Server Crashing, Cgi And Grsec

Feb 20, 2007

this server is crashing after a few hours... it just got frozen... and after rebooted the server, i was looking at the /var/log/message logs and saw this ( you will see when system restart after the crash ):

Code:
Feb 20 17:35:04 server kernel: grsec: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:13280]
uid/euid:48/48 gid/egid:48/48, parent /us
r/sbin/httpd[httpd:6180] uid/euid:48/48 gid/egid:48/48
Feb 20 17:41:40 server kernel: grsec: From 190.73.138.68: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:27459]
uid/euid:48/48 gid/eg
id:48/48, parent /usr/sbin/httpd[httpd:20166] uid/euid:48/48 gid/egid:48/48
Feb 20 17:45:03 server kernel: grsec: signal 7 sent to /usr/bin/php[php:31710]
uid/euid:0/0 gid/egid:0/0, parent /bin/bash[sh:8963] uid/euid:0/0
gid/egid:0/0
Feb 20 17:48:41 server kernel: grsec: From 87.219.205.218: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:11897]
uid/euid:48/48 gid/e
gid:48/48, parent /usr/sbin/httpd[httpd:8152] uid/euid:48/48 gid/egid:48/48
Feb 20 17:51:04 server kernel: grsec: From 85.58.139.135: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:28508]
uid/euid:48/48 gid/eg
id:48/48, parent /usr/sbin/httpd[httpd:19918] uid/euid:48/48 gid/egid:48/48
Feb 20 17:51:58 server kernel: grsec: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:15615]
uid/euid:48/48 gid/egid:48/48, parent /us
r/sbin/httpd[httpd:2482] uid/euid:48/48 gid/egid:48/48
Feb 20 17:52:08 server kernel: grsec: From 166.114.104.42: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:4662]
uid/euid:48/48 gid/eg
id:48/48, parent /usr/sbin/httpd[httpd:24468] uid/euid:48/48 gid/egid:48/48
Feb 20 17:52:38 server kernel: grsec: From 189.175.50.103: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:12497]
uid/euid:48/48 gid/e
gid:48/48, parent /usr/sbin/httpd[httpd:32213] uid/euid:48/48 gid/egid:48/48
Feb 20 17:54:32 server kernel: grsec: From 83.53.142.7: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:18556]
uid/euid:48/48 gid/egid
:48/48, parent /usr/sbin/httpd[httpd:22809] uid/euid:48/48 gid/egid:48/48
Feb 20 17:55:04 server kernel: grsec: signal 7 sent to /usr/bin/php[php:29694]
uid/euid:502/502 gid/egid:502/502, parent /bin/bash[sh:30003]
uid/euid:502/502 gid
/egid:502/502
Feb 20 18:00:54 server kernel: grsec: From 189.141.26.82: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:10817]
uid/euid:48/48 gid/eg
id:48/48, parent /usr/sbin/httpd[httpd:13549] uid/euid:48/48 gid/egid:48/48
Feb 20 18:01:07 server kernel: grsec: signal 7 sent to /usr/bin/php[php:20901]
uid/euid:0/0 gid/egid:0/0, parent /bin/bash[sh:12242] uid/euid:0/0
gid/egid:0/0
Feb 20 18:03:06 server kernel: grsec: signal 7 sent to /usr/bin/php[php:9696]
uid/euid:502/502 gid/egid:502/502, parent /bin/bash[sh:23721]
uid/euid:502/502 gid/
egid:502/502
Feb 20 18:03:29 server kernel: grsec: From 68.26.197.159: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:917]
uid/euid:48/48 gid/egid
:48/48, parent /usr/sbin/httpd[httpd:20771] uid/euid:48/48 gid/egid:48/48
Feb 20 18:04:43 server kernel: grsec: From 87.219.88.132: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:10750]
uid/euid:48/48 gid/eg
id:48/48, parent /usr/sbin/httpd[httpd:4130] uid/euid:48/48 gid/egid:48/48
Feb 20 18:05:04 server kernel: grsec: From 189.167.128.26: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:14515]
uid/euid:48/48 gid/e
gid:48/48, parent /usr/sbin/httpd[httpd:2598] uid/euid:48/48 gid/egid:48/48
Feb 20 18:07:05 server kernel: grsec: signal 7 sent to /usr/bin/php[php:29589]
uid/euid:0/0 gid/egid:0/0, parent /bin/bash[sh:7958] uid/euid:0/0
gid/egid:0/0
Feb 20 18:08:31 server kernel: grsec: From 88.64.181.89: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:15335]
uid/euid:48/48 gid/egi
d:48/48, parent /usr/sbin/httpd[httpd:27788] uid/euid:48/48 gid/egid:48/48
Feb 20 18:08:43 server kernel: grsec: From 201.244.116.46: signal 11 sent
to /usr/www/htdocs/mywebsite.com_cgi/script/out.cgi[out.cgi:15217]
uid/euid:48/48 gid/e
gid:48/48, parent /usr/sbin/httpd[httpd:29545] uid/euid:48/48 gid/egid:48/48
Feb 20 18:17:34 server syslogd x.x.x: restart.
Feb 20 18:17:34 server syslog: Iniciaci� de syslogd succeeded
Feb 20 18:17:34 server kernel: klogd x.x.x, log source = /proc/kmsg started.
Feb 20 18:17:34 server kernel: Linux version 2.x.xxgrs-bipiv-ipv4
(root@kernel.myserver.net) (gcc version xxxx) #1 SMP Tue Jan 31 17:34:40 CET 2006
Feb 20 18:17:34 server kernel: BIOS-provided physical RAM map:
Feb 20 18:17:34 server kernel: BIOS-e820: 0000000000000000 - 000000000009c400
(usable)
Feb 20 18:17:34 server kernel: BIOS-e820: 000000000009c400 - 00000000000a0000
(reserved)
Feb 20 18:17:34 server kernel: BIOS-e820: 00000000000ea070 - 0000000000100000
(reserved)
Feb 20 18:17:34 server kernel: BIOS-e820: 0000000000100000 - 000000007
Bold date are ( I think ) the crash, and the system booting...
Any ideas about what can be causing the crash.. ? Is this kernel compiled with GRSecurity ? may that affect cgis ?

This is a fedora core server, xeon 3.2 GHZ x 4 procs using about 25 MBits per day.

View 3 Replies


ADVERTISEMENT

Grsec WARNING: No Module Mptscsi Found For Kernel 2.6.22.9-grsec,

Mar 27, 2008

I see the following error, while trying to compile kernel with grsec.

WARNING: No module mptscsi found for kernel 2.6.22.9-grsec, continuing anyway

how to fix this or is it ok to reboot?

More details
#################
[root@server3 linux-2.6.22.9]# make install
sh /usr/src/kernels/linux-2.6.22.9/arch/i386/boot/install.sh 2.6.22.9-grsec arch/i386/boot/bzImage System.map "/boot"
WARNING: No module mptscsi found for kernel 2.6.22.9-grsec, continuing anyway

[root@server3 linux-2.6.22.9]# lsmod
Module Size Used by
ipt_TOS 6465 14
ipt_TCPMSS 8129 1
ipt_state 5953 7
ip_conntrack_ftp 76529 0
ip_conntrack_irc 75633 0
ipt_LOG 10177 12
ipt_recent 12497 0
ipt_limit 6465 18
ip_conntrack 46085 3 ipt_state,ip_conntrack_ftp,ip_conntrack_irc
ipt_multiport 6081 0
iptable_mangle 6849 1
ipt_REJECT 10689 42
loop 20681 2
iptable_filter 6977 1
ip_tables 22721 10 ipt_TOS,ipt_TCPMSS,ipt_state,ipt_LOG,ipt_recent,ipt_limit,ipt_multiport,iptable_mangle,ipt_REJECT,iptable_filter
md5 8129 1
ipv6 243553 32
parport_pc 28033 0
lp 15661 0
parport 38025 2 parport_pc,lp
autofs4 26053 0
sunrpc 144037 1
dm_mirror 31557 0
dm_mod 67177 1 dm_mirror
joydev 14465 0
button 10705 0
battery 12997 0
ac 8901 0
ohci_hcd 24273 0
ehci_hcd 32325 0
k8_edac 19173 0
edac_mc 28297 1 k8_edac
tg3 106437 0
ext3 120137 4
jbd 60121 1 ext3
sata_svw 12229 0
libata 106141 1 sata_svw
mptscsih 5569 0
mptsas 24661 5 mptscsih
mptspi 14033 1 mptscsih
mptscsi 42449 2 mptsas,mptspi
mptbase 67361 3 mptsas,mptspi,mptscsi
sd_mod 20801 6
scsi_mod 120909 5 libata,mptsas,mptspi,mptscsi,sd_mod

[root@server3 linux-2.6.22.9]# cat /etc/modprobe.conf
alias eth0 tg3
alias eth1 tg3
alias scsi_hostadapter mptbase
alias scsi_hostadapter1 mptscsi
alias scsi_hostadapter2 mptspi
alias scsi_hostadapter3 mptsas
alias scsi_hostadapter4 mptscsih
alias scsi_hostadapter5 sata_svw
alias usb-controller ehci-hcd
alias usb-controller1 ohci-hcd

[root@server3 linux-2.6.22.9]# cat /etc/redhat-release
CentOS release 4.6 (Final)

[root@server3 linux-2.6.22.9]# uname -a
Linux server3.name 2.6.9-67.ELsmp #1 SMP Fri Nov 16 12:48:03 EST 2007 i686 athlon i386 GNU/Linux
[root@server3 linux-2.6.22.9]#

[root@server3 linux-2.6.22.9]# lspci
00:01.0 PCI bridge: Broadcom BCM5785 [HT1000] PCI/PCI-X Bridge
00:02.0 Host bridge: Broadcom BCM5785 [HT1000] Legacy South Bridge
00:02.1 IDE interface: Broadcom BCM5785 [HT1000] IDE
00:02.2 ISA bridge: Broadcom BCM5785 [HT1000] LPC
00:03.0 USB Controller: Broadcom BCM5785 [HT1000] USB (rev 01)
00:03.1 USB Controller: Broadcom BCM5785 [HT1000] USB (rev 01)
00:03.2 USB Controller: Broadcom BCM5785 [HT1000] USB (rev 01)
00:04.0 VGA compatible controller: Matrox Graphics, Inc. MGA G200e [Pilot] ServerEngines (SEP1) (rev 02)
00:06.0 PCI bridge: Broadcom HT2100 PCI-Express Bridge (rev a2)
00:07.0 PCI bridge: Broadcom HT2100 PCI-Express Bridge (rev a2)
00:08.0 PCI bridge: Broadcom HT2100 PCI-Express Bridge (rev a2)
00:09.0 PCI bridge: Broadcom HT2100 PCI-Express Bridge (rev a2)
00:0a.0 PCI bridge: Broadcom HT2100 PCI-Express Bridge (rev a2)
00:18.0 Host bridge: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] HyperTransport Technology Configuration
00:18.1 Host bridge: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] Address Map
00:18.2 Host bridge: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] DRAM Controller
00:18.3 Host bridge: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] Miscellaneous Control
00:19.0 Host bridge: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] HyperTransport Technology Configuration
00:19.1 Host bridge: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] Address Map
00:19.2 Host bridge: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] DRAM Controller
00:19.3 Host bridge: Advanced Micro Devices [AMD] K8 [Athlon64/Opteron] Miscellaneous Control
01:0d.0 PCI bridge: Broadcom BCM5785 [HT1000] PCI/PCI-X Bridge (rev c0)
01:0e.0 RAID bus controller: Broadcom BCM5785 [HT1000] SATA (Native SATA Mode)
02:01.0 SCSI storage controller: LSI Logic / Symbios Logic SAS1068 PCI-X Fusion-MPT SAS (rev 01)
07:00.0 PCI bridge: Broadcom EPB PCI-Express to PCI-X Bridge (rev b5)
08:04.0 Ethernet controller: Broadcom Corporation NetXtreme BCM5715 Gigabit Ethernet (rev a3)
08:04.1 Ethernet controller: Broadcom Corporation NetXtreme BCM5715 Gigabit Ethernet (rev a3)
[root@server3 linux-2.6.22.9]#

View 3 Replies View Related

Grsec Kernel = No Tcp Traffic

Jan 11, 2008

Tried building a grsec patched kernel as I don't fancy getting that rootkit thats going around for a second time

it was linux-2.6.23.9 which was the latest one there was a grsec patch for.

compiled ok as a monolithic kernel however on reboot I was not able to get anything but a ping from the server, Figured that the kernel had paniced and not booted.

However the tech who rebooted the server for me and selected the other kernel (a standard centos kernel) said that the system had booted but was not responding to tcp traffic.

So its either a case of

1) I missed something important when configuring the kernel.

2) perhaps a problem with APF it does warn enabling Monolithic kernel support is unsupported in the config file (although it seems to work fine with the centos stock kernel)...

I'm wandering what the best next course of action is i'd quite like to be able to run a kernel that doesn't allow write access to /dev/kmem if possible.

View 7 Replies View Related

Centos 5 Kernel 2.6.19.2-grsec Irqbalance

Jun 9, 2007

When I try to compile kernel 2.6.19.2-grsec I get the following error.

kernel: irqbalance[1750]: segfault at 000001b202b70b20 rip 000001b2028f9cdb rsp 000077a8404178f0 error 6
kernel: grsec: signal 11 sent to /usr/sbin/irqbalance[irqbalance:1750] uid/euid:0/0 gid/egid:0/0, parent /bin/bash[bash:1749] uid/euid:0/0 gid/egid:0/0

I must have tryed to compile the kernel 20 different ways with or with out grsec and I still get the same irqbalance error.

My server is a
AMD Athlon 64 X2 4800+
2GB of DDR2 800 ram
x2 160GB hard drives soft ware raid 1
nvidia chipset mother board

View 4 Replies View Related

Grsec Kernel Either Panics Or Hang On Reboot

Mar 29, 2008

I installed latest kernel ( 2.6.24.4 or 2.6.24.3 ) with grsec which either panics or hang on reboot before reaching boot prompt, just when /sbin/init runs. Experienced the same with grsec patched kernel 2.6.22.9 on several servers with the same hardware.

On server with AMD Operton, I was able to successfully compile 2.6.24.4 with grsec and boot into.

Server hardware details
--------------------------

[root@server kernels]# cat /proc/cpuinfo
processor : 0
vendor_id : GenuineIntel
cpu family : 6
model : 15
model name : Intel(R) Xeon(R) CPU 5148 @ 2.33GHz
stepping : 6
cpu MHz : 2333.469
cache size : 4096 KB
physical id : 0
siblings : 2
core id : 0
cpu cores : 2
fdiv_bug : no
hlt_bug : no
f00f_bug : no
coma_bug : no
fpu : yes
fpu_exception : yes
cpuid level : 10
wp : yes
flags : fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge mca cmov pat pse36 clflush dts acpi mmx fxsr sse sse2 ss ht tm pbe nx lm constant_tsc pni monitor ds_cpl vmx est tm2 ssse3 cx16 xtpr dca lahf_lm
bogomips : 4670.51

processor : 1
vendor_id : GenuineIntel
cpu family : 6
model : 15
model name : Intel(R) Xeon(R) CPU 5148 @ 2.33GHz
stepping : 6
cpu MHz : 2333.469
cache size : 4096 KB
physical id : 0
siblings : 2
core id : 1
cpu cores : 2
fdiv_bug : no
hlt_bug : no
f00f_bug : no
coma_bug : no
fpu : yes
fpu_exception : yes
cpuid level : 10
wp : yes
flags : fpu vme de pse tsc msr pae mce cx8 apic sep mtrr pge mca cmov pat pse36 clflush dts acpi mmx fxsr sse sse2 ss ht tm pbe nx lm constant_tsc pni monitor ds_cpl vmx est tm2 ssse3 cx16 xtpr dca lahf_lm
bogomips : 4667.16

[root@server kernels]#

[root@server ~]# uname -a
Linux server.name 2.6.19.2-grsec #1 SMP Tue Jan 15 07:08:50 CST 2008 i686 i686 i386 GNU/Linux
[root@server ~]#

[root@server kernels]# lspci
00:00.0 Host bridge: Intel Corporation 5000P Chipset Memory Controller Hub (rev b1)
00:02.0 PCI bridge: Intel Corporation 5000 Series Chipset PCI Express x8 Port 2-3 (rev b1)
00:04.0 PCI bridge: Intel Corporation 5000 Series Chipset PCI Express x8 Port 4-5 (rev b1)
00:06.0 PCI bridge: Intel Corporation 5000 Series Chipset PCI Express x8 Port 6-7 (rev b1)
00:08.0 System peripheral: Intel Corporation 5000 Series Chipset DMA Engine (rev b1)
00:10.0 Host bridge: Intel Corporation 5000 Series Chipset FSB Registers (rev b1)
00:10.1 Host bridge: Intel Corporation 5000 Series Chipset FSB Registers (rev b1)
00:10.2 Host bridge: Intel Corporation 5000 Series Chipset FSB Registers (rev b1)
00:11.0 Host bridge: Intel Corporation 5000 Series Chipset Reserved Registers (rev b1)
00:13.0 Host bridge: Intel Corporation 5000 Series Chipset Reserved Registers (rev b1)
00:15.0 Host bridge: Intel Corporation 5000 Series Chipset FBD Registers (rev b1)
00:16.0 Host bridge: Intel Corporation 5000 Series Chipset FBD Registers (rev b1)
00:1c.0 PCI bridge: Intel Corporation 631xESB/632xESB/3100 Chipset PCI Express Root Port 1 (rev 09)
00:1d.0 USB Controller: Intel Corporation 631xESB/632xESB/3100 Chipset UHCI USB Controller #1 (rev 09)
00:1d.1 USB Controller: Intel Corporation 631xESB/632xESB/3100 Chipset UHCI USB Controller #2 (rev 09)
00:1d.2 USB Controller: Intel Corporation 631xESB/632xESB/3100 Chipset UHCI USB Controller #3 (rev 09)
00:1d.3 USB Controller: Intel Corporation 631xESB/632xESB/3100 Chipset UHCI USB Controller #4 (rev 09)
00:1d.7 USB Controller: Intel Corporation 631xESB/632xESB/3100 Chipset EHCI USB2 Controller (rev 09)
00:1e.0 PCI bridge: Intel Corporation 82801 PCI Bridge (rev d9)
00:1f.0 ISA bridge: Intel Corporation 631xESB/632xESB/3100 Chipset LPC Interface Controller (rev 09)
00:1f.1 IDE interface: Intel Corporation 631xESB/632xESB IDE Controller (rev 09)
00:1f.2 IDE interface: Intel Corporation 631xESB/632xESB/3100 Chipset SATA IDE Controller (rev 09)
00:1f.3 SMBus: Intel Corporation 631xESB/632xESB/3100 Chipset SMBus Controller (rev 09)
01:00.0 PCI bridge: Intel Corporation 6311ESB/6321ESB PCI Express Upstream Port (rev 01)
01:00.3 PCI bridge: Intel Corporation 6311ESB/6321ESB PCI Express to PCI-X Bridge (rev 01)
02:00.0 PCI bridge: Intel Corporation 6311ESB/6321ESB PCI Express Downstream Port E1 (rev 01)
02:02.0 PCI bridge: Intel Corporation 6311ESB/6321ESB PCI Express Downstream Port E3 (rev 01)
04:00.0 Ethernet controller: Intel Corporation 80003ES2LAN Gigabit Ethernet Controller (Copper) (rev 01)
04:00.1 Ethernet controller: Intel Corporation 80003ES2LAN Gigabit Ethernet Controller (Copper) (rev 01)
06:00.0 PCI bridge: Intel Corporation 80333 Segment-A PCI Express-to-PCI Express Bridge
06:00.2 PCI bridge: Intel Corporation 80333 Segment-B PCI Express-to-PCI Express Bridge
07:0e.0 RAID bus controller: Adaptec AAC-RAID
0a:00.0 PCI bridge: Intel Corporation 6702PXH PCI Express-to-PCI Bridge A (rev 09)
0c:01.0 VGA compatible controller: ATI Technologies Inc ES1000 (rev 02)
[root@server kernels]#

[root@server ~]# lsmod
Module Size Used by
ip_conntrack_irc 11181 0
xt_conntrack 6876 0
xt_state 6544 16
ip_conntrack_ftp 11800 0
ipt_recent 13376 0
ipt_LOG 10781 0
xt_length 6312 0
xt_mac 6274 0
xt_multiport 7643 4
ipt_ttl 6266 0
xt_limit 6976 6
ipt_TOS 6555 14
ipt_ULOG 12126 0
ipt_TCPMSS 8276 1
ipt_owner 6335 0
ipt_ecn 6579 0
ip_conntrack 49498 4 ip_conntrack_irc,xt_conntrack,xt_state,ip_conntrack_ftp
ptpatch2008 7144 0
xt_tcpudp 7444 194
ipv6 248537 39
sunrpc 155556 1
iptable_filter 7336 1
iptable_mangle 7151 1
ip_tables 17800 2 iptable_filter,iptable_mangle
x_tables 19427 16 xt_conntrack,xt_state,ipt_recent,ipt_LOG,xt_length,xt_mac,xt_multiport,ipt_ttl,xt_limit,ipt_TOS,ipt_ULOG,ipt_TCPMSS,ipt_owner,ipt_ecn,xt_tcpudp,ip_tab les
dm_mirror 27216 0
dm_mod 60685 1 dm_mirror
button 11061 0
battery 14432 0
asus_acpi 20440 0
ac 9549 0
i2c_i801 12050 0
i2c_core 25366 1 i2c_i801
shpchp 40012 0
e1000 119987 0
floppy 61606 0
ext3 130212 6
jbd 61020 1 ext3
ata_piix 19728 0
libata 104369 1 ata_piix
aacraid 60341 7
usb_storage 66142 0
uhci_hcd 26859 0
ohci_hcd 23774 0
ehci_hcd 34026 0
sd_mod 24286 8
scsi_mod 136564 4 libata,aacraid,usb_storage,sd_mod

[root@server ~]# cat /etc/modprobe.conf
alias scsi_hostadapter usb-storage
alias eth0 e1000
alias eth1 e1000
alias scsi_hostadapter1 aacraid
alias scsi_hostadapter2 ata_piix
alias scsi_hostadapter3 usb-storage
alias usb-controller ehci-hcd
alias usb-controller1 uhci-hcd
[root@server ~]#

View 0 Replies View Related

Server Keeps Crashing ..

Jul 19, 2008

System specs:

Intel Celeron Proccesor
256 RAM (yeah I know...)
Debian Etch
Joomla! 1.5

Okay... so, here goes.

Recently, I have switched from Siteground hosting services and everything was fine. Now I have changed over to a dedicated server that resides at my house. I'm routing DNS through FreeDNS (freedns.afraid.org).


For a week or two, the server was fine. Recently, we started working on the website on the new server (posting new articles, changing the theme, adding some plugins, etc.) and it's steadily gotten worse and worse about, when we save changes to something, or post an article, the website will go offline. Eventually, the website will come back.

My question is: What is causing this? The actual server isn't shutting off, so It has to be something between my modem and the user. Is my modem just shutting off because it's overloaded? (that seems sort of improbable) Or, is it a DNS issue? (I have a Dynamic DNS system set up that is working fine)

View 7 Replies View Related

Server Keeps Crashing ...

Feb 27, 2008

My server keeps crashing and this is the last log. Can you help me to find out whats the problem here.

Feb 27 11:41:55 Xxxxxxxx kernel: ata1.00: exception Emask 0x0 SAct 0x0 SErr 0x0 action 0x0
Feb 27 11:41:55 Xxxxxxxx kernel: ata1.00: (BMDMA stat 0x25)
Feb 27 11:41:55 Xxxxxxxx kernel: ata1.00: cmd 25/00:00:bf:eb:0f/00:04:04:00:00/e0 tag 0 cdb 0x0 data 524288 in
Feb 27 11:41:55 Xxxxxxxx kernel: res 51/40:f6:c9:ec:0f/40:02:04:00:00/e0 Emask 0x9 (media error)
Feb 27 11:41:55 Xxxxxxxx kernel: ata1.00: configured for UDMA/133
Feb 27 11:41:55 Xxxxxxxx kernel: ata1: EH complete
Feb 27 11:41:56 Xxxxxxxx kernel: SCSI device sda: 976773168 512-byte hdwr sectors (500108 MB)
Feb 27 11:41:56 Xxxxxxxx kernel: sda: Write Protect is off
Feb 27 11:41:57 Xxxxxxxx kernel: SCSI device sda: drive cache: write back
Feb 27 12:11:26 Xxxxxxxx kernel: ata1.00: exception Emask 0x0 SAct 0x0 SErr 0x0 action 0x0
Feb 27 12:11:26 Xxxxxxxx kernel: ata1.00: (BMDMA stat 0x24)
Feb 27 12:11:28 Xxxxxxxx kernel: ata1.00: cmd 25/00:08:47:83:a6/00:00:1f:00:00/e0 tag 0 cdb 0x0 data 4096 in
Feb 27 12:11:28 Xxxxxxxx kernel: res 51/40:00:4e:83:a6/40:00:1f:00:00/e0 Emask 0x9 (media error)
Feb 27 12:11:28 Xxxxxxxx kernel: ata1.00: configured for UDMA/133
Feb 27 12:11:28 Xxxxxxxx kernel: ata1: EH complete
Feb 27 12:11:28 Xxxxxxxx kernel: SCSI device sda: 976773168 512-byte hdwr sectors (500108 MB)
Feb 27 12:11:28 Xxxxxxxx kernel: sda: Write Protect is off
Feb 27 12:11:28 Xxxxxxxx kernel: SCSI device sda: drive cache: write back
Feb 27 12:11:51 Xxxxxxxx kernel: ** RABHIT ** IN=eth0 OUT= MAC=00:30:48:90:ea:50:00:17:cb:4b:9a:00:08:00 SRC=83.143.15.168 DST=xx.xx.xx.xx LEN=40 TOS=0x00 PREC=0x00 TTL=45 ID=3304 PROTO=TCP SPT=113 DPT=57956 WINDOW=0 RES=0x00 ACK RST FIN URGP=0
Feb 27 12:14:07 Xxxxxxxx smartd[6368]: Device: /dev/sda, 95 Currently unreadable (pending) sectors
Feb 27 12:14:07 Xxxxxxxx smartd[6368]: Device: /dev/sda, 21 Offline uncorrectable sectors
Feb 27 12:31:44 Xxxxxxxx named[2355]: lame server resolving '245.236.229.195.in-addr.arpa' (in '236.229.195.in-addr.arpa'?): 194.170.1.6#53
Feb 27 12:31:44 Xxxxxxxx pure-ftpd: (?@204.13.168.174) [INFO] Logout.
Feb 27 12:31:58 Xxxxxxxx named[2355]: lame server resolving '217.236.229.195.in-addr.arpa' (in '236.229.195.in-addr.arpa'?): 194.170.1.99#53
Feb 27 12:33:15 Xxxxxxxx kernel: ** RABHIT ** IN=eth0 OUT= MAC=00:30:48:90:ea:50:00:17:cb:4b:9a:00:08:00 SRC=78.172.82.50 DST=xx.xx.xx.xx LEN=40 TOS=0x00 PREC=0x00 TTL=46 ID=39216 PROTO=TCP SPT=113 DPT=43432 WINDOW=0 RES=0x00 ACK RST FIN URGP=0
Feb 27 12:34:38 Xxxxxxxx snmpd[27298]: Connection from UDP: [204.13.168.174]:41549
Feb 27 12:34:38 Xxxxxxxx snmpd[27298]: Received SNMP packet(s) from UDP: [204.13.168.174]:41549
Feb 27 12:34:38 Xxxxxxxx snmpd[27298]: Connection from UDP: [204.13.168.174]:41549
Feb 27 12:34:38 Xxxxxxxx snmpd[27298]: Connection from UDP: [204.13.168.174]:41549
Feb 27 12:34:38 Xxxxxxxx snmpd[27298]: Connection from UDP: [204.13.168.174]:41551
Feb 27 12:34:38 Xxxxxxxx snmpd[27298]: Received SNMP packet(s) from UDP: [204.13.168.174]:41551
Feb 27 12:34:38 Xxxxxxxx snmpd[27298]: Connection from UDP: [204.13.168.174]:41551
Feb 27 12:34:40 Xxxxxxxx last message repeated 10 times
Feb 27 12:35:16 Xxxxxxxx snmpd[27298]: Connection from UDP: [204.13.168.174]:41880
Feb 27 12:35:16 Xxxxxxxx snmpd[27298]: Received SNMP packet(s) from UDP: [204.13.168.174]:41880
Feb 27 12:35:16 Xxxxxxxx snmpd[27298]: Connection from UDP: [204.13.168.174]:41880

View 3 Replies View Related

Server Crashing

Feb 19, 2007

I cannot figure out why my server is always dead when i wake up most mornings.

I am trying to figure out why my server is crashing nearly every night between 12am and 9am eastern time. When it crashes it is down all night until i wake up and have to reboot the damn server. I am wondering if cron jobs are taking up alot of the cpu or something because the server load isn't that much. here is my specs:

Server:
Softlayer
2 CPUS - dual core xenon 3.0mhz
500gb hd
2 gb DDR memory

Softare:
WHM/Control Panel with Ipanel back admin

Sites:
I am currently hosting 4,500 sites on the server.

The server load usually stays below 1 and is blazing fast. I just cannot figure out why it crashes when i sleep. I dont know if there is a virus or what. PHP mail is disabled so there would be no spamming crashing it. Here is my cron jobs:

17 2 * * * /scripts/upcp
0 1 * * * /scripts/cpbackup
*/15 * * * * /usr/local/cpanel/whostmgr/bin/dnsqueue > /dev/null 2>&1
2,58 * * * * /usr/local/bandmin/bandmin
0 0 * * * /usr/local/bandmin/ipaddrmap
31 5 * * * /usr/local/cpanel/whostmgr/docroot/cgi/cpaddons_report.pl --notify
56 18 * * * cd /usr/local/cpanel/whostmgr/docroot/cgi/fantastico/scripts/ ; /usr/local/cpanel/3rdparty/bin/php cron.php > /d$
0 8 * * * /root/homedb_update.sh > /dev/null 2>&1
0 6 * * * /scripts/exim_tidydb > /dev/null 2>&1
*/5 * * * * /usr/local/cpanel/bin/dcpumon >/dev/null 2>&1

I dont know much about cron jobs as I am new to this server hosting thing and just bought an established company. Maybe one of the cron jobs is causing it to crash in the middle of the night?

View 13 Replies View Related

Server Keeps Crashing

May 2, 2007

I have a FreeBSD server with Cpanel. It keeps crashing every few hours. Data centre swapped RAM, Chassie but no luck. Hard Drive was scanned and no errors found. I can't find anything in the logs (/var/logs/messages). Which direction should I be looking into?

View 10 Replies View Related

Server Keeps Crashing Every Few Days

Apr 20, 2008

One of my servers at FDC Servers is crashing (= kernel panic) every few days since we got it.

The specs of the machine are:
C2D E6550, 2 GB

Linux .. 2.6.24.4-64.fc8 #1 SMP Sat Mar 29 09:15:49 EDT 2008 x86_64 x86_64 x86_64 GNU/Linux

I opened several tickets with FDC, after running memtest and clocking down memory they say it's not a hardware issue but software related.

Quote:

I see that according to this ticket, memtest has been run without error and the memory was even slightly clocked down to avoid problems. It appears that the errors you are reporting are software related...

I already tried several kernels and different application versions.

The server is only running lighttpd.

View 12 Replies View Related

Server Crashing Frequently

May 1, 2008

this is getting out of control. I have a dedicated server that is "unmanaged" meaning, I manage it

I typically can make my way around a server and do most things - but in this case I'm stuck. I host a number of websites on this box and have went over a year with little problems. The past month or so it seems as though the server crashes daily or every other day. It will be running just fine, then all of a sudden the processes and loads will go out of control until the server is just unusable.

What do I need to provide here for you to be of any help to me? I watch the processes using "top -ci" and it's typically small output - but when it's getting ready to crash it's like a ton of processes get backed up and continue running.

View 14 Replies View Related

Server Don't Stop Crashing

Jan 10, 2007

as many of you know, FreeBSD is a stable system... I have many other FreeBSD servers (with the same kernel as this one) that doesn't have problems but this server keeps rebooting once or twice a day (EVERY DAY)

it's just a reboot... something very very similar to someone pushing the reset button

1) messages, security, auth or dmesg has no entries just before the reset, so the kernel is not getting aware the server is rebooting

2) the server comes back after around 10 minutes (reboot time + fsck)

this is happening for long time, so I compiled a new kernel... and the problem didn't stop

I request the datacenter techs to replace hardwares and they told me everything was replaced: motherboard, CPU, memories... and yesterday also the power suply
so I have no other idea on what to do

in fact I have one... setting a nobreak in this server power suply for 2 or 3 days to see if the problem stops, but the datacenter didn't like this idea

View 10 Replies View Related

Server Crashing After Reboots

Feb 15, 2007

My server just went down for the third time in 3 days. I have the following log entry just prior to the crash and I need some help with identifying the problem as I do not understand the information.

Feb 16 09:52:13 server kernel: loop: loaded (max 8 devices)
Feb 16 09:52:16 server kernel: kjournald starting. Commit interval 5 seconds
Feb 16 09:52:16 server kernel: EXT3-fs warning: checktime reached, running e2fsck is recommended
Feb 16 09:52:16 server kernel: EXT3 FS 2.4-0.9.19, 19 August 2002 on loop(7,0), internal journal
Feb 16 09:52:16 server kernel: EXT3-fs: loop(7,0): 4 orphan inodes deleted
Feb 16 09:52:16 server kernel: EXT3-fs: recovery complete.
Feb 16 09:52:16 server kernel: EXT3-fs: mounted filesystem with ordered data mod e.
Feb 16 09:52:47 server lsb_log_message: failed
Feb 16 09:56:17 server kernel: ** SSH ** IN=eth0 OUT= MAC=00:12:3f:24:d5:d4:00:1
4:f2:c7:f1:80:08:00 SRC=58.163.33.202 DST=147.202.65.34 LEN=44 TOS=0x04 PREC=0x0
0 TTL=236 ID=63692 DF PROTO=TCP SPT=1765 DPT=22 WINDOW=16000 RES=0x00 SYN URGP=0

I have centos 4 / cpanel

View 3 Replies View Related

VPS Server Crashing Every Morning

Oct 11, 2007

I have a VPS from mediatemple.net, and I'm not sure what is going on, but Apache has stopped running every day in the morning and it just stopped running about 2 hours ago and I didn't catch it until now

From the error log, i'm showing:

Quote:

[emerg] (12)Cannot allocate memory: couldn't grab the accept mutex
[alert] Child 3208 returned a Fatal error.../nApache is exciting!
[emerg] (43)Identifier removed: couldn't grab the accept mutex
[emerg] (43)Identifier removed: couldn't grab the accept mutex
[emerg] (43)Identifier removed: couldn't grab the accept mutex
[emerg] (43)Identifier removed: couldn't grab the accept mutex
[emerg] (43)Identifier removed: couldn't grab the accept mutex
[emerg] (43)Identifier removed: couldn't grab the accept mutex
[emerg] (43)Identifier removed: couldn't grab the accept mutex
[emerg] (22)Invalid argument: couldn't release the accept mutex
[emerg] (22)Invalid argument: couldn't release the accept mutex

Any ideas what might be causing this? just came home and my site was down again, and I've lost 15,000 pageviews already today.

View 5 Replies View Related

Stop PHP Scripts Crashing Server

May 5, 2009

I've recently had problems where customers will upload PHP scripts that seem to use alot of CPU. I've got PRM installed but when a PHP script uses a lot of CPU, it doesn't seem to kill the processes or do anything to stop it crashing the server. I've checked the logs of PRM and it does kill some processes that use a lot of CPU/RAM though...

The ideal solution would be for PRM or something else to stop people being able to access the script causing excessive CPU/RAM usage. Even suspending for the reason of using excessive CPU/RAM would be sufficient.

For those interested the OS is CentOS 5.3 with cPanel 11, Apache and the latest PHP 5. Average load is always between 0.50 - 1.90.

View 4 Replies View Related

Server Crashing / Stop 0x00000050

Nov 18, 2008

My server had been crashing for while with Blue Screen of Death (BSOD) and bug check error code as Stop 0x00000050 PAGE_FAULT_IN_NONPAGED_AREA.

It would literally stop by business till I reboot it again.

So I tried pull up all information I could get and fix this.

Here is what I found-

Possible causes:

A faulty driver recently installed
Faulty RAM
Antivirus
Corrupted NTFS file system

I checked the system logs and found errors related to NTFS. Well, my disk needed a chkdsk /r /f to fix this.

Ran it at the command prompt and since it required a reboot to fix on the system drive (C:), had to reboot. Came back successfully.

It has been 14 days and it has not recurred.

View 2 Replies View Related

Server Crashing / Stop 0x00000050

Nov 18, 2008

My server had been crashing for while with Blue Screen of Death (BSOD) and bug check error code as Stop 0x00000050 PAGE_FAULT_IN_NONPAGED_AREA.It would literally stop by business till I reboot it again.So I tried pull up all information I could get and fix this.

Here is what I found-Possible causes:A faulty driver recently installed
Faulty RAM
Antivirus
Corrupted NTFS file system

I checked the system logs and found errors related to NTFS. Well, my disk needed a chkdsk /r /f to fix this.Ran it at the command prompt and since it required a reboot to fix on the system drive (C, had to reboot. Came back successfully.It has been 14 days and it has not recurred.

View 3 Replies View Related

Server Kept Crashing Due To Lack Of Memory

Dec 4, 2008

I have a VPS , I recently upgraded because the server kept crashing due to lack of memory. I actually upgraded about two hours ago and the damn thing crashed again!
I went into virtuozzo and it said I had 12 mb of memory left.

So I restarted the container, the site loads faster than ever, and says I have 16% of memory left

So when I restart the container it resets?

View 10 Replies View Related

Determine Which Script Is Crashing A Server

Sep 1, 2008

Assuming a linux server / apache / php / mysql setup

I'm wondering 1) how you can find out which php script is causing problems, i assume infinite looping, crashing a server and 2) are there any measures you can take (maybe in the php or apache configuration) that can prevent such a thing from happening in the first place, other than writing good code obviously?

View 3 Replies View Related

New Server Crashing After Some Minutes - Mysql

Dec 27, 2007

Our new server crashes about every 30',causing high high load(80!)

After mysql restart,everything its ok.

System:
Dual Core @ 3Ghz
1GB Ram
Sata Drives
Centos 5
---
My.Cnf config:
--

Code:
[mysqld]
socket = /var/lib/mysql/mysql.sock
safe-show-database
old-password=1
max_connections=500
interactive_timeout=100
wait_timeout=30
connect_timeout=30
thread_cache_size=8
key_buffer=32M
join_buffer=8M
max_allowed_packet=32M
table_cache=1024
sort_buffer=32M
record_buffer=8M
thread_cache_size=128
max_user_connections=30

thread_concurrency=4
myisam_sort_buffer_size=64M
query_cache_limit=2M
query_cache_size=32M
query_cache_type=1

old-passwords = 1

[safe_mysqld]
err-log=/var/log/mysqld.log
open_files_limit=8192

[mysqldump]
quick
max_allowed_packet=32M

[mysql]
no-auto-rehash
# Remove the next comment character if you are not familiar with SQL
#safe-updates

[isamchk]
key_buffer=64M
sort_buffer=64M
read_buffer=16M
write_bufer=16M

[myisamchk]
key_buffer=64M
sort_buffer=64M
read_buffer=16M
write_buffer=16M

[mysqlhotcopy]
interactive-timeout
----
Top Process,showing in whm and status2k:
--
/usr/sbin/mysqld --basedir=/ --datadir=/var/lib/mysql --user=mysql --pid-file=/var/lib/mysql/server3.zaxihosting.com.pid --skip-external-locking --socket=/var/lib/mysql/mysql.sock

View 11 Replies View Related

Apache :: 2.4 Mod Session Crypt Crashing Server

Apr 30, 2012

I am trying to encrypt my session using the following directive

Session On
SessionCookieName session path=/
SessionCryptoPassPhrase sec

We are using form based authentication.

use of SessionCryptoPassPhrase crashes the server. If I dont use that directive it does not encrypt and works fine.

I see this error in application event log

Faulting application httpd.exe, version 2.4.2.0, faulting module libaprutil-1.dll, version 1.4.1.0, fault address 0x00002f14.

View 19 Replies View Related

Plesk 12.x / Linux :: Server Crashing Randomly With Out Of Memory Error

May 12, 2015

it's starting to kill child processes and eventually stops/hangs.

#plesk version
Product version: 12.0.18 Update #45
Update date: 2015/05/08 03:13
Build date: 2015/01/26 15:00
Build target: CentOS 7
Revision: 334346
Architecture: 64-bit
Wrapper version: 1.2

#free -m
total used free shared buff/cache available
Mem: 3782 647 2281 45 854 2875
Swap: 2047 0 2047

View 1 Replies View Related

Plesk 12.x / Linux :: Brand New CentOS 6.5 Server Running 12.0.18 Crashing Randomly

Aug 19, 2014

I have a brand new A8i server from 1&1 that has crashed twice today and could only be rebooted through the 1&1 control panel (not Plesk). Out of the blue the server is not accessible from the Plesk CP and is not responding to pings. I have looked through the logs and do not see anything that stands out (I am not very Linux savvy). Is there somewhere specific that I can look that would tell me why it is locking up/crashing? I have only had the server about 2 weeks and am only running email on it (no websites besides webmail and Plesk CP). It is possible that there is a hardware issue, but I cannot have 1&1 check it until after hours tonight.

Server is an 8 core Intel Atom 2.6GHz with 8GB RAM.

View 8 Replies View Related

Plesk 11.x / Linux :: How To Stop High Number Of Httpd Processes Crashing Server

May 17, 2014

Our server is running; Plesk 11.0.9 and CentOS 5.7 it has a Q8200 CPU @ 2.33GHz and 2GB of RAM. Now there are just two websites on the server plus a couple of redirects/forwarding domains, although lots of domains are still on the server but turned off in Plesk. Both websites are OSCommerce sites and I just need to keep these sites going until the end of the year when we will switch to our new Joomla based website.

We have seen an increasing number of server crashes and after various checks of the logs, fitting a new BIOS battery, check of the hardware by EasySpace who host the server, installation of ClamAV, LMD and RKHunter (which did find some Trojans and Suspect software), I have traced it down to some external Http activity that is taking all of my CPU time and RAM. Here is a screen capture of the Htop listing and when I killed these processes the CPU and RAM went back to normal. The problem is that I usually have to restart the HTTPD service and sometimes things get so bad that the server crashes and I have to request a power cycle.

View 8 Replies View Related

Mysql Keeps Crashing ...

Nov 2, 2009

Today on a server of mine mysql keeps crashing and I need to manually restart it over and over, the load as well keeps spiking quite high until I stop mysql for a few minutes. There isn't a extra load of traffic or anything as I have the same amount of users on several other servers doing more then this one.

How do I tell exactly whats happening from then how would I go about fixing it?

Basically it mysql crashes and needs to just be manually restarted via ssh.

View 13 Replies View Related

Site Keeps Crashing

Jun 25, 2009

My web site keeps crashing for some reason like every 10 minutes. The site will be up for 10 minutes and then down for 10 minutes. Up for anotehr 10 minutes and then down for another 10 minutes.

The odd thing is that the server does not crash, the site itself does. I can access WHM during these periods of downtime and WHM says everything is perfect. All green check marks, low server load, low memory usage. Everything looks perfect.

On top of being able to access WHM during these periods of downtime, I can even access that green page from the IP, 123.456.789 (exampe ip) that says "Great success, Apache is working on your WHM/Cpanel server"

(this one: img34.imageshack.us/img34/749/greatsuccessw.jpg)

But as soon as I put in my account name after the IP (like 123.456.789/~account), the site crashes. And by crash I mean it goes super slow and then times out.

I don't understand what the problem is and the managed solutions support that I have is usually really good at this, but is also having trouble with this problem.

I'm not sure if this is relevant, but incase it helps I have vBulletin forums and a mySQL database backend. Also, the dedicated server is a linux server with Centos 5.3.

View 14 Replies View Related

Apache Keeps Crashing

Feb 25, 2008

I've been having problems for the past two weeks. Apache and MySQL kept crashing. I tweaked MySQL, and MySQL stopped crashing. But Apache still crashes, sometimes twice a day, sometimes once every few days. It's driving me crazy. It started around the same time I acquired a new customer, so it's possible the customer has some sort of script or something that is causing problems, but I'm not quite sure how to determine whether the problem is the server itself, or if it's the customer.

So here am I, asking you experts for whatever assistance you feel willing to render. Even if you only merely read it, I thank you for at the very least taking the time to read it. Thanks in advance for any and all assistance given. That being said, here's the information the "How To: Request help from the experts" sticky recommended giving. I also took the liberty of including httpd.conf and my.cnf. I apologize if that resulted in being too much information, and humbly ask a moderator to "white out", or so to speak, (or at least point out) the information that shouldn't be shown.

Linux OS: CentOS release 4.6 (Final)
Kernel Version: 2.6.9-023stab044.4-enterprise
Control Panel: Plesk 8.2.1
Hardware information: 20 GB storage, 256MB RAM, 1 TB bandwidth

Results of "php -v":

PHP 5.2.5 (cli) (built: Jan 19 2008 10:08:24)
Copyright (c) 1997-2007 The PHP Group
Zend Engine v2.2.0, Copyright (c) 1998-2007 Zend Technologies
with the ionCube PHP Loader v3.1.32, Copyright (c) 2002-2007, by ionCube Ltd., and
with Xdebug v2.0.2-dev, Copyright (c) 2002-2007, by Derick Rethans
Results of "SELECT VERSION;" in MySQL:

Welcome to the MySQL monitor. Commands end with ; or g.
Your MySQL connection id is 1134
Server version: 5.0.54 Source distribution

Type 'help;' or 'h' for help. Type 'c' to clear the buffer.

mysql> SELECT VERSION();
+-----------+
| VERSION() |
+-----------+
| 5.0.54 |
+-----------+
1 row in set (0.00 sec)
Results of "ps auxf"

USER PID %CPU %MEM VSZ RSS TTY STAT START TIME COMMAND
root 1 0.0 0.0 1628 608 ? Ss 12:41 0:00 init [3] ....

View 11 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved