Latest
Post an AI Image and Unfriend MeShe Asked How to Publish Her Bedtime Story. They Called Her a Thief.The AI Hype Cycle: Why the Crash Is Coming, and Who’s Causing ItSix Claude Prompts That Get You Unstuck, and Why the Order MattersDogpiled Over AI Art at the Renaissance FaireClaude Opus 5.5: What the New Release Means for WritersTrump’s AI Force Is a Fire Department With No Fire CodeWhat It Costs to Fix an AI-Written ManuscriptWhen Your Memoir Should Be a NovelThe Hugging Face AI Agent Attack: An Operations ReadingWhen Your Own Memoir Sounds Like BraggingWhat Belongs on a Copyright PageWhat an AI Detector Score on Your Manuscript Is WorthThe Clients Who Pay and VanishThe Quotation Marks That Get Authors SuedThe Work You Would Never Have StartedMonthly or Milestone: How Ghostwriting Gets BilledWhen a Client Thinks the Ghostwriter Used AIThe One-Hour Call Before I Quote Your BookBehind the Book: The Mysterious Island, Neb’s SideHow to Organize Decades of Memories Into a MemoirWhy Rotten Tomatoes Sucks: The Score Does Not Mean What You ThinkWhy Amazon KDP Sucks: They Terminated My Account OvernightIngramSpark: How I Publish Now and WhyWhy Fiverr Sucks for Ghostwriting: The Buyer’s SideWhy eBay Sucks Now: A Seller’s Numbers and a Buyer’s WarningThe Ghost Story TraditionThe Gothic TraditionThe Christmas Ghost Story TraditionBooks to Give a WriterResurrection as a Narrative StructureThe Beach Read ArgumentWhy It’s a Wonderful Life Failed on ReleaseWhat to Read in SpringWhat to Read in SummerWhat to Read in OctoberHow Warner Bros. Dismantled a $17 Billion Cartoon EmpireThe Imaginary Scarcity TrapThe Graph That Goes Vertical Is Usually Somebody Else’sSubstack Is Not Collapsing. The Promise Was.The Disasters That Happen to Ordinary PeopleToba: The Winter That Almost Ended UsJay Stifflemire: Nothing Ever Gets Written DownGeorgie-Ann Getton: I Forgot I Had Free WillAI Detection Cannot Be Evidence, and Publishing Is Using It That WayAI Consciousness Left Philosophy and Entered the LaboratoryThe Office Block Where the Bedrooms AreBlack Tuesday: The Web Ring War Nobody Outside It NoticedThe Web Got Fenced: What AI Search Costs Small SitesWhat the AI Visibility Industry Sells, and What the Evidence Says

Three Days Down Over a Filename

This entry is part 37 of 53 in the series Technology
TL;DR: A few months into the job, the system went down and stayed down for three days. The cause was a log filename change so trivial nobody thought to mention it. The new name format contained a character the operating system considered illegal, the programs couldn’t create their logs, and they simply stopped, leaving no logs to debug with. The fix took one command. Finding it took one question, asked three sleepless days too late: what changed?

A few months after I was hired to run the systems, I made what looked like the most boring request in IT. Our application logs were named with meaningless numbers, and hunting the right log meant guessing. I asked the programmers, a consulting firm writing the applications in a dialect of BASIC, to make the log names rational: include the program name, the date, something a human could read.

They did. They built the new name as program name, dot, date, dot, file type. Perfectly sensible. Except the operating system we ran permitted exactly one dot in a filename, name dot type, and the new format contained two. Every filename the change produced was illegal.

Three days in the dark

The morning after the change went live, the system didn’t come up. Not partially, not with errors we could chase. It simply didn’t come up, and here’s the exquisite part: there were no logs to tell us why, because the failure was the logging. Each program started, attempted to create its log file, was refused by the operating system, and stopped dead. The diagnostic trail and the disease were the same thing.

We spent three days down, three days awake, hunting a catastrophe. That’s what you hunt when the system is dead: something big, something structural. We were archaeologists looking for an earthquake, and the actual cause was a punctuation mark.

On the third day I got smart in the way you only get smart after exhaustion has burned off your assumptions. I gathered everybody and asked one question: tell me every single thing that changed. One person offered a library update, not it. Another offered something else, not it. And then someone mentioned, almost in passing, that the log filenames had changed, and described the format. Back out that change, I said. He did. We were up. That was the problem. That was it.

We spent three days hunting an earthquake. The cause was a punctuation mark.
Share on X

How does a filename change cause a three-day outage?

Everything about that outage was out of proportion. A change too small to document took down the entire company for three days. The fix was one reversal; the search for it consumed seventy-plus hours of downtime and every ounce of the team’s credibility. And the question that solved it, what changed, cost nothing and could have been asked in the first ten minutes. Disasters don’t scale with the size of their causes.

Most of the worst outages I saw across twenty years of disaster recovery work traced back to something this size: a config line, a permission, a dot.

The operational lesson became doctrine for me in two parts. First, when a system that worked yesterday fails today, the first question isn’t “what’s broken,” it is “what changed,” asked of every person who could have changed anything, before any deeper archaeology begins. The answer is usually in the room and usually sounds too small to matter, so nobody volunteers it.

Second, changes get tested before they go live, all of them, with no change too trivial to qualify, because the filename change was precisely the kind that skips testing on the grounds of obvious harmlessness. I pushed for rigid test procedures after that, and got most of what I asked for; a funded staging environment eluded me. That taught its own lesson about how quickly organizations forget three-day outages once the systems hum again.

If you run a company, you don’t need to know what your teams changed last night. You need to know that someone can answer that question in five minutes when everything stops, because someday everything will stop, and the cause will be wearing its harmlessness as camouflage.

For more from this series, see The Disaster Recovery Hub: real disasters, real recoveries, and the plans that survive contact with reality.

Frequently Asked Questions

What usually causes major system outages?
Disproportionately small changes: configuration lines, permissions, naming formats. In this incident a two-character difference in log filenames, illegal on the operating system, stopped every program at startup for three days.
What is the first question to ask when a system goes down?
What changed. Ask it of everyone who could have changed anything before beginning deeper diagnosis. Most sudden failures of previously working systems trace to a recent change that sounded too trivial to mention.
Why do trivial changes skip testing?
Because they look obviously harmless, and obviousness is the camouflage. Effective change control tests everything that touches production, with no triviality exemption, precisely because harm doesn’t scale with apparent size.

About the Author
Richard Lowe, professional ghostwriter

Richard Lowe is a professional ghostwriter and author with 113+ books authored and 54+ ghostwritten. Before writing full time he spent 33 years in enterprise technology, including 20 years as Director of Computer Operations and Technical Services at Trader Joe's. He writes nonfiction, fiction and memoir, and works with executives and experts on books that build authority.

More about Richard Lowe →

Disclaimer

The views and opinions expressed in this blog post are solely those of Richard Lowe and are based on personal experience and research. This content is for informational purposes only and should not be construed as professional legal, financial, accounting, or business advice. Always consult with qualified professionals before making important business or legal decisions. Richard Lowe is not a lawyer, accountant, or licensed professional advisor, and this content does not establish any professional relationship.