doorstep walk on ISO 1.27.x: 1 intervention (R-505), STOP before publish
gates / gates (push) Successful in 17s
ISO 1.27.1 gated PASS and proven live: first-boot console Felhom-only, pvebanner masked across a proven reboot. Hub v0.113.0 hand-over copy live (R-497 closed). Full first hour walked again on customer tester-1 (three disks + one disk): deploy, use, backup, removal, byte-identical restore, power cut, typo all PASS. The tunnel gives a fresh box no routes: 12/12 503 from DooPlex (R-505); the record has no e-mail (R-508). Rows R-507, R-508 filed; R-496/R-495 fixed/answered awaiting publish; day-0 A.1 no longer claims the controller creates hostnames (R-506). NOT PUBLISHED. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_0159rPz1ZhFKsS53msqPYxtS
@@ -0,0 +1,105 @@
|
||||
# DOORSTEP — the first hour again, on the unpublished installer (2026-09-14)
|
||||
|
||||
**Interventions a volunteer could not have made: 1** — I1 again, now with a different cause (R-505).
|
||||
**Ready for a volunteer: NO — because on customer `tester-1` the dashboard link answers 503 from our
|
||||
network: the box's tunnel connects but receives no routes. Everything the task changed held.**
|
||||
|
||||
Evidence: `evidence-doorstep-walk-1270-2026-09-14/` — `screens-331/`, `screens-332/`, `box-logs-331/`,
|
||||
`A1-power-cut-331.txt`, `A2-typo-331.txt`, `step10-remove-observe-331.txt`, `G15-live-332-iso1271.txt`,
|
||||
`teardown-*.txt`. Gate records: `../tests/iso-release-1.27.0-2026-09-14/`,
|
||||
`../tests/iso-release-1.27.1-2026-09-14/`. Yesterday's walk for comparison:
|
||||
`DRILL-fresh-install-0242-2026-09-14.md` and its `screens/`.
|
||||
|
||||
---
|
||||
|
||||
## 0. Phase 0 — why the installer asked questions (named first, because the brief assumed otherwise)
|
||||
|
||||
**The auto-install never engaged, by construction.** The public 1.26.1 manifest (downloaded from
|
||||
`iso.felhom.eu`) reads `answer-file : NONE — no answer.toml, no auto-installer-mode.toml (release gate
|
||||
G1)` and `automated-entry : NOT PRESENT`; `build-felhom-iso.sh --release` refuses a profile and skips
|
||||
`prepare-iso`; `grub/grub-release.cfg.tmpl` explains why — SPIKE-universal-iso-1 measured that no udev
|
||||
property separates an internal disk from a USB backup drive and that a two-disk filter silently wipes
|
||||
one. The operator's 2026-07-31 ruling made the interactive installer the product. **Offered an
|
||||
install-time disk rule on 2026-09-14, the operator kept that ruling.** The auto-installer has no local
|
||||
chooser or stop page (its modes are a static answer from the image or a partition, or an HTTP answer
|
||||
service), so "no English reaches a volunteer" cannot hold on the installer's own screens; the
|
||||
Felhom-written text around them is Hungarian (G16) and the guide answers each screen.
|
||||
|
||||
## 1. What was built
|
||||
|
||||
| artifact | change | status |
|
||||
|---|---|---|
|
||||
| ISO **1.27.0** | `felhom-bootstrap.sh` masks `pvebanner` + writes Felhom `/etc/issue` at first boot; banner names the Tulajdonosi jelmondat | built, gated, **superseded** — its proof install still showed the Proxmox block on the first boot |
|
||||
| ISO **1.27.1** | the postinst does the mask (symlink) and the issue write at install time; issue text without ő/ű | built, **gated PASS**, proven live on VM 332, **NOT PUBLISHED** |
|
||||
| hub **v0.113.0** | hand-over sentence on customer create + Credentials; self-bind mail names the operator | **deployed**, rendered live on `tester-1`'s page |
|
||||
|
||||
## 2. The disk rule, and what a volunteer sees in each case
|
||||
|
||||
**The installer never picks a disk for you.** It lists every disk with size and model; you choose the
|
||||
one the system goes on, and that disk is erased. Unplug the external backup drive during the install.
|
||||
If you do not know which internal disk is right, stop and call the operator.
|
||||
|
||||
| case | what the screen shows (measured) |
|
||||
|---|---|
|
||||
| **one disk** (VM 332, TUI and graphical) | TUI: `Target harddisk: /dev/sda (QEMU HARDDISK) (64.00 GiB)`; graphical: „Please verify the installation target … All existing partitions and data will be lost." with `Target Harddisk /dev/sda (64.00GiB, QEMU HARDDISK)` |
|
||||
| **three disks** (VM 331, TUI) | the same field pre-set to `/dev/sda (200.00 GiB)`; opening it lists `/dev/sda (200.00 GiB)`, `/dev/sdb (50.00 GiB)`, `/dev/sdc (50.00 GiB)` (screen `331-s07`); **the installer does not ask "which one?" by itself** — the guide's disk row covers it |
|
||||
| **nobody at the keyboard** (VM 332) | the 15 s menu boots the **graphical** installer, which stops at the EULA and waits (screen `332-s02`) — nothing installs unattended |
|
||||
| zero disks | not exercised |
|
||||
|
||||
## 3. The walk, step by step
|
||||
|
||||
Customer **`tester-1`** (operator's choice), domain `enkicsifelhom.hu`, tunnel token set, DR tier on,
|
||||
**no e-mail registered**. VM 331 = ISO 1.27.0, three disks, TUI. VM 332 = ISO 1.27.1, one disk.
|
||||
|
||||
| # | step | result | time |
|
||||
|---|---|---|---|
|
||||
| 1 | installer | built from `main`, not downloaded (unpublished) | — |
|
||||
| 2 | install (331) | same English Proxmox screens as yesterday; host name `felhom.enkicsifelhom.hu` per the guide | copy ≤ 3 m 21 s |
|
||||
| 3a | first screen (331, **1.27.0**) | **Proxmox `:8006` block still on top**; Felhom text below with ő/ű dropped → fixed in 1.27.1 | registered at hub +41 s |
|
||||
| 3b | first screen (332, **1.27.1**) | **Felhom text only** — „Felhom otthoni szerver · Ezen a gépen most nincs dolgod, és bejelentkezni sem kell." — then the pairing banner naming the Tulajdonosi jelmondat; identical after a **proven** reboot (boot 16:14:11Z > reboot 16:13:56Z, `pvebanner` masked, `/etc/issue` 0 × `8006`) | — |
|
||||
| 3c | bind + claim (331) | operator bind (no link: no e-mail); hub `claim code generated … but customer tester-1 has NO registered email` (R-508); **dashboard 503 via the tunnel → I1 (R-505, filed 16:07:59Z before acting)**; claim by LAN + box-printed code (H1) → 302 | controller 0.242.0 at +2 m 31 s after bind |
|
||||
| 4 | version | controller 0.242.0, agent 0.130.0 — the vouched set | — |
|
||||
| 5 | deploy | BookStack 68 s, PrivateBin 22 s | — |
|
||||
| 6 | use | BookStack: default login → changed (old refused, new accepted), book, Hungarian page, 256 KiB attachment, **sha equal**; PrivateBin: encrypted paste round trip, wrong key `InvalidTag` | — |
|
||||
| 7 | backup pages | same honest warnings; R-499's „(PBS)" sentence still present (not this task) | — |
|
||||
| 8 | backup now | points move to 16:11:56Z; page „18:11 (most)" | 16 s |
|
||||
| 9 | versions | installed == catalog for both; no update offered — skipped | — |
|
||||
| 10 | remove PrivateBin (stop → remove, every box) | volume, container, backup dir, restore points gone; front door 404 | <1 s |
|
||||
| 11 | restore BookStack after deleting its page | **page + attachment byte-identical**, finish message „2 adatkötet és az adatbázis visszaállítva" | healthy 36 s |
|
||||
| 12 | status pages | launcher BookStack + Filebrowser; dashboard 4 running | — |
|
||||
| A1 | power cut | same six image tags, agent 0.130.0, data byte-identical, hub `controller_started` only | dashboard +123 s, BookStack +133 s |
|
||||
| A2 | typo | „Hibás vagy lejárt kód" → right code accepted → 6th attempt „Túl sok próbálkozás — próbáld újra 15 perc múlva."; `claim_lockout` + operator mail | — |
|
||||
|
||||
## 4. Harness substitutions (not interventions)
|
||||
|
||||
H1 no mailbox (and `tester-1` has none) → operator bind, box-printed codes · H2 U.S. keyboard on 331/332-TUI
|
||||
· H3 auto-reboot unticked, ISO detached · H4 TUI entry. **H5 (new): the graphical installer did not take
|
||||
Tab or mouse input from `qm sendkey`/`mouse_move`; Alt+N worked** — the 1.27.1 graphical path was proven
|
||||
to boot, wait at the EULA, show the one-disk target and reach the password screen, not to install
|
||||
(R-507).
|
||||
|
||||
## 5. Findings
|
||||
|
||||
| row | rank | |
|
||||
|---|---|---|
|
||||
| **R-505** | **P1** | `tester-1`'s tunnel gives a fresh box no routes → 503 (12/12 probes, 12 box warnings, 0 config updates); operator's phone reaches it — cause not visible to the session |
|
||||
| R-508 | P2 | `tester-1` has no registered e-mail: the setup code and self-bind link cannot be delivered |
|
||||
| R-506 | P3 | `day0-install.md` A.1 says the controller manages hostnames — it does not |
|
||||
| R-507 | P3 | the proof-install harness cannot drive the graphical installer |
|
||||
| R-502 | P3 | the bootstrap harness runs in no gate/CI; the banner was never tested |
|
||||
| R-503 | P3 | spike for an install-time disk rule (not chosen) |
|
||||
| R-504 | P3 | `iso.felhom.eu/` has no index; download page goes on the website |
|
||||
|
||||
Closed with this evidence: **R-497** (hub v0.113.0 live). Fixed, awaiting publish: **R-496** (ISO 1.27.1),
|
||||
**R-495** (answered by the guide + G14). **R-493** stays open until the download page and ISO are live.
|
||||
|
||||
## 6. Teardown
|
||||
|
||||
Layers 1–2 measured in `teardown-layers-1-2.txt` (VMs 331/332 destroyed; `nvme-scratch` used 23 528 192
|
||||
→ 10 132 924 KiB; `local` 26 489 992 → 23 033 320 KiB; ISOs and `/root/doorstep` gone; 9201/9202 running;
|
||||
`local-lvm` 44.17 % unchanged). Layer 3 in `teardown-layer3-hub.txt`: appliance 27 discarded; host
|
||||
`tester-1-8603a2` deleted once stale (**customer `tester-1` is KEPT** — the operator's fixture; a RESET or
|
||||
DELETE would remove its tunnel and zone). **Left on ep0 by design of the DR tier, named:** namespace
|
||||
`tester-1` and token `felhom@pbs!tester-1`, provisioned at enrolment; a host delete does not deprovision
|
||||
tenancy — only the customer RESET does, which would also remove the tunnel. Disposition: retained with
|
||||
the customer, for the operator to rule.
|
||||
@@ -0,0 +1,35 @@
|
||||
=== A1 BEFORE 16:14:15
|
||||
bookstack lscr.io/linuxserver/bookstack:26.05.2 Up About a minute (healthy)
|
||||
bookstack-db mariadb:12.3 Up About a minute (healthy)
|
||||
filebrowser gtstef/filebrowser:1.3.3-stable Up 24 minutes (healthy)
|
||||
felhom-controller gitea.dooplex.hu/admin/felhom-controller:0.242.0 Up 24 minutes (healthy)
|
||||
cloudflared cloudflare/cloudflared:2026.6.0 Up 24 minutes
|
||||
traefik traefik:v3.6.7 Up 24 minutes
|
||||
felhom-agent 0.130.0
|
||||
T_A1_hardstop 16:14:17
|
||||
status: stopped
|
||||
T_A1_poweron 16:15:22
|
||||
=== A1 AFTER 16:17:35 appliance +42s dashboard +123s bookstack healthy +133s after power-on
|
||||
felhom-controller gitea.dooplex.hu/admin/felhom-controller:0.242.0 Up 15 seconds (healthy)
|
||||
bookstack lscr.io/linuxserver/bookstack:26.05.2 Up 17 seconds (healthy)
|
||||
bookstack-db mariadb:12.3 Up 17 seconds (healthy)
|
||||
filebrowser gtstef/filebrowser:1.3.3-stable Up 17 seconds (healthy)
|
||||
cloudflared cloudflare/cloudflared:2026.6.0 Up 17 seconds
|
||||
traefik traefik:v3.6.7 Up 17 seconds
|
||||
felhom-agent 0.130.0
|
||||
T_readback 16:17:38
|
||||
page 200 sentence 2 (neg 0) hungarian 2
|
||||
attachment 200 262144B equal: YES
|
||||
2026/09/14 18:08:45 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:08:45 [INFO] [claim] customer tester-1 CLAIMED its dashboard (password set by the customer)
|
||||
2026/09/14 18:08:45 [INFO] [claim] notification prefs for tester-1 left untouched (row exists or no registered email)
|
||||
2026/09/14 18:09:06 [INFO] Event from tester-1: app_deployed (info) — Alkalmazás telepítve: BookStack
|
||||
2026/09/14 18:09:08 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:10:14 [INFO] Event from tester-1: app_deployed (info) — Alkalmazás telepítve: PrivateBin
|
||||
2026/09/14 18:10:16 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:13:22 [INFO] Event from tester-1: app_removed (info) — Alkalmazás eltávolítva: privatebin
|
||||
2026/09/14 18:13:25 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:15:48 [INFO] DR-recipe host-half stored for customer tester-1 (host tester-1-8603a2, v1)
|
||||
2026/09/14 18:16:47 [INFO] restore-test staleness: tester-1 pbs tier: not restore-proven yet, but only watching for 0s (grace 288h0m0s since first contact 2026-09-14T15:48:35Z) — newborn, not a fault
|
||||
2026/09/14 18:17:27 [INFO] Event from tester-1: controller_started (info) — Controller elindult (0.242.0)
|
||||
2026/09/14 18:17:27 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
@@ -0,0 +1,13 @@
|
||||
=== A2 on box 331 (ISO 1.27.0 install, controller 0.242.0)
|
||||
page title on a claimed box: Jelszó visszaállítása — Felhom
|
||||
16:18:08 typo (1 letter) -> HTTP/2 200 | error: Hibás vagy lejárt kód
|
||||
16:18:08 right code -> HTTP/2 302 location: / | error:
|
||||
login NEW password -> HTTP/2 302
|
||||
login OLD password -> HTTP/2 200
|
||||
16:18:09 wrong #2 -> HTTP/2 200 | error: Hibás vagy lejárt kód
|
||||
16:18:10 wrong #3 -> HTTP/2 200 | error: Hibás vagy lejárt kód
|
||||
16:18:10 wrong #4 -> HTTP/2 200 | error: Hibás vagy lejárt kód
|
||||
16:18:11 wrong #5 -> HTTP/2 200 | error: Hibás vagy lejárt kód
|
||||
16:18:11 wrong #6 -> HTTP/2 200 | error: Túl sok próbálkozás — próbáld újra 15 perc múlva.
|
||||
2026/09/14 18:18:11 [INFO] Event from tester-1: claim_lockout (warning) — Túl sok hibás beállító kód — a beállító oldal 15 percre zárolva
|
||||
2026/09/14 18:18:11 [INFO] Operator email sent for tester-1/claim_lockout
|
||||
@@ -0,0 +1,24 @@
|
||||
=== VM 332 (ISO 1.27.1), live G15 2026-09-14T16:19:01Z
|
||||
boot time (uptime -s): 2026-09-14 18:14:11
|
||||
boots recorded by journald: 3
|
||||
pvebanner.service: masked
|
||||
symlink: /dev/null
|
||||
/etc/issue lines naming 8006: 0
|
||||
/etc/issue Felhom line: 1
|
||||
--- postinst log
|
||||
felhom-bootstrap postinst: arg1=configure date=2026-09-14T16:09:52+00:00
|
||||
felhom-bootstrap postinst: pvebanner.service masked (symlink)
|
||||
felhom-bootstrap postinst: /etc/issue is the Felhom text
|
||||
Created symlink '/etc/systemd/system/multi-user.target.wants/felhom-bootstrap.service' -> '/usr/lib/systemd/system/felhom-bootstrap.service'.
|
||||
felhom-bootstrap postinst: enabled felhom-bootstrap.service via systemctl
|
||||
--- bootstrap journal: console lines
|
||||
felhom-bootstrap: console: pvebanner.service masked (it would rewrite /etc/issue with the Proxmox admin URL on every boot)
|
||||
felhom-bootstrap: console: /etc/issue is the Felhom text (no admin URL)
|
||||
felhom-bootstrap: console font -> Lat2-Terminus16 (Latin-2, ő/ű capable)
|
||||
felhom-bootstrap: console: pvebanner.service masked (it would rewrite /etc/issue with the Proxmox admin URL on every boot)
|
||||
package: felhom-bootstrap 1.27.1
|
||||
CORRECTED: qm reboot was sent at 16:13:56Z (T_reboot_332b below; an earlier draft of this line said 16:15:41Z, which is wrong). Boot time 18:14:11 CEST = 16:14:11Z is after it: the reboot happened.
|
||||
T_firstboot_332b 16:12:01
|
||||
qm> T_shot_firstboot 16:13:42
|
||||
T_reboot_332b 16:13:56
|
||||
qm> T_shot_reboot 16:15:47
|
||||
@@ -0,0 +1,182 @@
|
||||
2026-09-14T17:46:41+02:00 felhom systemd[1]: Starting felhom-bootstrap.service - Felhom host bootstrap (fetch + run felhom-host-install.sh unattended, retry until success)...
|
||||
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: console: pvebanner.service masked (it would rewrite /etc/issue with the Proxmox admin URL on every boot)
|
||||
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: console: /etc/issue is the Felhom text (no admin URL)
|
||||
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: PAIRING mode (generic ISO, no baked customer/passphrase) — hub=https://hub.felhom.eu
|
||||
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: registering unclaimed appliance at the hub
|
||||
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: registered — appliance token stored (0600); waiting for the operator or a customer self-bind
|
||||
2026-09-14T17:46:41+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: console font -> Lat2-Terminus16 (Latin-2, ő/ű capable)
|
||||
2026-09-14T17:46:42+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: not bound yet — polling every 30s until the operator or a customer self-bind lands (this is the normal waiting state, not an error)
|
||||
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: bind DELIVERED — writing credentials to the env and switching to direct install
|
||||
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: fetching host-install: https://felhom.eu/scripts/felhom-host-install.sh
|
||||
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: running host-install (customer=tester-1 mode=appliance hub=https://hub.felhom.eu)
|
||||
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] auto-sized guest RAM: 4096 MiB (host 7872 MiB; clamp(host-4096, min 4096, max host-2048), ceiling host-1024)
|
||||
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] auto-sized guest cores: 3 (host 4 cores; host-1, min 2)
|
||||
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] felhom-host-install v1.28.0 — mode=appliance customer=tester-1 vmid=9201
|
||||
2026-09-14T17:47:42+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 1/8 pre-flight
|
||||
2026-09-14T17:47:43+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] pve-manager/9.2.2/b9984c6d90a4bd80 (running kernel: 7.0.2-6-pve)
|
||||
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] node: felhom (auto)
|
||||
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] agent config: /etc/felhom-agent/agent.json
|
||||
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] agent: not installed yet — will be fetched + installed in step 5/8
|
||||
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] local-lvm free: ~113 GiB
|
||||
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] local-lvm free ~113 GiB < hard min 120 GiB
|
||||
2026-09-14T17:47:44+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] free RAM: ~6295 MiB
|
||||
2026-09-14T17:47:46+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] existing guests on this host: 0 (pct+qm)
|
||||
2026-09-14T17:47:46+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] archive storage 'local' present
|
||||
2026-09-14T17:47:48+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] acl storage 'felhom-pbs' not present yet — expected: the PBS-DR tier creates it; the grant is pre-positioned deliberately
|
||||
2026-09-14T17:47:48+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] dnsmasq: not present before Felhom — recorded; uninstall will remove it again if we install it
|
||||
2026-09-14T17:47:49+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] hub reachable (https://hub.felhom.eu)
|
||||
2026-09-14T17:47:49+02:00 felhom felhom-bootstrap.sh[1446]: [OK] customer 'tester-1' exists + passphrase valid
|
||||
2026-09-14T17:47:49+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] golden: none local — will fetch + verify from Gitea in step 7/8
|
||||
2026-09-14T17:47:51+02:00 felhom felhom-bootstrap.sh[1446]: [OK] pre-flight passed
|
||||
2026-09-14T17:47:51+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 2/8 Proxmox API token
|
||||
2026-09-14T17:47:55+02:00 felhom felhom-bootstrap.sh[1446]: [OK] token minted (secret captured, not logged)
|
||||
2026-09-14T17:48:15+02:00 felhom felhom-bootstrap.sh[1446]: [OK] scoped ACL applied (Base@/, Guest@/pool/felhom + /vms/990000..990009, Store@[local local-lvm felhom-pbs])
|
||||
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [SKIP] old broad role FelhomAgent already absent
|
||||
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 3/8 compute volume grows
|
||||
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] auto-computed from ~113 GiB free (ONE volume since R-165)
|
||||
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] grows: rootfs +0G (->32G), data +46G (->70G, ONE volume)
|
||||
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 4/8 host enrollment (POST /host-enroll)
|
||||
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [OK] host MINTED (first enroll)
|
||||
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] host_id: tester-1-8603a2 (api_key captured, not logged)
|
||||
2026-09-14T17:48:17+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 4b/8 break-glass credential (root@pam console password → hub vault)
|
||||
2026-09-14T17:48:18+02:00 felhom chpasswd[1696]: pam_unix(chpasswd:chauthtok): password changed for root
|
||||
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [OK] root@pam password set + vaulted to the hub (retrieve via the operator /admin path; never logged here)
|
||||
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] NOTE: the root@pam password just CHANGED — the old one now fails at the PVE web GUI (:8006).
|
||||
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] Retrieve the new one at hub → host page (vaulted recovery credential).
|
||||
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 5/8 agent install (fetch + verify + install)
|
||||
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] disabled pve-enterprise.sources (Enabled: no)
|
||||
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] disabled ceph.sources (Enabled: no)
|
||||
2026-09-14T17:48:18+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] added pve-no-subscription.sources (suite=trixie)
|
||||
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [OK] apt repos aligned to no-subscription (changed; apt-get update OK)
|
||||
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] no git credential in controller.yaml — fetching artifacts ANONYMOUSLY (they are world-readable; sha256 verification unchanged)
|
||||
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] manifest: agent v0.130.0 (sha a56a92a7bd68f5b4…), golden v0.242.0
|
||||
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] fetching agent binary v0.130.0 from Gitea …
|
||||
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [OK] verified sha256 a56a92a7bd68f5b4… matches the hub manifest
|
||||
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/bin/felhom-agent (felhom-agent 0.130.0)
|
||||
2026-09-14T17:48:19+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] installing the 'sudo' package (required for the non-root agent model) …
|
||||
2026-09-14T17:48:23+02:00 felhom felhom-bootstrap.sh[1446]: [OK] sudo installed (Sudo version 1.9.16p2)
|
||||
2026-09-14T17:48:23+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] installing the 'age' package (escrow ceremony identity-wrap dependency) …
|
||||
2026-09-14T17:48:25+02:00 felhom felhom-bootstrap.sh[1446]: [OK] age installed (1.2.1)
|
||||
2026-09-14T17:48:25+02:00 felhom useradd[1933]: new group: name=felhom-agent, GID=990
|
||||
2026-09-14T17:48:25+02:00 felhom useradd[1933]: new user: name=felhom-agent, UID=999, GID=990, home=/home/felhom-agent, shell=/usr/sbin/nologin, from=none
|
||||
2026-09-14T17:48:25+02:00 felhom felhom-bootstrap.sh[1446]: [OK] created service user felhom-agent
|
||||
2026-09-14T17:48:25+02:00 felhom usermod[1941]: add 'felhom-agent' to group 'systemd-journal'
|
||||
2026-09-14T17:48:25+02:00 felhom usermod[1941]: add 'felhom-agent' to shadow group 'systemd-journal'
|
||||
2026-09-14T17:48:25+02:00 felhom felhom-bootstrap.sh[1446]: [OK] added felhom-agent to systemd-journal (unprivileged journal read for NAS verify)
|
||||
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/sbin/felhom-mkfs-guarded (0755, the guarded mkfs path)
|
||||
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/sbin/felhom-selfupdate-guarded (0755, the guarded A/B binary-swap path)
|
||||
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/sbin/felhom-pbs-apply (0755, the guarded PBS-DR apply path)
|
||||
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /usr/local/sbin/felhom-backup-target-apply (0755, the guarded backup-target path)
|
||||
2026-09-14T17:48:27+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /etc/sudoers.d/felhom-agent (0440, visudo-validated)
|
||||
2026-09-14T17:48:28+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed /etc/systemd/system/felhom-agent.service + enabled (started in step 6 after config)
|
||||
2026-09-14T17:48:28+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed self-update rollback unit + start-limit drop-in (auto-rollback armed)
|
||||
2026-09-14T17:48:29+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed break-glass layers 1+2 (tmpfiles /run/sshd + agent-independent watchdog timer)
|
||||
2026-09-14T17:48:29+02:00 felhom useradd[2209]: new group: name=felhom-op, GID=1000
|
||||
2026-09-14T17:48:29+02:00 felhom useradd[2209]: new user: name=felhom-op, UID=1000, GID=1000, home=/home/felhom-op, shell=/bin/bash, from=none
|
||||
2026-09-14T17:48:31+02:00 felhom felhom-bootstrap.sh[1446]: [OK] installed OOB felhom-sshd instance + static belt (agent renders config + fills sets once oob.enabled)
|
||||
2026-09-14T17:48:31+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 6/8 agent config + service
|
||||
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] backup target: DEGRADED — no eligible second drive, so the whole-system backup stays on the SYSTEM drive.
|
||||
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] It protects against file corruption but NOT against a disk failure. Attach a second drive and assign it in the dashboard.
|
||||
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] creating island bridge vmbr9 (portless, 169.254.253.1/30)
|
||||
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [OK] vmbr9 up: 169.254.253.1/30
|
||||
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] R-50 island ON: local_api=169.254.253.1:8443 (vmbr9); guest net1=169.254.253.2/30; lan_resolver.host_ip=192.168.0.133
|
||||
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] node=felhom local_api=169.254.253.1:8443 tls_fp=E1:57:97:F0:1B:32…
|
||||
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [OK] wrote /etc/felhom-agent/agent.json (0600 felhom-agent)
|
||||
2026-09-14T17:48:32+02:00 felhom felhom-bootstrap.sh[1446]: [OK] agent --selftest (read-only) passed
|
||||
2026-09-14T17:48:36+02:00 felhom felhom-bootstrap.sh[1446]: [OK] felhom-agent service active (non-root felhom-agent reads the config OK)
|
||||
2026-09-14T17:48:36+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 7/8 golden archive
|
||||
2026-09-14T17:48:36+02:00 felhom felhom-bootstrap.sh[1446]: [WARN] no git credential in controller.yaml — fetching artifacts ANONYMOUSLY (they are world-readable; sha256 verification unchanged)
|
||||
2026-09-14T17:48:36+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] fetching golden v0.242.0 from Gitea → /var/lib/vz/dump/vzdump-lxc-9100-2026_09_14-17_48_36.tar.zst
|
||||
2026-09-14T17:48:44+02:00 felhom felhom-bootstrap.sh[1446]: [OK] verified sha256 3ab480ddb7c1e690… matches the hub manifest
|
||||
2026-09-14T17:48:45+02:00 felhom felhom-bootstrap.sh[1446]: [OK] golden imported + verified: local:backup/vzdump-lxc-9100-2026_09_14-17_48_36.tar.zst
|
||||
2026-09-14T17:48:45+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] 8/8 provision guest 9201
|
||||
2026-09-14T17:48:46+02:00 felhom felhom-bootstrap.sh[1446]: [SKIP] pool felhom already exists
|
||||
2026-09-14T17:48:46+02:00 felhom felhom-bootstrap.sh[3458]: === felhom-agent 0.130.0 selftest=provision (vmid=9201 customer=tester-1 hostname=tester-1) ===
|
||||
2026-09-14T17:48:46+02:00 felhom felhom-bootstrap.sh[3458]: --- front half: bring-up (provision) local:backup/vzdump-lxc-9100-2026_09_14-17_48_36.tar.zst → vmid 9201 ---
|
||||
2026-09-14T17:49:34+02:00 felhom felhom-bootstrap.sh[3458]: time=2026-09-14T17:49:34.992+02:00 level=INFO msg="bring-up: pool membership re-asserted" vmid=9201 pool=felhom
|
||||
2026-09-14T17:49:34+02:00 felhom felhom-bootstrap.sh[3458]: [OK] front half: vmid 9201 up (boot+running) in 49s; MAC=BC:24:11:B7:25:AA
|
||||
2026-09-14T17:49:34+02:00 felhom felhom-bootstrap.sh[3458]: --- back half: mint per-guest token + populate bootstrap config mount ---
|
||||
2026-09-14T17:49:35+02:00 felhom sudo[4482]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/chown --reference=/var/lib/felhom-agent /var/lib/felhom-agent/guests /var/lib/felhom-agent/guests/9201
|
||||
2026-09-14T17:49:35+02:00 felhom sudo[4482]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:35+02:00 felhom sudo[4482]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:35+02:00 felhom sudo[4485]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/chown -R 100000:100000 /var/lib/felhom-agent/guests/9201/bootstrap
|
||||
2026-09-14T17:49:35+02:00 felhom sudo[4485]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:35+02:00 felhom sudo[4485]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:35+02:00 felhom sudo[4488]: root : PWD=/ ; USER=root ; COMMAND=/usr/sbin/pct set 9201 -mp9 /var/lib/felhom-agent/guests/9201/bootstrap,mp=/etc/felhom-bootstrap,ro=1
|
||||
2026-09-14T17:49:35+02:00 felhom sudo[4488]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:36+02:00 felhom sudo[4488]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:36+02:00 felhom sudo[4550]: root : PWD=/ ; USER=root ; COMMAND=/usr/sbin/pct set 9201 -onboot 1
|
||||
2026-09-14T17:49:36+02:00 felhom sudo[4550]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4550]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4707]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/mkdir -p /var/lib/vz/snippets
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4707]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4707]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4718]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/install -m 0755 -- /tmp/felhom-guest-hook-3285855649.sh /var/lib/vz/snippets/felhom-guest-hook.sh
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4718]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4718]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4735]: root : PWD=/ ; USER=root ; COMMAND=/usr/sbin/pct set 9201 --hookscript local:snippets/felhom-guest-hook.sh
|
||||
2026-09-14T17:49:37+02:00 felhom sudo[4735]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:38+02:00 felhom sudo[4735]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:38+02:00 felhom sudo[5150]: root : PWD=/ ; USER=root ; COMMAND=/usr/bin/mkdir -p /mnt/felhom-drives
|
||||
2026-09-14T17:49:38+02:00 felhom sudo[5150]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:38+02:00 felhom sudo[5150]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:38+02:00 felhom sudo[5153]: root : PWD=/ ; USER=root ; COMMAND=/usr/sbin/pct set 9201 -mp8 /mnt/felhom-drives,mp=/mnt/felhom-drives
|
||||
2026-09-14T17:49:38+02:00 felhom sudo[5153]: pam_unix(sudo:session): session opened for user root(uid=0) by (uid=0)
|
||||
2026-09-14T17:49:39+02:00 felhom sudo[5153]: pam_unix(sudo:session): session closed for user root
|
||||
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: time=2026-09-14T17:49:39.648+02:00 level=INFO msg="provision: back-half complete" vmid=9201 mount=mp9 guest_path=/etc/felhom-bootstrap endpoint=169.254.253.1:8443
|
||||
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: [OK] back half: bootstrap mount mp9 → /etc/felhom-bootstrap on vmid 9201 (host dir /var/lib/felhom-agent/guests/9201/bootstrap)
|
||||
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: local-api endpoint 169.254.253.1:8443 · leaf fp 7bf6119f955f2011bf98514f87101fa3cea82adb4e4028e04b6cd79ac7103218 · token: minted (not printed)
|
||||
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: === selftest=provision OK — guest 9201 provisioned + bootstrap-mounted (KEPT) ===
|
||||
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: next: reboot the guest → the golden's baked controller-bootstrap unit deploys the controller,
|
||||
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[3458]: which PULLS its controller.yaml from the hub (retrieval passphrase) and merges in this local_api.
|
||||
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[1446]: [OK] provision completed
|
||||
2026-09-14T17:49:39+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] rebooting guest 9201 so the baked controller-bootstrap unit picks up the mount
|
||||
2026-09-14T17:49:41+02:00 felhom pct[5370]: <root@pam> starting task UPID:felhom:00001517:00004D76:6AA81795:vzreboot:9201:root@pam:
|
||||
2026-09-14T17:49:41+02:00 felhom pct[5399]: requesting reboot of CT 9201: UPID:felhom:00001517:00004D76:6AA81795:vzreboot:9201:root@pam:
|
||||
2026-09-14T17:49:47+02:00 felhom pct[5370]: <root@pam> end task UPID:felhom:00001517:00004D76:6AA81795:vzreboot:9201:root@pam: OK
|
||||
2026-09-14T17:49:47+02:00 felhom felhom-bootstrap.sh[1446]: [STEP] verify
|
||||
2026-09-14T17:49:48+02:00 felhom felhom-bootstrap.sh[1446]: [OK] pct status: running
|
||||
2026-09-14T17:49:49+02:00 felhom felhom-bootstrap.sh[1446]: [OK] onboot: 1
|
||||
2026-09-14T17:49:50+02:00 felhom felhom-bootstrap.sh[6179]: mp0: local-lvm:vm-9201-disk-1,mp=/var/lib/felhom,backup=1,size=70G
|
||||
2026-09-14T17:49:50+02:00 felhom felhom-bootstrap.sh[6179]: mp8: /mnt/felhom-drives,mp=/mnt/felhom-drives
|
||||
2026-09-14T17:49:50+02:00 felhom felhom-bootstrap.sh[6179]: rootfs: local-lvm:vm-9201-disk-0,size=32G
|
||||
2026-09-14T17:49:52+02:00 felhom felhom-bootstrap.sh[1446]: [OK] pool: guest 9201 is a member of felhom
|
||||
2026-09-14T17:49:53+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentBase@/ present (user+token)
|
||||
2026-09-14T17:49:54+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/pool/felhom present (user+token)
|
||||
2026-09-14T17:49:55+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentStore@/storage/local present (user+token)
|
||||
2026-09-14T17:49:57+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentStore@/storage/local-lvm present (user+token)
|
||||
2026-09-14T17:49:58+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentStore@/storage/felhom-pbs present (user+token)
|
||||
2026-09-14T17:49:59+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990000 present (user+token)
|
||||
2026-09-14T17:50:00+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990001 present (user+token)
|
||||
2026-09-14T17:50:01+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990002 present (user+token)
|
||||
2026-09-14T17:50:02+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990003 present (user+token)
|
||||
2026-09-14T17:50:03+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990004 present (user+token)
|
||||
2026-09-14T17:50:04+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990005 present (user+token)
|
||||
2026-09-14T17:50:06+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990006 present (user+token)
|
||||
2026-09-14T17:50:07+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990007 present (user+token)
|
||||
2026-09-14T17:50:08+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990008 present (user+token)
|
||||
2026-09-14T17:50:09+02:00 felhom felhom-bootstrap.sh[1446]: [OK] acl: FelhomAgentGuest@/vms/990009 present (user+token)
|
||||
2026-09-14T17:50:09+02:00 felhom felhom-bootstrap.sh[1446]: [OK] authz signers: 2 (operator-signed self-update armed)
|
||||
2026-09-14T17:50:10+02:00 felhom felhom-bootstrap.sh[1446]: [OK] controller: Up 19 seconds (healthy) (after ~0s)
|
||||
2026-09-14T17:50:11+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] controller image: gitea.dooplex.hu/admin/felhom-controller:0.242.0
|
||||
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] cloudflared: Up 22 seconds
|
||||
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] (confirm in the hub UI that host tester-1-8603a2 reports guest 9201)
|
||||
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1446]: [OK] Day-0 provision SUCCESS — vmid=9201 host_id=tester-1-8603a2 customer=tester-1 golden=local:backup/vzdump-lxc-9100-2026_09_14-17_48_36.tar.zst
|
||||
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1446]: [INFO] root@pam was rotated + vaulted at step 4b — retrieve at hub → host page (the old GUI password no longer works).
|
||||
2026-09-14T17:50:12+02:00 felhom felhom-bootstrap.sh[1168]: felhom-bootstrap: host-install SUCCESS — writing done-flag, disabling unit, scrubbing secrets
|
||||
2026-09-14T17:50:12+02:00 felhom systemd[1]: felhom-bootstrap.service: Deactivated successfully.
|
||||
2026-09-14T17:50:12+02:00 felhom systemd[1]: Finished felhom-bootstrap.service - Felhom host bootstrap (fetch + run felhom-host-install.sh unattended, retry until success).
|
||||
2026-09-14T17:50:12+02:00 felhom systemd[1]: felhom-bootstrap.service: Consumed 1min 24.426s CPU time, 903.4M memory peak.
|
||||
===
|
||||
felhom-bootstrap postinst: arg1=configure date=2026-09-14T15:43:14+00:00
|
||||
Created symlink '/etc/systemd/system/multi-user.target.wants/felhom-bootstrap.service' -> '/usr/lib/systemd/system/felhom-bootstrap.service'.
|
||||
felhom-bootstrap postinst: enabled felhom-bootstrap.service via systemctl
|
||||
===
|
||||
masked
|
||||
/dev/null
|
||||
|
||||
Felhom otthoni szerver
|
||||
|
||||
Ezen a képernyőn nincs teendőd, bejelentkezni sem kell.
|
||||
A beállításhoz kövesd a Felhomtól kapott útmutatót.
|
||||
|
||||
@@ -0,0 +1,23 @@
|
||||
felhom-controller gitea.dooplex.hu/admin/felhom-controller:0.242.0 Up About a minute (healthy)
|
||||
bookstack lscr.io/linuxserver/bookstack:26.05.2 Up 2 minutes (healthy)
|
||||
bookstack-db mariadb:12.3 Up 2 minutes (healthy)
|
||||
filebrowser gtstef/filebrowser:1.3.3-stable Up 2 minutes (healthy)
|
||||
cloudflared cloudflare/cloudflared:2026.6.0 Up 2 minutes
|
||||
traefik traefik:v3.6.7 Up 2 minutes
|
||||
felhom-agent 0.130.0
|
||||
arch: amd64
|
||||
cores: 3
|
||||
features: nesting=1,keyctl=1
|
||||
hookscript: local:snippets/felhom-guest-hook.sh
|
||||
hostname: tester-1
|
||||
memory: 4096
|
||||
mp0: local-lvm:vm-9201-disk-1,mp=/var/lib/felhom,backup=1,size=70G
|
||||
mp8: /mnt/felhom-drives,mp=/mnt/felhom-drives
|
||||
mp9: /var/lib/felhom-agent/guests/9201/bootstrap,mp=/etc/felhom-bootstrap,ro=1
|
||||
net0: name=eth0,bridge=vmbr0,hwaddr=BC:24:11:B7:25:AA,ip=dhcp,type=veth
|
||||
net1: name=eth1,bridge=vmbr9,hwaddr=BC:24:11:3E:48:A0,ip=169.254.253.2/30,type=veth
|
||||
onboot: 1
|
||||
ostype: debian
|
||||
rootfs: local-lvm:vm-9201-disk-0,size=32G
|
||||
swap: 512
|
||||
unprivileged: 1
|
||||
@@ -0,0 +1,151 @@
|
||||
2026-09-14T15:49:38.999512914Z 2026-09-14T15:49:38Z INF Starting tunnel tunnelID=52d0c214-b833-477c-86d8-f787d9b550dd
|
||||
2026-09-14T15:49:38.999576343Z 2026-09-14T15:49:38Z INF Version 2026.6.0 (Checksum 17d853580a4dd9d4d6613691c9123039c20712c38e504f028c0bb4454d43e19f)
|
||||
2026-09-14T15:49:38.999728849Z 2026-09-14T15:49:38Z INF GOOS: linux, GOVersion: go1.26.4, GoArch: amd64
|
||||
2026-09-14T15:49:38.999785145Z 2026-09-14T15:49:38Z INF Settings: map[no-autoupdate:true]
|
||||
2026-09-14T15:49:38.999857390Z 2026-09-14T15:49:38Z INF Environmental variables map[TUNNEL_TOKEN:*****]
|
||||
2026-09-14T15:49:39.024367804Z 2026-09-14T15:49:39Z INF Generated Connector ID: ea77a4c7-c3b9-4aea-8fe5-5c68522bb6cc
|
||||
2026-09-14T15:49:39.049982099Z 2026-09-14T15:49:39Z INF Initial protocol quic
|
||||
2026-09-14T15:49:39.066203986Z 2026-09-14T15:49:39Z INF ICMP proxy will use 172.18.0.4 as source for IPv4
|
||||
2026-09-14T15:49:39.066233351Z 2026-09-14T15:49:39Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
|
||||
2026-09-14T15:49:39.066236206Z 2026-09-14T15:49:39Z WRN The user running cloudflared process has a GID (group ID) that is not within ping_group_range. You might need to add that user to a group within that range, or instead update the range to encompass a group the user is already in by modifying /proc/sys/net/ipv4/ping_group_range. Otherwise cloudflared will not be able to ping this network error="Group ID 65532 is not between ping group 65534 to 65534"
|
||||
2026-09-14T15:49:39.066238942Z 2026-09-14T15:49:39Z WRN ICMP proxy feature is disabled error="cannot create ICMPv4 proxy: Group ID 65532 is not between ping group 65534 to 65534 nor ICMPv6 proxy: socket: permission denied"
|
||||
2026-09-14T15:49:39.134260940Z 2026-09-14T15:49:39Z INF ICMP proxy will use 172.18.0.4 as source for IPv4
|
||||
2026-09-14T15:49:39.134540283Z 2026-09-14T15:49:39Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
|
||||
2026-09-14T15:49:39.134867357Z 2026-09-14T15:49:39Z INF Starting metrics server on [::]:20241/metrics
|
||||
2026-09-14T15:49:39.204767098Z 2026-09-14T15:49:39Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=0 event=0 ip=198.41.200.13
|
||||
2026-09-14T15:49:39.599958014Z 2026-09-14T15:49:39Z INF Registered tunnel connection connIndex=0 connection=9556646b-50ba-46db-a002-66d974889db7 event=0 ip=198.41.200.13 location=vie05 protocol=quic
|
||||
2026-09-14T15:49:39.600280209Z 2026-09-14T15:49:39Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=1 event=0 ip=198.41.192.227
|
||||
2026-09-14T15:49:40.306157317Z 2026-09-14T15:49:40Z INF Registered tunnel connection connIndex=1 connection=acf83f3b-2b0a-4fa9-aeb9-3cc5382caf42 event=0 ip=198.41.192.227 location=bud01 protocol=quic
|
||||
2026-09-14T15:49:40.600067753Z 2026-09-14T15:49:40Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=2 event=0 ip=198.41.192.37
|
||||
2026-09-14T15:49:41.174547902Z 2026-09-14T15:49:41Z INF Initiating graceful shutdown due to signal terminated ...
|
||||
2026-09-14T15:49:41.192128808Z 2026-09-14T15:49:41Z ERR failed to run the datagram handler error="context canceled" connIndex=0 event=0 ip=198.41.200.13
|
||||
2026-09-14T15:49:41.192155028Z 2026-09-14T15:49:41Z ERR failed to serve tunnel connection error="accept stream listener encountered a failure while serving" connIndex=0 event=0 ip=198.41.200.13
|
||||
2026-09-14T15:49:41.192166198Z 2026-09-14T15:49:41Z ERR Serve tunnel error error="accept stream listener encountered a failure while serving" connIndex=0 event=0 ip=198.41.200.13
|
||||
2026-09-14T15:49:41.192169044Z 2026-09-14T15:49:41Z INF Retrying connection in up to 1s connIndex=0 event=0 ip=198.41.200.13
|
||||
2026-09-14T15:49:41.194385401Z 2026-09-14T15:49:41Z ERR failed to run the datagram handler error="context canceled" connIndex=1 event=0 ip=198.41.192.227
|
||||
2026-09-14T15:49:41.194437338Z 2026-09-14T15:49:41Z ERR failed to serve tunnel connection error="accept stream listener encountered a failure while serving" connIndex=1 event=0 ip=198.41.192.227
|
||||
2026-09-14T15:49:41.194441867Z 2026-09-14T15:49:41Z ERR Serve tunnel error error="accept stream listener encountered a failure while serving" connIndex=1 event=0 ip=198.41.192.227
|
||||
2026-09-14T15:49:41.194444342Z 2026-09-14T15:49:41Z INF Retrying connection in up to 1s connIndex=1 event=0 ip=198.41.192.227
|
||||
2026-09-14T15:49:41.296656821Z 2026-09-14T15:49:41Z INF Registered tunnel connection connIndex=2 connection=42080413-3923-4da5-9d97-f4f49082e35c event=0 ip=198.41.192.37 location=bud01 protocol=quic
|
||||
2026-09-14T15:49:41.322984373Z 2026-09-14T15:49:41Z ERR failed to run the datagram handler error="Application error 0x0 (remote)" connIndex=2 event=0 ip=198.41.192.37
|
||||
2026-09-14T15:49:41.323015802Z 2026-09-14T15:49:41Z ERR failed to serve tunnel connection error="accept stream listener encountered a failure while serving" connIndex=2 event=0 ip=198.41.192.37
|
||||
2026-09-14T15:49:41.323020481Z 2026-09-14T15:49:41Z ERR Serve tunnel error error="accept stream listener encountered a failure while serving" connIndex=2 event=0 ip=198.41.192.37
|
||||
2026-09-14T15:49:41.323023917Z 2026-09-14T15:49:41Z INF Retrying connection in up to 1s connIndex=2 event=0 ip=198.41.192.37
|
||||
2026-09-14T15:49:41.601241508Z 2026-09-14T15:49:41Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=3 event=0 ip=198.41.200.23
|
||||
2026-09-14T15:49:41.917089812Z 2026-09-14T15:49:41Z INF Registered tunnel connection connIndex=3 connection=3fd734ce-d1d6-401d-b315-ed2ac8a6584f event=0 ip=198.41.200.23 location=vie06 protocol=quic
|
||||
2026-09-14T15:49:41.944469648Z 2026-09-14T15:49:41Z ERR failed to run the datagram handler error="Application error 0x0 (remote)" connIndex=3 event=0 ip=198.41.200.23
|
||||
2026-09-14T15:49:41.944506507Z 2026-09-14T15:49:41Z ERR failed to serve tunnel connection error="accept stream listener encountered a failure while serving" connIndex=3 event=0 ip=198.41.200.23
|
||||
2026-09-14T15:49:41.944585806Z 2026-09-14T15:49:41Z ERR Serve tunnel error error="accept stream listener encountered a failure while serving" connIndex=3 event=0 ip=198.41.200.23
|
||||
2026-09-14T15:49:41.944660667Z 2026-09-14T15:49:41Z INF Retrying connection in up to 1s connIndex=3 event=0 ip=198.41.200.23
|
||||
2026-09-14T15:49:42.601150420Z 2026-09-14T15:49:42Z ERR Connection terminated connIndex=0
|
||||
2026-09-14T15:49:42.601186098Z 2026-09-14T15:49:42Z ERR Connection terminated connIndex=1
|
||||
2026-09-14T15:49:42.601190225Z 2026-09-14T15:49:42Z ERR Connection terminated connIndex=2
|
||||
2026-09-14T15:49:42.601193632Z 2026-09-14T15:49:42Z ERR Connection terminated connIndex=3
|
||||
2026-09-14T15:49:42.601210032Z 2026-09-14T15:49:42Z ERR no more connections active and exiting
|
||||
2026-09-14T15:49:42.601212557Z 2026-09-14T15:49:42Z INF Tunnel server stopped
|
||||
2026-09-14T15:49:42.601291795Z 2026-09-14T15:49:42Z INF Metrics server stopped
|
||||
2026-09-14T15:49:50.440523819Z 2026-09-14T15:49:50Z INF Starting tunnel tunnelID=52d0c214-b833-477c-86d8-f787d9b550dd
|
||||
2026-09-14T15:49:50.441128914Z 2026-09-14T15:49:50Z INF Version 2026.6.0 (Checksum 17d853580a4dd9d4d6613691c9123039c20712c38e504f028c0bb4454d43e19f)
|
||||
2026-09-14T15:49:50.441275599Z 2026-09-14T15:49:50Z INF GOOS: linux, GOVersion: go1.26.4, GoArch: amd64
|
||||
2026-09-14T15:49:50.441460837Z 2026-09-14T15:49:50Z INF Settings: map[no-autoupdate:true]
|
||||
2026-09-14T15:49:50.441796176Z 2026-09-14T15:49:50Z INF Environmental variables map[TUNNEL_TOKEN:*****]
|
||||
2026-09-14T15:49:50.463992058Z 2026-09-14T15:49:50Z INF Generated Connector ID: 8ac0a821-f4db-47f5-b996-5496f31ea266
|
||||
2026-09-14T15:49:50.494034178Z 2026-09-14T15:49:50Z INF Initial protocol quic
|
||||
2026-09-14T15:49:50.531026985Z 2026-09-14T15:49:50Z INF ICMP proxy will use 172.18.0.2 as source for IPv4
|
||||
2026-09-14T15:49:50.534817545Z 2026-09-14T15:49:50Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
|
||||
2026-09-14T15:49:50.534846500Z 2026-09-14T15:49:50Z WRN The user running cloudflared process has a GID (group ID) that is not within ping_group_range. You might need to add that user to a group within that range, or instead update the range to encompass a group the user is already in by modifying /proc/sys/net/ipv4/ping_group_range. Otherwise cloudflared will not be able to ping this network error="Group ID 65532 is not between ping group 65534 to 65534"
|
||||
2026-09-14T15:49:50.534858192Z 2026-09-14T15:49:50Z WRN ICMP proxy feature is disabled error="cannot create ICMPv4 proxy: Group ID 65532 is not between ping group 65534 to 65534 nor ICMPv6 proxy: socket: permission denied"
|
||||
2026-09-14T15:49:50.613981012Z 2026-09-14T15:49:50Z INF ICMP proxy will use 172.18.0.2 as source for IPv4
|
||||
2026-09-14T15:49:50.614011629Z 2026-09-14T15:49:50Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
|
||||
2026-09-14T15:49:50.614014604Z 2026-09-14T15:49:50Z INF Starting metrics server on [::]:20241/metrics
|
||||
2026-09-14T15:49:50.695759212Z 2026-09-14T15:49:50Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=0 event=0 ip=198.41.192.57
|
||||
2026-09-14T15:49:51.300625796Z 2026-09-14T15:49:51Z INF Registered tunnel connection connIndex=0 connection=c9deac37-2853-48f3-bd84-3539af676872 event=0 ip=198.41.192.57 location=bud01 protocol=quic
|
||||
2026-09-14T15:49:51.300842583Z 2026-09-14T15:49:51Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=1 event=0 ip=198.41.200.63
|
||||
2026-09-14T15:49:51.597962161Z 2026-09-14T15:49:51Z INF Registered tunnel connection connIndex=1 connection=e7c269fa-8f91-4786-81ee-d478b90c1144 event=0 ip=198.41.200.63 location=vie06 protocol=quic
|
||||
2026-09-14T15:49:52.337158979Z 2026-09-14T15:49:52Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=2 event=0 ip=198.41.200.43
|
||||
2026-09-14T15:49:52.660786683Z 2026-09-14T15:49:52Z INF Registered tunnel connection connIndex=2 connection=8cae61f1-446f-4fa9-b8e5-11fafd2b0de8 event=0 ip=198.41.200.43 location=vie05 protocol=quic
|
||||
2026-09-14T15:49:53.337206513Z 2026-09-14T15:49:53Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=3 event=0 ip=198.41.192.167
|
||||
2026-09-14T15:49:53.956135989Z 2026-09-14T15:49:53Z INF Registered tunnel connection connIndex=3 connection=80ca33ef-e8f2-4334-8d20-009ec3712025 event=0 ip=198.41.192.167 location=bud01 protocol=quic
|
||||
2026-09-14T15:49:56.690559748Z 2026-09-14T15:49:56Z INF +-------------------------------------------------------------------------------------+
|
||||
2026-09-14T15:49:56.690624090Z 2026-09-14T15:49:56Z INF | CONNECTIVITY PRE-CHECKS |
|
||||
2026-09-14T15:49:56.690631473Z 2026-09-14T15:49:56Z INF +-------------------------------------------------------------------------------------+
|
||||
2026-09-14T15:49:56.690637494Z 2026-09-14T15:49:56Z INF | COMPONENT TARGET STATUS DETAILS |
|
||||
2026-09-14T15:49:56.690642294Z 2026-09-14T15:49:56Z INF | DNS Resolution region1.v2.argotunnel.com PASS DNS Resolved successfully |
|
||||
2026-09-14T15:49:56.690646481Z 2026-09-14T15:49:56Z INF | DNS Resolution region2.v2.argotunnel.com PASS DNS Resolved successfully |
|
||||
2026-09-14T15:49:56.690649858Z 2026-09-14T15:49:56Z INF | UDP Connectivity region1.v2.argotunnel.com PASS QUIC connection successful |
|
||||
2026-09-14T15:49:56.690837050Z 2026-09-14T15:49:56Z INF | UDP Connectivity region2.v2.argotunnel.com PASS QUIC connection successful |
|
||||
2026-09-14T15:49:56.690842430Z 2026-09-14T15:49:56Z INF | TCP Connectivity region1.v2.argotunnel.com PASS HTTP/2 connection successful |
|
||||
2026-09-14T15:49:56.690845656Z 2026-09-14T15:49:56Z INF | TCP Connectivity region2.v2.argotunnel.com PASS HTTP/2 connection successful |
|
||||
2026-09-14T15:49:56.690849062Z 2026-09-14T15:49:56Z INF | Cloudflare API api.cloudflare.com:443 PASS API is reachable |
|
||||
2026-09-14T15:49:56.690852989Z 2026-09-14T15:49:56Z INF | |
|
||||
2026-09-14T15:49:56.690855895Z 2026-09-14T15:49:56Z INF | SUMMARY: Environment is healthy. cloudflared will use 'quic' as primary protocol. |
|
||||
2026-09-14T15:49:56.690858911Z 2026-09-14T15:49:56Z INF +-------------------------------------------------------------------------------------+
|
||||
2026-09-14T15:49:56.690861846Z 2026-09-14T15:49:56Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region1.v2.argotunnel.com
|
||||
2026-09-14T15:49:56.690867828Z 2026-09-14T15:49:56Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region2.v2.argotunnel.com
|
||||
2026-09-14T15:49:56.690870773Z 2026-09-14T15:49:56Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region1.v2.argotunnel.com
|
||||
2026-09-14T15:49:56.690898194Z 2026-09-14T15:49:56Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region2.v2.argotunnel.com
|
||||
2026-09-14T15:49:56.690919945Z 2026-09-14T15:49:56Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region1.v2.argotunnel.com
|
||||
2026-09-14T15:49:56.690924283Z 2026-09-14T15:49:56Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=region2.v2.argotunnel.com
|
||||
2026-09-14T15:49:56.690928090Z 2026-09-14T15:49:56Z INF precheck component="Cloudflare API" details="API is reachable" run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 status=pass target=api.cloudflare.com:443
|
||||
2026-09-14T15:49:56.690932559Z 2026-09-14T15:49:56Z INF precheck complete hard_fail=false run_id=09f3250c-5ae6-4a5a-8827-e3f2e36091f5 suggested_protocol=quic
|
||||
2026-09-14T15:51:18.127552753Z 2026-09-14T15:51:18Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T15:51:18.382956475Z 2026-09-14T15:51:18Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T15:53:26.645683195Z 2026-09-14T15:53:26Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:00:49.819488978Z 2026-09-14T16:00:49Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:00:55.068310269Z 2026-09-14T16:00:55Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:00.288754117Z 2026-09-14T16:01:00Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:05.511590962Z 2026-09-14T16:01:05Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:10.687833923Z 2026-09-14T16:01:10Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:15.868177506Z 2026-09-14T16:01:15Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:21.073440415Z 2026-09-14T16:01:21Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:26.298439413Z 2026-09-14T16:01:26Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:31.483912452Z 2026-09-14T16:01:31Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:36.664012316Z 2026-09-14T16:01:36Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:41.847764896Z 2026-09-14T16:01:41Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:01:47.029641011Z 2026-09-14T16:01:47Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:08:41.383715295Z 2026-09-14T16:08:41Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:08:47.706971475Z 2026-09-14T16:08:47Z WRN No ingress rules were defined in provided config (if any) nor from the cli, cloudflared will return 503 for all incoming HTTP requests
|
||||
2026-09-14T16:17:20.849332808Z 2026-09-14T16:17:20Z INF Starting tunnel tunnelID=52d0c214-b833-477c-86d8-f787d9b550dd
|
||||
2026-09-14T16:17:20.852203639Z 2026-09-14T16:17:20Z INF Version 2026.6.0 (Checksum 17d853580a4dd9d4d6613691c9123039c20712c38e504f028c0bb4454d43e19f)
|
||||
2026-09-14T16:17:20.852256829Z 2026-09-14T16:17:20Z INF GOOS: linux, GOVersion: go1.26.4, GoArch: amd64
|
||||
2026-09-14T16:17:20.852260846Z 2026-09-14T16:17:20Z INF Settings: map[no-autoupdate:true]
|
||||
2026-09-14T16:17:20.852263752Z 2026-09-14T16:17:20Z INF Environmental variables map[TUNNEL_TOKEN:*****]
|
||||
2026-09-14T16:17:20.871223708Z 2026-09-14T16:17:20Z INF Generated Connector ID: daa6aa70-d3a8-4bb3-98d7-3929ced4bae9
|
||||
2026-09-14T16:17:20.912520359Z 2026-09-14T16:17:20Z INF Initial protocol quic
|
||||
2026-09-14T16:17:20.934920384Z 2026-09-14T16:17:20Z INF ICMP proxy will use 172.18.0.4 as source for IPv4
|
||||
2026-09-14T16:17:20.934966972Z 2026-09-14T16:17:20Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
|
||||
2026-09-14T16:17:20.934983923Z 2026-09-14T16:17:20Z WRN The user running cloudflared process has a GID (group ID) that is not within ping_group_range. You might need to add that user to a group within that range, or instead update the range to encompass a group the user is already in by modifying /proc/sys/net/ipv4/ping_group_range. Otherwise cloudflared will not be able to ping this network error="Group ID 65532 is not between ping group 65534 to 65534"
|
||||
2026-09-14T16:17:20.934988492Z 2026-09-14T16:17:20Z WRN ICMP proxy feature is disabled error="cannot create ICMPv4 proxy: Group ID 65532 is not between ping group 65534 to 65534 nor ICMPv6 proxy: socket: permission denied"
|
||||
2026-09-14T16:17:21.014053052Z 2026-09-14T16:17:21Z INF ICMP proxy will use 172.18.0.4 as source for IPv4
|
||||
2026-09-14T16:17:21.014718419Z 2026-09-14T16:17:21Z INF ICMP proxy will use ::1 in zone lo as source for IPv6
|
||||
2026-09-14T16:17:21.015779168Z 2026-09-14T16:17:21Z INF Starting metrics server on [::]:20241/metrics
|
||||
2026-09-14T16:17:21.115256506Z 2026-09-14T16:17:21Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=0 event=0 ip=198.41.192.47
|
||||
2026-09-14T16:17:21.519415740Z 2026-09-14T16:17:21Z INF Registered tunnel connection connIndex=0 connection=f21803bc-ba29-4b78-80d0-65fb5e95313c event=0 ip=198.41.192.47 location=bud01 protocol=quic
|
||||
2026-09-14T16:17:21.519485050Z 2026-09-14T16:17:21Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=1 event=0 ip=198.41.200.193
|
||||
2026-09-14T16:17:21.926166721Z 2026-09-14T16:17:21Z INF Registered tunnel connection connIndex=1 connection=6ea3cc36-fe6f-493e-9774-820e1b618503 event=0 ip=198.41.200.193 location=vie06 protocol=quic
|
||||
2026-09-14T16:17:22.518251261Z 2026-09-14T16:17:22Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=2 event=0 ip=198.41.200.23
|
||||
2026-09-14T16:17:22.785054529Z 2026-09-14T16:17:22Z INF Registered tunnel connection connIndex=2 connection=97263e3a-2595-4950-b349-de9bd2782c14 event=0 ip=198.41.200.23 location=vie06 protocol=quic
|
||||
2026-09-14T16:17:23.518709784Z 2026-09-14T16:17:23Z INF Tunnel connection curve preferences: [X25519MLKEM768 CurveID(65074) CurveP256] connIndex=3 event=0 ip=198.41.192.37
|
||||
2026-09-14T16:17:24.199823321Z 2026-09-14T16:17:24Z INF Registered tunnel connection connIndex=3 connection=9456de1f-d1e5-4a84-bfe1-555a12c6de89 event=0 ip=198.41.192.37 location=bud01 protocol=quic
|
||||
2026-09-14T16:17:27.091056710Z 2026-09-14T16:17:27Z INF +-------------------------------------------------------------------------------------+
|
||||
2026-09-14T16:17:27.091104571Z 2026-09-14T16:17:27Z INF | CONNECTIVITY PRE-CHECKS |
|
||||
2026-09-14T16:17:27.091109660Z 2026-09-14T16:17:27Z INF +-------------------------------------------------------------------------------------+
|
||||
2026-09-14T16:17:27.091170153Z 2026-09-14T16:17:27Z INF | COMPONENT TARGET STATUS DETAILS |
|
||||
2026-09-14T16:17:27.091175353Z 2026-09-14T16:17:27Z INF | DNS Resolution region1.v2.argotunnel.com PASS DNS Resolved successfully |
|
||||
2026-09-14T16:17:27.091178058Z 2026-09-14T16:17:27Z INF | DNS Resolution region2.v2.argotunnel.com PASS DNS Resolved successfully |
|
||||
2026-09-14T16:17:27.091180513Z 2026-09-14T16:17:27Z INF | UDP Connectivity region1.v2.argotunnel.com PASS QUIC connection successful |
|
||||
2026-09-14T16:17:27.091182867Z 2026-09-14T16:17:27Z INF | UDP Connectivity region2.v2.argotunnel.com PASS QUIC connection successful |
|
||||
2026-09-14T16:17:27.091185151Z 2026-09-14T16:17:27Z INF | TCP Connectivity region1.v2.argotunnel.com PASS HTTP/2 connection successful |
|
||||
2026-09-14T16:17:27.091187376Z 2026-09-14T16:17:27Z INF | TCP Connectivity region2.v2.argotunnel.com PASS HTTP/2 connection successful |
|
||||
2026-09-14T16:17:27.091189600Z 2026-09-14T16:17:27Z INF | Cloudflare API api.cloudflare.com:443 PASS API is reachable |
|
||||
2026-09-14T16:17:27.091191834Z 2026-09-14T16:17:27Z INF | |
|
||||
2026-09-14T16:17:27.091194048Z 2026-09-14T16:17:27Z INF | SUMMARY: Environment is healthy. cloudflared will use 'quic' as primary protocol. |
|
||||
2026-09-14T16:17:27.091196272Z 2026-09-14T16:17:27Z INF +-------------------------------------------------------------------------------------+
|
||||
2026-09-14T16:17:27.091198616Z 2026-09-14T16:17:27Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region1.v2.argotunnel.com
|
||||
2026-09-14T16:17:27.091359839Z 2026-09-14T16:17:27Z INF precheck component="DNS Resolution" details="DNS Resolved successfully" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region2.v2.argotunnel.com
|
||||
2026-09-14T16:17:27.091381139Z 2026-09-14T16:17:27Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region1.v2.argotunnel.com
|
||||
2026-09-14T16:17:27.091384055Z 2026-09-14T16:17:27Z INF precheck component="UDP Connectivity" details="QUIC connection successful" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region2.v2.argotunnel.com
|
||||
2026-09-14T16:17:27.091386700Z 2026-09-14T16:17:27Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region1.v2.argotunnel.com
|
||||
2026-09-14T16:17:27.091389305Z 2026-09-14T16:17:27Z INF precheck component="TCP Connectivity" details="HTTP/2 connection successful" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=region2.v2.argotunnel.com
|
||||
2026-09-14T16:17:27.091391809Z 2026-09-14T16:17:27Z INF precheck component="Cloudflare API" details="API is reachable" run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 status=pass target=api.cloudflare.com:443
|
||||
2026-09-14T16:17:27.091394263Z 2026-09-14T16:17:27Z INF precheck complete hard_fail=false run_id=365159b5-4e86-4a0d-89ec-81c445e60ca9 suggested_protocol=quic
|
||||
@@ -0,0 +1,116 @@
|
||||
2026-09-14T16:17:22.093450581Z 2026/09/14 16:17:22 [INFO] local-api: channel up (agent 169.254.253.1:8443) — guest 9201, 3 mount(s) visible
|
||||
2026-09-14T16:17:22.093536461Z 2026/09/14 16:17:22 [INFO] local-api: mount mp0 → /var/lib/felhom (storage=local-lvm, class=, backup=true)
|
||||
2026-09-14T16:17:22.093544305Z 2026/09/14 16:17:22 [INFO] local-api: mount mp9 → /etc/felhom-bootstrap (storage=/var/lib/felhom-agent/guests/9201/bootstrap, class=, backup=false)
|
||||
2026-09-14T16:17:22.093548503Z 2026/09/14 16:17:22 [INFO] local-api: mount mp8 → /mnt/felhom-drives (storage=/mnt/felhom-drives, class=, backup=false)
|
||||
2026-09-14T16:17:22.093552290Z 2026/09/14 16:17:22 [INFO] felhom-controller 0.242.0 starting (customer: tester-1, domain: enkicsifelhom.hu)
|
||||
2026-09-14T16:17:22.094298018Z 2026/09/14 16:17:22 [INFO] [settings] Loaded settings from /opt/docker/felhom-controller/data/settings.json
|
||||
2026-09-14T16:17:22.105255566Z 2026/09/14 16:17:22 [INFO] Encryption key loaded from /opt/docker/felhom-controller/data/encryption.key
|
||||
2026-09-14T16:17:22.252842877Z 2026/09/14 16:17:22 [INFO] [stacks] Using compose command: docker compose
|
||||
2026-09-14T16:17:22.297738956Z 2026/09/14 16:17:22 [INFO] [stacks] ScanStacks complete: 56 stacks found (1 deployed, 55 available)
|
||||
2026-09-14T16:17:22.319230718Z 2026/09/14 16:17:22 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:17:22.319717500Z 2026/09/14 16:17:22 [INFO] [stacks] InjectMissingFields: processed 1 stacks
|
||||
2026-09-14T16:17:22.319989961Z 2026/09/14 16:17:22 [INFO] [stacks] Encryption migration: no stacks needed migration
|
||||
2026-09-14T16:17:22.322142385Z 2026/09/14 16:17:22 [INFO] [quiesce] loop started (poll 5m0s, max-quiesce 30m0s)
|
||||
2026-09-14T16:17:22.324331619Z 2026/09/14 16:17:22 [DEBUG] [stacks] SaveAppConfig: saving /opt/docker/stacks/bookstack — 4 env vars, 0 encrypted, 2 sensitive fields
|
||||
2026-09-14T16:17:22.324351686Z 2026/09/14 16:17:22 [INFO] [stacks] SaveAppConfig: saved config for bookstack
|
||||
2026-09-14T16:17:22.324464578Z 2026/09/14 16:17:22 [INFO] [stacks] desired state for bookstack recorded as "running" (was "")
|
||||
2026-09-14T16:17:22.324641239Z 2026/09/14 16:17:22 [INFO] [stacks] desired-state backfill: 1 app(s) recorded as running, 0 left unrecorded (state ambiguous — legacy boot behaviour retained)
|
||||
2026-09-14T16:17:22.327457628Z 2026/09/14 16:17:22 [INFO] [stacks] installed-images backfill: 0 app(s) recorded, 1 already had a record, 0 left unrecorded (could not be observed completely — unknown, which renders nothing)
|
||||
2026-09-14T16:17:22.327678311Z 2026/09/14 16:17:22 [INFO] [stacks] pin adoption: 0 pinned, 1 already pinned, 0 left unpinned (0 not completely observed, 0 running something the template no longer offers)
|
||||
2026-09-14T16:17:22.327786123Z 2026/09/14 16:17:22 [INFO] [sync] Starting catalog sync (repo: https://gitea.dooplex.hu/admin/app-catalog-felhom.eu.git, interval: 15m0s)
|
||||
2026-09-14T16:17:22.328750331Z 2026/09/14 16:17:22 [INFO] [sync] Starting catalog sync
|
||||
2026-09-14T16:17:22.330730121Z 2026/09/14 16:17:22 [INFO] [sync] Pulling latest from https://gitea.dooplex.hu/admin/app-catalog-felhom.eu.git (branch: main)
|
||||
2026-09-14T16:17:22.337597072Z 2026/09/14 16:17:22 [INFO] Metrics store opened at /opt/docker/felhom-controller/data/metrics.db
|
||||
2026-09-14T16:17:22.337731824Z 2026/09/14 16:17:22 [INFO] Metrics collector started (60s interval)
|
||||
2026-09-14T16:17:22.338642081Z 2026/09/14 16:17:22 [INFO] Notifier enabled (hub: https://hub.felhom.eu)
|
||||
2026-09-14T16:17:22.338806309Z 2026/09/14 16:17:22 [INFO] Self-update enabled (check every 6h, auto-update: false, auto-update time: 04:30)
|
||||
2026-09-14T16:17:22.338900355Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: status-refresh (every 10s)
|
||||
2026-09-14T16:17:22.339080212Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: stack-scan (every 2m0s)
|
||||
2026-09-14T16:17:22.339301146Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: health-probes (every 10s)
|
||||
2026-09-14T16:17:22.340259623Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: system-health (every 5m0s)
|
||||
2026-09-14T16:17:22.342519258Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: deadapp-check (every 30s)
|
||||
2026-09-14T16:17:22.343381133Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: ring-spill (every 30s)
|
||||
2026-09-14T16:17:22.346197972Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job db-dump scheduled for 2026-09-15 02:30 CEST
|
||||
2026-09-14T16:17:22.346247035Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: offsite-credential-retry (every 5m0s)
|
||||
2026-09-14T16:17:22.346251804Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: backup-cache (every 5m0s)
|
||||
2026-09-14T16:17:22.346254548Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job tier2-backup scheduled for 2026-09-15 03:30 CEST
|
||||
2026-09-14T16:17:22.346257193Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job offbox-backup scheduled for 2026-09-15 04:15 CEST
|
||||
2026-09-14T16:17:22.346259728Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job offsite-abandon-sweep scheduled for 2026-09-15 05:10 CEST
|
||||
2026-09-14T16:17:22.346262353Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job offsite-integrity scheduled for 2026-09-15 06:00 CEST
|
||||
2026-09-14T16:17:22.346264718Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job offsite-proof scheduled for 2026-09-15 05:30 CEST
|
||||
2026-09-14T16:17:22.346266851Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job metrics-prune scheduled for 2026-09-15 04:00 CEST
|
||||
2026-09-14T16:17:22.346269086Z 2026/09/14 16:17:22 [INFO] [scheduler] Daily job fill-watch scheduled for 2026-09-15 03:30 CEST
|
||||
2026-09-14T16:17:22.346272131Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: hub-report (every 15m0s)
|
||||
2026-09-14T16:17:22.346274576Z 2026/09/14 16:17:22 [INFO] Hub reporting enabled (every 15m0s to https://hub.felhom.eu)
|
||||
2026-09-14T16:17:22.346276990Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: selfupdate-check (every 6h0m0s)
|
||||
2026-09-14T16:17:22.346279475Z 2026/09/14 16:17:22 [INFO] ========== Startup Self-Test ==========
|
||||
2026-09-14T16:17:22.448502973Z 2026/09/14 16:17:22 [INFO] [PASS] Docker socket: reachable (v29.8.0)
|
||||
2026-09-14T16:17:22.448660177Z 2026/09/14 16:17:22 [INFO] [PASS] Stacks directory: /opt/docker/stacks
|
||||
2026-09-14T16:17:22.448865200Z 2026/09/14 16:17:22 [INFO] [PASS] Data directory: /opt/docker/felhom-controller/data (writable)
|
||||
2026-09-14T16:17:22.449009150Z 2026/09/14 16:17:22 [INFO] [PASS] System data path: /mnt/sys_drive
|
||||
2026-09-14T16:17:22.449107415Z 2026/09/14 16:17:22 [INFO] [WARN] Storage paths: no storage paths registered
|
||||
2026-09-14T16:17:22.450150230Z 2026/09/14 16:17:22 [INFO] [PASS] Git catalog: 53 app definitions found
|
||||
2026-09-14T16:17:22.479120078Z 2026/09/14 16:17:22 [ERROR] [sync] Catalog sync failed: git fetch: git fetch --depth 1 origin main: exit status 128
|
||||
2026-09-14T16:17:22.479169010Z stderr: fatal: unable to access 'https://gitea.dooplex.hu/admin/app-catalog-felhom.eu.git/': Could not resolve host: gitea.dooplex.hu
|
||||
2026-09-14T16:17:22.484564001Z 2026/09/14 16:17:22 [INFO] [sync] Initial sync: Git hiba: git fetch: git fetch --depth 1 origin main: exit status 128
|
||||
2026-09-14T16:17:22.484588046Z stderr: fatal: unable to access 'https://gitea.dooplex.hu/admin/app-catalog-felhom.eu.git/': Could not resolve host: gitea.dooplex.hu
|
||||
2026-09-14T16:17:22.524872060Z 2026/09/14 16:17:22 [INFO] [infra] connected felhom-controller to traefik-public
|
||||
2026-09-14T16:17:22.588233929Z 2026/09/14 16:17:22 [INFO] [PASS] Hub connectivity: https://hub.felhom.eu reachable (HTTP 200)
|
||||
2026-09-14T16:17:22.588263995Z 2026/09/14 16:17:22 [INFO] [PASS] Metrics DB: 0.0 MB
|
||||
2026-09-14T16:17:22.588266971Z 2026/09/14 16:17:22 [INFO] ========================================
|
||||
2026-09-14T16:17:22.588269536Z 2026/09/14 16:17:22 [INFO] Self-test complete: 7 passed, 1 warnings, 0 failed
|
||||
2026-09-14T16:17:22.588475332Z 2026/09/14 16:17:22 [INFO] [scheduler] Starting scheduler with 18 jobs
|
||||
2026-09-14T16:17:22.588482996Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: geo-verify (every 6h0m0s)
|
||||
2026-09-14T16:17:22.588485491Z 2026/09/14 16:17:22 [INFO] Geo-restriction support enabled (CF API token configured)
|
||||
2026-09-14T16:17:22.591267224Z 2026/09/14 16:17:22 [INFO] [report] hub wait channel active (hold ≤240s)
|
||||
2026-09-14T16:17:22.594608337Z 2026/09/14 16:17:22 [INFO] [backup] Found 1 DB dump files across drives
|
||||
2026-09-14T16:17:22.600961754Z 2026/09/14 16:17:22 [INFO] [web] Auth: using password from settings.json
|
||||
2026-09-14T16:17:22.600989857Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: disk-health-check (every 1h0m0s)
|
||||
2026-09-14T16:17:22.601050020Z 2026/09/14 16:17:22 [INFO] [scheduler] Registered periodic job: agent-channel-health (every 1m0s)
|
||||
2026-09-14T16:17:22.605270630Z 2026/09/14 16:17:22 [INFO] Web UI listening on :8080
|
||||
2026-09-14T16:17:22.709642144Z 2026/09/14 16:17:22 [INFO] [backup] Discovered 1 databases
|
||||
2026-09-14T16:17:22.712867710Z 2026/09/14 16:17:22 [INFO] [backup] Discovered app data: 1 apps
|
||||
2026-09-14T16:17:22.720556050Z 2026/09/14 16:17:22 [INFO] [backup] Backup status cache refreshed
|
||||
2026-09-14T16:17:22.774454782Z 2026/09/14 16:17:22 [INFO] [web] FileBrowser sync — no config/compose change, ensured running without recreate (0 storage path(s))
|
||||
2026-09-14T16:17:22.829681433Z 2026/09/14 16:17:22 [INFO] [monitor] Health check: status=ok
|
||||
2026-09-14T16:17:23.138736543Z 2026/09/14 16:17:23 [INFO] [settings] Settings saved
|
||||
2026-09-14T16:17:25.542761932Z 2026/09/14 16:17:25 [INFO] [web] Login from 172.18.0.3:37808
|
||||
2026-09-14T16:17:27.354315855Z 2026/09/14 16:17:27 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:17:27.589948881Z 2026/09/14 16:17:27 [INFO] [report] Building system report
|
||||
2026-09-14T16:17:27.624464263Z 2026/09/14 16:17:27 [INFO] Event pushed: controller_started (info) — Controller elindult (0.242.0)
|
||||
2026-09-14T16:17:27.818015896Z 2026/09/14 16:17:27 [INFO] [monitor] Health check: status=ok
|
||||
2026-09-14T16:17:27.949792003Z 2026/09/14 16:17:27 [INFO] [report] Hub report pushed successfully (6358 bytes)
|
||||
2026-09-14T16:17:27.950384844Z 2026/09/14 16:17:27 [INFO] [settings] Settings saved
|
||||
2026-09-14T16:17:27.950400453Z 2026/09/14 16:17:27 [INFO] Startup hub report sent
|
||||
2026-09-14T16:17:32.378015723Z 2026/09/14 16:17:32 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:17:32.609574042Z 2026/09/14 16:17:32 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:17:32.642262139Z 2026/09/14 16:17:32 [INFO] Health probes: 1 ok (of 1 probed)
|
||||
2026-09-14T16:17:37.402284027Z 2026/09/14 16:17:37 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:17:37.402316608Z 2026/09/14 16:17:37 [INFO] [bootrecon] boot window: fleet settled after 10s (3 identical samples 5s apart) — sweeping
|
||||
2026-09-14T16:17:37.402320966Z 2026/09/14 16:17:37 [INFO] [bootrecon] Boot reconciliation: no boot-orphaned apps (nothing to start)
|
||||
2026-09-14T16:17:42.610551820Z 2026/09/14 16:17:42 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:17:52.610339138Z 2026/09/14 16:17:52 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:17:52.996198672Z 2026/09/14 16:17:52 [INFO] [selfupdate] Current version 0.242.0 is up to date
|
||||
2026-09-14T16:18:02.611786522Z 2026/09/14 16:18:02 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:18:08.774750839Z 2026/09/14 16:18:08 [INFO] [settings] Settings saved
|
||||
2026-09-14T16:18:08.775181799Z 2026/09/14 16:18:08 [INFO] [settings] Settings saved
|
||||
2026-09-14T16:18:08.775335858Z 2026/09/14 16:18:08 [INFO] [web] All sessions invalidated (cleared 1)
|
||||
2026-09-14T16:18:08.775347510Z 2026/09/14 16:18:08 [INFO] [web] dashboard password reset by the customer from 192.168.0.104 (code generation 3 consumed)
|
||||
2026-09-14T16:18:09.047157522Z 2026/09/14 16:18:09 [INFO] [web] Login from 172.18.0.3:37808
|
||||
2026-09-14T16:18:09.295046550Z 2026/09/14 16:18:09 [WARN] [web] Failed login from 172.18.0.3:37808
|
||||
2026-09-14T16:18:10.775548035Z 2026/09/14 16:18:10 [INFO] [report] Building system report
|
||||
2026-09-14T16:18:11.023199356Z 2026/09/14 16:18:11 [INFO] [monitor] Health check: status=ok
|
||||
2026-09-14T16:18:11.143298831Z 2026/09/14 16:18:11 [INFO] [report] Hub report pushed successfully (6501 bytes)
|
||||
2026-09-14T16:18:11.143686499Z 2026/09/14 16:18:11 [INFO] [settings] Settings saved
|
||||
2026-09-14T16:18:11.435340789Z 2026/09/14 16:18:11 [WARN] [web] claim: code lockout tripped (source 192.168.0.104) — 15 min
|
||||
2026-09-14T16:18:11.441716970Z 2026/09/14 16:18:11 [INFO] Event pushed: claim_lockout (warning) — Túl sok hibás beállító kód — a beállító oldal 15 percre zárolva
|
||||
2026-09-14T16:18:12.609271261Z 2026/09/14 16:18:12 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:18:22.604841397Z 2026/09/14 16:18:22 [INFO] [scheduler] Running job: agent-channel-health
|
||||
2026-09-14T16:18:22.613215808Z 2026/09/14 16:18:22 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:18:23.067644662Z 2026/09/14 16:18:23 [INFO] [scheduler] Job agent-channel-health completed (took 463ms)
|
||||
2026-09-14T16:18:32.612327038Z 2026/09/14 16:18:32 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:18:42.610608310Z 2026/09/14 16:18:42 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:18:52.346850450Z 2026/09/14 16:18:52 [INFO] [fillwatch] checked 2 filesystem(s), 0 unreadable/skipped, 0 notification(s); bands: all ok
|
||||
2026-09-14T16:18:52.610364229Z 2026/09/14 16:18:52 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:19:02.614431007Z 2026/09/14 16:19:02 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
2026-09-14T16:19:12.610521414Z 2026/09/14 16:19:12 [INFO] [stacks] Status refresh: 5 containers across 56 stacks
|
||||
@@ -0,0 +1,51 @@
|
||||
2026/09/14 17:47:26 [INFO] appliance 26 BOUND to customer tester-1 (mode=appliance) — delivery staged for its next poll
|
||||
2026/09/14 17:47:42 [INFO] appliance credentials DELIVERED once to appliance 26 (customer=tester-1 mode=appliance; passphrase withheld)
|
||||
2026/09/14 17:47:49 [ERROR] [claim] claim code generated (gen 1) but customer tester-1 has NO registered email — deliver via resend after setting one
|
||||
2026/09/14 17:47:49 [WARN] claim issue for tester-1 on config retrieve: claim: customer tester-1 has no registered email
|
||||
2026/09/14 17:47:49 [INFO] Config downloaded for customer tester-1
|
||||
2026/09/14 17:48:17 [INFO] host enrolled: tester-1-8603a2 (customer tester-1)
|
||||
2026/09/14 17:48:18 [INFO] vaulted break-glass recovery credential for host tester-1-8603a2 (user=root@pam, secret 32 chars)
|
||||
2026/09/14 17:48:19 [INFO] Artifact manifest served for customer tester-1 (agent=0.130.0 golden=0.242.0)
|
||||
2026/09/14 17:48:19 [INFO] Config downloaded for customer tester-1
|
||||
2026/09/14 17:48:35 [INFO] wg registered: host=tester-1-8603a2 pubkey=Ee6/brA1P/ST8N1cw5BD1x3lgJxYjhngS0sCySB2VT0= ip=10.77.0.5/32 changed=true gen=1 sync=ok
|
||||
2026/09/14 17:48:35 [INFO] host-report from tester-1-8603a2 (0 guests, 2 storage targets, 0 backups, 0 restore-tests, 0 pbs-snapshots, 10206 bytes)
|
||||
2026/09/14 17:48:35 [INFO] DR-recipe host-half stored for customer tester-1 (host tester-1-8603a2, v1)
|
||||
2026/09/14 17:48:36 [INFO] tenantsync: provision ok for tester-1 (ns=tester-1, token_id=felhom@pbs!tester-1; secret withheld from logs)
|
||||
2026/09/14 17:48:36 [INFO] pbsdr provisioned for tester-1 (host tester-1-8603a2, ns tester-1, token_id felhom@pbs!tester-1, gen 2; secret stored consume-once, withheld from logs)
|
||||
2026/09/14 17:48:36 [INFO] pbsdr auto-provisioned for tester-1 on WG registration (hands-free cascade)
|
||||
2026/09/14 17:48:36 [INFO] Config downloaded for customer tester-1
|
||||
2026/09/14 17:48:47 [INFO] restore-test staleness: tester-1 local tier: not restore-proven yet, but only watching for 0s (grace 168h0m0s since first contact 2026-09-14T15:48:35Z) — newborn, not a fault
|
||||
2026/09/14 17:49:36 [INFO] Config downloaded for customer tester-1
|
||||
2026/09/14 17:49:57 [INFO] Event from tester-1: controller_started (info) — Controller elindult (0.242.0)
|
||||
2026/09/14 17:49:57 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 17:49:57 [INFO] Received report from tester-1 (2245 bytes)
|
||||
2026/09/14 17:49:57 [INFO] managed floor SERVED for tester-1: floor 0.242.0, agent requirement "0.129.0" from manifest (golden 0.242.0)
|
||||
2026/09/14 17:53:58 [INFO] operator revealed break-glass console credential for host tester-1-8603a2 (user=root@pam, secret 32 chars)
|
||||
2026/09/14 18:03:37 [INFO] host-report from tester-1-8603a2 (1 guests, 2 storage targets, 1 backups, 0 restore-tests, 0 pbs-snapshots, 11091 bytes)
|
||||
2026/09/14 18:03:37 [INFO] DR-recipe host-half stored for customer tester-1 (host tester-1-8603a2, v1)
|
||||
2026/09/14 18:03:37 [INFO] pbs token secret consumed by host tester-1-8603a2 (single-use; value withheld from logs)
|
||||
2026/09/14 18:04:52 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:04:52 [INFO] Received report from tester-1 (2104 bytes)
|
||||
2026/09/14 18:08:45 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:08:45 [INFO] Received report from tester-1 (2113 bytes)
|
||||
2026/09/14 18:08:45 [INFO] [claim] customer tester-1 CLAIMED its dashboard (password set by the customer)
|
||||
2026/09/14 18:08:45 [INFO] [claim] notification prefs for tester-1 left untouched (row exists or no registered email)
|
||||
2026/09/14 18:09:06 [INFO] Event from tester-1: app_deployed (info) — Alkalmazás telepítve: BookStack
|
||||
2026/09/14 18:09:08 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:09:08 [INFO] Received report from tester-1 (2162 bytes)
|
||||
2026/09/14 18:10:14 [INFO] Event from tester-1: app_deployed (info) — Alkalmazás telepítve: PrivateBin
|
||||
2026/09/14 18:10:16 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:10:16 [INFO] Received report from tester-1 (4482 bytes)
|
||||
2026/09/14 18:13:22 [INFO] Event from tester-1: app_removed (info) — Alkalmazás eltávolítva: privatebin
|
||||
2026/09/14 18:13:25 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:13:25 [INFO] Received report from tester-1 (3587 bytes)
|
||||
2026/09/14 18:15:48 [INFO] host-report from tester-1-8603a2 (1 guests, 3 storage targets, 0 backups, 0 restore-tests, 1 pbs-snapshots, 11404 bytes)
|
||||
2026/09/14 18:15:48 [INFO] DR-recipe host-half stored for customer tester-1 (host tester-1-8603a2, v1)
|
||||
2026/09/14 18:16:47 [INFO] restore-test staleness: tester-1 pbs tier: not restore-proven yet, but only watching for 0s (grace 288h0m0s since first contact 2026-09-14T15:48:35Z) — newborn, not a fault
|
||||
2026/09/14 18:17:27 [INFO] Event from tester-1: controller_started (info) — Controller elindult (0.242.0)
|
||||
2026/09/14 18:17:27 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:17:27 [INFO] Received report from tester-1 (6358 bytes)
|
||||
2026/09/14 18:18:11 [INFO] DR-recipe app-half stored for customer tester-1 (v1)
|
||||
2026/09/14 18:18:11 [INFO] Received report from tester-1 (6501 bytes)
|
||||
2026/09/14 18:18:11 [INFO] Event from tester-1: claim_lockout (warning) — Túl sok hibás beállító kód — a beállító oldal 15 percre zárolva
|
||||
2026/09/14 18:18:11 [INFO] Operator email sent for tester-1/claim_lockout
|
||||
|
After Width: | Height: | Size: 90 KiB |
|
After Width: | Height: | Size: 89 KiB |
|
After Width: | Height: | Size: 21 KiB |
|
After Width: | Height: | Size: 4.4 KiB |
|
After Width: | Height: | Size: 4.4 KiB |
|
After Width: | Height: | Size: 4.4 KiB |
|
After Width: | Height: | Size: 5.0 KiB |
|
After Width: | Height: | Size: 4.4 KiB |
|
After Width: | Height: | Size: 4.4 KiB |
|
After Width: | Height: | Size: 4.5 KiB |
|
After Width: | Height: | Size: 4.5 KiB |
|
After Width: | Height: | Size: 4.7 KiB |
|
After Width: | Height: | Size: 6.1 KiB |
|
After Width: | Height: | Size: 6.1 KiB |
|
After Width: | Height: | Size: 6.1 KiB |
|
After Width: | Height: | Size: 7.4 KiB |
|
After Width: | Height: | Size: 7.4 KiB |
|
After Width: | Height: | Size: 7.4 KiB |
|
After Width: | Height: | Size: 4.2 KiB |
|
After Width: | Height: | Size: 4.3 KiB |
|
After Width: | Height: | Size: 90 KiB |
|
After Width: | Height: | Size: 89 KiB |
|
After Width: | Height: | Size: 21 KiB |
|
After Width: | Height: | Size: 4.4 KiB |
|
After Width: | Height: | Size: 4.5 KiB |
|
After Width: | Height: | Size: 4.5 KiB |
|
After Width: | Height: | Size: 4.7 KiB |
|
After Width: | Height: | Size: 6.1 KiB |
|
After Width: | Height: | Size: 7.4 KiB |
|
After Width: | Height: | Size: 7.4 KiB |
|
After Width: | Height: | Size: 4.2 KiB |
|
After Width: | Height: | Size: 3.4 KiB |
|
After Width: | Height: | Size: 3.4 KiB |
|
After Width: | Height: | Size: 90 KiB |
|
After Width: | Height: | Size: 155 KiB |
|
After Width: | Height: | Size: 136 KiB |
|
After Width: | Height: | Size: 129 KiB |
|
After Width: | Height: | Size: 129 KiB |
|
After Width: | Height: | Size: 129 KiB |
|
After Width: | Height: | Size: 129 KiB |
|
After Width: | Height: | Size: 132 KiB |
|
After Width: | Height: | Size: 132 KiB |
@@ -0,0 +1,10 @@
|
||||
--- before 16:13:15
|
||||
volumes: 1
|
||||
containers: 1
|
||||
backup-dir: 40K /mnt/sys_drive/felhom-data/backups/primary/privatebin
|
||||
--- after 16:13:27
|
||||
volumes: 0
|
||||
containers: 0
|
||||
backup-dir: du: cannot access '/mnt/sys_drive/felhom-data/backups/primary/privatebin': No such file or directory
|
||||
front door paste.: 404
|
||||
restore points: {"ok":true,"data":[]}
|
||||
@@ -0,0 +1,8 @@
|
||||
=== LAYER 3 start 2026-09-14T16:20:10Z
|
||||
unclaimed appliances listed (id mac):
|
||||
27 bc:24:11:60:0f:ed
|
||||
VM 332 appliance id: 27
|
||||
HTTP/1.1 303 See Other
|
||||
Location: /hosts?flash=appliance_discarded
|
||||
332 MAC still on hosts page: 0
|
||||
host tester-1-8603a2 delete-impact: {"deletable":false,"escrow_present":false,"guests":1,"log_bundles":0,"pbs_secret_present":true,"recovery_present":true,"reports":3,"status":"ok","wg_peer_bound":true}
|
||||
@@ -0,0 +1,39 @@
|
||||
=== BEFORE 2026-09-14T16:19:54Z
|
||||
VMID NAME STATUS MEM(MB) BOOTDISK(GB) PID
|
||||
331 doorstep-3disk-walk running 8192 200.00 2987289
|
||||
332 doorstep-1disk-control running 4096 64.00 2983525
|
||||
VMID Status Lock Name
|
||||
9201 running demo-hp
|
||||
9202 running demo-hp-scratch
|
||||
Name Type Status Total (KiB) Used (KiB) Available (KiB) %
|
||||
felhom-pbs pbs active 0 0 0 0.00%
|
||||
local dir active 40453376 26489992 11876268 65.48%
|
||||
local-lvm lvmthin active 56487936 24950721 31537214 44.17%
|
||||
nvme-scratch dir active 983379700 23528192 909824896 2.39%
|
||||
/dev/nvme0n1 1006980812800 24092868608 931660693504 3% /mnt/hdd_1
|
||||
total 3330728
|
||||
drwxr-xr-x 2 root root 4096 Sep 14 17:59 .
|
||||
drwxr-xr-x 4 root root 4096 Aug 21 17:42 ..
|
||||
-rw-r--r-- 1 root root 1705322496 Sep 14 17:31 felhom-installer-1.27.0-pve9.2-1.iso
|
||||
-rw-r--r-- 1 root root 1705322496 Sep 14 18:00 felhom-installer-1.27.1-pve9.2-1.iso
|
||||
331
|
||||
332
|
||||
9202
|
||||
48
|
||||
purging VM 331 from related configurations..
|
||||
purging VM 332 from related configurations..
|
||||
=== AFTER 2026-09-14T16:20:06Z
|
||||
VMID Status Lock Name
|
||||
9201 running demo-hp
|
||||
9202 running demo-hp-scratch
|
||||
Name Type Status Total (KiB) Used (KiB) Available (KiB) %
|
||||
felhom-pbs pbs active 0 0 0 0.00%
|
||||
local dir active 40453376 23033320 15332940 56.94%
|
||||
local-lvm lvmthin active 56487936 24950721 31537214 44.17%
|
||||
nvme-scratch dir active 983379700 10132924 923220164 1.03%
|
||||
/dev/nvme0n1 1006980812800 10376114176 945377447936 2% /mnt/hdd_1
|
||||
total 8
|
||||
drwxr-xr-x 2 root root 4096 Sep 14 18:20 .
|
||||
drwxr-xr-x 4 root root 4096 Aug 21 17:42 ..
|
||||
9202
|
||||
ls: cannot access '/root/doorstep': No such file or directory
|
||||