Execution
Date 14 Dec 2025 10:04:43 +0000
Duration 00:10:10.66
Controller aio1.openstack.local
User root
Versions
Ansible 2.18.6
ara 1.7.4 / 1.7.4
Python 3.13.5
Summary
15 Hosts
603 Tasks
2357 Results
18 Plays
157 Files
0 Records

Task result details

  • Status
    CHANGED
  • Duration
    00:00:00.74
  • Play
    Create CA certificates
  • Task
    pki : Sign the intermediate CA CSR for ExampleCorpIntermediate
  • Host
    localhost ( task delegated to localhost )

Field Value
ca_cert
/etc/openstack_deploy/pki/roots/ExampleCorpRoot/certs/ExampleCorpRoot.crt
ca_privatekey
/etc/openstack_deploy/pki/roots/ExampleCorpRoot/private/ExampleCorpRoot.key.pem
changed
True
csr
/etc/openstack_deploy/pki/roots/ExampleCorpIntermediate/csr/ca_csr-1000.csr
diff
--- before

+++ after

@@ -1 +1,107 @@

-{}
+{
+    "authority_cert_issuer": null,
+    "authority_cert_serial_number": null,
+    "authority_key_identifier": "d0:da:44:b4:bd:ef:2c:cf:0f:01:fa:64:2a:bc:24:ab:72:89:7a:16",
+    "basic_constraints": [
+        "CA:TRUE",
+        "pathlen:0"
+    ],
+    "basic_constraints_critical": true,
+    "can_parse_certificate": true,
+    "expired": false,
+    "extended_key_usage": null,
+    "extended_key_usage_critical": false,
+    "extensions_by_oid": {
+        "2.5.29.14": {
+            "critical": false,
+            "value": "BBR/h3jy7P4r7Jiq2Ip+yUlLkRC6eg=="
+        },
+        "2.5.29.15": {
+            "critical": false,
+            "value": "AwIBhg=="
+        },
+        "2.5.29.17": {
+            "critical": false,
+            "value": "MDeCNUV4YW1wbGUgQ29ycCBPcGVuc3RhY2sgSW5mcmFzdHJ1Y3R1cmUgSW50ZXJtZWRpYXRlIENB"
+        },
+        "2.5.29.19": {
+            "critical": true,
+            "value": "MAYBAf8CAQA="
+        },
+        "2.5.29.35": {
+            "critical": false,
+            "value": "MBaAFNDaRLS97yzPDwH6ZCq8JKtyiXoW"
+        }
+    },
+    "fingerprints": {
+        "sha256": "c1:d7:db:89:41:77:29:01:26:eb:c7:5e:f9:04:9f:eb:22:95:d3:34:c7:f9:6a:af:fc:88:13:d2:98:d9:51:00"
+    },
+    "issuer": {
+        "commonName": "Example Corp Root CA",
+        "countryName": "GB",
+        "stateOrProvinceName": "England"
+    },
+    "issuer_ordered": [
+        [
+            "countryName",
+            "GB"
+        ],
+        [
+            "stateOrProvinceName",
+            "England"
+        ],
+        [
+            "commonName",
+            "Example Corp Root CA"
+        ]
+    ],
+    "issuer_uri": null,
+    "key_usage": [
+        "CRL Sign",
+        "Certificate Sign",
+        "Digital Signature"
+    ],
+    "key_usage_critical": false,
+    "not_after": "20351212100504Z",
+    "not_before": "20251214100504Z",
+    "ocsp_must_staple": null,
+    "ocsp_must_staple_critical": false,
+    "ocsp_uri": null,
+    "public_key": "-----BEGIN PUBLIC KEY-----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\nXOlIVdkcqSGwnk2bca5yd1kCAwEAAQ==\n-----END PUBLIC KEY-----\n",
+    "public_key_data": {
+        "exponent": 65537,
+        "modulus": 758969505631192608362000246477028071843201219864407529768621618709269442190261314660770112387133700621546499495343073237682262384595116754898202384158050161262264988037103368530695820065587687608972363570977024473376940591232975182212188157343927818946766290373384530399493778386661846134887612611918729729408750523814636749105703283246392672607404718487710924590722023309916426338591587132045144745351895136239475406746298699473678176494710661715018669775773283539047377313176061453860589292559384645685670039229493631521942991118996659936263148418271897693008089169473501759814025832337661653793540939749621448353576379084532595511082500745170884368521402893814104256277883090422507426916169515436914122045183102215929524577885507964092604505133715599081601988356677577234071986580164309381830085672722139626396056567486836563107448267130575196607370269476419985887140573810306340778884504917932458680999126294088619000188663453647092742567423638567510856411220655530813385900483476455406413588537014925592339127345947791935373945498341074482956734995219383004044962912075465622569984325872458215706935526643006339548642850798310581910036007782345965240704486302900903179872669457204150616510552001666975855573263184968009072670553,
+        "size": 4096
+    },
+    "public_key_fingerprints": {
+        "sha256": "b9:b9:6a:2b:a1:fa:80:3a:56:3e:d2:7c:52:7b:59:bf:6d:7d:e3:60:82:da:70:43:1a:d1:15:2e:16:22:4c:98"
+    },
+    "public_key_type": "RSA",
+    "serial_number": 286254094010668883533999096769671690173470638825,
+    "signature_algorithm": "sha256WithRSAEncryption",
+    "subject": {
+        "commonName": "Example Corp Openstack Infrastructure Intermediate CA",
+        "countryName": "GB",
+        "stateOrProvinceName": "England"
+    },
+    "subject_alt_name": [
+        "DNS:Example Corp Openstack Infrastructure Intermediate CA"
+    ],
+    "subject_alt_name_critical": false,
+    "subject_key_identifier": "7f:87:78:f2:ec:fe:2b:ec:98:aa:d8:8a:7e:c9:49:4b:91:10:ba:7a",
+    "subject_ordered": [
+        [
+            "countryName",
+            "GB"
+        ],
+        [
+            "stateOrProvinceName",
+            "England"
+        ],
+        [
+            "commonName",
+            "Example Corp Openstack Infrastructure Intermediate CA"
+        ]
+    ],
+    "version": 3
+}
filename
/etc/openstack_deploy/pki/roots/ExampleCorpIntermediate/certs/ExampleCorpIntermediate-1000.crt
invocation
{
    "module_args": {
        "acme_accountkey_path": null,
        "acme_chain": false,
        "acme_challenge_path": null,
        "acme_directory": "https://acme-v02.api.letsencrypt.org/directory",
        "attributes": null,
        "backup": true,
        "csr_content": null,
        "csr_path": "/etc/openstack_deploy/pki/roots/ExampleCorpIntermediate/csr/ca_csr-1000.csr",
        "entrust_api_client_cert_key_path": null,
        "entrust_api_client_cert_path": null,
        "entrust_api_key": null,
        "entrust_api_specification_path": "https://cloud.entrust.net/EntrustCloud/documentation/cms-api-2.1.0.yaml",
        "entrust_api_user": null,
        "entrust_cert_type": "STANDARD_SSL",
        "entrust_not_after": "+365d",
        "entrust_requester_email": null,
        "entrust_requester_name": null,
        "entrust_requester_phone": null,
        "force": false,
        "group": null,
        "ignore_timestamps": true,
        "mode": null,
        "ownca_content": null,
        "ownca_create_authority_key_identifier": true,
        "ownca_create_subject_key_identifier": "create_if_not_provided",
        "ownca_digest": "sha256",
        "ownca_not_after": "+3650d",
        "ownca_not_before": "+0s",
        "ownca_path": "/etc/openstack_deploy/pki/roots/ExampleCorpRoot/certs/ExampleCorpRoot.crt",
        "ownca_privatekey_content": null,
        "ownca_privatekey_passphrase": null,
        "ownca_privatekey_path": "/etc/openstack_deploy/pki/roots/ExampleCorpRoot/private/ExampleCorpRoot.key.pem",
        "ownca_version": 3,
        "owner": null,
        "path": "/etc/openstack_deploy/pki/roots/ExampleCorpIntermediate/certs/ExampleCorpIntermediate-1000.crt",
        "privatekey_content": null,
        "privatekey_passphrase": null,
        "privatekey_path": null,
        "provider": "ownca",
        "return_content": false,
        "select_crypto_backend": "auto",
        "selevel": null,
        "selfsigned_create_subject_key_identifier": "create_if_not_provided",
        "selfsigned_digest": "sha256",
        "selfsigned_not_after": "+3650d",
        "selfsigned_not_before": "+0s",
        "selfsigned_version": 3,
        "serole": null,
        "setype": null,
        "seuser": null,
        "state": "present",
        "unsafe_writes": false
    }
}
notAfter
20351212100504Z
notBefore
20251214100504Z
privatekey None
serial_number
286254094010668883533999096769671690173470638825