thanks!
i think i really need to find out the problems step-by-step.
first, i try to telnet both port 80 and 8443 and i find that i can't connect to 8443.
then i check the /var/log/httpd/ssl_error_log
###############################################
[Tue Feb 28 20:30:51 2006] [warn] RSA server certificate CommonName (CN) `localhost.localdomain' does NOT match server name!?
###############################################
p/s: my ip is 202.67.153.251
Although I can start httpd successfully, i can't visit any pages. I find some suggestions in the following link:
http://forum.plesk.com/showthread.php?threadid=20941
Is it related to nameserver?
Second, this is /var/log/httpd/error_log
##################################################
[Tue Feb 28 20:19:01 2006] [notice] caught SIGTERM, shutting down
[Tue Feb 28 20:19:02 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:19:02 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:19:02 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:19:02 2006] [notice] Digest: generating secret for digest authentication ...
[Tue Feb 28 20:19:02 2006] [notice] Digest: done
[Tue Feb 28 20:19:02 2006] [notice] LDAP: Built with OpenLDAP LDAP SDK
[Tue Feb 28 20:19:02 2006] [notice] LDAP: SSL support unavailable
[Tue Feb 28 20:19:03 2006] [notice] mod_python: Creating 4 session mutexes based on 256 max processes and 0 max threads.
[Tue Feb 28 20:19:03 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:19:03 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:19:03 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:19:03 2006] [notice] Apache/2.0.52 (Red Hat) configured -- resuming normal operations
[Tue Feb 28 20:28:11 2006] [notice] caught SIGTERM, shutting down
[Tue Feb 28 20:30:50 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:30:50 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:30:50 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:30:50 2006] [notice] Digest: generating secret for digest authentication ...
[Tue Feb 28 20:30:50 2006] [notice] Digest: done
[Tue Feb 28 20:30:50 2006] [notice] LDAP: Built with OpenLDAP LDAP SDK
[Tue Feb 28 20:30:50 2006] [notice] LDAP: SSL support unavailable
[Tue Feb 28 20:30:51 2006] [notice] mod_python: Creating 4 session mutexes based on 256 max processes and 0 max threads.
[Tue Feb 28 20:30:51 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:30:51 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:30:51 2006] [warn] RSA server certificate CommonName (CN) `plesk' does NOT match server name!?
[Tue Feb 28 20:30:51 2006] [notice] Apache/2.0.52 (Red Hat) configured -- resuming normal operations
##################################################
Third, in /var/log/secure log message, i find that there are so many testing sshd messages.
##################################################
Feb 28 14:26:25 com2buy sshd[7211]: Invalid user testing from ::ffff:212.17.0.98
Feb 28 14:26:27 com2buy sshd[7211]: Failed password for invalid user testing from ::ffff:212.17.0.98 port 48339 ssh2
Feb 28 14:26:34 com2buy sshd[7213]: Invalid user greg from ::ffff:212.17.0.98
Feb 28 14:26:37 com2buy sshd[7213]: Failed password for invalid user greg from ::ffff:212.17.0.98 port 48624 ssh2
Feb 28 14:26:41 com2buy sshd[7215]: Invalid user cs from ::ffff:212.17.0.98
Feb 28 14:26:43 com2buy sshd[7215]: Failed password for invalid user cs from ::ffff:212.17.0.98 port 49034 ssh2
Feb 28 14:26:47 com2buy sshd[7217]: Invalid user david from ::ffff:212.17.0.98
Feb 28 14:26:49 com2buy sshd[7217]: Failed password for invalid user david from ::ffff:212.17.0.98 port 49314 ssh2
Feb 28 14:26:53 com2buy sshd[7219]: Invalid user sales from ::ffff:212.17.0.98
Feb 28 14:26:55 com2buy sshd[7219]: Failed password for invalid user sales from ::ffff:212.17.0.98 port 49590 ssh2
Feb 28 14:26:59 com2buy sshd[7221]: Invalid user andrew from ::ffff:212.17.0.98
Feb 28 14:27:01 com2buy sshd[7221]: Failed password for invalid user andrew from ::ffff:212.17.0.98 port 49864 ssh2
Feb 28 14:27:07 com2buy sshd[7223]: Failed password for root from ::ffff:212.17.0.98 port 50154 ssh2
Feb 28 14:27:15 com2buy sshd[7225]: Invalid user fred from ::ffff:212.17.0.98
Feb 28 14:27:17 com2buy sshd[7225]: Failed password for invalid user fred from ::ffff:212.17.0.98 port 50423 ssh2
Feb 28 16:13:46 com2buy sshd[7317]: Did not receive identification string from ::ffff:69.56.219.202
Feb 28 16:13:46 com2buy sshd[7318]: Did not receive identification string from ::ffff:69.56.219.202
Feb 28 20:28:12 com2buy sshd[2249]: Received signal 15; terminating.
#################################################
Last, i also changed SELINUX to permissive mode. but it also didn't work.
Now, I focus on the the apache and firewall. hope it can be solved!
Add one more thing, when i restart the httpd, i got the following msg:
#################################################
Feb 28 22:09:54 com2buy kernel: audit(1141186194.445:0): avc: denied { write } for pid=3866 exe=/usr/sbin/httpd name=apache-fp dev=dm-3 ino=689536 scontext=root:system_r:httpd_t tcontext=system_u:object_r:usr_t tclass=dir
Feb 28 22:09:54 com2buy kernel: audit(1141186194.449:0): avc: denied { read } for pid=3870 exe=/bin/ps name=stat dev=proc ino=253624333 scontext=root:system_r:httpd_sys_script_t tcontext=root:system_r:httpd_sys_script_t tclass=file
Feb 28 22:09:54 com2buy kernel: audit(1141186194.451:0): avc: denied { read } for pid=3872 exe=/bin/ps name=stat dev=proc ino=253755405 scontext=root:system_r:httpd_sys_script_t tcontext=root:system_r:httpd_sys_script_t tclass=file
Feb 28 22:09:54 com2buy kernel: audit(1141186194.451:0): avc: denied { write } for pid=3866 exe=/usr/sbin/httpd name=apache-fp dev=dm-3 ino=689536 scontext=root:system_r:httpd_t tcontext=system_u:object_r:usr_t tclass=dir
Feb 28 22:09:54 com2buy kernel: audit(1141186194.452:0): avc: denied { read } for pid=3866 exe=/usr/sbin/httpd name=php.ini dev=dm-0 ino=50678 scontext=root:system_r:httpd_t tcontext=root:object_r:tmp_t tclass=file
Feb 28 22:09:54 com2buy kernel: audit(1141186194.452:0): avc: denied { getattr } for pid=3866 exe=/usr/sbin/httpd path=/etc/php.d/domxml.ini dev=dm-0 ino=53024 scontext=root:system_r:httpd_t tcontext=root:object_r:tmp_t tclass=file
Feb 28 22:09:54 com2buy kernel: audit(1141186194.452:0): avc: denied { getattr } for pid=3866 exe=/usr/sbin/httpd path=/etc/php.d/gd.ini dev=dm-0 ino=50665 scontext=root:system_r:httpd_t tcontext=root:object_r:tmp_t tclass=file
Feb 28 22:09:54 com2buy kernel: audit(1141186194.452:0): avc: denied { getattr } for pid=3866 exe=/usr/sbin/httpd path=/etc/php.d/imap.ini dev=dm-0 ino=53076 scontext=root:system_r:httpd_t tcontext=root:object_r:tmp_t tclass=file
Feb 28 22:09:54 com2buy kernel: audit(1141186194.452:0): avc: denied { getattr } for pid=3866 exe=/usr/sbin/httpd path=/etc/php.d/ldap.ini dev=dm-0 ino=53074 scontext=root:system_r:httpd_t tcontext=root:object_r:tmp_t tclass=file
Feb 28 22:09:54 com2buy kernel: audit(1141186194.452:0): avc: denied { getattr } for pid=3866 exe=/usr/sbin/httpd path=/etc/php.d/mysql.ini dev=dm-0 ino=53075 scontext=root:system_r:httpd_t tcontext=root:object_r:tmp_t tclass=file
Feb 28 22:09:54 com2buy kernel: audit(1141186194.452:0): avc: denied { getattr } for pid=3866 exe=/usr/sbin/httpd path=/etc/php.d/pgsql.ini dev=dm-0 ino=50680 scontext=root:system_r:httpd_t tcontext=root:object_r:tmp_t tclass=file
##################################################
what does it mean?