# STDOUT: ---v---v---v---v---v--- ansible-playbook 2.9.27 config file = /etc/ansible/ansible.cfg configured module search path = ['/home/jenkins/.ansible/plugins/modules', '/usr/share/ansible/plugins/modules'] ansible python module location = /opt/ansible-2.9/lib/python3.9/site-packages/ansible executable location = /opt/ansible-2.9/bin/ansible-playbook python version = 3.9.18 (main, Sep 7 2023, 00:00:00) [GCC 11.4.1 20230605 (Red Hat 11.4.1-2)] Using /etc/ansible/ansible.cfg as config file Skipping callback 'actionable', as we already have a stdout callback. Skipping callback 'counter_enabled', as we already have a stdout callback. Skipping callback 'debug', as we already have a stdout callback. Skipping callback 'dense', as we already have a stdout callback. Skipping callback 'dense', as we already have a stdout callback. Skipping callback 'full_skip', as we already have a stdout callback. Skipping callback 'json', as we already have a stdout callback. Skipping callback 'minimal', as we already have a stdout callback. Skipping callback 'null', as we already have a stdout callback. Skipping callback 'oneline', as we already have a stdout callback. Skipping callback 'selective', as we already have a stdout callback. Skipping callback 'skippy', as we already have a stdout callback. Skipping callback 'stderr', as we already have a stdout callback. Skipping callback 'unixy', as we already have a stdout callback. Skipping callback 'yaml', as we already have a stdout callback. PLAYBOOK: tests_mesh_cert.yml ************************************************** 1 plays in /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml PLAY [Test mesh tunnels with certificates] ************************************* TASK [Gathering Facts] ********************************************************* task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml:3 Friday 21 June 2024 01:16:45 +0000 (0:00:00.012) 0:00:00.012 *********** ok: [sut] META: ran handlers TASK [Set up test environment] ************************************************* task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml:16 Friday 21 June 2024 01:16:46 +0000 (0:00:00.660) 0:00:00.672 *********** included: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml for sut TASK [Set platform/version specific variables] ********************************* task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:2 Friday 21 June 2024 01:16:46 +0000 (0:00:00.016) 0:00:00.688 *********** TASK [linux-system-roles.vpn : Ensure ansible_facts used by role] ************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:2 Friday 21 June 2024 01:16:46 +0000 (0:00:00.028) 0:00:00.716 *********** skipping: [sut] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [linux-system-roles.vpn : Check if system is ostree] ********************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:11 Friday 21 June 2024 01:16:46 +0000 (0:00:00.019) 0:00:00.735 *********** ok: [sut] => { "changed": false, "stat": { "exists": false } } TASK [linux-system-roles.vpn : Set flag to indicate system is ostree] ********** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:16 Friday 21 June 2024 01:16:46 +0000 (0:00:00.253) 0:00:00.989 *********** ok: [sut] => { "ansible_facts": { "__vpn_is_ostree": false }, "changed": false } TASK [linux-system-roles.vpn : Set platform/version specific variables] ******** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:20 Friday 21 June 2024 01:16:46 +0000 (0:00:00.021) 0:00:01.010 *********** skipping: [sut] => (item=RedHat.yml) => { "ansible_loop_var": "item", "changed": false, "item": "RedHat.yml", "skip_reason": "Conditional result was False" } skipping: [sut] => (item=CentOS.yml) => { "ansible_loop_var": "item", "changed": false, "item": "CentOS.yml", "skip_reason": "Conditional result was False" } ok: [sut] => (item=CentOS_8.yml) => { "ansible_facts": { "__vpn_nss_location": "/etc/ipsec.d" }, "ansible_included_var_files": [ "/WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/vars/CentOS_8.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_8.yml" } ok: [sut] => (item=CentOS_8.yml) => { "ansible_facts": { "__vpn_nss_location": "/etc/ipsec.d" }, "ansible_included_var_files": [ "/WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/vars/CentOS_8.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_8.yml" } TASK [Change inventory_hostname] *********************************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:11 Friday 21 June 2024 01:16:46 +0000 (0:00:00.032) 0:00:01.043 *********** skipping: [sut] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [Add sample main host] **************************************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:18 Friday 21 June 2024 01:16:46 +0000 (0:00:00.017) 0:00:01.061 *********** skipping: [sut] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [Create nss directory for testing] **************************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:22 Friday 21 June 2024 01:16:46 +0000 (0:00:00.029) 0:00:01.090 *********** changed: [sut] => { "changed": true, "gid": 0, "group": "root", "mode": "0600", "owner": "root", "path": "/etc/ipsec.d", "secontext": "unconfined_u:object_r:etc_t:s0", "size": 6, "state": "directory", "uid": 0 } TASK [Create /etc/ipsec.d directory for testing] ******************************* task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:28 Friday 21 June 2024 01:16:47 +0000 (0:00:00.261) 0:00:01.351 *********** ok: [sut] => { "changed": false, "gid": 0, "group": "root", "mode": "0600", "owner": "root", "path": "/etc/ipsec.d", "secontext": "unconfined_u:object_r:etc_t:s0", "size": 6, "state": "directory", "uid": 0 } TASK [Dynamically add more hosts] ********************************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:34 Friday 21 June 2024 01:16:47 +0000 (0:00:00.187) 0:00:01.539 *********** included: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/add_hosts.yml for sut TASK [Dynamically add multiple hosts for testing] ****************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/add_hosts.yml:2 Friday 21 June 2024 01:16:47 +0000 (0:00:00.010) 0:00:01.550 *********** creating host via 'add_host': hostname=host01.local changed: [sut] => (item=1) => { "add_host": { "groups": [ "testing" ], "host_name": "host01.local", "host_vars": { "cert_name": "dyn_cert", "current_ip": "169.254.1.1", "current_subnet": "169.254.0.0/16" } }, "ansible_loop_var": "item", "changed": true, "item": 1 } creating host via 'add_host': hostname=host02.local changed: [sut] => (item=2) => { "add_host": { "groups": [ "testing" ], "host_name": "host02.local", "host_vars": { "cert_name": "dyn_cert", "current_ip": "169.254.1.1", "current_subnet": "169.254.0.0/16" } }, "ansible_loop_var": "item", "changed": true, "item": 2 } TASK [Create mock vpn_connections] ********************************************* task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/add_hosts.yml:11 Friday 21 June 2024 01:16:47 +0000 (0:00:00.024) 0:00:01.574 *********** ok: [sut] => { "ansible_facts": { "vpn_connections": [ { "hosts": { "host01.local": "", "host02.local": "", "sut": "" } } ] }, "changed": false } TASK [Create sample policies directory for testing] **************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:40 Friday 21 June 2024 01:16:47 +0000 (0:00:00.020) 0:00:01.595 *********** changed: [sut] => { "changed": true, "gid": 0, "group": "root", "mode": "0600", "owner": "root", "path": "/etc/ipsec.d/policies", "secontext": "unconfined_u:object_r:etc_t:s0", "size": 6, "state": "directory", "uid": 0 } TASK [Create sample policy files for testing] ********************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:46 Friday 21 June 2024 01:16:47 +0000 (0:00:00.198) 0:00:01.793 *********** changed: [sut] => { "changed": true, "dest": "/etc/ipsec.d/policies/private", "gid": 0, "group": "root", "mode": "0600", "owner": "root", "secontext": "unconfined_u:object_r:etc_t:s0", "size": 0, "state": "file", "uid": 0 } TASK [Create sample policy files for testing] ********************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:52 Friday 21 June 2024 01:16:47 +0000 (0:00:00.197) 0:00:01.991 *********** changed: [sut] => { "changed": true, "dest": "/etc/ipsec.d/policies/private-or-clear", "gid": 0, "group": "root", "mode": "0600", "owner": "root", "secontext": "unconfined_u:object_r:etc_t:s0", "size": 0, "state": "file", "uid": 0 } TASK [Create sample policy files for testing] ********************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:58 Friday 21 June 2024 01:16:47 +0000 (0:00:00.198) 0:00:02.190 *********** changed: [sut] => { "changed": true, "dest": "/etc/ipsec.d/policies/clear", "gid": 0, "group": "root", "mode": "0600", "owner": "root", "secontext": "unconfined_u:object_r:etc_t:s0", "size": 0, "state": "file", "uid": 0 } TASK [Ensure firewalld not running if not testing firewall] ******************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:67 Friday 21 June 2024 01:16:48 +0000 (0:00:00.195) 0:00:02.385 *********** skipping: [sut] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [Add extra options to check] ********************************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml:21 Friday 21 June 2024 01:16:48 +0000 (0:00:00.017) 0:00:02.403 *********** ok: [sut] => { "ansible_facts": { "vpn_connections": [ { "auth_method": "cert", "hosts": { "host01.local": "", "host02.local": "", "sut": "" }, "opportunistic": true, "policies": [ { "cidr": "203.0.113.0/24", "policy": "private" }, { "cidr": "198.51.100.0/24", "policy": "clear" } ] } ] }, "changed": false } TASK [Add cert_name fact to controller] **************************************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml:36 Friday 21 June 2024 01:16:48 +0000 (0:00:00.019) 0:00:02.422 *********** ok: [sut] => { "ansible_facts": { "cert_name": "main_cert" }, "changed": false } TASK [Use vpn role] ************************************************************ task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml:40 Friday 21 June 2024 01:16:48 +0000 (0:00:00.017) 0:00:02.439 *********** TASK [linux-system-roles.vpn : Set platform/version specific variables] ******** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/main.yml:3 Friday 21 June 2024 01:16:48 +0000 (0:00:00.023) 0:00:02.463 *********** included: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml for sut TASK [linux-system-roles.vpn : Ensure ansible_facts used by role] ************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:2 Friday 21 June 2024 01:16:48 +0000 (0:00:00.011) 0:00:02.474 *********** skipping: [sut] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [linux-system-roles.vpn : Check if system is ostree] ********************** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:11 Friday 21 June 2024 01:16:48 +0000 (0:00:00.018) 0:00:02.493 *********** skipping: [sut] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [linux-system-roles.vpn : Set flag to indicate system is ostree] ********** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:16 Friday 21 June 2024 01:16:48 +0000 (0:00:00.017) 0:00:02.510 *********** skipping: [sut] => { "changed": false, "skip_reason": "Conditional result was False" } TASK [linux-system-roles.vpn : Set platform/version specific variables] ******** task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:20 Friday 21 June 2024 01:16:48 +0000 (0:00:00.017) 0:00:02.528 *********** skipping: [sut] => (item=RedHat.yml) => { "ansible_loop_var": "item", "changed": false, "item": "RedHat.yml", "skip_reason": "Conditional result was False" } skipping: [sut] => (item=CentOS.yml) => { "ansible_loop_var": "item", "changed": false, "item": "CentOS.yml", "skip_reason": "Conditional result was False" } ok: [sut] => (item=CentOS_8.yml) => { "ansible_facts": { "__vpn_nss_location": "/etc/ipsec.d" }, "ansible_included_var_files": [ "/WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/vars/CentOS_8.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_8.yml" } ok: [sut] => (item=CentOS_8.yml) => { "ansible_facts": { "__vpn_nss_location": "/etc/ipsec.d" }, "ansible_included_var_files": [ "/WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/vars/CentOS_8.yml" ], "ansible_loop_var": "item", "changed": false, "item": "CentOS_8.yml" } TASK [linux-system-roles.vpn : Ensure required packages are installed] ********* task path: /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/main.yml:6 Friday 21 June 2024 01:16:48 +0000 (0:00:00.033) 0:00:02.561 *********** fatal: [sut]: FAILED! => { "changed": false, "rc": 1, "results": [] } MSG: Failed to download metadata for repo 'appstream': Cannot prepare internal mirrorlist: No URLs in mirrorlist to retry, use: --limit @/tmp/tests_mesh_cert.retry PLAY RECAP ********************************************************************* sut : ok=18 changed=6 unreachable=0 failed=1 skipped=7 rescued=0 ignored=0 Friday 21 June 2024 01:16:49 +0000 (0:00:00.757) 0:00:03.319 *********** =============================================================================== linux-system-roles.vpn : Ensure required packages are installed --------- 0.76s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/main.yml:6 Gathering Facts --------------------------------------------------------- 0.66s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml:3 ------------- Create nss directory for testing ---------------------------------------- 0.26s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:22 ----------- linux-system-roles.vpn : Check if system is ostree ---------------------- 0.25s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:11 Create sample policies directory for testing ---------------------------- 0.20s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:40 ----------- Create sample policy files for testing ---------------------------------- 0.20s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:52 ----------- Create sample policy files for testing ---------------------------------- 0.20s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:46 ----------- Create sample policy files for testing ---------------------------------- 0.20s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:58 ----------- Create /etc/ipsec.d directory for testing ------------------------------- 0.19s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:28 ----------- linux-system-roles.vpn : Set platform/version specific variables -------- 0.03s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:20 linux-system-roles.vpn : Set platform/version specific variables -------- 0.03s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:20 Add sample main host ---------------------------------------------------- 0.03s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:18 ----------- Set platform/version specific variables --------------------------------- 0.03s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/setup_test.yml:2 ------------ Dynamically add multiple hosts for testing ------------------------------ 0.02s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/add_hosts.yml:2 ------------- Use vpn role ------------------------------------------------------------ 0.02s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml:40 ------------ linux-system-roles.vpn : Set flag to indicate system is ostree ---------- 0.02s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:16 Create mock vpn_connections --------------------------------------------- 0.02s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tasks/add_hosts.yml:11 ------------ Add extra options to check ---------------------------------------------- 0.02s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/tests_mesh_cert.yml:21 ------------ linux-system-roles.vpn : Ensure ansible_facts used by role -------------- 0.02s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:2 linux-system-roles.vpn : Ensure ansible_facts used by role -------------- 0.02s /WORKDIR/git-cleanup-firewall2xpd8lk1/tests/roles/linux-system-roles.vpn/tasks/set_vars.yml:2 ---^---^---^---^---^--- # STDERR: ---v---v---v---v---v--- ---^---^---^---^---^---