ansible-playbook [core 2.17.6]
  config file = None
  configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
  ansible python module location = /usr/local/lib/python3.12/site-packages/ansible
  ansible collection location = /tmp/collections-bRn
  executable location = /usr/local/bin/ansible-playbook
  python version = 3.12.7 (main, Oct  1 2024, 00:00:00) [GCC 13.3.1 20240913 (Red Hat 13.3.1-3)] (/usr/bin/python3.12)
  jinja version = 3.1.4
  libyaml = True
No config file found; using defaults
running playbook inside collection fedora.linux_system_roles
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.profile_tasks to ansible.posix.profile_tasks
Skipping callback 'default', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.

PLAYBOOK: tests_reboot.yml *****************************************************
1 plays in /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reboot.yml

PLAY [Ensure we can set crypto policy including reboot of the system] **********

TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reboot.yml:3
Friday 29 November 2024  23:27:29 -0500 (0:00:00.017)       0:00:00.017 ******* 
[WARNING]: Platform linux on host managed-node3 is using the discovered Python
interpreter at /usr/bin/python3.12, but future installation of another Python
interpreter could change the meaning of that path. See
https://docs.ansible.com/ansible-
core/2.17/reference_appendices/interpreter_discovery.html for more information.
ok: [managed-node3]

TASK [Ensure we can set crypto policy including reboot of the system] **********
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reboot.yml:11
Friday 29 November 2024  23:27:31 -0500 (0:00:01.375)       0:00:01.393 ******* 
included: fedora.linux_system_roles.crypto_policies for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Friday 29 November 2024  23:27:31 -0500 (0:00:00.164)       0:00:01.557 ******* 
included: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Friday 29 November 2024  23:27:31 -0500 (0:00:00.048)       0:00:01.606 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Friday 29 November 2024  23:27:31 -0500 (0:00:00.074)       0:00:01.681 ******* 
ok: [managed-node3] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Friday 29 November 2024  23:27:32 -0500 (0:00:00.789)       0:00:02.470 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "__crypto_policies_is_ostree": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Friday 29 November 2024  23:27:32 -0500 (0:00:00.052)       0:00:02.522 ******* 
ok: [managed-node3] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Friday 29 November 2024  23:27:32 -0500 (0:00:00.450)       0:00:02.973 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "__crypto_policies_is_transactional": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Friday 29 November 2024  23:27:32 -0500 (0:00:00.031)       0:00:03.004 ******* 
skipping: [managed-node3] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=Fedora.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "Fedora.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=Fedora_39.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "Fedora_39.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=Fedora_39.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "Fedora_39.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Friday 29 November 2024  23:27:32 -0500 (0:00:00.041)       0:00:03.046 ******* 
ok: [managed-node3] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: crypto-policies crypto-policies-scripts

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Friday 29 November 2024  23:27:34 -0500 (0:00:02.022)       0:00:05.068 ******* 
skipping: [managed-node3] => {
    "false_condition": "__crypto_policies_is_transactional | d(false)"
}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Friday 29 November 2024  23:27:35 -0500 (0:00:00.058)       0:00:05.127 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Friday 29 November 2024  23:27:35 -0500 (0:00:00.058)       0:00:05.186 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Friday 29 November 2024  23:27:35 -0500 (0:00:00.056)       0:00:05.242 ******* 
included: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 29 November 2024  23:27:35 -0500 (0:00:00.047)       0:00:05.290 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.062491",
    "end": "2024-11-29 23:27:35.937413",
    "rc": 0,
    "start": "2024-11-29 23:27:35.874922"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 29 November 2024  23:27:36 -0500 (0:00:00.816)       0:00:06.106 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Friday 29 November 2024  23:27:36 -0500 (0:00:00.027)       0:00:06.134 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 12,
    "files": [
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147807,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/BSI.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 4054,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147810,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FEDORA38.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 3085,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147811,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2244,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147814,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 3100,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147813,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/GOST-ONLY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 936,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147815,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/NEXT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 3085,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147816,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/TEST-FEDORA39.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2844,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147809,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 277,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1732182604.722,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147808,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 3085,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147812,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2765,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 10,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Friday 29 November 2024  23:27:36 -0500 (0:00:00.517)       0:00:06.651 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "BSI",
            "FEDORA38",
            "FIPS",
            "LEGACY",
            "GOST-ONLY",
            "NEXT",
            "TEST-FEDORA39",
            "EMPTY",
            "DEFAULT",
            "FUTURE"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Friday 29 November 2024  23:27:36 -0500 (0:00:00.101)       0:00:06.752 ******* 
ok: [managed-node3] => {
    "changed": false,
    "examined": 10,
    "files": [
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147827,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/TEST-PQ.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 208,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147821,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/GOST.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 789,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147819,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 136,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147826,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 131,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147824,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 288,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147825,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2014,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147820,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/FEDORA32.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 398,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147823,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-ENFORCE-EMS.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 248,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147822,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 93,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1701648000.0,
            "ctime": 1732182530.964,
            "dev": 51714,
            "gid": 0,
            "gr_name": "root",
            "inode": 147818,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1701648000.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 331,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 10,
    "skipped_paths": {}
}

MSG:

All paths examined

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Friday 29 November 2024  23:27:37 -0500 (0:00:00.450)       0:00:07.202 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "TEST-PQ",
            "GOST",
            "ECDHE-ONLY",
            "SHA1",
            "NO-SHA1",
            "OSPP",
            "FEDORA32",
            "NO-ENFORCE-EMS",
            "NO-CAMELLIA",
            "AD-SUPPORT"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Friday 29 November 2024  23:27:37 -0500 (0:00:00.072)       0:00:07.275 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "TEST-PQ",
            "GOST",
            "ECDHE-ONLY",
            "SHA1",
            "NO-SHA1",
            "OSPP",
            "FEDORA32",
            "NO-ENFORCE-EMS",
            "NO-CAMELLIA",
            "AD-SUPPORT"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Friday 29 November 2024  23:27:37 -0500 (0:00:00.031)       0:00:07.306 ******* 
Notification for handler __crypto_policies_handler_modified has been saved.
changed: [managed-node3] => {
    "changed": true,
    "cmd": [
        "update-crypto-policies",
        "--set",
        "FUTURE"
    ],
    "delta": "0:00:00.175289",
    "end": "2024-11-29 23:27:37.732788",
    "rc": 0,
    "start": "2024-11-29 23:27:37.557499"
}

STDOUT:

Setting system policy to FUTURE
Note: System-wide crypto policies are applied on application start-up.
It is recommended to restart the system for the change of policies
to fully take place.

TASK [fedora.linux_system_roles.crypto_policies : Set the reboot_required flag if needed] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:87
Friday 29 November 2024  23:27:37 -0500 (0:00:00.591)       0:00:07.898 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_reboot_required": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update facts after applying policy] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:95
Friday 29 November 2024  23:27:37 -0500 (0:00:00.043)       0:00:07.941 ******* 
included: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Friday 29 November 2024  23:27:37 -0500 (0:00:00.040)       0:00:07.982 ******* 
ok: [managed-node3] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.063534",
    "end": "2024-11-29 23:27:38.295356",
    "rc": 0,
    "start": "2024-11-29 23:27:38.231822"
}

STDOUT:

FUTURE

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Friday 29 November 2024  23:27:38 -0500 (0:00:00.469)       0:00:08.452 ******* 
ok: [managed-node3] => {
    "ansible_facts": {
        "crypto_policies_active": "FUTURE"
    },
    "changed": false
}

TASK [Flush handlers] **********************************************************
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reboot.yml:19
Friday 29 November 2024  23:27:38 -0500 (0:00:00.024)       0:00:08.477 ******* 
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes for managed-node3
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag for managed-node3
META: triggered running handlers for managed-node3

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:4
Friday 29 November 2024  23:27:38 -0500 (0:00:00.003)       0:00:08.480 ******* 
fatal: [managed-node3]: FAILED! => {}

MSG:

Failed to connect to the host via ssh: OpenSSH_9.3p1, OpenSSL 3.1.4 24 Oct 2023
debug1: Reading configuration data /root/.ssh/config
debug1: Reading configuration data /etc/ssh/ssh_config
debug1: Reading configuration data /etc/ssh/ssh_config.d/50-redhat.conf
debug2: checking match for 'final all' host 10.31.45.108 originally 10.31.45.108
debug2: match not found
debug1: Reading configuration data /etc/crypto-policies/back-ends/openssh.config
debug1: configuration requests final Match pass
debug2: resolve_canonicalize: hostname 10.31.45.108 is address
debug1: re-parsing configuration
debug1: Reading configuration data /root/.ssh/config
debug1: Reading configuration data /etc/ssh/ssh_config
debug1: Reading configuration data /etc/ssh/ssh_config.d/50-redhat.conf
debug2: checking match for 'final all' host 10.31.45.108 originally 10.31.45.108
debug2: match found
debug1: Reading configuration data /etc/crypto-policies/back-ends/openssh.config
debug1: auto-mux: Trying existing master
debug1: Control socket "/root/.ansible/cp/1a5736ba5c" does not exist
debug1: Connecting to 10.31.45.108 [10.31.45.108] port 22.
debug2: fd 3 setting O_NONBLOCK
debug1: fd 3 clearing O_NONBLOCK
debug1: Connection established.
debug1: identity file /root/.ssh/id_rsa type -1
debug1: identity file /root/.ssh/id_rsa-cert type -1
debug1: identity file /root/.ssh/id_ecdsa type -1
debug1: identity file /root/.ssh/id_ecdsa-cert type -1
debug1: identity file /root/.ssh/id_ecdsa_sk type -1
debug1: identity file /root/.ssh/id_ecdsa_sk-cert type -1
debug1: identity file /root/.ssh/id_ed25519 type -1
debug1: identity file /root/.ssh/id_ed25519-cert type -1
debug1: identity file /root/.ssh/id_ed25519_sk type -1
debug1: identity file /root/.ssh/id_ed25519_sk-cert type -1
debug1: identity file /root/.ssh/id_xmss type -1
debug1: identity file /root/.ssh/id_xmss-cert type -1
debug1: identity file /root/.ssh/id_dsa type -1
debug1: identity file /root/.ssh/id_dsa-cert type -1
debug1: Local version string SSH-2.0-OpenSSH_9.3
debug1: Remote protocol version 2.0, remote software version OpenSSH_9.3
debug1: compat_banner: match: OpenSSH_9.3 pat OpenSSH* compat 0x04000000
debug2: fd 3 setting O_NONBLOCK
debug1: Authenticating to 10.31.45.108:22 as 'root'
debug1: load_hostkeys: fopen /root/.ssh/known_hosts2: No such file or directory
debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts: No such file or directory
debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts2: No such file or directory
debug1: SSH2_MSG_KEXINIT sent
debug1: SSH2_MSG_KEXINIT received
debug2: local client KEXINIT proposal
debug2: KEX algorithms: curve25519-sha256,curve25519-sha256@libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,ext-info-c,kex-strict-c-v00@openssh.com
debug2: host key algorithms: ssh-ed25519-cert-v01@openssh.com,ecdsa-sha2-nistp256-cert-v01@openssh.com,ecdsa-sha2-nistp384-cert-v01@openssh.com,ecdsa-sha2-nistp521-cert-v01@openssh.com,sk-ssh-ed25519-cert-v01@openssh.com,sk-ecdsa-sha2-nistp256-cert-v01@openssh.com,rsa-sha2-512-cert-v01@openssh.com,rsa-sha2-256-cert-v01@openssh.com,ssh-ed25519,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,sk-ssh-ed25519@openssh.com,sk-ecdsa-sha2-nistp256@openssh.com,rsa-sha2-512,rsa-sha2-256
debug2: ciphers ctos: aes256-gcm@openssh.com,chacha20-poly1305@openssh.com,aes256-ctr,aes128-gcm@openssh.com,aes128-ctr
debug2: ciphers stoc: aes256-gcm@openssh.com,chacha20-poly1305@openssh.com,aes256-ctr,aes128-gcm@openssh.com,aes128-ctr
debug2: MACs ctos: hmac-sha2-256-etm@openssh.com,hmac-sha1-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512-etm@openssh.com,hmac-sha2-256,hmac-sha1,umac-128@openssh.com,hmac-sha2-512
debug2: MACs stoc: hmac-sha2-256-etm@openssh.com,hmac-sha1-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512-etm@openssh.com,hmac-sha2-256,hmac-sha1,umac-128@openssh.com,hmac-sha2-512
debug2: compression ctos: zlib@openssh.com,zlib,none
debug2: compression stoc: zlib@openssh.com,zlib,none
debug2: languages ctos: 
debug2: languages stoc: 
debug2: first_kex_follows 0 
debug2: reserved 0 
debug2: peer server KEXINIT proposal
debug2: KEX algorithms: curve25519-sha256,curve25519-sha256@libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,kex-strict-s-v00@openssh.com
debug2: host key algorithms: rsa-sha2-512,rsa-sha2-256,ecdsa-sha2-nistp256,ssh-ed25519
debug2: ciphers ctos: aes256-gcm@openssh.com,chacha20-poly1305@openssh.com,aes256-ctr
debug2: ciphers stoc: aes256-gcm@openssh.com,chacha20-poly1305@openssh.com,aes256-ctr
debug2: MACs ctos: hmac-sha2-256-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512-etm@openssh.com,hmac-sha2-256,umac-128@openssh.com,hmac-sha2-512
debug2: MACs stoc: hmac-sha2-256-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512-etm@openssh.com,hmac-sha2-256,umac-128@openssh.com,hmac-sha2-512
debug2: compression ctos: none,zlib@openssh.com
debug2: compression stoc: none,zlib@openssh.com
debug2: languages ctos: 
debug2: languages stoc: 
debug2: first_kex_follows 0 
debug2: reserved 0 
debug1: kex: algorithm: curve25519-sha256
debug1: kex: host key algorithm: ssh-ed25519
debug1: kex: server->client cipher: aes256-gcm@openssh.com MAC: <implicit> compression: zlib@openssh.com
debug1: kex: client->server cipher: aes256-gcm@openssh.com MAC: <implicit> compression: zlib@openssh.com
debug1: kex: curve25519-sha256 need=32 dh_need=32
debug1: kex: curve25519-sha256 need=32 dh_need=32
debug1: expecting SSH2_MSG_KEX_ECDH_REPLY
debug1: SSH2_MSG_KEX_ECDH_REPLY received
debug1: Server host key: ssh-ed25519 SHA256:l5t6Tj0ZoWp6vUIzjQuc5rvLZ+3w+qSfIXPSijuiUnI
debug1: load_hostkeys: fopen /root/.ssh/known_hosts2: No such file or directory
debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts: No such file or directory
debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts2: No such file or directory
debug1: Host '10.31.45.108' is known and matches the ED25519 host key.
debug1: Found key in /root/.ssh/known_hosts:3
debug1: ssh_packet_send2_wrapped: resetting send seqnr 3
debug2: ssh_set_newkeys: mode 1
debug1: rekey out after 4294967296 blocks
debug1: SSH2_MSG_NEWKEYS sent
debug1: expecting SSH2_MSG_NEWKEYS
debug1: ssh_packet_read_poll2: resetting read seqnr 3
debug1: SSH2_MSG_NEWKEYS received
debug2: ssh_set_newkeys: mode 0
debug1: rekey in after 4294967296 blocks
debug1: Will attempt key: /root/.ssh/id_rsa 
debug1: Will attempt key: /root/.ssh/id_ecdsa 
debug1: Will attempt key: /root/.ssh/id_ecdsa_sk 
debug1: Will attempt key: /root/.ssh/id_ed25519 
debug1: Will attempt key: /root/.ssh/id_ed25519_sk 
debug1: Will attempt key: /root/.ssh/id_xmss 
debug1: Will attempt key: /root/.ssh/id_dsa 
debug2: pubkey_prepare: done
debug1: SSH2_MSG_EXT_INFO received
debug1: kex_input_ext_info: server-sig-algs=<ssh-ed25519,sk-ssh-ed25519@openssh.com,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,sk-ecdsa-sha2-nistp256@openssh.com,webauthn-sk-ecdsa-sha2-nistp256@openssh.com,ssh-dss,ssh-rsa,rsa-sha2-256,rsa-sha2-512>
debug1: kex_input_ext_info: publickey-hostbound@openssh.com=<0>
debug2: service_accept: ssh-userauth
debug1: SSH2_MSG_SERVICE_ACCEPT received
debug1: Authentications that can continue: publickey,gssapi-keyex,gssapi-with-mic,password
debug1: Next authentication method: gssapi-with-mic
debug1: No credentials were supplied, or the credentials were unavailable or inaccessible
No Kerberos credentials available (default cache: KCM:)


debug1: No credentials were supplied, or the credentials were unavailable or inaccessible
No Kerberos credentials available (default cache: KCM:)


debug2: we did not send a packet, disable method
debug1: Next authentication method: publickey
debug1: Trying private key: /root/.ssh/id_rsa
debug2: we sent a publickey packet, wait for reply
debug1: Authentications that can continue: publickey,gssapi-keyex,gssapi-with-mic,password
debug1: Trying private key: /root/.ssh/id_ecdsa
debug1: Trying private key: /root/.ssh/id_ecdsa_sk
debug1: Trying private key: /root/.ssh/id_ed25519
debug1: Trying private key: /root/.ssh/id_ed25519_sk
debug1: Trying private key: /root/.ssh/id_xmss
debug1: Trying private key: /root/.ssh/id_dsa
debug2: we did not send a packet, disable method
debug1: No more authentication methods to try.
root@10.31.45.108: Permission denied (publickey,gssapi-keyex,gssapi-with-mic,password).

TASK [Restore policy to DEFAULT] ***********************************************
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reboot.yml:29
Friday 29 November 2024  23:37:46 -0500 (0:10:08.249)       0:10:16.730 ******* 
included: fedora.linux_system_roles.crypto_policies for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Friday 29 November 2024  23:37:46 -0500 (0:00:00.052)       0:10:16.782 ******* 
included: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node3

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Friday 29 November 2024  23:37:46 -0500 (0:00:00.025)       0:10:16.808 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "__crypto_policies_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Friday 29 November 2024  23:37:46 -0500 (0:00:00.039)       0:10:16.848 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Friday 29 November 2024  23:37:46 -0500 (0:00:00.021)       0:10:16.869 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_ostree is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Friday 29 November 2024  23:37:46 -0500 (0:00:00.020)       0:10:16.890 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Friday 29 November 2024  23:37:46 -0500 (0:00:00.021)       0:10:16.911 ******* 
skipping: [managed-node3] => {
    "changed": false,
    "false_condition": "not __crypto_policies_is_transactional is defined",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Friday 29 November 2024  23:37:46 -0500 (0:00:00.020)       0:10:16.932 ******* 
skipping: [managed-node3] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=Fedora.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "Fedora.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=Fedora_39.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "Fedora_39.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => (item=Fedora_39.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "__vars_file is file",
    "item": "Fedora_39.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node3] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Friday 29 November 2024  23:37:46 -0500 (0:00:00.038)       0:10:16.971 ******* 
fatal: [managed-node3]: UNREACHABLE! => {
    "changed": false,
    "unreachable": true
}

MSG:

Failed to connect to the host via ssh: OpenSSH_9.3p1, OpenSSL 3.1.4 24 Oct 2023
debug1: Reading configuration data /root/.ssh/config
debug1: Reading configuration data /etc/ssh/ssh_config
debug1: Reading configuration data /etc/ssh/ssh_config.d/50-redhat.conf
debug2: checking match for 'final all' host 10.31.45.108 originally 10.31.45.108
debug2: match not found
debug1: Reading configuration data /etc/crypto-policies/back-ends/openssh.config
debug1: configuration requests final Match pass
debug2: resolve_canonicalize: hostname 10.31.45.108 is address
debug1: re-parsing configuration
debug1: Reading configuration data /root/.ssh/config
debug1: Reading configuration data /etc/ssh/ssh_config
debug1: Reading configuration data /etc/ssh/ssh_config.d/50-redhat.conf
debug2: checking match for 'final all' host 10.31.45.108 originally 10.31.45.108
debug2: match found
debug1: Reading configuration data /etc/crypto-policies/back-ends/openssh.config
debug1: auto-mux: Trying existing master
debug1: Control socket "/root/.ansible/cp/1a5736ba5c" does not exist
debug1: Connecting to 10.31.45.108 [10.31.45.108] port 22.
debug2: fd 3 setting O_NONBLOCK
debug1: fd 3 clearing O_NONBLOCK
debug1: Connection established.
debug1: identity file /root/.ssh/id_rsa type -1
debug1: identity file /root/.ssh/id_rsa-cert type -1
debug1: identity file /root/.ssh/id_ecdsa type -1
debug1: identity file /root/.ssh/id_ecdsa-cert type -1
debug1: identity file /root/.ssh/id_ecdsa_sk type -1
debug1: identity file /root/.ssh/id_ecdsa_sk-cert type -1
debug1: identity file /root/.ssh/id_ed25519 type -1
debug1: identity file /root/.ssh/id_ed25519-cert type -1
debug1: identity file /root/.ssh/id_ed25519_sk type -1
debug1: identity file /root/.ssh/id_ed25519_sk-cert type -1
debug1: identity file /root/.ssh/id_xmss type -1
debug1: identity file /root/.ssh/id_xmss-cert type -1
debug1: identity file /root/.ssh/id_dsa type -1
debug1: identity file /root/.ssh/id_dsa-cert type -1
debug1: Local version string SSH-2.0-OpenSSH_9.3
debug1: Remote protocol version 2.0, remote software version OpenSSH_9.3
debug1: compat_banner: match: OpenSSH_9.3 pat OpenSSH* compat 0x04000000
debug2: fd 3 setting O_NONBLOCK
debug1: Authenticating to 10.31.45.108:22 as 'root'
debug1: load_hostkeys: fopen /root/.ssh/known_hosts2: No such file or directory
debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts: No such file or directory
debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts2: No such file or directory
debug1: SSH2_MSG_KEXINIT sent
debug1: SSH2_MSG_KEXINIT received
debug2: local client KEXINIT proposal
debug2: KEX algorithms: curve25519-sha256,curve25519-sha256@libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group14-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,ext-info-c,kex-strict-c-v00@openssh.com
debug2: host key algorithms: ssh-ed25519-cert-v01@openssh.com,ecdsa-sha2-nistp256-cert-v01@openssh.com,ecdsa-sha2-nistp384-cert-v01@openssh.com,ecdsa-sha2-nistp521-cert-v01@openssh.com,sk-ssh-ed25519-cert-v01@openssh.com,sk-ecdsa-sha2-nistp256-cert-v01@openssh.com,rsa-sha2-512-cert-v01@openssh.com,rsa-sha2-256-cert-v01@openssh.com,ssh-ed25519,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,sk-ssh-ed25519@openssh.com,sk-ecdsa-sha2-nistp256@openssh.com,rsa-sha2-512,rsa-sha2-256
debug2: ciphers ctos: aes256-gcm@openssh.com,chacha20-poly1305@openssh.com,aes256-ctr,aes128-gcm@openssh.com,aes128-ctr
debug2: ciphers stoc: aes256-gcm@openssh.com,chacha20-poly1305@openssh.com,aes256-ctr,aes128-gcm@openssh.com,aes128-ctr
debug2: MACs ctos: hmac-sha2-256-etm@openssh.com,hmac-sha1-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512-etm@openssh.com,hmac-sha2-256,hmac-sha1,umac-128@openssh.com,hmac-sha2-512
debug2: MACs stoc: hmac-sha2-256-etm@openssh.com,hmac-sha1-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512-etm@openssh.com,hmac-sha2-256,hmac-sha1,umac-128@openssh.com,hmac-sha2-512
debug2: compression ctos: zlib@openssh.com,zlib,none
debug2: compression stoc: zlib@openssh.com,zlib,none
debug2: languages ctos: 
debug2: languages stoc: 
debug2: first_kex_follows 0 
debug2: reserved 0 
debug2: peer server KEXINIT proposal
debug2: KEX algorithms: curve25519-sha256,curve25519-sha256@libssh.org,ecdh-sha2-nistp256,ecdh-sha2-nistp384,ecdh-sha2-nistp521,diffie-hellman-group-exchange-sha256,diffie-hellman-group16-sha512,diffie-hellman-group18-sha512,kex-strict-s-v00@openssh.com
debug2: host key algorithms: rsa-sha2-512,rsa-sha2-256,ecdsa-sha2-nistp256,ssh-ed25519
debug2: ciphers ctos: aes256-gcm@openssh.com,chacha20-poly1305@openssh.com,aes256-ctr
debug2: ciphers stoc: aes256-gcm@openssh.com,chacha20-poly1305@openssh.com,aes256-ctr
debug2: MACs ctos: hmac-sha2-256-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512-etm@openssh.com,hmac-sha2-256,umac-128@openssh.com,hmac-sha2-512
debug2: MACs stoc: hmac-sha2-256-etm@openssh.com,umac-128-etm@openssh.com,hmac-sha2-512-etm@openssh.com,hmac-sha2-256,umac-128@openssh.com,hmac-sha2-512
debug2: compression ctos: none,zlib@openssh.com
debug2: compression stoc: none,zlib@openssh.com
debug2: languages ctos: 
debug2: languages stoc: 
debug2: first_kex_follows 0 
debug2: reserved 0 
debug1: kex: algorithm: curve25519-sha256
debug1: kex: host key algorithm: ssh-ed25519
debug1: kex: server->client cipher: aes256-gcm@openssh.com MAC: <implicit> compression: zlib@openssh.com
debug1: kex: client->server cipher: aes256-gcm@openssh.com MAC: <implicit> compression: zlib@openssh.com
debug1: kex: curve25519-sha256 need=32 dh_need=32
debug1: kex: curve25519-sha256 need=32 dh_need=32
debug1: expecting SSH2_MSG_KEX_ECDH_REPLY
debug1: SSH2_MSG_KEX_ECDH_REPLY received
debug1: Server host key: ssh-ed25519 SHA256:l5t6Tj0ZoWp6vUIzjQuc5rvLZ+3w+qSfIXPSijuiUnI
debug1: load_hostkeys: fopen /root/.ssh/known_hosts2: No such file or directory
debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts: No such file or directory
debug1: load_hostkeys: fopen /etc/ssh/ssh_known_hosts2: No such file or directory
debug1: Host '10.31.45.108' is known and matches the ED25519 host key.
debug1: Found key in /root/.ssh/known_hosts:3
debug1: ssh_packet_send2_wrapped: resetting send seqnr 3
debug2: ssh_set_newkeys: mode 1
debug1: rekey out after 4294967296 blocks
debug1: SSH2_MSG_NEWKEYS sent
debug1: expecting SSH2_MSG_NEWKEYS
debug1: ssh_packet_read_poll2: resetting read seqnr 3
debug1: SSH2_MSG_NEWKEYS received
debug2: ssh_set_newkeys: mode 0
debug1: rekey in after 4294967296 blocks
debug1: Will attempt key: /root/.ssh/id_rsa 
debug1: Will attempt key: /root/.ssh/id_ecdsa 
debug1: Will attempt key: /root/.ssh/id_ecdsa_sk 
debug1: Will attempt key: /root/.ssh/id_ed25519 
debug1: Will attempt key: /root/.ssh/id_ed25519_sk 
debug1: Will attempt key: /root/.ssh/id_xmss 
debug1: Will attempt key: /root/.ssh/id_dsa 
debug2: pubkey_prepare: done
debug1: SSH2_MSG_EXT_INFO received
debug1: kex_input_ext_info: server-sig-algs=<ssh-ed25519,sk-ssh-ed25519@openssh.com,ecdsa-sha2-nistp256,ecdsa-sha2-nistp384,ecdsa-sha2-nistp521,sk-ecdsa-sha2-nistp256@openssh.com,webauthn-sk-ecdsa-sha2-nistp256@openssh.com,ssh-dss,ssh-rsa,rsa-sha2-256,rsa-sha2-512>
debug1: kex_input_ext_info: publickey-hostbound@openssh.com=<0>
debug2: service_accept: ssh-userauth
debug1: SSH2_MSG_SERVICE_ACCEPT received
debug1: Authentications that can continue: publickey,gssapi-keyex,gssapi-with-mic,password
debug1: Next authentication method: gssapi-with-mic
debug1: No credentials were supplied, or the credentials were unavailable or inaccessible
No Kerberos credentials available (default cache: KCM:)


debug1: No credentials were supplied, or the credentials were unavailable or inaccessible
No Kerberos credentials available (default cache: KCM:)


debug2: we did not send a packet, disable method
debug1: Next authentication method: publickey
debug1: Trying private key: /root/.ssh/id_rsa
debug2: we sent a publickey packet, wait for reply
debug1: Authentications that can continue: publickey,gssapi-keyex,gssapi-with-mic,password
debug1: Trying private key: /root/.ssh/id_ecdsa
debug1: Trying private key: /root/.ssh/id_ecdsa_sk
debug1: Trying private key: /root/.ssh/id_ed25519
debug1: Trying private key: /root/.ssh/id_ed25519_sk
debug1: Trying private key: /root/.ssh/id_xmss
debug1: Trying private key: /root/.ssh/id_dsa
debug2: we did not send a packet, disable method
debug1: No more authentication methods to try.
root@10.31.45.108: Permission denied (publickey,gssapi-keyex,gssapi-with-mic,password).

PLAY RECAP *********************************************************************
managed-node3              : ok=23   changed=1    unreachable=1    failed=1    skipped=11   rescued=0    ignored=0   

Friday 29 November 2024  23:37:47 -0500 (0:00:00.131)       0:10:17.102 ******* 
=============================================================================== 
fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes - 608.25s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:4 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 2.02s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
Gathering Facts --------------------------------------------------------- 1.38s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reboot.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.82s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Check if system is ostree --- 0.79s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10 
fedora.linux_system_roles.crypto_policies : Update crypto policy if needed --- 0.59s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75 
fedora.linux_system_roles.crypto_policies : Find base policies files ---- 0.52s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.47s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin --- 0.45s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22 
fedora.linux_system_roles.crypto_policies : Find subpolicy files -------- 0.45s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54 
Ensure we can set crypto policy including reboot of the system ---------- 0.16s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reboot.yml:11 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 0.13s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
fedora.linux_system_roles.crypto_policies : Set available base policies fact --- 0.10s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47 
fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role --- 0.07s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2 
fedora.linux_system_roles.crypto_policies : Set available subpolicies fact --- 0.07s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62 
fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes --- 0.06s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18 
fedora.linux_system_roles.crypto_policies : Reboot transactional update systems --- 0.06s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23 
fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set --- 0.06s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28 
fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree --- 0.05s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15 
Restore policy to DEFAULT ----------------------------------------------- 0.05s
/tmp/collections-bRn/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reboot.yml:29