{"id":247424,"status":"ok","playbook":{"id":2687,"items":{"plays":1,"tasks":3,"results":15,"hosts":5,"files":1,"records":0},"arguments":{"version":null,"verbosity":2,"private_key_file":"/home/ssh-gateway/.ssh/id_rsa","remote_user":"root","connection":"ssh","timeout":null,"ssh_common_args":null,"sftp_extra_args":null,"scp_extra_args":null,"ssh_extra_args":null,"ask_pass":false,"connection_password_file":null,"force_handlers":false,"flush_cache":false,"become":false,"become_method":"sudo","become_user":null,"become_ask_pass":false,"become_password_file":null,"tags":["all"],"skip_tags":[],"check":false,"diff":false,"inventory":["/home/ssh-gateway/ansible/zimbra/inv-stage"],"listhosts":false,"subset":null,"extra_vars":"Not saved by ARA as configured by 'ignored_arguments'","vault_ids":[],"ask_vault_pass":false,"vault_password_files":[],"forks":20,"module_path":null,"syntax":false,"listtasks":false,"listtags":false,"step":false,"start_at_task":null,"args":["install_zimbra_certificate_stage.yaml"]},"labels":[{"id":1,"name":"remote_user:root"},{"id":2,"name":"check:False"},{"id":3,"name":"tags:all"}],"started":"2025-04-02T16:05:18.533380+01:00","ended":"2025-04-02T16:07:36.796089+01:00","duration":"00:02:18.262709","name":null,"ansible_version":"2.16.11","client_version":"1.7.2","python_version":"3.10.10","server_version":"1.7.2","status":"completed","path":"/home/ssh-gateway/ansible/zimbra/install_zimbra_certificate_stage.yaml","controller":"ssh-gw-4.layershift.com","user":"root"},"play":{"id":3008,"items":{"tasks":3,"results":15},"started":"2025-04-02T16:05:18.569952+01:00","ended":"2025-04-02T16:07:36.492150+01:00","duration":"00:02:17.922198","name":"Playbook to install zimbra wildcard certificate on cluster","status":"completed"},"task":{"id":6379,"items":{"results":5},"path":"/home/ssh-gateway/ansible/zimbra/install_zimbra_certificate_stage.yaml","tags":[],"started":"2025-04-02T16:05:23.975270+01:00","ended":"2025-04-02T16:07:36.442156+01:00","duration":"00:02:12.466886","name":"Install certificate on host","uuid":"001851d0-75dc-e691-4cdb-00000000000a","action":"ansible.builtin.shell","lineno":28,"handler":false,"status":"completed","warnings":[],"deprecations":[],"exceptions":[],"file":4793},"host":{"id":104115,"name":"mbox2-stage","changed":1,"failed":0,"ok":3,"skipped":0,"unreachable":0},"delegated_to":[],"content":{"changed":false,"cmd":"set -o pipefail\nchown zimbra.zimbra /tmp/commercial_stage.key /tmp/ssl_stage.crt /tmp/chain_stage.crt\nsu -l zimbra -c \"cp -prf /tmp/commercial_stage.key /opt/zimbra/ssl/zimbra/commercial/commercial.key\"\nsu -l zimbra -c \"zmcertmgr verifycrt comm /tmp/commercial_stage.key /tmp/ssl_stage.crt /tmp/chain_stage.crt\"\nsu -l zimbra -c \"zmcertmgr deploycrt comm /tmp/ssl_stage.crt /tmp/chain_stage.crt\"\nsu -l zimbra -c \"zmlocalconfig -e ldap_starttls_required=true\"\nsu -l zimbra -c \"zmlocalconfig -e ldap_starttls_supported=1\"\nsu -l zimbra -c \"zmcontrol restart\"\nsu -l zimbra -c \"zmcertmgr viewdeployedcrt\"\n","delta":"0:00:47.390528","end":"2025-04-02 15:06:12.098772","invocation":{"module_args":{"_raw_params":"set -o pipefail\nchown zimbra.zimbra /tmp/commercial_stage.key /tmp/ssl_stage.crt /tmp/chain_stage.crt\nsu -l zimbra -c \"cp -prf /tmp/commercial_stage.key /opt/zimbra/ssl/zimbra/commercial/commercial.key\"\nsu -l zimbra -c \"zmcertmgr verifycrt comm /tmp/commercial_stage.key /tmp/ssl_stage.crt /tmp/chain_stage.crt\"\nsu -l zimbra -c \"zmcertmgr deploycrt comm /tmp/ssl_stage.crt /tmp/chain_stage.crt\"\nsu -l zimbra -c \"zmlocalconfig -e ldap_starttls_required=true\"\nsu -l zimbra -c \"zmlocalconfig -e ldap_starttls_supported=1\"\nsu -l zimbra -c \"zmcontrol restart\"\nsu -l zimbra -c \"zmcertmgr viewdeployedcrt\"\n","_uses_shell":true,"argv":null,"chdir":null,"creates":null,"executable":"/bin/bash","expand_argument_vars":true,"removes":null,"stdin":null,"stdin_add_newline":true,"strip_empty_ends":true}},"msg":"","rc":0,"start":"2025-04-02 15:05:24.708244","stderr":"Connect: Unable to determine enabled services from ldap.\nEnabled services read from cache. Service list may be inaccurate.","stderr_lines":["Connect: Unable to determine enabled services from ldap.","Enabled services read from cache. Service list may be inaccurate."],"stdout":"** Verifying '/tmp/ssl_stage.crt' against '/tmp/commercial_stage.key'\nERROR: Certificate '/tmp/ssl_stage.crt' and private key '/tmp/commercial_stage.key' do not match.\n** Keeping first certificate in '/tmp/ssl_stage.crt'\n** Verifying '/tmp/ssl_stage.crt' against '/opt/zimbra/ssl/zimbra/commercial/commercial.key'\nERROR: Certificate '/tmp/ssl_stage.crt' and private key '/opt/zimbra/ssl/zimbra/commercial/commercial.key' do not match.\nHost mbox2.zimbra.stage.town\n\tStopping vmware-ha...Done.\n\tStopping zmconfigd...Done.\n\tStopping zimlet webapp...Done.\n\tStopping zimbraAdmin webapp...Done.\n\tStopping zimbra webapp...Done.\n\tStopping service webapp...Done.\n\tStopping stats...Done.\n\tStopping onlyoffice...Done.\n\tStopping spell...Done.\n\tStopping snmp...Done.\n\tStopping cbpolicyd...Done.\n\tStopping archiving...Done.\n\tStopping opendkim...Done.\n\tStopping amavis...Done.\n\tStopping antivirus...Done.\n\tStopping antispam...Done.\n\tStopping proxy...Done.\n\tStopping memcached...Done.\n\tStopping mailbox...Done.\n\tStopping convertd...Done.\n\tStopping logger...Done.\n\tStopping dnscache...Done.\nHost mbox2.zimbra.stage.town\n\tStarting zmconfigd...Done.\n\tStarting logger...Done.\n\tStarting convertd...Done.\n\tStarting mailbox...Done.\n\tStarting spell...Done.\n\tStarting stats...Done.\n\tStarting service webapp...Done.\n\tStarting zimbra webapp...Done.\n\tStarting zimbraAdmin webapp...Done.\n\tStarting zimlet webapp...Done.\n- imapd: /opt/zimbra/conf/imapd.crt\nnotBefore=Dec 23 12:31:18 2024 GMT\nnotAfter=Mar 23 12:31:17 2025 GMT\nsubject=CN = proxy-mta.zimbra.stage.town\nissuer=C = US, O = Let's Encrypt, CN = R10\nSubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town\n- ldap: /opt/zimbra/conf/slapd.crt\nnotBefore=Dec 23 12:31:18 2024 GMT\nnotAfter=Mar 23 12:31:17 2025 GMT\nsubject=CN = proxy-mta.zimbra.stage.town\nissuer=C = US, O = Let's Encrypt, CN = R10\nSubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town\n- mailboxd: /opt/zimbra/mailboxd/etc/mailboxd.pem\nnotBefore=Dec 23 12:31:18 2024 GMT\nnotAfter=Mar 23 12:31:17 2025 GMT\nsubject=CN = proxy-mta.zimbra.stage.town\nissuer=C = US, O = Let's Encrypt, CN = R10\nSubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town\n- mta: /opt/zimbra/conf/smtpd.crt\nnotBefore=Dec 23 12:31:18 2024 GMT\nnotAfter=Mar 23 12:31:17 2025 GMT\nsubject=CN = proxy-mta.zimbra.stage.town\nissuer=C = US, O = Let's Encrypt, CN = R10\nSubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town\n- proxy: /opt/zimbra/conf/nginx.crt\nnotBefore=Dec 23 12:31:18 2024 GMT\nnotAfter=Mar 23 12:31:17 2025 GMT\nsubject=CN = proxy-mta.zimbra.stage.town\nissuer=C = US, O = Let's Encrypt, CN = R10\nSubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town","stdout_lines":["** Verifying '/tmp/ssl_stage.crt' against '/tmp/commercial_stage.key'","ERROR: Certificate '/tmp/ssl_stage.crt' and private key '/tmp/commercial_stage.key' do not match.","** Keeping first certificate in '/tmp/ssl_stage.crt'","** Verifying '/tmp/ssl_stage.crt' against '/opt/zimbra/ssl/zimbra/commercial/commercial.key'","ERROR: Certificate '/tmp/ssl_stage.crt' and private key '/opt/zimbra/ssl/zimbra/commercial/commercial.key' do not match.","Host mbox2.zimbra.stage.town","\tStopping vmware-ha...Done.","\tStopping zmconfigd...Done.","\tStopping zimlet webapp...Done.","\tStopping zimbraAdmin webapp...Done.","\tStopping zimbra webapp...Done.","\tStopping service webapp...Done.","\tStopping stats...Done.","\tStopping onlyoffice...Done.","\tStopping spell...Done.","\tStopping snmp...Done.","\tStopping cbpolicyd...Done.","\tStopping archiving...Done.","\tStopping opendkim...Done.","\tStopping amavis...Done.","\tStopping antivirus...Done.","\tStopping antispam...Done.","\tStopping proxy...Done.","\tStopping memcached...Done.","\tStopping mailbox...Done.","\tStopping convertd...Done.","\tStopping logger...Done.","\tStopping dnscache...Done.","Host mbox2.zimbra.stage.town","\tStarting zmconfigd...Done.","\tStarting logger...Done.","\tStarting convertd...Done.","\tStarting mailbox...Done.","\tStarting spell...Done.","\tStarting stats...Done.","\tStarting service webapp...Done.","\tStarting zimbra webapp...Done.","\tStarting zimbraAdmin webapp...Done.","\tStarting zimlet webapp...Done.","- imapd: /opt/zimbra/conf/imapd.crt","notBefore=Dec 23 12:31:18 2024 GMT","notAfter=Mar 23 12:31:17 2025 GMT","subject=CN = proxy-mta.zimbra.stage.town","issuer=C = US, O = Let's Encrypt, CN = R10","SubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town","- ldap: /opt/zimbra/conf/slapd.crt","notBefore=Dec 23 12:31:18 2024 GMT","notAfter=Mar 23 12:31:17 2025 GMT","subject=CN = proxy-mta.zimbra.stage.town","issuer=C = US, O = Let's Encrypt, CN = R10","SubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town","- mailboxd: /opt/zimbra/mailboxd/etc/mailboxd.pem","notBefore=Dec 23 12:31:18 2024 GMT","notAfter=Mar 23 12:31:17 2025 GMT","subject=CN = proxy-mta.zimbra.stage.town","issuer=C = US, O = Let's Encrypt, CN = R10","SubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town","- mta: /opt/zimbra/conf/smtpd.crt","notBefore=Dec 23 12:31:18 2024 GMT","notAfter=Mar 23 12:31:17 2025 GMT","subject=CN = proxy-mta.zimbra.stage.town","issuer=C = US, O = Let's Encrypt, CN = R10","SubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town","- proxy: /opt/zimbra/conf/nginx.crt","notBefore=Dec 23 12:31:18 2024 GMT","notAfter=Mar 23 12:31:17 2025 GMT","subject=CN = proxy-mta.zimbra.stage.town","issuer=C = US, O = Let's Encrypt, CN = R10","SubjectAltName=ldap1.zimbra.stage.town, ldap2.zimbra.stage.town, mbox1.zimbra.stage.town, mbox2.zimbra.stage.town, proxy-mta.zimbra.stage.town, zimbra.stage.town"]},"created":"2025-04-02T16:06:12.141465+01:00","updated":"2025-04-02T16:06:12.141492+01:00","started":"2025-04-02T16:05:24.320018+01:00","ended":"2025-04-02T16:06:12.135860+01:00","duration":"00:00:47.815842","changed":false,"ignore_errors":false}