ansible-playbook [core 2.16.14]
  config file = None
  configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
  ansible python module location = /usr/local/lib/python3.12/site-packages/ansible
  ansible collection location = /tmp/collections-zm4
  executable location = /usr/local/bin/ansible-playbook
  python version = 3.12.1 (main, Feb 21 2024, 14:18:26) [GCC 8.5.0 20210514 (Red Hat 8.5.0-21)] (/usr/bin/python3.12)
  jinja version = 3.1.6
  libyaml = True
No config file found; using defaults
running playbook inside collection fedora.linux_system_roles
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.debug to ansible.posix.debug
redirecting (type: callback) ansible.builtin.profile_tasks to ansible.posix.profile_tasks
Skipping callback 'default', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.

PLAYBOOK: tests_ansible.yml ****************************************************
1 plays in /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml

PLAY [Ensure that the roles runs with default parameters] **********************

TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:2
Tuesday 20 May 2025  04:58:25 -0400 (0:00:00.011)       0:00:00.011 *********** 
ok: [managed-node1]

TASK [fedora.linux_system_roles.firewall : Setup firewalld] ********************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:2
Tuesday 20 May 2025  04:58:26 -0400 (0:00:01.327)       0:00:01.338 *********** 
included: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml for managed-node1

TASK [fedora.linux_system_roles.firewall : Ensure ansible_facts used by role] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:2
Tuesday 20 May 2025  04:58:26 -0400 (0:00:00.025)       0:00:01.363 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_required_facts | difference(ansible_facts.keys() | list) | length > 0",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Check if system is ostree] **********
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:10
Tuesday 20 May 2025  04:58:26 -0400 (0:00:00.035)       0:00:01.399 *********** 
ok: [managed-node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.firewall : Set flag to indicate system is ostree] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:15
Tuesday 20 May 2025  04:58:26 -0400 (0:00:00.487)       0:00:01.887 *********** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_ostree": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:22
Tuesday 20 May 2025  04:58:27 -0400 (0:00:00.032)       0:00:01.919 *********** 
ok: [managed-node1] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.firewall : Set flag if transactional-update exists] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:27
Tuesday 20 May 2025  04:58:27 -0400 (0:00:00.372)       0:00:02.292 *********** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_transactional": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Run systemctl] **********************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:34
Tuesday 20 May 2025  04:58:27 -0400 (0:00:00.029)       0:00:02.322 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "systemctl",
        "is-system-running"
    ],
    "delta": "0:00:00.008261",
    "end": "2025-05-20 04:58:27.884320",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:58:27.876059"
}

STDOUT:

running

TASK [fedora.linux_system_roles.firewall : Require installed systemd] **********
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:41
Tuesday 20 May 2025  04:58:27 -0400 (0:00:00.517)       0:00:02.839 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "\"No such file or directory\" in __is_system_running.msg | d(\"\")",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Set flag to indicate that systemd runtime operations are available] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:46
Tuesday 20 May 2025  04:58:27 -0400 (0:00:00.039)       0:00:02.878 *********** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_is_booted": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Install firewalld] ******************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:51
Tuesday 20 May 2025  04:58:27 -0400 (0:00:00.022)       0:00:02.901 *********** 
ok: [managed-node1] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do

TASK [fedora.linux_system_roles.firewall : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:63
Tuesday 20 May 2025  04:58:42 -0400 (0:00:15.003)       0:00:17.905 *********** 
skipping: [managed-node1] => {
    "false_condition": "__firewall_is_transactional | d(false)"
}

TASK [fedora.linux_system_roles.firewall : Reboot transactional update systems] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:68
Tuesday 20 May 2025  04:58:43 -0400 (0:00:00.034)       0:00:17.939 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Fail if reboot is needed and not set] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:73
Tuesday 20 May 2025  04:58:43 -0400 (0:00:00.035)       0:00:17.975 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_is_transactional | d(false)",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Check which conflicting services are enabled] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:5
Tuesday 20 May 2025  04:58:43 -0400 (0:00:00.033)       0:00:18.008 *********** 
skipping: [managed-node1] => (item=nftables)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": "nftables",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item=iptables)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": "iptables",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item=ufw)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": "ufw",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.firewall : Attempt to stop and disable conflicting services] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:14
Tuesday 20 May 2025  04:58:43 -0400 (0:00:00.039)       0:00:18.048 *********** 
skipping: [managed-node1] => (item={'changed': False, 'skipped': True, 'skip_reason': 'Conditional result was False', 'false_condition': 'firewall_disable_conflicting_services | bool', 'item': 'nftables', 'ansible_loop_var': 'item'})  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": {
        "ansible_loop_var": "item",
        "changed": false,
        "false_condition": "firewall_disable_conflicting_services | bool",
        "item": "nftables",
        "skip_reason": "Conditional result was False",
        "skipped": true
    },
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item={'changed': False, 'skipped': True, 'skip_reason': 'Conditional result was False', 'false_condition': 'firewall_disable_conflicting_services | bool', 'item': 'iptables', 'ansible_loop_var': 'item'})  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": {
        "ansible_loop_var": "item",
        "changed": false,
        "false_condition": "firewall_disable_conflicting_services | bool",
        "item": "iptables",
        "skip_reason": "Conditional result was False",
        "skipped": true
    },
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => (item={'changed': False, 'skipped': True, 'skip_reason': 'Conditional result was False', 'false_condition': 'firewall_disable_conflicting_services | bool', 'item': 'ufw', 'ansible_loop_var': 'item'})  => {
    "ansible_loop_var": "item",
    "changed": false,
    "false_condition": "firewall_disable_conflicting_services | bool",
    "item": {
        "ansible_loop_var": "item",
        "changed": false,
        "false_condition": "firewall_disable_conflicting_services | bool",
        "item": "ufw",
        "skip_reason": "Conditional result was False",
        "skipped": true
    },
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node1] => {
    "changed": false
}

MSG:

All items skipped

TASK [fedora.linux_system_roles.firewall : Unmask firewalld service] ***********
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:24
Tuesday 20 May 2025  04:58:43 -0400 (0:00:00.041)       0:00:18.089 *********** 
ok: [managed-node1] => {
    "changed": false,
    "name": "firewalld",
    "status": {
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "sysinit.target basic.target system.slice dbus.socket polkit.service dbus.service",
        "AllowIsolate": "no",
        "AllowedCPUs": "",
        "AllowedMemoryNodes": "",
        "AmbientCapabilities": "",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "network-pre.target shutdown.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "no",
        "CPUAffinity": "",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "shutdown.target ipset.service ebtables.service ip6tables.service nftables.service iptables.service",
        "ControlPID": "0",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "man:firewalld(1)",
        "DynamicUser": "no",
        "EffectiveCPUs": "",
        "EffectiveMemoryNodes": "",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOSchedulingClass": "0",
        "IOSchedulingPriority": "0",
        "IOWeight": "[not set]",
        "IPAccounting": "no",
        "IPEgressBytes": "18446744073709551615",
        "IPEgressPackets": "18446744073709551615",
        "IPIngressBytes": "18446744073709551615",
        "IPIngressPackets": "18446744073709551615",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "0",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "65536",
        "LimitMEMLOCKSoft": "65536",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "262144",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "14003",
        "LimitNPROCSoft": "14003",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "14003",
        "LimitSIGPENDINGSoft": "14003",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "MemoryAccounting": "yes",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "MountFlags": "",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAMask": "",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "PermissionsStartOnly": "no",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "sysinit.target dbus.socket system.slice",
        "Restart": "no",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardInputData": "",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "0",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22405",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "0"
    }
}

TASK [fedora.linux_system_roles.firewall : Enable and start firewalld service] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:30
Tuesday 20 May 2025  04:58:43 -0400 (0:00:00.727)       0:00:18.817 *********** 
changed: [managed-node1] => {
    "changed": true,
    "enabled": true,
    "name": "firewalld",
    "state": "started",
    "status": {
        "ActiveEnterTimestampMonotonic": "0",
        "ActiveExitTimestampMonotonic": "0",
        "ActiveState": "inactive",
        "After": "basic.target polkit.service dbus.socket sysinit.target system.slice dbus.service",
        "AllowIsolate": "no",
        "AllowedCPUs": "",
        "AllowedMemoryNodes": "",
        "AmbientCapabilities": "",
        "AssertResult": "no",
        "AssertTimestampMonotonic": "0",
        "Before": "network-pre.target shutdown.target",
        "BlockIOAccounting": "no",
        "BlockIOWeight": "[not set]",
        "BusName": "org.fedoraproject.FirewallD1",
        "CPUAccounting": "no",
        "CPUAffinity": "",
        "CPUAffinityFromNUMA": "no",
        "CPUQuotaPerSecUSec": "infinity",
        "CPUQuotaPeriodUSec": "infinity",
        "CPUSchedulingPolicy": "0",
        "CPUSchedulingPriority": "0",
        "CPUSchedulingResetOnFork": "no",
        "CPUShares": "[not set]",
        "CPUUsageNSec": "[not set]",
        "CPUWeight": "[not set]",
        "CacheDirectoryMode": "0755",
        "CanFreeze": "yes",
        "CanIsolate": "no",
        "CanReload": "yes",
        "CanStart": "yes",
        "CanStop": "yes",
        "CapabilityBoundingSet": "cap_chown cap_dac_override cap_dac_read_search cap_fowner cap_fsetid cap_kill cap_setgid cap_setuid cap_setpcap cap_linux_immutable cap_net_bind_service cap_net_broadcast cap_net_admin cap_net_raw cap_ipc_lock cap_ipc_owner cap_sys_module cap_sys_rawio cap_sys_chroot cap_sys_ptrace cap_sys_pacct cap_sys_admin cap_sys_boot cap_sys_nice cap_sys_resource cap_sys_time cap_sys_tty_config cap_mknod cap_lease cap_audit_write cap_audit_control cap_setfcap cap_mac_override cap_mac_admin cap_syslog cap_wake_alarm cap_block_suspend cap_audit_read cap_perfmon cap_bpf",
        "CollectMode": "inactive",
        "ConditionResult": "no",
        "ConditionTimestampMonotonic": "0",
        "ConfigurationDirectoryMode": "0755",
        "Conflicts": "ebtables.service ipset.service nftables.service ip6tables.service iptables.service shutdown.target",
        "ControlPID": "0",
        "DefaultDependencies": "yes",
        "DefaultMemoryLow": "0",
        "DefaultMemoryMin": "0",
        "Delegate": "no",
        "Description": "firewalld - dynamic firewall daemon",
        "DevicePolicy": "auto",
        "Documentation": "man:firewalld(1)",
        "DynamicUser": "no",
        "EffectiveCPUs": "",
        "EffectiveMemoryNodes": "",
        "EnvironmentFiles": "/etc/sysconfig/firewalld (ignore_errors=yes)",
        "ExecMainCode": "0",
        "ExecMainExitTimestampMonotonic": "0",
        "ExecMainPID": "0",
        "ExecMainStartTimestampMonotonic": "0",
        "ExecMainStatus": "0",
        "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }",
        "FailureAction": "none",
        "FileDescriptorStoreMax": "0",
        "FragmentPath": "/usr/lib/systemd/system/firewalld.service",
        "FreezerState": "running",
        "GID": "[not set]",
        "GuessMainPID": "yes",
        "IOAccounting": "no",
        "IOSchedulingClass": "0",
        "IOSchedulingPriority": "0",
        "IOWeight": "[not set]",
        "IPAccounting": "no",
        "IPEgressBytes": "18446744073709551615",
        "IPEgressPackets": "18446744073709551615",
        "IPIngressBytes": "18446744073709551615",
        "IPIngressPackets": "18446744073709551615",
        "Id": "firewalld.service",
        "IgnoreOnIsolate": "no",
        "IgnoreSIGPIPE": "yes",
        "InactiveEnterTimestampMonotonic": "0",
        "InactiveExitTimestampMonotonic": "0",
        "JobRunningTimeoutUSec": "infinity",
        "JobTimeoutAction": "none",
        "JobTimeoutUSec": "infinity",
        "KeyringMode": "private",
        "KillMode": "mixed",
        "KillSignal": "15",
        "LimitAS": "infinity",
        "LimitASSoft": "infinity",
        "LimitCORE": "infinity",
        "LimitCORESoft": "0",
        "LimitCPU": "infinity",
        "LimitCPUSoft": "infinity",
        "LimitDATA": "infinity",
        "LimitDATASoft": "infinity",
        "LimitFSIZE": "infinity",
        "LimitFSIZESoft": "infinity",
        "LimitLOCKS": "infinity",
        "LimitLOCKSSoft": "infinity",
        "LimitMEMLOCK": "65536",
        "LimitMEMLOCKSoft": "65536",
        "LimitMSGQUEUE": "819200",
        "LimitMSGQUEUESoft": "819200",
        "LimitNICE": "0",
        "LimitNICESoft": "0",
        "LimitNOFILE": "262144",
        "LimitNOFILESoft": "1024",
        "LimitNPROC": "14003",
        "LimitNPROCSoft": "14003",
        "LimitRSS": "infinity",
        "LimitRSSSoft": "infinity",
        "LimitRTPRIO": "0",
        "LimitRTPRIOSoft": "0",
        "LimitRTTIME": "infinity",
        "LimitRTTIMESoft": "infinity",
        "LimitSIGPENDING": "14003",
        "LimitSIGPENDINGSoft": "14003",
        "LimitSTACK": "infinity",
        "LimitSTACKSoft": "8388608",
        "LoadState": "loaded",
        "LockPersonality": "no",
        "LogLevelMax": "-1",
        "LogRateLimitBurst": "0",
        "LogRateLimitIntervalUSec": "0",
        "LogsDirectoryMode": "0755",
        "MainPID": "0",
        "MemoryAccounting": "yes",
        "MemoryCurrent": "[not set]",
        "MemoryDenyWriteExecute": "no",
        "MemoryHigh": "infinity",
        "MemoryLimit": "infinity",
        "MemoryLow": "0",
        "MemoryMax": "infinity",
        "MemoryMin": "0",
        "MemorySwapMax": "infinity",
        "MountAPIVFS": "no",
        "MountFlags": "",
        "NFileDescriptorStore": "0",
        "NRestarts": "0",
        "NUMAMask": "",
        "NUMAPolicy": "n/a",
        "Names": "firewalld.service",
        "NeedDaemonReload": "no",
        "Nice": "0",
        "NoNewPrivileges": "no",
        "NonBlocking": "no",
        "NotifyAccess": "none",
        "OOMScoreAdjust": "0",
        "OnFailureJobMode": "replace",
        "PermissionsStartOnly": "no",
        "Perpetual": "no",
        "PrivateDevices": "no",
        "PrivateMounts": "no",
        "PrivateNetwork": "no",
        "PrivateTmp": "no",
        "PrivateUsers": "no",
        "ProtectControlGroups": "no",
        "ProtectHome": "no",
        "ProtectKernelModules": "no",
        "ProtectKernelTunables": "no",
        "ProtectSystem": "no",
        "RefuseManualStart": "no",
        "RefuseManualStop": "no",
        "RemainAfterExit": "no",
        "RemoveIPC": "no",
        "Requires": "sysinit.target system.slice dbus.socket",
        "Restart": "no",
        "RestartUSec": "100ms",
        "RestrictNamespaces": "no",
        "RestrictRealtime": "no",
        "RestrictSUIDSGID": "no",
        "Result": "success",
        "RootDirectoryStartOnly": "no",
        "RuntimeDirectoryMode": "0755",
        "RuntimeDirectoryPreserve": "no",
        "RuntimeMaxUSec": "infinity",
        "SameProcessGroup": "no",
        "SecureBits": "0",
        "SendSIGHUP": "no",
        "SendSIGKILL": "yes",
        "Slice": "system.slice",
        "StandardError": "null",
        "StandardInput": "null",
        "StandardInputData": "",
        "StandardOutput": "null",
        "StartLimitAction": "none",
        "StartLimitBurst": "5",
        "StartLimitIntervalUSec": "10s",
        "StartupBlockIOWeight": "[not set]",
        "StartupCPUShares": "[not set]",
        "StartupCPUWeight": "[not set]",
        "StartupIOWeight": "[not set]",
        "StateChangeTimestampMonotonic": "0",
        "StateDirectoryMode": "0755",
        "StatusErrno": "0",
        "StopWhenUnneeded": "no",
        "SubState": "dead",
        "SuccessAction": "none",
        "SyslogFacility": "3",
        "SyslogLevel": "6",
        "SyslogLevelPrefix": "yes",
        "SyslogPriority": "30",
        "SystemCallErrorNumber": "0",
        "TTYReset": "no",
        "TTYVHangup": "no",
        "TTYVTDisallocate": "no",
        "TasksAccounting": "yes",
        "TasksCurrent": "[not set]",
        "TasksMax": "22405",
        "TimeoutStartUSec": "1min 30s",
        "TimeoutStopUSec": "1min 30s",
        "TimerSlackNSec": "50000",
        "Transient": "no",
        "Type": "dbus",
        "UID": "[not set]",
        "UMask": "0022",
        "UnitFilePreset": "enabled",
        "UnitFileState": "disabled",
        "UtmpMode": "init",
        "Wants": "network-pre.target",
        "WatchdogTimestampMonotonic": "0",
        "WatchdogUSec": "0"
    }
}

TASK [fedora.linux_system_roles.firewall : Check if previous replaced is defined] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:36
Tuesday 20 May 2025  04:58:44 -0400 (0:00:00.967)       0:00:19.784 *********** 
ok: [managed-node1] => {
    "ansible_facts": {
        "__firewall_previous_replaced": false,
        "__firewall_python_cmd": "/usr/libexec/platform-python",
        "__firewall_report_changed": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Get config files, checksums before and remove] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:45
Tuesday 20 May 2025  04:58:44 -0400 (0:00:00.040)       0:00:19.824 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_previous_replaced | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Tell firewall module it is able to report changed] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:58
Tuesday 20 May 2025  04:58:44 -0400 (0:00:00.035)       0:00:19.860 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_previous_replaced | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Configure firewall] *****************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:74
Tuesday 20 May 2025  04:58:44 -0400 (0:00:00.045)       0:00:19.905 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "skipped_reason": "No items in the list"
}

TASK [fedora.linux_system_roles.firewall : Gather firewall config information] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:125
Tuesday 20 May 2025  04:58:45 -0400 (0:00:00.059)       0:00:19.964 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "skipped_reason": "No items in the list"
}

TASK [fedora.linux_system_roles.firewall : Update firewalld_config fact] *******
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:136
Tuesday 20 May 2025  04:58:45 -0400 (0:00:00.056)       0:00:20.020 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "firewall | length == 1",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Gather firewall config if no arguments] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:145
Tuesday 20 May 2025  04:58:45 -0400 (0:00:00.050)       0:00:20.071 *********** 
ok: [managed-node1] => {
    "changed": false,
    "firewall_config": {
        "custom": {
            "zones": {
                "public": {
                    "description": "For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted.",
                    "forward": false,
                    "forward_ports": [],
                    "icmp_block_inversion": false,
                    "icmp_blocks": [],
                    "interfaces": [],
                    "masquerade": false,
                    "ports": [],
                    "protocols": [],
                    "rules_str": [],
                    "services": [
                        "ssh",
                        "dhcpv6-client",
                        "cockpit"
                    ],
                    "short": "Public",
                    "source_ports": [],
                    "sources": [],
                    "target": "default",
                    "version": ""
                }
            }
        },
        "default": {
            "helpers": [
                "Q.931",
                "RAS",
                "amanda",
                "ftp",
                "h323",
                "irc",
                "netbios-ns",
                "pptp",
                "proto-gre",
                "sane",
                "sip",
                "snmp",
                "tftp"
            ],
            "icmptypes": [
                "network-unreachable",
                "no-route",
                "packet-too-big",
                "parameter-problem",
                "port-unreachable",
                "precedence-cutoff",
                "protocol-unreachable",
                "redirect",
                "reject-route",
                "required-option-missing",
                "router-advertisement",
                "router-solicitation",
                "source-quench",
                "source-route-failed",
                "time-exceeded",
                "timestamp-reply",
                "timestamp-request",
                "tos-host-redirect",
                "tos-host-unreachable",
                "tos-network-redirect",
                "tos-network-unreachable",
                "ttl-zero-during-reassembly",
                "ttl-zero-during-transit",
                "unknown-header-type",
                "unknown-option",
                "address-unreachable",
                "bad-header",
                "beyond-scope",
                "communication-prohibited",
                "destination-unreachable",
                "echo-reply",
                "echo-request",
                "failed-policy",
                "fragmentation-needed",
                "host-precedence-violation",
                "host-prohibited",
                "host-redirect",
                "host-unknown",
                "host-unreachable",
                "ip-header-bad",
                "neighbour-advertisement",
                "neighbour-solicitation",
                "network-prohibited",
                "network-redirect",
                "network-unknown"
            ],
            "policies": [
                "allow-host-ipv6"
            ],
            "services": [
                "RH-Satellite-6",
                "amanda-client",
                "amanda-k5-client",
                "amqp",
                "amqps",
                "apcupsd",
                "audit",
                "bacula-client",
                "bacula",
                "bb",
                "bgp",
                "bitcoin-rpc",
                "bitcoin-testnet-rpc",
                "bitcoin-testnet",
                "bitcoin",
                "bittorrent-lsd",
                "ceph-mon",
                "ceph",
                "cfengine",
                "cockpit",
                "collectd",
                "condor-collector",
                "ctdb",
                "dhcp",
                "dhcpv6-client",
                "dhcpv6",
                "distcc",
                "dns-over-tls",
                "dns",
                "docker-registry",
                "docker-swarm",
                "dropbox-lansync",
                "elasticsearch",
                "etcd-client",
                "etcd-server",
                "finger",
                "foreman-proxy",
                "foreman",
                "freeipa-4",
                "freeipa-ldap",
                "freeipa-ldaps",
                "freeipa-replication",
                "freeipa-trust",
                "ftp",
                "galera",
                "ganglia-client",
                "ganglia-master",
                "git",
                "grafana",
                "gre",
                "high-availability",
                "http",
                "https",
                "imap",
                "imaps",
                "ipp-client",
                "ipp",
                "ipsec",
                "irc",
                "ircs",
                "iscsi-target",
                "isns",
                "jenkins",
                "kadmin",
                "kdeconnect",
                "kerberos",
                "kibana",
                "klogin",
                "kpasswd",
                "kprop",
                "kshell",
                "kube-apiserver",
                "ldap",
                "ldaps",
                "libvirt-tls",
                "libvirt",
                "lightning-network",
                "llmnr",
                "managesieve",
                "matrix",
                "mdns",
                "memcache",
                "minidlna",
                "mongodb",
                "mosh",
                "mountd",
                "mqtt-tls",
                "mqtt",
                "ms-wbt",
                "mssql",
                "murmur",
                "mysql",
                "nbd",
                "nfs",
                "nfs3",
                "nmea-0183",
                "nrpe",
                "ntp",
                "nut",
                "openvpn",
                "ovirt-imageio",
                "ovirt-storageconsole",
                "ovirt-vmconsole",
                "plex",
                "pmcd",
                "pmproxy",
                "pmwebapi",
                "pmwebapis",
                "pop3",
                "pop3s",
                "postgresql",
                "privoxy",
                "prometheus",
                "proxy-dhcp",
                "ptp",
                "pulseaudio",
                "puppetmaster",
                "quassel",
                "radius",
                "rdp",
                "redis-sentinel",
                "redis",
                "rpc-bind",
                "rquotad",
                "rsh",
                "rsyncd",
                "rtsp",
                "salt-master",
                "samba-client",
                "samba-dc",
                "samba",
                "sane",
                "sip",
                "sips",
                "slp",
                "smtp-submission",
                "smtp",
                "smtps",
                "snmp",
                "snmptrap",
                "spideroak-lansync",
                "spotify-sync",
                "squid",
                "ssdp",
                "ssh",
                "steam-streaming",
                "svdrp",
                "svn",
                "telnet",
                "tentacle",
                "tftp-client",
                "tftp",
                "tile38",
                "tinc",
                "tor-socks",
                "transmission-client",
                "upnp-client",
                "vdsm",
                "vnc-server",
                "wbem-http",
                "wbem-https",
                "wsman",
                "wsmans",
                "xdmcp",
                "xmpp-bosh",
                "xmpp-client",
                "xmpp-local",
                "xmpp-server",
                "zabbix-agent",
                "zabbix-server",
                "RH-Satellite-6-capsule",
                "syncthing-gui",
                "syncthing",
                "synergy",
                "syslog-tls",
                "syslog"
            ],
            "zones": [
                "nm-shared",
                "block",
                "dmz",
                "drop",
                "external",
                "home",
                "internal",
                "public",
                "trusted",
                "work"
            ]
        },
        "default_zone": "public"
    }
}

TASK [fedora.linux_system_roles.firewall : Update firewalld_config fact] *******
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:151
Tuesday 20 May 2025  04:58:45 -0400 (0:00:00.761)       0:00:20.832 *********** 
ok: [managed-node1] => {
    "ansible_facts": {
        "firewall_config": {
            "custom": {
                "zones": {
                    "public": {
                        "description": "For use in public areas. You do not trust the other computers on networks to not harm your computer. Only selected incoming connections are accepted.",
                        "forward": false,
                        "forward_ports": [],
                        "icmp_block_inversion": false,
                        "icmp_blocks": [],
                        "interfaces": [],
                        "masquerade": false,
                        "ports": [],
                        "protocols": [],
                        "rules_str": [],
                        "services": [
                            "ssh",
                            "dhcpv6-client",
                            "cockpit"
                        ],
                        "short": "Public",
                        "source_ports": [],
                        "sources": [],
                        "target": "default",
                        "version": ""
                    }
                }
            },
            "default": {
                "helpers": [
                    "Q.931",
                    "RAS",
                    "amanda",
                    "ftp",
                    "h323",
                    "irc",
                    "netbios-ns",
                    "pptp",
                    "proto-gre",
                    "sane",
                    "sip",
                    "snmp",
                    "tftp"
                ],
                "icmptypes": [
                    "network-unreachable",
                    "no-route",
                    "packet-too-big",
                    "parameter-problem",
                    "port-unreachable",
                    "precedence-cutoff",
                    "protocol-unreachable",
                    "redirect",
                    "reject-route",
                    "required-option-missing",
                    "router-advertisement",
                    "router-solicitation",
                    "source-quench",
                    "source-route-failed",
                    "time-exceeded",
                    "timestamp-reply",
                    "timestamp-request",
                    "tos-host-redirect",
                    "tos-host-unreachable",
                    "tos-network-redirect",
                    "tos-network-unreachable",
                    "ttl-zero-during-reassembly",
                    "ttl-zero-during-transit",
                    "unknown-header-type",
                    "unknown-option",
                    "address-unreachable",
                    "bad-header",
                    "beyond-scope",
                    "communication-prohibited",
                    "destination-unreachable",
                    "echo-reply",
                    "echo-request",
                    "failed-policy",
                    "fragmentation-needed",
                    "host-precedence-violation",
                    "host-prohibited",
                    "host-redirect",
                    "host-unknown",
                    "host-unreachable",
                    "ip-header-bad",
                    "neighbour-advertisement",
                    "neighbour-solicitation",
                    "network-prohibited",
                    "network-redirect",
                    "network-unknown"
                ],
                "policies": [
                    "allow-host-ipv6"
                ],
                "services": [
                    "RH-Satellite-6",
                    "amanda-client",
                    "amanda-k5-client",
                    "amqp",
                    "amqps",
                    "apcupsd",
                    "audit",
                    "bacula-client",
                    "bacula",
                    "bb",
                    "bgp",
                    "bitcoin-rpc",
                    "bitcoin-testnet-rpc",
                    "bitcoin-testnet",
                    "bitcoin",
                    "bittorrent-lsd",
                    "ceph-mon",
                    "ceph",
                    "cfengine",
                    "cockpit",
                    "collectd",
                    "condor-collector",
                    "ctdb",
                    "dhcp",
                    "dhcpv6-client",
                    "dhcpv6",
                    "distcc",
                    "dns-over-tls",
                    "dns",
                    "docker-registry",
                    "docker-swarm",
                    "dropbox-lansync",
                    "elasticsearch",
                    "etcd-client",
                    "etcd-server",
                    "finger",
                    "foreman-proxy",
                    "foreman",
                    "freeipa-4",
                    "freeipa-ldap",
                    "freeipa-ldaps",
                    "freeipa-replication",
                    "freeipa-trust",
                    "ftp",
                    "galera",
                    "ganglia-client",
                    "ganglia-master",
                    "git",
                    "grafana",
                    "gre",
                    "high-availability",
                    "http",
                    "https",
                    "imap",
                    "imaps",
                    "ipp-client",
                    "ipp",
                    "ipsec",
                    "irc",
                    "ircs",
                    "iscsi-target",
                    "isns",
                    "jenkins",
                    "kadmin",
                    "kdeconnect",
                    "kerberos",
                    "kibana",
                    "klogin",
                    "kpasswd",
                    "kprop",
                    "kshell",
                    "kube-apiserver",
                    "ldap",
                    "ldaps",
                    "libvirt-tls",
                    "libvirt",
                    "lightning-network",
                    "llmnr",
                    "managesieve",
                    "matrix",
                    "mdns",
                    "memcache",
                    "minidlna",
                    "mongodb",
                    "mosh",
                    "mountd",
                    "mqtt-tls",
                    "mqtt",
                    "ms-wbt",
                    "mssql",
                    "murmur",
                    "mysql",
                    "nbd",
                    "nfs",
                    "nfs3",
                    "nmea-0183",
                    "nrpe",
                    "ntp",
                    "nut",
                    "openvpn",
                    "ovirt-imageio",
                    "ovirt-storageconsole",
                    "ovirt-vmconsole",
                    "plex",
                    "pmcd",
                    "pmproxy",
                    "pmwebapi",
                    "pmwebapis",
                    "pop3",
                    "pop3s",
                    "postgresql",
                    "privoxy",
                    "prometheus",
                    "proxy-dhcp",
                    "ptp",
                    "pulseaudio",
                    "puppetmaster",
                    "quassel",
                    "radius",
                    "rdp",
                    "redis-sentinel",
                    "redis",
                    "rpc-bind",
                    "rquotad",
                    "rsh",
                    "rsyncd",
                    "rtsp",
                    "salt-master",
                    "samba-client",
                    "samba-dc",
                    "samba",
                    "sane",
                    "sip",
                    "sips",
                    "slp",
                    "smtp-submission",
                    "smtp",
                    "smtps",
                    "snmp",
                    "snmptrap",
                    "spideroak-lansync",
                    "spotify-sync",
                    "squid",
                    "ssdp",
                    "ssh",
                    "steam-streaming",
                    "svdrp",
                    "svn",
                    "telnet",
                    "tentacle",
                    "tftp-client",
                    "tftp",
                    "tile38",
                    "tinc",
                    "tor-socks",
                    "transmission-client",
                    "upnp-client",
                    "vdsm",
                    "vnc-server",
                    "wbem-http",
                    "wbem-https",
                    "wsman",
                    "wsmans",
                    "xdmcp",
                    "xmpp-bosh",
                    "xmpp-client",
                    "xmpp-local",
                    "xmpp-server",
                    "zabbix-agent",
                    "zabbix-server",
                    "RH-Satellite-6-capsule",
                    "syncthing-gui",
                    "syncthing",
                    "synergy",
                    "syslog-tls",
                    "syslog"
                ],
                "zones": [
                    "nm-shared",
                    "block",
                    "dmz",
                    "drop",
                    "external",
                    "home",
                    "internal",
                    "public",
                    "trusted",
                    "work"
                ]
            },
            "default_zone": "public"
        }
    },
    "changed": false
}

TASK [fedora.linux_system_roles.firewall : Get config files, checksums after] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:160
Tuesday 20 May 2025  04:58:45 -0400 (0:00:00.044)       0:00:20.877 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_previous_replaced | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Calculate what has changed] *********
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:171
Tuesday 20 May 2025  04:58:46 -0400 (0:00:00.037)       0:00:20.914 *********** 
skipping: [managed-node1] => {
    "changed": false,
    "false_condition": "__firewall_previous_replaced | bool",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.firewall : Show diffs] *************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:177
Tuesday 20 May 2025  04:58:46 -0400 (0:00:00.046)       0:00:20.961 *********** 
skipping: [managed-node1] => {
    "false_condition": "__firewall_previous_replaced | bool"
}

TASK [Get default zone] ********************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:11
Tuesday 20 May 2025  04:58:46 -0400 (0:00:00.039)       0:00:21.000 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--get-default-zone"
    ],
    "delta": "0:00:00.266554",
    "end": "2025-05-20 04:58:46.652329",
    "rc": 0,
    "start": "2025-05-20 04:58:46.385775"
}

STDOUT:

public

TASK [Remove custom zone] ******************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:21
Tuesday 20 May 2025  04:58:46 -0400 (0:00:00.608)       0:00:21.608 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--delete-zone=custom"
    ],
    "delta": "0:00:00.261477",
    "end": "2025-05-20 04:58:47.252168",
    "failed_when_result": false,
    "rc": 112,
    "start": "2025-05-20 04:58:46.990691"
}

STDERR:

INVALID_ZONE: get_zone(): custom


MSG:

non-zero return code

TASK [Reset internal zone to defaults] *****************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:27
Tuesday 20 May 2025  04:58:47 -0400 (0:00:00.613)       0:00:22.221 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=internal"
    ],
    "delta": "0:00:00.261671",
    "end": "2025-05-20 04:58:47.882069",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-05-20 04:58:47.620398"
}

STDERR:

NO_DEFAULTS: internal


MSG:

non-zero return code

TASK [Reset trusted zone to defaults] ******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:33
Tuesday 20 May 2025  04:58:47 -0400 (0:00:00.627)       0:00:22.849 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=trusted"
    ],
    "delta": "0:00:00.263124",
    "end": "2025-05-20 04:58:48.521856",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-05-20 04:58:48.258732"
}

STDERR:

NO_DEFAULTS: trusted


MSG:

non-zero return code

TASK [Reset dmz zone to defaults] **********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:39
Tuesday 20 May 2025  04:58:48 -0400 (0:00:00.631)       0:00:23.480 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=dmz"
    ],
    "delta": "0:00:00.261715",
    "end": "2025-05-20 04:58:49.136653",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-05-20 04:58:48.874938"
}

STDERR:

NO_DEFAULTS: dmz


MSG:

non-zero return code

TASK [Reset drop zone to defaults] *********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:45
Tuesday 20 May 2025  04:58:49 -0400 (0:00:00.623)       0:00:24.103 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=drop"
    ],
    "delta": "0:00:00.265702",
    "end": "2025-05-20 04:58:49.777756",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-05-20 04:58:49.512054"
}

STDERR:

NO_DEFAULTS: drop


MSG:

non-zero return code

TASK [Reset public zone to defaults] *******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:51
Tuesday 20 May 2025  04:58:49 -0400 (0:00:00.631)       0:00:24.735 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.264169",
    "end": "2025-05-20 04:58:50.390833",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:58:50.126664"
}

STDOUT:

success

TASK [Reset default zone to defaults] ******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:57
Tuesday 20 May 2025  04:58:50 -0400 (0:00:00.621)       0:00:25.356 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": "zone=$(firewall-offline-cmd --get-default-zone)\nfirewall-offline-cmd --load-zone-defaults=$zone\n",
    "delta": "0:00:00.524112",
    "end": "2025-05-20 04:58:51.265904",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:58:50.741792"
}

STDOUT:

success

TASK [Create custom zone] ******************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:66
Tuesday 20 May 2025  04:58:51 -0400 (0:00:00.867)       0:00:26.224 *********** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-offline-cmd",
        "--new-zone=custom"
    ],
    "delta": "0:00:00.268514",
    "end": "2025-05-20 04:58:51.874638",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:58:51.606124"
}

STDOUT:

success

TASK [Reload firewalld] ********************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:72
Tuesday 20 May 2025  04:58:51 -0400 (0:00:00.608)       0:00:26.832 *********** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--reload"
    ],
    "delta": "0:00:00.652028",
    "end": "2025-05-20 04:58:52.892755",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:58:52.240727"
}

STDOUT:

success

TASK [Permit traffic in default zone for https service] ************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:81
Tuesday 20 May 2025  04:58:52 -0400 (0:00:01.016)       0:00:27.849 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Permit traffic in default zone for https service, again] *****************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:90
Tuesday 20 May 2025  04:58:53 -0400 (0:00:00.658)       0:00:28.508 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Permit traffic in default zone on port 8081/tcp] *************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:99
Tuesday 20 May 2025  04:58:54 -0400 (0:00:00.530)       0:00:29.039 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Permit traffic in default zone on port 8081/tcp, again] ******************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:108
Tuesday 20 May 2025  04:58:54 -0400 (0:00:00.529)       0:00:29.568 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow port 161-162/udp in permanent default zone] ************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:117
Tuesday 20 May 2025  04:58:55 -0400 (0:00:00.549)       0:00:30.118 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow port 161-162/udp in permanent default zone, again] *****************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:126
Tuesday 20 May 2025  04:58:55 -0400 (0:00:00.568)       0:00:30.686 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Do not permit traffic in default zone on port 8081/tcp] ******************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:135
Tuesday 20 May 2025  04:58:56 -0400 (0:00:00.537)       0:00:31.224 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Do not permit traffic in default zone on port 8081/tcp, again] ***********
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:144
Tuesday 20 May 2025  04:58:56 -0400 (0:00:00.562)       0:00:31.786 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow service http in permanent dmz zone] ********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:153
Tuesday 20 May 2025  04:58:57 -0400 (0:00:00.558)       0:00:32.345 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow service http in permanent dmz zone, again] *************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:163
Tuesday 20 May 2025  04:58:57 -0400 (0:00:00.529)       0:00:32.874 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow service ftp with limitation using rich rule in permanent default zone] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:173
Tuesday 20 May 2025  04:58:58 -0400 (0:00:00.534)       0:00:33.408 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow service ftp with limitation using rich rule in permanent default zone, again] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:182
Tuesday 20 May 2025  04:58:59 -0400 (0:00:00.544)       0:00:33.953 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow source 192.0.2.0/24 in internal zone] ******************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:191
Tuesday 20 May 2025  04:58:59 -0400 (0:00:00.536)       0:00:34.489 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow source 192.0.2.0/24 in internal zone, again] ***********************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:201
Tuesday 20 May 2025  04:59:00 -0400 (0:00:00.529)       0:00:35.019 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow nm interface eth0 in permanent trusted zone] ***********************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:211
Tuesday 20 May 2025  04:59:00 -0400 (0:00:00.538)       0:00:35.557 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow nm interface eth0 in permanent trusted zone, again] ****************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:221
Tuesday 20 May 2025  04:59:01 -0400 (0:00:00.575)       0:00:36.133 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable nm interface eth0 in permanent trusted zone] *********************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:231
Tuesday 20 May 2025  04:59:01 -0400 (0:00:00.547)       0:00:36.680 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Disable nm interface eth0 in permanent trusted zone, again] **************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:241
Tuesday 20 May 2025  04:59:02 -0400 (0:00:00.602)       0:00:37.282 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow interface eth2 in permanent trusted zone] **************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:251
Tuesday 20 May 2025  04:59:02 -0400 (0:00:00.566)       0:00:37.848 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow interface eth2 in permanent trusted zone, again] *******************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:261
Tuesday 20 May 2025  04:59:03 -0400 (0:00:00.573)       0:00:38.422 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Allow masquerading in permanent dmz zone] ********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:271
Tuesday 20 May 2025  04:59:04 -0400 (0:00:00.576)       0:00:38.998 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Allow masquerading in permanent dmz zone, again] *************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:280
Tuesday 20 May 2025  04:59:04 -0400 (0:00:00.545)       0:00:39.544 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure permanent custom zone exists (no change)] *************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:289
Tuesday 20 May 2025  04:59:05 -0400 (0:00:00.534)       0:00:40.079 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure ICMP block inversion in permanent drop zone] **********************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:298
Tuesday 20 May 2025  04:59:05 -0400 (0:00:00.539)       0:00:40.618 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure ICMP block inversion in permanent drop zone, again] ***************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:307
Tuesday 20 May 2025  04:59:06 -0400 (0:00:00.533)       0:00:41.151 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Block ICMP echo-request in permanent drop zone] **************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:316
Tuesday 20 May 2025  04:59:06 -0400 (0:00:00.531)       0:00:41.683 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Block ICMP echo-request in permanent drop zone, again] *******************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:326
Tuesday 20 May 2025  04:59:07 -0400 (0:00:00.559)       0:00:42.242 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone (no change)] ************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:336
Tuesday 20 May 2025  04:59:07 -0400 (0:00:00.542)       0:00:42.784 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure target ACCEPT in permanent internal zone] *************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:346
Tuesday 20 May 2025  04:59:08 -0400 (0:00:00.547)       0:00:43.331 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure target ACCEPT in permanent internal zone, again] ******************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:356
Tuesday 20 May 2025  04:59:09 -0400 (0:00:01.059)       0:00:44.391 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone] ************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:366
Tuesday 20 May 2025  04:59:10 -0400 (0:00:00.547)       0:00:44.939 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Ensure default target in permanent internal zone, again] *****************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:376
Tuesday 20 May 2025  04:59:10 -0400 (0:00:00.964)       0:00:45.903 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:386
Tuesday 20 May 2025  04:59:11 -0400 (0:00:00.536)       0:00:46.439 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone, again] ***
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:398
Tuesday 20 May 2025  04:59:12 -0400 (0:00:00.563)       0:00:47.003 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Firewalld custom zone] ***************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:410
Tuesday 20 May 2025  04:59:12 -0400 (0:00:00.555)       0:00:47.558 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true
}

TASK [Assert firewalld custom zone] ********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:420
Tuesday 20 May 2025  04:59:13 -0400 (0:00:00.949)       0:00:48.507 *********** 
ok: [managed-node1] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Add masquerade to custom zone] *******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:427
Tuesday 20 May 2025  04:59:13 -0400 (0:00:00.020)       0:00:48.528 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add masquerade to custom zone, again] ************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:439
Tuesday 20 May 2025  04:59:14 -0400 (0:00:00.533)       0:00:49.061 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Set the default zone to something other than dmz] ************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:451
Tuesday 20 May 2025  04:59:14 -0400 (0:00:00.540)       0:00:49.602 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": "cur_zone=$(firewall-offline-cmd --get-default-zone)\nif [ \"$cur_zone\" != public ]; then\n  firewall-offline-cmd --set-default-zone public\nfi\n",
    "delta": "0:00:00.265205",
    "end": "2025-05-20 04:59:15.244606",
    "rc": 0,
    "start": "2025-05-20 04:59:14.979401"
}

TASK [Set default zone (runtime)] **********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:460
Tuesday 20 May 2025  04:59:15 -0400 (0:00:00.601)       0:00:50.203 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Set default zone, again (runtime)] ***************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:469
Tuesday 20 May 2025  04:59:15 -0400 (0:00:00.570)       0:00:50.774 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add multiple custom services] ********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:478
Tuesday 20 May 2025  04:59:16 -0400 (0:00:00.542)       0:00:51.317 *********** 
ok: [managed-node1] => {
    "changed": false,
    "failed_when_result": false
}

MSG:

can only add, modify, or remove one service at a time

TASK [Add custom service without details] **************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:489
Tuesday 20 May 2025  04:59:16 -0400 (0:00:00.477)       0:00:51.794 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add custom service that already exists] **********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:498
Tuesday 20 May 2025  04:59:17 -0400 (0:00:00.963)       0:00:52.757 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add description to custom service] ***************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:507
Tuesday 20 May 2025  04:59:18 -0400 (0:00:00.540)       0:00:53.298 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add short description to custom service] *********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:517
Tuesday 20 May 2025  04:59:19 -0400 (0:00:00.970)       0:00:54.269 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add source_ports to custom service] **************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:527
Tuesday 20 May 2025  04:59:20 -0400 (0:00:00.963)       0:00:55.232 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add source_ports to custom service again] ********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:537
Tuesday 20 May 2025  04:59:21 -0400 (0:00:00.959)       0:00:56.191 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add invalid protocol to custom service] **********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:547
Tuesday 20 May 2025  04:59:21 -0400 (0:00:00.537)       0:00:56.729 *********** 
ok: [managed-node1] => {
    "changed": false,
    "failed_when_result": false
}

MSG:

INVALID_PROTOCOL: nonexistentprotocol

TASK [Add valid protocol to custom service] ************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:557
Tuesday 20 May 2025  04:59:22 -0400 (0:00:00.554)       0:00:57.284 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove valid protocol from customservice] ********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:567
Tuesday 20 May 2025  04:59:23 -0400 (0:00:00.977)       0:00:58.261 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Remove ports from custom service without deleting service] ***************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:577
Tuesday 20 May 2025  04:59:24 -0400 (0:00:00.976)       0:00:59.238 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add destination addresses] ***********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:587
Tuesday 20 May 2025  04:59:25 -0400 (0:00:01.009)       0:01:00.248 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add includes] ************************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:599
Tuesday 20 May 2025  04:59:26 -0400 (0:00:00.988)       0:01:01.237 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add includes again to check idempotence] *********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:614
Tuesday 20 May 2025  04:59:27 -0400 (0:00:00.969)       0:01:02.207 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Delete custom service] ***************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:629
Tuesday 20 May 2025  04:59:27 -0400 (0:00:00.586)       0:01:02.793 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Delete custom service again] *********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:638
Tuesday 20 May 2025  04:59:28 -0400 (0:00:00.957)       0:01:03.750 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Add custom service with all the elements at once] ************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:647
Tuesday 20 May 2025  04:59:29 -0400 (0:00:00.543)       0:01:04.293 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Add helper module that already is on customservice] **********************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:666
Tuesday 20 May 2025  04:59:30 -0400 (0:00:00.997)       0:01:05.291 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Forward port 40 to 0.0.0.0:8080 (string)] ********************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:676
Tuesday 20 May 2025  04:59:30 -0400 (0:00:00.594)       0:01:05.886 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward same port again (string)] ****************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:685
Tuesday 20 May 2025  04:59:31 -0400 (0:00:00.594)       0:01:06.480 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable forward port (string)] *******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:694
Tuesday 20 May 2025  04:59:32 -0400 (0:00:00.564)       0:01:07.044 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port (dict form)] ************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:703
Tuesday 20 May 2025  04:59:32 -0400 (0:00:00.557)       0:01:07.601 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port again (dict form)] ******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:716
Tuesday 20 May 2025  04:59:33 -0400 (0:00:00.572)       0:01:08.174 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Disable forward port (dict form)] ****************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:729
Tuesday 20 May 2025  04:59:33 -0400 (0:00:00.538)       0:01:08.712 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward port 40 to 0.0.0.0:8080 (permanent)] *****************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:742
Tuesday 20 May 2025  04:59:34 -0400 (0:00:00.555)       0:01:09.268 *********** 
changed: [managed-node1] => {
    "__firewall_changed": true,
    "changed": true,
    "failed_when_result": false
}

TASK [Forward same port again (permanent)] *************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:751
Tuesday 20 May 2025  04:59:34 -0400 (0:00:00.538)       0:01:09.807 *********** 
ok: [managed-node1] => {
    "__firewall_changed": false,
    "changed": false,
    "failed_when_result": false
}

TASK [Remove custom zone] ******************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:768
Tuesday 20 May 2025  04:59:35 -0400 (0:00:00.534)       0:01:10.342 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--delete-zone=custom"
    ],
    "delta": "0:00:00.271750",
    "end": "2025-05-20 04:59:35.999482",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:59:35.727732"
}

STDOUT:

success

TASK [Remove customzone zone] **************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:774
Tuesday 20 May 2025  04:59:36 -0400 (0:00:00.615)       0:01:10.958 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--delete-zone=customzone"
    ],
    "delta": "0:00:00.268248",
    "end": "2025-05-20 04:59:36.610975",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:59:36.342727"
}

STDOUT:

success

TASK [Reset internal zone to defaults] *****************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:780
Tuesday 20 May 2025  04:59:36 -0400 (0:00:00.615)       0:01:11.574 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=internal"
    ],
    "delta": "0:00:00.270353",
    "end": "2025-05-20 04:59:37.241215",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:59:36.970862"
}

STDOUT:

success

TASK [Reset trusted zone to defaults] ******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:786
Tuesday 20 May 2025  04:59:37 -0400 (0:00:00.626)       0:01:12.201 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=trusted"
    ],
    "delta": "0:00:00.270226",
    "end": "2025-05-20 04:59:37.857627",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:59:37.587401"
}

STDOUT:

success

TASK [Reset dmz zone to defaults] **********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:792
Tuesday 20 May 2025  04:59:37 -0400 (0:00:00.615)       0:01:12.817 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=dmz"
    ],
    "delta": "0:00:00.264382",
    "end": "2025-05-20 04:59:38.463134",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:59:38.198752"
}

STDOUT:

success

TASK [Reset drop zone to defaults] *********************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:798
Tuesday 20 May 2025  04:59:38 -0400 (0:00:00.605)       0:01:13.422 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=drop"
    ],
    "delta": "0:00:00.271310",
    "end": "2025-05-20 04:59:39.077930",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:59:38.806620"
}

STDOUT:

success

TASK [Reset public zone to defaults] *******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:804
Tuesday 20 May 2025  04:59:39 -0400 (0:00:00.615)       0:01:14.038 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.265075",
    "end": "2025-05-20 04:59:39.687919",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:59:39.422844"
}

STDOUT:

success

TASK [Reset default zone to defaults] ******************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:810
Tuesday 20 May 2025  04:59:39 -0400 (0:00:00.616)       0:01:14.654 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": [
        "firewall-offline-cmd",
        "--load-zone-defaults=public"
    ],
    "delta": "0:00:00.260873",
    "end": "2025-05-20 04:59:40.327783",
    "failed_when_result": false,
    "rc": 22,
    "start": "2025-05-20 04:59:40.066910"
}

STDERR:

NO_DEFAULTS: public


MSG:

non-zero return code

TASK [Reset default zone] ******************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:816
Tuesday 20 May 2025  04:59:40 -0400 (0:00:00.661)       0:01:15.315 *********** 
ok: [managed-node1] => {
    "changed": false,
    "cmd": "cur_zone=$(firewall-offline-cmd --get-default-zone)\nif [ \"$cur_zone\" != public ]; then\n  firewall-offline-cmd --set-default-zone=public\nfi\n",
    "delta": "0:00:00.528714",
    "end": "2025-05-20 04:59:41.282668",
    "rc": 0,
    "start": "2025-05-20 04:59:40.753954"
}

STDOUT:

success

TASK [Reload firewalld] ********************************************************
task path: /tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:825
Tuesday 20 May 2025  04:59:41 -0400 (0:00:00.922)       0:01:16.238 *********** 
changed: [managed-node1] => {
    "changed": true,
    "cmd": [
        "firewall-cmd",
        "--reload"
    ],
    "delta": "0:00:00.647006",
    "end": "2025-05-20 04:59:42.272427",
    "failed_when_result": false,
    "rc": 0,
    "start": "2025-05-20 04:59:41.625421"
}

STDOUT:

success

PLAY RECAP *********************************************************************
managed-node1              : ok=101  changed=39   unreachable=0    failed=0    skipped=15   rescued=0    ignored=0   


TASKS RECAP ********************************************************************
Tuesday 20 May 2025  04:59:42 -0400 (0:00:00.988)       0:01:17.227 *********** 
=============================================================================== 
fedora.linux_system_roles.firewall : Install firewalld ----------------- 15.00s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:51 
Gathering Facts --------------------------------------------------------- 1.33s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:2 
Ensure target ACCEPT in permanent internal zone ------------------------- 1.06s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:346 
Reload firewalld -------------------------------------------------------- 1.02s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:72 
Remove ports from custom service without deleting service --------------- 1.01s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:577 
Add custom service with all the elements at once ------------------------ 1.00s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:647 
Reload firewalld -------------------------------------------------------- 0.99s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:825 
Add destination addresses ----------------------------------------------- 0.99s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:587 
Add valid protocol to custom service ------------------------------------ 0.98s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:557 
Remove valid protocol from customservice -------------------------------- 0.98s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:567 
Add description to custom service --------------------------------------- 0.97s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:507 
Add includes ------------------------------------------------------------ 0.97s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:599 
fedora.linux_system_roles.firewall : Enable and start firewalld service --- 0.97s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:30 
Ensure default target in permanent internal zone ------------------------ 0.96s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:366 
Add custom service without details -------------------------------------- 0.96s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:489 
Add short description to custom service --------------------------------- 0.96s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:517 
Add source_ports to custom service -------------------------------------- 0.96s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:527 
Delete custom service --------------------------------------------------- 0.96s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:629 
Firewalld custom zone --------------------------------------------------- 0.95s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:410 
Reset default zone ------------------------------------------------------ 0.92s
/tmp/collections-zm4/ansible_collections/fedora/linux_system_roles/tests/firewall/tests_ansible.yml:816