Monitoring A User's SSH? Also... Mysqld Running At 103%cpu & Stats Overload Emails
May 15, 2007
I have 3 questions.
1.) I have a user that's kinda knows a lot about linux. More than me. He has a lot of stuff on the system which I have no idea what it is. Is there any way I can install a SSH log, so I can monitor what he does in shell?
2.) My server seems REALLY sluggish. I ran a top in shell, and mysqld was taking up from 70% to 110% of the cpu. Is there any way to fix this or find out why? I've restarted the server, and it's fluctuating between 50% and 90% now.
3.) I think this MIGHT be related to the sqld issue, but I've received about 12 emails saying
Quote:
"[statscheck] Stats/Server Overload on my server". "MPORTANT: Do not ignore this email.
This is cPanel stats runner on server1.cewxp.com!
While processing the log files for user cewxp, the cpu has been
maxed out for more than a 6 hour period. The current load/uptime line on the server at the time of this email is 15:49:16 up 5 days, 10:52, 2 users, load average: 27.59, 31.36, 31.83"
and also another email
Quote:
IMPORTANT: Do not ignore this email.
This is cPanel stats runner on server1.cewxp.com!
While processing the log files for user vegapunk, the cpu has been maxed out for more than a 6 hour period. The current load/uptime line on the server at the time of this email is 12:34:26 up 5 days, 7:37, 2 users, load average: 19.90, 17.59, 17.97
I run a popular community and there are a number of notifications the user can receive. The notifications are sent via PHP mail() function. For an increasing number of users, emails never get to their mailbox (neither in their junk mail folder). When I look in qmail's logs, I see a lot of these :
Quote:
@40000000469233dd346d5d24 new msg 331743 @40000000469233dd346d610c info msg 331743: bytes 637 from <myscript@mydomain.com> qp 14664 uid 81 @40000000469233dd34bb8cc4 starting delivery 151: msg 331743 to remote user@hotmail.com @40000000469233dd34bb90ac status: local 0/10 remote 1/20 @40000000469233df02a4e334 delivery 151: success: 65.54.244.40_accepted_message./Remote_host_said:_250__<20070709131043.14663.qmail@ns22299.ovh.net>_Queued_mail_for_delivery/ @40000000469233df02a4eb04 status: local 0/10 remote 0/20 @40000000469233df02a4eb04 end msg 331743
So I receive a "250" answer, but with this "Queued_mail_for_delivery" message, and the user never gets anything of the email. This exact message is for an hotmail account, but I get other similar ("queued") messages for other accounts.
Is there anything i can do to prevent this from happenning ? A lot of new registrant get these messages with their validation emails and that is lost customers for me.
I look after a number of sites and monitor their stats. We use both webalizer and AWSTATS so we can have a comparison. Up until recently the stats for both of them where relatively the same, webalizer usually showing higher numbers as it doesn't filter bots but the progression of increase and decrease in stats was proportional. However, over the last few months a curious trend is appearing, the stats in AWSTATS are decreasing every month whereas the stats in Webalizer are increasing, the gap between them now is huge.
I just bought new DS 3 days ago : Intel Core2Duo 2.33 GHz, 2GB DDR2 RAM , 250 GB.
Today mysql automatic stop and not auto restart :|
I checked cron job: has no cron job there. I have just only one site on this server.
I check Check mysql error log:
081115 10:47:52 [Note] /usr/sbin/mysqld: Normal shutdown 081115 10:47:52 InnoDB: Starting shutdown... 081115 10:47:54 InnoDB: Shutdown completed; log sequence number 0 72782 081115 10:47:54 [Note] /usr/sbin/mysqld: Shutdown complete 081115 10:47:54 mysqld ended 081115 10:47:55 mysqld started /usr/sbin/mysqld: File '/var/log/mysql-slow-queries.log' not found (Errcode: 13) 081115 10:47:55 [ERROR] Could not use /var/log/mysql-slow-queries.log for logging (error 13). Turning logging off for the whole duration of the MySQL server process. To turn it on again: fix the cause, shutdown the MySQL server and restart it. 081115 10:47:55 InnoDB: Started; log sequence number 0 72782 081115 10:47:56 [Note] /usr/sbin/mysqld: ready for connections. Version: '5.0.51a-community-log' socket: '/var/lib/mysql/mysql.sock' port: 3306 MySQL Community Edition (GPL)
I've got a strange situation here. We have some software which we run on multiple servers. As of today the software is using 100 percent (sometimes more) of the cpus.
Here is the result from top. It's usually far worse using 100 percent of both cpu's almost all of the time. I just restarted, but the server load is climbing to 20+. Any idea how I can figure out what is going on? The same software on two other identically configured servers runs fine. This server has had no problems for over 6 months, but suddenly this started today. The server is a dual opteron with 4GB of ram. The databases are innodb thus the high memory usage for mysql (innodb buffer pool size)
My server was having a high load so I stop httpd and mysqld. I tried to restart both service but only httpd is starting and mysqld failed. It keeps timing out.
service mysqld start Timeout error occurred trying to start MySQL Daemon. Starting MySQL: [FAILED]
It was working and I only trying to restart it.
The load on my server now is 0 because the website is down.
The upgrade has an error when manage the users database.
PRODUCT, VERSION, VERSION OF MICROUPDATE, OPERATING SYSTEM, ARCHITECTURE OS Microsoft Windows Server 2008 R2 Service Pack 1 x64 Panel version 11.5.30 Update #13, last updated at Sept 1, 2013 03:30 PM
PROBLEM DESCRIPTION In a costumer panel have a one database MSSQL, and assign to this DB 3 users, but the tab option "Users" don't work fot his costumer and show this error:
Error Javascript: TypeError: template is null this.template = template.toString(); in protototype.js 8472831 (lÃnea 807)
ACTUAL RESULT Error Javascript: TypeError: template is null this.template = template.toString(); in protototype.js 8472831 (lÃnea 807)
EXPECTED RESULT Show users in the tab users for database.
On my server, users can connect to any database as long as they have the database user and password. This makes it easier to hack any database on the server. What I want to do is to make the users can only connect to their own databases and not other's.
I tried changing the localhost ip address but it didn't work ( I assume I didn't do it the right way)
i have vps 512 MB ram From HostForWeb working Fine! in 160 websites! Hosted But! in swvps.com with 2 gig ram! Low Working! OverLoad and CPU Usage is Red Alert But HostForWeb VPS with 512 MB Ram good Working I Dont Know Why SWvps.com Is Low with 2 gig ram for me?
I am not sure if my dedicated server is being attacked or if it is legitimate traffic. I need help figuring out the difference and if it is an attack, how to prevent it, and if it is legitimate traffic, how to configure the server to handle the load.
SoftwareCentOS 5.3-32 Apache2 MySQL 5 PHP 5 When I do ps aux|grep httpd|wc -l I get the count of current connected clients of 259 which is always maxing out my MaxClients of 256. I had increased it to 512, and it maxed out, I had increased it to 1024 and it maxed out, and lastly I had setup to 2048 and it works, but slows the entire server down.
My webserver keeps on overloading, causing pages to lag and mysql connections to get clogged. Each time it overloads, it's because of there being too many MySQL connections, and I really just don't know why there are so many. I am not sure whether someone is sabotaging my server or whether there is a hole in my php scripts that causes an abundance of connections, or some very slow query.
i want to kill apache/http and restart it again automatically. i need this because sometime we are not in front of the server to fix an overload issue immediately, which can affect a server very badly. i believe many of us already face this kind of situation and hope there is some kind of script or way to do this.
I have a small VPS, with few websites each one with very low visitors in average less than100 visits per day
CentOS 2.6.9 Plesk PHP 5.1.6 Apache/2.2.3
Few days ago some Forum spammers signed up to one of the forums. One of them: stopforumspam.com/ipcheck/212.178.2.3
Today I was away for few 5 hours after I came back I recived a notice from my script that "SMF could not connect to the database"
I checked and I noticed almost all of my sites are not responding. MySql was working. A script on remote server which uses mysql from my server loaded but with dealy
------------------Next step------------------- log to SSH # uptime # 12:XX:XX up XXX days, 5:06, X users, load average: 10.58, 8.86, 5.86