# STEP_032A firewall integration plan

Dry-run package only. No remote changes were applied in STEP_032A.

## Current observed vpn_out

- zone index: 4
- network: vpn1 vpn2 vpn_user

## Intended STEP_032B change

Add to firewall zone `vpn_out`:

- `vpn3`
- `vpn4`
- `vpn5`

Then reload firewall only.

## Explicitly not included

- no ip rule changes
- no table 200 changes
- no production traffic switch
- no global network restart

## Rollback

Run `ROLLBACK_FIREWALL_VPN_OUT_VPN3_4_5.sh` on VM101.
