)]}'
{"/PATCHSET_LEVEL":[{"author":{"_account_id":17068,"name":"Jean-Philippe Evrard","email":"openstack@a.spamming.party","username":"evrardjp"},"change_message_id":"d3cb6e3fdb7a10b3d3aa590a24f338f485d43fab","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":4,"id":"deb50b26_27a0348a","updated":"2022-08-16 12:15:44.000000000","message":"recheck","commit_id":"5ce0f19a17c51effb365ceac506153dffbc80a8e"},{"author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"change_message_id":"2a7921079cb3a9f05bc1e4e928050d1902b3c7a9","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":4,"id":"14b227ef_6fe85982","updated":"2022-08-12 07:23:32.000000000","message":"recheck centos 9 stream mirror issue","commit_id":"5ce0f19a17c51effb365ceac506153dffbc80a8e"},{"author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"change_message_id":"416fa4334d3b4a92142d500082eaf4796b6bba86","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":4,"id":"1c470f63_8b1c820a","updated":"2022-08-12 15:22:16.000000000","message":"recheck centos 9 stream mirror issue","commit_id":"5ce0f19a17c51effb365ceac506153dffbc80a8e"},{"author":{"_account_id":16011,"name":"James Denton","email":"james.denton@outlook.com","username":"busterswt"},"change_message_id":"75b1faaa1954e02e229b5ade4eabb7caf687f33d","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":5,"id":"7c60af5b_a6cf4be4","updated":"2022-09-08 21:43:58.000000000","message":"This appears to be failing on CentOS 9 Stream due to selinux set to \u0027enforcing\u0027. Setting to permissive/disabled allows nginx to start.","commit_id":"c7333401f89c81e3cbd9ba36b1dbf16493ad73d3"},{"author":{"_account_id":17068,"name":"Jean-Philippe Evrard","email":"openstack@a.spamming.party","username":"evrardjp"},"change_message_id":"fe21cb3cf8318c834e9479757e087b826a455762","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":5,"id":"b262083f_2c5e552c","updated":"2022-09-19 08:54:00.000000000","message":"recheck","commit_id":"c7333401f89c81e3cbd9ba36b1dbf16493ad73d3"},{"author":{"_account_id":17068,"name":"Jean-Philippe Evrard","email":"openstack@a.spamming.party","username":"evrardjp"},"change_message_id":"3792b35cdd19c67a1dc11a16ab6518fc43b5ae45","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":5,"id":"c1178697_a05f7655","updated":"2022-09-19 08:53:47.000000000","message":"recheck","commit_id":"c7333401f89c81e3cbd9ba36b1dbf16493ad73d3"},{"author":{"_account_id":17068,"name":"Jean-Philippe Evrard","email":"openstack@a.spamming.party","username":"evrardjp"},"change_message_id":"3792b35cdd19c67a1dc11a16ab6518fc43b5ae45","unresolved":false,"context_lines":[],"source_content_type":"","patch_set":5,"id":"e1401493_721dbd67","in_reply_to":"7c60af5b_a6cf4be4","updated":"2022-09-19 08:53:47.000000000","message":"I suppose that \u0027resolved\u0027 in this comment state means that there is nothing to do in here ? I suppose I can simply rebase (as this doesn\u0027t seem related to the code here). If not I am happy to push a patch.","commit_id":"c7333401f89c81e3cbd9ba36b1dbf16493ad73d3"}],"inventory/group_vars/hosts.yml":[{"author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"change_message_id":"5890414ed83b0c222647d77fe700a7d87a152000","unresolved":true,"context_lines":[{"line_number":16,"context_line":"# Ensure that the package state matches the global setting"},{"line_number":17,"context_line":"lxc_hosts_package_state: \"{{ package_state }}\""},{"line_number":18,"context_line":"openstack_hosts_package_state: \"{{ package_state }}\""},{"line_number":19,"context_line":"security_package_state: \"{{ package_state }}\""},{"line_number":20,"context_line":""},{"line_number":21,"context_line":"# Use the RHEL 7 STIG content from the ansible-hardening role"},{"line_number":22,"context_line":"stig_version: rhel7"}],"source_content_type":"text/x-yaml","patch_set":1,"id":"98673c87_f1c86019","side":"PARENT","line":19,"range":{"start_line":19,"start_character":0,"end_line":19,"end_character":45},"updated":"2022-08-09 12:19:14.000000000","message":"to drop that you would need to patch hardening role. It still does not have default of package_state unlike the other roles.","commit_id":"17f65930eb647b73824c620660786e8dee92f926"},{"author":{"_account_id":17068,"name":"Jean-Philippe Evrard","email":"openstack@a.spamming.party","username":"evrardjp"},"change_message_id":"9af49265d25c75e81d668c349ec0679af220c9bf","unresolved":true,"context_lines":[{"line_number":16,"context_line":"# Ensure that the package state matches the global setting"},{"line_number":17,"context_line":"lxc_hosts_package_state: \"{{ package_state }}\""},{"line_number":18,"context_line":"openstack_hosts_package_state: \"{{ package_state }}\""},{"line_number":19,"context_line":"security_package_state: \"{{ package_state }}\""},{"line_number":20,"context_line":""},{"line_number":21,"context_line":"# Use the RHEL 7 STIG content from the ansible-hardening role"},{"line_number":22,"context_line":"stig_version: rhel7"}],"source_content_type":"text/x-yaml","patch_set":1,"id":"ac6b93c0_a1e4845b","side":"PARENT","line":19,"range":{"start_line":19,"start_character":0,"end_line":19,"end_character":45},"in_reply_to":"98673c87_f1c86019","updated":"2022-08-09 12:23:29.000000000","message":"AFAIK it doesn\u0027t need a patch, cause it was never intended for that.\nThe intention for hardening was to have it stay in \"present\" (which is the current default in the role). As the OSA policy was to have it \"latest\", it needed wiring to match the existing policy, which is what you see here.\n\nIf the policy is to be \"present\", then security_package_state doesn\u0027t need overriding. I could create security_package_state: \"{{ security_package_state | default(package_state) | default(\u0027present\u0027) }}\" in the play if you like, but I don\u0027t see it as relevant. It can definitely be done in a follow up commit if necessary.","commit_id":"17f65930eb647b73824c620660786e8dee92f926"},{"author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"change_message_id":"14f76bafb7495f254882b208cdc9de788161dfac","unresolved":true,"context_lines":[{"line_number":14,"context_line":"# limitations under the License."},{"line_number":15,"context_line":""},{"line_number":16,"context_line":"# Ensure that the package state matches the global setting"},{"line_number":17,"context_line":"lxc_hosts_package_state: \"{{ package_state }}\""},{"line_number":18,"context_line":"openstack_hosts_package_state: \"{{ package_state }}\""},{"line_number":19,"context_line":"security_package_state: \"{{ package_state }}\""},{"line_number":20,"context_line":""},{"line_number":21,"context_line":"# Use the RHEL 7 STIG content from the ansible-hardening role"},{"line_number":22,"context_line":"stig_version: rhel7"}],"source_content_type":"text/x-yaml","patch_set":2,"id":"b3e78a6a_e1884ab0","side":"PARENT","line":19,"range":{"start_line":17,"start_character":0,"end_line":19,"end_character":45},"updated":"2022-08-09 12:20:26.000000000","message":"actually all these should be patched to respect `package_state`","commit_id":"17f65930eb647b73824c620660786e8dee92f926"},{"author":{"_account_id":17068,"name":"Jean-Philippe Evrard","email":"openstack@a.spamming.party","username":"evrardjp"},"change_message_id":"38b30b63fc5e63846f8e778e7c12c4794079167c","unresolved":false,"context_lines":[{"line_number":14,"context_line":"# limitations under the License."},{"line_number":15,"context_line":""},{"line_number":16,"context_line":"# Ensure that the package state matches the global setting"},{"line_number":17,"context_line":"lxc_hosts_package_state: \"{{ package_state }}\""},{"line_number":18,"context_line":"openstack_hosts_package_state: \"{{ package_state }}\""},{"line_number":19,"context_line":"security_package_state: \"{{ package_state }}\""},{"line_number":20,"context_line":""},{"line_number":21,"context_line":"# Use the RHEL 7 STIG content from the ansible-hardening role"},{"line_number":22,"context_line":"stig_version: rhel7"}],"source_content_type":"text/x-yaml","patch_set":2,"id":"eb588641_5b42e5a2","side":"PARENT","line":19,"range":{"start_line":17,"start_character":0,"end_line":19,"end_character":45},"in_reply_to":"b3e78a6a_e1884ab0","updated":"2022-08-09 12:24:09.000000000","message":"Yes, indeed. I am moving them one by one, evaluating their history first.\nI then add them to the depends-on.","commit_id":"17f65930eb647b73824c620660786e8dee92f926"}]}
