[FLEX/ATP]How to fix the issue when seeing App watch dog try to recover httpd log in the console?
Question:
Somehow, I am unable to access the web GUI of my USG, and the device reboots periodically. Connected serial console to USG, it indicated that httpd is dead, and App watch dog is trying to recover it.
What could be the reason that httpd is dead and what should I do for now?
Console log
Answer:
It is because the default certificate of the device corrupts, and the certificate cannot be loaded via http server. When the httpd cannot be recovered by application watchdog in 3 times, the firewall will reboot by itself.
In this case, we can regenerate device default certificate by using “Router> debug _ca regenerate”.
VERIFICATION:
After the default certificate is generated, the httpd is recovered by App watch dogand Web GUI is back.
You also can use CLI “Router> debug system ps| match "httpd" to check the httpd status."
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 151 Nebula Ideas
- 98 Nebula Status and Incidents
- 5.7K Security
- 277 USG FLEX H Series
- 277 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.4K Consumer Product
- 250 Service & License
- 395 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 75 Security Highlight