ansible-playbook 2.9.27
  config file = None
  configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules']
  ansible python module location = /usr/local/lib/python3.9/site-packages/ansible
  executable location = /usr/local/bin/ansible-playbook
  python version = 3.9.19 (main, May 16 2024, 11:40:09) [GCC 8.5.0 20210514 (Red Hat 8.5.0-22)]
No config file found; using defaults
[WARNING]: running playbook inside collection fedora.linux_system_roles
Skipping callback 'actionable', as we already have a stdout callback.
Skipping callback 'counter_enabled', as we already have a stdout callback.
Skipping callback 'debug', as we already have a stdout callback.
Skipping callback 'dense', as we already have a stdout callback.
Skipping callback 'dense', as we already have a stdout callback.
Skipping callback 'full_skip', as we already have a stdout callback.
Skipping callback 'json', as we already have a stdout callback.
Skipping callback 'minimal', as we already have a stdout callback.
Skipping callback 'null', as we already have a stdout callback.
Skipping callback 'oneline', as we already have a stdout callback.
Skipping callback 'selective', as we already have a stdout callback.
Skipping callback 'skippy', as we already have a stdout callback.
Skipping callback 'stderr', as we already have a stdout callback.
Skipping callback 'unixy', as we already have a stdout callback.
Skipping callback 'yaml', as we already have a stdout callback.

PLAYBOOK: tests_reload.yml *****************************************************
1 plays in /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml

PLAY [Ensure that crypto_policy_reload variable works] *************************

TASK [Gathering Facts] *********************************************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:3
Tuesday 24 September 2024  13:45:13 -0400 (0:00:00.026)       0:00:00.026 ***** 
ok: [managed-node2]
META: ran handlers

TASK [Run role to make sure all dependencies are installed] ********************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:8
Tuesday 24 September 2024  13:45:14 -0400 (0:00:00.915)       0:00:00.942 ***** 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Tuesday 24 September 2024  13:45:14 -0400 (0:00:00.031)       0:00:00.973 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Tuesday 24 September 2024  13:45:14 -0400 (0:00:00.020)       0:00:00.994 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Tuesday 24 September 2024  13:45:14 -0400 (0:00:00.035)       0:00:01.029 ***** 
ok: [managed-node2] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Tuesday 24 September 2024  13:45:14 -0400 (0:00:00.579)       0:00:01.608 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "__crypto_policies_is_ostree": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Tuesday 24 September 2024  13:45:14 -0400 (0:00:00.039)       0:00:01.648 ***** 
ok: [managed-node2] => {
    "changed": false,
    "stat": {
        "exists": false
    }
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Tuesday 24 September 2024  13:45:15 -0400 (0:00:00.350)       0:00:01.998 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "__crypto_policies_is_transactional": false
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Tuesday 24 September 2024  13:45:15 -0400 (0:00:00.054)       0:00:02.053 ***** 
skipping: [managed-node2] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Tuesday 24 September 2024  13:45:15 -0400 (0:00:00.086)       0:00:02.140 ***** 
ok: [managed-node2] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Tuesday 24 September 2024  13:45:18 -0400 (0:00:02.961)       0:00:05.102 ***** 
skipping: [managed-node2] => {}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Tuesday 24 September 2024  13:45:18 -0400 (0:00:00.035)       0:00:05.137 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Tuesday 24 September 2024  13:45:18 -0400 (0:00:00.033)       0:00:05.170 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Tuesday 24 September 2024  13:45:18 -0400 (0:00:00.033)       0:00:05.203 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Tuesday 24 September 2024  13:45:18 -0400 (0:00:00.018)       0:00:05.222 ***** 
ok: [managed-node2] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.049814",
    "end": "2024-09-24 13:45:18.783228",
    "rc": 0,
    "start": "2024-09-24 13:45:18.733414"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Tuesday 24 September 2024  13:45:18 -0400 (0:00:00.478)       0:00:05.701 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Tuesday 24 September 2024  13:45:18 -0400 (0:00:00.035)       0:00:05.736 ***** 
ok: [managed-node2] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1716968748.851,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5
}

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Tuesday 24 September 2024  13:45:19 -0400 (0:00:00.427)       0:00:06.164 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FUTURE",
            "FIPS",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Tuesday 24 September 2024  13:45:19 -0400 (0:00:00.036)       0:00:06.201 ***** 
ok: [managed-node2] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5
}

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Tuesday 24 September 2024  13:45:19 -0400 (0:00:00.328)       0:00:06.530 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "NO-CAMELLIA",
            "ECDHE-ONLY",
            "AD-SUPPORT",
            "OSPP",
            "NO-SHA1"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Tuesday 24 September 2024  13:45:19 -0400 (0:00:00.037)       0:00:06.567 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "NO-CAMELLIA",
            "ECDHE-ONLY",
            "AD-SUPPORT",
            "OSPP",
            "NO-SHA1"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Tuesday 24 September 2024  13:45:19 -0400 (0:00:00.034)       0:00:06.601 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set the reboot_required flag if needed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:87
Tuesday 24 September 2024  13:45:19 -0400 (0:00:00.032)       0:00:06.634 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Update facts after applying policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:95
Tuesday 24 September 2024  13:45:19 -0400 (0:00:00.032)       0:00:06.667 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Tuesday 24 September 2024  13:45:19 -0400 (0:00:00.018)       0:00:06.686 ***** 
ok: [managed-node2] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.048772",
    "end": "2024-09-24 13:45:20.139808",
    "rc": 0,
    "start": "2024-09-24 13:45:20.091036"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.370)       0:00:07.057 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

TASK [Get SSHD pid before policy update] ***************************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:12
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.035)       0:00:07.093 ***** 
ok: [managed-node2] => {
    "changed": false,
    "content": "MTAxOAo=",
    "encoding": "base64",
    "source": "/var/run/sshd.pid"
}

TASK [Change policy from DEFAULT TO LEGACY (disable reload)] *******************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:17
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.417)       0:00:07.510 ***** 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.036)       0:00:07.546 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.020)       0:00:07.567 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.035)       0:00:07.603 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.039)       0:00:07.643 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.050)       0:00:07.694 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.054)       0:00:07.748 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Tuesday 24 September 2024  13:45:20 -0400 (0:00:00.055)       0:00:07.804 ***** 
skipping: [managed-node2] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Tuesday 24 September 2024  13:45:21 -0400 (0:00:00.073)       0:00:07.877 ***** 
ok: [managed-node2] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Tuesday 24 September 2024  13:45:23 -0400 (0:00:02.795)       0:00:10.673 ***** 
skipping: [managed-node2] => {}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Tuesday 24 September 2024  13:45:23 -0400 (0:00:00.046)       0:00:10.720 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Tuesday 24 September 2024  13:45:23 -0400 (0:00:00.036)       0:00:10.756 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Tuesday 24 September 2024  13:45:23 -0400 (0:00:00.033)       0:00:10.790 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Tuesday 24 September 2024  13:45:23 -0400 (0:00:00.018)       0:00:10.808 ***** 
ok: [managed-node2] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.048521",
    "end": "2024-09-24 13:45:24.267030",
    "rc": 0,
    "start": "2024-09-24 13:45:24.218509"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Tuesday 24 September 2024  13:45:24 -0400 (0:00:00.376)       0:00:11.184 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Tuesday 24 September 2024  13:45:24 -0400 (0:00:00.035)       0:00:11.220 ***** 
ok: [managed-node2] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1716968748.851,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5
}

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Tuesday 24 September 2024  13:45:24 -0400 (0:00:00.330)       0:00:11.550 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FUTURE",
            "FIPS",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Tuesday 24 September 2024  13:45:24 -0400 (0:00:00.038)       0:00:11.588 ***** 
ok: [managed-node2] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5
}

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Tuesday 24 September 2024  13:45:25 -0400 (0:00:00.329)       0:00:11.917 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "NO-CAMELLIA",
            "ECDHE-ONLY",
            "AD-SUPPORT",
            "OSPP",
            "NO-SHA1"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Tuesday 24 September 2024  13:45:25 -0400 (0:00:00.037)       0:00:11.955 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "NO-CAMELLIA",
            "ECDHE-ONLY",
            "AD-SUPPORT",
            "OSPP",
            "NO-SHA1"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Tuesday 24 September 2024  13:45:25 -0400 (0:00:00.034)       0:00:11.990 ***** 
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes for managed-node2
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag for managed-node2
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes for managed-node2
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag for managed-node2
changed: [managed-node2] => {
    "changed": true,
    "cmd": [
        "update-crypto-policies",
        "--no-reload",
        "--set",
        "LEGACY"
    ],
    "delta": "0:00:00.102917",
    "end": "2024-09-24 13:45:25.522194",
    "rc": 0,
    "start": "2024-09-24 13:45:25.419277"
}

STDOUT:

Setting system policy to LEGACY
Note: System-wide crypto policies are applied on application start-up.
It is recommended to restart the system for the change of policies
to fully take place.

TASK [fedora.linux_system_roles.crypto_policies : Set the reboot_required flag if needed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:87
Tuesday 24 September 2024  13:45:25 -0400 (0:00:00.449)       0:00:12.439 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_reboot_required": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update facts after applying policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:95
Tuesday 24 September 2024  13:45:25 -0400 (0:00:00.043)       0:00:12.482 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Tuesday 24 September 2024  13:45:25 -0400 (0:00:00.019)       0:00:12.502 ***** 
ok: [managed-node2] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.049163",
    "end": "2024-09-24 13:45:25.959339",
    "rc": 0,
    "start": "2024-09-24 13:45:25.910176"
}

STDOUT:

LEGACY

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.374)       0:00:12.876 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_active": "LEGACY"
    },
    "changed": false
}

TASK [Get sshd pid after first update] *****************************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:24
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.035)       0:00:12.912 ***** 
ok: [managed-node2] => {
    "changed": false,
    "content": "MTAxOAo=",
    "encoding": "base64",
    "source": "/var/run/sshd.pid"
}

TASK [Verify that policy was changed to LEGACY] ********************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:29
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.323)       0:00:13.236 ***** 
ok: [managed-node2] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Check the sshd was not reloaded] *****************************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:33
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.039)       0:00:13.275 ***** 
ok: [managed-node2] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Change policy from LEGACY to DEFAULT (reload by default)] ****************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:38
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.050)       0:00:13.326 ***** 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.062)       0:00:13.389 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.033)       0:00:13.422 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.097)       0:00:13.519 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.038)       0:00:13.558 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.038)       0:00:13.597 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.039)       0:00:13.637 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.037)       0:00:13.674 ***** 
skipping: [managed-node2] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Tuesday 24 September 2024  13:45:26 -0400 (0:00:00.054)       0:00:13.729 ***** 
ok: [managed-node2] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Tuesday 24 September 2024  13:45:29 -0400 (0:00:02.733)       0:00:16.463 ***** 
skipping: [managed-node2] => {}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Tuesday 24 September 2024  13:45:29 -0400 (0:00:00.036)       0:00:16.499 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Tuesday 24 September 2024  13:45:29 -0400 (0:00:00.040)       0:00:16.540 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Tuesday 24 September 2024  13:45:29 -0400 (0:00:00.036)       0:00:16.576 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Tuesday 24 September 2024  13:45:29 -0400 (0:00:00.018)       0:00:16.595 ***** 
ok: [managed-node2] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.049752",
    "end": "2024-09-24 13:45:30.054555",
    "rc": 0,
    "start": "2024-09-24 13:45:30.004803"
}

STDOUT:

LEGACY

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Tuesday 24 September 2024  13:45:30 -0400 (0:00:00.377)       0:00:16.972 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_active": "LEGACY"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Tuesday 24 September 2024  13:45:30 -0400 (0:00:00.035)       0:00:17.008 ***** 
ok: [managed-node2] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1716968748.851,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1727199925.4610655,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5
}

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Tuesday 24 September 2024  13:45:30 -0400 (0:00:00.326)       0:00:17.335 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FUTURE",
            "FIPS",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Tuesday 24 September 2024  13:45:30 -0400 (0:00:00.037)       0:00:17.373 ***** 
ok: [managed-node2] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5
}

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Tuesday 24 September 2024  13:45:30 -0400 (0:00:00.325)       0:00:17.698 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "NO-CAMELLIA",
            "ECDHE-ONLY",
            "AD-SUPPORT",
            "OSPP",
            "NO-SHA1"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Tuesday 24 September 2024  13:45:30 -0400 (0:00:00.038)       0:00:17.737 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "NO-CAMELLIA",
            "ECDHE-ONLY",
            "AD-SUPPORT",
            "OSPP",
            "NO-SHA1"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Tuesday 24 September 2024  13:45:30 -0400 (0:00:00.034)       0:00:17.771 ***** 
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes for managed-node2
NOTIFIED HANDLER fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag for managed-node2
changed: [managed-node2] => {
    "changed": true,
    "cmd": [
        "update-crypto-policies",
        "--set",
        "DEFAULT"
    ],
    "delta": "0:00:00.134992",
    "end": "2024-09-24 13:45:31.336286",
    "rc": 0,
    "start": "2024-09-24 13:45:31.201294"
}

STDOUT:

Setting system policy to DEFAULT
Note: System-wide crypto policies are applied on application start-up.
It is recommended to restart the system for the change of policies
to fully take place.

TASK [fedora.linux_system_roles.crypto_policies : Set the reboot_required flag if needed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:87
Tuesday 24 September 2024  13:45:31 -0400 (0:00:00.482)       0:00:18.254 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_reboot_required": true
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update facts after applying policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:95
Tuesday 24 September 2024  13:45:31 -0400 (0:00:00.040)       0:00:18.294 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Tuesday 24 September 2024  13:45:31 -0400 (0:00:00.019)       0:00:18.314 ***** 
ok: [managed-node2] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.048762",
    "end": "2024-09-24 13:45:31.770434",
    "rc": 0,
    "start": "2024-09-24 13:45:31.721672"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Tuesday 24 September 2024  13:45:31 -0400 (0:00:00.373)       0:00:18.687 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

TASK [Get sshd pid after second update] ****************************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:44
Tuesday 24 September 2024  13:45:31 -0400 (0:00:00.068)       0:00:18.755 ***** 
ok: [managed-node2] => {
    "changed": false,
    "content": "MTEyMjIK",
    "encoding": "base64",
    "source": "/var/run/sshd.pid"
}

TASK [Verify that policy was changed to DEFAULT] *******************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:49
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.359)       0:00:19.115 ***** 
ok: [managed-node2] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Check the sshd was reloaded] *********************************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:54
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.037)       0:00:19.152 ***** 
ok: [managed-node2] => {
    "changed": false
}

MSG:

All assertions passed

TASK [Restore policy to DEFAULT] ***********************************************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:60
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.036)       0:00:19.188 ***** 

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:3
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.039)       0:00:19.227 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Ensure ansible_facts used by role] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:2
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.025)       0:00:19.253 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if system is ostree] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.043)       0:00:19.296 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag to indicate system is ostree] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:15
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.054)       0:00:19.350 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.042)       0:00:19.393 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set flag if transactional-update exists] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:27
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.039)       0:00:19.432 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set platform/version specific variables] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:31
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.039)       0:00:19.472 ***** 
skipping: [managed-node2] => (item=RedHat.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "RedHat.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}
skipping: [managed-node2] => (item=CentOS_8.yml)  => {
    "ansible_loop_var": "item",
    "changed": false,
    "item": "CentOS_8.yml",
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Ensure required packages are installed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6
Tuesday 24 September 2024  13:45:32 -0400 (0:00:00.060)       0:00:19.533 ***** 
ok: [managed-node2] => {
    "changed": false,
    "rc": 0,
    "results": []
}

MSG:

Nothing to do

TASK [fedora.linux_system_roles.crypto_policies : Notify user that reboot is needed to apply changes] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:18
Tuesday 24 September 2024  13:45:35 -0400 (0:00:02.766)       0:00:22.299 ***** 
skipping: [managed-node2] => {}

TASK [fedora.linux_system_roles.crypto_policies : Reboot transactional update systems] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:23
Tuesday 24 September 2024  13:45:35 -0400 (0:00:00.034)       0:00:22.334 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Fail if reboot is needed and not set] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:28
Tuesday 24 September 2024  13:45:35 -0400 (0:00:00.033)       0:00:22.368 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Gather facts] ****************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:36
Tuesday 24 September 2024  13:45:35 -0400 (0:00:00.033)       0:00:22.402 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Tuesday 24 September 2024  13:45:35 -0400 (0:00:00.019)       0:00:22.421 ***** 
ok: [managed-node2] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.047937",
    "end": "2024-09-24 13:45:35.878114",
    "rc": 0,
    "start": "2024-09-24 13:45:35.830177"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Tuesday 24 September 2024  13:45:35 -0400 (0:00:00.374)       0:00:22.795 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find base policies files] ****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39
Tuesday 24 September 2024  13:45:35 -0400 (0:00:00.036)       0:00:22.831 ***** 
ok: [managed-node2] => {
    "changed": false,
    "examined": 7,
    "files": [
        {
            "atime": 1727199931.2440708,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047304,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/DEFAULT.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2153,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047305,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/EMPTY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 267,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047306,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FIPS.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1726,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047307,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/FUTURE.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2102,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1727199925.4610655,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4047308,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/LEGACY.pol",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 2471,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5
}

TASK [fedora.linux_system_roles.crypto_policies : Set available base policies fact] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:47
Tuesday 24 September 2024  13:45:36 -0400 (0:00:00.328)       0:00:23.160 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_policies": [
            "DEFAULT",
            "EMPTY",
            "FUTURE",
            "FIPS",
            "LEGACY"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Find subpolicy files] ********
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54
Tuesday 24 September 2024  13:45:36 -0400 (0:00:00.040)       0:00:23.200 ***** 
ok: [managed-node2] => {
    "changed": false,
    "examined": 5,
    "files": [
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695037,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/AD-SUPPORT.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 322,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695038,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/ECDHE-ONLY.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 121,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695039,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-CAMELLIA.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 90,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695104,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/NO-SHA1.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 123,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        },
        {
            "atime": 1690903086.0,
            "ctime": 1716968718.641,
            "dev": 51713,
            "gid": 0,
            "gr_name": "root",
            "inode": 4695105,
            "isblk": false,
            "ischr": false,
            "isdir": false,
            "isfifo": false,
            "isgid": false,
            "islnk": false,
            "isreg": true,
            "issock": false,
            "isuid": false,
            "mode": "0644",
            "mtime": 1690903086.0,
            "nlink": 1,
            "path": "/usr/share/crypto-policies/policies/modules/OSPP.pmod",
            "pw_name": "root",
            "rgrp": true,
            "roth": true,
            "rusr": true,
            "size": 1986,
            "uid": 0,
            "wgrp": false,
            "woth": false,
            "wusr": true,
            "xgrp": false,
            "xoth": false,
            "xusr": false
        }
    ],
    "matched": 5
}

TASK [fedora.linux_system_roles.crypto_policies : Set available subpolicies fact] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:62
Tuesday 24 September 2024  13:45:36 -0400 (0:00:00.326)       0:00:23.527 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_subpolicies": [
            "NO-CAMELLIA",
            "ECDHE-ONLY",
            "AD-SUPPORT",
            "OSPP",
            "NO-SHA1"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Set crypto_policies_available_modules fact (deprecated)] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:69
Tuesday 24 September 2024  13:45:36 -0400 (0:00:00.039)       0:00:23.566 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_available_modules": [
            "NO-CAMELLIA",
            "ECDHE-ONLY",
            "AD-SUPPORT",
            "OSPP",
            "NO-SHA1"
        ]
    },
    "changed": false
}

TASK [fedora.linux_system_roles.crypto_policies : Update crypto policy if needed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75
Tuesday 24 September 2024  13:45:36 -0400 (0:00:00.045)       0:00:23.612 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Set the reboot_required flag if needed] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:87
Tuesday 24 September 2024  13:45:36 -0400 (0:00:00.050)       0:00:23.663 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

TASK [fedora.linux_system_roles.crypto_policies : Update facts after applying policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:95
Tuesday 24 September 2024  13:45:36 -0400 (0:00:00.049)       0:00:23.713 ***** 
included: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml for managed-node2

TASK [fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3
Tuesday 24 September 2024  13:45:36 -0400 (0:00:00.027)       0:00:23.740 ***** 
ok: [managed-node2] => {
    "changed": false,
    "cmd": [
        "update-crypto-policies",
        "--show"
    ],
    "delta": "0:00:00.047681",
    "end": "2024-09-24 13:45:37.212519",
    "rc": 0,
    "start": "2024-09-24 13:45:37.164838"
}

STDOUT:

DEFAULT

TASK [fedora.linux_system_roles.crypto_policies : Set current policy fact] *****
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:9
Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.388)       0:00:24.129 ***** 
ok: [managed-node2] => {
    "ansible_facts": {
        "crypto_policies_active": "DEFAULT"
    },
    "changed": false
}

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:4
Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.036)       0:00:24.166 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:11
Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.044)       0:00:24.210 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:4
Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.051)       0:00:24.261 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:11
Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.046)       0:00:24.307 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Reboot the managed host to apply crypto policies changes] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:4
Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.040)       0:00:24.348 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}

RUNNING HANDLER [fedora.linux_system_roles.crypto_policies : Clear the crypto_policies_reboot_required flag] ***
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/handlers/main.yml:11
Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.040)       0:00:24.389 ***** 
skipping: [managed-node2] => {
    "changed": false,
    "skip_reason": "Conditional result was False"
}
META: ran handlers

TASK [Check the current policy has been restored to DEFAULT] *******************
task path: /tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:73
Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.045)       0:00:24.435 ***** 
ok: [managed-node2] => {
    "changed": false
}

MSG:

All assertions passed
META: ran handlers
META: ran handlers

PLAY RECAP *********************************************************************
managed-node2              : ok=69   changed=2    unreachable=0    failed=0    skipped=42   rescued=0    ignored=0   

Tuesday 24 September 2024  13:45:37 -0400 (0:00:00.036)       0:00:24.471 ***** 
=============================================================================== 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 2.96s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 2.80s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
fedora.linux_system_roles.crypto_policies : Ensure required packages are installed --- 2.77s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:6 
Gathering Facts --------------------------------------------------------- 0.92s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:3 
fedora.linux_system_roles.crypto_policies : Check if system is ostree --- 0.58s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:10 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.48s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Update crypto policy if needed --- 0.45s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:75 
fedora.linux_system_roles.crypto_policies : Find base policies files ---- 0.43s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39 
Get SSHD pid before policy update --------------------------------------- 0.42s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:12 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.39s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.38s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.38s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.37s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.37s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.37s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
fedora.linux_system_roles.crypto_policies : Find out what is the currently active policy --- 0.37s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/gather_facts.yml:3 
Get sshd pid after second update ---------------------------------------- 0.36s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/tests/crypto_policies/tests_reload.yml:44 
fedora.linux_system_roles.crypto_policies : Check if transactional-update exists in /sbin --- 0.35s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/set_vars.yml:22 
fedora.linux_system_roles.crypto_policies : Find base policies files ---- 0.33s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:39 
fedora.linux_system_roles.crypto_policies : Find subpolicy files -------- 0.33s
/tmp/collections-GGv/ansible_collections/fedora/linux_system_roles/roles/crypto_policies/tasks/main.yml:54