Execution
Date 08 Dec 2025 13:40:18 +0000
Duration 00:10:06.79
Controller aio1.openstack.local
User root
Versions
Ansible 2.18.6
ara 1.7.4 / 1.7.4
Python 3.12.11
Summary
15 Hosts
608 Tasks
2412 Results
18 Plays
158 Files
0 Records

Task result details

  • Status
    CHANGED
  • Duration
    00:00:00.78
  • Play
    Create CA certificates
  • Task
    pki : Sign the selfsigned Root CA CSR for ExampleCorpRoot
  • Host
    localhost ( task delegated to localhost )

Field Value
changed
True
csr
/etc/openstack_deploy/pki/roots/ExampleCorpRoot/csr/ca_csr-1000.csr
diff
--- before

+++ after

@@ -1 +1,102 @@

-{}
+{
+    "authority_cert_issuer": null,
+    "authority_cert_serial_number": null,
+    "authority_key_identifier": null,
+    "basic_constraints": [
+        "CA:TRUE"
+    ],
+    "basic_constraints_critical": true,
+    "can_parse_certificate": true,
+    "expired": false,
+    "extended_key_usage": null,
+    "extended_key_usage_critical": false,
+    "extensions_by_oid": {
+        "2.5.29.14": {
+            "critical": false,
+            "value": "BBTVagTN5B1aw2dUEQpx5bQnzLt7BA=="
+        },
+        "2.5.29.15": {
+            "critical": false,
+            "value": "AwIBhg=="
+        },
+        "2.5.29.17": {
+            "critical": false,
+            "value": "MBaCFEV4YW1wbGUgQ29ycCBSb290IENB"
+        },
+        "2.5.29.19": {
+            "critical": true,
+            "value": "MAMBAf8="
+        }
+    },
+    "fingerprints": {
+        "sha256": "63:51:5a:82:22:2e:a6:1f:99:c9:ec:bd:98:87:48:59:00:fc:70:e3:9c:7d:7e:d8:22:c2:a0:b4:19:70:77:00"
+    },
+    "issuer": {
+        "commonName": "Example Corp Root CA",
+        "countryName": "GB",
+        "stateOrProvinceName": "England"
+    },
+    "issuer_ordered": [
+        [
+            "countryName",
+            "GB"
+        ],
+        [
+            "stateOrProvinceName",
+            "England"
+        ],
+        [
+            "commonName",
+            "Example Corp Root CA"
+        ]
+    ],
+    "issuer_uri": null,
+    "key_usage": [
+        "CRL Sign",
+        "Certificate Sign",
+        "Digital Signature"
+    ],
+    "key_usage_critical": false,
+    "not_after": "20351206134029Z",
+    "not_before": "20251208134029Z",
+    "ocsp_must_staple": null,
+    "ocsp_must_staple_critical": false,
+    "ocsp_uri": null,
+    "public_key": "-----BEGIN PUBLIC KEY-----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\nxvmRIvTOavu9dLD1wpOUZH8CAwEAAQ==\n-----END PUBLIC KEY-----\n",
+    "public_key_data": {
+        "exponent": 65537,
+        "modulus": 642404126110604970436524149581995244466888338370571029097115028497617204796444350622614624713042580234958995094427762600341220018892260724748494511418180483013568727396715894360256771003436681595167825402795473806295857256574010369106654290128322508774828159489788862675643046103521459672665091786073777201733463653110315207214316583430600256127710776407276828518586379840839311262049414140974048467698513172715158317002566391415995221269282410814943581730753673246334641205245844939677586578584914464825770117396592930655509667338988802252262825392442593764066886348430574676855948363479279684013340574775370813858803545945358138761779883554429570365577703985338601988776561173008942365017760570307808381407144851206694436274337735425274602943713069349521745735288122017550299893104267655966641620189182120790397141059103857758051130027614749802137296812460974460300794081632413547268277313125553070236625802995719185810296438819126833384309485658228286373027679517827469115562778096240917260228753339273950722122001375950643280343356421390952998208113744192531869588938482626718499238794940642640059299180433752121649935187388071877766926224037931043501523588198728342537875571155265185521320074177233598517585598188148453356627071,
+        "size": 4096
+    },
+    "public_key_fingerprints": {
+        "sha256": "a3:e6:3c:6f:1f:c0:1f:54:ae:90:16:85:be:fc:6d:91:bb:63:43:12:fe:b1:07:0f:cb:9c:b9:70:d1:e1:54:c4"
+    },
+    "public_key_type": "RSA",
+    "serial_number": 101115140537604320007589534008281003747562504448,
+    "signature_algorithm": "sha256WithRSAEncryption",
+    "subject": {
+        "commonName": "Example Corp Root CA",
+        "countryName": "GB",
+        "stateOrProvinceName": "England"
+    },
+    "subject_alt_name": [
+        "DNS:Example Corp Root CA"
+    ],
+    "subject_alt_name_critical": false,
+    "subject_key_identifier": "d5:6a:04:cd:e4:1d:5a:c3:67:54:11:0a:71:e5:b4:27:cc:bb:7b:04",
+    "subject_ordered": [
+        [
+            "countryName",
+            "GB"
+        ],
+        [
+            "stateOrProvinceName",
+            "England"
+        ],
+        [
+            "commonName",
+            "Example Corp Root CA"
+        ]
+    ],
+    "version": 3
+}
filename
/etc/openstack_deploy/pki/roots/ExampleCorpRoot/certs/ExampleCorpRoot-1000.crt
invocation
{
    "module_args": {
        "acme_accountkey_path": null,
        "acme_chain": false,
        "acme_challenge_path": null,
        "acme_directory": "https://acme-v02.api.letsencrypt.org/directory",
        "attributes": null,
        "backup": true,
        "csr_content": null,
        "csr_path": "/etc/openstack_deploy/pki/roots/ExampleCorpRoot/csr/ca_csr-1000.csr",
        "entrust_api_client_cert_key_path": null,
        "entrust_api_client_cert_path": null,
        "entrust_api_key": null,
        "entrust_api_specification_path": "https://cloud.entrust.net/EntrustCloud/documentation/cms-api-2.1.0.yaml",
        "entrust_api_user": null,
        "entrust_cert_type": "STANDARD_SSL",
        "entrust_not_after": "+365d",
        "entrust_requester_email": null,
        "entrust_requester_name": null,
        "entrust_requester_phone": null,
        "force": false,
        "group": null,
        "ignore_timestamps": true,
        "mode": null,
        "ownca_content": null,
        "ownca_create_authority_key_identifier": true,
        "ownca_create_subject_key_identifier": "create_if_not_provided",
        "ownca_digest": "sha256",
        "ownca_not_after": "+3650d",
        "ownca_not_before": "+0s",
        "ownca_path": null,
        "ownca_privatekey_content": null,
        "ownca_privatekey_passphrase": null,
        "ownca_privatekey_path": null,
        "ownca_version": 3,
        "owner": null,
        "path": "/etc/openstack_deploy/pki/roots/ExampleCorpRoot/certs/ExampleCorpRoot-1000.crt",
        "privatekey_content": null,
        "privatekey_passphrase": null,
        "privatekey_path": "/etc/openstack_deploy/pki/roots/ExampleCorpRoot/private/ExampleCorpRoot.key.pem",
        "provider": "selfsigned",
        "return_content": false,
        "select_crypto_backend": "auto",
        "selevel": null,
        "selfsigned_create_subject_key_identifier": "create_if_not_provided",
        "selfsigned_digest": "sha256",
        "selfsigned_not_after": "+3650d",
        "selfsigned_not_before": "+0s",
        "selfsigned_version": 3,
        "serole": null,
        "setype": null,
        "seuser": null,
        "state": "present",
        "unsafe_writes": false
    }
}
notAfter
20351206134029Z
notBefore
20251208134029Z
privatekey
/etc/openstack_deploy/pki/roots/ExampleCorpRoot/private/ExampleCorpRoot.key.pem
serial_number
101115140537604320007589534008281003747562504448