Execution
Date
05 Dec 2025 13:22:31 +0000
Duration
00:00:50.80
Controller
aio1.openstack.local
User
root
Versions
Ansible
2.18.6
ara
1.7.4 / 1.7.4
Python
3.12.11
Summary
2
Hosts
72
Tasks
71
Results
7
Plays
97
Files
0
Records
Task result details
-
StatusCHANGED
-
Duration00:00:00.61
-
PlayCreate CA certificates
-
Taskpki : Create the CA CSR for ExampleCorpIntermediate
-
Date05 Dec 2025 13:22:50 +0000
-
Module / Actioncommunity.crypto.openssl_csr (/home/zuul/src/opendev.org/openstack/ansible-role-pki/tasks/standalone/create_ca.yml:92)
-
Tags
- always
| Field | Value |
|---|---|
| basicConstraints |
[ "CA:TRUE", "pathlen:0" ] |
| changed |
True |
| diff |
--- before +++ after @@ -1 +1,73 @@ -{} +{ + "authority_cert_issuer": null, + "authority_cert_serial_number": null, + "authority_key_identifier": null, + "basic_constraints": [ + "CA:TRUE", + "pathlen:0" + ], + "basic_constraints_critical": true, + "can_parse_csr": true, + "extended_key_usage": null, + "extended_key_usage_critical": false, + "extensions_by_oid": { + "2.5.29.15": { + "critical": false, + "value": "AwIBhg==" + }, + "2.5.29.17": { + "critical": false, + "value": "MDeCNUV4YW1wbGUgQ29ycCBPcGVuc3RhY2sgSW5mcmFzdHJ1Y3R1cmUgSW50ZXJtZWRpYXRlIENB" + }, + "2.5.29.19": { + "critical": true, + "value": "MAYBAf8CAQA=" + } + }, + "key_usage": [ + "CRL Sign", + "Certificate Sign", + "Digital Signature" + ], + "key_usage_critical": false, + "name_constraints_critical": false, + "name_constraints_excluded": null, + "name_constraints_permitted": null, + "ocsp_must_staple": null, + "ocsp_must_staple_critical": false, + "public_key": "-----BEGIN PUBLIC KEY-----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\nR0G3w0HT2RjI+w4ahQWQ400CAwEAAQ==\n-----END PUBLIC KEY-----\n", + "public_key_data": { + "exponent": 65537, + "modulus": 662167223349329920071450597540448115749243685868444068365137254515157048658785410596275353526840921253321785331548065230515187257206102378092367755173612166910157221489836612913941469129144066860972672388780059365904891200111213324415699837499535686461729424118767689578132931126891358191374741526911449073128850780589901044528324155836313366564193647824252347524799451189927966706301726440389320684610142721841044273923972126101102538994230023031968353104322524873399317441311098033402962478025336631959433448290297901880369545012405521582628613099812673571841605424352726383798045777573751654234196824770374921427636126580369033892876952154113556143723913981190630443766607277810338989966423167171952022442398770354609239250683337941530398844643386828689164108329798236518900908781979702933588382768515047881026740803861517653335077717027137239696403451000291227951607407087942001166026031172765241466420503673604280224295734627161504054517776875077965989347051155534358733855745466977075203476958772013220379046728425610579519937094342715499557984598501989240053151923955106173676772313901838479537232752771471783239912227203642016727734520469589464038320613558339504819662379925614978399161127785246031110294053106798205477118797, + "size": 4096 + }, + "public_key_fingerprints": { + "sha256": "17:4a:ca:87:82:b7:3e:12:79:e3:37:ee:e7:6f:ff:d8:33:59:5e:7a:03:6d:b5:4e:e2:f7:be:2f:96:ea:b5:73" + }, + "public_key_type": "RSA", + "signature_valid": true, + "subject": { + "commonName": "Example Corp Openstack Infrastructure Intermediate CA", + "countryName": "GB", + "stateOrProvinceName": "England" + }, + "subject_alt_name": [ + "DNS:Example Corp Openstack Infrastructure Intermediate CA" + ], + "subject_alt_name_critical": false, + "subject_key_identifier": null, + "subject_ordered": [ + [ + "countryName", + "GB" + ], + [ + "stateOrProvinceName", + "England" + ], + [ + "commonName", + "Example Corp Openstack Infrastructure Intermediate CA" + ] + ] +} |
| extendedKeyUsage | None |
| filename |
/etc/openstack_deploy/pki/roots/ExampleCorpIntermediate/csr/ca_csr-1000.csr |
| invocation |
{ "module_args": { "attributes": null, "authority_cert_issuer": null, "authority_cert_serial_number": null, "authority_key_identifier": null, "backup": true, "basic_constraints": [ "CA:TRUE", "pathlen:0" ], "basic_constraints_critical": true, "common_name": "Example Corp Openstack Infrastructure Intermediate CA", "country_name": "GB", "create_subject_key_identifier": false, "crl_distribution_points": null, "digest": "sha256", "email_address": null, "extended_key_usage": null, "extended_key_usage_critical": false, "force": false, "group": null, "key_usage": [ "digitalSignature", "cRLSign", "keyCertSign" ], "key_usage_critical": false, "locality_name": null, "mode": null, "name_constraints_critical": false, "name_constraints_excluded": null, "name_constraints_permitted": null, "ocsp_must_staple": false, "ocsp_must_staple_critical": false, "organization_name": null, "organizational_unit_name": null, "owner": null, "path": "/etc/openstack_deploy/pki/roots/ExampleCorpIntermediate/csr/ca_csr-1000.csr", "privatekey_content": null, "privatekey_passphrase": null, "privatekey_path": "/etc/openstack_deploy/pki/roots/ExampleCorpIntermediate/private/ExampleCorpIntermediate.key.pem", "return_content": false, "select_crypto_backend": "auto", "selevel": null, "serole": null, "setype": null, "seuser": null, "state": "present", "state_or_province_name": "England", "subject": null, "subject_alt_name": null, "subject_alt_name_critical": false, "subject_key_identifier": null, "subject_ordered": null, "unsafe_writes": false, "use_common_name_for_san": true, "version": 1 } } |
| keyUsage |
[ "digitalSignature", "cRLSign", "keyCertSign" ] |
| name_constraints_excluded |
[]
|
| name_constraints_permitted |
[]
|
| ocspMustStaple |
False |
| privatekey |
/etc/openstack_deploy/pki/roots/ExampleCorpIntermediate/private/ExampleCorpIntermediate.key.pem |
| subject |
[ [ "C", "GB" ], [ "ST", "England" ], [ "CN", "Example Corp Openstack Infrastructure Intermediate CA" ] ] |
| subjectAltName |
[ "DNS:Example Corp Openstack Infrastructure Intermediate CA" ] |