500 (0:00:00.019)       0:00:07.462 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Friday 27 December 2024  23:26:32 -0500 (0:00:00.032)       0:00:07.495 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Friday 27 December 2024  23:26:32 -0500 (0:00:00.017)       0:00:07.513 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Friday 27 December 2024  23:26:32 -0500 (0:00:00.017)       0:00:07.530 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Friday 27 December 2024  23:26:32 -0500 (0:00:00.019)       0:00:07.550 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Friday 27 December 2024  23:26:32 -0500 (0:00:00.015)       0:00:07.566 ******* 
skipping: [managed-node3] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Friday 27 December 2024  23:26:32 -0500 (0:00:00.031)       0:00:07.597 ******* 
ok: [managed-node3] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: crypto-policies crypto-policies-scripts

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Friday 27 December 2024  23:26:35 -0500 (0:00:02.909)       0:00:10.507 ******* 
skipping: [managed-node3] => {
    "false_condition": "__crypto_policies_is_transactional | d(false)"
}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Friday 27 December 2024  23:26:35 -0500 (0:00:00.035)       0:00:10.543 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Friday 27 December 2024  23:26:35 -0500 (0:00:00.031)       0:00:10.574 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Friday 27 December 2024  23:26:35 -0500 (0:00:00.031)       0:00:10.606 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 27 December 2024  23:26:35 -0500 (0:00:00.017)       0:00:10.623 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.054013",
    "end": "2024-12-27 23:26:35.623893",
    "rc": 0,
    "start": "2024-12-27 23:26:35.569880"
}

STDOUT:

LEGACY

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 27 December 2024  23:26:35 -0500 (0:00:00.398)       0:00:11.022 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "LEGACY"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Friday 27 December 2024  23:26:35 -0500 (0:00:00.016)       0:00:11.039 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1716968748.851,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1735359991.4578032,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Friday 27 December 2024  23:26:36 -0500 (0:00:00.342)       0:00:11.382 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FIPS",
            "FUTURE",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Friday 27 December 2024  23:26:36 -0500 (0:00:00.040)       0:00:11.422 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Friday 27 December 2024  23:26:36 -0500 (0:00:00.342)       0:00:11.764 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Friday 27 December 2024  23:26:36 -0500 (0:00:00.042)       0:00:11.807 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Friday 27 December 2024  23:26:36 -0500 (0:00:00.017)       0:00:11.824 ******* 
Notification for handler __crypto_policies_handler_modified has been saved.
changed: [managed-node3] => {
    "changed": true,
    "cmd": [
        "update-crypto-policies",
        "--no-reload",
        "--set",
        "DEFAULT:NO-SHA1"
    ],
    "delta": "0:00:00.124969",
    "end": "2024-12-27 23:26:36.905335",
    "rc": 0,
    "start": "2024-12-27 23:26:36.780366"
}

STDOUT:

Setting system policy to DEFAULT:NO-SHA1
Note: System-wide crypto policies are applied on application start-up.
It is recommended to restart the system for the change of policies
to fully take place.

TASK [fedora.linux_system_roles.crypto_policies : Set the reboot_required flag if needed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:87
Friday 27 December 2024  23:26:36 -0500 (0:00:00.477)       0:00:12.302 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_reboot_required": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update facts after applying policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:95
Friday 27 December 2024  23:26:36 -0500 (0:00:00.023)       0:00:12.325 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 27 December 2024  23:26:36 -0500 (0:00:00.019)       0:00:12.345 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.051488",
    "end": "2024-12-27 23:26:37.325471",
    "rc": 0,
    "start": "2024-12-27 23:26:37.273983"
}

STDOUT:

DEFAULT:NO-SHA1

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 27 December 2024  23:26:37 -0500 (0:00:00.376)       0:00:12.722 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT:NO-SHA1"
    },
    "changed": false
}

TASK [Verify that base policy and subpolicy were updated] **********************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:30
Friday 27 December 2024  23:26:37 -0500 (0:00:00.020)       0:00:12.743 ******* 
ok: [managed-node3] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Set incorrect base policy] ***********************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:38
Friday 27 December 2024  23:26:37 -0500 (0:00:00.035)       0:00:12.778 ******* 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Friday 27 December 2024  23:26:37 -0500 (0:00:00.029)       0:00:12.807 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Friday 27 December 2024  23:26:37 -0500 (0:00:00.020)       0:00:12.827 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Friday 27 December 2024  23:26:37 -0500 (0:00:00.037)       0:00:12.865 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Friday 27 December 2024  23:26:37 -0500 (0:00:00.018)       0:00:12.884 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Friday 27 December 2024  23:26:37 -0500 (0:00:00.018)       0:00:12.902 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Friday 27 December 2024  23:26:37 -0500 (0:00:00.021)       0:00:12.924 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Friday 27 December 2024  23:26:37 -0500 (0:00:00.017)       0:00:12.941 ******* 
skipping: [managed-node3] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Friday 27 December 2024  23:26:37 -0500 (0:00:00.031)       0:00:12.973 ******* 
ok: [managed-node3] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: crypto-policies crypto-policies-scripts

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Friday 27 December 2024  23:26:40 -0500 (0:00:02.862)       0:00:15.835 ******* 
skipping: [managed-node3] => {
    "false_condition": "__crypto_policies_is_transactional | d(false)"
}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Friday 27 December 2024  23:26:40 -0500 (0:00:00.048)       0:00:15.883 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Friday 27 December 2024  23:26:40 -0500 (0:00:00.046)       0:00:15.930 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Friday 27 December 2024  23:26:40 -0500 (0:00:00.047)       0:00:15.977 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 27 December 2024  23:26:40 -0500 (0:00:00.027)       0:00:16.005 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.051381",
    "end": "2024-12-27 23:26:40.992525",
    "rc": 0,
    "start": "2024-12-27 23:26:40.941144"
}

STDOUT:

DEFAULT:NO-SHA1

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 27 December 2024  23:26:41 -0500 (0:00:00.383)       0:00:16.389 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT:NO-SHA1"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Friday 27 December 2024  23:26:41 -0500 (0:00:00.016)       0:00:16.406 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1735359996.8257694,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1735359991.4578032,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Friday 27 December 2024  23:26:41 -0500 (0:00:00.331)       0:00:16.737 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FIPS",
            "FUTURE",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Friday 27 December 2024  23:26:41 -0500 (0:00:00.038)       0:00:16.776 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1735359996.8377693,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Friday 27 December 2024  23:26:41 -0500 (0:00:00.329)       0:00:17.105 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Friday 27 December 2024  23:26:41 -0500 (0:00:00.037)       0:00:17.143 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Friday 27 December 2024  23:26:41 -0500 (0:00:00.016)       0:00:17.159 ******* 
fatal: [managed-node3]: FAILED! => {
    "changed": true,
    "cmd": [
        "update-crypto-policies",
        "--no-reload",
        "--set",
        "NOEXIST"
    ],
    "delta": "0:00:00.049315",
    "end": "2024-12-27 23:26:42.143521",
    "rc": 1,
    "start": "2024-12-27 23:26:42.094206"
}

STDERR:

Unknown policy `NOEXIST`: file `NOEXIST.pol` not found in (., policies, /etc/crypto-policies/policies, /usr/share/crypto-policies/policies)


MSG:

non-zero return code

TASK [Check that we failed in the role] ****************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:48
Friday 27 December 2024  23:26:42 -0500 (0:00:00.379)       0:00:17.539 ******* 
ok: [managed-node3] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Set incorrect subpolicy] *************************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:57
Friday 27 December 2024  23:26:42 -0500 (0:00:00.018)       0:00:17.557 ******* 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Friday 27 December 2024  23:26:42 -0500 (0:00:00.031)       0:00:17.588 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Friday 27 December 2024  23:26:42 -0500 (0:00:00.019)       0:00:17.608 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Friday 27 December 2024  23:26:42 -0500 (0:00:00.035)       0:00:17.644 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Friday 27 December 2024  23:26:42 -0500 (0:00:00.018)       0:00:17.662 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Friday 27 December 2024  23:26:42 -0500 (0:00:00.017)       0:00:17.680 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Friday 27 December 2024  23:26:42 -0500 (0:00:00.021)       0:00:17.701 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Friday 27 December 2024  23:26:42 -0500 (0:00:00.017)       0:00:17.719 ******* 
skipping: [managed-node3] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Friday 27 December 2024  23:26:42 -0500 (0:00:00.031)       0:00:17.751 ******* 
ok: [managed-node3] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: crypto-policies crypto-policies-scripts

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Friday 27 December 2024  23:26:45 -0500 (0:00:02.867)       0:00:20.619 ******* 
skipping: [managed-node3] => {
    "false_condition": "__crypto_policies_is_transactional | d(false)"
}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Friday 27 December 2024  23:26:45 -0500 (0:00:00.048)       0:00:20.667 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Friday 27 December 2024  23:26:45 -0500 (0:00:00.045)       0:00:20.713 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Friday 27 December 2024  23:26:45 -0500 (0:00:00.053)       0:00:20.766 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 27 December 2024  23:26:45 -0500 (0:00:00.028)       0:00:20.795 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.051559",
    "end": "2024-12-27 23:26:45.813548",
    "rc": 0,
    "start": "2024-12-27 23:26:45.761989"
}

STDOUT:

DEFAULT:NO-SHA1

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 27 December 2024  23:26:45 -0500 (0:00:00.417)       0:00:21.213 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT:NO-SHA1"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Friday 27 December 2024  23:26:45 -0500 (0:00:00.018)       0:00:21.231 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1735359996.8257694,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1735359991.4578032,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Friday 27 December 2024  23:26:46 -0500 (0:00:00.331)       0:00:21.563 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FIPS",
            "FUTURE",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Friday 27 December 2024  23:26:46 -0500 (0:00:00.043)       0:00:21.606 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1735359996.8377693,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Friday 27 December 2024  23:26:46 -0500 (0:00:00.333)       0:00:21.939 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Friday 27 December 2024  23:26:46 -0500 (0:00:00.038)       0:00:21.978 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Friday 27 December 2024  23:26:46 -0500 (0:00:00.016)       0:00:21.994 ******* 
fatal: [managed-node3]: FAILED! => {
    "changed": true,
    "cmd": [
        "update-crypto-policies",
        "--no-reload",
        "--set",
        "DEFAULT:NOEXIST"
    ],
    "delta": "0:00:00.061484",
    "end": "2024-12-27 23:26:46.994877",
    "rc": 1,
    "start": "2024-12-27 23:26:46.933393"
}

STDERR:

Unknown policy `NOEXIST`: file `NOEXIST.pmod` not found in (., policies/modules, /etc/crypto-policies/policies/modules, /usr/share/crypto-policies/policies/modules)


MSG:

non-zero return code

TASK [Check that we failed in the role] ****************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:67
Friday 27 December 2024  23:26:47 -0500 (0:00:00.394)       0:00:22.389 ******* 
ok: [managed-node3] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Restore policy to DEFAULT] ***********************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:75
Friday 27 December 2024  23:26:47 -0500 (0:00:00.017)       0:00:22.407 ******* 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Friday 27 December 2024  23:26:47 -0500 (0:00:00.048)       0:00:22.456 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Friday 27 December 2024  23:26:47 -0500 (0:00:00.019)       0:00:22.475 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Friday 27 December 2024  23:26:47 -0500 (0:00:00.034)       0:00:22.510 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Friday 27 December 2024  23:26:47 -0500 (0:00:00.017)       0:00:22.528 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Friday 27 December 2024  23:26:47 -0500 (0:00:00.016)       0:00:22.544 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Friday 27 December 2024  23:26:47 -0500 (0:00:00.021)       0:00:22.565 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Friday 27 December 2024  23:26:47 -0500 (0:00:00.016)       0:00:22.582 ******* 
skipping: [managed-node3] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Friday 27 December 2024  23:26:47 -0500 (0:00:00.030)       0:00:22.612 ******* 
ok: [managed-node3] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: crypto-policies crypto-policies-scripts

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Friday 27 December 2024  23:26:50 -0500 (0:00:02.847)       0:00:25.460 ******* 
skipping: [managed-node3] => {
    "false_condition": "__crypto_policies_is_transactional | d(false)"
}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Friday 27 December 2024  23:26:50 -0500 (0:00:00.034)       0:00:25.494 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Friday 27 December 2024  23:26:50 -0500 (0:00:00.031)       0:00:25.525 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Friday 27 December 2024  23:26:50 -0500 (0:00:00.032)       0:00:25.557 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 27 December 2024  23:26:50 -0500 (0:00:00.017)       0:00:25.574 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.051621",
    "end": "2024-12-27 23:26:50.563915",
    "rc": 0,
    "start": "2024-12-27 23:26:50.512294"
}

STDOUT:

DEFAULT:NO-SHA1

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 27 December 2024  23:26:50 -0500 (0:00:00.385)       0:00:25.960 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT:NO-SHA1"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Friday 27 December 2024  23:26:50 -0500 (0:00:00.017)       0:00:25.977 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1735359996.8257694,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1735359991.4578032,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Friday 27 December 2024  23:26:50 -0500 (0:00:00.359)       0:00:26.337 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FIPS",
            "FUTURE",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Friday 27 December 2024  23:26:51 -0500 (0:00:00.037)       0:00:26.374 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1735359996.8377693,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Friday 27 December 2024  23:26:51 -0500 (0:00:00.341)       0:00:26.716 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Friday 27 December 2024  23:26:51 -0500 (0:00:00.039)       0:00:26.756 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "AD-SUPPORT",
            "ECDHE-ONLY",
            "NO-CAMELLIA",
            "NO-SHA1",
            "OSPP"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Friday 27 December 2024  23:26:51 -0500 (0:00:00.016)       0:00:26.772 ******* 
Notification for handler __crypto_policies_handler_modified has been saved.
changed: [managed-node3] => {
    "changed": true,
    "cmd": [
        "update-crypto-policies",
        "--set",
        "DEFAULT"
    ],
    "delta": "0:00:00.139964",
    "end": "2024-12-27 23:26:51.874008",
    "rc": 0,
    "start": "2024-12-27 23:26:51.734044"
}

STDOUT:

Setting system policy to DEFAULT
Note: System-wide crypto policies are applied on application start-up.
It is recommended to restart the system for the change of policies
to fully take place.

TASK [fedora.linux_system_roles.crypto_policies : Set the reboot_required flag if needed] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:87
Friday 27 December 2024  23:26:51 -0500 (0:00:00.504)       0:00:27.277 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_reboot_required": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update facts after applying policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:95
Friday 27 December 2024  23:26:51 -0500 (0:00:00.032)       0:00:27.310 ******* 
included: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 27 December 2024  23:26:51 -0500 (0:00:00.023)       0:00:27.333 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.050663",
    "end": "2024-12-27 23:26:52.325307",
    "rc": 0,
    "start": "2024-12-27 23:26:52.274644"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 27 December 2024  23:26:52 -0500 (0:00:00.386)       0:00:27.720 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

TASK [Flush handlers] **********************************************************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:86
Friday 27 December 2024  23:26:52 -0500 (0:00:00.027)       0:00:27.747 ******* 
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes for managed-node3
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag for managed-node3
META: triggered running handlers for managed-node3

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:4
Friday 27 December 2024  23:26:52 -0500 (0:00:00.003)       0:00:27.750 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "crypto_policies_reboot_ok | d(false)",
    "skip_reason": "Conditional result was False"
}

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag] ***
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:11
Friday 27 December 2024  23:26:52 -0500 (0:00:00.049)       0:00:27.799 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "crypto_policies_reboot_ok | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [Check the current policy has been restored to DEFAULT] *******************
task path: /tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:88
Friday 27 December 2024  23:26:52 -0500 (0:00:00.054)       0:00:27.854 ******* 
ok: [managed-node3] => {
    "changed": false
}

MSG:

All assertions passed

PLAY RECAP *********************************************************************
managed-node3              : ok=76   changed=3    unreachable=0    failed=0    skipped=43   rescued=2    ignored=0   


TASKS RECAP ********************************************************************
Friday 27 December 2024  23:26:52 -0500 (0:00:00.035)       0:00:27.889 ******* 
=============================================================================== 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 3.02s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 2.91s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 2.87s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 2.86s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 2.85s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
Gathering Facts --------------------------------------------------------- 1.04s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_update.yml:3 
fedora.linux_system_roles.crypto_policies : Update crypto policy if needed --- 0.50s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75 
fedora.linux_system_roles.crypto_policies : Update crypto policy if needed --- 0.48s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.47s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Update crypto policy if needed --- 0.45s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75 
fedora.linux_system_roles.crypto_policies : Find base policies files ---- 0.43s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39 
fedora.linux_system_roles.crypto_policies : Check if system is ostree --- 0.43s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.42s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.40s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Update crypto policy if needed --- 0.39s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.39s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.39s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.38s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Update crypto policy if needed --- 0.38s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.38s
/tmp/collections-iRb/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3