=== STEP_036E VPN1 TABLE201 RUNTIME === timestamp=20260708-125651 mode=VM101 runtime table201/rule201 for existing vpn1 target=vpn1 table201 fwmark0x201 forbidden: table200 changes, production switch, VM100 writes, network/firewall reload, peer changes date=Wed Jul 8 12:56:51 UTC 2026 backup_dir=/root/router-ops-backups/step036e-vpn1-table201-20260708-125651 === before state === vpn1_link_rc=0 table200_default_vpn1_rc=0 before_rule_0x201_rc=1 before_table201_vpn1_rc=1 before_mark201_route_vpn1_rc=1 === guards existing slots === guard_vpn2_link_rc=0 guard_0x202_route_vpn2_rc=0 Error: ipv4: FIB table does not exist. Dump terminated guard_vpn3_link_rc=0 guard_0x203_route_vpn3_rc=0 guard_vpn4_link_rc=0 guard_0x204_route_vpn4_rc=0 guard_vpn5_link_rc=0 guard_0x205_route_vpn5_rc=0 uci_changes_before_rc=0 === rollback script === rollback_vm101=/root/rollback-step036e-vpn1-table201-runtime.sh === add runtime table201/rule201 === route_replace_table201_rc=0 rule201_exists_before_add_rc=1 rule_add_0x201_rc=0 === verify slot201 === vpn1_link_after_rc=0 table201_vpn1_rc=0 rule_0x201_rc=0 mark201_route_vpn1_rc=0 === existing 202..205 still OK === still_0x202_route_vpn2_rc=0 still_0x203_route_vpn3_rc=0 still_0x204_route_vpn4_rc=0 still_0x205_route_vpn5_rc=0 === table200 untouched check === table200_default_vpn1_after_rc=0 table200_file_cmp_rc=0 === current policy summary === 10011: from all fwmark 0x201 lookup 201 10012: from all fwmark 0x202 lookup 202 10013: from all fwmark 0x203 lookup 203 10014: from all fwmark 0x204 lookup 204 10015: from all fwmark 0x205 lookup 205 10019: from all iif eth1 lookup 200 10020: from 10.200.0.0/24 lookup 200 --- table 200 --- default dev vpn1 scope link 10.200.0.0/24 dev eth1 scope link src 10.200.0.2 10.201.0.0/24 dev eth3 scope link src 10.201.0.2 --- table 201 --- default dev vpn1 scope link --- table 202 --- default dev vpn2 scope link --- table 203 --- default dev vpn3 scope link --- table 204 --- default dev vpn4 scope link --- table 205 --- default dev vpn5 scope link === UCI changes after === uci_changes_after_rc=0 === no forbidden action proof === no_table200_change_intended=1 no_production_switch=1 no_network_reload=1 no_firewall_reload=1 no_peer_change=1 vm101_apply_done=1 === STEP_036E RESULT === vpn1_link_rc=0 table200_default_vpn1_rc=0 route_replace_table201_rc=0 rule_add_0x201_rc=0 vpn1_link_after_rc=0 table201_vpn1_rc=0 rule_0x201_rc=0 mark201_route_vpn1_rc=0 still_0x202_route_vpn2_rc=0 still_0x203_route_vpn3_rc=0 still_0x204_route_vpn4_rc=0 still_0x205_route_vpn5_rc=0 table200_default_vpn1_after_rc=0 table200_file_cmp_rc=0 rollback_vm101=/root/rollback-step036e-vpn1-table201-runtime.sh decision=PASS_VPN1_TABLE201_RUNTIME_READY