Incident Records #
One record per incident on Deevnet infrastructure: what broke, how it was found, why it
happened, how service came back, and what was done so it does not happen again. Records are
numbered INC-NNNN in the order they are opened, like
ADRs,
and grouped by year.
Change Management states that “manual changes without validation are considered defects.” Most incidents are what happened when a change reached a live site without the validation that would have caught it. Each record is written so the next person meets the failure mode in a document rather than in the dark.
Like Change Records, these are retained information: evidence, written once, updated only as their actions close. How to write one, and the template, are maintained in the runbook under Incident Management.
Records #
| ID | Date | Incident | Site | Root cause | Actions |
|---|---|---|---|---|---|
| INC-0001 | 2026-09-07 | Firewall Policy Deleted, Total Connectivity Loss | mobile | Empty desired set treated as authoritative by an ungated reconcile | Actions 1β8 done; 3 of 5 open items remain, planned as CHG-0007 |
| INC-0002 | 2026-09-15 | Controller VM Silent β Running but Off the Network | mobile | Not established; restored by a guest reboot | 4 open |