🚨 Incident Records

Incident Records #

One record per incident on Deevnet infrastructure: what broke, how it was found, why it happened, how service came back, and what was done so it does not happen again. Records are numbered INC-NNNN in the order they are opened, like ADRs, and grouped by year.

Change Management states that “manual changes without validation are considered defects.” Most incidents are what happened when a change reached a live site without the validation that would have caught it. Each record is written so the next person meets the failure mode in a document rather than in the dark.

Like Change Records, these are retained information: evidence, written once, updated only as their actions close. How to write one, and the template, are maintained in the runbook under Incident Management.


Records #

IDDateIncidentSiteRoot causeActions
INC-00012026-09-07Firewall Policy Deleted, Total Connectivity LossmobileEmpty desired set treated as authoritative by an ungated reconcileActions 1–8 done; 3 of 5 open items remain, planned as CHG-0007
INC-00022026-09-15Controller VM Silent β€” Running but Off the NetworkmobileNot established; restored by a guest reboot4 open
Page last modified: September 16, 2026