[DEPRECATION WARNING]: ANSIBLE_COLLECTIONS_PATHS option, does not fit var 
naming standard, use the singular form ANSIBLE_COLLECTIONS_PATH instead. This 
feature will be removed from ansible-core in version 2.19. Deprecation warnings
 can be disabled by setting deprecation_warnings=False in ansible.cfg.
ansible-playbook [core 2.16.10]
  config file = None
  configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
  ansible python module location = /usr/local/lib/python3.12/site-packages/ansible
  ansible collection location = /tmp/collections-FQo
  executable location = /usr/local/bin/ansible-playbook
  python version = 3.12.1 (main, Feb 21 2024, 14:18:26) [GCC 8.5.0 20210514 (Red Hat 8.5.0-21)] (/usr/bin/python3.12)
  jinja version = 3.1.4
  libyaml = True
No config file found; using defaults
running playbook inside collection fedora.linux_system_roles
statically imported: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.profile_tasks to ansible.posix.profile_tasks
Skipping callback 'default', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.

PLAYBOOK: tests_basic_ipa.yml **************************************************
1 plays in /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_basic_ipa.yml

PLAY [Test using IPA to issue certs] *******************************************

TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_basic_ipa.yml:2
Saturday 17 August 2024  08:22:56 -0400 (0:00:00.009)       0:00:00.009 ******* 
ok: [managed_node1]

TASK [Check if system is ostree] ***********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_basic_ipa.yml:13
Saturday 17 August 2024  08:22:58 -0400 (0:00:02.414)       0:00:02.424 ******* 
ok: [managed_node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [Skip if not supported] ***************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_basic_ipa.yml:18
Saturday 17 August 2024  08:22:59 -0400 (0:00:00.454)       0:00:02.878 ******* 
META: end_host conditional evaluated to False, continuing execution for managed_node1
skipping: [managed_node1] => {
    "skip_reason": "end_host conditional evaluated to False, continuing execution for managed_node1"
}

MSG:

end_host conditional evaluated to false, continuing execution for managed_node1

TASK [Set __is_beaker_env] *****************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:2
Saturday 17 August 2024  08:22:59 -0400 (0:00:00.007)       0:00:02.885 ******* 
ok: [managed_node1] => {
    "ansible_facts": {
        "__is_beaker_env": true
    },
    "changed": false
}

TASK [Check if system is ostree] ***********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:9
Saturday 17 August 2024  08:22:59 -0400 (0:00:00.037)       0:00:02.923 ******* 
ok: [managed_node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [Set flag to indicate system is ostree] ***********************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:14
Saturday 17 August 2024  08:22:59 -0400 (0:00:00.336)       0:00:03.259 ******* 
ok: [managed_node1] => {
    "ansible_facts": {
        "__certificate_is_ostree": false
    },
    "changed": false
}

TASK [Install ansible-freeipa] *************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:18
Saturday 17 August 2024  08:22:59 -0400 (0:00:00.021)       0:00:03.281 ******* 
changed: [managed_node1 -> 127.0.0.1] => {
    "changed": true,
    "rc": 0,
    "results": [
        "Installed: ansible-freeipa-1.12.1-1.el8.noarch"
    ]
}
lsrpackages: ansible-freeipa

TASK [Ensure freeipa-repo is absent] *******************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:24
Saturday 17 August 2024  08:23:06 -0400 (0:00:06.794)       0:00:10.075 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not __is_beaker_env",
    "skip_reason": "Conditional result was False"
}

TASK [Clone ansible-freeipa repo] **********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:32
Saturday 17 August 2024  08:23:06 -0400 (0:00:00.013)       0:00:10.089 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not __is_beaker_env",
    "skip_reason": "Conditional result was False"
}

TASK [Create role symlinks] ****************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:41
Saturday 17 August 2024  08:23:06 -0400 (0:00:00.012)       0:00:10.102 ******* 
skipping: [managed_node1] => (item=ipaserver)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "not __is_beaker_env",
    "item": "ipaserver",
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=ipaclient)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "not __is_beaker_env",
    "item": "ipaclient",
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => {
    "changed": false
}

MSG:

All items skipped

TASK [Ensure hostname package is installed] ************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:53
Saturday 17 August 2024  08:23:06 -0400 (0:00:00.017)       0:00:10.120 ******* 
ok: [managed_node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: hostname

TASK [Set hostname] ************************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:59
Saturday 17 August 2024  08:23:11 -0400 (0:00:05.325)       0:00:15.445 ******* 
changed: [managed_node1] => {
    "ansible_facts": {
        "ansible_domain": "test.local",
        "ansible_fqdn": "ipaserver.test.local",
        "ansible_hostname": "ipaserver",
        "ansible_nodename": "ipaserver.test.local"
    },
    "changed": true,
    "name": "ipaserver.test.local"
}

TASK [Ensure nss package is up-to-date] ****************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:65
Saturday 17 August 2024  08:23:12 -0400 (0:00:01.064)       0:00:16.510 ******* 
ok: [managed_node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: nss

TASK [Include ipaserver role] **************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:82
Saturday 17 August 2024  08:23:16 -0400 (0:00:03.300)       0:00:19.810 ******* 

TASK [ipaserver : Import variables specific to distribution] *******************
task path: /usr/share/ansible/roles/ipaserver/tasks/main.yml:4
Saturday 17 August 2024  08:23:16 -0400 (0:00:00.025)       0:00:19.836 ******* 
ok: [managed_node1] => (item=/usr/share/ansible/roles/ipaserver/vars/RedHat-8.yml) => {
    "ansible_facts": {
        "ipaserver_packages": [
            "@idm:DL1/server"
        ],
        "ipaserver_packages_adtrust": [
            "@idm:DL1/adtrust"
        ],
        "ipaserver_packages_dns": [
            "@idm:DL1/dns"
        ],
        "ipaserver_packages_firewalld": [
            "firewalld"
        ]
    },
    "ansible_included_var_files": [
        "/usr/share/ansible/roles/ipaserver/vars/RedHat-8.yml"
    ],
    "ansible_loop_var": "item",
    "changed": false,
    "item": "/usr/share/ansible/roles/ipaserver/vars/RedHat-8.yml"
}

TASK [ipaserver : Install IPA server] ******************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/main.yml:19
Saturday 17 August 2024  08:23:16 -0400 (0:00:00.026)       0:00:19.863 ******* 
included: /usr/share/ansible/roles/ipaserver/tasks/install.yml for managed_node1

TASK [ipaserver : Install - Ensure that IPA server packages are installed] *****
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:7
Saturday 17 August 2024  08:23:16 -0400 (0:00:00.069)       0:00:19.933 ******* 
changed: [managed_node1] => {
    "changed": true,
    "rc": 0,
    "results": [
        "Module idm:DL1/server installed.",
        "Installed: policycoreutils-python-utils-2.9-26.el8.noarch",
        "Installed: python3-mod_wsgi-4.6.4-5.el8.x86_64",
        "Installed: python3-netaddr-0.7.19-8.el8.noarch",
        "Installed: lua-5.3.4-12.el8.x86_64",
        "Installed: python3-nss-1.0.1-10.module_el8.4.0+595+e59c9af2.x86_64",
        "Installed: java-1.8.0-openjdk-headless-1:1.8.0.362.b08-3.el8.x86_64",
        "Installed: augeas-libs-1.12.0-8.el8.x86_64",
        "Installed: 389-ds-base-1.4.3.39-2.module_el8+909+03085a27.x86_64",
        "Installed: autofs-1:5.1.4-113.el8.x86_64",
        "Installed: python3-pki-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.noarch",
        "Installed: samba-client-libs-4.19.4-4.el8.x86_64",
        "Installed: tomcat-1:9.0.62-30.el8.noarch",
        "Installed: samba-common-4.19.4-4.el8.noarch",
        "Installed: slapi-nis-0.60.0-4.module_el8+751+11acb09f.x86_64",
        "Installed: slf4j-1.7.25-4.module_el8+988+30834131.noarch",
        "Installed: publicsuffix-list-20180723-1.el8.noarch",
        "Installed: tomcat-el-3.0-api-1:9.0.62-30.el8.noarch",
        "Installed: libicu-60.3-2.el8_1.x86_64",
        "Installed: samba-common-libs-4.19.4-4.el8.x86_64",
        "Installed: slf4j-jdk14-1.7.25-4.module_el8+988+30834131.noarch",
        "Installed: tomcat-jsp-2.3-api-1:9.0.62-30.el8.noarch",
        "Installed: python3-asn1crypto-0.24.0-3.el8.noarch",
        "Installed: 389-ds-base-libs-1.4.3.39-2.module_el8+909+03085a27.x86_64",
        "Installed: python3-psutil-5.4.3-11.el8.x86_64",
        "Installed: tomcat-lib-1:9.0.62-30.el8.noarch",
        "Installed: tomcat-servlet-4.0-api-1:9.0.62-30.el8.noarch",
        "Installed: python3-pyasn1-0.3.7-6.el8.noarch",
        "Installed: python3-pyasn1-modules-0.3.7-6.el8.noarch",
        "Installed: libipa_hbac-2.9.4-3.el8.x86_64",
        "Installed: tomcatjss-7.7.1-1.module_el8.6.0+1038+e795ee4b.noarch",
        "Installed: bash-completion-1:2.7-5.el8.noarch",
        "Installed: softhsm-2.6.0-5.module_el8+417+e8dc3e3c.x86_64",
        "Installed: python3-pyusb-1.0.0-9.1.module_el8+417+e8dc3e3c.noarch",
        "Installed: krb5-pkinit-1.18.2-27.el8.x86_64",
        "Installed: nss-tools-3.90.0-7.el8.x86_64",
        "Installed: python3-argcomplete-1.9.3-6.el8.noarch",
        "Installed: python3-augeas-0.5.0-12.el8.noarch",
        "Installed: python3-dns-1.15.0-12.el8.noarch",
        "Installed: krb5-server-1.18.2-27.el8.x86_64",
        "Installed: python3-qrcode-core-5.1-12.module_el8+417+e8dc3e3c.noarch",
        "Installed: python3-bind-32:9.11.36-13.el8.noarch",
        "Installed: xalan-j2-2.7.1-38.module_el8+988+30834131.noarch",
        "Installed: krb5-workstation-1.18.2-27.el8.x86_64",
        "Installed: ipa-client-4.9.13-8.module_el8+981+726db82c.x86_64",
        "Installed: javapackages-filesystem-5.3.0-1.module_el8.0.0+11+5b8c10bd.noarch",
        "Installed: javapackages-tools-5.3.0-1.module_el8.0.0+11+5b8c10bd.noarch",
        "Installed: openldap-clients-2.4.46-18.el8.x86_64",
        "Installed: libjose-10-2.el8.x86_64",
        "Installed: xerces-j2-2.11.0-34.module_el8+988+30834131.noarch",
        "Installed: jboss-annotations-1.2-api-1.0.0-4.el8.noarch",
        "Installed: jboss-jaxrs-2.0-api-1.0.0-6.el8.noarch",
        "Installed: jboss-logging-3.3.0-5.el8.noarch",
        "Installed: jboss-logging-tools-2.0.1-6.el8.noarch",
        "Installed: ipa-client-common-4.9.13-8.module_el8+981+726db82c.noarch",
        "Installed: xml-commons-apis-1.4.01-31.module+el8.2.1+7436+4afdca1f.noarch",
        "Installed: xml-commons-resolver-1.2-26.module_el8+988+30834131.noarch",
        "Installed: python3-libipa_hbac-2.9.4-3.el8.x86_64",
        "Installed: words-3.0-28.el8.noarch",
        "Installed: jdeparser-2.0.0-5.el8.noarch",
        "Installed: open-sans-fonts-1.10-6.el8.noarch",
        "Installed: sscg-3.0.0-7.el8.x86_64",
        "Installed: xmlstreambuffer-1.5.4-8.module_el8+988+30834131.noarch",
        "Installed: sssd-idp-2.9.4-3.el8.x86_64",
        "Installed: tzdata-java-2024a-1.el8.noarch",
        "Installed: centos-logos-httpd-85.8-2.el8.noarch",
        "Installed: stax-ex-1.7.7-8.module_el8+988+30834131.noarch",
        "Installed: centos-logos-ipa-85.8-2.el8.noarch",
        "Installed: certmonger-0.79.17-2.el8.x86_64",
        "Installed: copy-jdk-configs-4.0-2.el8.noarch",
        "Installed: perl-DB_File-1.842-1.el8.x86_64",
        "Installed: xmlrpc-c-1.51.0-9.el8.x86_64",
        "Installed: python3-custodia-0.6.0-3.module_el8+417+e8dc3e3c.noarch",
        "Installed: protobuf-c-1.3.0-8.el8.x86_64",
        "Installed: xmlrpc-c-client-1.51.0-9.el8.x86_64",
        "Installed: python3-distro-1.4.0-2.module_el8+762+77bd8591.noarch",
        "Installed: openssl-perl-1:1.1.1k-12.el8.x86_64",
        "Installed: relaxngDatatype-2011.1-7.module_el8+988+30834131.noarch",
        "Installed: jss-4.9.4-1.module_el8.7.0+1172+b9bb9c8d.x86_64",
        "Installed: resteasy-3.0.26-7.module_el8+1002+021a2ab4.noarch",
        "Installed: bea-stax-api-1.2.0-16.module_el8+988+30834131.noarch",
        "Installed: python3-yubico-1.3.2-9.1.module_el8+417+e8dc3e3c.noarch",
        "Installed: python3-gssapi-1.5.1-5.el8.x86_64",
        "Installed: libwbclient-4.19.4-4.el8.x86_64",
        "Installed: ipa-common-4.9.13-8.module_el8+981+726db82c.noarch",
        "Installed: httpcomponents-client-4.5.5-5.module_el8.6.0+1030+8d97e896.noarch",
        "Installed: httpcomponents-core-4.4.10-3.module_el8.0.0+39+6a9b6e22.noarch",
        "Installed: fontpackages-filesystem-1.44-22.el8.noarch",
        "Installed: bind-libs-32:9.11.36-13.el8.x86_64",
        "Installed: ecj-1:4.20-11.el8.noarch",
        "Installed: xsom-0-19.20110809svn.module_el8+988+30834131.noarch",
        "Installed: httpd-2.4.37-64.module_el8+965+1ad5c49d.x86_64",
        "Installed: bind-libs-lite-32:9.11.36-13.el8.x86_64",
        "Installed: ipa-healthcheck-0.12-3.module_el8+635+30a5dc75.noarch",
        "Installed: bind-license-32:9.11.36-13.el8.noarch",
        "Installed: python3-ipaclient-4.9.13-8.module_el8+981+726db82c.noarch",
        "Installed: ipa-healthcheck-core-0.12-3.module_el8+635+30a5dc75.noarch",
        "Installed: lksctp-tools-1.0.18-3.el8.x86_64",
        "Installed: httpd-filesystem-2.4.37-64.module_el8+965+1ad5c49d.noarch",
        "Installed: mod_auth_gssapi-1.6.1-9.el8.x86_64",
        "Installed: pki-acme-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.noarch",
        "Installed: httpd-tools-2.4.37-64.module_el8+965+1ad5c49d.x86_64",
        "Installed: pki-base-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.noarch",
        "Installed: mod_http2-1.15.7-10.module_el8+1009+c203647a.x86_64",
        "Installed: python3-ipalib-4.9.13-8.module_el8+981+726db82c.noarch",
        "Installed: fontawesome-fonts-4.7.0-5.el8.noarch",
        "Installed: pki-base-java-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.noarch",
        "Installed: python3-sss-2.9.4-3.el8.x86_64",
        "Installed: python3-sss-murmur-2.9.4-3.el8.x86_64",
        "Installed: pki-ca-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.noarch",
        "Installed: mod_lookup_identity-1.0.0-4.el8.x86_64",
        "Installed: python3-sssdconfig-2.9.4-3.el8.noarch",
        "Installed: glassfish-fastinfoset-1.2.13-9.module_el8+988+30834131.noarch",
        "Installed: glassfish-jaxb-api-2.2.12-8.module_el8+1002+021a2ab4.noarch",
        "Installed: cups-libs-1:2.2.6-57.el8.x86_64",
        "Installed: pki-kra-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.noarch",
        "Installed: bind-utils-32:9.11.36-13.el8.x86_64",
        "Installed: glassfish-jaxb-core-2.2.11-12.module_el8+1002+021a2ab4.noarch",
        "Installed: glassfish-jaxb-runtime-2.2.11-12.module_el8+1002+021a2ab4.noarch",
        "Installed: python3-ipaserver-4.9.13-8.module_el8+981+726db82c.noarch",
        "Installed: glassfish-jaxb-txw2-2.2.11-12.module_el8+1002+021a2ab4.noarch",
        "Installed: sssd-common-pac-2.9.4-3.el8.x86_64",
        "Installed: pki-server-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.noarch",
        "Installed: ipa-selinux-4.9.13-8.module_el8+981+726db82c.noarch",
        "Installed: sssd-dbus-2.9.4-3.el8.x86_64",
        "Installed: pki-servlet-engine-1:9.0.62-1.module_el8+1002+021a2ab4.noarch",
        "Installed: sssd-ipa-2.9.4-3.el8.x86_64",
        "Installed: cyrus-sasl-gssapi-2.1.27-6.el8_5.x86_64",
        "Installed: pki-symkey-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.x86_64",
        "Installed: mod_session-2.4.37-64.module_el8+965+1ad5c49d.x86_64",
        "Installed: perl-Algorithm-Diff-1.1903-9.el8.noarch",
        "Installed: perl-Archive-Tar-2.30-1.el8.noarch",
        "Installed: perl-Compress-Raw-Bzip2-2.081-1.el8.x86_64",
        "Installed: perl-Compress-Raw-Zlib-2.081-1.el8.x86_64",
        "Installed: sssd-krb5-2.9.4-3.el8.x86_64",
        "Installed: mod_ssl-1:2.4.37-64.module_el8+965+1ad5c49d.x86_64",
        "Installed: pki-tools-10.12.0-3.module_el8.7.0+1172+b9bb9c8d.x86_64",
        "Installed: cyrus-sasl-md5-2.1.27-6.el8_5.x86_64",
        "Installed: ipa-server-4.9.13-8.module_el8+981+726db82c.x86_64",
        "Installed: sssd-krb5-common-2.9.4-3.el8.x86_64",
        "Installed: python3-jwcrypto-0.5.0-1.1.module_el8+417+e8dc3e3c.noarch",
        "Installed: cyrus-sasl-plain-2.1.27-6.el8_5.x86_64",
        "Installed: apache-commons-cli-1.4-4.module_el8.0.0+39+6a9b6e22.noarch",
        "Installed: mailcap-2.1.48-3.el8.noarch",
        "Installed: apache-commons-codec-1.11-3.module_el8.0.0+39+6a9b6e22.noarch",
        "Installed: python3-kdcproxy-0.4-5.module_el8+417+e8dc3e3c.noarch",
        "Installed: ldapjdk-4.23.0-1.module_el8.6.0+1038+e795ee4b.noarch",
        "Installed: ipa-server-common-4.9.13-8.module_el8+981+726db82c.noarch",
        "Installed: perl-IO-Compress-2.081-1.el8.noarch",
        "Installed: apache-commons-io-1:2.6-3.module_el8.6.0+1030+8d97e896.noarch",
        "Installed: perl-IO-Zlib-1:1.10-422.el8.noarch",
        "Installed: sssd-tools-2.9.4-3.el8.x86_64",
        "Installed: python3-ldap-3.3.1-2.el8.x86_64",
        "Installed: apache-commons-lang3-3.7-3.module_el8.0.0+39+6a9b6e22.noarch",
        "Installed: apache-commons-logging-1.2-13.module_el8.6.0+1030+8d97e896.noarch",
        "Installed: apache-commons-net-3.6-3.module_el8+988+30834131.noarch",
        "Installed: python3-lib389-1.4.3.39-2.module_el8+909+03085a27.noarch",
        "Installed: perl-Text-Diff-1.45-2.el8.noarch",
        "Installed: apr-1.6.3-12.el8.x86_64",
        "Installed: apr-util-1.6.1-9.el8.x86_64",
        "Installed: apr-util-bdb-1.6.1-9.el8.x86_64",
        "Installed: fstrm-0.6.1-3.el8.x86_64",
        "Installed: custodia-0.6.0-3.module_el8+417+e8dc3e3c.noarch",
        "Installed: apr-util-openssl-1.6.1-9.el8.x86_64",
        "Installed: istack-commons-runtime-2.21-9.el8.noarch",
        "Installed: tomcat-native-1.2.35-1.el8.x86_64",
        "Installed: jackson-annotations-2.10.0-1.module_el8+1002+021a2ab4.noarch",
        "Installed: jackson-core-2.10.0-1.module_el8+1002+021a2ab4.noarch",
        "Installed: jackson-databind-2.10.0-1.module_el8+1002+021a2ab4.noarch",
        "Installed: jackson-jaxrs-json-provider-2.9.9-1.module_el8+1002+021a2ab4.noarch",
        "Installed: jackson-jaxrs-providers-2.9.9-1.module_el8+1002+021a2ab4.noarch",
        "Installed: jackson-module-jaxb-annotations-2.7.6-4.module_el8+1002+021a2ab4.noarch"
    ]
}

TASK [ipaserver : Install - Ensure that IPA server packages for dns are installed] ***
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:12
Saturday 17 August 2024  08:24:15 -0400 (0:00:59.274)       0:01:19.207 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaserver_setup_dns | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Install - Ensure that IPA server packages for adtrust are installed] ***
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:18
Saturday 17 August 2024  08:24:15 -0400 (0:00:00.033)       0:01:19.241 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaserver_setup_adtrust | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Install - Ensure that firewall packages installed] ***********
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:24
Saturday 17 August 2024  08:24:15 -0400 (0:00:00.032)       0:01:19.273 ******* 
ok: [managed_node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do

TASK [ipaserver : Firewalld service - Ensure that firewalld is running] ********
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:34
Saturday 17 August 2024  08:24:19 -0400 (0:00:03.472)       0:01:22.746 ******* 
changed: [managed_node1] => {
    "changed": true,
    "enabled": true,
    "name": "firewalld",
    "state": "started",
    "status": {
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "dbus.socket basic.target polkit.service system.slice sysinit.target dbus.service",
        "AllowIsolate": "no",
        "AllowedCPUs": "",
        "AllowedMemoryNodes": "",
        "AmbientCapabilities": "",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "shutdown.target network-pre.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "no",
        "CPUAffinity": "",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "ipset.service ebtables.service ip6tables.service shutdown.target iptables.service nftables.service",
        "ControlPID": "0",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "man:firewalld(1)",
        "DynamicUser": "no",
        "EffectiveCPUs": "",
        "EffectiveMemoryNodes": "",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOSchedulingClass": "0",
        "IOSchedulingPriority": "0",
        "IOWeight": "[not set]",
        "IPAccounting": "no",
        "IPEgressBytes": "18446744073709551615",
        "IPEgressPackets": "18446744073709551615",
        "IPIngressBytes": "18446744073709551615",
        "IPIngressPackets": "18446744073709551615",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "0",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "65536",
        "LimitMEMLOCKSoft": "65536",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "262144",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "14003",
        "LimitNPROCSoft": "14003",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "14003",
        "LimitSIGPENDINGSoft": "14003",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "MemoryAccounting": "yes",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "MountFlags": "",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAMask": "",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "PermissionsStartOnly": "no",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "dbus.socket sysinit.target system.slice",
        "Restart": "no",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardInputData": "",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "0",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22405",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "0"
    }
}

TASK [ipaserver : Firewalld - Verify runtime zone "{{ ipaserver_firewalld_zone }}"] ***
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:40
Saturday 17 August 2024  08:24:20 -0400 (0:00:01.663)       0:01:24.409 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaserver_firewalld_zone is defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Firewalld - Verify permanent zone "{{ ipaserver_firewalld_zone }}"] ***
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:47
Saturday 17 August 2024  08:24:20 -0400 (0:00:00.056)       0:01:24.466 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaserver_firewalld_zone is defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Copy external certs] *****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:55
Saturday 17 August 2024  08:24:20 -0400 (0:00:00.060)       0:01:24.526 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaserver_external_cert_files_from_controller is defined and ipaserver_external_cert_files_from_controller|length > 0 and not ipaserver_external_cert_files is defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Install - Server installation test] **************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:62
Saturday 17 August 2024  08:24:20 -0400 (0:00:00.044)       0:01:24.570 ******* 
ok: [managed_node1] => {
    "_dirsrv_ca_cert": null,
    "_dirsrv_pkcs12_info": null,
    "_hostname_overridden": true,
    "_http_ca_cert": null,
    "_http_pkcs12_info": null,
    "_installation_cleanup": true,
    "_pkinit_ca_cert": null,
    "_pkinit_pkcs12_info": null,
    "changed": false,
    "domain": "test.local",
    "domainlevel": 1,
    "external_ca": false,
    "external_ca_profile": null,
    "external_ca_type": null,
    "hostname": "ipaserver.test.local",
    "idmax": 1304799999,
    "idstart": 1304600000,
    "ipa_python_version": 40913,
    "no_host_dns": false,
    "no_pkinit": false,
    "ntp_pool": null,
    "ntp_servers": null,
    "random_serial_numbers": false,
    "realm": "TEST.LOCAL",
    "rid_base": 1000,
    "secondary_rid_base": 100000000,
    "setup_adtrust": false,
    "setup_ca": true,
    "setup_kra": false,
    "sid_generation_always": true
}

TASK [ipaserver : Install - Master password creation] **************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:142
Saturday 17 August 2024  08:24:22 -0400 (0:00:01.549)       0:01:26.120 ******* 
changed: [managed_node1] => {
    "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result",
    "changed": true
}

TASK [ipaserver : Install - Use new master password] ***************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:149
Saturday 17 August 2024  08:24:23 -0400 (0:00:01.249)       0:01:27.369 ******* 
ok: [managed_node1] => {
    "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result",
    "changed": false
}

TASK [ipaserver : Use user defined master password, if provided] ***************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:155
Saturday 17 August 2024  08:24:23 -0400 (0:00:00.039)       0:01:27.408 ******* 
skipping: [managed_node1] => {
    "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result",
    "changed": false
}

TASK [ipaserver : Install - Server preparation] ********************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:161
Saturday 17 August 2024  08:24:23 -0400 (0:00:00.021)       0:01:27.429 ******* 
changed: [managed_node1] => {
    "_ca_subject": "CN=Certificate Authority,O=TEST.LOCAL",
    "_random_serial_numbers": false,
    "_subject_base": "O=TEST.LOCAL",
    "adtrust_netbios_name": "TEST",
    "adtrust_reset_netbios_name": true,
    "ca_subject": "CN=Certificate Authority,O=TEST.LOCAL",
    "changed": true,
    "dns_ip_addresses": [],
    "dns_reverse_zones": [],
    "forward_policy": null,
    "forwarders": [],
    "ip_addresses": [
        "10.31.42.163"
    ],
    "no_dnssec_validation": false,
    "reverse_zones": [],
    "subject_base": "O=TEST.LOCAL"
}

TASK [ipaserver : Install - Setup NTP] *****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:207
Saturday 17 August 2024  08:24:26 -0400 (0:00:02.547)       0:01:29.977 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaserver : Install - Setup DS] ******************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:214
Saturday 17 August 2024  08:24:33 -0400 (0:00:07.638)       0:01:37.615 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaserver : Install - Setup KRB] *****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:243
Saturday 17 August 2024  08:25:18 -0400 (0:00:44.448)       0:02:22.064 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaserver : Install - Setup custodia] ************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:270
Saturday 17 August 2024  08:25:25 -0400 (0:00:07.109)       0:02:29.174 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaserver : Install - Setup CA] ******************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:276
Saturday 17 August 2024  08:25:30 -0400 (0:00:04.695)       0:02:33.869 ******* 
changed: [managed_node1] => {
    "changed": true,
    "csr_generated": false
}

TASK [ipaserver : Copy /root/ipa.csr to "managed_node1-ipa.csr"] ***************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:318
Saturday 17 August 2024  08:28:28 -0400 (0:02:58.818)       0:05:32.688 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "result_ipaserver_setup_ca.csr_generated | bool and ipaserver_copy_csr_to_controller | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Install - Setup otpd] ****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:329
Saturday 17 August 2024  08:28:29 -0400 (0:00:00.037)       0:05:32.726 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaserver : Install - Setup HTTP] ****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:335
Saturday 17 August 2024  08:28:31 -0400 (0:00:02.664)       0:05:35.391 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaserver : Install - Setup KRA] *****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:367
Saturday 17 August 2024  08:29:06 -0400 (0:00:34.524)       0:06:09.915 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "result_ipaserver_test.setup_kra | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Install - Setup DNS] *****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:378
Saturday 17 August 2024  08:29:06 -0400 (0:00:00.039)       0:06:09.955 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaserver_setup_dns | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Install - Setup ADTRUST] *************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:395
Saturday 17 August 2024  08:29:06 -0400 (0:00:00.037)       0:06:09.993 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaserver : Install - Set DS password] ***********************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:411
Saturday 17 August 2024  08:29:16 -0400 (0:00:10.163)       0:06:20.156 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [Install - Setup client] **************************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:428
Saturday 17 August 2024  08:29:19 -0400 (0:00:02.575)       0:06:22.732 ******* 

TASK [ipaclient : Import variables specific to distribution] *******************
task path: /usr/share/ansible/roles/ipaclient/tasks/main.yml:4
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.056)       0:06:22.788 ******* 
ok: [managed_node1] => (item=/usr/share/ansible/roles/ipaclient/vars/RedHat-8.yml) => {
    "ansible_facts": {
        "ipaclient_packages": [
            "@idm:DL1/client"
        ]
    },
    "ansible_included_var_files": [
        "/usr/share/ansible/roles/ipaclient/vars/RedHat-8.yml"
    ],
    "ansible_loop_var": "item",
    "changed": false,
    "item": "/usr/share/ansible/roles/ipaclient/vars/RedHat-8.yml"
}

TASK [ipaclient : Install IPA client] ******************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/main.yml:19
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.052)       0:06:22.841 ******* 
included: /usr/share/ansible/roles/ipaclient/tasks/install.yml for managed_node1

TASK [ipaclient : Install - Ensure that IPA client packages are installed] *****
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:4
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.088)       0:06:22.930 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_install_packages | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Set ipaclient_servers] *****************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:10
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.037)       0:06:22.968 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "groups.ipaservers is defined and ipaclient_servers is not defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Set ipaclient_servers from cluster inventory] ******
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:15
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.038)       0:06:23.006 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_no_dns_lookup | bool and groups.ipaserver is defined and ipaclient_servers is not defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Check that either password or keytab is set] *******
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:21
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.040)       0:06:23.046 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaadmin_keytab is defined and ipaadmin_password is defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Set default principal if no keytab is given] *******
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:26
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.038)       0:06:23.085 ******* 
ok: [managed_node1] => {
    "ansible_facts": {
        "ipaadmin_principal": "admin"
    },
    "changed": false
}

TASK [ipaclient : Install - Fail on missing ipaclient_domain and ipaserver_domain] ***
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:36
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.041)       0:06:23.126 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_configure_dns_resolver | bool and not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Fail on missing ipaclient_servers] *****************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:41
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.038)       0:06:23.165 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_configure_dns_resolver | bool and not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Configure DNS resolver] ****************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:46
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.039)       0:06:23.205 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_configure_dns_resolver | bool and not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - IPA client test] ***********************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:52
Saturday 17 August 2024  08:29:19 -0400 (0:00:00.038)       0:06:23.243 ******* 
ok: [managed_node1] => {
    "basedn": "dc=test,dc=local",
    "changed": false,
    "client_already_configured": false,
    "client_domain": "test.local",
    "dnsok": false,
    "domain": "test.local",
    "hostname": "ipaserver.test.local",
    "ipa_python_version": 40913,
    "kdc": "ipaserver.test.local",
    "nosssd_files": {},
    "ntp_pool": null,
    "ntp_servers": null,
    "realm": "TEST.LOCAL",
    "selinux_works": true,
    "servers": [
        "ipaserver.test.local"
    ],
    "sssd": true
}

TASK [ipaclient : Install - Cleanup leftover ccache] ***************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:82
Saturday 17 August 2024  08:29:20 -0400 (0:00:01.078)       0:06:24.322 ******* 
ok: [managed_node1] => {
    "changed": false,
    "path": "/etc/ipa/.dns_ccache",
    "state": "absent"
}

TASK [ipaclient : Install - Configure NTP] *************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:87
Saturday 17 August 2024  08:29:21 -0400 (0:00:00.468)       0:06:24.791 ******* 
ok: [managed_node1] => {
    "changed": false
}

TASK [ipaclient : Install - Make sure One-Time Password is enabled if it's already defined] ***
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:99
Saturday 17 August 2024  08:29:21 -0400 (0:00:00.781)       0:06:25.572 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_otp is defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Disable One-Time Password for on_master] ***********
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:104
Saturday 17 August 2024  08:29:21 -0400 (0:00:00.041)       0:06:25.613 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_use_otp | bool and ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Test if IPA client has working krb5.keytab] ********
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:109
Saturday 17 August 2024  08:29:21 -0400 (0:00:00.041)       0:06:25.655 ******* 
ok: [managed_node1] => {
    "ca_crt_exists": true,
    "changed": false,
    "krb5_conf_ok": true,
    "krb5_keytab_ok": true,
    "ping_test_ok": true
}

TASK [ipaclient : Install - Disable One-Time Password for client with working krb5.keytab] ***
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:119
Saturday 17 August 2024  08:29:23 -0400 (0:00:01.544)       0:06:27.200 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_use_otp | bool and result_ipaclient_test_keytab.krb5_keytab_ok and not ipaclient_force_join | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Keytab or password is required for getting otp] ****
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:137
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.040)       0:06:27.240 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_use_otp | bool and ipaclient_otp is not defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Create temporary file for keytab] ******************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:142
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.039)       0:06:27.279 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_use_otp | bool and ipaclient_otp is not defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Copy keytab to server temporary file] **************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:151
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.042)       0:06:27.322 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_use_otp | bool and ipaclient_otp is not defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Get One-Time Password for client enrollment] *******
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:159
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.041)       0:06:27.363 ******* 
skipping: [managed_node1] => {
    "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result",
    "changed": false
}

TASK [ipaclient : Install - Store the previously obtained OTP] *****************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:169
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.043)       0:06:27.406 ******* 
skipping: [managed_node1] => {
    "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result",
    "changed": false
}

TASK [ipaclient : Install - Remove keytab temporary file] **********************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:183
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.043)       0:06:27.450 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_use_otp | bool and ipaclient_otp is not defined",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Store predefined OTP in admin_password] **********************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:190
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.042)       0:06:27.492 ******* 
skipping: [managed_node1] => {
    "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result",
    "changed": false
}

TASK [ipaclient : Install - Check if principal and keytab are set] *************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:208
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.040)       0:06:27.533 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Check if one of password or keytabs are set] *******
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:213
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.040)       0:06:27.573 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - From host keytab, purge TEST.LOCAL] ****************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:221
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.041)       0:06:27.615 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "(ipaclient_use_otp | bool or ipaclient_force_join | bool) and not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Backup and set hostname] ***************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:238
Saturday 17 August 2024  08:29:23 -0400 (0:00:00.040)       0:06:27.655 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Create temporary krb5 configuration] ***************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:243
Saturday 17 August 2024  08:29:24 -0400 (0:00:00.041)       0:06:27.697 ******* 
ok: [managed_node1] => {
    "changed": false,
    "krb_name": "/tmp/tmpuvib4lni"
}

TASK [ipaclient : Install - Join IPA] ******************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:252
Saturday 17 August 2024  08:29:24 -0400 (0:00:00.813)       0:06:28.510 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool and (not result_ipaclient_test_keytab.krb5_keytab_ok or ipaclient_force_join)",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : The krb5 configuration is not correct] ***********************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:280
Saturday 17 August 2024  08:29:24 -0400 (0:00:00.042)       0:06:28.553 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool and not result_ipaclient_join.changed and not ipaclient_allow_repair | bool and (result_ipaclient_test_keytab.krb5_keytab_ok or (result_ipaclient_join.already_joined is defined and result_ipaclient_join.already_joined))",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : IPA test failed] *********************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:286
Saturday 17 August 2024  08:29:24 -0400 (0:00:00.044)       0:06:28.597 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool and not result_ipaclient_join.changed and not ipaclient_allow_repair | bool and (result_ipaclient_test_keytab.krb5_keytab_ok or (result_ipaclient_join.already_joined is defined and result_ipaclient_join.already_joined))",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Fail due to missing ca.crt file] *****************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:290
Saturday 17 August 2024  08:29:24 -0400 (0:00:00.044)       0:06:28.642 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool and not result_ipaclient_join.changed and not ipaclient_allow_repair | bool and (result_ipaclient_test_keytab.krb5_keytab_ok or (result_ipaclient_join.already_joined is defined and result_ipaclient_join.already_joined))",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Configure IPA default.conf] ************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:304
Saturday 17 August 2024  08:29:24 -0400 (0:00:00.043)       0:06:28.686 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Configure SSSD] ************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:313
Saturday 17 August 2024  08:29:25 -0400 (0:00:00.045)       0:06:28.731 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaclient : Install - IPA API calls for remaining enrollment parts] ******
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:335
Saturday 17 August 2024  08:29:25 -0400 (0:00:00.803)       0:06:29.535 ******* 
changed: [managed_node1] => {
    "ca_enabled": true,
    "changed": true,
    "subject_base": "O=TEST.LOCAL"
}

TASK [ipaclient : Install - Fix IPA ca] ****************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:344
Saturday 17 August 2024  08:29:28 -0400 (0:00:02.496)       0:06:32.031 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool and result_ipaclient_test_keytab.krb5_keytab_ok and not result_ipaclient_test_keytab.ca_crt_exists",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Create IPA NSS database] ***************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:355
Saturday 17 August 2024  08:29:28 -0400 (0:00:00.043)       0:06:32.075 ******* 
changed: [managed_node1] => {
    "ca_enabled_ra": true,
    "changed": true
}

TASK [ipaclient : Install - Configure SSH and SSHD] ****************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:390
Saturday 17 August 2024  08:29:57 -0400 (0:00:28.851)       0:07:00.926 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaclient : Install - Configure automount] *******************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:398
Saturday 17 August 2024  08:29:58 -0400 (0:00:00.865)       0:07:01.792 ******* 
ok: [managed_node1] => {
    "changed": false
}

TASK [ipaclient : Install - Configure firefox] *********************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:404
Saturday 17 August 2024  08:29:58 -0400 (0:00:00.814)       0:07:02.606 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ipaclient_configure_firefox | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Configure NIS] *************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:410
Saturday 17 August 2024  08:29:58 -0400 (0:00:00.043)       0:07:02.650 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaclient : Remove temporary krb5.conf] **********************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:416
Saturday 17 August 2024  08:29:59 -0400 (0:00:00.980)       0:07:03.631 ******* 
changed: [managed_node1] => {
    "changed": true,
    "path": "/tmp/tmpuvib4lni",
    "state": "absent"
}

TASK [ipaclient : Install - Configure krb5 for IPA realm] **********************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:422
Saturday 17 August 2024  08:30:00 -0400 (0:00:00.373)       0:07:04.004 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Configure certmonger] ******************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:436
Saturday 17 August 2024  08:30:00 -0400 (0:00:00.044)       0:07:04.048 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not ipaclient_on_master | bool",
    "skip_reason": "Conditional result was False"
}

TASK [ipaclient : Install - Restore original admin password if overwritten by OTP] ***
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:446
Saturday 17 August 2024  08:30:00 -0400 (0:00:00.045)       0:07:04.094 ******* 
skipping: [managed_node1] => {
    "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result",
    "changed": false
}

TASK [ipaclient : Cleanup leftover ccache] *************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:452
Saturday 17 August 2024  08:30:00 -0400 (0:00:00.041)       0:07:04.136 ******* 
ok: [managed_node1] => {
    "changed": false,
    "path": "/etc/ipa/.dns_ccache",
    "state": "absent"
}

TASK [ipaclient : Remove temporary krb5.conf] **********************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:457
Saturday 17 August 2024  08:30:00 -0400 (0:00:00.363)       0:07:04.499 ******* 
ok: [managed_node1] => {
    "changed": false,
    "path": "/tmp/tmpuvib4lni",
    "state": "absent"
}

TASK [ipaclient : Remove temporary krb5.conf backup] ***************************
task path: /usr/share/ansible/roles/ipaclient/tasks/install.yml:463
Saturday 17 August 2024  08:30:01 -0400 (0:00:00.360)       0:07:04.860 ******* 
changed: [managed_node1] => {
    "changed": true,
    "path": "/tmp/tmpuvib4lni.ipabkp",
    "state": "absent"
}

TASK [ipaclient : Uninstall IPA client] ****************************************
task path: /usr/share/ansible/roles/ipaclient/tasks/main.yml:23
Saturday 17 August 2024  08:30:01 -0400 (0:00:00.367)       0:07:05.227 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "state|default('present') == 'absent'",
    "skip_reason": "Conditional result was False"
}

TASK [ipaserver : Install - Enable IPA] ****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:443
Saturday 17 August 2024  08:30:01 -0400 (0:00:00.042)       0:07:05.270 ******* 
changed: [managed_node1] => {
    "changed": true
}

TASK [ipaserver : Install - Configure firewalld] *******************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:450
Saturday 17 August 2024  08:30:06 -0400 (0:00:05.272)       0:07:10.542 ******* 
changed: [managed_node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--zone=",
        "--add-service=freeipa-ldap",
        "--add-service=freeipa-ldaps",
        "--add-service=ntp"
    ],
    "delta": "0:00:00.291309",
    "end": "2024-08-17 08:30:07.557957",
    "rc": 0,
    "start": "2024-08-17 08:30:07.266648"
}

STDOUT:

success

TASK [ipaserver : Install - Configure firewalld runtime] ***********************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:464
Saturday 17 August 2024  08:30:07 -0400 (0:00:00.755)       0:07:11.298 ******* 
changed: [managed_node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--zone=",
        "--add-service=freeipa-ldap",
        "--add-service=freeipa-ldaps",
        "--add-service=ntp"
    ],
    "delta": "0:00:00.266714",
    "end": "2024-08-17 08:30:08.189837",
    "rc": 0,
    "start": "2024-08-17 08:30:07.923123"
}

STDOUT:

success

TASK [ipaserver : Install - Cleanup root IPA cache] ****************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:478
Saturday 17 August 2024  08:30:08 -0400 (0:00:00.631)       0:07:11.930 ******* 
ok: [managed_node1] => {
    "changed": false,
    "path": "/root/.ipa_cache",
    "state": "absent"
}

TASK [ipaserver : Cleanup temporary files] *************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/install.yml:483
Saturday 17 August 2024  08:30:08 -0400 (0:00:00.347)       0:07:12.277 ******* 
ok: [managed_node1] => (item=/etc/ipa/.tmp_pkcs12_dirsrv) => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "/etc/ipa/.tmp_pkcs12_dirsrv",
    "path": "/etc/ipa/.tmp_pkcs12_dirsrv",
    "state": "absent"
}
ok: [managed_node1] => (item=/etc/ipa/.tmp_pkcs12_http) => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "/etc/ipa/.tmp_pkcs12_http",
    "path": "/etc/ipa/.tmp_pkcs12_http",
    "state": "absent"
}
ok: [managed_node1] => (item=/etc/ipa/.tmp_pkcs12_pkinit) => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "/etc/ipa/.tmp_pkcs12_pkinit",
    "path": "/etc/ipa/.tmp_pkcs12_pkinit",
    "state": "absent"
}

TASK [ipaserver : Uninstall IPA server] ****************************************
task path: /usr/share/ansible/roles/ipaserver/tasks/main.yml:23
Saturday 17 August 2024  08:30:09 -0400 (0:00:00.997)       0:07:13.275 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "state|default('present') == 'absent'",
    "skip_reason": "Conditional result was False"
}

TASK [Issue IPA signed certificates] *******************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_basic_ipa.yml:25
Saturday 17 August 2024  08:30:09 -0400 (0:00:00.037)       0:07:13.312 ******* 

TASK [fedora.linux_system_roles.certificate : Set version specific variables] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:2
Saturday 17 August 2024  08:30:09 -0400 (0:00:00.039)       0:07:13.352 ******* 
included: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml for managed_node1

TASK [fedora.linux_system_roles.certificate : Ensure ansible_facts used by role] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2
Saturday 17 August 2024  08:30:09 -0400 (0:00:00.019)       0:07:13.372 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "__certificate_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.certificate : Check if system is ostree] *******
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:10
Saturday 17 August 2024  08:30:09 -0400 (0:00:00.034)       0:07:13.407 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not __certificate_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.certificate : Set flag to indicate system is ostree] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:15
Saturday 17 August 2024  08:30:09 -0400 (0:00:00.018)       0:07:13.425 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not __certificate_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.certificate : Set platform/version specific variables] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:19
Saturday 17 August 2024  08:30:09 -0400 (0:00:00.018)       0:07:13.444 ******* 
skipping: [managed_node1] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:5
Saturday 17 August 2024  08:30:09 -0400 (0:00:00.031)       0:07:13.475 ******* 
ok: [managed_node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: python3-cryptography python3-dbus python3-pyasn1

TASK [fedora.linux_system_roles.certificate : Ensure provider packages are installed] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:23
Saturday 17 August 2024  08:30:13 -0400 (0:00:03.286)       0:07:16.761 ******* 
ok: [managed_node1] => (item=certmonger) => {
    "__certificate_provider": "certmonger",
    "ansible_loop_var": "__certificate_provider",
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: certmonger

TASK [fedora.linux_system_roles.certificate : Ensure pre-scripts hooks directory exists] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:35
Saturday 17 August 2024  08:30:16 -0400 (0:00:03.237)       0:07:19.999 ******* 
changed: [managed_node1] => (item=certmonger) => {
    "__certificate_provider": "certmonger",
    "ansible_loop_var": "__certificate_provider",
    "changed": true,
    "gid": 0,
    "group": "root",
    "mode": "0700",
    "owner": "root",
    "path": "/etc/certmonger//pre-scripts",
    "secontext": "unconfined_u:object_r:etc_t:s0",
    "size": 6,
    "state": "directory",
    "uid": 0
}

TASK [fedora.linux_system_roles.certificate : Ensure post-scripts hooks directory exists] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:61
Saturday 17 August 2024  08:30:16 -0400 (0:00:00.378)       0:07:20.378 ******* 
changed: [managed_node1] => (item=certmonger) => {
    "__certificate_provider": "certmonger",
    "ansible_loop_var": "__certificate_provider",
    "changed": true,
    "gid": 0,
    "group": "root",
    "mode": "0700",
    "owner": "root",
    "path": "/etc/certmonger//post-scripts",
    "secontext": "unconfined_u:object_r:etc_t:s0",
    "size": 6,
    "state": "directory",
    "uid": 0
}

TASK [fedora.linux_system_roles.certificate : Ensure provider service is running] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:90
Saturday 17 August 2024  08:30:17 -0400 (0:00:00.379)       0:07:20.757 ******* 
ok: [managed_node1] => (item=certmonger) => {
    "__certificate_provider": "certmonger",
    "ansible_loop_var": "__certificate_provider",
    "changed": false,
    "enabled": true,
    "name": "certmonger",
    "state": "started",
    "status": {
        "ActiveEnterTimestamp": "Sat 2024-08-17 08:27:30 EDT",
        "ActiveEnterTimestampMonotonic": "472388396",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "active",
        "After": "sysinit.target basic.target system.slice systemd-journald.socket network.target dbus.socket syslog.target dbus.service",
        "AllowIsolate": "no",
        "AllowedCPUs": "",
        "AllowedMemoryNodes": "",
        "AmbientCapabilities": "",
        "AssertResult": "yes",
        "AssertTimestamp": "Sat 2024-08-17 08:27:30 EDT",
        "AssertTimestampMonotonic": "472376805",
        "Before": "multi-user.target shutdown.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedorahosted.certmonger",
        "CPUAccounting": "no",
        "CPUAffinity": "",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "no",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf",
        "CollectMode": "inactive",
        "ConditionResult": "yes",
        "ConditionTimestamp": "Sat 2024-08-17 08:27:30 EDT",
        "ConditionTimestampMonotonic": "472376803",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "shutdown.target",
        "ControlGroup": "/system.slice/certmonger.service",
        "ControlPID": "0",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "Certificate monitoring and PKI enrollment",
        "DevicePolicy": "auto",
        "DynamicUser": "no",
        "EffectiveCPUs": "",
        "EffectiveMemoryNodes": "",
        "EnvironmentFiles": "/etc/sysconfig/certmonger (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "16524",
        "ExecMainStartTimestamp": "Sat 2024-08-17 08:27:30 EDT",
        "ExecMainStartTimestampMonotonic": "472378045",
        "ExecMainStatus": "0",
        "ExecStart": "{ path=/usr/sbin/certmonger ; argv[]=/usr/sbin/certmonger -S -p /run/certmonger.pid -n $OPTS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FragmentPath": "/usr/lib/systemd/system/certmonger.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOSchedulingClass": "0",
        "IOSchedulingPriority": "0",
        "IOWeight": "[not set]",
        "IPAccounting": "no",
        "IPEgressBytes": "18446744073709551615",
        "IPEgressPackets": "18446744073709551615",
        "IPIngressBytes": "18446744073709551615",
        "IPIngressPackets": "18446744073709551615",
        "Id": "certmonger.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestamp": "Sat 2024-08-17 08:27:30 EDT",
        "InactiveExitTimestampMonotonic": "472378089",
        "InvocationID": "2830e61648d6402b8cba2735585afeec",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "control-group",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "0",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "65536",
        "LimitMEMLOCKSoft": "65536",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "262144",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "14003",
        "LimitNPROCSoft": "14003",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "14003",
        "LimitSIGPENDINGSoft": "14003",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "16524",
        "MemoryAccounting": "yes",
        "MemoryCurrent": "2596864",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "MountFlags": "",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAMask": "",
        "NUMAPolicy": "n/a",
        "Names": "certmonger.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "PIDFile": "/run/certmonger.pid",
        "PartOf": "dbus.service",
        "PermissionsStartOnly": "no",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "sysinit.target dbus.socket system.slice",
        "Restart": "no",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "inherit",
        "StandardInput": "null",
        "StandardInputData": "",
        "StandardOutput": "journal",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestamp": "Sat 2024-08-17 08:27:30 EDT",
        "StateChangeTimestampMonotonic": "472388396",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "running",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "0",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "1",
        "TasksMax": "22405",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "disabled",
        "UnitFileState": "enabled",
        "UtmpMode": "init",
        "WantedBy": "multi-user.target",
        "WatchdogTimestamp": "Sat 2024-08-17 08:27:30 EDT",
        "WatchdogTimestampMonotonic": "472388393",
        "WatchdogUSec": "0"
    }
}

TASK [fedora.linux_system_roles.certificate : Ensure certificate requests] *****
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:101
Saturday 17 August 2024  08:30:17 -0400 (0:00:00.513)       0:07:21.271 ******* 
changed: [managed_node1] => (item={'name': 'mycert_basic_ipa', 'dns': 'ipaserver.test.local', 'principal': 'HTTP/ipaserver.test.local@TEST.LOCAL', 'ca': 'ipa'}) => {
    "ansible_loop_var": "item",
    "changed": true,
    "item": {
        "ca": "ipa",
        "dns": "ipaserver.test.local",
        "name": "mycert_basic_ipa",
        "principal": "HTTP/ipaserver.test.local@TEST.LOCAL"
    }
}

MSG:

Certificate requested (new).
changed: [managed_node1] => (item={'name': 'groupcert', 'dns': 'ipaserver.test.local', 'principal': 'HTTP/ipaserver.test.local@TEST.LOCAL', 'ca': 'ipa', 'group': 'ftp'}) => {
    "ansible_loop_var": "item",
    "changed": true,
    "item": {
        "ca": "ipa",
        "dns": "ipaserver.test.local",
        "group": "ftp",
        "name": "groupcert",
        "principal": "HTTP/ipaserver.test.local@TEST.LOCAL"
    }
}

MSG:

Certificate requested (new). File attributes updated.

TASK [fedora.linux_system_roles.certificate : Slurp the contents of the files] ***
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:152
Saturday 17 August 2024  08:30:21 -0400 (0:00:03.842)       0:07:25.114 ******* 
skipping: [managed_node1] => (item=['cert', {'name': 'mycert_basic_ipa', 'dns': 'ipaserver.test.local', 'principal': 'HTTP/ipaserver.test.local@TEST.LOCAL', 'ca': 'ipa'}])  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "item": [
        "cert",
        {
            "ca": "ipa",
            "dns": "ipaserver.test.local",
            "name": "mycert_basic_ipa",
            "principal": "HTTP/ipaserver.test.local@TEST.LOCAL"
        }
    ],
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=['cert', {'name': 'groupcert', 'dns': 'ipaserver.test.local', 'principal': 'HTTP/ipaserver.test.local@TEST.LOCAL', 'ca': 'ipa', 'group': 'ftp'}])  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "item": [
        "cert",
        {
            "ca": "ipa",
            "dns": "ipaserver.test.local",
            "group": "ftp",
            "name": "groupcert",
            "principal": "HTTP/ipaserver.test.local@TEST.LOCAL"
        }
    ],
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=['key', {'name': 'mycert_basic_ipa', 'dns': 'ipaserver.test.local', 'principal': 'HTTP/ipaserver.test.local@TEST.LOCAL', 'ca': 'ipa'}])  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "item": [
        "key",
        {
            "ca": "ipa",
            "dns": "ipaserver.test.local",
            "name": "mycert_basic_ipa",
            "principal": "HTTP/ipaserver.test.local@TEST.LOCAL"
        }
    ],
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=['key', {'name': 'groupcert', 'dns': 'ipaserver.test.local', 'principal': 'HTTP/ipaserver.test.local@TEST.LOCAL', 'ca': 'ipa', 'group': 'ftp'}])  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "item": [
        "key",
        {
            "ca": "ipa",
            "dns": "ipaserver.test.local",
            "group": "ftp",
            "name": "groupcert",
            "principal": "HTTP/ipaserver.test.local@TEST.LOCAL"
        }
    ],
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=['ca', {'name': 'mycert_basic_ipa', 'dns': 'ipaserver.test.local', 'principal': 'HTTP/ipaserver.test.local@TEST.LOCAL', 'ca': 'ipa'}])  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "item": [
        "ca",
        {
            "ca": "ipa",
            "dns": "ipaserver.test.local",
            "name": "mycert_basic_ipa",
            "principal": "HTTP/ipaserver.test.local@TEST.LOCAL"
        }
    ],
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => (item=['ca', {'name': 'groupcert', 'dns': 'ipaserver.test.local', 'principal': 'HTTP/ipaserver.test.local@TEST.LOCAL', 'ca': 'ipa', 'group': 'ftp'}])  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "item": [
        "ca",
        {
            "ca": "ipa",
            "dns": "ipaserver.test.local",
            "group": "ftp",
            "name": "groupcert",
            "principal": "HTTP/ipaserver.test.local@TEST.LOCAL"
        }
    ],
    "skip_reason": "Conditional result was False"
}
skipping: [managed_node1] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.certificate : Create return data] **************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:160
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.053)       0:07:25.167 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.certificate : Stop tracking certificates] ******
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:176
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.031)       0:07:25.199 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.certificate : Remove files] ********************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:181
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.034)       0:07:25.233 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "certificate_test_mode | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [Verify certificates] *****************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_basic_ipa.yml:41
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.041)       0:07:25.274 ******* 
included: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml for managed_node1 => (item={'path': '/etc/pki/tls/certs/mycert_basic_ipa.crt', 'key_path': '/etc/pki/tls/private/mycert_basic_ipa.key', 'subject': [{'name': 'commonName', 'oid': '2.5.4.3', 'value': 'ipaserver.test.local'}, {'name': 'organizationName', 'oid': '2.5.4.10', 'value': 'TEST.LOCAL'}], 'subject_alt_name': [{'name': 'DNS', 'value': 'ipaserver.test.local'}, {'name': 'Universal Principal Name (UPN)', 'oid': '1.3.6.1.4.1.311.20.2.3', 'value': 'HTTP/ipaserver.test.local@TEST.LOCAL'}, {'name': 'Kerberos principalname', 'oid': '1.3.6.1.5.2.2', 'value': 'HTTP/ipaserver.test.local@TEST.LOCAL'}], 'key_usage': ['digital_signature', 'content_commitment', 'key_encipherment', 'data_encipherment']})
included: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml for managed_node1 => (item={'path': '/etc/pki/tls/certs/groupcert.crt', 'key_path': '/etc/pki/tls/private/groupcert.key', 'owner': 'root', 'group': 'ftp', 'mode': '0640', 'subject': [{'name': 'commonName', 'oid': '2.5.4.3', 'value': 'ipaserver.test.local'}, {'name': 'organizationName', 'oid': '2.5.4.10', 'value': 'TEST.LOCAL'}], 'subject_alt_name': [{'name': 'DNS', 'value': 'ipaserver.test.local'}, {'name': 'Universal Principal Name (UPN)', 'oid': '1.3.6.1.4.1.311.20.2.3', 'value': 'HTTP/ipaserver.test.local@TEST.LOCAL'}, {'name': 'Kerberos principalname', 'oid': '1.3.6.1.5.2.2', 'value': 'HTTP/ipaserver.test.local@TEST.LOCAL'}], 'key_usage': ['digital_signature', 'content_commitment', 'key_encipherment', 'data_encipherment']})

TASK [Set virtualenv_path] *****************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:2
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.057)       0:07:25.332 ******* 
ok: [managed_node1] => {
    "ansible_facts": {
        "__virtualenv_path": "/tmp/certificate-tests-venv"
    },
    "changed": false
}

TASK [Check if system is ostree] ***********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:9
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.015)       0:07:25.347 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not __certificate_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [Set flag to indicate system is ostree] ***********************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:14
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.021)       0:07:25.369 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not __certificate_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [Ensure python3 is installed] *********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:18
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.018)       0:07:25.387 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ansible_distribution_major_version == \"7\"",
    "skip_reason": "Conditional result was False"
}

TASK [Ensure python3 is installed] *********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:28
Saturday 17 August 2024  08:30:21 -0400 (0:00:00.014)       0:07:25.401 ******* 
ok: [managed_node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: python3-cryptography python3-pyasn1

TASK [Retrieve certificate file stats] *****************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:38
Saturday 17 August 2024  08:30:24 -0400 (0:00:03.088)       0:07:28.490 ******* 
ok: [managed_node1] => {
    "changed": false,
    "stat": {
        "atime": 1723897819.6184828,
        "attr_flags": "",
        "attributes": [],
        "block_size": 4096,
        "blocks": 8,
        "charset": "us-ascii",
        "checksum": "7bbec8e90f795959d5dcbcaa8f741f578f4ddba2",
        "ctime": 1723897819.6154828,
        "dev": 51713,
        "device_type": 0,
        "executable": false,
        "exists": true,
        "gid": 0,
        "gr_name": "root",
        "inode": 6894510,
        "isblk": false,
        "ischr": false,
        "isdir": false,
        "isfifo": false,
        "isgid": false,
        "islnk": false,
        "isreg": true,
        "issock": false,
        "isuid": false,
        "mimetype": "text/plain",
        "mode": "0600",
        "mtime": 1723897819.6154828,
        "nlink": 1,
        "path": "/etc/pki/tls/certs/mycert_basic_ipa.crt",
        "pw_name": "root",
        "readable": true,
        "rgrp": false,
        "roth": false,
        "rusr": true,
        "size": 1854,
        "uid": 0,
        "version": "3567027735",
        "wgrp": false,
        "woth": false,
        "writeable": true,
        "wusr": true,
        "xgrp": false,
        "xoth": false,
        "xusr": false
    }
}

TASK [Verify if certificate file exists] ***************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:43
Saturday 17 August 2024  08:30:25 -0400 (0:00:00.347)       0:07:28.837 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate file owner and group] *********************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:49
Saturday 17 August 2024  08:30:25 -0400 (0:00:00.020)       0:07:28.858 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate permissions] ******************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:59
Saturday 17 August 2024  08:30:25 -0400 (0:00:00.040)       0:07:28.898 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Retrieve key file stats] *************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:65
Saturday 17 August 2024  08:30:25 -0400 (0:00:00.037)       0:07:28.936 ******* 
ok: [managed_node1] => {
    "changed": false,
    "stat": {
        "atime": 1723897818.3054795,
        "attr_flags": "",
        "attributes": [],
        "block_size": 4096,
        "blocks": 8,
        "charset": "us-ascii",
        "checksum": "e793c5d5a9dea190e207af943ae05bd2483d76ea",
        "ctime": 1723897819.6154828,
        "dev": 51713,
        "device_type": 0,
        "executable": false,
        "exists": true,
        "gid": 0,
        "gr_name": "root",
        "inode": 6883988,
        "isblk": false,
        "ischr": false,
        "isdir": false,
        "isfifo": false,
        "isgid": false,
        "islnk": false,
        "isreg": true,
        "issock": false,
        "isuid": false,
        "mimetype": "text/plain",
        "mode": "0600",
        "mtime": 1723897819.6154828,
        "nlink": 1,
        "path": "/etc/pki/tls/private/mycert_basic_ipa.key",
        "pw_name": "root",
        "readable": true,
        "rgrp": false,
        "roth": false,
        "rusr": true,
        "size": 1704,
        "uid": 0,
        "version": "2988713073",
        "wgrp": false,
        "woth": false,
        "writeable": true,
        "wusr": true,
        "xgrp": false,
        "xoth": false,
        "xusr": false
    }
}

TASK [Verify if key file exists] ***********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:70
Saturday 17 August 2024  08:30:25 -0400 (0:00:00.342)       0:07:29.278 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify key file owner and group] *****************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:76
Saturday 17 August 2024  08:30:25 -0400 (0:00:00.018)       0:07:29.297 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Parse certificate] *******************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:86
Saturday 17 August 2024  08:30:25 -0400 (0:00:00.038)       0:07:29.335 ******* 
ok: [managed_node1] => {
    "certificate": {
        "extensions": {
            "authorityInfoAccess": {
                "critical": false,
                "value": [
                    {
                        "location": "http://ipa-ca.test.local/ca/ocsp",
                        "method": "OCSP"
                    }
                ]
            },
            "authorityKeyIdentifier": {
                "critical": false,
                "value": "F2:55:6C:6C:A9:A6:06:72:8F:0D:77:62:6A:61:27:06:9E:96:58:E0"
            },
            "cRLDistributionPoints": {
                "critical": false,
                "value": [
                    {
                        "crl_issuer": [
                            {
                                "commonName": "Certificate Authority",
                                "organizationName": "ipaca"
                            }
                        ],
                        "full_name": [
                            "http://ipa-ca.test.local/ipa/crl/MasterCRL.bin"
                        ]
                    }
                ]
            },
            "extendedKeyUsage": {
                "critical": false,
                "value": [
                    {
                        "name": "id-kp-serverAuth",
                        "oid": "1.3.6.1.5.5.7.3.1"
                    },
                    {
                        "name": "id-kp-clientAuth",
                        "oid": "1.3.6.1.5.5.7.3.2"
                    }
                ]
            },
            "keyUsage": {
                "critical": true,
                "value": [
                    "digital_signature",
                    "content_commitment",
                    "key_encipherment",
                    "data_encipherment"
                ]
            },
            "subjectAltName": {
                "critical": false,
                "value": [
                    {
                        "name": "DNS",
                        "value": "ipaserver.test.local"
                    },
                    {
                        "name": "Universal Principal Name (UPN)",
                        "oid": "1.3.6.1.4.1.311.20.2.3",
                        "value": "HTTP/ipaserver.test.local@TEST.LOCAL"
                    },
                    {
                        "name": "Kerberos principalname",
                        "oid": "1.3.6.1.5.2.2",
                        "value": "HTTP/ipaserver.test.local@TEST.LOCAL"
                    }
                ]
            },
            "subjectKeyIdentifier": {
                "critical": false,
                "value": "5F:7E:4C:66:68:31:11:EC:A4:9F:EC:D9:93:BF:CD:3D:92:F1:08:F7"
            }
        },
        "key_size": 2048,
        "signature_algorithm": {
            "algorithm": "sha256WithRSAEncryption",
            "signature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
        },
        "subject": [
            {
                "name": "organizationName",
                "oid": "2.5.4.10",
                "value": "TEST.LOCAL"
            },
            {
                "name": "commonName",
                "oid": "2.5.4.3",
                "value": "ipaserver.test.local"
            }
        ],
        "validity": {
            "not_valid_after": "20260818123019Z",
            "not_valid_before": "20240817123019Z"
        }
    },
    "changed": false
}

TASK [Load certificate YAML to cert_issued variable] ***************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:92
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.485)       0:07:29.821 ******* 
ok: [managed_node1] => {
    "ansible_facts": {
        "cert_issued": {
            "extensions": {
                "authorityInfoAccess": {
                    "critical": false,
                    "value": [
                        {
                            "location": "http://ipa-ca.test.local/ca/ocsp",
                            "method": "OCSP"
                        }
                    ]
                },
                "authorityKeyIdentifier": {
                    "critical": false,
                    "value": "F2:55:6C:6C:A9:A6:06:72:8F:0D:77:62:6A:61:27:06:9E:96:58:E0"
                },
                "cRLDistributionPoints": {
                    "critical": false,
                    "value": [
                        {
                            "crl_issuer": [
                                {
                                    "commonName": "Certificate Authority",
                                    "organizationName": "ipaca"
                                }
                            ],
                            "full_name": [
                                "http://ipa-ca.test.local/ipa/crl/MasterCRL.bin"
                            ]
                        }
                    ]
                },
                "extendedKeyUsage": {
                    "critical": false,
                    "value": [
                        {
                            "name": "id-kp-serverAuth",
                            "oid": "1.3.6.1.5.5.7.3.1"
                        },
                        {
                            "name": "id-kp-clientAuth",
                            "oid": "1.3.6.1.5.5.7.3.2"
                        }
                    ]
                },
                "keyUsage": {
                    "critical": true,
                    "value": [
                        "digital_signature",
                        "content_commitment",
                        "key_encipherment",
                        "data_encipherment"
                    ]
                },
                "subjectAltName": {
                    "critical": false,
                    "value": [
                        {
                            "name": "DNS",
                            "value": "ipaserver.test.local"
                        },
                        {
                            "name": "Universal Principal Name (UPN)",
                            "oid": "1.3.6.1.4.1.311.20.2.3",
                            "value": "HTTP/ipaserver.test.local@TEST.LOCAL"
                        },
                        {
                            "name": "Kerberos principalname",
                            "oid": "1.3.6.1.5.2.2",
                            "value": "HTTP/ipaserver.test.local@TEST.LOCAL"
                        }
                    ]
                },
                "subjectKeyIdentifier": {
                    "critical": false,
                    "value": "5F:7E:4C:66:68:31:11:EC:A4:9F:EC:D9:93:BF:CD:3D:92:F1:08:F7"
                }
            },
            "key_size": 2048,
            "signature_algorithm": {
                "algorithm": "sha256WithRSAEncryption",
                "signature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
            },
            "subject": [
                {
                    "name": "organizationName",
                    "oid": "2.5.4.10",
                    "value": "TEST.LOCAL"
                },
                {
                    "name": "commonName",
                    "oid": "2.5.4.3",
                    "value": "ipaserver.test.local"
                }
            ],
            "validity": {
                "not_valid_after": "20260818123019Z",
                "not_valid_before": "20240817123019Z"
            }
        }
    },
    "changed": false
}

TASK [Verify certificate subject] **********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:96
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.018)       0:07:29.840 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate SAN] **************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:104
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.041)       0:07:29.881 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify key size] *********************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:112
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.018)       0:07:29.900 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate Key Usage] ********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:119
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.036)       0:07:29.936 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate Extended Key Usage] ***********************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:130
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.042)       0:07:29.979 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Retrieve auto-renew flag] ************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:143
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.041)       0:07:30.020 ******* 
ok: [managed_node1] => {
    "changed": false,
    "cmd": "set -euo pipefail; getcert list -f /etc/pki/tls/certs/mycert_basic_ipa.crt | grep 'auto-renew' | sed 's/^\\s\\+auto-renew: //g'",
    "delta": "0:00:00.062825",
    "end": "2024-08-17 08:30:26.675156",
    "rc": 0,
    "start": "2024-08-17 08:30:26.612331"
}

STDOUT:

yes

TASK [Verify certificate auto-renew flag] **************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:152
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.393)       0:07:30.414 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Set virtualenv_path] *****************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:2
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.038)       0:07:30.452 ******* 
ok: [managed_node1] => {
    "ansible_facts": {
        "__virtualenv_path": "/tmp/certificate-tests-venv"
    },
    "changed": false
}

TASK [Check if system is ostree] ***********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:9
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.015)       0:07:30.467 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not __certificate_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [Set flag to indicate system is ostree] ***********************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:14
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.016)       0:07:30.484 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "not __certificate_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [Ensure python3 is installed] *********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:18
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.022)       0:07:30.506 ******* 
skipping: [managed_node1] => {
    "changed": false,
    "false_condition": "ansible_distribution_major_version == \"7\"",
    "skip_reason": "Conditional result was False"
}

TASK [Ensure python3 is installed] *********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:28
Saturday 17 August 2024  08:30:26 -0400 (0:00:00.012)       0:07:30.519 ******* 
ok: [managed_node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: python3-cryptography python3-pyasn1

TASK [Retrieve certificate file stats] *****************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:38
Saturday 17 August 2024  08:30:29 -0400 (0:00:03.069)       0:07:33.589 ******* 
ok: [managed_node1] => {
    "changed": false,
    "stat": {
        "atime": 1723897821.264487,
        "attr_flags": "",
        "attributes": [],
        "block_size": 4096,
        "blocks": 8,
        "charset": "us-ascii",
        "checksum": "2d8d00c1e4975330d178df9a7c46b4faab14d638",
        "ctime": 1723897821.3624873,
        "dev": 51713,
        "device_type": 0,
        "executable": false,
        "exists": true,
        "gid": 50,
        "gr_name": "ftp",
        "inode": 6987025,
        "isblk": false,
        "ischr": false,
        "isdir": false,
        "isfifo": false,
        "isgid": false,
        "islnk": false,
        "isreg": true,
        "issock": false,
        "isuid": false,
        "mimetype": "text/plain",
        "mode": "0640",
        "mtime": 1723897821.261487,
        "nlink": 1,
        "path": "/etc/pki/tls/certs/groupcert.crt",
        "pw_name": "root",
        "readable": true,
        "rgrp": true,
        "roth": false,
        "rusr": true,
        "size": 1854,
        "uid": 0,
        "version": "1543424103",
        "wgrp": false,
        "woth": false,
        "writeable": true,
        "wusr": true,
        "xgrp": false,
        "xoth": false,
        "xusr": false
    }
}

TASK [Verify if certificate file exists] ***************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:43
Saturday 17 August 2024  08:30:30 -0400 (0:00:00.347)       0:07:33.936 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate file owner and group] *********************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:49
Saturday 17 August 2024  08:30:30 -0400 (0:00:00.018)       0:07:33.955 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate permissions] ******************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:59
Saturday 17 August 2024  08:30:30 -0400 (0:00:00.039)       0:07:33.994 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Retrieve key file stats] *************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:65
Saturday 17 August 2024  08:30:30 -0400 (0:00:00.038)       0:07:34.033 ******* 
ok: [managed_node1] => {
    "changed": false,
    "stat": {
        "atime": 1723897820.3204846,
        "attr_flags": "",
        "attributes": [],
        "block_size": 4096,
        "blocks": 8,
        "charset": "us-ascii",
        "checksum": "41a92212f1062e3d10ea4a938630ea13bf6dd2c5",
        "ctime": 1723897821.3634872,
        "dev": 51713,
        "device_type": 0,
        "executable": false,
        "exists": true,
        "gid": 50,
        "gr_name": "ftp",
        "inode": 6987024,
        "isblk": false,
        "ischr": false,
        "isdir": false,
        "isfifo": false,
        "isgid": false,
        "islnk": false,
        "isreg": true,
        "issock": false,
        "isuid": false,
        "mimetype": "text/plain",
        "mode": "0640",
        "mtime": 1723897821.261487,
        "nlink": 1,
        "path": "/etc/pki/tls/private/groupcert.key",
        "pw_name": "root",
        "readable": true,
        "rgrp": true,
        "roth": false,
        "rusr": true,
        "size": 1704,
        "uid": 0,
        "version": "3653370426",
        "wgrp": false,
        "woth": false,
        "writeable": true,
        "wusr": true,
        "xgrp": false,
        "xoth": false,
        "xusr": false
    }
}

TASK [Verify if key file exists] ***********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:70
Saturday 17 August 2024  08:30:30 -0400 (0:00:00.344)       0:07:34.377 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify key file owner and group] *****************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:76
Saturday 17 August 2024  08:30:30 -0400 (0:00:00.018)       0:07:34.396 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Parse certificate] *******************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:86
Saturday 17 August 2024  08:30:30 -0400 (0:00:00.038)       0:07:34.434 ******* 
ok: [managed_node1] => {
    "certificate": {
        "extensions": {
            "authorityInfoAccess": {
                "critical": false,
                "value": [
                    {
                        "location": "http://ipa-ca.test.local/ca/ocsp",
                        "method": "OCSP"
                    }
                ]
            },
            "authorityKeyIdentifier": {
                "critical": false,
                "value": "F2:55:6C:6C:A9:A6:06:72:8F:0D:77:62:6A:61:27:06:9E:96:58:E0"
            },
            "cRLDistributionPoints": {
                "critical": false,
                "value": [
                    {
                        "crl_issuer": [
                            {
                                "commonName": "Certificate Authority",
                                "organizationName": "ipaca"
                            }
                        ],
                        "full_name": [
                            "http://ipa-ca.test.local/ipa/crl/MasterCRL.bin"
                        ]
                    }
                ]
            },
            "extendedKeyUsage": {
                "critical": false,
                "value": [
                    {
                        "name": "id-kp-serverAuth",
                        "oid": "1.3.6.1.5.5.7.3.1"
                    },
                    {
                        "name": "id-kp-clientAuth",
                        "oid": "1.3.6.1.5.5.7.3.2"
                    }
                ]
            },
            "keyUsage": {
                "critical": true,
                "value": [
                    "digital_signature",
                    "content_commitment",
                    "key_encipherment",
                    "data_encipherment"
                ]
            },
            "subjectAltName": {
                "critical": false,
                "value": [
                    {
                        "name": "DNS",
                        "value": "ipaserver.test.local"
                    },
                    {
                        "name": "Universal Principal Name (UPN)",
                        "oid": "1.3.6.1.4.1.311.20.2.3",
                        "value": "HTTP/ipaserver.test.local@TEST.LOCAL"
                    },
                    {
                        "name": "Kerberos principalname",
                        "oid": "1.3.6.1.5.2.2",
                        "value": "HTTP/ipaserver.test.local@TEST.LOCAL"
                    }
                ]
            },
            "subjectKeyIdentifier": {
                "critical": false,
                "value": "CF:DA:F4:FB:8F:2A:98:32:8E:52:CE:C2:64:6F:6C:02:23:3A:52:51"
            }
        },
        "key_size": 2048,
        "signature_algorithm": {
            "algorithm": "sha256WithRSAEncryption",
            "signature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
        },
        "subject": [
            {
                "name": "organizationName",
                "oid": "2.5.4.10",
                "value": "TEST.LOCAL"
            },
            {
                "name": "commonName",
                "oid": "2.5.4.3",
                "value": "ipaserver.test.local"
            }
        ],
        "validity": {
            "not_valid_after": "20260818123021Z",
            "not_valid_before": "20240817123021Z"
        }
    },
    "changed": false
}

TASK [Load certificate YAML to cert_issued variable] ***************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:92
Saturday 17 August 2024  08:30:31 -0400 (0:00:00.403)       0:07:34.838 ******* 
ok: [managed_node1] => {
    "ansible_facts": {
        "cert_issued": {
            "extensions": {
                "authorityInfoAccess": {
                    "critical": false,
                    "value": [
                        {
                            "location": "http://ipa-ca.test.local/ca/ocsp",
                            "method": "OCSP"
                        }
                    ]
                },
                "authorityKeyIdentifier": {
                    "critical": false,
                    "value": "F2:55:6C:6C:A9:A6:06:72:8F:0D:77:62:6A:61:27:06:9E:96:58:E0"
                },
                "cRLDistributionPoints": {
                    "critical": false,
                    "value": [
                        {
                            "crl_issuer": [
                                {
                                    "commonName": "Certificate Authority",
                                    "organizationName": "ipaca"
                                }
                            ],
                            "full_name": [
                                "http://ipa-ca.test.local/ipa/crl/MasterCRL.bin"
                            ]
                        }
                    ]
                },
                "extendedKeyUsage": {
                    "critical": false,
                    "value": [
                        {
                            "name": "id-kp-serverAuth",
                            "oid": "1.3.6.1.5.5.7.3.1"
                        },
                        {
                            "name": "id-kp-clientAuth",
                            "oid": "1.3.6.1.5.5.7.3.2"
                        }
                    ]
                },
                "keyUsage": {
                    "critical": true,
                    "value": [
                        "digital_signature",
                        "content_commitment",
                        "key_encipherment",
                        "data_encipherment"
                    ]
                },
                "subjectAltName": {
                    "critical": false,
                    "value": [
                        {
                            "name": "DNS",
                            "value": "ipaserver.test.local"
                        },
                        {
                            "name": "Universal Principal Name (UPN)",
                            "oid": "1.3.6.1.4.1.311.20.2.3",
                            "value": "HTTP/ipaserver.test.local@TEST.LOCAL"
                        },
                        {
                            "name": "Kerberos principalname",
                            "oid": "1.3.6.1.5.2.2",
                            "value": "HTTP/ipaserver.test.local@TEST.LOCAL"
                        }
                    ]
                },
                "subjectKeyIdentifier": {
                    "critical": false,
                    "value": "CF:DA:F4:FB:8F:2A:98:32:8E:52:CE:C2:64:6F:6C:02:23:3A:52:51"
                }
            },
            "key_size": 2048,
            "signature_algorithm": {
                "algorithm": "sha256WithRSAEncryption",
                "signature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
            },
            "subject": [
                {
                    "name": "organizationName",
                    "oid": "2.5.4.10",
                    "value": "TEST.LOCAL"
                },
                {
                    "name": "commonName",
                    "oid": "2.5.4.3",
                    "value": "ipaserver.test.local"
                }
            ],
            "validity": {
                "not_valid_after": "20260818123021Z",
                "not_valid_before": "20240817123021Z"
            }
        }
    },
    "changed": false
}

TASK [Verify certificate subject] **********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:96
Saturday 17 August 2024  08:30:31 -0400 (0:00:00.018)       0:07:34.857 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate SAN] **************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:104
Saturday 17 August 2024  08:30:31 -0400 (0:00:00.037)       0:07:34.895 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify key size] *********************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:112
Saturday 17 August 2024  08:30:31 -0400 (0:00:00.022)       0:07:34.917 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate Key Usage] ********************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:119
Saturday 17 August 2024  08:30:31 -0400 (0:00:00.036)       0:07:34.953 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Verify certificate Extended Key Usage] ***********************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:130
Saturday 17 August 2024  08:30:31 -0400 (0:00:00.040)       0:07:34.994 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Retrieve auto-renew flag] ************************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:143
Saturday 17 August 2024  08:30:31 -0400 (0:00:00.039)       0:07:35.033 ******* 
ok: [managed_node1] => {
    "changed": false,
    "cmd": "set -euo pipefail; getcert list -f /etc/pki/tls/certs/groupcert.crt | grep 'auto-renew' | sed 's/^\\s\\+auto-renew: //g'",
    "delta": "0:00:00.062684",
    "end": "2024-08-17 08:30:31.691383",
    "rc": 0,
    "start": "2024-08-17 08:30:31.628699"
}

STDOUT:

yes

TASK [Verify certificate auto-renew flag] **************************************
task path: /tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:152
Saturday 17 August 2024  08:30:31 -0400 (0:00:00.398)       0:07:35.432 ******* 
ok: [managed_node1] => {
    "changed": false
}

MSG:

All assertions passed

PLAY RECAP *********************************************************************
managed_node1              : ok=95   changed=28   unreachable=0    failed=0    skipped=59   rescued=0    ignored=0   

Saturday 17 August 2024  08:30:31 -0400 (0:00:00.046)       0:07:35.478 ******* 
=============================================================================== 
ipaserver : Install - Setup CA ---------------------------------------- 178.82s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:276 ----------------------
ipaserver : Install - Ensure that IPA server packages are installed ---- 59.27s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:7 ------------------------
ipaserver : Install - Setup DS ----------------------------------------- 44.45s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:214 ----------------------
ipaserver : Install - Setup HTTP --------------------------------------- 34.52s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:335 ----------------------
ipaclient : Install - Create IPA NSS database -------------------------- 28.85s
/usr/share/ansible/roles/ipaclient/tasks/install.yml:355 ----------------------
ipaserver : Install - Setup ADTRUST ------------------------------------ 10.16s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:395 ----------------------
ipaserver : Install - Setup NTP ----------------------------------------- 7.64s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:207 ----------------------
ipaserver : Install - Setup KRB ----------------------------------------- 7.11s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:243 ----------------------
Install ansible-freeipa ------------------------------------------------- 6.79s
/tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:18 
Ensure hostname package is installed ------------------------------------ 5.33s
/tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:53 
ipaserver : Install - Enable IPA ---------------------------------------- 5.27s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:443 ----------------------
ipaserver : Install - Setup custodia ------------------------------------ 4.70s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:270 ----------------------
fedora.linux_system_roles.certificate : Ensure certificate requests ----- 3.84s
/tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:101 
ipaserver : Install - Ensure that firewall packages installed ----------- 3.47s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:24 -----------------------
Ensure nss package is up-to-date ---------------------------------------- 3.30s
/tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/setup_ipa.yml:65 
fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed --- 3.29s
/tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:5 
fedora.linux_system_roles.certificate : Ensure provider packages are installed --- 3.24s
/tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:23 
Ensure python3 is installed --------------------------------------------- 3.09s
/tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:28 
Ensure python3 is installed --------------------------------------------- 3.07s
/tmp/collections-FQo/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/assert_certificate_parameters.yml:28 
ipaserver : Install - Setup otpd ---------------------------------------- 2.66s
/usr/share/ansible/roles/ipaserver/tasks/install.yml:329 ----------------------