ansible-playbook 2.9.27
  config file = None
  configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
  ansible python module location = /usr/local/lib/python3.9/site-packages/ansible
  executable location = /usr/local/bin/ansible-playbook
  python version = 3.9.19 (main, May 16 2024, 11:40:09) [GCC 8.5.0 20210514 (Red Hat 8.5.0-22)]
No config file found; using defaults
[WARNING]: running playbook inside collection fedora.linux_system_roles
Skipping callback 'actionable', as we already have a stdout callback.
Skipping callback 'counter_enabled', as we already have a stdout callback.
Skipping callback 'debug', as we already have a stdout callback.
Skipping callback 'dense', as we already have a stdout callback.
Skipping callback 'dense', as we already have a stdout callback.
Skipping callback 'full_skip', as we already have a stdout callback.
Skipping callback 'json', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'null', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.
Skipping callback 'selective', as we already have a stdout callback.
Skipping callback 'skippy', as we already have a stdout callback.
Skipping callback 'stderr', as we already have a stdout callback.
Skipping callback 'unixy', as we already have a stdout callback.
Skipping callback 'yaml', as we already have a stdout callback.

PLAYBOOK: tests_ansible.yml ****************************************************
1 plays in /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml

PLAY [Ensure that the roles runs with default parameters] **********************

TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:2
Saturday 22 March 2025  01:24:11 -0400 (0:00:00.020)       0:00:00.020 ******** 
ok: [managed-node1]
META: ran handlers

TASK [fedora.linux_system_roles.firewall : Setup firewalld] ********************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:2
Saturday 22 March 2025  01:24:12 -0400 (0:00:01.190)       0:00:01.210 ******** 
included: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml for managed-node1

TASK [fedora.linux_system_roles.firewall : Ensure ansible_facts used by role] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:2
Saturday 22 March 2025  01:24:12 -0400 (0:00:00.023)       0:00:01.234 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Check if system is ostree] **********
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:10
Saturday 22 March 2025  01:24:12 -0400 (0:00:00.034)       0:00:01.268 ******** 
ok: [managed-node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.firewall : Set flag to indicate system is ostree] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:15
Saturday 22 March 2025  01:24:13 -0400 (0:00:00.460)       0:00:01.729 ******** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_ostree": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:22
Saturday 22 March 2025  01:24:13 -0400 (0:00:00.057)       0:00:01.786 ******** 
ok: [managed-node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.firewall : Set flag if transactional-update exists] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:27
Saturday 22 March 2025  01:24:13 -0400 (0:00:00.422)       0:00:02.208 ******** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_transactional": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Install firewalld] ******************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:31
Saturday 22 March 2025  01:24:13 -0400 (0:00:00.039)       0:00:02.247 ******** 
ok: [managed-node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: firewalld

TASK [fedora.linux_system_roles.firewall : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:43
Saturday 22 March 2025  01:24:28 -0400 (0:00:15.413)       0:00:17.661 ******** 
skipping: [managed-node1] => {}

TASK [fedora.linux_system_roles.firewall : Reboot transactional update systems] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:48
Saturday 22 March 2025  01:24:28 -0400 (0:00:00.034)       0:00:17.696 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Fail if reboot is needed and not set] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:53
Saturday 22 March 2025  01:24:29 -0400 (0:00:00.035)       0:00:17.731 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Collect service facts] **************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:5
Saturday 22 March 2025  01:24:29 -0400 (0:00:00.040)       0:00:17.772 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Attempt to stop and disable conflicting services] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:9
Saturday 22 March 2025  01:24:29 -0400 (0:00:00.034)       0:00:17.807 ******** 
skipping: [managed-node1] => (item=nftables)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "nftables",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item=iptables)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "iptables",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item=ufw)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "ufw",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Unmask firewalld service] ***********
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:22
Saturday 22 March 2025  01:24:29 -0400 (0:00:00.044)       0:00:17.851 ******** 
ok: [managed-node1] => {
    "changed": false,
    "name": "firewalld",
    "status": {
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "sysinit.target polkit.service basic.target dbus.socket system.slice dbus.service",
        "AllowIsolate": "no",
        "AllowedCPUs": "",
        "AllowedMemoryNodes": "",
        "AmbientCapabilities": "",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "shutdown.target network-pre.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "no",
        "CPUAffinity": "",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "nftables.service shutdown.target ipset.service ip6tables.service iptables.service ebtables.service",
        "ControlPID": "0",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "man:firewalld(1)",
        "DynamicUser": "no",
        "EffectiveCPUs": "",
        "EffectiveMemoryNodes": "",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOSchedulingClass": "0",
        "IOSchedulingPriority": "0",
        "IOWeight": "[not set]",
        "IPAccounting": "no",
        "IPEgressBytes": "18446744073709551615",
        "IPEgressPackets": "18446744073709551615",
        "IPIngressBytes": "18446744073709551615",
        "IPIngressPackets": "18446744073709551615",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "0",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "65536",
        "LimitMEMLOCKSoft": "65536",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "262144",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "14004",
        "LimitNPROCSoft": "14004",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "14004",
        "LimitSIGPENDINGSoft": "14004",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "MemoryAccounting": "yes",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "MountFlags": "",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAMask": "",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "PermissionsStartOnly": "no",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "system.slice sysinit.target dbus.socket",
        "Restart": "no",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardInputData": "",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "0",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22406",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "0"
    }
}

TASK [fedora.linux_system_roles.firewall : Enable and start firewalld service] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:28
Saturday 22 March 2025  01:24:29 -0400 (0:00:00.724)       0:00:18.575 ******** 
changed: [managed-node1] => {
    "changed": true,
    "enabled": true,
    "name": "firewalld",
    "state": "started",
    "status": {
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "dbus.socket system.slice basic.target sysinit.target polkit.service dbus.service",
        "AllowIsolate": "no",
        "AllowedCPUs": "",
        "AllowedMemoryNodes": "",
        "AmbientCapabilities": "",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "shutdown.target network-pre.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "no",
        "CPUAffinity": "",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "nftables.service shutdown.target iptables.service ebtables.service ip6tables.service ipset.service",
        "ControlPID": "0",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "man:firewalld(1)",
        "DynamicUser": "no",
        "EffectiveCPUs": "",
        "EffectiveMemoryNodes": "",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOSchedulingClass": "0",
        "IOSchedulingPriority": "0",
        "IOWeight": "[not set]",
        "IPAccounting": "no",
        "IPEgressBytes": "18446744073709551615",
        "IPEgressPackets": "18446744073709551615",
        "IPIngressBytes": "18446744073709551615",
        "IPIngressPackets": "18446744073709551615",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "0",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "65536",
        "LimitMEMLOCKSoft": "65536",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "262144",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "14004",
        "LimitNPROCSoft": "14004",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "14004",
        "LimitSIGPENDINGSoft": "14004",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "MemoryAccounting": "yes",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "MountFlags": "",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAMask": "",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "PermissionsStartOnly": "no",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "dbus.socket system.slice sysinit.target",
        "Restart": "no",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardInputData": "",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "0",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22406",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "0"
    }
}

TASK [fedora.linux_system_roles.firewall : Check if previous replaced is defined] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:34
Saturday 22 March 2025  01:24:30 -0400 (0:00:00.999)       0:00:19.574 ******** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_previous_replaced": false,
        "__firewall_python_cmd": "/usr/libexec/platform-python",
        "__firewall_report_changed": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Get config files, checksums before and remove] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:43
Saturday 22 March 2025  01:24:30 -0400 (0:00:00.048)       0:00:19.623 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Tell firewall module it is able to report changed] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:55
Saturday 22 March 2025  01:24:30 -0400 (0:00:00.037)       0:00:19.661 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Configure firewall] *****************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:71
Saturday 22 March 2025  01:24:31 -0400 (0:00:00.053)       0:00:19.714 ******** 

TASK [fedora.linux_system_roles.firewall : Gather firewall config information] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:120
Saturday 22 March 2025  01:24:31 -0400 (0:00:00.053)       0:00:19.767 ******** 

TASK [fedora.linux_system_roles.firewall : Update firewalld_config fact] *******
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:130
Saturday 22 March 2025  01:24:31 -0400 (0:00:00.055)       0:00:19.823 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Gather firewall config if no arguments] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:139
Saturday 22 March 2025  01:24:31 -0400 (0:00:00.066)       0:00:19.890 ******** 
ok: [managed-node1] => {
    "changed": false,
    "firewall_config": {
        "custom": {
            "zones": {
                "public": {
                    "description": "For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted.",
                    "forward": false,
                    "forward_ports": [],
                    "icmp_block_inversion": false,
                    "icmp_blocks": [],
                    "interfaces": [],
                    "masquerade": false,
                    "ports": [],
                    "protocols": [],
                    "rules_str": [],
                    "services": [
                        "ssh",
                        "dhcpv6-client",
                        "cockpit"
                    ],
                    "short": "Public",
                    "source_ports": [],
                    "sources": [],
                    "target": "default",
                    "version": ""
                }
            }
        },
        "default": {
            "helpers": [
                "Q.931",
                "RAS",
                "amanda",
                "ftp",
                "h323",
                "irc",
                "netbios-ns",
                "pptp",
                "proto-gre",
                "sane",
                "sip",
                "snmp",
                "tftp"
            ],
            "icmptypes": [
                "network-unreachable",
                "no-route",
                "packet-too-big",
                "parameter-problem",
                "port-unreachable",
                "precedence-cutoff",
                "protocol-unreachable",
                "redirect",
                "reject-route",
                "required-option-missing",
                "router-advertisement",
                "router-solicitation",
                "source-quench",
                "source-route-failed",
                "time-exceeded",
                "timestamp-reply",
                "timestamp-request",
                "tos-host-redirect",
                "tos-host-unreachable",
                "tos-network-redirect",
                "tos-network-unreachable",
                "ttl-zero-during-reassembly",
                "ttl-zero-during-transit",
                "unknown-header-type",
                "unknown-option",
                "address-unreachable",
                "bad-header",
                "beyond-scope",
                "communication-prohibited",
                "destination-unreachable",
                "echo-reply",
                "echo-request",
                "failed-policy",
                "fragmentation-needed",
                "host-precedence-violation",
                "host-prohibited",
                "host-redirect",
                "host-unknown",
                "host-unreachable",
                "ip-header-bad",
                "neighbour-advertisement",
                "neighbour-solicitation",
                "network-prohibited",
                "network-redirect",
                "network-unknown"
            ],
            "policies": [
                "allow-host-ipv6"
            ],
            "services": [
                "RH-Satellite-6",
                "amanda-client",
                "amanda-k5-client",
                "amqp",
                "amqps",
                "apcupsd",
                "audit",
                "bacula-client",
                "bacula",
                "bb",
                "bgp",
                "bitcoin-rpc",
                "bitcoin-testnet-rpc",
                "bitcoin-testnet",
                "bitcoin",
                "bittorrent-lsd",
                "ceph-mon",
                "ceph",
                "cfengine",
                "cockpit",
                "collectd",
                "condor-collector",
                "ctdb",
                "dhcp",
                "dhcpv6-client",
                "dhcpv6",
                "distcc",
                "dns-over-tls",
                "dns",
                "docker-registry",
                "docker-swarm",
                "dropbox-lansync",
                "elasticsearch",
                "etcd-client",
                "etcd-server",
                "finger",
                "foreman-proxy",
                "foreman",
                "freeipa-4",
                "freeipa-ldap",
                "freeipa-ldaps",
                "freeipa-replication",
                "freeipa-trust",
                "ftp",
                "galera",
                "ganglia-client",
                "ganglia-master",
                "git",
                "grafana",
                "gre",
                "high-availability",
                "http",
                "https",
                "imap",
                "imaps",
                "ipp-client",
                "ipp",
                "ipsec",
                "irc",
                "ircs",
                "iscsi-target",
                "isns",
                "jenkins",
                "kadmin",
                "kdeconnect",
                "kerberos",
                "kibana",
                "klogin",
                "kpasswd",
                "kprop",
                "kshell",
                "kube-apiserver",
                "ldap",
                "ldaps",
                "libvirt-tls",
                "libvirt",
                "lightning-network",
                "llmnr",
                "managesieve",
                "matrix",
                "mdns",
                "memcache",
                "minidlna",
                "mongodb",
                "mosh",
                "mountd",
                "mqtt-tls",
                "mqtt",
                "ms-wbt",
                "mssql",
                "murmur",
                "mysql",
                "nbd",
                "nfs",
                "nfs3",
                "nmea-0183",
                "nrpe",
                "ntp",
                "nut",
                "openvpn",
                "ovirt-imageio",
                "ovirt-storageconsole",
                "ovirt-vmconsole",
                "plex",
                "pmcd",
                "pmproxy",
                "pmwebapi",
                "pmwebapis",
                "pop3",
                "pop3s",
                "postgresql",
                "privoxy",
                "prometheus",
                "proxy-dhcp",
                "ptp",
                "pulseaudio",
                "puppetmaster",
                "quassel",
                "radius",
                "rdp",
                "redis-sentinel",
                "redis",
                "rpc-bind",
                "rquotad",
                "rsh",
                "rsyncd",
                "rtsp",
                "salt-master",
                "samba-client",
                "samba-dc",
                "samba",
                "sane",
                "sip",
                "sips",
                "slp",
                "smtp-submission",
                "smtp",
                "smtps",
                "snmp",
                "snmptrap",
                "spideroak-lansync",
                "spotify-sync",
                "squid",
                "ssdp",
                "ssh",
                "steam-streaming",
                "svdrp",
                "svn",
                "telnet",
                "tentacle",
                "tftp-client",
                "tftp",
                "tile38",
                "tinc",
                "tor-socks",
                "transmission-client",
                "upnp-client",
                "vdsm",
                "vnc-server",
                "wbem-http",
                "wbem-https",
                "wsman",
                "wsmans",
                "xdmcp",
                "xmpp-bosh",
                "xmpp-client",
                "xmpp-local",
                "xmpp-server",
                "zabbix-agent",
                "zabbix-server",
                "RH-Satellite-6-capsule",
                "syncthing-gui",
                "syncthing",
                "synergy",
                "syslog-tls",
                "syslog"
            ],
            "zones": [
                "nm-shared",
                "block",
                "dmz",
                "drop",
                "external",
                "home",
                "internal",
                "public",
                "trusted",
                "work"
            ]
        },
        "default_zone": "public"
    }
}

TASK [fedora.linux_system_roles.firewall : Update firewalld_config fact] *******
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:144
Saturday 22 March 2025  01:24:31 -0400 (0:00:00.691)       0:00:20.581 ******** 
ok: [managed-node1] => {
    "ansible_facts": {
        "firewall_config": {
            "custom": {
                "zones": {
                    "public": {
                        "description": "For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted.",
                        "forward": false,
                        "forward_ports": [],
                        "icmp_block_inversion": false,
                        "icmp_blocks": [],
                        "interfaces": [],
                        "masquerade": false,
                        "ports": [],
                        "protocols": [],
                        "rules_str": [],
                        "services": [
                            "ssh",
                            "dhcpv6-client",
                            "cockpit"
                        ],
                        "short": "Public",
                        "source_ports": [],
                        "sources": [],
                        "target": "default",
                        "version": ""
                    }
                }
            },
            "default": {
                "helpers": [
                    "Q.931",
                    "RAS",
                    "amanda",
                    "ftp",
                    "h323",
                    "irc",
                    "netbios-ns",
                    "pptp",
                    "proto-gre",
                    "sane",
                    "sip",
                    "snmp",
                    "tftp"
                ],
                "icmptypes": [
                    "network-unreachable",
                    "no-route",
                    "packet-too-big",
                    "parameter-problem",
                    "port-unreachable",
                    "precedence-cutoff",
                    "protocol-unreachable",
                    "redirect",
                    "reject-route",
                    "required-option-missing",
                    "router-advertisement",
                    "router-solicitation",
                    "source-quench",
                    "source-route-failed",
                    "time-exceeded",
                    "timestamp-reply",
                    "timestamp-request",
                    "tos-host-redirect",
                    "tos-host-unreachable",
                    "tos-network-redirect",
                    "tos-network-unreachable",
                    "ttl-zero-during-reassembly",
                    "ttl-zero-during-transit",
                    "unknown-header-type",
                    "unknown-option",
                    "address-unreachable",
                    "bad-header",
                    "beyond-scope",
                    "communication-prohibited",
                    "destination-unreachable",
                    "echo-reply",
                    "echo-request",
                    "failed-policy",
                    "fragmentation-needed",
                    "host-precedence-violation",
                    "host-prohibited",
                    "host-redirect",
                    "host-unknown",
                    "host-unreachable",
                    "ip-header-bad",
                    "neighbour-advertisement",
                    "neighbour-solicitation",
                    "network-prohibited",
                    "network-redirect",
                    "network-unknown"
                ],
                "policies": [
                    "allow-host-ipv6"
                ],
                "services": [
                    "RH-Satellite-6",
                    "amanda-client",
                    "amanda-k5-client",
                    "amqp",
                    "amqps",
                    "apcupsd",
                    "audit",
                    "bacula-client",
                    "bacula",
                    "bb",
                    "bgp",
                    "bitcoin-rpc",
                    "bitcoin-testnet-rpc",
                    "bitcoin-testnet",
                    "bitcoin",
                    "bittorrent-lsd",
                    "ceph-mon",
                    "ceph",
                    "cfengine",
                    "cockpit",
                    "collectd",
                    "condor-collector",
                    "ctdb",
                    "dhcp",
                    "dhcpv6-client",
                    "dhcpv6",
                    "distcc",
                    "dns-over-tls",
                    "dns",
                    "docker-registry",
                    "docker-swarm",
                    "dropbox-lansync",
                    "elasticsearch",
                    "etcd-client",
                    "etcd-server",
                    "finger",
                    "foreman-proxy",
                    "foreman",
                    "freeipa-4",
                    "freeipa-ldap",
                    "freeipa-ldaps",
                    "freeipa-replication",
                    "freeipa-trust",
                    "ftp",
                    "galera",
                    "ganglia-client",
                    "ganglia-master",
                    "git",
                    "grafana",
                    "gre",
                    "high-availability",
                    "http",
                    "https",
                    "imap",
                    "imaps",
                    "ipp-client",
                    "ipp",
                    "ipsec",
                    "irc",
                    "ircs",
                    "iscsi-target",
                    "isns",
                    "jenkins",
                    "kadmin",
                    "kdeconnect",
                    "kerberos",
                    "kibana",
                    "klogin",
                    "kpasswd",
                    "kprop",
                    "kshell",
                    "kube-apiserver",
                    "ldap",
                    "ldaps",
                    "libvirt-tls",
                    "libvirt",
                    "lightning-network",
                    "llmnr",
                    "managesieve",
                    "matrix",
                    "mdns",
                    "memcache",
                    "minidlna",
                    "mongodb",
                    "mosh",
                    "mountd",
                    "mqtt-tls",
                    "mqtt",
                    "ms-wbt",
                    "mssql",
                    "murmur",
                    "mysql",
                    "nbd",
                    "nfs",
                    "nfs3",
                    "nmea-0183",
                    "nrpe",
                    "ntp",
                    "nut",
                    "openvpn",
                    "ovirt-imageio",
                    "ovirt-storageconsole",
                    "ovirt-vmconsole",
                    "plex",
                    "pmcd",
                    "pmproxy",
                    "pmwebapi",
                    "pmwebapis",
                    "pop3",
                    "pop3s",
                    "postgresql",
                    "privoxy",
                    "prometheus",
                    "proxy-dhcp",
                    "ptp",
                    "pulseaudio",
                    "puppetmaster",
                    "quassel",
                    "radius",
                    "rdp",
                    "redis-sentinel",
                    "redis",
                    "rpc-bind",
                    "rquotad",
                    "rsh",
                    "rsyncd",
                    "rtsp",
                    "salt-master",
                    "samba-client",
                    "samba-dc",
                    "samba",
                    "sane",
                    "sip",
                    "sips",
                    "slp",
                    "smtp-submission",
                    "smtp",
                    "smtps",
                    "snmp",
                    "snmptrap",
                    "spideroak-lansync",
                    "spotify-sync",
                    "squid",
                    "ssdp",
                    "ssh",
                    "steam-streaming",
                    "svdrp",
                    "svn",
                    "telnet",
                    "tentacle",
                    "tftp-client",
                    "tftp",
                    "tile38",
                    "tinc",
                    "tor-socks",
                    "transmission-client",
                    "upnp-client",
                    "vdsm",
                    "vnc-server",
                    "wbem-http",
                    "wbem-https",
                    "wsman",
                    "wsmans",
                    "xdmcp",
                    "xmpp-bosh",
                    "xmpp-client",
                    "xmpp-local",
                    "xmpp-server",
                    "zabbix-agent",
                    "zabbix-server",
                    "RH-Satellite-6-capsule",
                    "syncthing-gui",
                    "syncthing",
                    "synergy",
                    "syslog-tls",
                    "syslog"
                ],
                "zones": [
                    "nm-shared",
                    "block",
                    "dmz",
                    "drop",
                    "external",
                    "home",
                    "internal",
                    "public",
                    "trusted",
                    "work"
                ]
            },
            "default_zone": "public"
        }
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Get config files, checksums after] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:153
Saturday 22 March 2025  01:24:31 -0400 (0:00:00.042)       0:00:20.624 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Calculate what has changed] *********
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:163
Saturday 22 March 2025  01:24:31 -0400 (0:00:00.033)       0:00:20.658 ******** 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Show diffs] *************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:169
Saturday 22 March 2025  01:24:31 -0400 (0:00:00.034)       0:00:20.692 ******** 
skipping: [managed-node1] => {}

TASK [Get default zone] ********************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:11
Saturday 22 March 2025  01:24:32 -0400 (0:00:00.035)       0:00:20.728 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--get-default-zone"
    ],
    "delta": "0:00:00.253710",
    "end": "2025-03-22 01:24:32.683117",
    "rc": 0,
    "start": "2025-03-22 01:24:32.429407"
}

STDOUT:

public

TASK [Remove custom zone] ******************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:21
Saturday 22 March 2025  01:24:32 -0400 (0:00:00.717)       0:00:21.445 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--delete-zone=custom"
    ],
    "delta": "0:00:00.257852",
    "end": "2025-03-22 01:24:33.344246",
    "failed_when_result": false,
    "rc": 112,
    "start": "2025-03-22 01:24:33.086394"
}

STDERR:

Error: INVALID_ZONE: custom


MSG:

non-zero return code

TASK [Reset internal zone to defaults] *****************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:27
Saturday 22 March 2025  01:24:33 -0400 (0:00:00.673)       0:00:22.118 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=internal"
    ],
    "delta": "0:00:00.269578",
    "end": "2025-03-22 01:24:33.992370",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-03-22 01:24:33.722792"
}

STDERR:

Error: NO_DEFAULTS: internal


MSG:

non-zero return code

TASK [Reset trusted zone to defaults] ******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:33
Saturday 22 March 2025  01:24:34 -0400 (0:00:00.646)       0:00:22.765 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=trusted"
    ],
    "delta": "0:00:00.283198",
    "end": "2025-03-22 01:24:34.671522",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-03-22 01:24:34.388324"
}

STDERR:

Error: NO_DEFAULTS: trusted


MSG:

non-zero return code

TASK [Reset dmz zone to defaults] **********************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:39
Saturday 22 March 2025  01:24:34 -0400 (0:00:00.699)       0:00:23.464 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=dmz"
    ],
    "delta": "0:00:00.269008",
    "end": "2025-03-22 01:24:35.374255",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-03-22 01:24:35.105247"
}

STDERR:

Error: NO_DEFAULTS: dmz


MSG:

non-zero return code

TASK [Reset drop zone to defaults] *********************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:45
Saturday 22 March 2025  01:24:35 -0400 (0:00:00.682)       0:00:24.146 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=drop"
    ],
    "delta": "0:00:00.274857",
    "end": "2025-03-22 01:24:36.029212",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-03-22 01:24:35.754355"
}

STDERR:

Error: NO_DEFAULTS: drop


MSG:

non-zero return code

TASK [Reset public zone to defaults] *******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:51
Saturday 22 March 2025  01:24:36 -0400 (0:00:00.655)       0:00:24.802 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.269124",
    "end": "2025-03-22 01:24:36.681935",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:24:36.412811"
}

STDOUT:

success

TASK [Reset default zone to defaults] ******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:57
Saturday 22 March 2025  01:24:36 -0400 (0:00:00.670)       0:00:25.473 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": "zone=$(firewall-cmd --get-default-zone)\nfirewall-cmd --permanent --load-zone-defaults=$zone\n",
    "delta": "0:00:00.556882",
    "end": "2025-03-22 01:24:37.670223",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-03-22 01:24:37.113341"
}

STDERR:

Error: NO_DEFAULTS: public


MSG:

non-zero return code

TASK [Create custom zone] ******************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:66
Saturday 22 March 2025  01:24:37 -0400 (0:00:00.972)       0:00:26.445 ******** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--new-zone=custom"
    ],
    "delta": "0:00:00.274568",
    "end": "2025-03-22 01:24:38.341167",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:24:38.066599"
}

STDOUT:

success

TASK [Reload firewalld] ********************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:72
Saturday 22 March 2025  01:24:38 -0400 (0:00:00.672)       0:00:27.118 ******** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--reload"
    ],
    "delta": "0:00:00.654668",
    "end": "2025-03-22 01:24:39.391245",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:24:38.736577"
}

STDOUT:

success

TASK [Permit traffic in default zone for https service] ************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:80
Saturday 22 March 2025  01:24:39 -0400 (0:00:01.050)       0:00:28.168 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Permit traffic in default zone for https service, again] *****************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:88
Saturday 22 March 2025  01:24:40 -0400 (0:00:00.716)       0:00:28.885 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Permit traffic in default zone on port 8081/tcp] *************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:96
Saturday 22 March 2025  01:24:40 -0400 (0:00:00.628)       0:00:29.513 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Permit traffic in default zone on port 8081/tcp, again] ******************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:104
Saturday 22 March 2025  01:24:41 -0400 (0:00:00.612)       0:00:30.126 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow port 161-162/udp in permanent default zone] ************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:112
Saturday 22 March 2025  01:24:41 -0400 (0:00:00.557)       0:00:30.683 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow port 161-162/udp in permanent default zone, again] *****************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:120
Saturday 22 March 2025  01:24:42 -0400 (0:00:00.574)       0:00:31.258 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Do not permit traffic in default zone on port 8081/tcp] ******************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:128
Saturday 22 March 2025  01:24:43 -0400 (0:00:00.603)       0:00:31.861 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Do not permit traffic in default zone on port 8081/tcp, again] ***********
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:136
Saturday 22 March 2025  01:24:43 -0400 (0:00:00.592)       0:00:32.454 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow service http in permanent dmz zone] ********************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:144
Saturday 22 March 2025  01:24:44 -0400 (0:00:00.588)       0:00:33.042 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow service http in permanent dmz zone, again] *************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:153
Saturday 22 March 2025  01:24:44 -0400 (0:00:00.596)       0:00:33.638 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow service ftp with limitation using rich rule in permanent default zone] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:162
Saturday 22 March 2025  01:24:45 -0400 (0:00:00.569)       0:00:34.208 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow service ftp with limitation using rich rule in permanent default zone, again] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:170
Saturday 22 March 2025  01:24:46 -0400 (0:00:00.555)       0:00:34.764 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow source 192.0.2.0/24 in internal zone] ******************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:178
Saturday 22 March 2025  01:24:46 -0400 (0:00:00.560)       0:00:35.325 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow source 192.0.2.0/24 in internal zone, again] ***********************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:187
Saturday 22 March 2025  01:24:47 -0400 (0:00:00.601)       0:00:35.926 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow nm interface eth0 in permanent trusted zone] ***********************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:196
Saturday 22 March 2025  01:24:47 -0400 (0:00:00.640)       0:00:36.566 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow nm interface eth0 in permanent trusted zone, again] ****************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:205
Saturday 22 March 2025  01:24:48 -0400 (0:00:00.627)       0:00:37.194 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable nm interface eth0 in permanent trusted zone] *********************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:214
Saturday 22 March 2025  01:24:49 -0400 (0:00:00.597)       0:00:37.792 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Disable nm interface eth0 in permanent trusted zone, again] **************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:223
Saturday 22 March 2025  01:24:49 -0400 (0:00:00.608)       0:00:38.401 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow interface eth2 in permanent trusted zone] **************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:232
Saturday 22 March 2025  01:24:50 -0400 (0:00:00.581)       0:00:38.982 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow interface eth2 in permanent trusted zone, again] *******************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:241
Saturday 22 March 2025  01:24:50 -0400 (0:00:00.592)       0:00:39.574 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow masquerading in permanent dmz zone] ********************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:250
Saturday 22 March 2025  01:24:51 -0400 (0:00:00.590)       0:00:40.164 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow masquerading in permanent dmz zone, again] *************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:258
Saturday 22 March 2025  01:24:52 -0400 (0:00:00.567)       0:00:40.732 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure permanent custom zone exists (no change)] *************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:266
Saturday 22 March 2025  01:24:52 -0400 (0:00:00.553)       0:00:41.286 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure ICMP block inversion in permanent drop zone] **********************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:274
Saturday 22 March 2025  01:24:53 -0400 (0:00:00.555)       0:00:41.842 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure ICMP block inversion in permanent drop zone, again] ***************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:282
Saturday 22 March 2025  01:24:53 -0400 (0:00:00.557)       0:00:42.399 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Block ICMP echo-request in permanent drop zone] **************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:290
Saturday 22 March 2025  01:24:54 -0400 (0:00:00.574)       0:00:42.974 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Block ICMP echo-request in permanent drop zone, again] *******************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:299
Saturday 22 March 2025  01:24:54 -0400 (0:00:00.592)       0:00:43.567 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone (no change)] ************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:308
Saturday 22 March 2025  01:24:55 -0400 (0:00:00.601)       0:00:44.168 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure target ACCEPT in permanent internal zone] *************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:317
Saturday 22 March 2025  01:24:56 -0400 (0:00:00.579)       0:00:44.748 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure target ACCEPT in permanent internal zone, again] ******************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:326
Saturday 22 March 2025  01:24:57 -0400 (0:00:01.124)       0:00:45.873 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone] ************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:335
Saturday 22 March 2025  01:24:57 -0400 (0:00:00.552)       0:00:46.426 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone, again] *****************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:344
Saturday 22 March 2025  01:24:58 -0400 (0:00:00.979)       0:00:47.405 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:353
Saturday 22 March 2025  01:24:59 -0400 (0:00:00.559)       0:00:47.965 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone, again] ***
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:363
Saturday 22 March 2025  01:24:59 -0400 (0:00:00.637)       0:00:48.602 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Firewalld custom zone] ***************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:373
Saturday 22 March 2025  01:25:00 -0400 (0:00:00.600)       0:00:49.202 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true
}

TASK [Assert firewalld custom zone] ********************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:381
Saturday 22 March 2025  01:25:01 -0400 (0:00:01.023)       0:00:50.226 ******** 
ok: [managed-node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Add masquerade to custom zone] *******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:386
Saturday 22 March 2025  01:25:01 -0400 (0:00:00.037)       0:00:50.263 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add masquerade to custom zone, again] ************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:396
Saturday 22 March 2025  01:25:02 -0400 (0:00:00.573)       0:00:50.836 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Set the default zone to something other than dmz] ************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:406
Saturday 22 March 2025  01:25:02 -0400 (0:00:00.555)       0:00:51.391 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--set-default-zone",
        "public"
    ],
    "delta": "0:00:00.266892",
    "end": "2025-03-22 01:25:03.266386",
    "rc": 0,
    "start": "2025-03-22 01:25:02.999494"
}

STDOUT:

success


STDERR:

Warning: ZONE_ALREADY_SET: public

TASK [Set default zone] ********************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:410
Saturday 22 March 2025  01:25:03 -0400 (0:00:00.626)       0:00:52.018 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Set default zone, again] *************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:417
Saturday 22 March 2025  01:25:03 -0400 (0:00:00.656)       0:00:52.675 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add multiple custom services] ********************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:424
Saturday 22 March 2025  01:25:04 -0400 (0:00:00.632)       0:00:53.307 ******** 
ok: [managed-node1] => {
    "changed": false,
    "failed_when_result": false
}

MSG:

can only add, modify, or remove one service at a time

TASK [Add custom service without details] **************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:434
Saturday 22 March 2025  01:25:05 -0400 (0:00:00.541)       0:00:53.848 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add custom service that already exists] **********************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:442
Saturday 22 March 2025  01:25:06 -0400 (0:00:01.042)       0:00:54.891 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add description to custom service] ***************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:450
Saturday 22 March 2025  01:25:06 -0400 (0:00:00.605)       0:00:55.496 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add short description to custom service] *********************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:459
Saturday 22 March 2025  01:25:07 -0400 (0:00:01.028)       0:00:56.525 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add source_ports to custom service] **************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:468
Saturday 22 March 2025  01:25:08 -0400 (0:00:01.077)       0:00:57.602 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add source_ports to custom service again] ********************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:477
Saturday 22 March 2025  01:25:09 -0400 (0:00:01.064)       0:00:58.667 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add invalid protocol to custom service] **********************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:486
Saturday 22 March 2025  01:25:10 -0400 (0:00:00.654)       0:00:59.321 ******** 
ok: [managed-node1] => {
    "changed": false,
    "failed_when_result": false
}

MSG:

INVALID_PROTOCOL: nonexistentprotocol

TASK [Add valid protocol to custom service] ************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:495
Saturday 22 March 2025  01:25:11 -0400 (0:00:00.633)       0:00:59.955 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove valid protocol from customservice] ********************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:504
Saturday 22 March 2025  01:25:12 -0400 (0:00:01.080)       0:01:01.035 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove ports from custom service without deleting service] ***************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:513
Saturday 22 March 2025  01:25:13 -0400 (0:00:01.020)       0:01:02.055 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add destination addresses] ***********************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:522
Saturday 22 March 2025  01:25:14 -0400 (0:00:01.002)       0:01:03.057 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Delete custom service] ***************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:533
Saturday 22 March 2025  01:25:15 -0400 (0:00:00.994)       0:01:04.052 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Delete custom service again] *********************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:541
Saturday 22 March 2025  01:25:16 -0400 (0:00:00.988)       0:01:05.040 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add custom service with all the elements at once] ************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:549
Saturday 22 March 2025  01:25:16 -0400 (0:00:00.588)       0:01:05.628 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add helper module that already is on customservice] **********************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:566
Saturday 22 March 2025  01:25:18 -0400 (0:00:01.088)       0:01:06.716 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Forward port 40 to 0.0.0.0:8080 (string)] ********************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:575
Saturday 22 March 2025  01:25:18 -0400 (0:00:00.661)       0:01:07.378 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward same port again (string)] ****************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:582
Saturday 22 March 2025  01:25:19 -0400 (0:00:00.587)       0:01:07.965 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable forward port (string)] *******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:589
Saturday 22 March 2025  01:25:19 -0400 (0:00:00.562)       0:01:08.527 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port (dict form)] ************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:596
Saturday 22 March 2025  01:25:20 -0400 (0:00:00.569)       0:01:09.097 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port again (dict form)] ******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:607
Saturday 22 March 2025  01:25:20 -0400 (0:00:00.569)       0:01:09.666 ******** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable forward port (dict form)] ****************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:618
Saturday 22 March 2025  01:25:21 -0400 (0:00:00.616)       0:01:10.282 ******** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove custom zone] ******************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:637
Saturday 22 March 2025  01:25:22 -0400 (0:00:00.613)       0:01:10.896 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--delete-zone=custom"
    ],
    "delta": "0:00:00.290439",
    "end": "2025-03-22 01:25:22.813484",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:25:22.523045"
}

STDOUT:

success

TASK [Remove customzone zone] **************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:643
Saturday 22 March 2025  01:25:22 -0400 (0:00:00.715)       0:01:11.611 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--delete-zone=customzone"
    ],
    "delta": "0:00:00.283412",
    "end": "2025-03-22 01:25:23.544234",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:25:23.260822"
}

STDOUT:

success

TASK [Reset internal zone to defaults] *****************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:649
Saturday 22 March 2025  01:25:23 -0400 (0:00:00.713)       0:01:12.324 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=internal"
    ],
    "delta": "0:00:00.280932",
    "end": "2025-03-22 01:25:24.225305",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:25:23.944373"
}

STDOUT:

success

TASK [Reset trusted zone to defaults] ******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:655
Saturday 22 March 2025  01:25:24 -0400 (0:00:00.677)       0:01:13.002 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=trusted"
    ],
    "delta": "0:00:00.277281",
    "end": "2025-03-22 01:25:24.900786",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:25:24.623505"
}

STDOUT:

success

TASK [Reset dmz zone to defaults] **********************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:661
Saturday 22 March 2025  01:25:24 -0400 (0:00:00.676)       0:01:13.678 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=dmz"
    ],
    "delta": "0:00:00.282647",
    "end": "2025-03-22 01:25:25.583732",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:25:25.301085"
}

STDOUT:

success

TASK [Reset drop zone to defaults] *********************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:667
Saturday 22 March 2025  01:25:25 -0400 (0:00:00.706)       0:01:14.384 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=drop"
    ],
    "delta": "0:00:00.292242",
    "end": "2025-03-22 01:25:26.337665",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:25:26.045423"
}

STDOUT:

success

TASK [Reset public zone to defaults] *******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:673
Saturday 22 March 2025  01:25:26 -0400 (0:00:00.736)       0:01:15.120 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.275433",
    "end": "2025-03-22 01:25:27.013748",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:25:26.738315"
}

STDOUT:

success

TASK [Reset default zone to defaults] ******************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:679
Saturday 22 March 2025  01:25:27 -0400 (0:00:00.675)       0:01:15.796 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--permanent",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.274698",
    "end": "2025-03-22 01:25:27.690194",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-03-22 01:25:27.415496"
}

STDERR:

Error: NO_DEFAULTS: public


MSG:

non-zero return code

TASK [Reset default zone] ******************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:685
Saturday 22 March 2025  01:25:27 -0400 (0:00:00.669)       0:01:16.466 ******** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-cmd",
        "--set-default-zone=public"
    ],
    "delta": "0:00:00.303015",
    "end": "2025-03-22 01:25:28.408561",
    "rc": 0,
    "start": "2025-03-22 01:25:28.105546"
}

STDOUT:

success

TASK [Reload firewalld] ********************************************************
task path: /tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:691
Saturday 22 March 2025  01:25:28 -0400 (0:00:00.695)       0:01:17.161 ******** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--reload"
    ],
    "delta": "0:00:00.664329",
    "end": "2025-03-22 01:25:29.444596",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-03-22 01:25:28.780267"
}

STDOUT:

success
META: ran handlers
META: ran handlers

PLAY RECAP *********************************************************************
managed-node1              : ok=95   changed=37   unreachable=0    failed=0    skipped=14   rescued=0    ignored=0   

Saturday 22 March 2025  01:25:29 -0400 (0:00:01.055)       0:01:18.217 ******** 
=============================================================================== 
fedora.linux_system_roles.firewall : Install firewalld ----------------- 15.41s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:31 
Gathering Facts --------------------------------------------------------- 1.19s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:2 
Ensure target ACCEPT in permanent internal zone ------------------------- 1.12s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:317 
Add custom service with all the elements at once ------------------------ 1.09s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:549 
Add valid protocol to custom service ------------------------------------ 1.08s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:495 
Add short description to custom service --------------------------------- 1.08s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:459 
Add source_ports to custom service -------------------------------------- 1.06s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:468 
Reload firewalld -------------------------------------------------------- 1.06s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:691 
Reload firewalld -------------------------------------------------------- 1.05s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:72 
Add custom service without details -------------------------------------- 1.04s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:434 
Add description to custom service --------------------------------------- 1.03s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:450 
Firewalld custom zone --------------------------------------------------- 1.02s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:373 
Remove valid protocol from customservice -------------------------------- 1.02s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:504 
Remove ports from custom service without deleting service --------------- 1.00s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:513 
fedora.linux_system_roles.firewall : Enable and start firewalld service --- 1.00s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:28 
Add destination addresses ----------------------------------------------- 0.99s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:522 
Delete custom service --------------------------------------------------- 0.99s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:533 
Ensure default target in permanent internal zone ------------------------ 0.98s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:335 
Reset default zone to defaults ------------------------------------------ 0.97s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:57 
Reset drop zone to defaults --------------------------------------------- 0.74s
/tmp/collections-G0A/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:667