[FLEX/ATP]How to fix the issue when seeing App watch dog try to recover httpd log in the console?

Options
Zyxel_Cooldia
Zyxel_Cooldia Posts: 1,462  Zyxel Employee
First Anniversary 10 Comments Friend Collector First Answer
edited December 2023 in Maintenance

Question:

Somehow, I am unable to access the web GUI of my USG, and the device reboots periodically. Connected serial console to USG, it indicated that httpd is dead, and App watch dog is trying to recover it.

What could be the reason that httpd is dead and what should I do for now?

Console log

Answer:

It is because the default certificate of the device corrupts, and the certificate cannot be loaded via http server. When the httpd cannot be recovered by application watchdog in 3 times, the firewall will reboot by itself.

In this case, we can regenerate device default certificate by using “Router> debug _ca regenerate”.

VERIFICATION:
After the default certificate is generated, the httpd is recovered by App watch dogand Web GUI is back.

You also can use CLI “Router> debug system ps| match "httpd" to check the httpd status."

Tagged: