ansible-playbook 2.9.27
  config file = None
  configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
  ansible python module location = /usr/local/lib/python3.9/site-packages/ansible
  executable location = /usr/local/bin/ansible-playbook
  python version = 3.9.19 (main, May 16 2024, 11:40:09) [GCC 8.5.0 20210514 (Red Hat 8.5.0-22)]
No config file found; using defaults
[WARNING]: running playbook inside collection fedora.linux_system_roles
Skipping callback 'actionable', as we already have a stdout callback.
Skipping callback 'counter_enabled', as we already have a stdout callback.
Skipping callback 'debug', as we already have a stdout callback.
Skipping callback 'dense', as we already have a stdout callback.
Skipping callback 'dense', as we already have a stdout callback.
Skipping callback 'full_skip', as we already have a stdout callback.
Skipping callback 'json', as we already have a stdout callback.
Skipping callback 'jsonl', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'null', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.
Skipping callback 'selective', as we already have a stdout callback.
Skipping callback 'skippy', as we already have a stdout callback.
Skipping callback 'stderr', as we already have a stdout callback.
Skipping callback 'unixy', as we already have a stdout callback.
Skipping callback 'yaml', as we already have a stdout callback.

PLAYBOOK: tests_ansible.yml ****************************************************
1 plays in /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml

PLAY [Ensure that the roles runs with default parameters] **********************

TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:2
Saturday 21 June 2025  01:25:15 -0400 (0:00:00.020)       0:00:00.020 ********* 
ok: [managed-node1]
META: ran handlers

TASK [fedora.linux_system_roles.firewall : Setup firewalld] ********************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:2
Saturday 21 June 2025  01:25:16 -0400 (0:00:01.191)       0:00:01.211 ********* 
included: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml for managed-node1

TASK [fedora.linux_system_roles.firewall : Ensure ansible_facts used by role] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:2
Saturday 21 June 2025  01:25:16 -0400 (0:00:00.025)       0:00:01.237 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Check if system is ostree] **********
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:10
Saturday 21 June 2025  01:25:16 -0400 (0:00:00.035)       0:00:01.273 ********* 
ok: [managed-node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.firewall : Set flag to indicate system is ostree] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:15
Saturday 21 June 2025  01:25:17 -0400 (0:00:00.454)       0:00:01.727 ********* 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_ostree": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:22
Saturday 21 June 2025  01:25:17 -0400 (0:00:00.055)       0:00:01.782 ********* 
ok: [managed-node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.firewall : Set flag if transactional-update exists] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:27
Saturday 21 June 2025  01:25:17 -0400 (0:00:00.416)       0:00:02.199 ********* 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_transactional": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Run systemctl] **********************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:34
Saturday 21 June 2025  01:25:17 -0400 (0:00:00.037)       0:00:02.236 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "systemctl",
        "is-system-running"
    ],
    "delta": "0:00:00.008116",
    "end": "2025-06-21 01:25:18.222306",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:25:18.214190"
}

STDOUT:

running

TASK [fedora.linux_system_roles.firewall : Require installed systemd] **********
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:41
Saturday 21 June 2025  01:25:18 -0400 (0:00:00.533)       0:00:02.770 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Set flag to indicate that systemd runtime operations are available] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:46
Saturday 21 June 2025  01:25:18 -0400 (0:00:00.036)       0:00:02.806 ********* 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_booted": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Install firewalld] ******************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:51
Saturday 21 June 2025  01:25:18 -0400 (0:00:00.036)       0:00:02.843 ********* 
ok: [managed-node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do
lsrpackages: firewalld

TASK [fedora.linux_system_roles.firewall : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:63
Saturday 21 June 2025  01:25:33 -0400 (0:00:15.556)       0:00:18.400 ********* 
skipping: [managed-node1] => {}

TASK [fedora.linux_system_roles.firewall : Reboot transactional update systems] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:68
Saturday 21 June 2025  01:25:33 -0400 (0:00:00.034)       0:00:18.434 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Fail if reboot is needed and not set] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:73
Saturday 21 June 2025  01:25:33 -0400 (0:00:00.034)       0:00:18.469 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Check which conflicting services are enabled] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:5
Saturday 21 June 2025  01:25:34 -0400 (0:00:00.035)       0:00:18.504 ********* 
skipping: [managed-node1] => (item=nftables)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "nftables",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item=iptables)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "iptables",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item=ufw)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "ufw",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Attempt to stop and disable conflicting services] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:14
Saturday 21 June 2025  01:25:34 -0400 (0:00:00.042)       0:00:18.547 ********* 
skipping: [managed-node1] => (item={'changed': False, 'skipped': True, 'skip_reason': 'Conditional result was False', 'item': 'nftables', 'ansible_loop_var': 'item'})  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": {
        "ansible_loop_var": "item",
        "changed": false,
        "item": "nftables",
        "skip_reason": "Conditional result was False",
        "skipped": true
    },
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item={'changed': False, 'skipped': True, 'skip_reason': 'Conditional result was False', 'item': 'iptables', 'ansible_loop_var': 'item'})  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": {
        "ansible_loop_var": "item",
        "changed": false,
        "item": "iptables",
        "skip_reason": "Conditional result was False",
        "skipped": true
    },
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item={'changed': False, 'skipped': True, 'skip_reason': 'Conditional result was False', 'item': 'ufw', 'ansible_loop_var': 'item'})  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": {
        "ansible_loop_var": "item",
        "changed": false,
        "item": "ufw",
        "skip_reason": "Conditional result was False",
        "skipped": true
    },
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Unmask firewalld service] ***********
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:24
Saturday 21 June 2025  01:25:34 -0400 (0:00:00.045)       0:00:18.592 ********* 
ok: [managed-node1] => {
    "changed": false,
    "name": "firewalld",
    "status": {
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "dbus.service sysinit.target system.slice dbus.socket polkit.service basic.target",
        "AllowIsolate": "no",
        "AllowedCPUs": "",
        "AllowedMemoryNodes": "",
        "AmbientCapabilities": "",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "network-pre.target shutdown.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "no",
        "CPUAffinity": "",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "ebtables.service nftables.service shutdown.target iptables.service ipset.service ip6tables.service",
        "ControlPID": "0",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "man:firewalld(1)",
        "DynamicUser": "no",
        "EffectiveCPUs": "",
        "EffectiveMemoryNodes": "",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOSchedulingClass": "0",
        "IOSchedulingPriority": "0",
        "IOWeight": "[not set]",
        "IPAccounting": "no",
        "IPEgressBytes": "18446744073709551615",
        "IPEgressPackets": "18446744073709551615",
        "IPIngressBytes": "18446744073709551615",
        "IPIngressPackets": "18446744073709551615",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "0",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "65536",
        "LimitMEMLOCKSoft": "65536",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "262144",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "14003",
        "LimitNPROCSoft": "14003",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "14003",
        "LimitSIGPENDINGSoft": "14003",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "MemoryAccounting": "yes",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "MountFlags": "",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAMask": "",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "PermissionsStartOnly": "no",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "sysinit.target system.slice dbus.socket",
        "Restart": "no",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardInputData": "",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "0",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22405",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "0"
    }
}

TASK [fedora.linux_system_roles.firewall : Enable and start firewalld service] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:30
Saturday 21 June 2025  01:25:34 -0400 (0:00:00.744)       0:00:19.336 ********* 
changed: [managed-node1] => {
    "changed": true,
    "enabled": true,
    "name": "firewalld",
    "state": "started",
    "status": {
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "basic.target dbus.service dbus.socket polkit.service sysinit.target system.slice",
        "AllowIsolate": "no",
        "AllowedCPUs": "",
        "AllowedMemoryNodes": "",
        "AmbientCapabilities": "",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "network-pre.target shutdown.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "no",
        "CPUAffinity": "",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "nftables.service ip6tables.service ipset.service ebtables.service shutdown.target iptables.service",
        "ControlPID": "0",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "man:firewalld(1)",
        "DynamicUser": "no",
        "EffectiveCPUs": "",
        "EffectiveMemoryNodes": "",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOSchedulingClass": "0",
        "IOSchedulingPriority": "0",
        "IOWeight": "[not set]",
        "IPAccounting": "no",
        "IPEgressBytes": "18446744073709551615",
        "IPEgressPackets": "18446744073709551615",
        "IPIngressBytes": "18446744073709551615",
        "IPIngressPackets": "18446744073709551615",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "0",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "65536",
        "LimitMEMLOCKSoft": "65536",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "262144",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "14003",
        "LimitNPROCSoft": "14003",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "14003",
        "LimitSIGPENDINGSoft": "14003",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "MemoryAccounting": "yes",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "MountFlags": "",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAMask": "",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "PermissionsStartOnly": "no",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "system.slice dbus.socket sysinit.target",
        "Restart": "no",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardInputData": "",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "0",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22405",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "0"
    }
}

TASK [fedora.linux_system_roles.firewall : Check if previous replaced is defined] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:36
Saturday 21 June 2025  01:25:35 -0400 (0:00:01.080)       0:00:20.417 ********* 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_previous_replaced": false,
        "__firewall_python_cmd": "/usr/libexec/platform-python",
        "__firewall_report_changed": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Get config files, checksums before and remove] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:45
Saturday 21 June 2025  01:25:35 -0400 (0:00:00.039)       0:00:20.456 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Tell firewall module it is able to report changed] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:58
Saturday 21 June 2025  01:25:35 -0400 (0:00:00.037)       0:00:20.494 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Configure firewall] *****************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:74
Saturday 21 June 2025  01:25:36 -0400 (0:00:00.043)       0:00:20.538 ********* 

TASK [fedora.linux_system_roles.firewall : Gather firewall config information] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:126
Saturday 21 June 2025  01:25:36 -0400 (0:00:00.043)       0:00:20.582 ********* 

TASK [fedora.linux_system_roles.firewall : Update firewalld_config fact] *******
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:137
Saturday 21 June 2025  01:25:36 -0400 (0:00:00.036)       0:00:20.619 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Gather firewall config if no arguments] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:146
Saturday 21 June 2025  01:25:36 -0400 (0:00:00.038)       0:00:20.658 ********* 
ok: [managed-node1] => {
    "changed": false,
    "firewall_config": {
        "custom": {
            "zones": {
                "public": {
                    "description": "For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted.",
                    "forward": false,
                    "forward_ports": [],
                    "icmp_block_inversion": false,
                    "icmp_blocks": [],
                    "interfaces": [],
                    "masquerade": false,
                    "ports": [],
                    "protocols": [],
                    "rules_str": [],
                    "services": [
                        "ssh",
                        "dhcpv6-client",
                        "cockpit"
                    ],
                    "short": "Public",
                    "source_ports": [],
                    "sources": [],
                    "target": "default",
                    "version": ""
                }
            }
        },
        "default": {
            "helpers": [
                "Q.931",
                "RAS",
                "amanda",
                "ftp",
                "h323",
                "irc",
                "netbios-ns",
                "pptp",
                "proto-gre",
                "sane",
                "sip",
                "snmp",
                "tftp"
            ],
            "icmptypes": [
                "network-unreachable",
                "no-route",
                "packet-too-big",
                "parameter-problem",
                "port-unreachable",
                "precedence-cutoff",
                "protocol-unreachable",
                "redirect",
                "reject-route",
                "required-option-missing",
                "router-advertisement",
                "router-solicitation",
                "source-quench",
                "source-route-failed",
                "time-exceeded",
                "timestamp-reply",
                "timestamp-request",
                "tos-host-redirect",
                "tos-host-unreachable",
                "tos-network-redirect",
                "tos-network-unreachable",
                "ttl-zero-during-reassembly",
                "ttl-zero-during-transit",
                "unknown-header-type",
                "unknown-option",
                "address-unreachable",
                "bad-header",
                "beyond-scope",
                "communication-prohibited",
                "destination-unreachable",
                "echo-reply",
                "echo-request",
                "failed-policy",
                "fragmentation-needed",
                "host-precedence-violation",
                "host-prohibited",
                "host-redirect",
                "host-unknown",
                "host-unreachable",
                "ip-header-bad",
                "neighbour-advertisement",
                "neighbour-solicitation",
                "network-prohibited",
                "network-redirect",
                "network-unknown"
            ],
            "policies": [
                "allow-host-ipv6"
            ],
            "services": [
                "RH-Satellite-6",
                "amanda-client",
                "amanda-k5-client",
                "amqp",
                "amqps",
                "apcupsd",
                "audit",
                "bacula-client",
                "bacula",
                "bb",
                "bgp",
                "bitcoin-rpc",
                "bitcoin-testnet-rpc",
                "bitcoin-testnet",
                "bitcoin",
                "bittorrent-lsd",
                "ceph-mon",
                "ceph",
                "cfengine",
                "cockpit",
                "collectd",
                "condor-collector",
                "ctdb",
                "dhcp",
                "dhcpv6-client",
                "dhcpv6",
                "distcc",
                "dns-over-tls",
                "dns",
                "docker-registry",
                "docker-swarm",
                "dropbox-lansync",
                "elasticsearch",
                "etcd-client",
                "etcd-server",
                "finger",
                "foreman-proxy",
                "foreman",
                "freeipa-4",
                "freeipa-ldap",
                "freeipa-ldaps",
                "freeipa-replication",
                "freeipa-trust",
                "ftp",
                "galera",
                "ganglia-client",
                "ganglia-master",
                "git",
                "grafana",
                "gre",
                "high-availability",
                "http",
                "https",
                "imap",
                "imaps",
                "ipp-client",
                "ipp",
                "ipsec",
                "irc",
                "ircs",
                "iscsi-target",
                "isns",
                "jenkins",
                "kadmin",
                "kdeconnect",
                "kerberos",
                "kibana",
                "klogin",
                "kpasswd",
                "kprop",
                "kshell",
                "kube-apiserver",
                "ldap",
                "ldaps",
                "libvirt-tls",
                "libvirt",
                "lightning-network",
                "llmnr",
                "managesieve",
                "matrix",
                "mdns",
                "memcache",
                "minidlna",
                "mongodb",
                "mosh",
                "mountd",
                "mqtt-tls",
                "mqtt",
                "ms-wbt",
                "mssql",
                "murmur",
                "mysql",
                "nbd",
                "nfs",
                "nfs3",
                "nmea-0183",
                "nrpe",
                "ntp",
                "nut",
                "openvpn",
                "ovirt-imageio",
                "ovirt-storageconsole",
                "ovirt-vmconsole",
                "plex",
                "pmcd",
                "pmproxy",
                "pmwebapi",
                "pmwebapis",
                "pop3",
                "pop3s",
                "postgresql",
                "privoxy",
                "prometheus",
                "proxy-dhcp",
                "ptp",
                "pulseaudio",
                "puppetmaster",
                "quassel",
                "radius",
                "rdp",
                "redis-sentinel",
                "redis",
                "rpc-bind",
                "rquotad",
                "rsh",
                "rsyncd",
                "rtsp",
                "salt-master",
                "samba-client",
                "samba-dc",
                "samba",
                "sane",
                "sip",
                "sips",
                "slp",
                "smtp-submission",
                "smtp",
                "smtps",
                "snmp",
                "snmptrap",
                "spideroak-lansync",
                "spotify-sync",
                "squid",
                "ssdp",
                "ssh",
                "steam-streaming",
                "svdrp",
                "svn",
                "telnet",
                "tentacle",
                "tftp-client",
                "tftp",
                "tile38",
                "tinc",
                "tor-socks",
                "transmission-client",
                "upnp-client",
                "vdsm",
                "vnc-server",
                "wbem-http",
                "wbem-https",
                "wsman",
                "wsmans",
                "xdmcp",
                "xmpp-bosh",
                "xmpp-client",
                "xmpp-local",
                "xmpp-server",
                "zabbix-agent",
                "zabbix-server",
                "RH-Satellite-6-capsule",
                "syncthing-gui",
                "syncthing",
                "synergy",
                "syslog-tls",
                "syslog"
            ],
            "zones": [
                "nm-shared",
                "block",
                "dmz",
                "drop",
                "external",
                "home",
                "internal",
                "public",
                "trusted",
                "work"
            ]
        },
        "default_zone": "public"
    }
}

TASK [fedora.linux_system_roles.firewall : Update firewalld_config fact] *******
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:152
Saturday 21 June 2025  01:25:36 -0400 (0:00:00.790)       0:00:21.449 ********* 
ok: [managed-node1] => {
    "ansible_facts": {
        "firewall_config": {
            "custom": {
                "zones": {
                    "public": {
                        "description": "For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted.",
                        "forward": false,
                        "forward_ports": [],
                        "icmp_block_inversion": false,
                        "icmp_blocks": [],
                        "interfaces": [],
                        "masquerade": false,
                        "ports": [],
                        "protocols": [],
                        "rules_str": [],
                        "services": [
                            "ssh",
                            "dhcpv6-client",
                            "cockpit"
                        ],
                        "short": "Public",
                        "source_ports": [],
                        "sources": [],
                        "target": "default",
                        "version": ""
                    }
                }
            },
            "default": {
                "helpers": [
                    "Q.931",
                    "RAS",
                    "amanda",
                    "ftp",
                    "h323",
                    "irc",
                    "netbios-ns",
                    "pptp",
                    "proto-gre",
                    "sane",
                    "sip",
                    "snmp",
                    "tftp"
                ],
                "icmptypes": [
                    "network-unreachable",
                    "no-route",
                    "packet-too-big",
                    "parameter-problem",
                    "port-unreachable",
                    "precedence-cutoff",
                    "protocol-unreachable",
                    "redirect",
                    "reject-route",
                    "required-option-missing",
                    "router-advertisement",
                    "router-solicitation",
                    "source-quench",
                    "source-route-failed",
                    "time-exceeded",
                    "timestamp-reply",
                    "timestamp-request",
                    "tos-host-redirect",
                    "tos-host-unreachable",
                    "tos-network-redirect",
                    "tos-network-unreachable",
                    "ttl-zero-during-reassembly",
                    "ttl-zero-during-transit",
                    "unknown-header-type",
                    "unknown-option",
                    "address-unreachable",
                    "bad-header",
                    "beyond-scope",
                    "communication-prohibited",
                    "destination-unreachable",
                    "echo-reply",
                    "echo-request",
                    "failed-policy",
                    "fragmentation-needed",
                    "host-precedence-violation",
                    "host-prohibited",
                    "host-redirect",
                    "host-unknown",
                    "host-unreachable",
                    "ip-header-bad",
                    "neighbour-advertisement",
                    "neighbour-solicitation",
                    "network-prohibited",
                    "network-redirect",
                    "network-unknown"
                ],
                "policies": [
                    "allow-host-ipv6"
                ],
                "services": [
                    "RH-Satellite-6",
                    "amanda-client",
                    "amanda-k5-client",
                    "amqp",
                    "amqps",
                    "apcupsd",
                    "audit",
                    "bacula-client",
                    "bacula",
                    "bb",
                    "bgp",
                    "bitcoin-rpc",
                    "bitcoin-testnet-rpc",
                    "bitcoin-testnet",
                    "bitcoin",
                    "bittorrent-lsd",
                    "ceph-mon",
                    "ceph",
                    "cfengine",
                    "cockpit",
                    "collectd",
                    "condor-collector",
                    "ctdb",
                    "dhcp",
                    "dhcpv6-client",
                    "dhcpv6",
                    "distcc",
                    "dns-over-tls",
                    "dns",
                    "docker-registry",
                    "docker-swarm",
                    "dropbox-lansync",
                    "elasticsearch",
                    "etcd-client",
                    "etcd-server",
                    "finger",
                    "foreman-proxy",
                    "foreman",
                    "freeipa-4",
                    "freeipa-ldap",
                    "freeipa-ldaps",
                    "freeipa-replication",
                    "freeipa-trust",
                    "ftp",
                    "galera",
                    "ganglia-client",
                    "ganglia-master",
                    "git",
                    "grafana",
                    "gre",
                    "high-availability",
                    "http",
                    "https",
                    "imap",
                    "imaps",
                    "ipp-client",
                    "ipp",
                    "ipsec",
                    "irc",
                    "ircs",
                    "iscsi-target",
                    "isns",
                    "jenkins",
                    "kadmin",
                    "kdeconnect",
                    "kerberos",
                    "kibana",
                    "klogin",
                    "kpasswd",
                    "kprop",
                    "kshell",
                    "kube-apiserver",
                    "ldap",
                    "ldaps",
                    "libvirt-tls",
                    "libvirt",
                    "lightning-network",
                    "llmnr",
                    "managesieve",
                    "matrix",
                    "mdns",
                    "memcache",
                    "minidlna",
                    "mongodb",
                    "mosh",
                    "mountd",
                    "mqtt-tls",
                    "mqtt",
                    "ms-wbt",
                    "mssql",
                    "murmur",
                    "mysql",
                    "nbd",
                    "nfs",
                    "nfs3",
                    "nmea-0183",
                    "nrpe",
                    "ntp",
                    "nut",
                    "openvpn",
                    "ovirt-imageio",
                    "ovirt-storageconsole",
                    "ovirt-vmconsole",
                    "plex",
                    "pmcd",
                    "pmproxy",
                    "pmwebapi",
                    "pmwebapis",
                    "pop3",
                    "pop3s",
                    "postgresql",
                    "privoxy",
                    "prometheus",
                    "proxy-dhcp",
                    "ptp",
                    "pulseaudio",
                    "puppetmaster",
                    "quassel",
                    "radius",
                    "rdp",
                    "redis-sentinel",
                    "redis",
                    "rpc-bind",
                    "rquotad",
                    "rsh",
                    "rsyncd",
                    "rtsp",
                    "salt-master",
                    "samba-client",
                    "samba-dc",
                    "samba",
                    "sane",
                    "sip",
                    "sips",
                    "slp",
                    "smtp-submission",
                    "smtp",
                    "smtps",
                    "snmp",
                    "snmptrap",
                    "spideroak-lansync",
                    "spotify-sync",
                    "squid",
                    "ssdp",
                    "ssh",
                    "steam-streaming",
                    "svdrp",
                    "svn",
                    "telnet",
                    "tentacle",
                    "tftp-client",
                    "tftp",
                    "tile38",
                    "tinc",
                    "tor-socks",
                    "transmission-client",
                    "upnp-client",
                    "vdsm",
                    "vnc-server",
                    "wbem-http",
                    "wbem-https",
                    "wsman",
                    "wsmans",
                    "xdmcp",
                    "xmpp-bosh",
                    "xmpp-client",
                    "xmpp-local",
                    "xmpp-server",
                    "zabbix-agent",
                    "zabbix-server",
                    "RH-Satellite-6-capsule",
                    "syncthing-gui",
                    "syncthing",
                    "synergy",
                    "syslog-tls",
                    "syslog"
                ],
                "zones": [
                    "nm-shared",
                    "block",
                    "dmz",
                    "drop",
                    "external",
                    "home",
                    "internal",
                    "public",
                    "trusted",
                    "work"
                ]
            },
            "default_zone": "public"
        }
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Get config files, checksums after] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:161
Saturday 21 June 2025  01:25:36 -0400 (0:00:00.046)       0:00:21.496 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Calculate what has changed] *********
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:172
Saturday 21 June 2025  01:25:37 -0400 (0:00:00.035)       0:00:21.531 ********* 
skipping: [managed-node1] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Show diffs] *************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:178
Saturday 21 June 2025  01:25:37 -0400 (0:00:00.048)       0:00:21.579 ********* 
skipping: [managed-node1] => {}

TASK [Get default zone] ********************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:11
Saturday 21 June 2025  01:25:37 -0400 (0:00:00.049)       0:00:21.629 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--get-default-zone"
    ],
    "delta": "0:00:00.306212",
    "end": "2025-06-21 01:25:37.790747",
    "rc": 0,
    "start": "2025-06-21 01:25:37.484535"
}

STDOUT:

public

TASK [Remove custom zone] ******************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:21
Saturday 21 June 2025  01:25:37 -0400 (0:00:00.710)       0:00:22.340 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--delete-zone=custom"
    ],
    "delta": "0:00:00.299225",
    "end": "2025-06-21 01:25:38.469830",
    "failed_when_result": false,
    "rc": 112,
    "start": "2025-06-21 01:25:38.170605"
}

STDERR:

INVALID_ZONE: get_zone(): custom


MSG:

non-zero return code

TASK [Reset internal zone to defaults] *****************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:27
Saturday 21 June 2025  01:25:38 -0400 (0:00:00.717)       0:00:23.058 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=internal"
    ],
    "delta": "0:00:00.299656",
    "end": "2025-06-21 01:25:39.198901",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-06-21 01:25:38.899245"
}

STDERR:

NO_DEFAULTS: internal


MSG:

non-zero return code

TASK [Reset trusted zone to defaults] ******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:33
Saturday 21 June 2025  01:25:39 -0400 (0:00:00.711)       0:00:23.770 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=trusted"
    ],
    "delta": "0:00:00.300604",
    "end": "2025-06-21 01:25:39.884314",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-06-21 01:25:39.583710"
}

STDERR:

NO_DEFAULTS: trusted


MSG:

non-zero return code

TASK [Reset dmz zone to defaults] **********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:39
Saturday 21 June 2025  01:25:39 -0400 (0:00:00.686)       0:00:24.456 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=dmz"
    ],
    "delta": "0:00:00.302404",
    "end": "2025-06-21 01:25:40.572044",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-06-21 01:25:40.269640"
}

STDERR:

NO_DEFAULTS: dmz


MSG:

non-zero return code

TASK [Reset drop zone to defaults] *********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:45
Saturday 21 June 2025  01:25:40 -0400 (0:00:00.694)       0:00:25.151 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=drop"
    ],
    "delta": "0:00:00.298512",
    "end": "2025-06-21 01:25:41.283483",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-06-21 01:25:40.984971"
}

STDERR:

NO_DEFAULTS: drop


MSG:

non-zero return code

TASK [Reset public zone to defaults] *******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:51
Saturday 21 June 2025  01:25:41 -0400 (0:00:00.704)       0:00:25.856 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.302332",
    "end": "2025-06-21 01:25:41.975179",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:25:41.672847"
}

STDOUT:

success

TASK [Reset default zone to defaults] ******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:57
Saturday 21 June 2025  01:25:42 -0400 (0:00:00.693)       0:00:26.549 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": "zone=$(firewall-offline-cmd --get-default-zone)\nfirewall-offline-cmd --load-zone-defaults=$zone\n",
    "delta": "0:00:00.608159",
    "end": "2025-06-21 01:25:42.975262",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:25:42.367103"
}

STDOUT:

success

TASK [Create custom zone] ******************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:66
Saturday 21 June 2025  01:25:43 -0400 (0:00:00.997)       0:00:27.546 ********* 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-offline-cmd",
        "--new-zone=custom"
    ],
    "delta": "0:00:00.302079",
    "end": "2025-06-21 01:25:43.660398",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:25:43.358319"
}

STDOUT:

success

TASK [Reload firewalld] ********************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:72
Saturday 21 June 2025  01:25:43 -0400 (0:00:00.686)       0:00:28.233 ********* 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--reload"
    ],
    "delta": "0:00:00.699938",
    "end": "2025-06-21 01:25:44.745076",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:25:44.045138"
}

STDOUT:

success

TASK [Permit traffic in default zone for https service] ************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:81
Saturday 21 June 2025  01:25:44 -0400 (0:00:01.105)       0:00:29.339 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Permit traffic in default zone for https service, again] *****************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:90
Saturday 21 June 2025  01:25:45 -0400 (0:00:00.767)       0:00:30.107 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Permit traffic in default zone on port 8081/tcp] *************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:99
Saturday 21 June 2025  01:25:46 -0400 (0:00:00.632)       0:00:30.739 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Permit traffic in default zone on port 8081/tcp, again] ******************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:108
Saturday 21 June 2025  01:25:46 -0400 (0:00:00.653)       0:00:31.393 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow port 161-162/udp in permanent default zone] ************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:117
Saturday 21 June 2025  01:25:47 -0400 (0:00:00.666)       0:00:32.059 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow port 161-162/udp in permanent default zone, again] *****************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:126
Saturday 21 June 2025  01:25:48 -0400 (0:00:00.610)       0:00:32.669 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Do not permit traffic in default zone on port 8081/tcp] ******************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:135
Saturday 21 June 2025  01:25:48 -0400 (0:00:00.631)       0:00:33.301 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Do not permit traffic in default zone on port 8081/tcp, again] ***********
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:144
Saturday 21 June 2025  01:25:49 -0400 (0:00:00.606)       0:00:33.907 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow service http in permanent dmz zone] ********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:153
Saturday 21 June 2025  01:25:50 -0400 (0:00:00.611)       0:00:34.518 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow service http in permanent dmz zone, again] *************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:163
Saturday 21 June 2025  01:25:50 -0400 (0:00:00.637)       0:00:35.156 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow service ftp with limitation using rich rule in permanent default zone] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:173
Saturday 21 June 2025  01:25:51 -0400 (0:00:00.611)       0:00:35.767 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow service ftp with limitation using rich rule in permanent default zone, again] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:182
Saturday 21 June 2025  01:25:51 -0400 (0:00:00.621)       0:00:36.389 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow source 192.0.2.0/24 in internal zone] ******************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:191
Saturday 21 June 2025  01:25:52 -0400 (0:00:00.608)       0:00:36.997 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow source 192.0.2.0/24 in internal zone, again] ***********************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:201
Saturday 21 June 2025  01:25:53 -0400 (0:00:00.646)       0:00:37.644 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow nm interface eth0 in permanent trusted zone] ***********************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:211
Saturday 21 June 2025  01:25:53 -0400 (0:00:00.645)       0:00:38.289 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow nm interface eth0 in permanent trusted zone, again] ****************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:221
Saturday 21 June 2025  01:25:54 -0400 (0:00:00.635)       0:00:38.925 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable nm interface eth0 in permanent trusted zone] *********************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:231
Saturday 21 June 2025  01:25:55 -0400 (0:00:00.623)       0:00:39.548 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Disable nm interface eth0 in permanent trusted zone, again] **************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:241
Saturday 21 June 2025  01:25:55 -0400 (0:00:00.641)       0:00:40.190 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow interface eth2 in permanent trusted zone] **************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:251
Saturday 21 June 2025  01:25:56 -0400 (0:00:00.613)       0:00:40.803 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow interface eth2 in permanent trusted zone, again] *******************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:261
Saturday 21 June 2025  01:25:56 -0400 (0:00:00.658)       0:00:41.461 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow masquerading in permanent dmz zone] ********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:271
Saturday 21 June 2025  01:25:57 -0400 (0:00:00.679)       0:00:42.141 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow masquerading in permanent dmz zone, again] *************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:280
Saturday 21 June 2025  01:25:58 -0400 (0:00:00.638)       0:00:42.780 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure permanent custom zone exists (no change)] *************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:289
Saturday 21 June 2025  01:25:58 -0400 (0:00:00.620)       0:00:43.401 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure ICMP block inversion in permanent drop zone] **********************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:298
Saturday 21 June 2025  01:25:59 -0400 (0:00:00.619)       0:00:44.020 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure ICMP block inversion in permanent drop zone, again] ***************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:307
Saturday 21 June 2025  01:26:00 -0400 (0:00:00.610)       0:00:44.631 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Block ICMP echo-request in permanent drop zone] **************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:316
Saturday 21 June 2025  01:26:00 -0400 (0:00:00.625)       0:00:45.256 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Block ICMP echo-request in permanent drop zone, again] *******************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:326
Saturday 21 June 2025  01:26:01 -0400 (0:00:00.680)       0:00:45.937 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone (no change)] ************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:336
Saturday 21 June 2025  01:26:02 -0400 (0:00:00.645)       0:00:46.583 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure target ACCEPT in permanent internal zone] *************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:346
Saturday 21 June 2025  01:26:02 -0400 (0:00:00.672)       0:00:47.255 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure target ACCEPT in permanent internal zone, again] ******************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:356
Saturday 21 June 2025  01:26:03 -0400 (0:00:01.242)       0:00:48.497 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone] ************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:366
Saturday 21 June 2025  01:26:04 -0400 (0:00:00.633)       0:00:49.130 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone, again] *****************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:376
Saturday 21 June 2025  01:26:05 -0400 (0:00:01.065)       0:00:50.196 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:386
Saturday 21 June 2025  01:26:06 -0400 (0:00:00.618)       0:00:50.815 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone, again] ***
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:398
Saturday 21 June 2025  01:26:06 -0400 (0:00:00.664)       0:00:51.479 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Firewalld custom zone] ***************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:410
Saturday 21 June 2025  01:26:07 -0400 (0:00:00.679)       0:00:52.158 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true
}

TASK [Assert firewalld custom zone] ********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:420
Saturday 21 June 2025  01:26:08 -0400 (0:00:01.066)       0:00:53.224 ********* 
ok: [managed-node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Add masquerade to custom zone] *******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:427
Saturday 21 June 2025  01:26:08 -0400 (0:00:00.036)       0:00:53.260 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add masquerade to custom zone, again] ************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:439
Saturday 21 June 2025  01:26:09 -0400 (0:00:00.618)       0:00:53.879 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Set the default zone to something other than dmz] ************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:451
Saturday 21 June 2025  01:26:10 -0400 (0:00:00.646)       0:00:54.526 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": "cur_zone=$(firewall-offline-cmd --get-default-zone)\nif [ \"$cur_zone\" != public ]; then\n  firewall-offline-cmd --set-default-zone public\nfi\n",
    "delta": "0:00:00.312656",
    "end": "2025-06-21 01:26:10.674028",
    "rc": 0,
    "start": "2025-06-21 01:26:10.361372"
}

TASK [Set default zone (runtime)] **********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:460
Saturday 21 June 2025  01:26:10 -0400 (0:00:00.705)       0:00:55.231 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Set default zone, again (runtime)] ***************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:469
Saturday 21 June 2025  01:26:11 -0400 (0:00:00.687)       0:00:55.918 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add multiple custom services] ********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:478
Saturday 21 June 2025  01:26:12 -0400 (0:00:00.622)       0:00:56.540 ********* 
ok: [managed-node1] => {
    "changed": false,
    "failed_when_result": false
}

MSG:

can only add, modify, or remove one service at a time

TASK [Add custom service without details] **************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:489
Saturday 21 June 2025  01:26:12 -0400 (0:00:00.535)       0:00:57.076 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add custom service that already exists] **********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:498
Saturday 21 June 2025  01:26:13 -0400 (0:00:01.073)       0:00:58.149 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add description to custom service] ***************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:507
Saturday 21 June 2025  01:26:14 -0400 (0:00:00.636)       0:00:58.785 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add short description to custom service] *********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:517
Saturday 21 June 2025  01:26:15 -0400 (0:00:01.105)       0:00:59.890 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add source_ports to custom service] **************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:527
Saturday 21 June 2025  01:26:16 -0400 (0:00:01.100)       0:01:00.991 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add source_ports to custom service again] ********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:537
Saturday 21 June 2025  01:26:17 -0400 (0:00:01.084)       0:01:02.076 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add invalid protocol to custom service] **********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:547
Saturday 21 June 2025  01:26:18 -0400 (0:00:00.632)       0:01:02.708 ********* 
ok: [managed-node1] => {
    "changed": false,
    "failed_when_result": false
}

MSG:

INVALID_PROTOCOL: nonexistentprotocol

TASK [Add valid protocol to custom service] ************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:557
Saturday 21 June 2025  01:26:18 -0400 (0:00:00.678)       0:01:03.386 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove valid protocol from customservice] ********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:567
Saturday 21 June 2025  01:26:19 -0400 (0:00:01.091)       0:01:04.478 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove ports from custom service without deleting service] ***************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:577
Saturday 21 June 2025  01:26:21 -0400 (0:00:01.092)       0:01:05.571 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add destination addresses] ***********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:587
Saturday 21 June 2025  01:26:22 -0400 (0:00:01.131)       0:01:06.702 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add includes] ************************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:599
Saturday 21 June 2025  01:26:23 -0400 (0:00:01.093)       0:01:07.796 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add includes again to check idempotence] *********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:614
Saturday 21 June 2025  01:26:24 -0400 (0:00:01.080)       0:01:08.876 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Delete custom service] ***************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:629
Saturday 21 June 2025  01:26:25 -0400 (0:00:00.645)       0:01:09.522 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Delete custom service again] *********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:638
Saturday 21 June 2025  01:26:26 -0400 (0:00:01.086)       0:01:10.608 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add custom service with all the elements at once] ************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:647
Saturday 21 June 2025  01:26:26 -0400 (0:00:00.616)       0:01:11.225 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Verify service settings] *************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:667
Saturday 21 June 2025  01:26:27 -0400 (0:00:01.097)       0:01:12.323 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--info-service",
        "customservice"
    ],
    "delta": "0:00:00.304904",
    "end": "2025-06-21 01:26:28.445782",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:28.140878"
}

STDOUT:

customservice
  ports: 333/tcp
  protocols: ipv6
  source-ports: 333/tcp
  modules: 
  destination: ipv4:123.45.6.78 ipv6:aaaa:aaaa:aaaa:aaa:aaaa:aaaa:aaaa::
  includes: https ldaps
  helpers: nf_conntrack_ftp

TASK [Verify includes and helper service settings] *****************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:679
Saturday 21 June 2025  01:26:28 -0400 (0:00:00.704)       0:01:13.027 ********* 
ok: [managed-node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Add helper module that already is on customservice] **********************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:686
Saturday 21 June 2025  01:26:28 -0400 (0:00:00.044)       0:01:13.072 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Forward port 40 to 0.0.0.0:8080 (string)] ********************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:697
Saturday 21 June 2025  01:26:29 -0400 (0:00:00.639)       0:01:13.712 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward same port again (string)] ****************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:706
Saturday 21 June 2025  01:26:29 -0400 (0:00:00.637)       0:01:14.349 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable forward port (string)] *******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:715
Saturday 21 June 2025  01:26:30 -0400 (0:00:00.622)       0:01:14.971 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port (dict form)] ************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:724
Saturday 21 June 2025  01:26:31 -0400 (0:00:00.640)       0:01:15.612 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port again (dict form)] ******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:737
Saturday 21 June 2025  01:26:31 -0400 (0:00:00.692)       0:01:16.304 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable forward port (dict form)] ****************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:750
Saturday 21 June 2025  01:26:32 -0400 (0:00:00.679)       0:01:16.984 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port 40 to 0.0.0.0:8080 (permanent)] *****************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:763
Saturday 21 June 2025  01:26:33 -0400 (0:00:00.690)       0:01:17.674 ********* 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward same port again (permanent)] *************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:772
Saturday 21 June 2025  01:26:33 -0400 (0:00:00.621)       0:01:18.296 ********* 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Remove custom zone] ******************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:789
Saturday 21 June 2025  01:26:34 -0400 (0:00:00.620)       0:01:18.916 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--delete-zone=custom"
    ],
    "delta": "0:00:00.310637",
    "end": "2025-06-21 01:26:35.044299",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:34.733662"
}

STDOUT:

success

TASK [Remove customzone zone] **************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:795
Saturday 21 June 2025  01:26:35 -0400 (0:00:00.702)       0:01:19.618 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--delete-zone=customzone"
    ],
    "delta": "0:00:00.313900",
    "end": "2025-06-21 01:26:35.761023",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:35.447123"
}

STDOUT:

success

TASK [Reset internal zone to defaults] *****************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:801
Saturday 21 June 2025  01:26:35 -0400 (0:00:00.727)       0:01:20.346 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=internal"
    ],
    "delta": "0:00:00.308315",
    "end": "2025-06-21 01:26:36.488951",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:36.180636"
}

STDOUT:

success

TASK [Reset trusted zone to defaults] ******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:807
Saturday 21 June 2025  01:26:36 -0400 (0:00:00.716)       0:01:21.062 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=trusted"
    ],
    "delta": "0:00:00.305505",
    "end": "2025-06-21 01:26:37.185126",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:36.879621"
}

STDOUT:

success

TASK [Reset dmz zone to defaults] **********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:813
Saturday 21 June 2025  01:26:37 -0400 (0:00:00.722)       0:01:21.785 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=dmz"
    ],
    "delta": "0:00:00.310167",
    "end": "2025-06-21 01:26:37.966878",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:37.656711"
}

STDOUT:

success

TASK [Reset drop zone to defaults] *********************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:819
Saturday 21 June 2025  01:26:38 -0400 (0:00:00.783)       0:01:22.569 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=drop"
    ],
    "delta": "0:00:00.306162",
    "end": "2025-06-21 01:26:38.704004",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:38.397842"
}

STDOUT:

success

TASK [Reset public zone to defaults] *******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:825
Saturday 21 June 2025  01:26:38 -0400 (0:00:00.727)       0:01:23.297 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.304552",
    "end": "2025-06-21 01:26:39.454727",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:39.150175"
}

STDOUT:

success

TASK [Reset default zone to defaults] ******************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:831
Saturday 21 June 2025  01:26:39 -0400 (0:00:00.739)       0:01:24.036 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.305623",
    "end": "2025-06-21 01:26:40.157673",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-06-21 01:26:39.852050"
}

STDERR:

NO_DEFAULTS: public


MSG:

non-zero return code

TASK [Reset default zone] ******************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:837
Saturday 21 June 2025  01:26:40 -0400 (0:00:00.694)       0:01:24.731 ********* 
ok: [managed-node1] => {
    "changed": false,
    "cmd": "cur_zone=$(firewall-offline-cmd --get-default-zone)\nif [ \"$cur_zone\" != public ]; then\n  firewall-offline-cmd --set-default-zone=public\nfi\n",
    "delta": "0:00:00.612505",
    "end": "2025-06-21 01:26:41.224800",
    "rc": 0,
    "start": "2025-06-21 01:26:40.612295"
}

STDOUT:

success

TASK [Reload firewalld] ********************************************************
task path: /tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:846
Saturday 21 June 2025  01:26:41 -0400 (0:00:01.044)       0:01:25.775 ********* 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--reload"
    ],
    "delta": "0:00:00.706544",
    "end": "2025-06-21 01:26:42.307999",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-06-21 01:26:41.601455"
}

STDOUT:

success
META: ran handlers
META: ran handlers

PLAY RECAP *********************************************************************
managed-node1              : ok=103  changed=39   unreachable=0    failed=0    skipped=15   rescued=0    ignored=0   

SYSTEM ROLES ERRORS BEGIN v1
[]
SYSTEM ROLES ERRORS END v1

TASKS RECAP ********************************************************************
Saturday 21 June 2025  01:26:42 -0400 (0:00:01.107)       0:01:26.883 ********* 
=============================================================================== 
fedora.linux_system_roles.firewall : Install firewalld ----------------- 15.56s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:51 
Ensure target ACCEPT in permanent internal zone ------------------------- 1.24s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:346 
Gathering Facts --------------------------------------------------------- 1.19s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:2 
Remove ports from custom service without deleting service --------------- 1.13s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:577 
Reload firewalld -------------------------------------------------------- 1.11s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:846 
Reload firewalld -------------------------------------------------------- 1.11s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:72 
Add description to custom service --------------------------------------- 1.11s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:507 
Add short description to custom service --------------------------------- 1.10s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:517 
Add custom service with all the elements at once ------------------------ 1.10s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:647 
Add destination addresses ----------------------------------------------- 1.09s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:587 
Remove valid protocol from customservice -------------------------------- 1.09s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:567 
Add valid protocol to custom service ------------------------------------ 1.09s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:557 
Delete custom service --------------------------------------------------- 1.09s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:629 
Add source_ports to custom service -------------------------------------- 1.08s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:527 
Add includes ------------------------------------------------------------ 1.08s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:599 
fedora.linux_system_roles.firewall : Enable and start firewalld service --- 1.08s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:30 
Add custom service without details -------------------------------------- 1.07s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:489 
Firewalld custom zone --------------------------------------------------- 1.07s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:410 
Ensure default target in permanent internal zone ------------------------ 1.07s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:366 
Reset default zone ------------------------------------------------------ 1.04s
/tmp/collections-qge/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:837