ansible-playbook [core 2.12.6] config file = /etc/ansible/ansible.cfg configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules'] ansible python module location = /usr/lib/python3.9/site-packages/ansible ansible collection location = /tmp/tmpym83ylkt executable location = /usr/bin/ansible-playbook python version = 3.9.13 (main, May 18 2022, 00:00:00) [GCC 11.3.1 20220421 (Red Hat 11.3.1-2)] jinja version = 2.11.3 libyaml = True Using /etc/ansible/ansible.cfg as config file Skipping callback 'debug', as we already have a stdout callback. Skipping callback 'default', as we already have a stdout callback. Skipping callback 'minimal', as we already have a stdout callback. Skipping callback 'oneline', as we already have a stdout callback. PLAYBOOK: rhel-7_setup.yml ***************************************************** 1 plays in /cache/rhel-7_setup.yml PLAY [Setup repos] ************************************************************* META: ran handlers TASK [set up internal repositories] ******************************************** task path: /cache/rhel-7_setup.yml:5 Tuesday 14 June 2022 21:08:56 +0000 (0:00:00.018) 0:00:00.018 ********** changed: [/cache/rhel-7.qcow2] => (item=None) => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } changed: [/cache/rhel-7.qcow2] => (item=None) => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } changed: [/cache/rhel-7.qcow2] => (item=None) => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } changed: [/cache/rhel-7.qcow2] => (item=None) => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } changed: [/cache/rhel-7.qcow2] => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } META: ran handlers META: ran handlers PLAY RECAP ********************************************************************* /cache/rhel-7.qcow2 : ok=1 changed=1 unreachable=0 failed=0 skipped=0 rescued=0 ignored=0 Tuesday 14 June 2022 21:08:57 +0000 (0:00:01.445) 0:00:01.463 ********** =============================================================================== set up internal repositories -------------------------------------------- 1.45s /cache/rhel-7_setup.yml:5 ----------------------------------------------------- PLAYBOOK: tests_ansible.yml **************************************************** 1 plays in /tmp/tmpqqlptjhy/tests/tests_ansible.yml PLAY [Ensure that the roles runs with default parameters] ********************** TASK [Gathering Facts] ********************************************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:1 Tuesday 14 June 2022 21:08:57 +0000 (0:00:00.040) 0:00:01.504 ********** ok: [/cache/rhel-7.qcow2] META: ran handlers TASK [linux-system-roles.firewall : include_tasks] ***************************** task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:1 Tuesday 14 June 2022 21:08:58 +0000 (0:00:00.966) 0:00:02.470 ********** included: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/firewalld.yml for /cache/rhel-7.qcow2 TASK [linux-system-roles.firewall : Ensure ansible_facts used by role] ********* task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/firewalld.yml:2 Tuesday 14 June 2022 21:08:58 +0000 (0:00:00.029) 0:00:02.499 ********** ok: [/cache/rhel-7.qcow2] TASK [linux-system-roles.firewall : Install firewalld] ************************* task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/firewalld.yml:8 Tuesday 14 June 2022 21:08:59 +0000 (0:00:00.430) 0:00:02.930 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "changes": { "installed": [ "firewalld" ] }, "rc": 0, "results": [ "Loaded plugins: search-disabled-repos\nResolving Dependencies\n--> Running transaction check\n---> Package firewalld.noarch 0:0.6.3-13.el7_9 will be installed\n--> Processing Dependency: python-firewall = 0.6.3-13.el7_9 for package: firewalld-0.6.3-13.el7_9.noarch\n--> Processing Dependency: firewalld-filesystem = 0.6.3-13.el7_9 for package: firewalld-0.6.3-13.el7_9.noarch\n--> Processing Dependency: ipset for package: firewalld-0.6.3-13.el7_9.noarch\n--> Processing Dependency: ebtables for package: firewalld-0.6.3-13.el7_9.noarch\n--> Running transaction check\n---> Package ebtables.x86_64 0:2.0.10-16.el7 will be installed\n---> Package firewalld-filesystem.noarch 0:0.6.3-13.el7_9 will be installed\n---> Package ipset.x86_64 0:7.1-1.el7 will be installed\n--> Processing Dependency: ipset-libs(x86-64) = 7.1-1.el7 for package: ipset-7.1-1.el7.x86_64\n--> Processing Dependency: libipset.so.13(LIBIPSET_4.8)(64bit) for package: ipset-7.1-1.el7.x86_64\n--> Processing Dependency: libipset.so.13(LIBIPSET_2.0)(64bit) for package: ipset-7.1-1.el7.x86_64\n--> Processing Dependency: libipset.so.13()(64bit) for package: ipset-7.1-1.el7.x86_64\n---> Package python-firewall.noarch 0:0.6.3-13.el7_9 will be installed\n--> Processing Dependency: python-slip-dbus for package: python-firewall-0.6.3-13.el7_9.noarch\n--> Running transaction check\n---> Package ipset-libs.x86_64 0:7.1-1.el7 will be installed\n---> Package python-slip-dbus.noarch 0:0.4.0-4.el7 will be installed\n--> Processing Dependency: python-slip = 0.4.0-4.el7 for package: python-slip-dbus-0.4.0-4.el7.noarch\n--> Running transaction check\n---> Package python-slip.noarch 0:0.4.0-4.el7 will be installed\n--> Finished Dependency Resolution\n\nDependencies Resolved\n\n================================================================================\n Package Arch Version Repository Size\n================================================================================\nInstalling:\n firewalld noarch 0.6.3-13.el7_9 rhel 449 k\nInstalling for dependencies:\n ebtables x86_64 2.0.10-16.el7 rhel 123 k\n firewalld-filesystem noarch 0.6.3-13.el7_9 rhel 51 k\n ipset x86_64 7.1-1.el7 rhel 39 k\n ipset-libs x86_64 7.1-1.el7 rhel 64 k\n python-firewall noarch 0.6.3-13.el7_9 rhel 355 k\n python-slip noarch 0.4.0-4.el7 rhel 31 k\n python-slip-dbus noarch 0.4.0-4.el7 rhel 32 k\n\nTransaction Summary\n================================================================================\nInstall 1 Package (+7 Dependent packages)\n\nTotal download size: 1.1 M\nInstalled size: 4.5 M\nDownloading packages:\n--------------------------------------------------------------------------------\nTotal 13 MB/s | 1.1 MB 00:00 \nRunning transaction check\nRunning transaction test\nTransaction test succeeded\nRunning transaction\n Installing : ebtables-2.0.10-16.el7.x86_64 1/8 \n Installing : ipset-libs-7.1-1.el7.x86_64 2/8 \n Installing : ipset-7.1-1.el7.x86_64 3/8 \n Installing : python-slip-0.4.0-4.el7.noarch 4/8 \n Installing : python-slip-dbus-0.4.0-4.el7.noarch 5/8 \n Installing : python-firewall-0.6.3-13.el7_9.noarch 6/8 \n Installing : firewalld-filesystem-0.6.3-13.el7_9.noarch 7/8 \n Installing : firewalld-0.6.3-13.el7_9.noarch 8/8 \n Verifying : ipset-7.1-1.el7.x86_64 1/8 \n Verifying : python-slip-dbus-0.4.0-4.el7.noarch 2/8 \n Verifying : firewalld-filesystem-0.6.3-13.el7_9.noarch 3/8 \n Verifying : firewalld-0.6.3-13.el7_9.noarch 4/8 \n Verifying : python-slip-0.4.0-4.el7.noarch 5/8 \n Verifying : python-firewall-0.6.3-13.el7_9.noarch 6/8 \n Verifying : ipset-libs-7.1-1.el7.x86_64 7/8 \n Verifying : ebtables-2.0.10-16.el7.x86_64 8/8 \n\nInstalled:\n firewalld.noarch 0:0.6.3-13.el7_9 \n\nDependency Installed:\n ebtables.x86_64 0:2.0.10-16.el7 \n firewalld-filesystem.noarch 0:0.6.3-13.el7_9 \n ipset.x86_64 0:7.1-1.el7 \n ipset-libs.x86_64 0:7.1-1.el7 \n python-firewall.noarch 0:0.6.3-13.el7_9 \n python-slip.noarch 0:0.4.0-4.el7 \n python-slip-dbus.noarch 0:0.4.0-4.el7 \n\nComplete!\n" ] } TASK [linux-system-roles.firewall : Install python-firewall] ******************* task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/firewalld.yml:13 Tuesday 14 June 2022 21:09:04 +0000 (0:00:05.150) 0:00:08.081 ********** ok: [/cache/rhel-7.qcow2] => { "changed": false, "rc": 0, "results": [ "python-firewall-0.6.3-13.el7_9.noarch providing python-firewall is already installed" ] } TASK [linux-system-roles.firewall : Install python3-firewall] ****************** task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/firewalld.yml:19 Tuesday 14 June 2022 21:09:04 +0000 (0:00:00.519) 0:00:08.600 ********** skipping: [/cache/rhel-7.qcow2] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [linux-system-roles.firewall : Enable and start firewalld service] ******** task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:3 Tuesday 14 June 2022 21:09:04 +0000 (0:00:00.026) 0:00:08.626 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "enabled": true, "name": "firewalld", "state": "started", "status": { "ActiveEnterTimestampMonotonic": "0", "ActiveExitTimestampMonotonic": "0", "ActiveState": "inactive", "After": "dbus.service basic.target system.slice polkit.service", "AllowIsolate": "no", "AmbientCapabilities": "0", "AssertResult": "no", "AssertTimestampMonotonic": "0", "Before": "multi-user.target network-pre.target shutdown.target", "BlockIOAccounting": "no", "BlockIOWeight": "18446744073709551615", "BusName": "org.fedoraproject.FirewallD1", "CPUAccounting": "no", "CPUQuotaPerSecUSec": "infinity", "CPUSchedulingPolicy": "0", "CPUSchedulingPriority": "0", "CPUSchedulingResetOnFork": "no", "CPUShares": "18446744073709551615", "CanIsolate": "no", "CanReload": "yes", "CanStart": "yes", "CanStop": "yes", "CapabilityBoundingSet": "18446744073709551615", "CollectMode": "inactive", "ConditionResult": "no", "ConditionTimestampMonotonic": "0", "Conflicts": "iptables.service ipset.service ebtables.service shutdown.target ip6tables.service", "ControlPID": "0", "DefaultDependencies": "yes", "Delegate": "no", "Description": "firewalld - dynamic firewall daemon", "DevicePolicy": "auto", "Documentation": "man:firewalld(1)", "EnvironmentFile": "/etc/sysconfig/firewalld (ignore_errors=yes)", "ExecMainCode": "0", "ExecMainExitTimestampMonotonic": "0", "ExecMainPID": "0", "ExecMainStartTimestampMonotonic": "0", "ExecMainStatus": "0", "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }", "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }", "FailureAction": "none", "FileDescriptorStoreMax": "0", "FragmentPath": "/usr/lib/systemd/system/firewalld.service", "GuessMainPID": "yes", "IOScheduling": "0", "Id": "firewalld.service", "IgnoreOnIsolate": "no", "IgnoreOnSnapshot": "no", "IgnoreSIGPIPE": "yes", "InactiveEnterTimestampMonotonic": "0", "InactiveExitTimestampMonotonic": "0", "JobTimeoutAction": "none", "JobTimeoutUSec": "0", "KillMode": "mixed", "KillSignal": "15", "LimitAS": "18446744073709551615", "LimitCORE": "18446744073709551615", "LimitCPU": "18446744073709551615", "LimitDATA": "18446744073709551615", "LimitFSIZE": "18446744073709551615", "LimitLOCKS": "18446744073709551615", "LimitMEMLOCK": "65536", "LimitMSGQUEUE": "819200", "LimitNICE": "0", "LimitNOFILE": "4096", "LimitNPROC": "7155", "LimitRSS": "18446744073709551615", "LimitRTPRIO": "0", "LimitRTTIME": "18446744073709551615", "LimitSIGPENDING": "7155", "LimitSTACK": "18446744073709551615", "LoadState": "loaded", "MainPID": "0", "MemoryAccounting": "no", "MemoryCurrent": "18446744073709551615", "MemoryLimit": "18446744073709551615", "MountFlags": "0", "Names": "firewalld.service", "NeedDaemonReload": "no", "Nice": "0", "NoNewPrivileges": "no", "NonBlocking": "no", "NotifyAccess": "none", "OOMScoreAdjust": "0", "OnFailureJobMode": "replace", "PermissionsStartOnly": "no", "PrivateDevices": "no", "PrivateNetwork": "no", "PrivateTmp": "no", "ProtectHome": "no", "ProtectSystem": "no", "RefuseManualStart": "no", "RefuseManualStop": "no", "RemainAfterExit": "no", "Requires": "basic.target system.slice", "Restart": "no", "RestartUSec": "100ms", "Result": "success", "RootDirectoryStartOnly": "no", "RuntimeDirectoryMode": "0755", "SameProcessGroup": "no", "SecureBits": "0", "SendSIGHUP": "no", "SendSIGKILL": "yes", "Slice": "system.slice", "StandardError": "null", "StandardInput": "null", "StandardOutput": "null", "StartLimitAction": "none", "StartLimitBurst": "5", "StartLimitInterval": "10000000", "StartupBlockIOWeight": "18446744073709551615", "StartupCPUShares": "18446744073709551615", "StatusErrno": "0", "StopWhenUnneeded": "no", "SubState": "dead", "SyslogLevelPrefix": "yes", "SyslogPriority": "30", "SystemCallErrorNumber": "0", "TTYReset": "no", "TTYVHangup": "no", "TTYVTDisallocate": "no", "TasksAccounting": "no", "TasksCurrent": "18446744073709551615", "TasksMax": "18446744073709551615", "TimeoutStartUSec": "1min 30s", "TimeoutStopUSec": "1min 30s", "TimerSlackNSec": "50000", "Transient": "no", "Type": "dbus", "UMask": "0022", "UnitFilePreset": "enabled", "UnitFileState": "enabled", "WantedBy": "multi-user.target", "Wants": "network-pre.target", "WatchdogTimestampMonotonic": "0", "WatchdogUSec": "0" } } TASK [linux-system-roles.firewall : Check if previous replaced is defined] ***** task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:9 Tuesday 14 June 2022 21:09:05 +0000 (0:00:00.913) 0:00:09.540 ********** ok: [/cache/rhel-7.qcow2] => { "ansible_facts": { "__firewall_previous_replaced": false, "__firewall_python_cmd": "/usr/bin/python" }, "changed": false } TASK [linux-system-roles.firewall : Get config files, checksums before and remove] *** task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:18 Tuesday 14 June 2022 21:09:05 +0000 (0:00:00.049) 0:00:09.589 ********** skipping: [/cache/rhel-7.qcow2] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [linux-system-roles.firewall : Configure firewall] ************************ task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:40 Tuesday 14 June 2022 21:09:05 +0000 (0:00:00.034) 0:00:09.624 ********** TASK [linux-system-roles.firewall : gather firewalld configuration] ************ task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:69 Tuesday 14 June 2022 21:09:05 +0000 (0:00:00.036) 0:00:09.660 ********** ok: [/cache/rhel-7.qcow2] => { "ansible_facts": { "firewalld_config": { "custom": { "helpers": [], "icmptypes": [], "ipsets": [], "services": [], "zones": [ "public" ] }, "default": { "helpers": [ "Q.931", "RAS", "amanda", "ftp", "h323", "irc", "netbios-ns", "pptp", "proto-gre", "sane", "sip", "snmp", "tftp" ], "icmptypes": [ "address-unreachable", "bad-header", "beyond-scope", "communication-prohibited", "destination-unreachable", "echo-reply", "echo-request", "failed-policy", "fragmentation-needed", "unknown-option", "host-precedence-violation", "host-prohibited", "host-redirect", "host-unknown", "host-unreachable", "ip-header-bad", "neighbour-advertisement", "neighbour-solicitation", "network-prohibited", "network-redirect", "network-unknown", "network-unreachable", "no-route", "packet-too-big", "parameter-problem", "port-unreachable", "precedence-cutoff", "protocol-unreachable", "redirect", "reject-route", "required-option-missing", "router-advertisement", "router-solicitation", "source-quench", "source-route-failed", "time-exceeded", "timestamp-reply", "timestamp-request", "tos-host-redirect", "tos-host-unreachable", "tos-network-redirect", "tos-network-unreachable", "ttl-zero-during-reassembly", "ttl-zero-during-transit", "unknown-header-type" ], "ipsets": [], "services": [ "jenkins", "snmp", "RH-Satellite-6-capsule", "kpasswd", "RH-Satellite-6", "kprop", "amanda-client", "kadmin", "snmptrap", "amanda-k5-client", "pmcd", "amqp", "pmproxy", "amqps", "pmwebapi", "apcupsd", "pmwebapis", "audit", "kshell", "bacula-client", "pop3", "bacula", "pop3s", "bgp", "ldap", "bitcoin-rpc", "kerberos", "squid", "bitcoin-testnet-rpc", "ldaps", "bitcoin-testnet", "postgresql", "bitcoin", "mountd", "ceph-mon", "privoxy", "ceph", "mqtt-tls", "cfengine", "kibana", "ssh", "condor-collector", "proxy-dhcp", "ctdb", "ptp", "dhcp", "mqtt", "dhcpv6-client", "pulseaudio", "dhcpv6", "puppetmaster", "distcc", "quassel", "dns", "ms-wbt", "docker-registry", "mssql", "docker-swarm", "murmur", "dropbox-lansync", "mysql", "elasticsearch", "nfs", "etcd-client", "nfs3", "etcd-server", "radius", "finger", "nmea-0183", "freeipa-ldap", "nrpe", "freeipa-ldaps", "mongodb", "svdrp", "freeipa-replication", "ntp", "freeipa-trust", "redis", "ftp", "nut", "ganglia-client", "openvpn", "ganglia-master", "rpc-bind", "git", "rsh", "gre", "klogin", "svn", "high-availability", "rsyncd", "http", "rtsp", "https", "salt-master", "imap", "samba-client", "imaps", "ovirt-imageio", "ipp-client", "samba-dc", "ipp", "samba", "ipsec", "sane", "irc", "sip", "ircs", "ovirt-storageconsole", "iscsi-target", "sips", "isns", "libvirt-tls", "slp", "libvirt", "mosh", "synergy", "lightning-network", "smtp-submission", "llmnr", "ovirt-vmconsole", "managesieve", "smtp", "matrix", "smtps", "mdns", "plex", "minidlna", "tftp-client", "syslog", "spideroak-lansync", "steam-streaming", "syncthing-gui", "syncthing", "syslog-tls", "telnet", "tftp", "tinc", "tor-socks", "transmission-client", "upnp-client", "vdsm", "vnc-server", "wbem-http", "wbem-https", "wsman", "wsmans", "xdmcp", "xmpp-bosh", "xmpp-client", "xmpp-local", "xmpp-server", "zabbix-agent", "zabbix-server" ], "zones": [ "block", "dmz", "drop", "external", "home", "internal", "public", "trusted", "work" ] } } }, "changed": false } TASK [linux-system-roles.firewall : update firewalld_config fact] ************** task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:74 Tuesday 14 June 2022 21:09:06 +0000 (0:00:00.461) 0:00:10.122 ********** ok: [/cache/rhel-7.qcow2] => { "ansible_facts": { "firewall_config": { "custom": { "helpers": [], "icmptypes": [], "ipsets": [], "services": [], "zones": [ "public" ] }, "default": { "helpers": [ "Q.931", "RAS", "amanda", "ftp", "h323", "irc", "netbios-ns", "pptp", "proto-gre", "sane", "sip", "snmp", "tftp" ], "icmptypes": [ "address-unreachable", "bad-header", "beyond-scope", "communication-prohibited", "destination-unreachable", "echo-reply", "echo-request", "failed-policy", "fragmentation-needed", "unknown-option", "host-precedence-violation", "host-prohibited", "host-redirect", "host-unknown", "host-unreachable", "ip-header-bad", "neighbour-advertisement", "neighbour-solicitation", "network-prohibited", "network-redirect", "network-unknown", "network-unreachable", "no-route", "packet-too-big", "parameter-problem", "port-unreachable", "precedence-cutoff", "protocol-unreachable", "redirect", "reject-route", "required-option-missing", "router-advertisement", "router-solicitation", "source-quench", "source-route-failed", "time-exceeded", "timestamp-reply", "timestamp-request", "tos-host-redirect", "tos-host-unreachable", "tos-network-redirect", "tos-network-unreachable", "ttl-zero-during-reassembly", "ttl-zero-during-transit", "unknown-header-type" ], "ipsets": [], "services": [ "jenkins", "snmp", "RH-Satellite-6-capsule", "kpasswd", "RH-Satellite-6", "kprop", "amanda-client", "kadmin", "snmptrap", "amanda-k5-client", "pmcd", "amqp", "pmproxy", "amqps", "pmwebapi", "apcupsd", "pmwebapis", "audit", "kshell", "bacula-client", "pop3", "bacula", "pop3s", "bgp", "ldap", "bitcoin-rpc", "kerberos", "squid", "bitcoin-testnet-rpc", "ldaps", "bitcoin-testnet", "postgresql", "bitcoin", "mountd", "ceph-mon", "privoxy", "ceph", "mqtt-tls", "cfengine", "kibana", "ssh", "condor-collector", "proxy-dhcp", "ctdb", "ptp", "dhcp", "mqtt", "dhcpv6-client", "pulseaudio", "dhcpv6", "puppetmaster", "distcc", "quassel", "dns", "ms-wbt", "docker-registry", "mssql", "docker-swarm", "murmur", "dropbox-lansync", "mysql", "elasticsearch", "nfs", "etcd-client", "nfs3", "etcd-server", "radius", "finger", "nmea-0183", "freeipa-ldap", "nrpe", "freeipa-ldaps", "mongodb", "svdrp", "freeipa-replication", "ntp", "freeipa-trust", "redis", "ftp", "nut", "ganglia-client", "openvpn", "ganglia-master", "rpc-bind", "git", "rsh", "gre", "klogin", "svn", "high-availability", "rsyncd", "http", "rtsp", "https", "salt-master", "imap", "samba-client", "imaps", "ovirt-imageio", "ipp-client", "samba-dc", "ipp", "samba", "ipsec", "sane", "irc", "sip", "ircs", "ovirt-storageconsole", "iscsi-target", "sips", "isns", "libvirt-tls", "slp", "libvirt", "mosh", "synergy", "lightning-network", "smtp-submission", "llmnr", "ovirt-vmconsole", "managesieve", "smtp", "matrix", "smtps", "mdns", "plex", "minidlna", "tftp-client", "syslog", "spideroak-lansync", "steam-streaming", "syncthing-gui", "syncthing", "syslog-tls", "telnet", "tftp", "tinc", "tor-socks", "transmission-client", "upnp-client", "vdsm", "vnc-server", "wbem-http", "wbem-https", "wsman", "wsmans", "xdmcp", "xmpp-bosh", "xmpp-client", "xmpp-local", "xmpp-server", "zabbix-agent", "zabbix-server" ], "zones": [ "block", "dmz", "drop", "external", "home", "internal", "public", "trusted", "work" ] } } }, "changed": false } TASK [linux-system-roles.firewall : Get config files, checksums after] ********* task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:82 Tuesday 14 June 2022 21:09:06 +0000 (0:00:00.052) 0:00:10.175 ********** skipping: [/cache/rhel-7.qcow2] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [linux-system-roles.firewall : Calculate what has changed] **************** task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:90 Tuesday 14 June 2022 21:09:06 +0000 (0:00:00.037) 0:00:10.213 ********** skipping: [/cache/rhel-7.qcow2] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [linux-system-roles.firewall : Show diffs] ******************************** task path: /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:99 Tuesday 14 June 2022 21:09:06 +0000 (0:00:00.034) 0:00:10.247 ********** skipping: [/cache/rhel-7.qcow2] => {} META: role_complete for /cache/rhel-7.qcow2 TASK [Remove custom zone] ****************************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:14 Tuesday 14 June 2022 21:09:06 +0000 (0:00:00.039) 0:00:10.287 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--delete-zone=custom" ], "delta": "0:00:00.282717", "end": "2022-06-14 17:09:06.854507", "failed_when_result": false, "rc": 112, "start": "2022-06-14 17:09:06.571790" } STDERR: Error: INVALID_ZONE: custom MSG: non-zero return code TASK [Reset internal zone to defaults] ***************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:19 Tuesday 14 June 2022 21:09:07 +0000 (0:00:00.722) 0:00:11.010 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=internal" ], "delta": "0:00:00.287201", "end": "2022-06-14 17:09:07.446133", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:09:07.158932" } STDERR: Error: NO_DEFAULTS: internal MSG: non-zero return code TASK [Reset trusted zone to defaults] ****************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:24 Tuesday 14 June 2022 21:09:07 +0000 (0:00:00.591) 0:00:11.601 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=trusted" ], "delta": "0:00:00.270594", "end": "2022-06-14 17:09:08.028291", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:09:07.757697" } STDERR: Error: NO_DEFAULTS: trusted MSG: non-zero return code TASK [Reset dmz zone to defaults] ********************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:29 Tuesday 14 June 2022 21:09:08 +0000 (0:00:00.580) 0:00:12.182 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=dmz" ], "delta": "0:00:00.284143", "end": "2022-06-14 17:09:08.620576", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:09:08.336433" } STDERR: Error: NO_DEFAULTS: dmz MSG: non-zero return code TASK [Reset drop zone to defaults] ********************************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:34 Tuesday 14 June 2022 21:09:08 +0000 (0:00:00.599) 0:00:12.781 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=drop" ], "delta": "0:00:00.275101", "end": "2022-06-14 17:09:09.221828", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:09:08.946727" } STDERR: Error: NO_DEFAULTS: drop MSG: non-zero return code TASK [Reset public zone to defaults] ******************************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:39 Tuesday 14 June 2022 21:09:09 +0000 (0:00:00.594) 0:00:13.375 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=public" ], "delta": "0:00:00.287464", "end": "2022-06-14 17:09:09.819764", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:09.532300" } STDOUT: success TASK [Reset default zone to defaults] ****************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:44 Tuesday 14 June 2022 21:09:10 +0000 (0:00:00.598) 0:00:13.974 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": "zone=$(firewall-cmd --get-default-zone)\nfirewall-cmd --permanent --load-zone-defaults=$zone\n", "delta": "0:00:00.564082", "end": "2022-06-14 17:09:10.688562", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:09:10.124480" } STDERR: Error: NO_DEFAULTS: public MSG: non-zero return code TASK [Create custom zone] ****************************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:52 Tuesday 14 June 2022 21:09:10 +0000 (0:00:00.872) 0:00:14.847 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--new-zone=custom" ], "delta": "0:00:00.256708", "end": "2022-06-14 17:09:11.259826", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:11.003118" } STDOUT: success TASK [Reload firewalld] ******************************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:57 Tuesday 14 June 2022 21:09:11 +0000 (0:00:00.568) 0:00:15.415 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--reload" ], "delta": "0:00:00.480590", "end": "2022-06-14 17:09:12.052156", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:11.571566" } STDOUT: success TASK [Permit traffic in default zone for https service] ************************ task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:64 Tuesday 14 June 2022 21:09:12 +0000 (0:00:00.792) 0:00:16.207 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Permit traffic in default zone for https service, again] ***************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:72 Tuesday 14 June 2022 21:09:12 +0000 (0:00:00.634) 0:00:16.842 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Permit traffic in default zone on port 8081/tcp] ************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:80 Tuesday 14 June 2022 21:09:13 +0000 (0:00:00.505) 0:00:17.348 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Permit traffic in default zone on port 8081/tcp, again] ****************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:88 Tuesday 14 June 2022 21:09:13 +0000 (0:00:00.505) 0:00:17.853 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow port 161-162/udp in permanent default zone] ************************ task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:96 Tuesday 14 June 2022 21:09:14 +0000 (0:00:00.510) 0:00:18.364 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow port 161-162/udp in permanent default zone, again] ***************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:104 Tuesday 14 June 2022 21:09:15 +0000 (0:00:00.508) 0:00:18.873 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Do not permit traffic in default zone on port 8081/tcp] ****************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:112 Tuesday 14 June 2022 21:09:15 +0000 (0:00:00.567) 0:00:19.440 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Do not permit traffic in default zone on port 8081/tcp, again] *********** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:120 Tuesday 14 June 2022 21:09:16 +0000 (0:00:00.505) 0:00:19.946 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow service http in permanent dmz zone] ******************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:128 Tuesday 14 June 2022 21:09:16 +0000 (0:00:00.519) 0:00:20.465 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow service http in permanent dmz zone, again] ************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:137 Tuesday 14 June 2022 21:09:17 +0000 (0:00:00.504) 0:00:20.970 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow service ftp with limitation using rich rule in permanent default zone] *** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:146 Tuesday 14 June 2022 21:09:17 +0000 (0:00:00.497) 0:00:21.467 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow service ftp with limitation using rich rule in permanent default zone, again] *** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:155 Tuesday 14 June 2022 21:09:18 +0000 (0:00:00.507) 0:00:21.975 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow source 192.0.2.0/24 in internal zone] ****************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:164 Tuesday 14 June 2022 21:09:18 +0000 (0:00:00.519) 0:00:22.495 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow source 192.0.2.0/24 in internal zone, again] *********************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:173 Tuesday 14 June 2022 21:09:19 +0000 (0:00:00.506) 0:00:23.001 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow interface eth2 in permanent trusted zone] ************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:182 Tuesday 14 June 2022 21:09:19 +0000 (0:00:00.515) 0:00:23.517 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow interface eth2 in permanent trusted zone, again] ******************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:191 Tuesday 14 June 2022 21:09:20 +0000 (0:00:00.508) 0:00:24.025 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow masquerading in permament dmz zone] ******************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:200 Tuesday 14 June 2022 21:09:20 +0000 (0:00:00.514) 0:00:24.540 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow masquerading in permament dmz zone, again] ************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:208 Tuesday 14 June 2022 21:09:21 +0000 (0:00:00.511) 0:00:25.051 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure permanent custom zone exists (no change)] ************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:216 Tuesday 14 June 2022 21:09:21 +0000 (0:00:00.502) 0:00:25.554 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure ICMP block inversion in permanent drop zone] ********************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:224 Tuesday 14 June 2022 21:09:22 +0000 (0:00:00.503) 0:00:26.057 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Ensure ICMP block inversion in permanent drop zone, again] *************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:232 Tuesday 14 June 2022 21:09:22 +0000 (0:00:00.513) 0:00:26.571 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Block ICMP echo-request in permanent drop zone] ************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:240 Tuesday 14 June 2022 21:09:23 +0000 (0:00:00.493) 0:00:27.064 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Block ICMP echo-request in permanent drop zone, again] ******************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:249 Tuesday 14 June 2022 21:09:23 +0000 (0:00:00.494) 0:00:27.559 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure default target in permanent internal zone (no change)] ************ task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:258 Tuesday 14 June 2022 21:09:24 +0000 (0:00:00.529) 0:00:28.089 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure target ACCEPT in permanent internal zone] ************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:267 Tuesday 14 June 2022 21:09:24 +0000 (0:00:00.536) 0:00:28.626 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Ensure target ACCEPT in permanent internal zone, again] ****************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:276 Tuesday 14 June 2022 21:09:25 +0000 (0:00:00.746) 0:00:29.373 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure default target in permanent internal zone] ************************ task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:285 Tuesday 14 June 2022 21:09:26 +0000 (0:00:00.534) 0:00:29.907 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Ensure default target in permanent internal zone, again] ***************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:294 Tuesday 14 June 2022 21:09:26 +0000 (0:00:00.774) 0:00:30.682 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone] *** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:303 Tuesday 14 June 2022 21:09:27 +0000 (0:00:00.524) 0:00:31.206 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone, again] *** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:315 Tuesday 14 June 2022 21:09:27 +0000 (0:00:00.555) 0:00:31.762 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Firewalld custom zone] *************************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:327 Tuesday 14 June 2022 21:09:28 +0000 (0:00:00.527) 0:00:32.289 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true } TASK [assert firewalld custom zone] ******************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:335 Tuesday 14 June 2022 21:09:29 +0000 (0:00:00.747) 0:00:33.037 ********** ok: [/cache/rhel-7.qcow2] => { "changed": false } MSG: All assertions passed TASK [Add masquerade to custom zone] ******************************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:340 Tuesday 14 June 2022 21:09:29 +0000 (0:00:00.039) 0:00:33.077 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Add masquerade to custom zone, again] ************************************ task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:350 Tuesday 14 June 2022 21:09:29 +0000 (0:00:00.525) 0:00:33.602 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Set the default zone to something other than dmz] ************************ task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:360 Tuesday 14 June 2022 21:09:30 +0000 (0:00:00.503) 0:00:34.105 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--set-default-zone", "public" ], "delta": "0:00:00.256296", "end": "2022-06-14 17:09:30.513087", "rc": 0, "start": "2022-06-14 17:09:30.256791" } STDOUT: success STDERR: Warning: ZONE_ALREADY_SET: public TASK [set default zone] ******************************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:363 Tuesday 14 June 2022 21:09:30 +0000 (0:00:00.559) 0:00:34.665 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [set default zone, again] ************************************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:370 Tuesday 14 June 2022 21:09:31 +0000 (0:00:00.595) 0:00:35.260 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Remove custom zone] ****************************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:385 Tuesday 14 June 2022 21:09:31 +0000 (0:00:00.509) 0:00:35.770 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--delete-zone=custom" ], "delta": "0:00:00.270357", "end": "2022-06-14 17:09:32.189349", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:31.918992" } STDOUT: success TASK [Remove customzone zone] ************************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:390 Tuesday 14 June 2022 21:09:32 +0000 (0:00:00.575) 0:00:36.346 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--delete-zone=customzone" ], "delta": "0:00:00.273796", "end": "2022-06-14 17:09:32.767630", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:32.493834" } STDOUT: success TASK [Reset internal zone to defaults] ***************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:395 Tuesday 14 June 2022 21:09:33 +0000 (0:00:00.579) 0:00:36.925 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=internal" ], "delta": "0:00:00.290322", "end": "2022-06-14 17:09:33.356836", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:33.066514" } STDOUT: success TASK [Reset trusted zone to defaults] ****************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:400 Tuesday 14 June 2022 21:09:33 +0000 (0:00:00.588) 0:00:37.513 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=trusted" ], "delta": "0:00:00.267751", "end": "2022-06-14 17:09:33.927485", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:33.659734" } STDOUT: success TASK [Reset dmz zone to defaults] ********************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:405 Tuesday 14 June 2022 21:09:34 +0000 (0:00:00.568) 0:00:38.082 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=dmz" ], "delta": "0:00:00.269112", "end": "2022-06-14 17:09:34.492172", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:34.223060" } STDOUT: success TASK [Reset drop zone to defaults] ********************************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:410 Tuesday 14 June 2022 21:09:34 +0000 (0:00:00.566) 0:00:38.648 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=drop" ], "delta": "0:00:00.268288", "end": "2022-06-14 17:09:35.052694", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:34.784406" } STDOUT: success TASK [Reset public zone to defaults] ******************************************* task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:415 Tuesday 14 June 2022 21:09:35 +0000 (0:00:00.560) 0:00:39.209 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=public" ], "delta": "0:00:00.291007", "end": "2022-06-14 17:09:35.650863", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:35.359856" } STDOUT: success TASK [Reset default zone to defaults] ****************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:420 Tuesday 14 June 2022 21:09:35 +0000 (0:00:00.597) 0:00:39.807 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=public" ], "delta": "0:00:00.267326", "end": "2022-06-14 17:09:36.222226", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:09:35.954900" } STDERR: Error: NO_DEFAULTS: public MSG: non-zero return code TASK [Reload firewalld] ******************************************************** task path: /tmp/tmpqqlptjhy/tests/tests_ansible.yml:425 Tuesday 14 June 2022 21:09:36 +0000 (0:00:00.572) 0:00:40.379 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--reload" ], "delta": "0:00:00.462414", "end": "2022-06-14 17:09:36.994273", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:09:36.531859" } STDOUT: success META: ran handlers META: ran handlers PLAY RECAP ********************************************************************* /cache/rhel-7.qcow2 : ok=65 changed=39 unreachable=0 failed=0 skipped=6 rescued=0 ignored=0 Tuesday 14 June 2022 21:09:37 +0000 (0:00:00.778) 0:00:41.157 ********** =============================================================================== linux-system-roles.firewall : Install firewalld ------------------------- 5.15s /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/firewalld.yml:8 set up internal repositories -------------------------------------------- 1.45s /cache/rhel-7_setup.yml:5 ----------------------------------------------------- Gathering Facts --------------------------------------------------------- 0.97s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:1 ------------------------------------ linux-system-roles.firewall : Enable and start firewalld service -------- 0.91s /tmp/tmpqqlptjhy/tests/roles/linux-system-roles.firewall/tasks/main.yml:3 ----- Reset default zone to defaults ------------------------------------------ 0.87s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:44 ----------------------------------- Reload firewalld -------------------------------------------------------- 0.79s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:57 ----------------------------------- Reload firewalld -------------------------------------------------------- 0.78s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:425 ---------------------------------- Ensure default target in permanent internal zone ------------------------ 0.77s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:285 ---------------------------------- Firewalld custom zone --------------------------------------------------- 0.75s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:327 ---------------------------------- Ensure target ACCEPT in permanent internal zone ------------------------- 0.75s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:267 ---------------------------------- Remove custom zone ------------------------------------------------------ 0.72s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:14 ----------------------------------- Permit traffic in default zone for https service ------------------------ 0.63s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:64 ----------------------------------- Reset dmz zone to defaults ---------------------------------------------- 0.60s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:29 ----------------------------------- Reset public zone to defaults ------------------------------------------- 0.60s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:39 ----------------------------------- Reset public zone to defaults ------------------------------------------- 0.60s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:415 ---------------------------------- set default zone -------------------------------------------------------- 0.60s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:363 ---------------------------------- Reset drop zone to defaults --------------------------------------------- 0.59s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:34 ----------------------------------- Reset internal zone to defaults ----------------------------------------- 0.59s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:19 ----------------------------------- Reset internal zone to defaults ----------------------------------------- 0.59s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:395 ---------------------------------- Reset trusted zone to defaults ------------------------------------------ 0.58s /tmp/tmpqqlptjhy/tests/tests_ansible.yml:24 ----------------------------------- ansible-playbook [core 2.12.6] config file = /etc/ansible/ansible.cfg configured module search path = ['/root/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules'] ansible python module location = /usr/lib/python3.9/site-packages/ansible ansible collection location = /tmp/tmpym83ylkt executable location = /usr/bin/ansible-playbook python version = 3.9.13 (main, May 18 2022, 00:00:00) [GCC 11.3.1 20220421 (Red Hat 11.3.1-2)] jinja version = 2.11.3 libyaml = True Using /etc/ansible/ansible.cfg as config file Skipping callback 'debug', as we already have a stdout callback. Skipping callback 'default', as we already have a stdout callback. Skipping callback 'minimal', as we already have a stdout callback. Skipping callback 'oneline', as we already have a stdout callback. PLAYBOOK: rhel-7_setup.yml ***************************************************** 1 plays in /cache/rhel-7_setup.yml PLAY [Setup repos] ************************************************************* META: ran handlers TASK [set up internal repositories] ******************************************** task path: /cache/rhel-7_setup.yml:5 Tuesday 14 June 2022 21:11:39 +0000 (0:00:00.018) 0:00:00.018 ********** changed: [/cache/rhel-7.qcow2] => (item=None) => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } changed: [/cache/rhel-7.qcow2] => (item=None) => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } changed: [/cache/rhel-7.qcow2] => (item=None) => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } changed: [/cache/rhel-7.qcow2] => (item=None) => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } changed: [/cache/rhel-7.qcow2] => { "censored": "the output has been hidden due to the fact that 'no_log: true' was specified for this result", "changed": true } META: ran handlers META: ran handlers PLAY RECAP ********************************************************************* /cache/rhel-7.qcow2 : ok=1 changed=1 unreachable=0 failed=0 skipped=0 rescued=0 ignored=0 Tuesday 14 June 2022 21:11:41 +0000 (0:00:01.415) 0:00:01.434 ********** =============================================================================== set up internal repositories -------------------------------------------- 1.42s /cache/rhel-7_setup.yml:5 ----------------------------------------------------- PLAYBOOK: tests_ansible.yml **************************************************** 1 plays in /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml PLAY [Ensure that the roles runs with default parameters] ********************** TASK [Gathering Facts] ********************************************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:1 Tuesday 14 June 2022 21:11:41 +0000 (0:00:00.055) 0:00:01.489 ********** ok: [/cache/rhel-7.qcow2] META: ran handlers TASK [fedora.linux_system_roles.firewall : include_tasks] ********************** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:1 Tuesday 14 June 2022 21:11:42 +0000 (0:00:00.959) 0:00:02.448 ********** included: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml for /cache/rhel-7.qcow2 TASK [fedora.linux_system_roles.firewall : Ensure ansible_facts used by role] *** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:2 Tuesday 14 June 2022 21:11:42 +0000 (0:00:00.031) 0:00:02.479 ********** ok: [/cache/rhel-7.qcow2] TASK [fedora.linux_system_roles.firewall : Install firewalld] ****************** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:7 Tuesday 14 June 2022 21:11:42 +0000 (0:00:00.391) 0:00:02.871 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "changes": { "installed": [ "firewalld" ] }, "rc": 0, "results": [ "Loaded plugins: search-disabled-repos\nResolving Dependencies\n--> Running transaction check\n---> Package firewalld.noarch 0:0.6.3-13.el7_9 will be installed\n--> Processing Dependency: python-firewall = 0.6.3-13.el7_9 for package: firewalld-0.6.3-13.el7_9.noarch\n--> Processing Dependency: firewalld-filesystem = 0.6.3-13.el7_9 for package: firewalld-0.6.3-13.el7_9.noarch\n--> Processing Dependency: ipset for package: firewalld-0.6.3-13.el7_9.noarch\n--> Processing Dependency: ebtables for package: firewalld-0.6.3-13.el7_9.noarch\n--> Running transaction check\n---> Package ebtables.x86_64 0:2.0.10-16.el7 will be installed\n---> Package firewalld-filesystem.noarch 0:0.6.3-13.el7_9 will be installed\n---> Package ipset.x86_64 0:7.1-1.el7 will be installed\n--> Processing Dependency: ipset-libs(x86-64) = 7.1-1.el7 for package: ipset-7.1-1.el7.x86_64\n--> Processing Dependency: libipset.so.13(LIBIPSET_4.8)(64bit) for package: ipset-7.1-1.el7.x86_64\n--> Processing Dependency: libipset.so.13(LIBIPSET_2.0)(64bit) for package: ipset-7.1-1.el7.x86_64\n--> Processing Dependency: libipset.so.13()(64bit) for package: ipset-7.1-1.el7.x86_64\n---> Package python-firewall.noarch 0:0.6.3-13.el7_9 will be installed\n--> Processing Dependency: python-slip-dbus for package: python-firewall-0.6.3-13.el7_9.noarch\n--> Running transaction check\n---> Package ipset-libs.x86_64 0:7.1-1.el7 will be installed\n---> Package python-slip-dbus.noarch 0:0.4.0-4.el7 will be installed\n--> Processing Dependency: python-slip = 0.4.0-4.el7 for package: python-slip-dbus-0.4.0-4.el7.noarch\n--> Running transaction check\n---> Package python-slip.noarch 0:0.4.0-4.el7 will be installed\n--> Finished Dependency Resolution\n\nDependencies Resolved\n\n================================================================================\n Package Arch Version Repository Size\n================================================================================\nInstalling:\n firewalld noarch 0.6.3-13.el7_9 rhel 449 k\nInstalling for dependencies:\n ebtables x86_64 2.0.10-16.el7 rhel 123 k\n firewalld-filesystem noarch 0.6.3-13.el7_9 rhel 51 k\n ipset x86_64 7.1-1.el7 rhel 39 k\n ipset-libs x86_64 7.1-1.el7 rhel 64 k\n python-firewall noarch 0.6.3-13.el7_9 rhel 355 k\n python-slip noarch 0.4.0-4.el7 rhel 31 k\n python-slip-dbus noarch 0.4.0-4.el7 rhel 32 k\n\nTransaction Summary\n================================================================================\nInstall 1 Package (+7 Dependent packages)\n\nTotal download size: 1.1 M\nInstalled size: 4.5 M\nDownloading packages:\n--------------------------------------------------------------------------------\nTotal 12 MB/s | 1.1 MB 00:00 \nRunning transaction check\nRunning transaction test\nTransaction test succeeded\nRunning transaction\n Installing : ebtables-2.0.10-16.el7.x86_64 1/8 \n Installing : ipset-libs-7.1-1.el7.x86_64 2/8 \n Installing : ipset-7.1-1.el7.x86_64 3/8 \n Installing : python-slip-0.4.0-4.el7.noarch 4/8 \n Installing : python-slip-dbus-0.4.0-4.el7.noarch 5/8 \n Installing : python-firewall-0.6.3-13.el7_9.noarch 6/8 \n Installing : firewalld-filesystem-0.6.3-13.el7_9.noarch 7/8 \n Installing : firewalld-0.6.3-13.el7_9.noarch 8/8 \n Verifying : ipset-7.1-1.el7.x86_64 1/8 \n Verifying : python-slip-dbus-0.4.0-4.el7.noarch 2/8 \n Verifying : firewalld-filesystem-0.6.3-13.el7_9.noarch 3/8 \n Verifying : firewalld-0.6.3-13.el7_9.noarch 4/8 \n Verifying : python-slip-0.4.0-4.el7.noarch 5/8 \n Verifying : python-firewall-0.6.3-13.el7_9.noarch 6/8 \n Verifying : ipset-libs-7.1-1.el7.x86_64 7/8 \n Verifying : ebtables-2.0.10-16.el7.x86_64 8/8 \n\nInstalled:\n firewalld.noarch 0:0.6.3-13.el7_9 \n\nDependency Installed:\n ebtables.x86_64 0:2.0.10-16.el7 \n firewalld-filesystem.noarch 0:0.6.3-13.el7_9 \n ipset.x86_64 0:7.1-1.el7 \n ipset-libs.x86_64 0:7.1-1.el7 \n python-firewall.noarch 0:0.6.3-13.el7_9 \n python-slip.noarch 0:0.4.0-4.el7 \n python-slip-dbus.noarch 0:0.4.0-4.el7 \n\nComplete!\n" ] } TASK [fedora.linux_system_roles.firewall : Install python-firewall] ************ task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:12 Tuesday 14 June 2022 21:11:47 +0000 (0:00:05.014) 0:00:07.886 ********** ok: [/cache/rhel-7.qcow2] => { "changed": false, "rc": 0, "results": [ "python-firewall-0.6.3-13.el7_9.noarch providing python-firewall is already installed" ] } TASK [fedora.linux_system_roles.firewall : Install python3-firewall] *********** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:18 Tuesday 14 June 2022 21:11:47 +0000 (0:00:00.490) 0:00:08.376 ********** skipping: [/cache/rhel-7.qcow2] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.firewall : Enable and start firewalld service] *** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:3 Tuesday 14 June 2022 21:11:48 +0000 (0:00:00.026) 0:00:08.402 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "enabled": true, "name": "firewalld", "state": "started", "status": { "ActiveEnterTimestampMonotonic": "0", "ActiveExitTimestampMonotonic": "0", "ActiveState": "inactive", "After": "basic.target system.slice dbus.service polkit.service", "AllowIsolate": "no", "AmbientCapabilities": "0", "AssertResult": "no", "AssertTimestampMonotonic": "0", "Before": "network-pre.target shutdown.target multi-user.target", "BlockIOAccounting": "no", "BlockIOWeight": "18446744073709551615", "BusName": "org.fedoraproject.FirewallD1", "CPUAccounting": "no", "CPUQuotaPerSecUSec": "infinity", "CPUSchedulingPolicy": "0", "CPUSchedulingPriority": "0", "CPUSchedulingResetOnFork": "no", "CPUShares": "18446744073709551615", "CanIsolate": "no", "CanReload": "yes", "CanStart": "yes", "CanStop": "yes", "CapabilityBoundingSet": "18446744073709551615", "CollectMode": "inactive", "ConditionResult": "no", "ConditionTimestampMonotonic": "0", "Conflicts": "ebtables.service ipset.service ip6tables.service shutdown.target iptables.service", "ControlPID": "0", "DefaultDependencies": "yes", "Delegate": "no", "Description": "firewalld - dynamic firewall daemon", "DevicePolicy": "auto", "Documentation": "man:firewalld(1)", "EnvironmentFile": "/etc/sysconfig/firewalld (ignore_errors=yes)", "ExecMainCode": "0", "ExecMainExitTimestampMonotonic": "0", "ExecMainPID": "0", "ExecMainStartTimestampMonotonic": "0", "ExecMainStatus": "0", "ExecReload": "{ path=/bin/kill ; argv[]=/bin/kill -HUP $MAINPID ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }", "ExecStart": "{ path=/usr/sbin/firewalld ; argv[]=/usr/sbin/firewalld --nofork --nopid $FIREWALLD_ARGS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }", "FailureAction": "none", "FileDescriptorStoreMax": "0", "FragmentPath": "/usr/lib/systemd/system/firewalld.service", "GuessMainPID": "yes", "IOScheduling": "0", "Id": "firewalld.service", "IgnoreOnIsolate": "no", "IgnoreOnSnapshot": "no", "IgnoreSIGPIPE": "yes", "InactiveEnterTimestampMonotonic": "0", "InactiveExitTimestampMonotonic": "0", "JobTimeoutAction": "none", "JobTimeoutUSec": "0", "KillMode": "mixed", "KillSignal": "15", "LimitAS": "18446744073709551615", "LimitCORE": "18446744073709551615", "LimitCPU": "18446744073709551615", "LimitDATA": "18446744073709551615", "LimitFSIZE": "18446744073709551615", "LimitLOCKS": "18446744073709551615", "LimitMEMLOCK": "65536", "LimitMSGQUEUE": "819200", "LimitNICE": "0", "LimitNOFILE": "4096", "LimitNPROC": "7155", "LimitRSS": "18446744073709551615", "LimitRTPRIO": "0", "LimitRTTIME": "18446744073709551615", "LimitSIGPENDING": "7155", "LimitSTACK": "18446744073709551615", "LoadState": "loaded", "MainPID": "0", "MemoryAccounting": "no", "MemoryCurrent": "18446744073709551615", "MemoryLimit": "18446744073709551615", "MountFlags": "0", "Names": "firewalld.service", "NeedDaemonReload": "no", "Nice": "0", "NoNewPrivileges": "no", "NonBlocking": "no", "NotifyAccess": "none", "OOMScoreAdjust": "0", "OnFailureJobMode": "replace", "PermissionsStartOnly": "no", "PrivateDevices": "no", "PrivateNetwork": "no", "PrivateTmp": "no", "ProtectHome": "no", "ProtectSystem": "no", "RefuseManualStart": "no", "RefuseManualStop": "no", "RemainAfterExit": "no", "Requires": "system.slice basic.target", "Restart": "no", "RestartUSec": "100ms", "Result": "success", "RootDirectoryStartOnly": "no", "RuntimeDirectoryMode": "0755", "SameProcessGroup": "no", "SecureBits": "0", "SendSIGHUP": "no", "SendSIGKILL": "yes", "Slice": "system.slice", "StandardError": "null", "StandardInput": "null", "StandardOutput": "null", "StartLimitAction": "none", "StartLimitBurst": "5", "StartLimitInterval": "10000000", "StartupBlockIOWeight": "18446744073709551615", "StartupCPUShares": "18446744073709551615", "StatusErrno": "0", "StopWhenUnneeded": "no", "SubState": "dead", "SyslogLevelPrefix": "yes", "SyslogPriority": "30", "SystemCallErrorNumber": "0", "TTYReset": "no", "TTYVHangup": "no", "TTYVTDisallocate": "no", "TasksAccounting": "no", "TasksCurrent": "18446744073709551615", "TasksMax": "18446744073709551615", "TimeoutStartUSec": "1min 30s", "TimeoutStopUSec": "1min 30s", "TimerSlackNSec": "50000", "Transient": "no", "Type": "dbus", "UMask": "0022", "UnitFilePreset": "enabled", "UnitFileState": "enabled", "WantedBy": "multi-user.target", "Wants": "network-pre.target", "WatchdogTimestampMonotonic": "0", "WatchdogUSec": "0" } } TASK [fedora.linux_system_roles.firewall : Check if previous replaced is defined] *** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:9 Tuesday 14 June 2022 21:11:48 +0000 (0:00:00.877) 0:00:09.279 ********** ok: [/cache/rhel-7.qcow2] => { "ansible_facts": { "__firewall_previous_replaced": false, "__firewall_python_cmd": "/usr/bin/python" }, "changed": false } TASK [fedora.linux_system_roles.firewall : Get config files, checksums before and remove] *** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:14 Tuesday 14 June 2022 21:11:48 +0000 (0:00:00.081) 0:00:09.361 ********** skipping: [/cache/rhel-7.qcow2] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.firewall : Configure firewall] ***************** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:36 Tuesday 14 June 2022 21:11:49 +0000 (0:00:00.040) 0:00:09.401 ********** TASK [fedora.linux_system_roles.firewall : gather firewalld configuration] ***** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:63 Tuesday 14 June 2022 21:11:49 +0000 (0:00:00.047) 0:00:09.448 ********** ok: [/cache/rhel-7.qcow2] => { "ansible_facts": { "firewalld_config": { "custom": { "helpers": [], "icmptypes": [], "ipsets": [], "services": [], "zones": [ "public" ] }, "default": { "helpers": [ "Q.931", "RAS", "amanda", "ftp", "h323", "irc", "netbios-ns", "pptp", "proto-gre", "sane", "sip", "snmp", "tftp" ], "icmptypes": [ "address-unreachable", "bad-header", "beyond-scope", "communication-prohibited", "destination-unreachable", "echo-reply", "echo-request", "failed-policy", "fragmentation-needed", "unknown-option", "host-precedence-violation", "host-prohibited", "host-redirect", "host-unknown", "host-unreachable", "ip-header-bad", "neighbour-advertisement", "neighbour-solicitation", "network-prohibited", "network-redirect", "network-unknown", "network-unreachable", "no-route", "packet-too-big", "parameter-problem", "port-unreachable", "precedence-cutoff", "protocol-unreachable", "redirect", "reject-route", "required-option-missing", "router-advertisement", "router-solicitation", "source-quench", "source-route-failed", "time-exceeded", "timestamp-reply", "timestamp-request", "tos-host-redirect", "tos-host-unreachable", "tos-network-redirect", "tos-network-unreachable", "ttl-zero-during-reassembly", "ttl-zero-during-transit", "unknown-header-type" ], "ipsets": [], "services": [ "jenkins", "snmp", "RH-Satellite-6-capsule", "kpasswd", "RH-Satellite-6", "kprop", "amanda-client", "kadmin", "snmptrap", "amanda-k5-client", "pmcd", "amqp", "pmproxy", "amqps", "pmwebapi", "apcupsd", "pmwebapis", "audit", "kshell", "bacula-client", "pop3", "bacula", "pop3s", "bgp", "ldap", "bitcoin-rpc", "kerberos", "squid", "bitcoin-testnet-rpc", "ldaps", "bitcoin-testnet", "postgresql", "bitcoin", "mountd", "ceph-mon", "privoxy", "ceph", "mqtt-tls", "cfengine", "kibana", "ssh", "condor-collector", "proxy-dhcp", "ctdb", "ptp", "dhcp", "mqtt", "dhcpv6-client", "pulseaudio", "dhcpv6", "puppetmaster", "distcc", "quassel", "dns", "ms-wbt", "docker-registry", "mssql", "docker-swarm", "murmur", "dropbox-lansync", "mysql", "elasticsearch", "nfs", "etcd-client", "nfs3", "etcd-server", "radius", "finger", "nmea-0183", "freeipa-ldap", "nrpe", "freeipa-ldaps", "mongodb", "svdrp", "freeipa-replication", "ntp", "freeipa-trust", "redis", "ftp", "nut", "ganglia-client", "openvpn", "ganglia-master", "rpc-bind", "git", "rsh", "gre", "klogin", "svn", "high-availability", "rsyncd", "http", "rtsp", "https", "salt-master", "imap", "samba-client", "imaps", "ovirt-imageio", "ipp-client", "samba-dc", "ipp", "samba", "ipsec", "sane", "irc", "sip", "ircs", "ovirt-storageconsole", "iscsi-target", "sips", "isns", "libvirt-tls", "slp", "libvirt", "mosh", "synergy", "lightning-network", "smtp-submission", "llmnr", "ovirt-vmconsole", "managesieve", "smtp", "matrix", "smtps", "mdns", "plex", "minidlna", "tftp-client", "syslog", "spideroak-lansync", "steam-streaming", "syncthing-gui", "syncthing", "syslog-tls", "telnet", "tftp", "tinc", "tor-socks", "transmission-client", "upnp-client", "vdsm", "vnc-server", "wbem-http", "wbem-https", "wsman", "wsmans", "xdmcp", "xmpp-bosh", "xmpp-client", "xmpp-local", "xmpp-server", "zabbix-agent", "zabbix-server" ], "zones": [ "block", "dmz", "drop", "external", "home", "internal", "public", "trusted", "work" ] } } }, "changed": false } TASK [fedora.linux_system_roles.firewall : update firewalld_config fact] ******* task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:68 Tuesday 14 June 2022 21:11:49 +0000 (0:00:00.462) 0:00:09.911 ********** ok: [/cache/rhel-7.qcow2] => { "ansible_facts": { "firewall_config": { "custom": { "helpers": [], "icmptypes": [], "ipsets": [], "services": [], "zones": [ "public" ] }, "default": { "helpers": [ "Q.931", "RAS", "amanda", "ftp", "h323", "irc", "netbios-ns", "pptp", "proto-gre", "sane", "sip", "snmp", "tftp" ], "icmptypes": [ "address-unreachable", "bad-header", "beyond-scope", "communication-prohibited", "destination-unreachable", "echo-reply", "echo-request", "failed-policy", "fragmentation-needed", "unknown-option", "host-precedence-violation", "host-prohibited", "host-redirect", "host-unknown", "host-unreachable", "ip-header-bad", "neighbour-advertisement", "neighbour-solicitation", "network-prohibited", "network-redirect", "network-unknown", "network-unreachable", "no-route", "packet-too-big", "parameter-problem", "port-unreachable", "precedence-cutoff", "protocol-unreachable", "redirect", "reject-route", "required-option-missing", "router-advertisement", "router-solicitation", "source-quench", "source-route-failed", "time-exceeded", "timestamp-reply", "timestamp-request", "tos-host-redirect", "tos-host-unreachable", "tos-network-redirect", "tos-network-unreachable", "ttl-zero-during-reassembly", "ttl-zero-during-transit", "unknown-header-type" ], "ipsets": [], "services": [ "jenkins", "snmp", "RH-Satellite-6-capsule", "kpasswd", "RH-Satellite-6", "kprop", "amanda-client", "kadmin", "snmptrap", "amanda-k5-client", "pmcd", "amqp", "pmproxy", "amqps", "pmwebapi", "apcupsd", "pmwebapis", "audit", "kshell", "bacula-client", "pop3", "bacula", "pop3s", "bgp", "ldap", "bitcoin-rpc", "kerberos", "squid", "bitcoin-testnet-rpc", "ldaps", "bitcoin-testnet", "postgresql", "bitcoin", "mountd", "ceph-mon", "privoxy", "ceph", "mqtt-tls", "cfengine", "kibana", "ssh", "condor-collector", "proxy-dhcp", "ctdb", "ptp", "dhcp", "mqtt", "dhcpv6-client", "pulseaudio", "dhcpv6", "puppetmaster", "distcc", "quassel", "dns", "ms-wbt", "docker-registry", "mssql", "docker-swarm", "murmur", "dropbox-lansync", "mysql", "elasticsearch", "nfs", "etcd-client", "nfs3", "etcd-server", "radius", "finger", "nmea-0183", "freeipa-ldap", "nrpe", "freeipa-ldaps", "mongodb", "svdrp", "freeipa-replication", "ntp", "freeipa-trust", "redis", "ftp", "nut", "ganglia-client", "openvpn", "ganglia-master", "rpc-bind", "git", "rsh", "gre", "klogin", "svn", "high-availability", "rsyncd", "http", "rtsp", "https", "salt-master", "imap", "samba-client", "imaps", "ovirt-imageio", "ipp-client", "samba-dc", "ipp", "samba", "ipsec", "sane", "irc", "sip", "ircs", "ovirt-storageconsole", "iscsi-target", "sips", "isns", "libvirt-tls", "slp", "libvirt", "mosh", "synergy", "lightning-network", "smtp-submission", "llmnr", "ovirt-vmconsole", "managesieve", "smtp", "matrix", "smtps", "mdns", "plex", "minidlna", "tftp-client", "syslog", "spideroak-lansync", "steam-streaming", "syncthing-gui", "syncthing", "syslog-tls", "telnet", "tftp", "tinc", "tor-socks", "transmission-client", "upnp-client", "vdsm", "vnc-server", "wbem-http", "wbem-https", "wsman", "wsmans", "xdmcp", "xmpp-bosh", "xmpp-client", "xmpp-local", "xmpp-server", "zabbix-agent", "zabbix-server" ], "zones": [ "block", "dmz", "drop", "external", "home", "internal", "public", "trusted", "work" ] } } }, "changed": false } TASK [fedora.linux_system_roles.firewall : Get config files, checksums after] *** task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:76 Tuesday 14 June 2022 21:11:49 +0000 (0:00:00.052) 0:00:09.963 ********** skipping: [/cache/rhel-7.qcow2] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.firewall : Calculate what has changed] ********* task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:84 Tuesday 14 June 2022 21:11:49 +0000 (0:00:00.032) 0:00:09.996 ********** skipping: [/cache/rhel-7.qcow2] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [fedora.linux_system_roles.firewall : Show diffs] ************************* task path: /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:90 Tuesday 14 June 2022 21:11:49 +0000 (0:00:00.031) 0:00:10.028 ********** skipping: [/cache/rhel-7.qcow2] => {} META: role_complete for /cache/rhel-7.qcow2 TASK [Remove custom zone] ****************************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:14 Tuesday 14 June 2022 21:11:49 +0000 (0:00:00.037) 0:00:10.066 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--delete-zone=custom" ], "delta": "0:00:00.288119", "end": "2022-06-14 17:11:49.677451", "failed_when_result": false, "rc": 112, "start": "2022-06-14 17:11:49.389332" } STDERR: Error: INVALID_ZONE: custom MSG: non-zero return code TASK [Reset internal zone to defaults] ***************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:19 Tuesday 14 June 2022 21:11:50 +0000 (0:00:00.712) 0:00:10.778 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=internal" ], "delta": "0:00:00.300200", "end": "2022-06-14 17:11:50.309128", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:11:50.008928" } STDERR: Error: NO_DEFAULTS: internal MSG: non-zero return code TASK [Reset trusted zone to defaults] ****************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:24 Tuesday 14 June 2022 21:11:51 +0000 (0:00:00.628) 0:00:11.407 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=trusted" ], "delta": "0:00:00.270930", "end": "2022-06-14 17:11:50.920063", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:11:50.649133" } STDERR: Error: NO_DEFAULTS: trusted MSG: non-zero return code TASK [Reset dmz zone to defaults] ********************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:29 Tuesday 14 June 2022 21:11:51 +0000 (0:00:00.611) 0:00:12.018 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=dmz" ], "delta": "0:00:00.270961", "end": "2022-06-14 17:11:51.557050", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:11:51.286089" } STDERR: Error: NO_DEFAULTS: dmz MSG: non-zero return code TASK [Reset drop zone to defaults] ********************************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:34 Tuesday 14 June 2022 21:11:52 +0000 (0:00:00.635) 0:00:12.654 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=drop" ], "delta": "0:00:00.258778", "end": "2022-06-14 17:11:52.141112", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:11:51.882334" } STDERR: Error: NO_DEFAULTS: drop MSG: non-zero return code TASK [Reset public zone to defaults] ******************************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:39 Tuesday 14 June 2022 21:11:52 +0000 (0:00:00.582) 0:00:13.237 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=public" ], "delta": "0:00:00.270545", "end": "2022-06-14 17:11:52.734219", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:11:52.463674" } STDOUT: success TASK [Reset default zone to defaults] ****************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:44 Tuesday 14 June 2022 21:11:53 +0000 (0:00:00.594) 0:00:13.831 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": "zone=$(firewall-cmd --get-default-zone)\nfirewall-cmd --permanent --load-zone-defaults=$zone\n", "delta": "0:00:00.528255", "end": "2022-06-14 17:11:53.597175", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:11:53.068920" } STDERR: Error: NO_DEFAULTS: public MSG: non-zero return code TASK [Create custom zone] ****************************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:52 Tuesday 14 June 2022 21:11:54 +0000 (0:00:00.864) 0:00:14.696 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--new-zone=custom" ], "delta": "0:00:00.241700", "end": "2022-06-14 17:11:54.159868", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:11:53.918168" } STDOUT: success TASK [Reload firewalld] ******************************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:57 Tuesday 14 June 2022 21:11:54 +0000 (0:00:00.560) 0:00:15.257 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--reload" ], "delta": "0:00:00.452261", "end": "2022-06-14 17:11:54.909065", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:11:54.456804" } STDOUT: success TASK [Permit traffic in default zone for https service] ************************ task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:64 Tuesday 14 June 2022 21:11:55 +0000 (0:00:00.754) 0:00:16.011 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Permit traffic in default zone for https service, again] ***************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:72 Tuesday 14 June 2022 21:11:56 +0000 (0:00:00.643) 0:00:16.654 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Permit traffic in default zone on port 8081/tcp] ************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:80 Tuesday 14 June 2022 21:11:56 +0000 (0:00:00.496) 0:00:17.151 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Permit traffic in default zone on port 8081/tcp, again] ****************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:88 Tuesday 14 June 2022 21:11:57 +0000 (0:00:00.493) 0:00:17.644 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow port 161-162/udp in permanent default zone] ************************ task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:96 Tuesday 14 June 2022 21:11:57 +0000 (0:00:00.513) 0:00:18.158 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow port 161-162/udp in permanent default zone, again] ***************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:104 Tuesday 14 June 2022 21:11:58 +0000 (0:00:00.500) 0:00:18.658 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Do not permit traffic in default zone on port 8081/tcp] ****************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:112 Tuesday 14 June 2022 21:11:58 +0000 (0:00:00.481) 0:00:19.140 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Do not permit traffic in default zone on port 8081/tcp, again] *********** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:120 Tuesday 14 June 2022 21:11:59 +0000 (0:00:00.471) 0:00:19.611 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow service http in permanent dmz zone] ******************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:128 Tuesday 14 June 2022 21:11:59 +0000 (0:00:00.498) 0:00:20.110 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow service http in permanent dmz zone, again] ************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:137 Tuesday 14 June 2022 21:12:00 +0000 (0:00:00.487) 0:00:20.597 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow service ftp with limitation using rich rule in permanent default zone] *** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:146 Tuesday 14 June 2022 21:12:00 +0000 (0:00:00.492) 0:00:21.089 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow service ftp with limitation using rich rule in permanent default zone, again] *** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:154 Tuesday 14 June 2022 21:12:01 +0000 (0:00:00.503) 0:00:21.593 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow source 192.0.2.0/24 in internal zone] ****************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:162 Tuesday 14 June 2022 21:12:01 +0000 (0:00:00.498) 0:00:22.092 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow source 192.0.2.0/24 in internal zone, again] *********************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:171 Tuesday 14 June 2022 21:12:02 +0000 (0:00:00.499) 0:00:22.591 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow interface eth2 in permanent trusted zone] ************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:180 Tuesday 14 June 2022 21:12:02 +0000 (0:00:00.487) 0:00:23.079 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow interface eth2 in permanent trusted zone, again] ******************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:189 Tuesday 14 June 2022 21:12:03 +0000 (0:00:00.492) 0:00:23.571 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Allow masquerading in permament dmz zone] ******************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:198 Tuesday 14 June 2022 21:12:03 +0000 (0:00:00.492) 0:00:24.064 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Allow masquerading in permament dmz zone, again] ************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:206 Tuesday 14 June 2022 21:12:04 +0000 (0:00:00.490) 0:00:24.554 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure permanent custom zone exists (no change)] ************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:214 Tuesday 14 June 2022 21:12:04 +0000 (0:00:00.486) 0:00:25.040 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure ICMP block inversion in permanent drop zone] ********************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:222 Tuesday 14 June 2022 21:12:05 +0000 (0:00:00.464) 0:00:25.505 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Ensure ICMP block inversion in permanent drop zone, again] *************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:230 Tuesday 14 June 2022 21:12:05 +0000 (0:00:00.505) 0:00:26.010 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Block ICMP echo-request in permanent drop zone] ************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:238 Tuesday 14 June 2022 21:12:06 +0000 (0:00:00.494) 0:00:26.505 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Block ICMP echo-request in permanent drop zone, again] ******************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:247 Tuesday 14 June 2022 21:12:06 +0000 (0:00:00.493) 0:00:26.999 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure default target in permanent internal zone (no change)] ************ task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:256 Tuesday 14 June 2022 21:12:07 +0000 (0:00:00.482) 0:00:27.481 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure target ACCEPT in permanent internal zone] ************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:265 Tuesday 14 June 2022 21:12:07 +0000 (0:00:00.533) 0:00:28.015 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Ensure target ACCEPT in permanent internal zone, again] ****************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:274 Tuesday 14 June 2022 21:12:08 +0000 (0:00:00.723) 0:00:28.738 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Ensure default target in permanent internal zone] ************************ task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:283 Tuesday 14 June 2022 21:12:08 +0000 (0:00:00.520) 0:00:29.258 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Ensure default target in permanent internal zone, again] ***************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:292 Tuesday 14 June 2022 21:12:09 +0000 (0:00:00.747) 0:00:30.006 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone] *** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:301 Tuesday 14 June 2022 21:12:10 +0000 (0:00:00.555) 0:00:30.561 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Redirect port 443 to 8443 with Rich Rule in permanent and runtime public zone, again] *** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:311 Tuesday 14 June 2022 21:12:10 +0000 (0:00:00.540) 0:00:31.101 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Firewalld custom zone] *************************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:321 Tuesday 14 June 2022 21:12:11 +0000 (0:00:00.500) 0:00:31.602 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true } TASK [assert firewalld custom zone] ******************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:329 Tuesday 14 June 2022 21:12:11 +0000 (0:00:00.721) 0:00:32.324 ********** ok: [/cache/rhel-7.qcow2] => { "changed": false } MSG: All assertions passed TASK [Add masquerade to custom zone] ******************************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:334 Tuesday 14 June 2022 21:12:11 +0000 (0:00:00.035) 0:00:32.359 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [Add masquerade to custom zone, again] ************************************ task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:344 Tuesday 14 June 2022 21:12:12 +0000 (0:00:00.492) 0:00:32.851 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Set the default zone to something other than dmz] ************************ task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:354 Tuesday 14 June 2022 21:12:12 +0000 (0:00:00.516) 0:00:33.368 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--set-default-zone", "public" ], "delta": "0:00:00.261307", "end": "2022-06-14 17:12:12.837568", "rc": 0, "start": "2022-06-14 17:12:12.576261" } STDOUT: success STDERR: Warning: ZONE_ALREADY_SET: public TASK [set default zone] ******************************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:357 Tuesday 14 June 2022 21:12:13 +0000 (0:00:00.566) 0:00:33.935 ********** changed: [/cache/rhel-7.qcow2] => { "__firewall_changed": true, "changed": true, "failed_when_result": false } TASK [set default zone, again] ************************************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:364 Tuesday 14 June 2022 21:12:14 +0000 (0:00:00.587) 0:00:34.522 ********** ok: [/cache/rhel-7.qcow2] => { "__firewall_changed": false, "changed": false, "failed_when_result": false } TASK [Remove custom zone] ****************************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:379 Tuesday 14 June 2022 21:12:14 +0000 (0:00:00.510) 0:00:35.033 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--delete-zone=custom" ], "delta": "0:00:00.263285", "end": "2022-06-14 17:12:14.493970", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:12:14.230685" } STDOUT: success TASK [Remove customzone zone] ************************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:384 Tuesday 14 June 2022 21:12:15 +0000 (0:00:00.560) 0:00:35.593 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--delete-zone=customzone" ], "delta": "0:00:00.272530", "end": "2022-06-14 17:12:15.069993", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:12:14.797463" } STDOUT: success TASK [Reset internal zone to defaults] ***************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:389 Tuesday 14 June 2022 21:12:15 +0000 (0:00:00.576) 0:00:36.170 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=internal" ], "delta": "0:00:00.280176", "end": "2022-06-14 17:12:15.652648", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:12:15.372472" } STDOUT: success TASK [Reset trusted zone to defaults] ****************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:394 Tuesday 14 June 2022 21:12:16 +0000 (0:00:00.582) 0:00:36.752 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=trusted" ], "delta": "0:00:00.281490", "end": "2022-06-14 17:12:16.242804", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:12:15.961314" } STDOUT: success TASK [Reset dmz zone to defaults] ********************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:399 Tuesday 14 June 2022 21:12:16 +0000 (0:00:00.593) 0:00:37.346 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=dmz" ], "delta": "0:00:00.277877", "end": "2022-06-14 17:12:16.838344", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:12:16.560467" } STDOUT: success TASK [Reset drop zone to defaults] ********************************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:404 Tuesday 14 June 2022 21:12:17 +0000 (0:00:00.593) 0:00:37.939 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=drop" ], "delta": "0:00:00.267619", "end": "2022-06-14 17:12:17.419657", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:12:17.152038" } STDOUT: success TASK [Reset public zone to defaults] ******************************************* task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:409 Tuesday 14 June 2022 21:12:18 +0000 (0:00:00.582) 0:00:38.521 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=public" ], "delta": "0:00:00.272278", "end": "2022-06-14 17:12:17.991768", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:12:17.719490" } STDOUT: success TASK [Reset default zone to defaults] ****************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:414 Tuesday 14 June 2022 21:12:18 +0000 (0:00:00.570) 0:00:39.092 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--permanent", "--load-zone-defaults=public" ], "delta": "0:00:00.269738", "end": "2022-06-14 17:12:18.567907", "failed_when_result": false, "rc": 22, "start": "2022-06-14 17:12:18.298169" } STDERR: Error: NO_DEFAULTS: public MSG: non-zero return code TASK [Reload firewalld] ******************************************************** task path: /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:419 Tuesday 14 June 2022 21:12:19 +0000 (0:00:00.573) 0:00:39.666 ********** changed: [/cache/rhel-7.qcow2] => { "changed": true, "cmd": [ "firewall-cmd", "--reload" ], "delta": "0:00:00.451252", "end": "2022-06-14 17:12:19.314207", "failed_when_result": false, "rc": 0, "start": "2022-06-14 17:12:18.862955" } STDOUT: success META: ran handlers META: ran handlers PLAY RECAP ********************************************************************* /cache/rhel-7.qcow2 : ok=65 changed=39 unreachable=0 failed=0 skipped=6 rescued=0 ignored=0 Tuesday 14 June 2022 21:12:20 +0000 (0:00:00.758) 0:00:40.425 ********** =============================================================================== fedora.linux_system_roles.firewall : Install firewalld ------------------ 5.01s /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/firewalld.yml:7 set up internal repositories -------------------------------------------- 1.42s /cache/rhel-7_setup.yml:5 ----------------------------------------------------- Gathering Facts --------------------------------------------------------- 0.96s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:1 --------------------------- fedora.linux_system_roles.firewall : Enable and start firewalld service --- 0.88s /tmp/tmpym83ylkt/ansible_collections/fedora/linux_system_roles/roles/firewall/tasks/main.yml:3 Reset default zone to defaults ------------------------------------------ 0.86s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:44 -------------------------- Reload firewalld -------------------------------------------------------- 0.76s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:419 ------------------------- Reload firewalld -------------------------------------------------------- 0.75s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:57 -------------------------- Ensure default target in permanent internal zone ------------------------ 0.75s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:283 ------------------------- Ensure target ACCEPT in permanent internal zone ------------------------- 0.72s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:265 ------------------------- Firewalld custom zone --------------------------------------------------- 0.72s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:321 ------------------------- Remove custom zone ------------------------------------------------------ 0.71s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:14 -------------------------- Permit traffic in default zone for https service ------------------------ 0.64s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:64 -------------------------- Reset dmz zone to defaults ---------------------------------------------- 0.64s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:29 -------------------------- Reset internal zone to defaults ----------------------------------------- 0.63s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:19 -------------------------- Reset trusted zone to defaults ------------------------------------------ 0.61s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:24 -------------------------- Reset public zone to defaults ------------------------------------------- 0.59s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:39 -------------------------- Reset trusted zone to defaults ------------------------------------------ 0.59s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:394 ------------------------- Reset dmz zone to defaults ---------------------------------------------- 0.59s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:399 ------------------------- set default zone -------------------------------------------------------- 0.59s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:357 ------------------------- Reset drop zone to defaults --------------------------------------------- 0.58s /tmp/tmpem3z9ofs/tests/firewall/tests_ansible.yml:34 --------------------------