ansible-playbook [core 2.17.6]
  config file = None
  configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
  ansible python module location = /usr/local/lib/python3.12/site-packages/ansible
  ansible collection location = /tmp/collections-bHW
  executable location = /usr/local/bin/ansible-playbook
  python version = 3.12.6 (main, Sep  9 2024, 00:00:00) [GCC 11.5.0 20240719 (Red Hat 11.5.0-2)] (/usr/bin/python3.12)
  jinja version = 3.1.4
  libyaml = True
No config file found; using defaults
running playbook inside collection fedora.linux_system_roles
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.profile_tasks to ansible.posix.profile_tasks
Skipping callback 'default', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.

PLAYBOOK: tests_ansible.yml ****************************************************
1 plays in /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml

PLAY [Ensure that the roles runs with default parameters] **********************

TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:2
Saturday 16 November 2024  00:25:16 -0500 (0:00:00.008)       0:00:00.008 ***** 
[WARNING]: Platform linux on host managed-node1 is using the discovered Python
interpreter at /usr/bin/python3.9, but future installation of another Python
interpreter could change the meaning of that path. See
https://docs.ansible.com/ansible-
core/2.17/reference_appendices/interpreter_discovery.html for more information.
ok: [managed-node1]

TASK [fedora.linux_system_roles.firewall : Setup firewalld] ********************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:2
Saturday 16 November 2024  00:25:20 -0500 (0:00:03.524)       0:00:03.533 ***** 
included: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml for managed-node1

TASK [fedora.linux_system_roles.firewall : Ensure ansible_facts used by role] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:2
Saturday 16 November 2024  00:25:20 -0500 (0:00:00.036)       0:00:03.569 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Check if system is ostree] **********
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:10
Saturday 16 November 2024  00:25:20 -0500 (0:00:00.057)       0:00:03.626 ***** 
ok: [managed-node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.firewall : Set flag to indicate system is ostree] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:15
Saturday 16 November 2024  00:25:21 -0500 (0:00:00.511)       0:00:04.138 ***** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_ostree": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:22
Saturday 16 November 2024  00:25:21 -0500 (0:00:00.033)       0:00:04.171 ***** 
ok: [managed-node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.firewall : Set flag if transactional-update exists] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:27
Saturday 16 November 2024  00:25:21 -0500 (0:00:00.361)       0:00:04.532 ***** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_transactional": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Install firewalld] ******************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:31
Saturday 16 November 2024  00:25:21 -0500 (0:00:00.035)       0:00:04.568 ***** 
ok: [managed-node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: firewalld

TASK [fedora.linux_system_roles.firewall : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:43
Saturday 16 November 2024  00:25:38 -0500 (0:00:16.751)       0:00:21.319 ***** 
skipping: [managed-node1] => {
    "false_condition": "__firewall_is_transactional | d(false)"
}

TASK [fedora.linux_system_roles.firewall : Reboot transactional update systems] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:48
Saturday 16 November 2024  00:25:38 -0500 (0:00:00.033)       0:00:21.353 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Fail if reboot is needed and not set] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:53
Saturday 16 November 2024  00:25:38 -0500 (0:00:00.035)       0:00:21.388 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Collect service facts] **************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:5
Saturday 16 November 2024  00:25:38 -0500 (0:00:00.033)       0:00:21.422 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Attempt to stop and disable conflicting services] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:9
Saturday 16 November 2024  00:25:38 -0500 (0:00:00.033)       0:00:21.455 ***** 
skipping: [managed-node1] => (item=nftables)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": "nftables",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item=iptables)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": "iptables",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item=ufw)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": "ufw",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.firewall : Unmask firewalld service] ***********
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:22
Saturday 16 November 2024  00:25:38 -0500 (0:00:00.040)       0:00:21.496 ***** 
ok: [managed-node1] => {
    "changed": false,
    "name": "firewalld",
    "status": {
        "AccessSELinuxContext": "system_u:object_r:firewalld_unit_file_t:s0",
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "basic.target dbus.socket polkit.service system.slice dbus-broker.service sysinit.target",
        "AllowIsolate": "no",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "shutdown.target network-pre.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "yes",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf cap_checkpoint_restore",
        "CleanResult": "success",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "iptables.service ebtables.service ipset.service shutdown.target ip6tables.service",
        "ControlGroupId": "0",
        "ControlPID": "0",
        "CoredumpFilter": "0x33",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "\"man:firewalld(1)\"",
        "DynamicUser": "no",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecReloadEx": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; flags= ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStartEx": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; flags= ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExitType": "main",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FinalKillSignal": "9",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOReadBytes": "18446744073709551615",
        "IOReadOperations": "18446744073709551615",
        "IOSchedulingClass": "2",
        "IOSchedulingPriority": "4",
        "IOWeight": "[not set]",
        "IOWriteBytes": "18446744073709551615",
        "IOWriteOperations": "18446744073709551615",
        "IPAccounting": "no",
        "IPEgressBytes": "[no data]",
        "IPEgressPackets": "[no data]",
        "IPIngressBytes": "[no data]",
        "IPIngressPackets": "[no data]",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "infinity",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "8388608",
        "LimitMEMLOCKSoft": "8388608",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "524288",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "13956",
        "LimitNPROCSoft": "13956",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "13956",
        "LimitSIGPENDINGSoft": "13956",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "ManagedOOMMemoryPressure": "auto",
        "ManagedOOMMemoryPressureLimit": "0",
        "ManagedOOMPreference": "none",
        "ManagedOOMSwap": "auto",
        "MemoryAccounting": "yes",
        "MemoryAvailable": "infinity",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMPolicy": "stop",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "OnSuccessJobMode": "fail",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateIPC": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProcSubset": "all",
        "ProtectClock": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectHostname": "no",
        "ProtectKernelLogs": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectProc": "default",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "ReloadResult": "success",
        "ReloadSignal": "1",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "system.slice sysinit.target dbus.socket",
        "Restart": "no",
        "RestartKillSignal": "15",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "RuntimeRandomizedExtraUSec": "0",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "2147483646",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22329",
        "TimeoutAbortUSec": "1min 30s",
        "TimeoutCleanUSec": "infinity",
        "TimeoutStartFailureMode": "terminate",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopFailureMode": "terminate",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogSignal": "6",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "infinity"
    }
}

TASK [fedora.linux_system_roles.firewall : Enable and start firewalld service] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:28
Saturday 16 November 2024  00:25:39 -0500 (0:00:00.688)       0:00:22.185 ***** 
changed: [managed-node1] => {
    "changed": true,
    "enabled": true,
    "name": "firewalld",
    "state": "started",
    "status": {
        "AccessSELinuxContext": "system_u:object_r:firewalld_unit_file_t:s0",
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "sysinit.target basic.target dbus-broker.service dbus.socket system.slice polkit.service",
        "AllowIsolate": "no",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "shutdown.target network-pre.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "yes",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf cap_checkpoint_restore",
        "CleanResult": "success",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "iptables.service ipset.service ebtables.service shutdown.target ip6tables.service",
        "ControlGroupId": "0",
        "ControlPID": "0",
        "CoredumpFilter": "0x33",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "\"man:firewalld(1)\"",
        "DynamicUser": "no",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecReloadEx": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; flags= ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStartEx": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; flags= ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExitType": "main",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FinalKillSignal": "9",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOReadBytes": "18446744073709551615",
        "IOReadOperations": "18446744073709551615",
        "IOSchedulingClass": "2",
        "IOSchedulingPriority": "4",
        "IOWeight": "[not set]",
        "IOWriteBytes": "18446744073709551615",
        "IOWriteOperations": "18446744073709551615",
        "IPAccounting": "no",
        "IPEgressBytes": "[no data]",
        "IPEgressPackets": "[no data]",
        "IPIngressBytes": "[no data]",
        "IPIngressPackets": "[no data]",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "infinity",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "8388608",
        "LimitMEMLOCKSoft": "8388608",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "524288",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "13956",
        "LimitNPROCSoft": "13956",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "13956",
        "LimitSIGPENDINGSoft": "13956",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "ManagedOOMMemoryPressure": "auto",
        "ManagedOOMMemoryPressureLimit": "0",
        "ManagedOOMPreference": "none",
        "ManagedOOMSwap": "auto",
        "MemoryAccounting": "yes",
        "MemoryAvailable": "infinity",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMPolicy": "stop",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "OnSuccessJobMode": "fail",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateIPC": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProcSubset": "all",
        "ProtectClock": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectHostname": "no",
        "ProtectKernelLogs": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectProc": "default",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "ReloadResult": "success",
        "ReloadSignal": "1",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "sysinit.target system.slice dbus.socket",
        "Restart": "no",
        "RestartKillSignal": "15",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "RuntimeRandomizedExtraUSec": "0",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "2147483646",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22329",
        "TimeoutAbortUSec": "1min 30s",
        "TimeoutCleanUSec": "infinity",
        "TimeoutStartFailureMode": "terminate",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopFailureMode": "terminate",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogSignal": "6",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "infinity"
    }
}

TASK [fedora.linux_system_roles.firewall : Check if previous replaced is defined] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:34
Saturday 16 November 2024  00:25:41 -0500 (0:00:02.253)       0:00:24.438 ***** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_previous_replaced": false,
        "__firewall_python_cmd": "/usr/bin/python3.9",
        "__firewall_report_changed": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Get config files, checksums before and remove] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:43
Saturday 16 November 2024  00:25:41 -0500 (0:00:00.041)       0:00:24.479 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_previous_replaced | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Tell firewall module it is able to report changed] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:55
Saturday 16 November 2024  00:25:41 -0500 (0:00:00.037)       0:00:24.516 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_previous_replaced | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Configure firewall] *****************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:71
Saturday 16 November 2024  00:25:41 -0500 (0:00:00.041)       0:00:24.558 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "skipped_reason": "No items in the list"
}

TASK [fedora.linux_system_roles.firewall : Gather firewall config information] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:120
Saturday 16 November 2024  00:25:41 -0500 (0:00:00.060)       0:00:24.618 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "skipped_reason": "No items in the list"
}

TASK [fedora.linux_system_roles.firewall : Update firewalld_config fact] *******
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:130
Saturday 16 November 2024  00:25:41 -0500 (0:00:00.059)       0:00:24.678 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "firewall | length == 1",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Gather firewall config if no arguments] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:139
Saturday 16 November 2024  00:25:41 -0500 (0:00:00.053)       0:00:24.731 ***** 
ok: [managed-node1] => {
    "changed": false,
    "firewall_config": {
        "custom": {
            "zones": {
                "public": {
                    "description": "For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted.",
                    "forward": true,
                    "forward_ports": [],
                    "icmp_block_inversion": false,
                    "icmp_blocks": [],
                    "interfaces": [],
                    "masquerade": false,
                    "ports": [],
                    "protocols": [],
                    "rules_str": [],
                    "services": [
                        "ssh",
                        "dhcpv6-client",
                        "cockpit"
                    ],
                    "short": "Public",
                    "source_ports": [],
                    "sources": [],
                    "target": "default",
                    "version": ""
                }
            }
        },
        "default": {
            "helpers": [
                "Q.931",
                "RAS",
                "amanda",
                "ftp",
                "h323",
                "irc",
                "netbios-ns",
                "pptp",
                "proto-gre",
                "sane",
                "sip",
                "snmp",
                "tftp"
            ],
            "icmptypes": [
                "mld-listener-report",
                "mld2-listener-report",
                "neighbour-advertisement",
                "neighbour-solicitation",
                "network-prohibited",
                "network-redirect",
                "network-unknown",
                "network-unreachable",
                "no-route",
                "packet-too-big",
                "parameter-problem",
                "port-unreachable",
                "precedence-cutoff",
                "protocol-unreachable",
                "redirect",
                "reject-route",
                "required-option-missing",
                "router-advertisement",
                "router-solicitation",
                "source-quench",
                "source-route-failed",
                "time-exceeded",
                "timestamp-reply",
                "timestamp-request",
                "tos-host-redirect",
                "tos-host-unreachable",
                "tos-network-redirect",
                "tos-network-unreachable",
                "ttl-zero-during-reassembly",
                "ttl-zero-during-transit",
                "unknown-header-type",
                "unknown-option",
                "address-unreachable",
                "bad-header",
                "beyond-scope",
                "communication-prohibited",
                "destination-unreachable",
                "echo-reply",
                "echo-request",
                "failed-policy",
                "fragmentation-needed",
                "host-precedence-violation",
                "host-prohibited",
                "host-redirect",
                "host-unknown",
                "host-unreachable",
                "ip-header-bad",
                "mld-listener-done",
                "mld-listener-query"
            ],
            "policies": [
                "allow-host-ipv6"
            ],
            "services": [
                "RH-Satellite-6",
                "afp",
                "amanda-client",
                "amanda-k5-client",
                "amqp",
                "amqps",
                "apcupsd",
                "audit",
                "ausweisapp2",
                "bacula-client",
                "bacula",
                "bareos-director",
                "bareos-filedaemon",
                "bareos-storage",
                "bb",
                "bgp",
                "bitcoin-rpc",
                "bitcoin-testnet-rpc",
                "bitcoin-testnet",
                "bitcoin",
                "bittorrent-lsd",
                "ceph-exporter",
                "ceph-mon",
                "ceph",
                "cfengine",
                "checkmk-agent",
                "cockpit",
                "collectd",
                "condor-collector",
                "cratedb",
                "ctdb",
                "dds-multicast",
                "dds-unicast",
                "dds",
                "dhcp",
                "dhcpv6-client",
                "dhcpv6",
                "distcc",
                "dns-over-tls",
                "dns",
                "docker-registry",
                "docker-swarm",
                "dropbox-lansync",
                "elasticsearch",
                "etcd-client",
                "etcd-server",
                "finger",
                "foreman-proxy",
                "foreman",
                "freeipa-4",
                "freeipa-ldap",
                "freeipa-ldaps",
                "freeipa-replication",
                "freeipa-trust",
                "ftp",
                "galera",
                "ganglia-client",
                "ganglia-master",
                "git",
                "gpsd",
                "grafana",
                "gre",
                "high-availability",
                "http",
                "http3",
                "https",
                "ident",
                "imap",
                "imaps",
                "ipfs",
                "ipp-client",
                "ipp",
                "ipsec",
                "irc",
                "ircs",
                "iscsi-target",
                "isns",
                "jenkins",
                "kadmin",
                "kdeconnect",
                "kerberos",
                "kibana",
                "klogin",
                "kpasswd",
                "kprop",
                "kshell",
                "kube-api",
                "kube-apiserver",
                "kube-control-plane-secure",
                "kube-control-plane",
                "kube-controller-manager-secure",
                "kube-controller-manager",
                "kube-nodeport-services",
                "kube-scheduler-secure",
                "kube-scheduler",
                "kube-worker",
                "kubelet-readonly",
                "kubelet-worker",
                "kubelet",
                "ldap",
                "ldaps",
                "libvirt-tls",
                "libvirt",
                "lightning-network",
                "llmnr-client",
                "llmnr-tcp",
                "llmnr-udp",
                "llmnr",
                "managesieve",
                "matrix",
                "mdns",
                "memcache",
                "minidlna",
                "mongodb",
                "mosh",
                "mountd",
                "mqtt-tls",
                "mqtt",
                "ms-wbt",
                "mssql",
                "murmur",
                "mysql",
                "nbd",
                "nebula",
                "netbios-ns",
                "netdata-dashboard",
                "nfs",
                "nfs3",
                "nmea-0183",
                "nrpe",
                "ntp",
                "nut",
                "opentelemetry",
                "openvpn",
                "ovirt-imageio",
                "ovirt-storageconsole",
                "ovirt-vmconsole",
                "plex",
                "pmcd",
                "pmproxy",
                "pmwebapi",
                "pmwebapis",
                "pop3",
                "pop3s",
                "postgresql",
                "privoxy",
                "prometheus-node-exporter",
                "prometheus",
                "proxy-dhcp",
                "ps2link",
                "ps3netsrv",
                "ptp",
                "pulseaudio",
                "puppetmaster",
                "quassel",
                "radius",
                "rdp",
                "redis-sentinel",
                "redis",
                "rpc-bind",
                "rquotad",
                "rsh",
                "rsyncd",
                "rtsp",
                "salt-master",
                "samba-client",
                "samba-dc",
                "samba",
                "sane",
                "sip",
                "sips",
                "slp",
                "smtp-submission",
                "smtp",
                "smtps",
                "snmp",
                "snmptls-trap",
                "snmptls",
                "snmptrap",
                "spideroak-lansync",
                "spotify-sync",
                "squid",
                "ssdp",
                "ssh",
                "steam-streaming",
                "svdrp",
                "svn",
                "syncthing-gui",
                "syncthing-relay",
                "syncthing",
                "synergy",
                "syslog-tls",
                "syslog",
                "telnet",
                "tentacle",
                "tftp",
                "tile38",
                "tinc",
                "tor-socks",
                "transmission-client",
                "upnp-client",
                "vdsm",
                "vnc-server",
                "warpinator",
                "wbem-http",
                "wbem-https",
                "wireguard",
                "ws-discovery-client",
                "ws-discovery-tcp",
                "ws-discovery-udp",
                "ws-discovery",
                "wsman",
                "wsmans",
                "xdmcp",
                "xmpp-bosh",
                "xmpp-client",
                "xmpp-local",
                "xmpp-server",
                "zabbix-agent",
                "zabbix-server",
                "zerotier",
                "RH-Satellite-6-capsule"
            ],
            "zones": [
                "nm-shared",
                "block",
                "dmz",
                "drop",
                "external",
                "home",
                "internal",
                "public",
                "trusted",
                "work"
            ]
        },
        "default_zone": "public"
    }
}

TASK [fedora.linux_system_roles.firewall : Update firewalld_config fact] *******
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:144
Saturday 16 November 2024  00:25:43 -0500 (0:00:01.450)       0:00:26.182 ***** 
ok: [managed-node1] => {
    "ansible_facts": {
        "firewall_config": {
            "custom": {
                "zones": {
                    "public": {
                        "description": "For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted.",
                        "forward": true,
                        "forward_ports": [],
                        "icmp_block_inversion": false,
                        "icmp_blocks": [],
                        "interfaces": [],
                        "masquerade": false,
                        "ports": [],
                        "protocols": [],
                        "rules_str": [],
                        "services": [
                            "ssh",
                            "dhcpv6-client",
                            "cockpit"
                        ],
                        "short": "Public",
                        "source_ports": [],
                        "sources": [],
                        "target": "default",
                        "version": ""
                    }
                }
            },
            "default": {
                "helpers": [
                    "Q.931",
                    "RAS",
                    "amanda",
                    "ftp",
                    "h323",
                    "irc",
                    "netbios-ns",
                    "pptp",
                    "proto-gre",
                    "sane",
                    "sip",
                    "snmp",
                    "tftp"
                ],
                "icmptypes": [
                    "mld-listener-report",
                    "mld2-listener-report",
                    "neighbour-advertisement",
                    "neighbour-solicitation",
                    "network-prohibited",
                    "network-redirect",
                    "network-unknown",
                    "network-unreachable",
                    "no-route",
                    "packet-too-big",
                    "parameter-problem",
                    "port-unreachable",
                    "precedence-cutoff",
                    "protocol-unreachable",
                    "redirect",
                    "reject-route",
                    "required-option-missing",
                    "router-advertisement",
                    "router-solicitation",
                    "source-quench",
                    "source-route-failed",
                    "time-exceeded",
                    "timestamp-reply",
                    "timestamp-request",
                    "tos-host-redirect",
                    "tos-host-unreachable",
                    "tos-network-redirect",
                    "tos-network-unreachable",
                    "ttl-zero-during-reassembly",
                    "ttl-zero-during-transit",
                    "unknown-header-type",
                    "unknown-option",
                    "address-unreachable",
                    "bad-header",
                    "beyond-scope",
                    "communication-prohibited",
                    "destination-unreachable",
                    "echo-reply",
                    "echo-request",
                    "failed-policy",
                    "fragmentation-needed",
                    "host-precedence-violation",
                    "host-prohibited",
                    "host-redirect",
                    "host-unknown",
                    "host-unreachable",
                    "ip-header-bad",
                    "mld-listener-done",
                    "mld-listener-query"
                ],
                "policies": [
                    "allow-host-ipv6"
                ],
                "services": [
                    "RH-Satellite-6",
                    "afp",
                    "amanda-client",
                    "amanda-k5-client",
                    "amqp",
                    "amqps",
                    "apcupsd",
                    "audit",
                    "ausweisapp2",
                    "bacula-client",
                    "bacula",
                    "bareos-director",
                    "bareos-filedaemon",
                    "bareos-storage",
                    "bb",
                    "bgp",
                    "bitcoin-rpc",
                    "bitcoin-testnet-rpc",
                    "bitcoin-testnet",
                    "bitcoin",
                    "bittorrent-lsd",
                    "ceph-exporter",
                    "ceph-mon",
                    "ceph",
                    "cfengine",
                    "checkmk-agent",
                    "cockpit",
                    "collectd",
                    "condor-collector",
                    "cratedb",
                    "ctdb",
                    "dds-multicast",
                    "dds-unicast",
                    "dds",
                    "dhcp",
                    "dhcpv6-client",
                    "dhcpv6",
                    "distcc",
                    "dns-over-tls",
                    "dns",
                    "docker-registry",
                    "docker-swarm",
                    "dropbox-lansync",
                    "elasticsearch",
                    "etcd-client",
                    "etcd-server",
                    "finger",
                    "foreman-proxy",
                    "foreman",
                    "freeipa-4",
                    "freeipa-ldap",
                    "freeipa-ldaps",
                    "freeipa-replication",
                    "freeipa-trust",
                    "ftp",
                    "galera",
                    "ganglia-client",
                    "ganglia-master",
                    "git",
                    "gpsd",
                    "grafana",
                    "gre",
                    "high-availability",
                    "http",
                    "http3",
                    "https",
                    "ident",
                    "imap",
                    "imaps",
                    "ipfs",
                    "ipp-client",
                    "ipp",
                    "ipsec",
                    "irc",
                    "ircs",
                    "iscsi-target",
                    "isns",
                    "jenkins",
                    "kadmin",
                    "kdeconnect",
                    "kerberos",
                    "kibana",
                    "klogin",
                    "kpasswd",
                    "kprop",
                    "kshell",
                    "kube-api",
                    "kube-apiserver",
                    "kube-control-plane-secure",
                    "kube-control-plane",
                    "kube-controller-manager-secure",
                    "kube-controller-manager",
                    "kube-nodeport-services",
                    "kube-scheduler-secure",
                    "kube-scheduler",
                    "kube-worker",
                    "kubelet-readonly",
                    "kubelet-worker",
                    "kubelet",
                    "ldap",
                    "ldaps",
                    "libvirt-tls",
                    "libvirt",
                    "lightning-network",
                    "llmnr-client",
                    "llmnr-tcp",
                    "llmnr-udp",
                    "llmnr",
                    "managesieve",
                    "matrix",
                    "mdns",
                    "memcache",
                    "minidlna",
                    "mongodb",
                    "mosh",
                    "mountd",
                    "mqtt-tls",
                    "mqtt",
                    "ms-wbt",
                    "mssql",
                    "murmur",
                    "mysql",
                    "nbd",
                    "nebula",
                    "netbios-ns",
                    "netdata-dashboard",
                    "nfs",
                    "nfs3",
                    "nmea-0183",
                    "nrpe",
                    "ntp",
                    "nut",
                    "opentelemetry",
                    "openvpn",
                    "ovirt-imageio",
                    "ovirt-storageconsole",
                    "ovirt-vmconsole",
                    "plex",
                    "pmcd",
                    "pmproxy",
                    "pmwebapi",
                    "pmwebapis",
                    "pop3",
                    "pop3s",
                    "postgresql",
                    "privoxy",
                    "prometheus-node-exporter",
                    "prometheus",
                    "proxy-dhcp",
                    "ps2link",
                    "ps3netsrv",
                    "ptp",
                    "pulseaudio",
                    "puppetmaster",
                    "quassel",
                    "radius",
                    "rdp",
                    "redis-sentinel",
                    "redis",
                    "rpc-bind",
                    "rquotad",
                    "rsh",
                    "rsyncd",
                    "rtsp",
                    "salt-master",
                    "samba-client",
                    "samba-dc",
                    "samba",
                    "sane",
                    "sip",
                    "sips",
                    "slp",
                    "smtp-submission",
                    "smtp",
                    "smtps",
                    "snmp",
                    "snmptls-trap",
                    "snmptls",
                    "snmptrap",
                    "spideroak-lansync",
                    "spotify-sync",
                    "squid",
                    "ssdp",
                    "ssh",
                    "steam-streaming",
                    "svdrp",
                    "svn",
                    "syncthing-gui",
                    "syncthing-relay",
                    "syncthing",
                    "synergy",
                    "syslog-tls",
                    "syslog",
                    "telnet",
                    "tentacle",
                    "tftp",
                    "tile38",
                    "tinc",
                    "tor-socks",
                    "transmission-client",
                    "upnp-client",
                    "vdsm",
                    "vnc-server",
                    "warpinator",
                    "wbem-http",
                    "wbem-https",
                    "wireguard",
                    "ws-discovery-client",
                    "ws-discovery-tcp",
                    "ws-discovery-udp",
                    "ws-discovery",
                    "wsman",
                    "wsmans",
                    "xdmcp",
                    "xmpp-bosh",
                    "xmpp-client",
                    "xmpp-local",
                    "xmpp-server",
                    "zabbix-agent",
                    "zabbix-server",
                    "zerotier",
                    "RH-Satellite-6-capsule"
                ],
                "zones": [
                    "nm-shared",
                    "block",
                    "dmz",
                    "drop",
                    "external",
                    "home",
                    "internal",
                    "public",
                    "trusted",
                    "work"
                ]
            },
            "default_zone": "public"
        }
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Get config files, checksums after] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:153
Saturday 16 November 2024  00:25:43 -0500 (0:00:00.044)       0:00:26.226 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_previous_replaced | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Calculate what has changed] *********
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:163
Saturday 16 November 2024  00:25:43 -0500 (0:00:00.032)       0:00:26.258 ***** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_previous_replaced | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Show diffs] *************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:169
Saturday 16 November 2024  00:25:43 -0500 (0:00:00.035)       0:00:26.294 ***** 
skipping: [managed-node1] => {
    "false_condition": "__firewall_previous_replaced | bool"
}

TASK [Get default zone] ********************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:11
Saturday 16 November 2024  00:25:43 -0500 (0:00:00.054)       0:00:26.349 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--get-default-zone"
    ],
    "delta": "0:00:00.207822",
    "end": "2024-11-16 00:25:43.882618",
    "rc": 0,
    "start": "2024-11-16 00:25:43.674796"
}

STDOUT:

public

TASK [Remove custom zone] ******************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:21
Saturday 16 November 2024  00:25:43 -0500 (0:00:00.696)       0:00:27.045 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--delete-zone=custom"
    ],
    "delta": "0:00:00.409109",
    "end": "2024-11-16 00:25:44.649407",
    "failed_when_result": false,
    "rc": 112,
    "start": "2024-11-16 00:25:44.240298"
}

STDERR:

Error: INVALID_ZONE: custom


MSG:

non-zero return code

TASK [Reset internal zone to defaults] *****************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:27
Saturday 16 November 2024  00:25:44 -0500 (0:00:00.769)       0:00:27.815 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=internal"
    ],
    "delta": "0:00:00.321829",
    "end": "2024-11-16 00:25:45.329127",
    "failed_when_result": false,
    "rc": 22,
    "start": "2024-11-16 00:25:45.007298"
}

STDERR:

Error: NO_DEFAULTS: internal


MSG:

non-zero return code

TASK [Reset trusted zone to defaults] ******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:33
Saturday 16 November 2024  00:25:45 -0500 (0:00:00.679)       0:00:28.494 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=trusted"
    ],
    "delta": "0:00:00.213082",
    "end": "2024-11-16 00:25:45.889677",
    "failed_when_result": false,
    "rc": 22,
    "start": "2024-11-16 00:25:45.676595"
}

STDERR:

Error: NO_DEFAULTS: trusted


MSG:

non-zero return code

TASK [Reset dmz zone to defaults] **********************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:39
Saturday 16 November 2024  00:25:45 -0500 (0:00:00.566)       0:00:29.061 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=dmz"
    ],
    "delta": "0:00:00.209805",
    "end": "2024-11-16 00:25:46.460624",
    "failed_when_result": false,
    "rc": 22,
    "start": "2024-11-16 00:25:46.250819"
}

STDERR:

Error: NO_DEFAULTS: dmz


MSG:

non-zero return code

TASK [Reset drop zone to defaults] *********************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:45
Saturday 16 November 2024  00:25:46 -0500 (0:00:00.564)       0:00:29.625 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=drop"
    ],
    "delta": "0:00:00.211146",
    "end": "2024-11-16 00:25:47.022308",
    "failed_when_result": false,
    "rc": 22,
    "start": "2024-11-16 00:25:46.811162"
}

STDERR:

Error: NO_DEFAULTS: drop


MSG:

non-zero return code

TASK [Reset public zone to defaults] *******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:51
Saturday 16 November 2024  00:25:47 -0500 (0:00:00.571)       0:00:30.197 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.218554",
    "end": "2024-11-16 00:25:47.589773",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:25:47.371219"
}

STDOUT:

success

TASK [Reset default zone to defaults] ******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:57
Saturday 16 November 2024  00:25:47 -0500 (0:00:00.559)       0:00:30.756 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": "zone=$(firewall-cmd --get-default-zone)\nfirewall-cmd --permanent --load-zone-defaults=$zone\n",
    "delta": "0:00:00.414212",
    "end": "2024-11-16 00:25:48.338745",
    "failed_when_result": false,
    "rc": 22,
    "start": "2024-11-16 00:25:47.924533"
}

STDERR:

Error: NO_DEFAULTS: public


MSG:

non-zero return code

TASK [Create custom zone] ******************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:66
Saturday 16 November 2024  00:25:48 -0500 (0:00:00.757)       0:00:31.514 ***** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--new-zone=custom"
    ],
    "delta": "0:00:00.220474",
    "end": "2024-11-16 00:25:48.923494",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:25:48.703020"
}

STDOUT:

success

TASK [Reload firewalld] ********************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:72
Saturday 16 November 2024  00:25:48 -0500 (0:00:00.574)       0:00:32.089 ***** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--reload"
    ],
    "delta": "0:00:00.425385",
    "end": "2024-11-16 00:25:49.693188",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:25:49.267803"
}

STDOUT:

success

TASK [Permit traffic in default zone for https service] ************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:80
Saturday 16 November 2024  00:25:49 -0500 (0:00:00.787)       0:00:32.876 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Permit traffic in default zone for https service, again] *****************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:88
Saturday 16 November 2024  00:25:50 -0500 (0:00:00.686)       0:00:33.562 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Permit traffic in default zone on port 8081/tcp] *************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:96
Saturday 16 November 2024  00:25:50 -0500 (0:00:00.472)       0:00:34.035 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Permit traffic in default zone on port 8081/tcp, again] ******************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:104
Saturday 16 November 2024  00:25:51 -0500 (0:00:00.508)       0:00:34.543 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow port 161-162/udp in permanent default zone] ************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:112
Saturday 16 November 2024  00:25:51 -0500 (0:00:00.473)       0:00:35.016 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow port 161-162/udp in permanent default zone, again] *****************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:120
Saturday 16 November 2024  00:25:52 -0500 (0:00:00.487)       0:00:35.504 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Do not permit traffic in default zone on port 8081/tcp] ******************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:128
Saturday 16 November 2024  00:25:52 -0500 (0:00:00.473)       0:00:35.977 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Do not permit traffic in default zone on port 8081/tcp, again] ***********
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:136
Saturday 16 November 2024  00:25:53 -0500 (0:00:00.499)       0:00:36.477 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow service http in permanent dmz zone] ********************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:144
Saturday 16 November 2024  00:25:53 -0500 (0:00:00.483)       0:00:36.960 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow service http in permanent dmz zone, again] *************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:153
Saturday 16 November 2024  00:25:54 -0500 (0:00:00.502)       0:00:37.462 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow service ftp with limitation using rich rule in permanent default zone] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:162
Saturday 16 November 2024  00:25:54 -0500 (0:00:00.505)       0:00:37.968 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow service ftp with limitation using rich rule in permanent default zone, again] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:170
Saturday 16 November 2024  00:25:55 -0500 (0:00:00.490)       0:00:38.458 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow source 192.0.2.0/24 in internal zone] ******************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:178
Saturday 16 November 2024  00:25:55 -0500 (0:00:00.500)       0:00:38.958 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow source 192.0.2.0/24 in internal zone, again] ***********************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:187
Saturday 16 November 2024  00:25:56 -0500 (0:00:00.497)       0:00:39.456 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow nm interface eth0 in permanent trusted zone] ***********************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:196
Saturday 16 November 2024  00:25:56 -0500 (0:00:00.491)       0:00:39.947 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow nm interface eth0 in permanent trusted zone, again] ****************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:205
Saturday 16 November 2024  00:25:57 -0500 (0:00:00.551)       0:00:40.499 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable nm interface eth0 in permanent trusted zone] *********************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:214
Saturday 16 November 2024  00:25:57 -0500 (0:00:00.484)       0:00:40.984 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Disable nm interface eth0 in permanent trusted zone, again] **************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:223
Saturday 16 November 2024  00:25:58 -0500 (0:00:00.528)       0:00:41.512 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow interface eth2 in permanent trusted zone] **************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:232
Saturday 16 November 2024  00:25:58 -0500 (0:00:00.541)       0:00:42.054 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow interface eth2 in permanent trusted zone, again] *******************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:241
Saturday 16 November 2024  00:25:59 -0500 (0:00:00.502)       0:00:42.557 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow masquerading in permament dmz zone] ********************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:250
Saturday 16 November 2024  00:25:59 -0500 (0:00:00.506)       0:00:43.064 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow masquerading in permament dmz zone, again] *************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:258
Saturday 16 November 2024  00:26:00 -0500 (0:00:00.506)       0:00:43.570 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure permanent custom zone exists (no change)] *************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:266
Saturday 16 November 2024  00:26:01 -0500 (0:00:00.565)       0:00:44.135 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure ICMP block inversion in permanent drop zone] **********************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:274
Saturday 16 November 2024  00:26:01 -0500 (0:00:00.509)       0:00:44.645 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure ICMP block inversion in permanent drop zone, again] ***************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:282
Saturday 16 November 2024  00:26:02 -0500 (0:00:00.478)       0:00:45.123 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Block ICMP echo-request in permanent drop zone] **************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:290
Saturday 16 November 2024  00:26:02 -0500 (0:00:00.475)       0:00:45.599 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Block ICMP echo-request in permanent drop zone, again] *******************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:299
Saturday 16 November 2024  00:26:03 -0500 (0:00:00.581)       0:00:46.181 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone (no change)] ************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:308
Saturday 16 November 2024  00:26:03 -0500 (0:00:00.525)       0:00:46.706 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure target ACCEPT in permanent internal zone] *************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:317
Saturday 16 November 2024  00:26:04 -0500 (0:00:00.556)       0:00:47.263 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure target ACCEPT in permanent internal zone, again] ******************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:326
Saturday 16 November 2024  00:26:04 -0500 (0:00:00.822)       0:00:48.086 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone] ************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:335
Saturday 16 November 2024  00:26:05 -0500 (0:00:00.478)       0:00:48.564 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone, again] *****************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:344
Saturday 16 November 2024  00:26:06 -0500 (0:00:00.764)       0:00:49.328 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:353
Saturday 16 November 2024  00:26:06 -0500 (0:00:00.493)       0:00:49.822 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone, again] ***
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:363
Saturday 16 November 2024  00:26:07 -0500 (0:00:00.606)       0:00:50.428 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Firewalld custom zone] ***************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:373
Saturday 16 November 2024  00:26:07 -0500 (0:00:00.616)       0:00:51.045 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true
}

TASK [Assert firewalld custom zone] ********************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:381
Saturday 16 November 2024  00:26:08 -0500 (0:00:00.742)       0:00:51.787 ***** 
ok: [managed-node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Add masquerade to custom zone] *******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:386
Saturday 16 November 2024  00:26:08 -0500 (0:00:00.019)       0:00:51.807 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add masquerade to custom zone, again] ************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:396
Saturday 16 November 2024  00:26:09 -0500 (0:00:00.606)       0:00:52.414 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Set the default zone to something other than dmz] ************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:406
Saturday 16 November 2024  00:26:09 -0500 (0:00:00.579)       0:00:52.993 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--set-default-zone",
        "public"
    ],
    "delta": "0:00:00.212516",
    "end": "2024-11-16 00:26:10.368272",
    "rc": 0,
    "start": "2024-11-16 00:26:10.155756"
}

STDOUT:

success


STDERR:

Warning: ZONE_ALREADY_SET: public

TASK [Set default zone] ********************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:410
Saturday 16 November 2024  00:26:10 -0500 (0:00:00.538)       0:00:53.532 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Set default zone, again] *************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:417
Saturday 16 November 2024  00:26:10 -0500 (0:00:00.540)       0:00:54.073 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add multiple custom services] ********************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:424
Saturday 16 November 2024  00:26:11 -0500 (0:00:00.486)       0:00:54.559 ***** 
ok: [managed-node1] => {
    "changed": false,
    "failed_when_result": false
}

MSG:

can only add, modify, or remove one service at a time

TASK [Add custom service without details] **************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:434
Saturday 16 November 2024  00:26:11 -0500 (0:00:00.418)       0:00:54.978 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add custom service that already exists] **********************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:442
Saturday 16 November 2024  00:26:12 -0500 (0:00:00.761)       0:00:55.739 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add description to custom service] ***************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:450
Saturday 16 November 2024  00:26:13 -0500 (0:00:00.503)       0:00:56.243 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add short description to custom service] *********************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:459
Saturday 16 November 2024  00:26:13 -0500 (0:00:00.750)       0:00:56.993 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add source_ports to custom service] **************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:468
Saturday 16 November 2024  00:26:14 -0500 (0:00:00.782)       0:00:57.775 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add source_ports to custom service again] ********************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:477
Saturday 16 November 2024  00:26:15 -0500 (0:00:00.806)       0:00:58.582 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add invalid protocol to custom service] **********************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:486
Saturday 16 November 2024  00:26:15 -0500 (0:00:00.522)       0:00:59.105 ***** 
ok: [managed-node1] => {
    "changed": false,
    "failed_when_result": false
}

MSG:

INVALID_PROTOCOL: nonexistentprotocol

TASK [Add valid protocol to custom service] ************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:495
Saturday 16 November 2024  00:26:16 -0500 (0:00:00.679)       0:00:59.784 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove valid protocol from customservice] ********************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:504
Saturday 16 November 2024  00:26:17 -0500 (0:00:00.761)       0:01:00.546 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove ports from custom service without deleting service] ***************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:513
Saturday 16 November 2024  00:26:18 -0500 (0:00:00.757)       0:01:01.304 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add destination addresses] ***********************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:522
Saturday 16 November 2024  00:26:18 -0500 (0:00:00.760)       0:01:02.065 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Delete custom service] ***************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:533
Saturday 16 November 2024  00:26:19 -0500 (0:00:00.763)       0:01:02.828 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Delete custom service again] *********************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:541
Saturday 16 November 2024  00:26:20 -0500 (0:00:00.794)       0:01:03.623 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add custom service with all the elements at once] ************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:549
Saturday 16 November 2024  00:26:21 -0500 (0:00:00.511)       0:01:04.134 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add helper module that already is on customservice] **********************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:566
Saturday 16 November 2024  00:26:21 -0500 (0:00:00.776)       0:01:04.911 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Forward port 40 to 0.0.0.0:8080 (string)] ********************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:575
Saturday 16 November 2024  00:26:22 -0500 (0:00:00.508)       0:01:05.420 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward same port again (string)] ****************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:582
Saturday 16 November 2024  00:26:22 -0500 (0:00:00.514)       0:01:05.934 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable forward port (string)] *******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:589
Saturday 16 November 2024  00:26:23 -0500 (0:00:00.492)       0:01:06.426 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port (dict form)] ************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:596
Saturday 16 November 2024  00:26:23 -0500 (0:00:00.500)       0:01:06.927 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port again (dict form)] ******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:607
Saturday 16 November 2024  00:26:24 -0500 (0:00:00.540)       0:01:07.468 ***** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable forward port (dict form)] ****************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:618
Saturday 16 November 2024  00:26:24 -0500 (0:00:00.467)       0:01:07.935 ***** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove custom zone] ******************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:637
Saturday 16 November 2024  00:26:25 -0500 (0:00:00.490)       0:01:08.426 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--delete-zone=custom"
    ],
    "delta": "0:00:00.211238",
    "end": "2024-11-16 00:26:25.801779",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:26:25.590541"
}

STDOUT:

success

TASK [Remove customzone zone] **************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:643
Saturday 16 November 2024  00:26:25 -0500 (0:00:00.548)       0:01:08.974 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--delete-zone=customzone"
    ],
    "delta": "0:00:00.206524",
    "end": "2024-11-16 00:26:26.390956",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:26:26.184432"
}

STDOUT:

success

TASK [Reset internal zone to defaults] *****************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:649
Saturday 16 November 2024  00:26:26 -0500 (0:00:00.587)       0:01:09.562 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=internal"
    ],
    "delta": "0:00:00.217016",
    "end": "2024-11-16 00:26:26.971396",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:26:26.754380"
}

STDOUT:

success

TASK [Reset trusted zone to defaults] ******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:655
Saturday 16 November 2024  00:26:27 -0500 (0:00:00.575)       0:01:10.137 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=trusted"
    ],
    "delta": "0:00:00.208207",
    "end": "2024-11-16 00:26:27.523164",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:26:27.314957"
}

STDOUT:

success

TASK [Reset dmz zone to defaults] **********************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:661
Saturday 16 November 2024  00:26:27 -0500 (0:00:00.567)       0:01:10.704 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=dmz"
    ],
    "delta": "0:00:00.208864",
    "end": "2024-11-16 00:26:28.087936",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:26:27.879072"
}

STDOUT:

success

TASK [Reset drop zone to defaults] *********************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:667
Saturday 16 November 2024  00:26:28 -0500 (0:00:00.561)       0:01:11.266 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=drop"
    ],
    "delta": "0:00:00.220815",
    "end": "2024-11-16 00:26:28.686450",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:26:28.465635"
}

STDOUT:

success

TASK [Reset public zone to defaults] *******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:673
Saturday 16 November 2024  00:26:28 -0500 (0:00:00.596)       0:01:11.863 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.209505",
    "end": "2024-11-16 00:26:29.273741",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:26:29.064236"
}

STDOUT:

success

TASK [Reset default zone to defaults] ******************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:679
Saturday 16 November 2024  00:26:29 -0500 (0:00:00.577)       0:01:12.440 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.208126",
    "end": "2024-11-16 00:26:29.814014",
    "failed_when_result": false,
    "rc": 22,
    "start": "2024-11-16 00:26:29.605888"
}

STDERR:

Error: NO_DEFAULTS: public


MSG:

non-zero return code

TASK [Reset default zone] ******************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:685
Saturday 16 November 2024  00:26:29 -0500 (0:00:00.548)       0:01:12.988 ***** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--set-default-zone=public"
    ],
    "delta": "0:00:00.240336",
    "end": "2024-11-16 00:26:30.492648",
    "rc": 0,
    "start": "2024-11-16 00:26:30.252312"
}

STDOUT:

success

TASK [Reload firewalld] ********************************************************
task path: /tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:691
Saturday 16 November 2024  00:26:30 -0500 (0:00:00.667)       0:01:13.656 ***** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--reload"
    ],
    "delta": "0:00:00.427219",
    "end": "2024-11-16 00:26:31.252830",
    "failed_when_result": false,
    "rc": 0,
    "start": "2024-11-16 00:26:30.825611"
}

STDOUT:

success

PLAY RECAP *********************************************************************
managed-node1              : ok=95   changed=37   unreachable=0    failed=0    skipped=14   rescued=0    ignored=0   

Saturday 16 November 2024  00:26:31 -0500 (0:00:00.778)       0:01:14.435 ***** 
=============================================================================== 
fedora.linux_system_roles.firewall : Install firewalld ----------------- 16.75s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:31 
Gathering Facts --------------------------------------------------------- 3.53s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:2 
fedora.linux_system_roles.firewall : Enable and start firewalld service --- 2.25s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:28 
fedora.linux_system_roles.firewall : Gather firewall config if no arguments --- 1.45s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:139 
Ensure target ACCEPT in permanent internal zone ------------------------- 0.82s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:317 
Add source_ports to custom service -------------------------------------- 0.81s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:468 
Delete custom service --------------------------------------------------- 0.79s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:533 
Reload firewalld -------------------------------------------------------- 0.79s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:72 
Add short description to custom service --------------------------------- 0.78s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:459 
Reload firewalld -------------------------------------------------------- 0.78s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:691 
Add custom service with all the elements at once ------------------------ 0.78s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:549 
Remove custom zone ------------------------------------------------------ 0.77s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:21 
Ensure default target in permanent internal zone ------------------------ 0.76s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:335 
Add destination addresses ----------------------------------------------- 0.76s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:522 
Add valid protocol to custom service ------------------------------------ 0.76s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:495 
Add custom service without details -------------------------------------- 0.76s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:434 
Remove ports from custom service without deleting service --------------- 0.76s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:513 
Reset default zone to defaults ------------------------------------------ 0.76s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:57 
Remove valid protocol from customservice -------------------------------- 0.76s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:504 
Add description to custom service --------------------------------------- 0.75s
/tmp/collections-bHW/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:450