ansible-playbook [core 2.17.14] config file = None configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules'] ansible python module location = /usr/local/lib/python3.12/site-packages/ansible ansible collection location = /tmp/collections-OSg executable location = /usr/local/bin/ansible-playbook python version = 3.12.13 (main, Jul 20 2026, 00:00:00) [GCC 11.5.0 20240719 (Red Hat 11.5.0-14)] (/usr/bin/python3.12) jinja version = 3.1.6 libyaml = True No config file found; using defaults running playbook inside collection fedora.linux_system_roles Skipping callback 'debug', as we already have a stdout callback. Skipping callback 'json', as we already have a stdout callback. Skipping callback 'jsonl', as we already have a stdout callback. Skipping callback 'default', as we already have a stdout callback. Skipping callback 'minimal', as we already have a stdout callback. Skipping callback 'oneline', as we already have a stdout callback. PLAYBOOK: tests_trust.yml ****************************************************** 1 plays in /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml PLAY [Test adding certificates to the system trust store] ********************** TASK [Gathering Facts] ********************************************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:3 Tuesday 04 August 2026 15:15:00 -0400 (0:00:00.016) 0:00:00.017 ******** [WARNING]: Platform linux on host managed-node3 is using the discovered Python interpreter at /usr/bin/python3.9, but future installation of another Python interpreter could change the meaning of that path. See https://docs.ansible.com/ansible- core/2.17/reference_appendices/interpreter_discovery.html for more information. ok: [managed-node3] TASK [Create a temporary directory for the test CA certificate] **************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:11 Tuesday 04 August 2026 15:15:01 -0400 (0:00:01.076) 0:00:01.093 ******** changed: [managed-node3] => { "changed": true, "gid": 0, "group": "root", "mode": "0700", "owner": "root", "path": "/tmp/lsr_trust_test_qfok_naz", "secontext": "unconfined_u:object_r:user_tmp_t:s0", "size": 6, "state": "directory", "uid": 0 } TASK [Get var __certificate_is_ostree and other role vars] ********************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:17 Tuesday 04 August 2026 15:15:01 -0400 (0:00:00.446) 0:00:01.539 ******** included: fedora.linux_system_roles.certificate for managed-node3 TASK [fedora.linux_system_roles.certificate : Ensure ansible_facts used by role] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 Tuesday 04 August 2026 15:15:01 -0400 (0:00:00.026) 0:00:01.566 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_required_facts | difference(ansible_facts.keys() | list) | length > 0", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Record role begin fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:7 Tuesday 04 August 2026 15:15:01 -0400 (0:00:00.031) 0:00:01.597 ******** ok: [managed-node3] => { "changed": false } TASK [fedora.linux_system_roles.certificate : Check if system is ostree] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:16 Tuesday 04 August 2026 15:15:02 -0400 (0:00:00.457) 0:00:02.054 ******** ok: [managed-node3] => { "changed": false, "stat": { "exists": false } } TASK [fedora.linux_system_roles.certificate : Set flag to indicate system is ostree] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:21 Tuesday 04 August 2026 15:15:02 -0400 (0:00:00.427) 0:00:02.482 ******** ok: [managed-node3] => { "ansible_facts": { "__certificate_is_ostree": false }, "changed": false } TASK [fedora.linux_system_roles.certificate : Run systemctl] ******************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:28 Tuesday 04 August 2026 15:15:02 -0400 (0:00:00.024) 0:00:02.506 ******** ok: [managed-node3] => { "changed": false, "cmd": [ "systemctl", "is-system-running" ], "delta": "0:00:00.009039", "end": "2026-08-04 15:15:03.120318", "failed_when_result": false, "rc": 0, "start": "2026-08-04 15:15:03.111279" } STDOUT: running TASK [fedora.linux_system_roles.certificate : Require installed systemd] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:36 Tuesday 04 August 2026 15:15:03 -0400 (0:00:00.491) 0:00:02.997 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "\"No such file or directory\" in __is_system_running.msg | d(\"\")", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate that systemd runtime operations are available] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:41 Tuesday 04 August 2026 15:15:03 -0400 (0:00:00.035) 0:00:03.033 ******** ok: [managed-node3] => { "ansible_facts": { "__certificate_is_booted": true }, "changed": false } TASK [fedora.linux_system_roles.certificate : Set platform/version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:46 Tuesday 04 August 2026 15:15:03 -0400 (0:00:00.019) 0:00:03.052 ******** skipping: [managed-node3] => (item=RedHat.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "RedHat.yml", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=CentOS.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "CentOS.yml", "skip_reason": "Conditional result was False" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } TASK [Ensure openssl is installed] ********************************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:23 Tuesday 04 August 2026 15:15:03 -0400 (0:00:00.036) 0:00:03.088 ******** ok: [managed-node3] => { "changed": false, "rc": 0, "results": [] } MSG: Nothing to do TASK [Generate a self-signed test CA certificate] ****************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:29 Tuesday 04 August 2026 15:15:04 -0400 (0:00:01.072) 0:00:04.161 ******** changed: [managed-node3] => { "changed": true, "cmd": [ "openssl", "req", "-x509", "-new", "-newkey", "rsa:2048", "-nodes", "-days", "3650", "-subj", "/CN=LSR-Trust-Test-CA", "-keyout", "/tmp/lsr_trust_test_qfok_naz/ca.key", "-out", "/tmp/lsr_trust_test_qfok_naz/ca.crt" ], "delta": "0:00:00.096291", "end": "2026-08-04 15:15:04.734127", "rc": 0, "start": "2026-08-04 15:15:04.637836" } STDERR: ..+......+....+..+..........+.....+...+......+....+.....+.......+..+...+.............+..+++++++++++++++++++++++++++++++++++++++*.+++++++++++++++++++++++++++++++++++++++*...........+....+.....+......+......+....+.........+...+..............+.+........+....+......+..............+......+.......+..+.......+...+...+..+......+.+..............+.+...+...........+.+..................+...+.....+............+...+...+....+......+..++++++ .+..+....+++++++++++++++++++++++++++++++++++++++*.+..+...+.+.....+....+........+...+.+......+...+++++++++++++++++++++++++++++++++++++++*..+...+............+...+.+.....+.+...+......+...........+.......+........+.......+..+...............+.+.................+...+..........+..+.+..+...+......+...+.+.....++++++ ----- TASK [Check that the test CA certificate is not yet trusted] ******************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:37 Tuesday 04 August 2026 15:15:04 -0400 (0:00:00.449) 0:00:04.610 ******** ok: [managed-node3] => { "changed": false, "cmd": [ "openssl", "verify", "/tmp/lsr_trust_test_qfok_naz/ca.crt" ], "delta": "0:00:00.014143", "end": "2026-08-04 15:15:05.116454", "failed_when_result": false, "rc": 2, "start": "2026-08-04 15:15:05.102311" } STDERR: CN=LSR-Trust-Test-CA error 18 at 0 depth lookup: self-signed certificate error /tmp/lsr_trust_test_qfok_naz/ca.crt: verification failed MSG: non-zero return code TASK [Assert that the test CA certificate is not yet trusted] ****************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:43 Tuesday 04 August 2026 15:15:05 -0400 (0:00:00.381) 0:00:04.992 ******** ok: [managed-node3] => { "changed": false } MSG: All assertions passed TASK [Run the role to trust a certificate file on the managed host] ************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:47 Tuesday 04 August 2026 15:15:05 -0400 (0:00:00.020) 0:00:05.012 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml for managed-node3 TASK [Clear facts] ************************************************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:9 Tuesday 04 August 2026 15:15:05 -0400 (0:00:00.021) 0:00:05.033 ******** META: facts cleared TASK [Run the role] ************************************************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:23 Tuesday 04 August 2026 15:15:05 -0400 (0:00:00.001) 0:00:05.034 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__sr_failed_when is defined", "skip_reason": "Conditional result was False" } TASK [Run the role normally] *************************************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:33 Tuesday 04 August 2026 15:15:05 -0400 (0:00:00.014) 0:00:05.049 ******** included: fedora.linux_system_roles.certificate for managed-node3 TASK [fedora.linux_system_roles.certificate : Set version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:2 Tuesday 04 August 2026 15:15:05 -0400 (0:00:00.075) 0:00:05.125 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Ensure ansible_facts used by role] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 Tuesday 04 August 2026 15:15:05 -0400 (0:00:00.016) 0:00:05.141 ******** ok: [managed-node3] TASK [fedora.linux_system_roles.certificate : Record role begin fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:7 Tuesday 04 August 2026 15:15:05 -0400 (0:00:00.567) 0:00:05.709 ******** ok: [managed-node3] => { "changed": false } TASK [fedora.linux_system_roles.certificate : Check if system is ostree] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:16 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.351) 0:00:06.061 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate system is ostree] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:21 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.016) 0:00:06.077 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Run systemctl] ******************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:28 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.014) 0:00:06.091 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Require installed systemd] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:36 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.014) 0:00:06.106 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate that systemd runtime operations are available] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:41 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.015) 0:00:06.122 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set platform/version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:46 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.014) 0:00:06.137 ******** skipping: [managed-node3] => (item=RedHat.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "RedHat.yml", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=CentOS.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "CentOS.yml", "skip_reason": "Conditional result was False" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } TASK [fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:10 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.043) 0:00:06.180 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Ensure provider packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:16 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.011) 0:00:06.192 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure pre-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:26 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.021) 0:00:06.213 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure post-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:50 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.017) 0:00:06.230 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure provider service is running] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:77 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.022) 0:00:06.253 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure certificates in the system trust store] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:87 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.019) 0:00:06.273 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Validate certificate_trust items] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:3 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.027) 0:00:06.300 ******** ok: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "item": { "name": "lsr-trust-test-src", "remote_src": true, "src": "/tmp/lsr_trust_test_qfok_naz/ca.crt" } } MSG: All assertions passed TASK [fedora.linux_system_roles.certificate : Ensure trust store packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:20 Tuesday 04 August 2026 15:15:06 -0400 (0:00:00.029) 0:00:06.329 ******** ok: [managed-node3] => { "changed": false, "rc": 0, "results": [] } MSG: Nothing to do TASK [fedora.linux_system_roles.certificate : Install trust certificates] ****** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:26 Tuesday 04 August 2026 15:15:07 -0400 (0:00:01.301) 0:00:07.631 ******** changed: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": true, "checksum": "734e2f3ddb993512d50db5ca45682590ce1c245e", "dest": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-src.crt", "gid": 0, "group": "root", "item": { "name": "lsr-trust-test-src", "remote_src": true, "src": "/tmp/lsr_trust_test_qfok_naz/ca.crt" }, "md5sum": "93e3356825f29b713cc88f95d8c7c278", "mode": "0644", "owner": "root", "secontext": "system_u:object_r:cert_t:s0", "size": 1135, "src": "/tmp/lsr_trust_test_qfok_naz/ca.crt", "state": "file", "uid": 0 } TASK [fedora.linux_system_roles.certificate : Install trust certificates from URL] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:43 Tuesday 04 August 2026 15:15:08 -0400 (0:00:00.479) 0:00:08.111 ******** skipping: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.url is defined", "item": { "name": "lsr-trust-test-src", "remote_src": true, "src": "/tmp/lsr_trust_test_qfok_naz/ca.crt" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Remove trust certificates] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:58 Tuesday 04 August 2026 15:15:08 -0400 (0:00:00.023) 0:00:08.134 ******** skipping: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'absent'", "item": { "name": "lsr-trust-test-src", "remote_src": true, "src": "/tmp/lsr_trust_test_qfok_naz/ca.crt" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Update system trust store] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:68 Tuesday 04 August 2026 15:15:08 -0400 (0:00:00.017) 0:00:08.152 ******** changed: [managed-node3] => { "changed": true, "cmd": [ "/usr/bin/update-ca-trust", "extract" ], "delta": "0:00:01.220582", "end": "2026-08-04 15:15:09.854930", "rc": 0, "start": "2026-08-04 15:15:08.634348" } TASK [fedora.linux_system_roles.certificate : Ensure certificate requests] ***** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:91 Tuesday 04 August 2026 15:15:09 -0400 (0:00:01.587) 0:00:09.739 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Check if test mode is supported] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:143 Tuesday 04 August 2026 15:15:09 -0400 (0:00:00.012) 0:00:09.751 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Slurp the contents of the files] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:148 Tuesday 04 August 2026 15:15:09 -0400 (0:00:00.012) 0:00:09.764 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Reset certificate_test_certs] **** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:156 Tuesday 04 August 2026 15:15:09 -0400 (0:00:00.010) 0:00:09.775 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Create return data] ************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:160 Tuesday 04 August 2026 15:15:09 -0400 (0:00:00.015) 0:00:09.790 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Stop tracking certificates] ****** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:174 Tuesday 04 August 2026 15:15:09 -0400 (0:00:00.011) 0:00:09.801 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Remove files] ******************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:179 Tuesday 04 August 2026 15:15:09 -0400 (0:00:00.012) 0:00:09.813 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Record role success fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:190 Tuesday 04 August 2026 15:15:10 -0400 (0:00:00.016) 0:00:09.830 ******** ok: [managed-node3] => { "changed": false } TASK [Get the trust anchor file attributes] ************************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:56 Tuesday 04 August 2026 15:15:10 -0400 (0:00:00.357) 0:00:10.188 ******** ok: [managed-node3] => { "changed": false, "stat": { "atime": 1785870908.6435258, "attr_flags": "", "attributes": [], "block_size": 4096, "blocks": 8, "charset": "us-ascii", "checksum": "734e2f3ddb993512d50db5ca45682590ce1c245e", "ctime": 1785870908.234521, "dev": 66305, "device_type": 0, "executable": false, "exists": true, "gid": 0, "gr_name": "root", "inode": 5218581, "isblk": false, "ischr": false, "isdir": false, "isfifo": false, "isgid": false, "islnk": false, "isreg": true, "issock": false, "isuid": false, "mimetype": "text/plain", "mode": "0644", "mtime": 1785870904.732478, "nlink": 1, "path": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-src.crt", "pw_name": "root", "readable": true, "rgrp": true, "roth": true, "rusr": true, "size": 1135, "uid": 0, "version": "709455877", "wgrp": false, "woth": false, "writeable": true, "wusr": true, "xgrp": false, "xoth": false, "xusr": false } } TASK [Assert that the trust anchor was installed] ****************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:61 Tuesday 04 August 2026 15:15:10 -0400 (0:00:00.369) 0:00:10.558 ******** ok: [managed-node3] => { "changed": false } MSG: All assertions passed TASK [Check that the test CA certificate is now trusted] *********************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:69 Tuesday 04 August 2026 15:15:10 -0400 (0:00:00.019) 0:00:10.577 ******** ok: [managed-node3] => { "changed": false, "cmd": [ "openssl", "verify", "/tmp/lsr_trust_test_qfok_naz/ca.crt" ], "delta": "0:00:00.014058", "end": "2026-08-04 15:15:11.061077", "failed_when_result": false, "rc": 0, "start": "2026-08-04 15:15:11.047019" } STDOUT: /tmp/lsr_trust_test_qfok_naz/ca.crt: OK TASK [Slurp the test CA certificate] ******************************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:75 Tuesday 04 August 2026 15:15:11 -0400 (0:00:00.369) 0:00:10.947 ******** ok: [managed-node3] => { "changed": false, "content": "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", "encoding": "base64", "source": "/tmp/lsr_trust_test_qfok_naz/ca.crt" } TASK [Run the role to trust inline certificate content] ************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:80 Tuesday 04 August 2026 15:15:11 -0400 (0:00:00.508) 0:00:11.456 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml for managed-node3 TASK [Clear facts] ************************************************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:9 Tuesday 04 August 2026 15:15:11 -0400 (0:00:00.031) 0:00:11.487 ******** META: facts cleared TASK [Run the role] ************************************************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:23 Tuesday 04 August 2026 15:15:11 -0400 (0:00:00.001) 0:00:11.488 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__sr_failed_when is defined", "skip_reason": "Conditional result was False" } TASK [Run the role normally] *************************************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:33 Tuesday 04 August 2026 15:15:11 -0400 (0:00:00.020) 0:00:11.509 ******** included: fedora.linux_system_roles.certificate for managed-node3 TASK [fedora.linux_system_roles.certificate : Set version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:2 Tuesday 04 August 2026 15:15:11 -0400 (0:00:00.055) 0:00:11.564 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Ensure ansible_facts used by role] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 Tuesday 04 August 2026 15:15:11 -0400 (0:00:00.028) 0:00:11.593 ******** ok: [managed-node3] TASK [fedora.linux_system_roles.certificate : Record role begin fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:7 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.593) 0:00:12.186 ******** ok: [managed-node3] => { "changed": false } TASK [fedora.linux_system_roles.certificate : Check if system is ostree] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:16 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.340) 0:00:12.527 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate system is ostree] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:21 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.022) 0:00:12.550 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Run systemctl] ******************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:28 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.025) 0:00:12.575 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Require installed systemd] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:36 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.024) 0:00:12.599 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate that systemd runtime operations are available] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:41 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.025) 0:00:12.625 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set platform/version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:46 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.022) 0:00:12.647 ******** skipping: [managed-node3] => (item=RedHat.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "RedHat.yml", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=CentOS.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "CentOS.yml", "skip_reason": "Conditional result was False" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } TASK [fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:10 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.055) 0:00:12.703 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Ensure provider packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:16 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.020) 0:00:12.724 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure pre-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:26 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.031) 0:00:12.755 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure post-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:50 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.029) 0:00:12.785 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure provider service is running] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:77 Tuesday 04 August 2026 15:15:12 -0400 (0:00:00.025) 0:00:12.810 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure certificates in the system trust store] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:87 Tuesday 04 August 2026 15:15:13 -0400 (0:00:00.018) 0:00:12.829 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Validate certificate_trust items] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:3 Tuesday 04 August 2026 15:15:13 -0400 (0:00:00.022) 0:00:12.852 ******** ok: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "item": { "content": "-----BEGIN CERTIFICATE-----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\nufOfHnNxdPnI3RJ3D9P9R0gkItPPME9RyTaLwBA=\n-----END CERTIFICATE-----\n", "name": "lsr-trust-test-content" } } MSG: All assertions passed TASK [fedora.linux_system_roles.certificate : Ensure trust store packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:20 Tuesday 04 August 2026 15:15:13 -0400 (0:00:00.035) 0:00:12.887 ******** ok: [managed-node3] => { "changed": false, "rc": 0, "results": [] } MSG: Nothing to do TASK [fedora.linux_system_roles.certificate : Install trust certificates] ****** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:26 Tuesday 04 August 2026 15:15:14 -0400 (0:00:01.341) 0:00:14.229 ******** changed: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": true, "checksum": "734e2f3ddb993512d50db5ca45682590ce1c245e", "dest": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-content.crt", "gid": 0, "group": "root", "item": { "content": "-----BEGIN CERTIFICATE-----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\nufOfHnNxdPnI3RJ3D9P9R0gkItPPME9RyTaLwBA=\n-----END CERTIFICATE-----\n", "name": "lsr-trust-test-content" }, "md5sum": "93e3356825f29b713cc88f95d8c7c278", "mode": "0644", "owner": "root", "secontext": "system_u:object_r:cert_t:s0", "size": 1135, "src": "/root/.ansible/tmp/ansible-tmp-1785870914.460703-18922-204639771298797/.source.crt", "state": "file", "uid": 0 } TASK [fedora.linux_system_roles.certificate : Install trust certificates from URL] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:43 Tuesday 04 August 2026 15:15:15 -0400 (0:00:00.668) 0:00:14.898 ******** skipping: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.url is defined", "item": { "content": "-----BEGIN CERTIFICATE-----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\nufOfHnNxdPnI3RJ3D9P9R0gkItPPME9RyTaLwBA=\n-----END CERTIFICATE-----\n", "name": "lsr-trust-test-content" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Remove trust certificates] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:58 Tuesday 04 August 2026 15:15:15 -0400 (0:00:00.026) 0:00:14.924 ******** skipping: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'absent'", "item": { "content": "-----BEGIN CERTIFICATE-----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\nufOfHnNxdPnI3RJ3D9P9R0gkItPPME9RyTaLwBA=\n-----END CERTIFICATE-----\n", "name": "lsr-trust-test-content" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Update system trust store] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:68 Tuesday 04 August 2026 15:15:15 -0400 (0:00:00.019) 0:00:14.944 ******** changed: [managed-node3] => { "changed": true, "cmd": [ "/usr/bin/update-ca-trust", "extract" ], "delta": "0:00:00.992832", "end": "2026-08-04 15:15:16.408419", "rc": 0, "start": "2026-08-04 15:15:15.415587" } TASK [fedora.linux_system_roles.certificate : Ensure certificate requests] ***** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:91 Tuesday 04 August 2026 15:15:16 -0400 (0:00:01.344) 0:00:16.288 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Check if test mode is supported] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:143 Tuesday 04 August 2026 15:15:16 -0400 (0:00:00.010) 0:00:16.299 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Slurp the contents of the files] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:148 Tuesday 04 August 2026 15:15:16 -0400 (0:00:00.011) 0:00:16.311 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Reset certificate_test_certs] **** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:156 Tuesday 04 August 2026 15:15:16 -0400 (0:00:00.014) 0:00:16.325 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Create return data] ************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:160 Tuesday 04 August 2026 15:15:16 -0400 (0:00:00.016) 0:00:16.341 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Stop tracking certificates] ****** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:174 Tuesday 04 August 2026 15:15:16 -0400 (0:00:00.019) 0:00:16.361 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Remove files] ******************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:179 Tuesday 04 August 2026 15:15:16 -0400 (0:00:00.019) 0:00:16.381 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Record role success fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:190 Tuesday 04 August 2026 15:15:16 -0400 (0:00:00.018) 0:00:16.399 ******** ok: [managed-node3] => { "changed": false } TASK [Get the trust anchor file attributes] ************************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:88 Tuesday 04 August 2026 15:15:16 -0400 (0:00:00.348) 0:00:16.748 ******** ok: [managed-node3] => { "changed": false, "stat": { "atime": 1785870915.421611, "attr_flags": "", "attributes": [], "block_size": 4096, "blocks": 8, "charset": "us-ascii", "checksum": "734e2f3ddb993512d50db5ca45682590ce1c245e", "ctime": 1785870915.022606, "dev": 66305, "device_type": 0, "executable": false, "exists": true, "gid": 0, "gr_name": "root", "inode": 402653382, "isblk": false, "ischr": false, "isdir": false, "isfifo": false, "isgid": false, "islnk": false, "isreg": true, "issock": false, "isuid": false, "mimetype": "text/plain", "mode": "0644", "mtime": 1785870914.7656026, "nlink": 1, "path": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-content.crt", "pw_name": "root", "readable": true, "rgrp": true, "roth": true, "rusr": true, "size": 1135, "uid": 0, "version": "1148483279", "wgrp": false, "woth": false, "writeable": true, "wusr": true, "xgrp": false, "xoth": false, "xusr": false } } TASK [Assert that the trust anchor was installed] ****************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:93 Tuesday 04 August 2026 15:15:17 -0400 (0:00:00.367) 0:00:17.115 ******** ok: [managed-node3] => { "changed": false } MSG: All assertions passed TASK [Run the role with conflicting certificate sources] *********************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:103 Tuesday 04 August 2026 15:15:17 -0400 (0:00:00.017) 0:00:17.132 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml for managed-node3 TASK [Clear facts] ************************************************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:9 Tuesday 04 August 2026 15:15:17 -0400 (0:00:00.012) 0:00:17.144 ******** META: facts cleared TASK [Run the role] ************************************************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:23 Tuesday 04 August 2026 15:15:17 -0400 (0:00:00.000) 0:00:17.145 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__sr_failed_when is defined", "skip_reason": "Conditional result was False" } TASK [Run the role normally] *************************************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:33 Tuesday 04 August 2026 15:15:17 -0400 (0:00:00.013) 0:00:17.159 ******** included: fedora.linux_system_roles.certificate for managed-node3 TASK [fedora.linux_system_roles.certificate : Set version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:2 Tuesday 04 August 2026 15:15:17 -0400 (0:00:00.030) 0:00:17.190 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Ensure ansible_facts used by role] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 Tuesday 04 August 2026 15:15:17 -0400 (0:00:00.016) 0:00:17.207 ******** ok: [managed-node3] TASK [fedora.linux_system_roles.certificate : Record role begin fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:7 Tuesday 04 August 2026 15:15:17 -0400 (0:00:00.563) 0:00:17.770 ******** ok: [managed-node3] => { "changed": false } TASK [fedora.linux_system_roles.certificate : Check if system is ostree] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:16 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.369) 0:00:18.140 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate system is ostree] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:21 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.015) 0:00:18.156 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Run systemctl] ******************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:28 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.015) 0:00:18.171 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Require installed systemd] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:36 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.013) 0:00:18.185 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate that systemd runtime operations are available] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:41 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.013) 0:00:18.198 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set platform/version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:46 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.014) 0:00:18.213 ******** skipping: [managed-node3] => (item=RedHat.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "RedHat.yml", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=CentOS.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "CentOS.yml", "skip_reason": "Conditional result was False" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } TASK [fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:10 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.037) 0:00:18.251 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Ensure provider packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:16 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.011) 0:00:18.262 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure pre-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:26 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.023) 0:00:18.285 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure post-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:50 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.026) 0:00:18.312 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure provider service is running] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:77 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.030) 0:00:18.342 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure certificates in the system trust store] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:87 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.020) 0:00:18.363 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Validate certificate_trust items] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:3 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.022) 0:00:18.385 ******** failed: [managed-node3] (item=lsr-trust-test-invalid) => { "ansible_loop_var": "item", "assertion": "item.state | d('present') == 'absent' or [item.content is defined, item.src is defined, item.url is defined] | select | list | length == 1", "changed": false, "evaluated_to": false, "item": { "content": "not-a-certificate", "name": "lsr-trust-test-invalid", "url": "https://ca.example.com/ca.crt" } } MSG: Each certificate_trust item must have a name, state must be 'present' or 'absent', and exactly one of content, src, or url must be given when state is 'present' TASK [Assert that the role failed in validation] ******************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:115 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.028) 0:00:18.414 ******** ok: [managed-node3] => { "changed": false } MSG: All assertions passed TASK [Run the role to remove the trust anchors] ******************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:124 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.021) 0:00:18.436 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml for managed-node3 TASK [Clear facts] ************************************************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:9 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.023) 0:00:18.459 ******** META: facts cleared TASK [Run the role] ************************************************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:23 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.001) 0:00:18.461 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__sr_failed_when is defined", "skip_reason": "Conditional result was False" } TASK [Run the role normally] *************************************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:33 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.018) 0:00:18.479 ******** included: fedora.linux_system_roles.certificate for managed-node3 TASK [fedora.linux_system_roles.certificate : Set version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:2 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.035) 0:00:18.514 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Ensure ansible_facts used by role] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 Tuesday 04 August 2026 15:15:18 -0400 (0:00:00.016) 0:00:18.531 ******** ok: [managed-node3] TASK [fedora.linux_system_roles.certificate : Record role begin fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:7 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.581) 0:00:19.113 ******** ok: [managed-node3] => { "changed": false } TASK [fedora.linux_system_roles.certificate : Check if system is ostree] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:16 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.359) 0:00:19.473 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate system is ostree] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:21 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.016) 0:00:19.489 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Run systemctl] ******************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:28 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.018) 0:00:19.508 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Require installed systemd] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:36 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.014) 0:00:19.522 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate that systemd runtime operations are available] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:41 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.014) 0:00:19.537 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set platform/version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:46 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.013) 0:00:19.551 ******** skipping: [managed-node3] => (item=RedHat.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "RedHat.yml", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=CentOS.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "CentOS.yml", "skip_reason": "Conditional result was False" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } TASK [fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:10 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.033) 0:00:19.584 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Ensure provider packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:16 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.011) 0:00:19.596 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure pre-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:26 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.018) 0:00:19.615 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure post-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:50 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.017) 0:00:19.632 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure provider service is running] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:77 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.016) 0:00:19.649 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure certificates in the system trust store] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:87 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.018) 0:00:19.668 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Validate certificate_trust items] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:3 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.018) 0:00:19.686 ******** ok: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "item": { "name": "lsr-trust-test-src", "state": "absent" } } MSG: All assertions passed ok: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "item": { "name": "lsr-trust-test-content", "state": "absent" } } MSG: All assertions passed TASK [fedora.linux_system_roles.certificate : Ensure trust store packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:20 Tuesday 04 August 2026 15:15:19 -0400 (0:00:00.036) 0:00:19.723 ******** ok: [managed-node3] => { "changed": false, "rc": 0, "results": [] } MSG: Nothing to do TASK [fedora.linux_system_roles.certificate : Install trust certificates] ****** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:26 Tuesday 04 August 2026 15:15:21 -0400 (0:00:01.322) 0:00:21.045 ******** skipping: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'present'", "item": { "name": "lsr-trust-test-src", "state": "absent" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'present'", "item": { "name": "lsr-trust-test-content", "state": "absent" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Install trust certificates from URL] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:43 Tuesday 04 August 2026 15:15:21 -0400 (0:00:00.019) 0:00:21.065 ******** skipping: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'present'", "item": { "name": "lsr-trust-test-src", "state": "absent" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'present'", "item": { "name": "lsr-trust-test-content", "state": "absent" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Remove trust certificates] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:58 Tuesday 04 August 2026 15:15:21 -0400 (0:00:00.018) 0:00:21.083 ******** changed: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": true, "item": { "name": "lsr-trust-test-src", "state": "absent" }, "path": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-src.crt", "state": "absent" } changed: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": true, "item": { "name": "lsr-trust-test-content", "state": "absent" }, "path": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-content.crt", "state": "absent" } TASK [fedora.linux_system_roles.certificate : Update system trust store] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:68 Tuesday 04 August 2026 15:15:22 -0400 (0:00:00.799) 0:00:21.883 ******** changed: [managed-node3] => { "changed": true, "cmd": [ "/usr/bin/update-ca-trust", "extract" ], "delta": "0:00:00.988904", "end": "2026-08-04 15:15:23.353998", "rc": 0, "start": "2026-08-04 15:15:22.365094" } TASK [fedora.linux_system_roles.certificate : Ensure certificate requests] ***** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:91 Tuesday 04 August 2026 15:15:23 -0400 (0:00:01.347) 0:00:23.231 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Check if test mode is supported] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:143 Tuesday 04 August 2026 15:15:23 -0400 (0:00:00.010) 0:00:23.241 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Slurp the contents of the files] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:148 Tuesday 04 August 2026 15:15:23 -0400 (0:00:00.011) 0:00:23.253 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Reset certificate_test_certs] **** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:156 Tuesday 04 August 2026 15:15:23 -0400 (0:00:00.011) 0:00:23.264 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Create return data] ************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:160 Tuesday 04 August 2026 15:15:23 -0400 (0:00:00.012) 0:00:23.277 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Stop tracking certificates] ****** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:174 Tuesday 04 August 2026 15:15:23 -0400 (0:00:00.011) 0:00:23.288 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Remove files] ******************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:179 Tuesday 04 August 2026 15:15:23 -0400 (0:00:00.013) 0:00:23.301 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Record role success fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:190 Tuesday 04 August 2026 15:15:23 -0400 (0:00:00.016) 0:00:23.318 ******** ok: [managed-node3] => { "changed": false } TASK [Get the trust anchor file attributes] ************************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:134 Tuesday 04 August 2026 15:15:23 -0400 (0:00:00.347) 0:00:23.666 ******** ok: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "item": "lsr-trust-test-src", "stat": { "exists": false } } ok: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "item": "lsr-trust-test-content", "stat": { "exists": false } } TASK [Assert that the trust anchors were removed] ****************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:142 Tuesday 04 August 2026 15:15:24 -0400 (0:00:00.684) 0:00:24.350 ******** ok: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "item": { "ansible_loop_var": "item", "changed": false, "failed": false, "invocation": { "module_args": { "checksum_algorithm": "sha1", "follow": false, "get_attributes": true, "get_checksum": true, "get_mime": true, "path": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-src.crt" } }, "item": "lsr-trust-test-src", "stat": { "exists": false } } } MSG: All assertions passed ok: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "item": { "ansible_loop_var": "item", "changed": false, "failed": false, "invocation": { "module_args": { "checksum_algorithm": "sha1", "follow": false, "get_attributes": true, "get_checksum": true, "get_mime": true, "path": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-content.crt" } }, "item": "lsr-trust-test-content", "stat": { "exists": false } } } MSG: All assertions passed TASK [Check that the test CA certificate is no longer trusted] ***************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:149 Tuesday 04 August 2026 15:15:24 -0400 (0:00:00.021) 0:00:24.371 ******** ok: [managed-node3] => { "changed": false, "cmd": [ "openssl", "verify", "/tmp/lsr_trust_test_qfok_naz/ca.crt" ], "delta": "0:00:00.014267", "end": "2026-08-04 15:15:24.862354", "failed_when_result": false, "rc": 2, "start": "2026-08-04 15:15:24.848087" } STDERR: CN=LSR-Trust-Test-CA error 18 at 0 depth lookup: self-signed certificate error /tmp/lsr_trust_test_qfok_naz/ca.crt: verification failed MSG: non-zero return code TASK [Assert that the test CA certificate is no longer trusted] **************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:155 Tuesday 04 August 2026 15:15:24 -0400 (0:00:00.366) 0:00:24.737 ******** ok: [managed-node3] => { "changed": false } MSG: All assertions passed TASK [Run the role to clean up the trust anchors] ****************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:159 Tuesday 04 August 2026 15:15:24 -0400 (0:00:00.017) 0:00:24.755 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml for managed-node3 TASK [Clear facts] ************************************************************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:9 Tuesday 04 August 2026 15:15:24 -0400 (0:00:00.021) 0:00:24.776 ******** META: facts cleared TASK [Run the role] ************************************************************ task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:23 Tuesday 04 August 2026 15:15:24 -0400 (0:00:00.000) 0:00:24.777 ******** included: fedora.linux_system_roles.certificate for managed-node3 TASK [fedora.linux_system_roles.certificate : Set version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:2 Tuesday 04 August 2026 15:15:24 -0400 (0:00:00.035) 0:00:24.813 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Ensure ansible_facts used by role] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 Tuesday 04 August 2026 15:15:25 -0400 (0:00:00.022) 0:00:24.835 ******** ok: [managed-node3] TASK [fedora.linux_system_roles.certificate : Record role begin fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:7 Tuesday 04 August 2026 15:15:25 -0400 (0:00:00.562) 0:00:25.398 ******** ok: [managed-node3] => { "changed": false } TASK [fedora.linux_system_roles.certificate : Check if system is ostree] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:16 Tuesday 04 August 2026 15:15:25 -0400 (0:00:00.351) 0:00:25.750 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate system is ostree] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:21 Tuesday 04 August 2026 15:15:25 -0400 (0:00:00.017) 0:00:25.767 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "not __certificate_is_ostree is defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Run systemctl] ******************* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:28 Tuesday 04 August 2026 15:15:25 -0400 (0:00:00.017) 0:00:25.785 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Require installed systemd] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:36 Tuesday 04 August 2026 15:15:25 -0400 (0:00:00.016) 0:00:25.801 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set flag to indicate that systemd runtime operations are available] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:41 Tuesday 04 August 2026 15:15:25 -0400 (0:00:00.016) 0:00:25.818 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_is_booted is not defined", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Set platform/version specific variables] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:46 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.016) 0:00:25.835 ******** skipping: [managed-node3] => (item=RedHat.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "RedHat.yml", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=CentOS.yml) => { "ansible_loop_var": "item", "changed": false, "false_condition": "__vars_file is file", "item": "CentOS.yml", "skip_reason": "Conditional result was False" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } ok: [managed-node3] => (item=CentOS_9.yml) => { "ansible_facts": { "__certificate_certmonger_packages": [ "certmonger", "python3-packaging" ] }, "ansible_included_var_files": [ "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/vars/CentOS_9.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_9.yml" } TASK [fedora.linux_system_roles.certificate : Ensure certificate role dependencies are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:10 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.047) 0:00:25.882 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Ensure provider packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:16 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.017) 0:00:25.899 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure pre-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:26 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.023) 0:00:25.923 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure post-scripts hooks directory exists] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:50 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.023) 0:00:25.946 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure provider service is running] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:77 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.022) 0:00:25.969 ******** skipping: [managed-node3] => (item=certmonger) => { "__certificate_provider": "certmonger", "ansible_loop_var": "__certificate_provider", "changed": false, "false_condition": "certificate_requests | length > 0", "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Ensure certificates in the system trust store] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:87 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.026) 0:00:25.995 ******** included: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml for managed-node3 TASK [fedora.linux_system_roles.certificate : Validate certificate_trust items] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:3 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.024) 0:00:26.020 ******** ok: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "item": { "name": "lsr-trust-test-src", "state": "absent" } } MSG: All assertions passed ok: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "item": { "name": "lsr-trust-test-content", "state": "absent" } } MSG: All assertions passed TASK [fedora.linux_system_roles.certificate : Ensure trust store packages are installed] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:20 Tuesday 04 August 2026 15:15:26 -0400 (0:00:00.044) 0:00:26.064 ******** ok: [managed-node3] => { "changed": false, "rc": 0, "results": [] } MSG: Nothing to do TASK [fedora.linux_system_roles.certificate : Install trust certificates] ****** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:26 Tuesday 04 August 2026 15:15:27 -0400 (0:00:01.299) 0:00:27.364 ******** skipping: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'present'", "item": { "name": "lsr-trust-test-src", "state": "absent" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'present'", "item": { "name": "lsr-trust-test-content", "state": "absent" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Install trust certificates from URL] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:43 Tuesday 04 August 2026 15:15:27 -0400 (0:00:00.028) 0:00:27.392 ******** skipping: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'present'", "item": { "name": "lsr-trust-test-src", "state": "absent" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "false_condition": "item.state | d('present') == 'present'", "item": { "name": "lsr-trust-test-content", "state": "absent" }, "skip_reason": "Conditional result was False" } skipping: [managed-node3] => { "changed": false } MSG: All items skipped TASK [fedora.linux_system_roles.certificate : Remove trust certificates] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:58 Tuesday 04 August 2026 15:15:27 -0400 (0:00:00.027) 0:00:27.419 ******** ok: [managed-node3] => (item=lsr-trust-test-src) => { "ansible_loop_var": "item", "changed": false, "item": { "name": "lsr-trust-test-src", "state": "absent" }, "path": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-src.crt", "state": "absent" } ok: [managed-node3] => (item=lsr-trust-test-content) => { "ansible_loop_var": "item", "changed": false, "item": { "name": "lsr-trust-test-content", "state": "absent" }, "path": "/etc/pki/ca-trust/source/anchors/lsr-trust-test-content.crt", "state": "absent" } TASK [fedora.linux_system_roles.certificate : Update system trust store] ******* task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:68 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.700) 0:00:28.120 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__certificate_trust_copied is changed or __certificate_trust_downloaded is changed or __certificate_trust_removed is changed", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Ensure certificate requests] ***** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:91 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.017) 0:00:28.137 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Check if test mode is supported] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:143 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.009) 0:00:28.147 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Slurp the contents of the files] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:148 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.016) 0:00:28.164 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Reset certificate_test_certs] **** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:156 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.010) 0:00:28.174 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Create return data] ************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:160 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.016) 0:00:28.191 ******** skipping: [managed-node3] => { "changed": false, "skipped_reason": "No items in the list" } TASK [fedora.linux_system_roles.certificate : Stop tracking certificates] ****** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:174 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.011) 0:00:28.203 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Remove files] ******************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:179 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.018) 0:00:28.221 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "certificate_test_mode | d(false)", "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.certificate : Record role success fingerprint] *** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/main.yml:190 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.021) 0:00:28.243 ******** ok: [managed-node3] => { "changed": false } TASK [Run the role normally] *************************************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tasks/run_role_with_clear_facts.yml:33 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.345) 0:00:28.589 ******** skipping: [managed-node3] => { "changed": false, "false_condition": "__sr_failed_when | d(true)", "skip_reason": "Conditional result was False" } TASK [Clean up the test CA temporary directory] ******************************** task path: /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:170 Tuesday 04 August 2026 15:15:28 -0400 (0:00:00.012) 0:00:28.602 ******** changed: [managed-node3] => { "changed": true, "path": "/tmp/lsr_trust_test_qfok_naz", "state": "absent" } PLAY RECAP ********************************************************************* managed-node3 : ok=79 changed=9 unreachable=0 failed=0 skipped=94 rescued=1 ignored=0 SYSTEM ROLES ERRORS BEGIN v1 [ { "ansible_version": "2.17.14", "end_time": "2026-08-04T19:15:18.586964+00:00Z", "host": "managed-node3", "loop_item": { "content": "not-a-certificate", "name": "lsr-trust-test-invalid", "url": "https://ca.example.com/ca.crt" }, "loop_label": "lsr-trust-test-invalid", "loop_var": "item", "message": "Each certificate_trust item must have a name, state must be 'present' or 'absent', and exactly one of content, src, or url must be given when state is 'present'", "start_time": "2026-08-04T19:15:18.560594+00:00Z", "task_name": "Validate certificate_trust items", "task_path": "/tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:3" } ] SYSTEM ROLES ERRORS END v1 TASKS RECAP ******************************************************************** Tuesday 04 August 2026 15:15:29 -0400 (0:00:00.356) 0:00:28.958 ******** =============================================================================== fedora.linux_system_roles.certificate : Update system trust store ------- 1.59s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:68 fedora.linux_system_roles.certificate : Update system trust store ------- 1.35s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:68 fedora.linux_system_roles.certificate : Update system trust store ------- 1.34s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:68 fedora.linux_system_roles.certificate : Ensure trust store packages are installed --- 1.34s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:20 fedora.linux_system_roles.certificate : Ensure trust store packages are installed --- 1.32s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:20 fedora.linux_system_roles.certificate : Ensure trust store packages are installed --- 1.30s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:20 fedora.linux_system_roles.certificate : Ensure trust store packages are installed --- 1.30s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:20 Gathering Facts --------------------------------------------------------- 1.08s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:3 Ensure openssl is installed --------------------------------------------- 1.07s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:23 fedora.linux_system_roles.certificate : Remove trust certificates ------- 0.80s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:58 fedora.linux_system_roles.certificate : Remove trust certificates ------- 0.70s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:58 Get the trust anchor file attributes ------------------------------------ 0.68s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:134 fedora.linux_system_roles.certificate : Install trust certificates ------ 0.67s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/certificate_trust.yml:26 fedora.linux_system_roles.certificate : Ensure ansible_facts used by role --- 0.59s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 fedora.linux_system_roles.certificate : Ensure ansible_facts used by role --- 0.58s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 fedora.linux_system_roles.certificate : Ensure ansible_facts used by role --- 0.57s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 fedora.linux_system_roles.certificate : Ensure ansible_facts used by role --- 0.56s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 fedora.linux_system_roles.certificate : Ensure ansible_facts used by role --- 0.56s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:2 Slurp the test CA certificate ------------------------------------------- 0.51s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/tests/certificate/tests_trust.yml:75 fedora.linux_system_roles.certificate : Run systemctl ------------------- 0.49s /tmp/collections-OSg/ansible_collections/fedora/linux_system_roles/roles/certificate/tasks/set_vars.yml:28