AbramS
Basic Pleskian
Early January I discussed a bug that related to the creation of new SSL certificates in Plesk 12: http://talk.plesk.com/threads/new-ssl-certificate-produces-nginx-apache-configuration-errors.331041/
Since the same timeframe (January 9th) I've been getting daily messages from Plesk Watchdog stating that Apache has gone down and has come up again.
One of the latest examples:
I've been trying to get to the source of this problem for some time, but I've been unable to pinpoint the problem.
I started digging into the global error log in /var/log/httpd/
There are three types of notices I find in this file:
1. Once in a while a file not found or security notice, as can be expected.
2. A never ending list of the following three PHP Warnings:
The only reason I could think of why these would show is the fact that I'm running PHP as a FastCGI application and load those three extensions through the additional directives on each domain. The thing is though... If I remove the extensions from the additional directives, the extensions no longer load. I've tested this by looking at a PHP Info file and removing the lines for the additional directives. So it doesn't seem that the FCGI session is loading the extension twice... Does anyone have a clue why this would happen? How would one fix this?
3. The shutdown / startup notice for the Apache server, that seems to give little insight into the origin of the problem:
Can anyone extract an answer to the question why Apache is stopping and starting from this log? If not: where would I continue my search? As there are no further warnings/notices in the error.log..
Thanks in advance!
Since the same timeframe (January 9th) I've been getting daily messages from Plesk Watchdog stating that Apache has gone down and has come up again.
One of the latest examples:
Code:
The Web Server (Apache) service on host ... is down.
The problem was discovered on Feb 6, 2015 02:10 AM.
The Web Server (Apache) service on host ... has been started on Feb 6, 2015 02:15 AM.
I've been trying to get to the source of this problem for some time, but I've been unable to pinpoint the problem.
I started digging into the global error log in /var/log/httpd/
There are three types of notices I find in this file:
1. Once in a while a file not found or security notice, as can be expected.
2. A never ending list of the following three PHP Warnings:
Code:
PHP Warning: Module 'apc' already loaded in Unknown on line 0
PHP Warning: Module 'memcache' already loaded in Unknown on line 0
PHP Warning: Module 'memcached' already loaded in Unknown on line 0
PHP Warning: Module 'apc' already loaded in Unknown on line 0
PHP Warning: Module 'memcache' already loaded in Unknown on line 0
PHP Warning: Module 'memcached' already loaded in Unknown on line 0
The only reason I could think of why these would show is the fact that I'm running PHP as a FastCGI application and load those three extensions through the additional directives on each domain. The thing is though... If I remove the extensions from the additional directives, the extensions no longer load. I've tested this by looking at a PHP Info file and removing the lines for the additional directives. So it doesn't seem that the FCGI session is loading the extension twice... Does anyone have a clue why this would happen? How would one fix this?
3. The shutdown / startup notice for the Apache server, that seems to give little insight into the origin of the problem:
Code:
[Fri Feb 06 02:10:31 2015] [notice] caught SIGTERM, shutting down
[Fri Feb 06 02:10:35 2015] [notice] SELinux policy enabled; httpd running as context system_u:system_r:httpd_t:s0
[Fri Feb 06 02:10:35 2015] [notice] suEXEC mechanism enabled (wrapper: /usr/sbin/suexec)
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:36 2015] [warn] Init: Name-based SSL virtual hosts only work for clients with TLS server name indication support (RFC 4366)
[Fri Feb 06 02:10:36 2015] [notice] ModSecurity for Apache/2.8.0 (http://www.modsecurity.org/) configured.
[Fri Feb 06 02:10:36 2015] [notice] ModSecurity: APR compiled version="1.3.9"; loaded version="1.3.9"
[Fri Feb 06 02:10:36 2015] [notice] ModSecurity: PCRE compiled version="7.8 "; loaded version="7.8 2008-09-05"
[Fri Feb 06 02:10:36 2015] [notice] ModSecurity: LIBXML compiled version="2.7.6"
[Fri Feb 06 02:10:36 2015] [notice] Original server signature: Apache
[Fri Feb 06 02:10:36 2015] [notice] Status engine is currently disabled, enable it by set SecStatusEngine to On.
[Fri Feb 06 02:10:36 2015] [notice] Digest: generating secret for digest authentication ...
[Fri Feb 06 02:10:36 2015] [notice] Digest: done
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `...' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] RSA server certificate CommonName (CN) `Parallels Panel' does NOT match server name!?
[Fri Feb 06 02:10:37 2015] [warn] Init: Name-based SSL virtual hosts only work for clients with TLS server name indication support (RFC 4366)
[Fri Feb 06 02:10:37 2015] [notice] mod_python: Creating 4 session mutexes based on 256 max processes and 0 max threads.
[Fri Feb 06 02:10:37 2015] [notice] mod_python: using mutex_directory /tmp
[Fri Feb 06 02:10:37 2015] [notice] Apache/2.2.15 (Unix) DAV/2 mod_ssl/2.2.15 OpenSSL/1.0.1e-fips Apache mod_fcgid/2.3.9 mod_python/3.3.1 Python/2.6.6 mod_perl/2.0.4 Perl/v5.10.1 configured -- resuming normal operations
Can anyone extract an answer to the question why Apache is stopping and starting from this log? If not: where would I continue my search? As there are no further warnings/notices in the error.log..
Thanks in advance!