Page 1 of 1
clamav failed @ Fri Mar 14 13:37:04 2008. A restart was attempted automagically.
Posted: 14 Mar 2008, 18:40
by silver_2000
Since a reboot this morning have been getting these emails every few minutes
I did a forced reinstall of both clamav and upcp but Clamav still wont stay running
I tried looking in logs for error but didnt find any detail
Any ideas ?
Posted: 18 Mar 2008, 06:05
by Serversphere
Did you check both /var/log/maillog and /var/log/exim_mainlog? Also look under /var/log/clam-update.log.
Posted: 18 Mar 2008, 13:30
by silver_2000
Thanks for the reply
Every few seconds in mail log it says
Mar 18 08:18:32 falconer MailScanner[28878]: Virus and Content Scanning: Starting
Mar 18 08:18:32 falconer MailScanner[17444]: Found /tmp/clamd but it is not a valid UNIX Socket. Exiting
I checked the tmp clamd folder is owned by clamav and set to 755
But its empty
What else should be done ?
Posted: 18 Mar 2008, 14:17
by Serversphere
Is it a folder? When you do ls -la /tmp/clamd, does it have an "S" at the start of the line? If not, look at the error. It should be a socket (indicated by the "s"). If it's not a socket I would stop exim/mailscanner, remove the clamd file/folder from tmp and restart exim/mailscanner to see if recreates the socket in tmp.
Posted: 18 Mar 2008, 14:29
by silver_2000
PERFECT !!
That was so easy - looks like its fixed - the errors are not showing in the log file - Ill know for sure in a few hours ..
THANKS !! Serversphere you ROCK
Posted: 18 Mar 2008, 14:45
by Serversphere
You should see lines in the maillog with either "Unscanned:" or "Uninfected:" on delivered messages if it's working.
Posted: 18 Mar 2008, 14:50
by silver_2000
yep
Uninfected: Delivered 1 messages
THANKS
What sucks is that when I couldnt figure it out I asked the steadfast support folks and they were no help