diff --git a/documentation/audits/evidence-bignight-2026-09-14/box-logs-phase2/cloudflared-before-claim.txt b/documentation/audits/evidence-bignight-2026-09-14/box-logs-phase2/cloudflared-before-claim.txt new file mode 100644 index 00000000..02c06745 --- /dev/null +++ b/documentation/audits/evidence-bignight-2026-09-14/box-logs-phase2/cloudflared-before-claim.txt @@ -0,0 +1,46 @@ +192.168.0.150 169.254.253.2 172.17.0.1 172.18.0.1 +filebrowser gtstef/filebrowser:1.3.3-stable Up 9 minutes (healthy) +felhom-controller gitea.dooplex.hu/admin/felhom-controller:0.242.0 Up 9 minutes (healthy) +cloudflared cloudflare/cloudflared:2026.6.0 Up 9 minutes +traefik traefik:v3.6.7 Up 9 minutes +---CFD +2026-09-14T17:59:02Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=3 event=0 ip=198.41.200.63 +2026-09-14T17:59:02Z INF Registered tunnel connection connIndex=3 connection=fdbc2dad-7dcd-482a-b500-9f6321c8d19b event=0 ip=198.41.200.63 location=vie06 protocol=quic +2026-09-14T17:59:05Z INF +-------------------------------------------------------------------------------------+ +2026-09-14T17:59:05Z INF | CONNECTIVITY PRE-CHECKS | +2026-09-14T17:59:05Z INF +-------------------------------------------------------------------------------------+ +2026-09-14T17:59:05Z INF | COMPONENT TARGET STATUS DETAILS | +2026-09-14T17:59:05Z INF | DNS Resolution region1.v2.argotunnel.com PASS DNS Resolved successfully | +2026-09-14T17:59:05Z INF | DNS Resolution region2.v2.argotunnel.com PASS DNS Resolved successfully | +2026-09-14T17:59:05Z INF | UDP Connectivity region1.v2.argotunnel.com PASS QUIC connection successful | +2026-09-14T17:59:05Z INF | UDP Connectivity region2.v2.argotunnel.com PASS QUIC connection successful | +2026-09-14T17:59:05Z INF | TCP Connectivity region1.v2.argotunnel.com PASS HTTP/2 connection successful | +2026-09-14T17:59:05Z INF | TCP Connectivity region2.v2.argotunnel.com PASS HTTP/2 connection successful | +2026-09-14T17:59:05Z INF | Cloudflare API api.cloudflare.com:443 PASS API is reachable | +2026-09-14T17:59:05Z INF | | +2026-09-14T17:59:05Z INF | SUMMARY: Environment is healthy. cloudflared will use 'quic' as primary protocol. | +2026-09-14T17:59:05Z INF +-------------------------------------------------------------------------------------+ +2026-09-14T17:59:05Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=aa6bfe95-a342-4fed-965d-13f24725124f status=pass target=region1.v2.argotunnel.com +2026-09-14T17:59:05Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=aa6bfe95-a342-4fed-965d-13f24725124f status=pass target=region2.v2.argotunnel.com +2026-09-14T17:59:05Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=aa6bfe95-a342-4fed-965d-13f24725124f status=pass target=region1.v2.argotunnel.com +2026-09-14T17:59:05Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=aa6bfe95-a342-4fed-965d-13f24725124f status=pass target=region2.v2.argotunnel.com +2026-09-14T17:59:05Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=aa6bfe95-a342-4fed-965d-13f24725124f status=pass target=region1.v2.argotunnel.com +2026-09-14T17:59:05Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=aa6bfe95-a342-4fed-965d-13f24725124f status=pass target=region2.v2.argotunnel.com +2026-09-14T17:59:05Z INF precheck component="Cloudflare API" details="API is reachable" run_id=aa6bfe95-a342-4fed-965d-13f24725124f status=pass target=api.cloudflare.com:443 +2026-09-14T17:59:05Z INF precheck complete hard_fail=false run_id=aa6bfe95-a342-4fed-965d-13f24725124f suggested_protocol=quic +2026-09-14T18:01:30Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:01:30Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/ event=0 ip=198.41.200.63 type=http +2026-09-14T18:01:31Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:01:31Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/favicon.ico event=0 ip=198.41.200.63 type=http +2026-09-14T18:04:53Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:04:53Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/ event=0 ip=198.41.200.63 type=http +2026-09-14T18:04:54Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:04:54Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/favicon.ico event=0 ip=198.41.200.63 type=http +2026-09-14T18:07:49Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:07:49Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/ event=0 ip=198.41.200.63 type=http +2026-09-14T18:07:49Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:07:49Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/ event=0 ip=198.41.200.63 type=http +2026-09-14T18:07:49Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:07:49Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/ event=0 ip=198.41.200.63 type=http +2026-09-14T18:07:49Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:07:49Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/claim event=0 ip=198.41.200.63 type=http diff --git a/documentation/audits/evidence-bignight-2026-09-14/box-logs-phase2/tunnel-origin-diagnosis.txt b/documentation/audits/evidence-bignight-2026-09-14/box-logs-phase2/tunnel-origin-diagnosis.txt new file mode 100644 index 00000000..578d9df3 --- /dev/null +++ b/documentation/audits/evidence-bignight-2026-09-14/box-logs-phase2/tunnel-origin-diagnosis.txt @@ -0,0 +1,17 @@ +2026-09-14T18:01:30Z ERR Request failed error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 dest=https://felhom.enkicsifelhom.hu/ event=0 ip=198.41.200.63 type=http +2026-09-14T18:07:49Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:07:49Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +2026-09-14T18:07:49Z ERR error="Unable to reach the origin service. The service may be down or it may not be responding to traffic from cloudflared: tls: failed to verify certificate: x509: certificate is valid for 544346c4b91be1183a3ccbf07d320cc2.0dc6e57dfe8df6d0687835c5988f16f7.traefik.default, not traefik" connIndex=3 event=1 ingressRule=0 originService=https://traefik +---TRAEFIK +2026-09-14T17:58:47Z INF Starting provider *acme.ChallengeTLSALPN +2026-09-14T17:58:47Z INF Starting provider *acme.Provider +2026-09-14T17:58:47Z INF Testing certificate renew... acmeCA=https://acme-v02.api.letsencrypt.org/directory providerName=letsencrypt.acme +2026-09-14T17:58:59Z INF Starting provider *acme.ChallengeTLSALPN +2026-09-14T17:58:59Z INF Starting provider *acme.Provider +2026-09-14T17:58:59Z INF Testing certificate renew... acmeCA=https://acme-v02.api.letsencrypt.org/directory providerName=letsencrypt.acme +2026-09-14T17:59:04Z INF Register... providerName=letsencrypt.acme +---CERT +subject=CN=*.enkicsifelhom.hu +issuer=C=US, O=Let's Encrypt, CN=YR1 +notBefore=Sep 14 17:01:00 2026 GMT +notAfter=Dec 13 17:00:59 2026 GMT diff --git a/documentation/audits/evidence-bignight-2026-09-14/journal.md b/documentation/audits/evidence-bignight-2026-09-14/journal.md index 52a50db4..7ef9f792 100644 --- a/documentation/audits/evidence-bignight-2026-09-14/journal.md +++ b/documentation/audits/evidence-bignight-2026-09-14/journal.md @@ -123,3 +123,91 @@ link was ever sent to `tester1@felhom.eu`. Waiting the brief's 10 minutes (to 17 **17:55:11Z — ten minutes, 0 messages to `tester1@felhom.eu`.** Filed **R-509 (P1)** at 17:56Z, before acting. **Intervention I1:** the operator's „Send self-bind link" button on the customer's Setup tab is pressed (a volunteer cannot press it). + +**17:55:42Z** `POST /customers/tester-1/selfbind-link` → 303 `flash=selfbind-sent`; hub: `self-bind link (hash effe179d…, +valid 7 days) emailed to the registered address of tester-1`. + +**The mail, as the volunteer reads it** (Gmail connector, message `1a0a10f8cd07d8f6`, Date 17:55:43Z — **1 s** +after the press; Gmail threads it under the older drill0242 mail of the same subject, a mailbox quirk): + +> **[Felhom] Kösd össze a Felhom dobozodat** — from `monitoring@felhom.eu` to `tester1@felhom.eu` +> +> Kedves Ügyfél! +> Elkészült a Felhom dobozod, és készen áll az összekötésre. Az alábbi hivatkozáson tudod te magad +> összekötni a fiókoddal — nincs szükség bejelentkezésre: +> `https://hub.felhom.eu/bind/<64 hex, redacted>` +> A hivatkozás megnyitása után két adatot kell megadnod: +> 1. A párosító kódot, amely a doboz képernyőjén (a monitoron) látható. +> 2. A tulajdonosi jelmondatodat (az 5 szóból álló kifejezést), amelyet a Felhom üzemeltetőjétől kaptál — +> személyesen vagy telefonon, e-mailben soha. Ez igazolja, hogy a fiók a tiéd. +> A hivatkozás 7 napig érvényes. Biztonsági okból 5 sikertelen próbálkozás után zárolódik — ilyenkor vedd +> fel a kapcsolatot az ügyfélszolgálattal. +> Ha nem te kérted ezt, hagyd figyelmen kívül ezt az e-mailt. +> Üdvözlettel, Felhom.eu + +The Tulajdonosi jelmondat is taken from the hub customer page into a 0600 file (the operator's hand-over, +per the guide's prerequisite 3 — not a volunteer act, not counted). + +## Phase 2.2 (cont.) — following the link (the self-bind page, first time exercised by any walk) + +**17:56:11Z `GET https://hub.felhom.eu/bind/` → 200** (`screen-bind-page.txt`), verbatim: +„Felhom — Doboz összekötése" · „Kösd össze a most telepített Felhom dobozodat a fiókoddal. Add meg a doboz +képernyőjén látható párosító kódot és a tulajdonosi jelmondatodat." · **Párosító kód** („A doboz monitorán +jelenik meg, a telepítés után.", placeholder `ABC-234`) · **Tulajdonosi jelmondat** („Az öt szóból álló +kifejezés, **amelyet a beállításkor kaptál**.", placeholder „öt szó, kötőjellel vagy szóközzel") · +**Összekötés** · „Biztonsági okból 5 sikertelen próbálkozás után a hivatkozás zárolódik. …" + +Observation: the page still says the phrase was received „a beállításkor" (at setup); the mail (hub v0.113.0) +says „a Felhom üzemeltetőjétől kaptál — személyesen vagy telefonon". Two wordings for one hand-over. + +**17:56:29Z `POST /bind/` (pairing code + Tulajdonosi jelmondat) → 200** (`screen-bind-result.txt`): +„**Sikeres összekötés.** A doboz kb. egy percen belül folytatja a telepítést. Ezt az oldalt bezárhatod — a +beállítás a háttérben befejeződik, és a vezérlőpultod hamarosan elérhető lesz." +**The self-bind link works end to end — first time any walk exercised it.** One try, no error. + +Hub (CEST): 19:56:30 `self-bind SUCCESS: appliance 28 bound to customer tester-1 by customer self-service` · +19:56:47 credentials DELIVERED once · 19:57:23 `host enrolled: tester-1-a61396` · **19:57:24 `[claim] reenroll +code (gen 2) emailed … reset code re-issued (gen 2) for tester-1 on box re-enrollment (clean-slate reinstall)`** · +19:57:25 manifest agent 0.130.0 golden 0.242.0 · 19:57:42 `wg registered … ip=10.77.0.5/32` · +**19:57:42 `[ERROR] pbsdr auto-provision for tester-1 (WG-registration hook): the endpoint already holds a PBS +token for tester-1 but the hub has no descriptor — use the explicit "Re-issue PBS credentials" action`** · +19:59:06 `controller_started (info) — Controller elindult (0.242.0)` · 19:59:43 `tester-1 down → ok`. +Console after bind (`s21`, codes redacted): the pairing banner is printed **three times** with the same code; +it never changes to "bound" (R-214 class). + +**Which claim path — the brief asked "fresh claim or reset flow".** **Neither a fresh claim nor the RESET:** +the hub treated the box as a **re-enrolment of a claimed customer** and sent the *reinstall* mail (gen 2). +Quoted (Gmail `1a0a111205fa7fe8`, 17:57:24Z, 54 s after the bind): + +> **[Felhom] Új beállító kód — újratelepült a szervered** +> Kedves Ügyfél! +> A Felhom szervered újratelepült, ezért a vezérlőpultod belépését újra be kell állítani. **A korábbi jelszavad +> már nem érvényes.** +> Beállító kód: `<3 words, redacted>` +> A kód 72 óráig érvényes, és egyszer használható fel. Nyisd meg a vezérlőpultot — "A szerver beállítása" oldal +> fogad —, add meg a kódot, majd válassz új jelszót: +> https://felhom.enkicsifelhom.hu +> Ha nem te telepítetted újra a szervered, vedd fel a kapcsolatot az üzemeltetővel. + +For a volunteer on their **first** box this mail is wrong in two places: the guide §5 tells them to look for +„Elindult a Felhom szervered — beállító kód", and this one says their server was *reinstalled* and their +*previous password* no longer works — a password they never had. A careful stranger reads „Ha nem te +telepítetted újra … vedd fel a kapcsolatot" and stops. (Cause: the record was claimed once today by VM 331.) + +**Tunnel after bind, before claim — 18:07:48Z from DooPlex (`tunnel-after-bind.txt`): 502 ×3** +(`server: cloudflare`, body `error code: 502`). Changed from 530/1033 (no connector) to 502 (connector present, +origin failing). + +## Phase 2.4 — the gate: the dashboard through the tunnel — **FAIL (P1)** + +`box-logs-phase2/cloudflared-before-claim.txt`, `tunnel-origin-diagnosis.txt`. Guest 9201 on the box: +`192.168.0.150`; containers `felhom-controller:0.242.0 (healthy)`, `traefik:v3.6.7`, `cloudflared:2026.6.0`, +`filebrowser 1.3.3-stable`. cloudflared: 4 connections registered (17:59:02Z, vie06 …), pre-checks all PASS. +Then every request: `Request failed … tls: failed to verify certificate: x509: certificate is valid for +544346c4….traefik.default, not traefik … ingressRule=0 originService=https://traefik`. +Traefik on 127.0.0.1:443 with SNI `felhom.enkicsifelhom.hu` serves **`CN=*.enkicsifelhom.hu`, Let's Encrypt YR1, +valid 2026-09-14 17:01 → 12-13** — the right certificate exists. **Control (demo-hp 9201, read only):** its route +`{"hostname":"*.enkisfelhom.hu","originRequest":{"noTLSVerify":true},"service":"https://traefik"}`. +**Conclusion:** the operator's route reaches the box now (530 → 502) but lacks „No TLS Verify". Filed **R-510 (P1)** +at 18:1xZ **before acting**. **Intervention I2:** from here the claim and all dashboard traffic go to +`192.168.0.150:443` with the name forced (`--resolve`), from DooPlex on the same household LAN as the box. diff --git a/documentation/audits/evidence-bignight-2026-09-14/screen-bind-page.txt b/documentation/audits/evidence-bignight-2026-09-14/screen-bind-page.txt new file mode 100644 index 00000000..81661d17 --- /dev/null +++ b/documentation/audits/evidence-bignight-2026-09-14/screen-bind-page.txt @@ -0,0 +1 @@ +Felhom — Doboz összekötése | Felhom | doboz | összekötése | Kösd össze a most telepített Felhom dobozodat a fiókoddal. Add meg a doboz képernyőjén látható párosító kódot és a tulajdonosi jelmondatodat. | Párosító kód | A doboz monitorán jelenik meg, a telepítés után. | Tulajdonosi jelmondat | Az öt szóból álló kifejezés, amelyet a beállításkor kaptál. Ez igazolja, hogy a fiók a tiéd. | Összekötés | Biztonsági okból 5 sikertelen próbálkozás után a hivatkozás zárolódik. Ilyenkor vedd fel a kapcsolatot az ügyfélszolgálattal. | Felhom.eu diff --git a/documentation/audits/evidence-bignight-2026-09-14/screen-bind-result.txt b/documentation/audits/evidence-bignight-2026-09-14/screen-bind-result.txt new file mode 100644 index 00000000..58f469cf --- /dev/null +++ b/documentation/audits/evidence-bignight-2026-09-14/screen-bind-result.txt @@ -0,0 +1 @@ +Felhom — Doboz összekötése | Felhom | doboz | összekötése | Sikeres összekötés. | A doboz kb. egy percen belül folytatja a telepítést. Ezt az oldalt bezárhatod — a beállítás a háttérben befejeződik, és a vezérlőpultod hamarosan elérhető lesz. | Felhom.eu diff --git a/documentation/audits/evidence-bignight-2026-09-14/screens/s21-console-after-bind.png b/documentation/audits/evidence-bignight-2026-09-14/screens/s21-console-after-bind.png new file mode 100644 index 00000000..c19b2e02 Binary files /dev/null and b/documentation/audits/evidence-bignight-2026-09-14/screens/s21-console-after-bind.png differ diff --git a/documentation/audits/evidence-bignight-2026-09-14/tunnel-after-bind.txt b/documentation/audits/evidence-bignight-2026-09-14/tunnel-after-bind.txt new file mode 100644 index 00000000..c974d106 --- /dev/null +++ b/documentation/audits/evidence-bignight-2026-09-14/tunnel-after-bind.txt @@ -0,0 +1,4 @@ +=== tunnel AFTER bind, BEFORE claim, from DooPlex 2026-09-14T18:07:48Z +try 1: 502 0.203630s +try 2: 502 0.178746s +try 3: 502 0.234533s