Concept and mechanism
Diagnosis must distinguish intention from actual state. After editing a systemd unit, daemon-reload updates definitions known to the manager; it does not automatically restart the process with new arguments. Check the procedure required by the service and observe the real process. In SELinux, correct Unix permissions do not remove a context-based denial. If a directory moved and an appropriate permitted type exists, define persistent mapping and apply restorecon within reviewed scope. An isolated chcon change can be replaced by later relabeling. An AVC is evidence to interpret rather than an instruction to permit every observed access.
Guided application
Hardware changes also require observed identity: udevadm helps inspect attributes and events before writing rules. In a fictional rehearsal, data copying ends at forty minutes, but service works only at ninety-five. If the objective was sixty, recovery missed that commitment. Include dependencies, access, and validation in measured time. The PM should turn the difference into owned actions rather than removing measurement steps to obtain a favorable result. For RUN handover, ask another colleague to execute the procedure using intended access. The author’s presence in a demonstration does not prove on-call-team autonomy.
Service active, old arguments: observe the process as well as on-disk configuration.
Common pitfalls
Daemon-reload as restart; chcon as persistent policy; file restoration as complete recovery.
Related topics: Automate with evidence · Identity, PAM, and SSH · Networking, tunnels, and policies
Accept recovery and operation through outcomes the team can execute.
Reference: systemd lifecycle · Historical LFCE V3.18 (2018-06-12); exam retired 2022-05-01; technical references inspected 2026-09-30