doorstep walk on ISO 1.27.x: 1 intervention (R-505), STOP before publish
gates / gates (push) Successful in 17s

ISO 1.27.1 gated PASS and proven live: first-boot console Felhom-only,
pvebanner masked across a proven reboot. Hub v0.113.0 hand-over copy live
(R-497 closed). Full first hour walked again on customer tester-1 (three
disks + one disk): deploy, use, backup, removal, byte-identical restore,
power cut, typo all PASS. The tunnel gives a fresh box no routes: 12/12
503 from DooPlex (R-505); the record has no e-mail (R-508). Rows R-507,
R-508 filed; R-496/R-495 fixed/answered awaiting publish; day-0 A.1 no
longer claims the controller creates hostnames (R-506). NOT PUBLISHED.

Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_0159rPz1ZhFKsS53msqPYxtS
This commit is contained in:
2026-09-14 18:25:01 +02:00
parent 27e8ec860c
commit 65790672d5
69 changed files with 4110 additions and 7 deletions
@@ -0,0 +1,105 @@
# DOORSTEP — the first hour again, on the unpublished installer (2026-09-14)
**Interventions a volunteer could not have made: 1** — I1 again, now with a different cause (R-505).
**Ready for a volunteer: NO — because on customer `tester-1` the dashboard link answers 503 from our
network: the box's tunnel connects but receives no routes. Everything the task changed held.**
Evidence: `evidence-doorstep-walk-1270-2026-09-14/` — `screens-331/`, `screens-332/`, `box-logs-331/`,
`A1-power-cut-331.txt`, `A2-typo-331.txt`, `step10-remove-observe-331.txt`, `G15-live-332-iso1271.txt`,
`teardown-*.txt`. Gate records: `../tests/iso-release-1.27.0-2026-09-14/`,
`../tests/iso-release-1.27.1-2026-09-14/`. Yesterday's walk for comparison:
`DRILL-fresh-install-0242-2026-09-14.md` and its `screens/`.
---
## 0. Phase 0 — why the installer asked questions (named first, because the brief assumed otherwise)
**The auto-install never engaged, by construction.** The public 1.26.1 manifest (downloaded from
`iso.felhom.eu`) reads `answer-file : NONE — no answer.toml, no auto-installer-mode.toml (release gate
G1)` and `automated-entry : NOT PRESENT`; `build-felhom-iso.sh --release` refuses a profile and skips
`prepare-iso`; `grub/grub-release.cfg.tmpl` explains why — SPIKE-universal-iso-1 measured that no udev
property separates an internal disk from a USB backup drive and that a two-disk filter silently wipes
one. The operator's 2026-07-31 ruling made the interactive installer the product. **Offered an
install-time disk rule on 2026-09-14, the operator kept that ruling.** The auto-installer has no local
chooser or stop page (its modes are a static answer from the image or a partition, or an HTTP answer
service), so "no English reaches a volunteer" cannot hold on the installer's own screens; the
Felhom-written text around them is Hungarian (G16) and the guide answers each screen.
## 1. What was built
| artifact | change | status |
|---|---|---|
| ISO **1.27.0** | `felhom-bootstrap.sh` masks `pvebanner` + writes Felhom `/etc/issue` at first boot; banner names the Tulajdonosi jelmondat | built, gated, **superseded** — its proof install still showed the Proxmox block on the first boot |
| ISO **1.27.1** | the postinst does the mask (symlink) and the issue write at install time; issue text without ő/ű | built, **gated PASS**, proven live on VM 332, **NOT PUBLISHED** |
| hub **v0.113.0** | hand-over sentence on customer create + Credentials; self-bind mail names the operator | **deployed**, rendered live on `tester-1`'s page |
## 2. The disk rule, and what a volunteer sees in each case
**The installer never picks a disk for you.** It lists every disk with size and model; you choose the
one the system goes on, and that disk is erased. Unplug the external backup drive during the install.
If you do not know which internal disk is right, stop and call the operator.
| case | what the screen shows (measured) |
|---|---|
| **one disk** (VM 332, TUI and graphical) | TUI: `Target harddisk: /dev/sda (QEMU HARDDISK) (64.00 GiB)`; graphical: „Please verify the installation target … All existing partitions and data will be lost." with `Target Harddisk /dev/sda (64.00GiB, QEMU HARDDISK)` |
| **three disks** (VM 331, TUI) | the same field pre-set to `/dev/sda (200.00 GiB)`; opening it lists `/dev/sda (200.00 GiB)`, `/dev/sdb (50.00 GiB)`, `/dev/sdc (50.00 GiB)` (screen `331-s07`); **the installer does not ask "which one?" by itself** — the guide's disk row covers it |
| **nobody at the keyboard** (VM 332) | the 15 s menu boots the **graphical** installer, which stops at the EULA and waits (screen `332-s02`) — nothing installs unattended |
| zero disks | not exercised |
## 3. The walk, step by step
Customer **`tester-1`** (operator's choice), domain `enkicsifelhom.hu`, tunnel token set, DR tier on,
**no e-mail registered**. VM 331 = ISO 1.27.0, three disks, TUI. VM 332 = ISO 1.27.1, one disk.
| # | step | result | time |
|---|---|---|---|
| 1 | installer | built from `main`, not downloaded (unpublished) | — |
| 2 | install (331) | same English Proxmox screens as yesterday; host name `felhom.enkicsifelhom.hu` per the guide | copy ≤ 3 m 21 s |
| 3a | first screen (331, **1.27.0**) | **Proxmox `:8006` block still on top**; Felhom text below with ő/ű dropped → fixed in 1.27.1 | registered at hub +41 s |
| 3b | first screen (332, **1.27.1**) | **Felhom text only** — „Felhom otthoni szerver · Ezen a gépen most nincs dolgod, és bejelentkezni sem kell." — then the pairing banner naming the Tulajdonosi jelmondat; identical after a **proven** reboot (boot 16:14:11Z > reboot 16:13:56Z, `pvebanner` masked, `/etc/issue` 0 × `8006`) | — |
| 3c | bind + claim (331) | operator bind (no link: no e-mail); hub `claim code generated … but customer tester-1 has NO registered email` (R-508); **dashboard 503 via the tunnel → I1 (R-505, filed 16:07:59Z before acting)**; claim by LAN + box-printed code (H1) → 302 | controller 0.242.0 at +2 m 31 s after bind |
| 4 | version | controller 0.242.0, agent 0.130.0 — the vouched set | — |
| 5 | deploy | BookStack 68 s, PrivateBin 22 s | — |
| 6 | use | BookStack: default login → changed (old refused, new accepted), book, Hungarian page, 256 KiB attachment, **sha equal**; PrivateBin: encrypted paste round trip, wrong key `InvalidTag` | — |
| 7 | backup pages | same honest warnings; R-499's „(PBS)" sentence still present (not this task) | — |
| 8 | backup now | points move to 16:11:56Z; page „18:11 (most)" | 16 s |
| 9 | versions | installed == catalog for both; no update offered — skipped | — |
| 10 | remove PrivateBin (stop → remove, every box) | volume, container, backup dir, restore points gone; front door 404 | <1 s |
| 11 | restore BookStack after deleting its page | **page + attachment byte-identical**, finish message „2 adatkötet és az adatbázis visszaállítva" | healthy 36 s |
| 12 | status pages | launcher BookStack + Filebrowser; dashboard 4 running | — |
| A1 | power cut | same six image tags, agent 0.130.0, data byte-identical, hub `controller_started` only | dashboard +123 s, BookStack +133 s |
| A2 | typo | „Hibás vagy lejárt kód" → right code accepted → 6th attempt „Túl sok próbálkozás — próbáld újra 15 perc múlva."; `claim_lockout` + operator mail | — |
## 4. Harness substitutions (not interventions)
H1 no mailbox (and `tester-1` has none) → operator bind, box-printed codes · H2 U.S. keyboard on 331/332-TUI
· H3 auto-reboot unticked, ISO detached · H4 TUI entry. **H5 (new): the graphical installer did not take
Tab or mouse input from `qm sendkey`/`mouse_move`; Alt+N worked** — the 1.27.1 graphical path was proven
to boot, wait at the EULA, show the one-disk target and reach the password screen, not to install
(R-507).
## 5. Findings
| row | rank | |
|---|---|---|
| **R-505** | **P1** | `tester-1`'s tunnel gives a fresh box no routes → 503 (12/12 probes, 12 box warnings, 0 config updates); operator's phone reaches it — cause not visible to the session |
| R-508 | P2 | `tester-1` has no registered e-mail: the setup code and self-bind link cannot be delivered |
| R-506 | P3 | `day0-install.md` A.1 says the controller manages hostnames — it does not |
| R-507 | P3 | the proof-install harness cannot drive the graphical installer |
| R-502 | P3 | the bootstrap harness runs in no gate/CI; the banner was never tested |
| R-503 | P3 | spike for an install-time disk rule (not chosen) |
| R-504 | P3 | `iso.felhom.eu/` has no index; download page goes on the website |
Closed with this evidence: **R-497** (hub v0.113.0 live). Fixed, awaiting publish: **R-496** (ISO 1.27.1),
**R-495** (answered by the guide + G14). **R-493** stays open until the download page and ISO are live.
## 6. Teardown
Layers 1–2 measured in `teardown-layers-1-2.txt` (VMs 331/332 destroyed; `nvme-scratch` used 23 528 192
→ 10 132 924 KiB; `local` 26 489 992 → 23 033 320 KiB; ISOs and `/root/doorstep` gone; 9201/9202 running;
`local-lvm` 44.17 % unchanged). Layer 3 in `teardown-layer3-hub.txt`: appliance 27 discarded; host
`tester-1-8603a2` deleted once stale (**customer `tester-1` is KEPT** — the operator's fixture; a RESET or
DELETE would remove its tunnel and zone). **Left on ep0 by design of the DR tier, named:** namespace
`tester-1` and token `felhom@pbs!tester-1`, provisioned at enrolment; a host delete does not deprovision
tenancy — only the customer RESET does, which would also remove the tunnel. Disposition: retained with
the customer, for the operator to rule.
@@ -0,0 +1,35 @@
=== A1 BEFORE 16:14:15
bookstack lscr.io/linuxserver/bookstack:26.05.2 Up About a minute (healthy)
bookstack-db mariadb:12.3 Up About a minute (healthy)
filebrowser gtstef/filebrowser:1.3.3-stable Up 24 minutes (healthy)
felhom-controller gitea.dooplex.hu/admin/felhom-controller:0.242.0 Up 24 minutes (healthy)
cloudflared cloudflare/cloudflared:2026.6.0 Up 24 minutes
traefik traefik:v3.6.7 Up 24 minutes
felhom-agent 0.130.0
T_A1_hardstop 16:14:17
status: stopped
T_A1_poweron 16:15:22
=== A1 AFTER 16:17:35 appliance +42s dashboard +123s bookstack healthy +133s after power-on
felhom-controller gitea.dooplex.hu/admin/felhom-controller:0.242.0 Up 15 seconds (healthy)
bookstack lscr.io/linuxserver/bookstack:26.05.2 Up 17 seconds (healthy)
bookstack-db mariadb:12.3 Up 17 seconds (healthy)
filebrowser gtstef/filebrowser:1.3.3-stable Up 17 seconds (healthy)
cloudflared cloudflare/cloudflared:2026.6.0 Up 17 seconds
traefik traefik:v3.6.7 Up 17 seconds
felhom-agent 0.130.0
T_readback 16:17:38
page 200 sentence 2 (neg 0) hungarian 2
attachment 200 262144B equal: YES
2026/09/14 18:08:45 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:08:45 [INFO] [claim] customer tester-1 CLAIMED its dashboard (password set by the customer)
2026/09/14 18:08:45 [INFO] [claim] notification prefs for tester-1 left untouched (row exists or no registered email)
2026/09/14 18:09:06 [INFO] Event from tester-1: app_deployed (info) — Alkalmazás telepítve: BookStack
2026/09/14 18:09:08 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:10:14 [INFO] Event from tester-1: app_deployed (info) — Alkalmazás telepítve: PrivateBin
2026/09/14 18:10:16 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:13:22 [INFO] Event from tester-1: app_removed (info) — Alkalmazás eltávolítva: privatebin
2026/09/14 18:13:25 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:15:48 [INFO] DR-recipe host-half stored for customer tester-1 (host tester-1-8603a2, v1)
2026/09/14 18:16:47 [INFO] restore-test staleness: tester-1 pbs tier: not restore-proven yet, but only watching for 0s (grace 288h0m0s since first contact 2026-09-14T15:48:35Z) — newborn, not a fault
2026/09/14 18:17:27 [INFO] Event from tester-1: controller_started (info) — Controller elindult (0.242.0)
2026/09/14 18:17:27 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
@@ -0,0 +1,13 @@
=== A2 on box 331 (ISO 1.27.0 install, controller 0.242.0)
page title on a claimed box: Jelszó visszaállítása — Felhom
16:18:08 typo (1 letter) -> HTTP/2 200 | error: Hibás vagy lejárt kód
16:18:08 right code -> HTTP/2 302 location: / | error:
login NEW password -> HTTP/2 302
login OLD password -> HTTP/2 200
16:18:09 wrong #2 -> HTTP/2 200 | error: Hibás vagy lejárt kód
16:18:10 wrong #3 -> HTTP/2 200 | error: Hibás vagy lejárt kód
16:18:10 wrong #4 -> HTTP/2 200 | error: Hibás vagy lejárt kód
16:18:11 wrong #5 -> HTTP/2 200 | error: Hibás vagy lejárt kód
16:18:11 wrong #6 -> HTTP/2 200 | error: Túl sok próbálkozás — próbáld újra 15 perc múlva.
2026/09/14 18:18:11 [INFO] Event from tester-1: claim_lockout (warning) — Túl sok hibás beállító kód — a beállító oldal 15 percre zárolva
2026/09/14 18:18:11 [INFO] Operator email sent for tester-1/claim_lockout
@@ -0,0 +1,24 @@
=== VM 332 (ISO 1.27.1), live G15 2026-09-14T16:19:01Z
boot time (uptime -s): 2026-09-14 18:14:11
boots recorded by journald: 3
pvebanner.service: masked
symlink: /dev/null
/etc/issue lines naming 8006: 0
/etc/issue Felhom line: 1
--- postinst log
felhom-bootstrap postinst: arg1=configure date=2026-09-14T16:09:52+00:00
felhom-bootstrap postinst: pvebanner.service masked (symlink)
felhom-bootstrap postinst: /etc/issue is the Felhom text
Created symlink '/etc/systemd/system/multi-user.target.wants/felhom-bootstrap.service' -> '/usr/lib/systemd/system/felhom-bootstrap.service'.
felhom-bootstrap postinst: enabled felhom-bootstrap.service via systemctl
--- bootstrap journal: console lines
felhom-bootstrap: console: pvebanner.service masked (it would rewrite /etc/issue with the Proxmox admin URL on every boot)
felhom-bootstrap: console: /etc/issue is the Felhom text (no admin URL)
felhom-bootstrap: console font -> Lat2-Terminus16 (Latin-2, ő/ű capable)
felhom-bootstrap: console: pvebanner.service masked (it would rewrite /etc/issue with the Proxmox admin URL on every boot)
package: felhom-bootstrap 1.27.1
CORRECTED: qm reboot was sent at 16:13:56Z (T_reboot_332b below; an earlier draft of this line said 16:15:41Z, which is wrong). Boot time 18:14:11 CEST = 16:14:11Z is after it: the reboot happened.
T_firstboot_332b 16:12:01
qm> T_shot_firstboot 16:13:42
T_reboot_332b 16:13:56
qm> T_shot_reboot 16:15:47
@@ -0,0 +1,182 @@
2026-09-14T17:46:41+02:00 felhom systemd[1]: Starting felhom-bootstrap.service - Felhom host bootstrap (fetch + run felhom-host-install.sh unattended, retry until success)...
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: console: pvebanner.service masked (it would rewrite /etc/issue with the Proxmox admin URL on every boot)
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: console: /etc/issue is the Felhom text (no admin URL)
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: PAIRING mode (generic ISO, no baked customer/passphrase) — hub=https://hub.felhom.eu
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: registering unclaimed appliance at the hub
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: registered — appliance token stored (0600); waiting for the operator or a customer self-bind
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: console font -> Lat2-Terminus16 (Latin-2, ő/ű capable)
2026-09-14T17:46:42+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: not bound yet — polling every 30s until the operator or a customer self-bind lands (this is the normal waiting state, not an error)
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: bind DELIVERED — writing credentials to the env and switching to direct install
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: fetching host-install: https://felhom.eu/scripts/felhom-host-install.sh
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: running host-install (customer=tester-1 mode=appliance hub=https://hub.felhom.eu)
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] auto-sized guest RAM: 4096 MiB (host 7872 MiB; clamp(host-4096, min 4096, max host-2048), ceiling host-1024)
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] auto-sized guest cores: 3 (host 4 cores; host-1, min 2)
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] felhom-host-install v1.28.0 — mode=appliance customer=tester-1 vmid=9201
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 1/8 pre-flight
2026-09-14T17:47:43+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] pve-manager/9.2.2/b9984c6d90a4bd80 (running kernel: 7.0.2-6-pve)
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] node: felhom (auto)
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] agent config: /etc/felhom-agent/agent.json
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] agent: not installed yet — will be fetched + installed in step 5/8
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] local-lvm free: ~113 GiB
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] local-lvm free ~113 GiB < hard min 120 GiB
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] free RAM: ~6295 MiB
2026-09-14T17:47:46+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] existing guests on this host: 0 (pct+qm)
2026-09-14T17:47:46+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] archive storage 'local' present
2026-09-14T17:47:48+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] acl storage 'felhom-pbs' not present yet — expected: the PBS-DR tier creates it; the grant is pre-positioned deliberately
2026-09-14T17:47:48+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] dnsmasq: not present before Felhom — recorded; uninstall will remove it again if we install it
2026-09-14T17:47:49+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] hub reachable (https://hub.felhom.eu)
2026-09-14T17:47:49+02:00 felhom felhom-bootstrap.sh[1446]: [OK] customer 'tester-1' exists + passphrase valid
2026-09-14T17:47:49+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] golden: none local — will fetch + verify from Gitea in step 7/8
2026-09-14T17:47:51+02:00 felhom felhom-bootstrap.sh[1446]: [OK] pre-flight passed
2026-09-14T17:47:51+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 2/8 Proxmox API token
2026-09-14T17:47:55+02:00 felhom felhom-bootstrap.sh[1446]: [OK] token minted (secret captured, not logged)
2026-09-14T17:48:15+02:00 felhom felhom-bootstrap.sh[1446]: [OK] scoped ACL applied (Base@/, Guest@/pool/felhom + /vms/990000..990009, Store@[local local-lvm felhom-pbs])
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [SKIP] old broad role FelhomAgent already absent
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 3/8 compute volume grows
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] auto-computed from ~113 GiB free (ONE volume since R-165)
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] grows: rootfs +0G (->32G), data +46G (->70G, ONE volume)
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 4/8 host enrollment (POST /host-enroll)
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [OK] host MINTED (first enroll)
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] host_id: tester-1-8603a2 (api_key captured, not logged)
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 4b/8 break-glass credential (root@pam console password → hub vault)
2026-09-14T17:48:18+02:00 felhom chpasswd[1696]: pam_unix(chpasswd:chauthtok): password changed for root
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [OK] root@pam password set + vaulted to the hub (retrieve via the operator /admin path; never logged here)
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] NOTE: the root@pam password just CHANGED — the old one now fails at the PVE web GUI (:8006).
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] Retrieve the new one at hub → host page (vaulted recovery credential).
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 5/8 agent install (fetch + verify + install)
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] disabled pve-enterprise.sources (Enabled: no)
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] disabled ceph.sources (Enabled: no)
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] added pve-no-subscription.sources (suite=trixie)
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [OK] apt repos aligned to no-subscription (changed; apt-get update OK)
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] no git credential in controller.yaml — fetching artifacts ANONYMOUSLY (they are world-readable; sha256 verification unchanged)
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] manifest: agent v0.130.0 (sha a56a92a7bd68f5b4…), golden v0.242.0
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] fetching agent binary v0.130.0 from Gitea …
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [OK] verified sha256 a56a92a7bd68f5b4… matches the hub manifest
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/bin/felhom-agent (felhom-agent 0.130.0)
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] installing the 'sudo' package (required for the non-root agent model) …
2026-09-14T17:48:23+02:00 felhom felhom-bootstrap.sh[1446]: [OK] sudo installed (Sudo version 1.9.16p2)
2026-09-14T17:48:23+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] installing the 'age' package (escrow ceremony identity-wrap dependency) …
2026-09-14T17:48:25+02:00 felhom felhom-bootstrap.sh[1446]: [OK] age installed (1.2.1)
2026-09-14T17:48:25+02:00 felhom useradd[1933]: new group: name=felhom-agent, GID=990
2026-09-14T17:48:25+02:00 felhom useradd[1933]: new user: name=felhom-agent, UID=999, GID=990, home=/home/felhom-agent, shell=/usr/sbin/nologin, from=none
2026-09-14T17:48:25+02:00 felhom felhom-bootstrap.sh[1446]: [OK] created service user felhom-agent
2026-09-14T17:48:25+02:00 felhom usermod[1941]: add 'felhom-agent' to group 'systemd-journal'
2026-09-14T17:48:25+02:00 felhom usermod[1941]: add 'felhom-agent' to shadow group 'systemd-journal'
2026-09-14T17:48:25+02:00 felhom felhom-bootstrap.sh[1446]: [OK] added felhom-agent to systemd-journal (unprivileged journal read for NAS verify)
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/sbin/felhom-mkfs-guarded (0755, the guarded mkfs path)
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/sbin/felhom-selfupdate-guarded (0755, the guarded A/B binary-swap path)
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/sbin/felhom-pbs-apply (0755, the guarded PBS-DR apply path)
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/sbin/felhom-backup-target-apply (0755, the guarded backup-target path)
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /etc/sudoers.d/felhom-agent (0440, visudo-validated)
2026-09-14T17:48:28+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /etc/systemd/system/felhom-agent.service + enabled (started in step 6 after config)
2026-09-14T17:48:28+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed self-update rollback unit + start-limit drop-in (auto-rollback armed)
2026-09-14T17:48:29+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed break-glass layers 1+2 (tmpfiles /run/sshd + agent-independent watchdog timer)
2026-09-14T17:48:29+02:00 felhom useradd[2209]: new group: name=felhom-op, GID=1000
2026-09-14T17:48:29+02:00 felhom useradd[2209]: new user: name=felhom-op, UID=1000, GID=1000, home=/home/felhom-op, shell=/bin/bash, from=none
2026-09-14T17:48:31+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed OOB felhom-sshd instance + static belt (agent renders config + fills sets once oob.enabled)
2026-09-14T17:48:31+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 6/8 agent config + service
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] backup target: DEGRADED — no eligible second drive, so the whole-system backup stays on the SYSTEM drive.
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] It protects against file corruption but NOT against a disk failure. Attach a second drive and assign it in the dashboard.
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] creating island bridge vmbr9 (portless, 169.254.253.1/30)
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [OK] vmbr9 up: 169.254.253.1/30
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] R-50 island ON: local_api=169.254.253.1:8443 (vmbr9); guest net1=169.254.253.2/30; lan_resolver.host_ip=192.168.0.133
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] node=felhom local_api=169.254.253.1:8443 tls_fp=E1:57:97:F0:1B:32…
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [OK] wrote /etc/felhom-agent/agent.json (0600 felhom-agent)
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [OK] agent --selftest (read-only) passed
2026-09-14T17:48:36+02:00 felhom felhom-bootstrap.sh[1446]: [OK] felhom-agent service active (non-root felhom-agent reads the config OK)
2026-09-14T17:48:36+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 7/8 golden archive
2026-09-14T17:48:36+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] no git credential in controller.yaml — fetching artifacts ANONYMOUSLY (they are world-readable; sha256 verification unchanged)
2026-09-14T17:48:36+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] fetching golden v0.242.0 from Gitea → /var/lib/vz/dump/vzdump-lxc-9100-2026_09_14-17_48_36.tar.zst
2026-09-14T17:48:44+02:00 felhom felhom-bootstrap.sh[1446]: [OK] verified sha256 3ab480ddb7c1e690… matches the hub manifest
2026-09-14T17:48:45+02:00 felhom felhom-bootstrap.sh[1446]: [OK] golden imported + verified: local:backup/vzdump-lxc-9100-2026_09_14-17_48_36.tar.zst
2026-09-14T17:48:45+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 8/8 provision guest 9201
2026-09-14T17:48:46+02:00 felhom felhom-bootstrap.sh[1446]: [SKIP] pool felhom already exists
2026-09-14T17:48:46+02:00 felhom felhom-bootstrap.sh[3458]: === felhom-agent 0.130.0 selftest=provision (vmid=9201 customer=tester-1 hostname=tester-1) ===
2026-09-14T17:48:46+02:00 felhom felhom-bootstrap.sh[3458]: --- front half: bring-up (provision) local:backup/vzdump-lxc-9100-2026_09_14-17_48_36.tar.zst → vmid 9201 ---
2026-09-14T17:49:34+02:00 felhom felhom-bootstrap.sh[3458]: time=2026-09-14T17:49:34.992+02:00 level=INFO msg="bring-up: pool membership re-asserted" vmid=9201 pool=felhom
2026-09-14T17:49:34+02:00 felhom felhom-bootstrap.sh[3458]: [OK] front half: vmid 9201 up (boot+running) in 49s; MAC=BC:24:11:B7:25:AA
2026-09-14T17:49:34+02:00 felhom felhom-bootstrap.sh[3458]: --- back half: mint per-guest token + populate bootstrap config mount ---
2026-09-14T17:49:35+02:00 felhom sudo[4482]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/chown --reference=/var/lib/felhom-agent /var/lib/felhom-agent/guests /var/lib/felhom-agent/guests/9201
2026-09-14T17:49:35+02:00 felhom sudo[4482]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:35+02:00 felhom sudo[4482]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:35+02:00 felhom sudo[4485]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/chown -R 100000:100000 /var/lib/felhom-agent/guests/9201/bootstrap
2026-09-14T17:49:35+02:00 felhom sudo[4485]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:35+02:00 felhom sudo[4485]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:35+02:00 felhom sudo[4488]: root : PWD=/ ; USER=root ; COMMAND=/usr/sbin/pct set 9201 -mp9 /var/lib/felhom-agent/guests/9201/bootstrap,mp=/etc/felhom-bootstrap,ro=1
2026-09-14T17:49:35+02:00 felhom sudo[4488]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:36+02:00 felhom sudo[4488]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:36+02:00 felhom sudo[4550]: root : PWD=/ ; USER=root ; COMMAND=/usr/sbin/pct set 9201 -onboot 1
2026-09-14T17:49:36+02:00 felhom sudo[4550]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:37+02:00 felhom sudo[4550]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:37+02:00 felhom sudo[4707]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/mkdir -p /var/lib/vz/snippets
2026-09-14T17:49:37+02:00 felhom sudo[4707]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:37+02:00 felhom sudo[4707]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:37+02:00 felhom sudo[4718]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/install -m 0755 -- /tmp/felhom-guest-hook-3285855649.sh /var/lib/vz/snippets/felhom-guest-hook.sh
2026-09-14T17:49:37+02:00 felhom sudo[4718]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:37+02:00 felhom sudo[4718]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:37+02:00 felhom sudo[4735]: root : PWD=/ ; USER=root ; COMMAND=/usr/sbin/pct set 9201 --hookscript local:snippets/felhom-guest-hook.sh
2026-09-14T17:49:37+02:00 felhom sudo[4735]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:38+02:00 felhom sudo[4735]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:38+02:00 felhom sudo[5150]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/mkdir -p /mnt/felhom-drives
2026-09-14T17:49:38+02:00 felhom sudo[5150]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:38+02:00 felhom sudo[5150]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:38+02:00 felhom sudo[5153]: root : PWD=/ ; USER=root ; COMMAND=/usr/sbin/pct set 9201 -mp8 /mnt/felhom-drives,mp=/mnt/felhom-drives
2026-09-14T17:49:38+02:00 felhom sudo[5153]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
2026-09-14T17:49:39+02:00 felhom sudo[5153]: pam_unix(sudo:session): session closed for user root
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: time=2026-09-14T17:49:39.648+02:00 level=INFO msg="provision: back-half complete" vmid=9201 mount=mp9 guest_path=/etc/felhom-bootstrap endpoint=169.254.253.1:8443
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: [OK] back half: bootstrap mount mp9 → /etc/felhom-bootstrap on vmid 9201 (host dir /var/lib/felhom-agent/guests/9201/bootstrap)
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: local-api endpoint 169.254.253.1:8443 · leaf fp 7bf6119f955f2011bf98514f87101fa3cea82adb4e4028e04b6cd79ac7103218 · token: minted (not printed)
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: === selftest=provision OK — guest 9201 provisioned + bootstrap-mounted (KEPT) ===
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: next: reboot the guest → the golden's baked controller-bootstrap unit deploys the controller,
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: which PULLS its controller.yaml from the hub (retrieval passphrase) and merges in this local_api.
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[1446]: [OK] provision completed
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] rebooting guest 9201 so the baked controller-bootstrap unit picks up the mount
2026-09-14T17:49:41+02:00 felhom pct[5370]: <root@pam> starting task UPID:felhom:00001517:00004D76:6AA81795:vzreboot:9201:root@pam:
2026-09-14T17:49:41+02:00 felhom pct[5399]: requesting reboot of CT 9201: UPID:felhom:00001517:00004D76:6AA81795:vzreboot:9201:root@pam:
2026-09-14T17:49:47+02:00 felhom pct[5370]: <root@pam> end task UPID:felhom:00001517:00004D76:6AA81795:vzreboot:9201:root@pam: OK
2026-09-14T17:49:47+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] verify
2026-09-14T17:49:48+02:00 felhom felhom-bootstrap.sh[1446]: [OK] pct status: running
2026-09-14T17:49:49+02:00 felhom felhom-bootstrap.sh[1446]: [OK] onboot: 1
2026-09-14T17:49:50+02:00 felhom felhom-bootstrap.sh[6179]: mp0: local-lvm:vm-9201-disk-1,mp=/var/lib/felhom,backup=1,size=70G
2026-09-14T17:49:50+02:00 felhom felhom-bootstrap.sh[6179]: mp8: /mnt/felhom-drives,mp=/mnt/felhom-drives
2026-09-14T17:49:50+02:00 felhom felhom-bootstrap.sh[6179]: rootfs: local-lvm:vm-9201-disk-0,size=32G
2026-09-14T17:49:52+02:00 felhom felhom-bootstrap.sh[1446]: [OK] pool: guest 9201 is a member of felhom
2026-09-14T17:49:53+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentBase@/ present (user+token)
2026-09-14T17:49:54+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/pool/felhom present (user+token)
2026-09-14T17:49:55+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentStore@/storage/local present (user+token)
2026-09-14T17:49:57+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentStore@/storage/local-lvm present (user+token)
2026-09-14T17:49:58+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentStore@/storage/felhom-pbs present (user+token)
2026-09-14T17:49:59+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990000 present (user+token)
2026-09-14T17:50:00+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990001 present (user+token)
2026-09-14T17:50:01+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990002 present (user+token)
2026-09-14T17:50:02+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990003 present (user+token)
2026-09-14T17:50:03+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990004 present (user+token)
2026-09-14T17:50:04+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990005 present (user+token)
2026-09-14T17:50:06+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990006 present (user+token)
2026-09-14T17:50:07+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990007 present (user+token)
2026-09-14T17:50:08+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990008 present (user+token)
2026-09-14T17:50:09+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990009 present (user+token)
2026-09-14T17:50:09+02:00 felhom felhom-bootstrap.sh[1446]: [OK] authz signers: 2 (operator-signed self-update armed)
2026-09-14T17:50:10+02:00 felhom felhom-bootstrap.sh[1446]: [OK] controller: Up 19 seconds (healthy) (after ~0s)
2026-09-14T17:50:11+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] controller image: gitea.dooplex.hu/admin/felhom-controller:0.242.0
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] cloudflared: Up 22 seconds
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] (confirm in the hub UI that host tester-1-8603a2 reports guest 9201)
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1446]: [OK] Day-0 provision SUCCESS — vmid=9201 host_id=tester-1-8603a2 customer=tester-1 golden=local:backup/vzdump-lxc-9100-2026_09_14-17_48_36.tar.zst
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] root@pam was rotated + vaulted at step 4b — retrieve at hub → host page (the old GUI password no longer works).
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: host-install SUCCESS — writing done-flag, disabling unit, scrubbing secrets
2026-09-14T17:50:12+02:00 felhom systemd[1]: felhom-bootstrap.service: Deactivated successfully.
2026-09-14T17:50:12+02:00 felhom systemd[1]: Finished felhom-bootstrap.service - Felhom host bootstrap (fetch + run felhom-host-install.sh unattended, retry until success).
2026-09-14T17:50:12+02:00 felhom systemd[1]: felhom-bootstrap.service: Consumed 1min 24.426s CPU time, 903.4M memory peak.
===
felhom-bootstrap postinst: arg1=configure date=2026-09-14T15:43:14+00:00
Created symlink '/etc/systemd/system/multi-user.target.wants/felhom-bootstrap.service' -> '/usr/lib/systemd/system/felhom-bootstrap.service'.
felhom-bootstrap postinst: enabled felhom-bootstrap.service via systemctl
===
masked
/dev/null
Felhom otthoni szerver
Ezen a képernyőn nincs teendőd, bejelentkezni sem kell.
A beállításhoz kövesd a Felhomtól kapott útmutatót.
@@ -0,0 +1,23 @@
felhom-controller gitea.dooplex.hu/admin/felhom-controller:0.242.0 Up About a minute (healthy)
bookstack lscr.io/linuxserver/bookstack:26.05.2 Up 2 minutes (healthy)
bookstack-db mariadb:12.3 Up 2 minutes (healthy)
filebrowser gtstef/filebrowser:1.3.3-stable Up 2 minutes (healthy)
cloudflared cloudflare/cloudflared:2026.6.0 Up 2 minutes
traefik traefik:v3.6.7 Up 2 minutes
felhom-agent 0.130.0
arch: amd64
cores: 3
features: nesting=1,keyctl=1
hookscript: local:snippets/felhom-guest-hook.sh
hostname: tester-1
memory: 4096
mp0: local-lvm:vm-9201-disk-1,mp=/var/lib/felhom,backup=1,size=70G
mp8: /mnt/felhom-drives,mp=/mnt/felhom-drives
mp9: /var/lib/felhom-agent/guests/9201/bootstrap,mp=/etc/felhom-bootstrap,ro=1
net0: name=eth0,bridge=vmbr0,hwaddr=BC:24:11:B7:25:AA,ip=dhcp,type=veth
net1: name=eth1,bridge=vmbr9,hwaddr=BC:24:11:3E:48:A0,ip=169.254.253.2/30,type=veth
onboot: 1
ostype: debian
rootfs: local-lvm:vm-9201-disk-0,size=32G
swap: 512
unprivileged: 1
@@ -0,0 +1,151 @@
2026-09-14T15:49:38.999512914Z 2026-09-14T15:49:38Z INF Starting tunnel tunnelID=52d0c214-b833-477c-86d8-f787d9b550dd
2026-09-14T15:49:38.999576343Z 2026-09-14T15:49:38Z INF Version 2026.6.0 (Checksum 17d853580a4dd9d4d6613691c9123039c20712c38e504f028c0bb4454d43e19f)
2026-09-14T15:49:38.999728849Z 2026-09-14T15:49:38Z INF GOOS: linux, GOVersion: go1.26.4, GoArch: amd64
2026-09-14T15:49:38.999785145Z 2026-09-14T15:49:38Z INF Settings: map[no-autoupdate:true]
2026-09-14T15:49:38.999857390Z 2026-09-14T15:49:38Z INF Environmental variables map[TUNNEL_TOKEN:*****]
2026-09-14T15:49:39.024367804Z 2026-09-14T15:49:39Z INF Generated Connector ID: ea77a4c7-c3b9-4aea-8fe5-5c68522bb6cc
2026-09-14T15:49:39.049982099Z 2026-09-14T15:49:39Z INF Initial protocol quic
2026-09-14T15:49:39.066203986Z 2026-09-14T15:49:39Z INF ICMP proxy will use 172.18.0.4 as source for IPv4
2026-09-14T15:49:39.066233351Z 2026-09-14T15:49:39Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
2026-09-14T15:49:39.066236206Z 2026-09-14T15:49:39Z WRN The user running cloudflared process has a GID (group ID) that is not within ping_group_range. You might need to add that user to a group within that range, or instead update the range to encompass a group the user is already in by modifying /proc/sys/net/ipv4/ping_group_range. Otherwise cloudflared will not be able to ping this network error="Group ID 65532 is not between ping group 65534 to 65534"
2026-09-14T15:49:39.066238942Z 2026-09-14T15:49:39Z WRN ICMP proxy feature is disabled error="cannot create ICMPv4 proxy: Group ID 65532 is not between ping group 65534 to 65534 nor ICMPv6 proxy: socket: permission denied"
2026-09-14T15:49:39.134260940Z 2026-09-14T15:49:39Z INF ICMP proxy will use 172.18.0.4 as source for IPv4
2026-09-14T15:49:39.134540283Z 2026-09-14T15:49:39Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
2026-09-14T15:49:39.134867357Z 2026-09-14T15:49:39Z INF Starting metrics server on [::]:20241/metrics
2026-09-14T15:49:39.204767098Z 2026-09-14T15:49:39Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=0 event=0 ip=198.41.200.13
2026-09-14T15:49:39.599958014Z 2026-09-14T15:49:39Z INF Registered tunnel connection connIndex=0 connection=9556646b-50ba-46db-a002-66d974889db7 event=0 ip=198.41.200.13 location=vie05 protocol=quic
2026-09-14T15:49:39.600280209Z 2026-09-14T15:49:39Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=1 event=0 ip=198.41.192.227
2026-09-14T15:49:40.306157317Z 2026-09-14T15:49:40Z INF Registered tunnel connection connIndex=1 connection=acf83f3b-2b0a-4fa9-aeb9-3cc5382caf42 event=0 ip=198.41.192.227 location=bud01 protocol=quic
2026-09-14T15:49:40.600067753Z 2026-09-14T15:49:40Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=2 event=0 ip=198.41.192.37
2026-09-14T15:49:41.174547902Z 2026-09-14T15:49:41Z INF Initiating graceful shutdown due to signal terminated ...
2026-09-14T15:49:41.192128808Z 2026-09-14T15:49:41Z ERR failed to run the datagram handler error="context canceled" connIndex=0 event=0 ip=198.41.200.13
2026-09-14T15:49:41.192155028Z 2026-09-14T15:49:41Z ERR failed to serve tunnel connection error="accept stream listener encountered a failure while serving" connIndex=0 event=0 ip=198.41.200.13
2026-09-14T15:49:41.192166198Z 2026-09-14T15:49:41Z ERR Serve tunnel error error="accept stream listener encountered a failure while serving" connIndex=0 event=0 ip=198.41.200.13
2026-09-14T15:49:41.192169044Z 2026-09-14T15:49:41Z INF Retrying connection in up to 1s connIndex=0 event=0 ip=198.41.200.13
2026-09-14T15:49:41.194385401Z 2026-09-14T15:49:41Z ERR failed to run the datagram handler error="context canceled" connIndex=1 event=0 ip=198.41.192.227
2026-09-14T15:49:41.194437338Z 2026-09-14T15:49:41Z ERR failed to serve tunnel connection error="accept stream listener encountered a failure while serving" connIndex=1 event=0 ip=198.41.192.227
2026-09-14T15:49:41.194441867Z 2026-09-14T15:49:41Z ERR Serve tunnel error error="accept stream listener encountered a failure while serving" connIndex=1 event=0 ip=198.41.192.227
2026-09-14T15:49:41.194444342Z 2026-09-14T15:49:41Z INF Retrying connection in up to 1s connIndex=1 event=0 ip=198.41.192.227
2026-09-14T15:49:41.296656821Z 2026-09-14T15:49:41Z INF Registered tunnel connection connIndex=2 connection=42080413-3923-4da5-9d97-f4f49082e35c event=0 ip=198.41.192.37 location=bud01 protocol=quic
2026-09-14T15:49:41.322984373Z 2026-09-14T15:49:41Z ERR failed to run the datagram handler error="Application error 0x0 (remote)" connIndex=2 event=0 ip=198.41.192.37
2026-09-14T15:49:41.323015802Z 2026-09-14T15:49:41Z ERR failed to serve tunnel connection error="accept stream listener encountered a failure while serving" connIndex=2 event=0 ip=198.41.192.37
2026-09-14T15:49:41.323020481Z 2026-09-14T15:49:41Z ERR Serve tunnel error error="accept stream listener encountered a failure while serving" connIndex=2 event=0 ip=198.41.192.37
2026-09-14T15:49:41.323023917Z 2026-09-14T15:49:41Z INF Retrying connection in up to 1s connIndex=2 event=0 ip=198.41.192.37
2026-09-14T15:49:41.601241508Z 2026-09-14T15:49:41Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=3 event=0 ip=198.41.200.23
2026-09-14T15:49:41.917089812Z 2026-09-14T15:49:41Z INF Registered tunnel connection connIndex=3 connection=3fd734ce-d1d6-401d-b315-ed2ac8a6584f event=0 ip=198.41.200.23 location=vie06 protocol=quic
2026-09-14T15:49:41.944469648Z 2026-09-14T15:49:41Z ERR failed to run the datagram handler error="Application error 0x0 (remote)" connIndex=3 event=0 ip=198.41.200.23
2026-09-14T15:49:41.944506507Z 2026-09-14T15:49:41Z ERR failed to serve tunnel connection error="accept stream listener encountered a failure while serving" connIndex=3 event=0 ip=198.41.200.23
2026-09-14T15:49:41.944585806Z 2026-09-14T15:49:41Z ERR Serve tunnel error error="accept stream listener encountered a failure while serving" connIndex=3 event=0 ip=198.41.200.23
2026-09-14T15:49:41.944660667Z 2026-09-14T15:49:41Z INF Retrying connection in up to 1s connIndex=3 event=0 ip=198.41.200.23
2026-09-14T15:49:42.601150420Z 2026-09-14T15:49:42Z ERR Connection terminated connIndex=0
2026-09-14T15:49:42.601186098Z 2026-09-14T15:49:42Z ERR Connection terminated connIndex=1
2026-09-14T15:49:42.601190225Z 2026-09-14T15:49:42Z ERR Connection terminated connIndex=2
2026-09-14T15:49:42.601193632Z 2026-09-14T15:49:42Z ERR Connection terminated connIndex=3
2026-09-14T15:49:42.601210032Z 2026-09-14T15:49:42Z ERR no more connections active and exiting
2026-09-14T15:49:42.601212557Z 2026-09-14T15:49:42Z INF Tunnel server stopped
2026-09-14T15:49:42.601291795Z 2026-09-14T15:49:42Z INF Metrics server stopped
2026-09-14T15:49:50.440523819Z 2026-09-14T15:49:50Z INF Starting tunnel tunnelID=52d0c214-b833-477c-86d8-f787d9b550dd
2026-09-14T15:49:50.441128914Z 2026-09-14T15:49:50Z INF Version 2026.6.0 (Checksum 17d853580a4dd9d4d6613691c9123039c20712c38e504f028c0bb4454d43e19f)
2026-09-14T15:49:50.441275599Z 2026-09-14T15:49:50Z INF GOOS: linux, GOVersion: go1.26.4, GoArch: amd64
2026-09-14T15:49:50.441460837Z 2026-09-14T15:49:50Z INF Settings: map[no-autoupdate:true]
2026-09-14T15:49:50.441796176Z 2026-09-14T15:49:50Z INF Environmental variables map[TUNNEL_TOKEN:*****]
2026-09-14T15:49:50.463992058Z 2026-09-14T15:49:50Z INF Generated Connector ID: 8ac0a821-f4db-47f5-b996-5496f31ea266
2026-09-14T15:49:50.494034178Z 2026-09-14T15:49:50Z INF Initial protocol quic
2026-09-14T15:49:50.531026985Z 2026-09-14T15:49:50Z INF ICMP proxy will use 172.18.0.2 as source for IPv4
2026-09-14T15:49:50.534817545Z 2026-09-14T15:49:50Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
2026-09-14T15:49:50.534846500Z 2026-09-14T15:49:50Z WRN The user running cloudflared process has a GID (group ID) that is not within ping_group_range. You might need to add that user to a group within that range, or instead update the range to encompass a group the user is already in by modifying /proc/sys/net/ipv4/ping_group_range. Otherwise cloudflared will not be able to ping this network error="Group ID 65532 is not between ping group 65534 to 65534"
2026-09-14T15:49:50.534858192Z 2026-09-14T15:49:50Z WRN ICMP proxy feature is disabled error="cannot create ICMPv4 proxy: Group ID 65532 is not between ping group 65534 to 65534 nor ICMPv6 proxy: socket: permission denied"
2026-09-14T15:49:50.613981012Z 2026-09-14T15:49:50Z INF ICMP proxy will use 172.18.0.2 as source for IPv4
2026-09-14T15:49:50.614011629Z 2026-09-14T15:49:50Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
2026-09-14T15:49:50.614014604Z 2026-09-14T15:49:50Z INF Starting metrics server on [::]:20241/metrics
2026-09-14T15:49:50.695759212Z 2026-09-14T15:49:50Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=0 event=0 ip=198.41.192.57
2026-09-14T15:49:51.300625796Z 2026-09-14T15:49:51Z INF Registered tunnel connection connIndex=0 connection=c9deac37-2853-48f3-bd84-3539af676872 event=0 ip=198.41.192.57 location=bud01 protocol=quic
2026-09-14T15:49:51.300842583Z 2026-09-14T15:49:51Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=1 event=0 ip=198.41.200.63
2026-09-14T15:49:51.597962161Z 2026-09-14T15:49:51Z INF Registered tunnel connection connIndex=1 connection=e7c269fa-8f91-4786-81ee-d478b90c1144 event=0 ip=198.41.200.63 location=vie06 protocol=quic
2026-09-14T15:49:52.337158979Z 2026-09-14T15:49:52Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=2 event=0 ip=198.41.200.43
2026-09-14T15:49:52.660786683Z 2026-09-14T15:49:52Z INF Registered tunnel connection connIndex=2 connection=8cae61f1-446f-4fa9-b8e5-11fafd2b0de8 event=0 ip=198.41.200.43 location=vie05 protocol=quic
2026-09-14T15:49:53.337206513Z 2026-09-14T15:49:53Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=3 event=0 ip=198.41.192.167
2026-09-14T15:49:53.956135989Z 2026-09-14T15:49:53Z INF Registered tunnel connection connIndex=3 connection=80ca33ef-e8f2-4334-8d20-009ec3712025 event=0 ip=198.41.192.167 location=bud01 protocol=quic
2026-09-14T15:49:56.690559748Z 2026-09-14T15:49:56Z INF +-------------------------------------------------------------------------------------+
2026-09-14T15:49:56.690624090Z 2026-09-14T15:49:56Z INF | CONNECTIVITY PRE-CHECKS |
2026-09-14T15:49:56.690631473Z 2026-09-14T15:49:56Z INF +-------------------------------------------------------------------------------------+
2026-09-14T15:49:56.690637494Z 2026-09-14T15:49:56Z INF | COMPONENT TARGET STATUS DETAILS |
2026-09-14T15:49:56.690642294Z 2026-09-14T15:49:56Z INF | DNS Resolution region1.v2.argotunnel.com PASS DNS Resolved successfully |
2026-09-14T15:49:56.690646481Z 2026-09-14T15:49:56Z INF | DNS Resolution region2.v2.argotunnel.com PASS DNS Resolved successfully |
2026-09-14T15:49:56.690649858Z 2026-09-14T15:49:56Z INF | UDP Connectivity region1.v2.argotunnel.com PASS QUIC connection successful |
2026-09-14T15:49:56.690837050Z 2026-09-14T15:49:56Z INF | UDP Connectivity region2.v2.argotunnel.com PASS QUIC connection successful |
2026-09-14T15:49:56.690842430Z 2026-09-14T15:49:56Z INF | TCP Connectivity region1.v2.argotunnel.com PASS HTTP/2 connection successful |
2026-09-14T15:49:56.690845656Z 2026-09-14T15:49:56Z INF | TCP Connectivity region2.v2.argotunnel.com PASS HTTP/2 connection successful |
2026-09-14T15:49:56.690849062Z 2026-09-14T15:49:56Z INF | Cloudflare API api.cloudflare.com:443 PASS API is reachable |
2026-09-14T15:49:56.690852989Z 2026-09-14T15:49:56Z INF | |
2026-09-14T15:49:56.690855895Z 2026-09-14T15:49:56Z INF | SUMMARY: Environment is healthy. cloudflared will use 'quic' as primary protocol. |
2026-09-14T15:49:56.690858911Z 2026-09-14T15:49:56Z INF +-------------------------------------------------------------------------------------+
2026-09-14T15:49:56.690861846Z 2026-09-14T15:49:56Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region1.v2.argotunnel.com
2026-09-14T15:49:56.690867828Z 2026-09-14T15:49:56Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region2.v2.argotunnel.com
2026-09-14T15:49:56.690870773Z 2026-09-14T15:49:56Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region1.v2.argotunnel.com
2026-09-14T15:49:56.690898194Z 2026-09-14T15:49:56Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region2.v2.argotunnel.com
2026-09-14T15:49:56.690919945Z 2026-09-14T15:49:56Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region1.v2.argotunnel.com
2026-09-14T15:49:56.690924283Z 2026-09-14T15:49:56Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region2.v2.argotunnel.com
2026-09-14T15:49:56.690928090Z 2026-09-14T15:49:56Z INF precheck component="Cloudflare API" details="API is reachable" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=api.cloudflare.com:443
2026-09-14T15:49:56.690932559Z 2026-09-14T15:49:56Z INF precheck complete hard_fail=false run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 suggested_protocol=quic
2026-09-14T15:51:18.127552753Z 2026-09-14T15:51:18Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T15:51:18.382956475Z 2026-09-14T15:51:18Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T15:53:26.645683195Z 2026-09-14T15:53:26Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:00:49.819488978Z 2026-09-14T16:00:49Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:00:55.068310269Z 2026-09-14T16:00:55Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:00.288754117Z 2026-09-14T16:01:00Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:05.511590962Z 2026-09-14T16:01:05Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:10.687833923Z 2026-09-14T16:01:10Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:15.868177506Z 2026-09-14T16:01:15Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:21.073440415Z 2026-09-14T16:01:21Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:26.298439413Z 2026-09-14T16:01:26Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:31.483912452Z 2026-09-14T16:01:31Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:36.664012316Z 2026-09-14T16:01:36Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:41.847764896Z 2026-09-14T16:01:41Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:01:47.029641011Z 2026-09-14T16:01:47Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:08:41.383715295Z 2026-09-14T16:08:41Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:08:47.706971475Z 2026-09-14T16:08:47Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
2026-09-14T16:17:20.849332808Z 2026-09-14T16:17:20Z INF Starting tunnel tunnelID=52d0c214-b833-477c-86d8-f787d9b550dd
2026-09-14T16:17:20.852203639Z 2026-09-14T16:17:20Z INF Version 2026.6.0 (Checksum 17d853580a4dd9d4d6613691c9123039c20712c38e504f028c0bb4454d43e19f)
2026-09-14T16:17:20.852256829Z 2026-09-14T16:17:20Z INF GOOS: linux, GOVersion: go1.26.4, GoArch: amd64
2026-09-14T16:17:20.852260846Z 2026-09-14T16:17:20Z INF Settings: map[no-autoupdate:true]
2026-09-14T16:17:20.852263752Z 2026-09-14T16:17:20Z INF Environmental variables map[TUNNEL_TOKEN:*****]
2026-09-14T16:17:20.871223708Z 2026-09-14T16:17:20Z INF Generated Connector ID: daa6aa70-d3a8-4bb3-98d7-3929ced4bae9
2026-09-14T16:17:20.912520359Z 2026-09-14T16:17:20Z INF Initial protocol quic
2026-09-14T16:17:20.934920384Z 2026-09-14T16:17:20Z INF ICMP proxy will use 172.18.0.4 as source for IPv4
2026-09-14T16:17:20.934966972Z 2026-09-14T16:17:20Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
2026-09-14T16:17:20.934983923Z 2026-09-14T16:17:20Z WRN The user running cloudflared process has a GID (group ID) that is not within ping_group_range. You might need to add that user to a group within that range, or instead update the range to encompass a group the user is already in by modifying /proc/sys/net/ipv4/ping_group_range. Otherwise cloudflared will not be able to ping this network error="Group ID 65532 is not between ping group 65534 to 65534"
2026-09-14T16:17:20.934988492Z 2026-09-14T16:17:20Z WRN ICMP proxy feature is disabled error="cannot create ICMPv4 proxy: Group ID 65532 is not between ping group 65534 to 65534 nor ICMPv6 proxy: socket: permission denied"
2026-09-14T16:17:21.014053052Z 2026-09-14T16:17:21Z INF ICMP proxy will use 172.18.0.4 as source for IPv4
2026-09-14T16:17:21.014718419Z 2026-09-14T16:17:21Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
2026-09-14T16:17:21.015779168Z 2026-09-14T16:17:21Z INF Starting metrics server on [::]:20241/metrics
2026-09-14T16:17:21.115256506Z 2026-09-14T16:17:21Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=0 event=0 ip=198.41.192.47
2026-09-14T16:17:21.519415740Z 2026-09-14T16:17:21Z INF Registered tunnel connection connIndex=0 connection=f21803bc-ba29-4b78-80d0-65fb5e95313c event=0 ip=198.41.192.47 location=bud01 protocol=quic
2026-09-14T16:17:21.519485050Z 2026-09-14T16:17:21Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=1 event=0 ip=198.41.200.193
2026-09-14T16:17:21.926166721Z 2026-09-14T16:17:21Z INF Registered tunnel connection connIndex=1 connection=6ea3cc36-fe6f-493e-9774-820e1b618503 event=0 ip=198.41.200.193 location=vie06 protocol=quic
2026-09-14T16:17:22.518251261Z 2026-09-14T16:17:22Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=2 event=0 ip=198.41.200.23
2026-09-14T16:17:22.785054529Z 2026-09-14T16:17:22Z INF Registered tunnel connection connIndex=2 connection=97263e3a-2595-4950-b349-de9bd2782c14 event=0 ip=198.41.200.23 location=vie06 protocol=quic
2026-09-14T16:17:23.518709784Z 2026-09-14T16:17:23Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=3 event=0 ip=198.41.192.37
2026-09-14T16:17:24.199823321Z 2026-09-14T16:17:24Z INF Registered tunnel connection connIndex=3 connection=9456de1f-d1e5-4a84-bfe1-555a12c6de89 event=0 ip=198.41.192.37 location=bud01 protocol=quic
2026-09-14T16:17:27.091056710Z 2026-09-14T16:17:27Z INF +-------------------------------------------------------------------------------------+
2026-09-14T16:17:27.091104571Z 2026-09-14T16:17:27Z INF | CONNECTIVITY PRE-CHECKS |
2026-09-14T16:17:27.091109660Z 2026-09-14T16:17:27Z INF +-------------------------------------------------------------------------------------+
2026-09-14T16:17:27.091170153Z 2026-09-14T16:17:27Z INF | COMPONENT TARGET STATUS DETAILS |
2026-09-14T16:17:27.091175353Z 2026-09-14T16:17:27Z INF | DNS Resolution region1.v2.argotunnel.com PASS DNS Resolved successfully |
2026-09-14T16:17:27.091178058Z 2026-09-14T16:17:27Z INF | DNS Resolution region2.v2.argotunnel.com PASS DNS Resolved successfully |
2026-09-14T16:17:27.091180513Z 2026-09-14T16:17:27Z INF | UDP Connectivity region1.v2.argotunnel.com PASS QUIC connection successful |
2026-09-14T16:17:27.091182867Z 2026-09-14T16:17:27Z INF | UDP Connectivity region2.v2.argotunnel.com PASS QUIC connection successful |
2026-09-14T16:17:27.091185151Z 2026-09-14T16:17:27Z INF | TCP Connectivity region1.v2.argotunnel.com PASS HTTP/2 connection successful |
2026-09-14T16:17:27.091187376Z 2026-09-14T16:17:27Z INF | TCP Connectivity region2.v2.argotunnel.com PASS HTTP/2 connection successful |
2026-09-14T16:17:27.091189600Z 2026-09-14T16:17:27Z INF | Cloudflare API api.cloudflare.com:443 PASS API is reachable |
2026-09-14T16:17:27.091191834Z 2026-09-14T16:17:27Z INF | |
2026-09-14T16:17:27.091194048Z 2026-09-14T16:17:27Z INF | SUMMARY: Environment is healthy. cloudflared will use 'quic' as primary protocol. |
2026-09-14T16:17:27.091196272Z 2026-09-14T16:17:27Z INF +-------------------------------------------------------------------------------------+
2026-09-14T16:17:27.091198616Z 2026-09-14T16:17:27Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region1.v2.argotunnel.com
2026-09-14T16:17:27.091359839Z 2026-09-14T16:17:27Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region2.v2.argotunnel.com
2026-09-14T16:17:27.091381139Z 2026-09-14T16:17:27Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region1.v2.argotunnel.com
2026-09-14T16:17:27.091384055Z 2026-09-14T16:17:27Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region2.v2.argotunnel.com
2026-09-14T16:17:27.091386700Z 2026-09-14T16:17:27Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region1.v2.argotunnel.com
2026-09-14T16:17:27.091389305Z 2026-09-14T16:17:27Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region2.v2.argotunnel.com
2026-09-14T16:17:27.091391809Z 2026-09-14T16:17:27Z INF precheck component="Cloudflare API" details="API is reachable" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=api.cloudflare.com:443
2026-09-14T16:17:27.091394263Z 2026-09-14T16:17:27Z INF precheck complete hard_fail=false run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 suggested_protocol=quic
@@ -0,0 +1,116 @@
2026-09-14T16:17:22.093450581Z 2026/09/14 16:17:22 [INFO] local-api: channel up (agent 169.254.253.1:8443) — guest 9201, 3 mount(s) visible
2026-09-14T16:17:22.093536461Z 2026/09/14 16:17:22 [INFO] local-api: mount mp0 → /var/lib/felhom (storage=local-lvm, class=, backup=true)
2026-09-14T16:17:22.093544305Z 2026/09/14 16:17:22 [INFO] local-api: mount mp9 → /etc/felhom-bootstrap (storage=/var/lib/felhom-agent/guests/9201/bootstrap, class=, backup=false)
2026-09-14T16:17:22.093548503Z 2026/09/14 16:17:22 [INFO] local-api: mount mp8 → /mnt/felhom-drives (storage=/mnt/felhom-drives, class=, backup=false)
2026-09-14T16:17:22.093552290Z 2026/09/14 16:17:22 [INFO] felhom-controller 0.242.0 starting (customer: tester-1, domain: enkicsifelhom.hu)
2026-09-14T16:17:22.094298018Z 2026/09/14 16:17:22 [INFO] [settings] Loaded settings from /opt/docker/felhom-controller/data/settings.json
2026-09-14T16:17:22.105255566Z 2026/09/14 16:17:22 [INFO] Encryption key loaded from /opt/docker/felhom-controller/data/encryption.key
2026-09-14T16:17:22.252842877Z 2026/09/14 16:17:22 [INFO] [stacks] Using compose command: docker compose
2026-09-14T16:17:22.297738956Z 2026/09/14 16:17:22 [INFO] [stacks] ScanStacks complete: 56 stacks found (1 deployed, 55 available)
2026-09-14T16:17:22.319230718Z 2026/09/14 16:17:22 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:17:22.319717500Z 2026/09/14 16:17:22 [INFO] [stacks] InjectMissingFields: processed 1 stacks
2026-09-14T16:17:22.319989961Z 2026/09/14 16:17:22 [INFO] [stacks] Encryption migration: no stacks needed migration
2026-09-14T16:17:22.322142385Z 2026/09/14 16:17:22 [INFO] [quiesce] loop started (poll 5m0s, max-quiesce 30m0s)
2026-09-14T16:17:22.324331619Z 2026/09/14 16:17:22 [DEBUG] [stacks] SaveAppConfig: saving /opt/docker/stacks/bookstack — 4 env vars, 0 encrypted, 2 sensitive fields
2026-09-14T16:17:22.324351686Z 2026/09/14 16:17:22 [INFO] [stacks] SaveAppConfig: saved config for bookstack
2026-09-14T16:17:22.324464578Z 2026/09/14 16:17:22 [INFO] [stacks] desired state for bookstack recorded as "running" (was "")
2026-09-14T16:17:22.324641239Z 2026/09/14 16:17:22 [INFO] [stacks] desired-state backfill: 1 app(s) recorded as running, 0 left unrecorded (state ambiguous — legacy boot behaviour retained)
2026-09-14T16:17:22.327457628Z 2026/09/14 16:17:22 [INFO] [stacks] installed-images backfill: 0 app(s) recorded, 1 already had a record, 0 left unrecorded (could not be observed completely — unknown, which renders nothing)
2026-09-14T16:17:22.327678311Z 2026/09/14 16:17:22 [INFO] [stacks] pin adoption: 0 pinned, 1 already pinned, 0 left unpinned (0 not completely observed, 0 running something the template no longer offers)
2026-09-14T16:17:22.327786123Z 2026/09/14 16:17:22 [INFO] [sync] Starting catalog sync (repo: https://gitea.dooplex.hu/admin/app-catalog-felhom.eu.git, interval: 15m0s)
2026-09-14T16:17:22.328750331Z 2026/09/14 16:17:22 [INFO] [sync] Starting catalog sync
2026-09-14T16:17:22.330730121Z 2026/09/14 16:17:22 [INFO] [sync] Pulling latest from https://gitea.dooplex.hu/admin/app-catalog-felhom.eu.git (branch: main)
2026-09-14T16:17:22.337597072Z 2026/09/14 16:17:22 [INFO] Metrics store opened at /opt/docker/felhom-controller/data/metrics.db
2026-09-14T16:17:22.337731824Z 2026/09/14 16:17:22 [INFO] Metrics collector started (60s interval)
2026-09-14T16:17:22.338642081Z 2026/09/14 16:17:22 [INFO] Notifier enabled (hub: https://hub.felhom.eu)
2026-09-14T16:17:22.338806309Z 2026/09/14 16:17:22 [INFO] Self-update enabled (check every 6h, auto-update: false, auto-update time: 04:30)
2026-09-14T16:17:22.338900355Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: status-refresh (every 10s)
2026-09-14T16:17:22.339080212Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: stack-scan (every 2m0s)
2026-09-14T16:17:22.339301146Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: health-probes (every 10s)
2026-09-14T16:17:22.340259623Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: system-health (every 5m0s)
2026-09-14T16:17:22.342519258Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: deadapp-check (every 30s)
2026-09-14T16:17:22.343381133Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: ring-spill (every 30s)
2026-09-14T16:17:22.346197972Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job db-dump scheduled for 2026-09-15 02:30 CEST
2026-09-14T16:17:22.346247035Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: offsite-credential-retry (every 5m0s)
2026-09-14T16:17:22.346251804Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: backup-cache (every 5m0s)
2026-09-14T16:17:22.346254548Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job tier2-backup scheduled for 2026-09-15 03:30 CEST
2026-09-14T16:17:22.346257193Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job offbox-backup scheduled for 2026-09-15 04:15 CEST
2026-09-14T16:17:22.346259728Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job offsite-abandon-sweep scheduled for 2026-09-15 05:10 CEST
2026-09-14T16:17:22.346262353Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job offsite-integrity scheduled for 2026-09-15 06:00 CEST
2026-09-14T16:17:22.346264718Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job offsite-proof scheduled for 2026-09-15 05:30 CEST
2026-09-14T16:17:22.346266851Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job metrics-prune scheduled for 2026-09-15 04:00 CEST
2026-09-14T16:17:22.346269086Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job fill-watch scheduled for 2026-09-15 03:30 CEST
2026-09-14T16:17:22.346272131Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: hub-report (every 15m0s)
2026-09-14T16:17:22.346274576Z 2026/09/14 16:17:22 [INFO] Hub reporting enabled (every 15m0s to https://hub.felhom.eu)
2026-09-14T16:17:22.346276990Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: selfupdate-check (every 6h0m0s)
2026-09-14T16:17:22.346279475Z 2026/09/14 16:17:22 [INFO] ========== Startup Self-Test ==========
2026-09-14T16:17:22.448502973Z 2026/09/14 16:17:22 [INFO] [PASS] Docker socket: reachable (v29.8.0)
2026-09-14T16:17:22.448660177Z 2026/09/14 16:17:22 [INFO] [PASS] Stacks directory: /opt/docker/stacks
2026-09-14T16:17:22.448865200Z 2026/09/14 16:17:22 [INFO] [PASS] Data directory: /opt/docker/felhom-controller/data (writable)
2026-09-14T16:17:22.449009150Z 2026/09/14 16:17:22 [INFO] [PASS] System data path: /mnt/sys_drive
2026-09-14T16:17:22.449107415Z 2026/09/14 16:17:22 [INFO] [WARN] Storage paths: no storage paths registered
2026-09-14T16:17:22.450150230Z 2026/09/14 16:17:22 [INFO] [PASS] Git catalog: 53 app definitions found
2026-09-14T16:17:22.479120078Z 2026/09/14 16:17:22 [ERROR] [sync] Catalog sync failed: git fetch: git fetch --depth 1 origin main: exit status 128
2026-09-14T16:17:22.479169010Z stderr: fatal: unable to access 'https://gitea.dooplex.hu/admin/app-catalog-felhom.eu.git/': Could not resolve host: gitea.dooplex.hu
2026-09-14T16:17:22.484564001Z 2026/09/14 16:17:22 [INFO] [sync] Initial sync: Git hiba: git fetch: git fetch --depth 1 origin main: exit status 128
2026-09-14T16:17:22.484588046Z stderr: fatal: unable to access 'https://gitea.dooplex.hu/admin/app-catalog-felhom.eu.git/': Could not resolve host: gitea.dooplex.hu
2026-09-14T16:17:22.524872060Z 2026/09/14 16:17:22 [INFO] [infra] connected felhom-controller to traefik-public
2026-09-14T16:17:22.588233929Z 2026/09/14 16:17:22 [INFO] [PASS] Hub connectivity: https://hub.felhom.eu reachable (HTTP 200)
2026-09-14T16:17:22.588263995Z 2026/09/14 16:17:22 [INFO] [PASS] Metrics DB: 0.0 MB
2026-09-14T16:17:22.588266971Z 2026/09/14 16:17:22 [INFO] ========================================
2026-09-14T16:17:22.588269536Z 2026/09/14 16:17:22 [INFO] Self-test complete: 7 passed, 1 warnings, 0 failed
2026-09-14T16:17:22.588475332Z 2026/09/14 16:17:22 [INFO] [scheduler] Starting scheduler with 18 jobs
2026-09-14T16:17:22.588482996Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: geo-verify (every 6h0m0s)
2026-09-14T16:17:22.588485491Z 2026/09/14 16:17:22 [INFO] Geo-restriction support enabled (CF API token configured)
2026-09-14T16:17:22.591267224Z 2026/09/14 16:17:22 [INFO] [report] hub wait channel active (hold ≤240s)
2026-09-14T16:17:22.594608337Z 2026/09/14 16:17:22 [INFO] [backup] Found 1 DB dump files across drives
2026-09-14T16:17:22.600961754Z 2026/09/14 16:17:22 [INFO] [web] Auth: using password from settings.json
2026-09-14T16:17:22.600989857Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: disk-health-check (every 1h0m0s)
2026-09-14T16:17:22.601050020Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: agent-channel-health (every 1m0s)
2026-09-14T16:17:22.605270630Z 2026/09/14 16:17:22 [INFO] Web UI listening on :8080
2026-09-14T16:17:22.709642144Z 2026/09/14 16:17:22 [INFO] [backup] Discovered 1 databases
2026-09-14T16:17:22.712867710Z 2026/09/14 16:17:22 [INFO] [backup] Discovered app data: 1 apps
2026-09-14T16:17:22.720556050Z 2026/09/14 16:17:22 [INFO] [backup] Backup status cache refreshed
2026-09-14T16:17:22.774454782Z 2026/09/14 16:17:22 [INFO] [web] FileBrowser sync — no config/compose change, ensured running without recreate (0 storage path(s))
2026-09-14T16:17:22.829681433Z 2026/09/14 16:17:22 [INFO] [monitor] Health check: status=ok
2026-09-14T16:17:23.138736543Z 2026/09/14 16:17:23 [INFO] [settings] Settings saved
2026-09-14T16:17:25.542761932Z 2026/09/14 16:17:25 [INFO] [web] Login from 172.18.0.3:37808
2026-09-14T16:17:27.354315855Z 2026/09/14 16:17:27 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:17:27.589948881Z 2026/09/14 16:17:27 [INFO] [report] Building system report
2026-09-14T16:17:27.624464263Z 2026/09/14 16:17:27 [INFO] Event pushed: controller_started (info) — Controller elindult (0.242.0)
2026-09-14T16:17:27.818015896Z 2026/09/14 16:17:27 [INFO] [monitor] Health check: status=ok
2026-09-14T16:17:27.949792003Z 2026/09/14 16:17:27 [INFO] [report] Hub report pushed successfully (6358 bytes)
2026-09-14T16:17:27.950384844Z 2026/09/14 16:17:27 [INFO] [settings] Settings saved
2026-09-14T16:17:27.950400453Z 2026/09/14 16:17:27 [INFO] Startup hub report sent
2026-09-14T16:17:32.378015723Z 2026/09/14 16:17:32 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:17:32.609574042Z 2026/09/14 16:17:32 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:17:32.642262139Z 2026/09/14 16:17:32 [INFO] Health probes: 1 ok (of 1 probed)
2026-09-14T16:17:37.402284027Z 2026/09/14 16:17:37 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:17:37.402316608Z 2026/09/14 16:17:37 [INFO] [bootrecon] boot window: fleet settled after 10s (3 identical samples 5s apart) — sweeping
2026-09-14T16:17:37.402320966Z 2026/09/14 16:17:37 [INFO] [bootrecon] Boot reconciliation: no boot-orphaned apps (nothing to start)
2026-09-14T16:17:42.610551820Z 2026/09/14 16:17:42 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:17:52.610339138Z 2026/09/14 16:17:52 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:17:52.996198672Z 2026/09/14 16:17:52 [INFO] [selfupdate] Current version 0.242.0 is up to date
2026-09-14T16:18:02.611786522Z 2026/09/14 16:18:02 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:18:08.774750839Z 2026/09/14 16:18:08 [INFO] [settings] Settings saved
2026-09-14T16:18:08.775181799Z 2026/09/14 16:18:08 [INFO] [settings] Settings saved
2026-09-14T16:18:08.775335858Z 2026/09/14 16:18:08 [INFO] [web] All sessions invalidated (cleared 1)
2026-09-14T16:18:08.775347510Z 2026/09/14 16:18:08 [INFO] [web] dashboard password reset by the customer from 192.168.0.104 (code generation 3 consumed)
2026-09-14T16:18:09.047157522Z 2026/09/14 16:18:09 [INFO] [web] Login from 172.18.0.3:37808
2026-09-14T16:18:09.295046550Z 2026/09/14 16:18:09 [WARN] [web] Failed login from 172.18.0.3:37808
2026-09-14T16:18:10.775548035Z 2026/09/14 16:18:10 [INFO] [report] Building system report
2026-09-14T16:18:11.023199356Z 2026/09/14 16:18:11 [INFO] [monitor] Health check: status=ok
2026-09-14T16:18:11.143298831Z 2026/09/14 16:18:11 [INFO] [report] Hub report pushed successfully (6501 bytes)
2026-09-14T16:18:11.143686499Z 2026/09/14 16:18:11 [INFO] [settings] Settings saved
2026-09-14T16:18:11.435340789Z 2026/09/14 16:18:11 [WARN] [web] claim: code lockout tripped (source 192.168.0.104) — 15 min
2026-09-14T16:18:11.441716970Z 2026/09/14 16:18:11 [INFO] Event pushed: claim_lockout (warning) — Túl sok hibás beállító kód — a beállító oldal 15 percre zárolva
2026-09-14T16:18:12.609271261Z 2026/09/14 16:18:12 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:18:22.604841397Z 2026/09/14 16:18:22 [INFO] [scheduler] Running job: agent-channel-health
2026-09-14T16:18:22.613215808Z 2026/09/14 16:18:22 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:18:23.067644662Z 2026/09/14 16:18:23 [INFO] [scheduler] Job agent-channel-health completed (took 463ms)
2026-09-14T16:18:32.612327038Z 2026/09/14 16:18:32 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:18:42.610608310Z 2026/09/14 16:18:42 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:18:52.346850450Z 2026/09/14 16:18:52 [INFO] [fillwatch] checked 2 filesystem(s), 0 unreadable/skipped, 0 notification(s); bands: all ok
2026-09-14T16:18:52.610364229Z 2026/09/14 16:18:52 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:19:02.614431007Z 2026/09/14 16:19:02 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
2026-09-14T16:19:12.610521414Z 2026/09/14 16:19:12 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
@@ -0,0 +1,51 @@
2026/09/14 17:47:26 [INFO] appliance 26 BOUND to customer tester-1 (mode=appliance) — delivery staged for its next poll
2026/09/14 17:47:42 [INFO] appliance credentials DELIVERED once to appliance 26 (customer=tester-1 mode=appliance; passphrase withheld)
2026/09/14 17:47:49 [ERROR] [claim] claim code generated (gen 1) but customer tester-1 has NO registered email — deliver via resend after setting one
2026/09/14 17:47:49 [WARN] claim issue for tester-1 on config retrieve: claim: customer tester-1 has no registered email
2026/09/14 17:47:49 [INFO] Config downloaded for customer tester-1
2026/09/14 17:48:17 [INFO] host enrolled: tester-1-8603a2 (customer tester-1)
2026/09/14 17:48:18 [INFO] vaulted break-glass recovery credential for host tester-1-8603a2 (user=root@pam, secret 32 chars)
2026/09/14 17:48:19 [INFO] Artifact manifest served for customer tester-1 (agent=0.130.0 golden=0.242.0)
2026/09/14 17:48:19 [INFO] Config downloaded for customer tester-1
2026/09/14 17:48:35 [INFO] wg registered: host=tester-1-8603a2 pubkey=Ee6/brA1P/ST8N1cw5BD1x3lgJxYjhngS0sCySB2VT0= ip=10.77.0.5/32 changed=true gen=1 sync=ok
2026/09/14 17:48:35 [INFO] host-report from tester-1-8603a2 (0 guests, 2 storage targets, 0 backups, 0 restore-tests, 0 pbs-snapshots, 10206 bytes)
2026/09/14 17:48:35 [INFO] DR-recipe host-half stored for customer tester-1 (host tester-1-8603a2, v1)
2026/09/14 17:48:36 [INFO] tenantsync: provision ok for tester-1 (ns=tester-1, token_id=felhom@pbs!tester-1; secret withheld from logs)
2026/09/14 17:48:36 [INFO] pbsdr provisioned for tester-1 (host tester-1-8603a2, ns tester-1, token_id felhom@pbs!tester-1, gen 2; secret stored consume-once, withheld from logs)
2026/09/14 17:48:36 [INFO] pbsdr auto-provisioned for tester-1 on WG registration (hands-free cascade)
2026/09/14 17:48:36 [INFO] Config downloaded for customer tester-1
2026/09/14 17:48:47 [INFO] restore-test staleness: tester-1 local tier: not restore-proven yet, but only watching for 0s (grace 168h0m0s since first contact 2026-09-14T15:48:35Z) — newborn, not a fault
2026/09/14 17:49:36 [INFO] Config downloaded for customer tester-1
2026/09/14 17:49:57 [INFO] Event from tester-1: controller_started (info) — Controller elindult (0.242.0)
2026/09/14 17:49:57 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 17:49:57 [INFO] Received report from tester-1 (2245 bytes)
2026/09/14 17:49:57 [INFO] managed floor SERVED for tester-1: floor 0.242.0, agent requirement "0.129.0" from manifest (golden 0.242.0)
2026/09/14 17:53:58 [INFO] operator revealed break-glass console credential for host tester-1-8603a2 (user=root@pam, secret 32 chars)
2026/09/14 18:03:37 [INFO] host-report from tester-1-8603a2 (1 guests, 2 storage targets, 1 backups, 0 restore-tests, 0 pbs-snapshots, 11091 bytes)
2026/09/14 18:03:37 [INFO] DR-recipe host-half stored for customer tester-1 (host tester-1-8603a2, v1)
2026/09/14 18:03:37 [INFO] pbs token secret consumed by host tester-1-8603a2 (single-use; value withheld from logs)
2026/09/14 18:04:52 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:04:52 [INFO] Received report from tester-1 (2104 bytes)
2026/09/14 18:08:45 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:08:45 [INFO] Received report from tester-1 (2113 bytes)
2026/09/14 18:08:45 [INFO] [claim] customer tester-1 CLAIMED its dashboard (password set by the customer)
2026/09/14 18:08:45 [INFO] [claim] notification prefs for tester-1 left untouched (row exists or no registered email)
2026/09/14 18:09:06 [INFO] Event from tester-1: app_deployed (info) — Alkalmazás telepítve: BookStack
2026/09/14 18:09:08 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:09:08 [INFO] Received report from tester-1 (2162 bytes)
2026/09/14 18:10:14 [INFO] Event from tester-1: app_deployed (info) — Alkalmazás telepítve: PrivateBin
2026/09/14 18:10:16 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:10:16 [INFO] Received report from tester-1 (4482 bytes)
2026/09/14 18:13:22 [INFO] Event from tester-1: app_removed (info) — Alkalmazás eltávolítva: privatebin
2026/09/14 18:13:25 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:13:25 [INFO] Received report from tester-1 (3587 bytes)
2026/09/14 18:15:48 [INFO] host-report from tester-1-8603a2 (1 guests, 3 storage targets, 0 backups, 0 restore-tests, 1 pbs-snapshots, 11404 bytes)
2026/09/14 18:15:48 [INFO] DR-recipe host-half stored for customer tester-1 (host tester-1-8603a2, v1)
2026/09/14 18:16:47 [INFO] restore-test staleness: tester-1 pbs tier: not restore-proven yet, but only watching for 0s (grace 288h0m0s since first contact 2026-09-14T15:48:35Z) — newborn, not a fault
2026/09/14 18:17:27 [INFO] Event from tester-1: controller_started (info) — Controller elindult (0.242.0)
2026/09/14 18:17:27 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:17:27 [INFO] Received report from tester-1 (6358 bytes)
2026/09/14 18:18:11 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
2026/09/14 18:18:11 [INFO] Received report from tester-1 (6501 bytes)
2026/09/14 18:18:11 [INFO] Event from tester-1: claim_lockout (warning) — Túl sok hibás beállító kód — a beállító oldal 15 percre zárolva
2026/09/14 18:18:11 [INFO] Operator email sent for tester-1/claim_lockout
Binary file not shown.

After

Width:  |  Height:  |  Size: 90 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 89 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 21 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 5.0 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.5 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.5 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.7 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 6.1 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 6.1 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 6.1 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 7.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 7.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 7.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.2 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.3 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 90 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 89 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 21 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.5 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.5 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.7 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 6.1 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 7.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 7.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 4.2 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 3.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 3.4 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 90 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 155 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 136 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 129 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 129 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 129 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 129 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 132 KiB

Binary file not shown.

After

Width:  |  Height:  |  Size: 132 KiB

@@ -0,0 +1,10 @@
--- before 16:13:15
volumes: 1
containers: 1
backup-dir: 40K /mnt/sys_drive/felhom-data/backups/primary/privatebin
--- after 16:13:27
volumes: 0
containers: 0
backup-dir: du: cannot access '/mnt/sys_drive/felhom-data/backups/primary/privatebin': No such file or directory
front door paste.: 404
restore points: {"ok":true,"data":[]}
@@ -0,0 +1,8 @@
=== LAYER 3 start 2026-09-14T16:20:10Z
unclaimed appliances listed (id mac):
27 bc:24:11:60:0f:ed
VM 332 appliance id: 27
HTTP/1.1 303 See Other
Location: /hosts?flash=appliance_discarded
332 MAC still on hosts page: 0
host tester-1-8603a2 delete-impact: {"deletable":false,"escrow_present":false,"guests":1,"log_bundles":0,"pbs_secret_present":true,"recovery_present":true,"reports":3,"status":"ok","wg_peer_bound":true}
@@ -0,0 +1,39 @@
=== BEFORE 2026-09-14T16:19:54Z
VMID NAME STATUS MEM(MB) BOOTDISK(GB) PID
331 doorstep-3disk-walk running 8192 200.00 2987289
332 doorstep-1disk-control running 4096 64.00 2983525
VMID Status Lock Name
9201 running demo-hp
9202 running demo-hp-scratch
Name Type Status Total (KiB) Used (KiB) Available (KiB) %
felhom-pbs pbs active 0 0 0 0.00%
local dir active 40453376 26489992 11876268 65.48%
local-lvm lvmthin active 56487936 24950721 31537214 44.17%
nvme-scratch dir active 983379700 23528192 909824896 2.39%
/dev/nvme0n1 1006980812800 24092868608 931660693504 3% /mnt/hdd_1
total 3330728
drwxr-xr-x 2 root root 4096 Sep 14 17:59 .
drwxr-xr-x 4 root root 4096 Aug 21 17:42 ..
-rw-r--r-- 1 root root 1705322496 Sep 14 17:31 felhom-installer-1.27.0-pve9.2-1.iso
-rw-r--r-- 1 root root 1705322496 Sep 14 18:00 felhom-installer-1.27.1-pve9.2-1.iso
331
332
9202
48
purging VM 331 from related configurations..
purging VM 332 from related configurations..
=== AFTER 2026-09-14T16:20:06Z
VMID Status Lock Name
9201 running demo-hp
9202 running demo-hp-scratch
Name Type Status Total (KiB) Used (KiB) Available (KiB) %
felhom-pbs pbs active 0 0 0 0.00%
local dir active 40453376 23033320 15332940 56.94%
local-lvm lvmthin active 56487936 24950721 31537214 44.17%
nvme-scratch dir active 983379700 10132924 923220164 1.03%
/dev/nvme0n1 1006980812800 10376114176 945377447936 2% /mnt/hdd_1
total 8
drwxr-xr-x 2 root root 4096 Sep 14 18:20 .
drwxr-xr-x 4 root root 4096 Aug 21 17:42 ..
9202
ls: cannot access '/root/doorstep': No such file or directory