## W-2 attempt 2 — field receipt (2026-09-12)

Run `20260912T202600Z` on HFENDULEAM, subject `53d625cd`, executable `edd3d8e0…6dd10e21`, driver `d3891b09…`. Granted by doyle; elevated actions executed by liam under a PID-scoped grant. Driver exit 3.

**No field acceptance. No landing approval.** This receipt records what was measured, not a verdict on the change.

### Arm A — completed, unpopulated (pair-absent precondition)

| trial | serve_rc | stop_rc | wall_ms | outcome | binder |
|---|---|---|---|---|---|
| a-1 | 0 | 0 | 2491 | completed | SAME |
| a-2 | 0 | 0 | 1890 | completed | SAME |
| a-3 | 0 | 0 | 1863 | completed | SAME |

Every row `bootstrap-firewall leg=verify-query program=powershell.exe`.

`serve_rc=0` is **not** admission — `serveverb.rs:233-249` returns 0 unconditionally on `LanUp`. Only a nonzero is a real control error.

The binder comparison read SAME 3/3, canonicalising the backslash form against the forward-slash form of the same path. **Attempt 1 aborted on the harness's binder comparison**; this is the repaired comparator running on the real capture.

### Setup — pair WRITTEN, verification REJECTED AT ENFORCEMENT

Elevated setup executed once (`exit=0`, 20:41:10Z→20:41:18Z). Product stderr:

> `LAN_FIREWALL_UNVERIFIED`: The admission pair was WRITTEN and then could not be verified: Bootstrap rule `spt-core-bootstrap-inbound-tcp` is configured but ActiveStore enforcement is `["ProfileInactive", "NoLocalUser"]`, not Full.

The product states this is **not a refused write** and suggests rerunning bootstrap. Not rerun — one nonce authorizes one execution.

Driver face classification: `unverified-after-write`, `pair_written=yes`, with `enforcement=1` and every other face zero. **These counters classify product OUTPUT; they are not a rule census.**

This is an enforcement-stage rejection. It is **not** effective network admission, and no enforcement cause has been diagnosed. (The earlier A7 setup — not attempt 1 — reported the spec-match rejection.)

### Arm B — UNRUN

Held on the failed positive-reconciliation condition. **Populated-arm timing remains unanswered.** `Full` was never weakened and reconcile was never retried.

### Teardown — VERIFIED

Executed once (`exit=0`). Verified on four independent conditions, not on the receipt alone: zero exit AND successful census AND the product's own `LAN_FIREWALL_CLEAN` AND the owned named rules measured ABSENT. Firewall mutation reversed.

### Residual cleanup — COMPLETED

Rig broker (isolated-home daemon) terminated under a PID-specific authorization after revalidating creation time, executable path, command line and home association; verified absent. The rig brain process exited on its own. Port 29470 clear. Pool released. Production daemon untouched.

The guarded daemon stop refused first, as designed — `DAEMON_STOP_REFUSED`, because a broker-stopping command is never run by an spt endpoint. That refusal was reported, never overridden.

### 5470 guard

Compared at sampled boundaries throughout the run, equal at each. After termination, a bounded per-rule re-check found all eleven captured fields of the named rule unchanged and no listener on 5470, with a negative control proving the predicate could distinguish a missing rule.

**Measured gap:** that is a per-rule comparison, not a census — surrounding rule-population equality is unmeasured. `GUARD_UNCHANGED` establishes equality at sampled boundaries, not that 5470 was never disturbed.

A first re-check attempt hung for ~6 minutes and produced a zero-byte capture; it is recorded as an **instrument failure**, not a firewall result, so the empty output cannot later be read as evidence of equality.

### Evidence

105 files archived with a 106-line manifest, plus a supplemental manifest covering the replacement check and the instrument-failure record. All verify.
