Compare commits
3 Commits
6ebab9e23e
...
44be5e232e
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
44be5e232e | ||
|
|
34d830b275 | ||
|
|
3e0bd64b14 |
@ -0,0 +1,41 @@
|
||||
Cerca il watchdog che riavvia il backend
|
||||
grep -r "Backend Python NON attivo" /opt/ids/ --include="*.sh"
|
||||
grep -r "Backend Python NON attivo" /etc/cron* /var/spool/cron/
|
||||
|
||||
# Verifica cron jobs attivi
|
||||
crontab -l
|
||||
crontab -l -u ids
|
||||
|
||||
# Verifica timer systemd
|
||||
systemctl list-timers --all | grep ids
|
||||
/opt/ids/deployment/check_backend.sh: echo "[$(date)] Backend Python NON attivo, riavvio..." >> "$LOG_FILE"
|
||||
# ============================================
|
||||
# SISTEMA IDS - CONFIGURAZIONE AUTOMATICA
|
||||
# ============================================
|
||||
|
||||
# Training ML ogni 12 ore (alle 00:00 e 12:00)
|
||||
0 */12 * * * /opt/ids/deployment/cron_train.sh
|
||||
|
||||
# Detection automatica ogni 5 minuti
|
||||
*/3 * * * * /opt/ids/deployment/cron_detect.sh
|
||||
|
||||
# Verifica processo backend Python ogni 5 minuti (riavvia se non attivo)
|
||||
*/5 * * * * /opt/ids/deployment/check_backend.sh >> /var/log/ids/cron.log 2>&1
|
||||
|
||||
# Verifica processo frontend ogni 5 minuti (riavvia se non attivo)
|
||||
*/5 * * * * /opt/ids/deployment/check_frontend.sh >> /var/log/ids/cron.log 2>&1
|
||||
|
||||
# Pulizia log settimanale (ogni domenica alle 02:00)
|
||||
0 2 * * 0 find /var/log/ids -name "*.log" -size +100M -exec truncate -s 50M {} \; >> /var/log/ids/cron.log 2>&1
|
||||
|
||||
# Restart completo del sistema ogni settimana (domenica alle 03:00)
|
||||
0 3 * * 0 /opt/ids/deployment/restart_all.sh >> /var/log/ids/cron.log 2>&1
|
||||
|
||||
# Backup database giornaliero (alle 04:00)
|
||||
0 4 * * * /opt/ids/deployment/backup_db.sh >> /var/log/ids/cron.log 2>&1
|
||||
0 3 * * * /opt/ids/deployment/cleanup_database.sh >> /var/log/ids/cleanup.log 2>&1
|
||||
Mon 2026-02-16 13:05:00 CET 4min 9s left Mon 2026-02-16 12:05:00 CET 55min ago ids-analytics-aggregator.timer ids-analytics-aggregator.service
|
||||
Mon 2026-02-16 13:14:33 CET 13min left Mon 2026-02-16 12:13:57 CET 46min ago ids-cleanup.timer ids-cleanup.service
|
||||
Mon 2026-02-23 03:00:00 CET 6 days left Mon 2026-02-16 03:00:00 CET 10h ago ids-ml-training.timer ids-ml-training.service
|
||||
- - Mon 2026-02-16 12:48:47 CET 12min ago ids-auto-block.timer ids-auto-block.service
|
||||
- - Mon 2026-02-16 13:00:01 CET 48s ago ids-list-fetcher.timer ids-list-fetcher.service
|
||||
@ -0,0 +1,59 @@
|
||||
systemctl stop ids-ml-backend
|
||||
[root@ids ~]# systemctl start ids-ml-backend
|
||||
[root@ids ~]# systemctl status ids-ml-backend
|
||||
● ids-ml-backend.service - IDS ML Backend (FastAPI)
|
||||
Loaded: loaded (/etc/systemd/system/ids-ml-backend.service; enabled; preset: disabled)
|
||||
Active: active (running) since Mon 2026-02-16 12:59:19 CET; 4s ago
|
||||
Main PID: 3600 (python3)
|
||||
Tasks: 26 (limit: 100409)
|
||||
Memory: 157.6M (max: 2.0G available: 1.8G)
|
||||
CPU: 3.936s
|
||||
CGroup: /system.slice/ids-ml-backend.service
|
||||
└─3600 /opt/ids/python_ml/venv/bin/python3 main.py
|
||||
|
||||
Feb 16 12:59:19 ids.alfacom.it systemd[1]: Started IDS ML Backend (FastAPI).
|
||||
[root@ids ~]# cat /etc/systemd/system/ids-ml-backend.service
|
||||
[Unit]
|
||||
Description=IDS ML Backend (FastAPI)
|
||||
After=network.target postgresql-16.service
|
||||
Wants=postgresql-16.service
|
||||
|
||||
[Service]
|
||||
Type=simple
|
||||
User=ids
|
||||
Group=ids
|
||||
WorkingDirectory=/opt/ids/python_ml
|
||||
EnvironmentFile=/opt/ids/.env
|
||||
|
||||
# Comando esecuzione (usa virtual environment)
|
||||
ExecStart=/opt/ids/python_ml/venv/bin/python3 main.py
|
||||
|
||||
# Restart automatico sempre (non solo on-failure)
|
||||
Restart=always
|
||||
RestartSec=10
|
||||
StartLimitInterval=300
|
||||
StartLimitBurst=5
|
||||
|
||||
# Limiti risorse
|
||||
LimitNOFILE=65536
|
||||
MemoryMax=2G
|
||||
|
||||
# Logging
|
||||
StandardOutput=append:/var/log/ids/ml_backend.log
|
||||
StandardError=append:/var/log/ids/ml_backend.log
|
||||
SyslogIdentifier=ids-ml-backend
|
||||
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
[root@ids ~]# tail -f /var/log/ids/backend.log
|
||||
🚀 Starting IDS API on http://0.0.0.0:8000
|
||||
📚 Docs available at http://0.0.0.0:8000/docs
|
||||
[Mon Feb 16 12:56:12 CET 2026] Backend Python NON attivo, riavvio...
|
||||
[Mon Feb 16 12:56:14 CET 2026] Backend riavviato con PID: 3453
|
||||
Traceback (most recent call last):
|
||||
File "/opt/ids/python_ml/main.py", line 21, in <module>
|
||||
from ml_hybrid_detector import MLHybridDetector
|
||||
File "/opt/ids/python_ml/ml_hybrid_detector.py", line 13, in <module>
|
||||
from xgboost import XGBClassifier
|
||||
ModuleNotFoundError: No module named 'xgboost'
|
||||
|
||||
@ -2,7 +2,7 @@
|
||||
-- PostgreSQL database dump
|
||||
--
|
||||
|
||||
\restrict IQNXQ3AdZIKCf43dmd4ux9afKlXfTublRgIkiThbrdwGm8ObGL1XepBpgAQJoeC
|
||||
\restrict 9ZJC58VvaMhFtxysGUfqAD6tVv0Q9ukBv5rvK14fndwaalwIHn442ILA7auN2Uq
|
||||
|
||||
-- Dumped from database version 16.11 (df20cf9)
|
||||
-- Dumped by pg_dump version 16.10
|
||||
@ -387,5 +387,5 @@ ALTER TABLE ONLY public.public_blacklist_ips
|
||||
-- PostgreSQL database dump complete
|
||||
--
|
||||
|
||||
\unrestrict IQNXQ3AdZIKCf43dmd4ux9afKlXfTublRgIkiThbrdwGm8ObGL1XepBpgAQJoeC
|
||||
\unrestrict 9ZJC58VvaMhFtxysGUfqAD6tVv0Q9ukBv5rvK14fndwaalwIHn442ILA7auN2Uq
|
||||
|
||||
|
||||
@ -1,34 +1,28 @@
|
||||
#!/bin/bash
|
||||
# =========================================================
|
||||
# CHECK BACKEND - Verifica e riavvia backend Python se necessario
|
||||
# Usa systemctl per gestire il servizio (con virtual environment)
|
||||
# =========================================================
|
||||
|
||||
PROCESS_NAME="python3.11 python_ml/main.py"
|
||||
PID_FILE="/var/log/ids/backend.pid"
|
||||
LOG_FILE="/var/log/ids/backend.log"
|
||||
WORK_DIR="/opt/ids"
|
||||
|
||||
mkdir -p /var/log/ids
|
||||
|
||||
# Check if backend is running
|
||||
if pgrep -f "$PROCESS_NAME" > /dev/null; then
|
||||
# Backend running, update PID
|
||||
pgrep -f "$PROCESS_NAME" > "$PID_FILE"
|
||||
# Check if systemd service is active
|
||||
if systemctl is-active --quiet ids-ml-backend; then
|
||||
exit 0
|
||||
else
|
||||
echo "[$(date)] Backend Python NON attivo, riavvio..." >> "$LOG_FILE"
|
||||
echo "[$(date)] Backend Python NON attivo, riavvio via systemctl..." >> "$LOG_FILE"
|
||||
|
||||
# Kill any orphaned Python processes
|
||||
pkill -f "python_ml/main.py" 2>/dev/null
|
||||
# Restart via systemctl (usa il venv configurato nel service)
|
||||
systemctl restart ids-ml-backend
|
||||
|
||||
# Wait a moment
|
||||
sleep 2
|
||||
# Wait for startup
|
||||
sleep 3
|
||||
|
||||
# Start backend
|
||||
cd "$WORK_DIR/python_ml"
|
||||
nohup /usr/bin/python3.11 main.py >> "$LOG_FILE" 2>&1 &
|
||||
NEW_PID=$!
|
||||
echo $NEW_PID > "$PID_FILE"
|
||||
|
||||
echo "[$(date)] Backend riavviato con PID: $NEW_PID" >> "$LOG_FILE"
|
||||
if systemctl is-active --quiet ids-ml-backend; then
|
||||
echo "[$(date)] Backend riavviato con successo via systemctl" >> "$LOG_FILE"
|
||||
else
|
||||
echo "[$(date)] ERRORE: Backend non si è avviato. Controlla: journalctl -u ids-ml-backend" >> "$LOG_FILE"
|
||||
fi
|
||||
fi
|
||||
|
||||
@ -1,41 +1,28 @@
|
||||
#!/bin/bash
|
||||
# =========================================================
|
||||
# CHECK FRONTEND - Verifica e riavvia frontend Node.js se necessario
|
||||
# Usa systemctl per gestire il servizio
|
||||
# =========================================================
|
||||
|
||||
PROCESS_NAME="npm run dev"
|
||||
PID_FILE="/var/log/ids/frontend.pid"
|
||||
LOG_FILE="/var/log/ids/frontend.log"
|
||||
WORK_DIR="/opt/ids"
|
||||
|
||||
mkdir -p /var/log/ids
|
||||
|
||||
# Check if frontend is running
|
||||
if pgrep -f "vite" > /dev/null; then
|
||||
# Frontend running, update PID
|
||||
pgrep -f "vite" > "$PID_FILE"
|
||||
# Check if systemd service is active
|
||||
if systemctl is-active --quiet ids-frontend; then
|
||||
exit 0
|
||||
else
|
||||
echo "[$(date)] Frontend Node NON attivo, riavvio..." >> "$LOG_FILE"
|
||||
echo "[$(date)] Frontend Node NON attivo, riavvio via systemctl..." >> "$LOG_FILE"
|
||||
|
||||
# Kill any orphaned Node processes
|
||||
pkill -f "vite" 2>/dev/null
|
||||
pkill -f "npm run dev" 2>/dev/null
|
||||
# Restart via systemctl
|
||||
systemctl restart ids-frontend
|
||||
|
||||
# Wait a moment
|
||||
sleep 2
|
||||
# Wait for startup
|
||||
sleep 3
|
||||
|
||||
# Start frontend with environment variables from .env
|
||||
cd "$WORK_DIR"
|
||||
if [ -f "$WORK_DIR/.env" ]; then
|
||||
# Load .env and start npm with those variables
|
||||
nohup env $(cat "$WORK_DIR/.env" | grep -v '^#' | xargs) npm run dev >> "$LOG_FILE" 2>&1 &
|
||||
if systemctl is-active --quiet ids-frontend; then
|
||||
echo "[$(date)] Frontend riavviato con successo via systemctl" >> "$LOG_FILE"
|
||||
else
|
||||
# Fallback: start without .env (will use system env vars)
|
||||
nohup npm run dev >> "$LOG_FILE" 2>&1 &
|
||||
echo "[$(date)] ERRORE: Frontend non si è avviato. Controlla: journalctl -u ids-frontend" >> "$LOG_FILE"
|
||||
fi
|
||||
NEW_PID=$!
|
||||
echo $NEW_PID > "$PID_FILE"
|
||||
|
||||
echo "[$(date)] Frontend riavviato con PID: $NEW_PID" >> "$LOG_FILE"
|
||||
fi
|
||||
|
||||
@ -1,17 +1,17 @@
|
||||
#!/bin/bash
|
||||
# =========================================================
|
||||
# RESTART ALL - Riavvio completo sistema IDS
|
||||
# Usa systemctl per gestire tutti i servizi
|
||||
# =========================================================
|
||||
|
||||
LOG_FILE="/var/log/ids/cron.log"
|
||||
|
||||
echo "$(date): === RESTART SETTIMANALE SISTEMA IDS ===" >> "$LOG_FILE"
|
||||
|
||||
# Stop all services
|
||||
# Stop all services via systemctl
|
||||
echo "$(date): Arresto servizi..." >> "$LOG_FILE"
|
||||
pkill -f "python_ml/main.py"
|
||||
pkill -f "vite"
|
||||
pkill -f "npm run dev"
|
||||
systemctl stop ids-ml-backend 2>/dev/null
|
||||
systemctl stop ids-frontend 2>/dev/null
|
||||
|
||||
sleep 5
|
||||
|
||||
@ -20,10 +20,23 @@ echo "$(date): Pulizia file temporanei..." >> "$LOG_FILE"
|
||||
rm -f /var/log/ids/*.pid
|
||||
find /tmp -name "ids_*" -mtime +7 -delete 2>/dev/null
|
||||
|
||||
# Restart services
|
||||
# Restart services via systemctl
|
||||
echo "$(date): Riavvio servizi..." >> "$LOG_FILE"
|
||||
/opt/ids/deployment/check_backend.sh >> "$LOG_FILE" 2>&1
|
||||
systemctl start ids-ml-backend
|
||||
sleep 3
|
||||
/opt/ids/deployment/check_frontend.sh >> "$LOG_FILE" 2>&1
|
||||
systemctl start ids-frontend
|
||||
|
||||
# Verify
|
||||
if systemctl is-active --quiet ids-ml-backend; then
|
||||
echo "$(date): ML Backend avviato con successo" >> "$LOG_FILE"
|
||||
else
|
||||
echo "$(date): ERRORE: ML Backend non si è avviato" >> "$LOG_FILE"
|
||||
fi
|
||||
|
||||
if systemctl is-active --quiet ids-frontend; then
|
||||
echo "$(date): Frontend avviato con successo" >> "$LOG_FILE"
|
||||
else
|
||||
echo "$(date): ERRORE: Frontend non si è avviato" >> "$LOG_FILE"
|
||||
fi
|
||||
|
||||
echo "$(date): Restart completato!" >> "$LOG_FILE"
|
||||
|
||||
16
version.json
16
version.json
@ -1,7 +1,13 @@
|
||||
{
|
||||
"version": "1.0.114",
|
||||
"lastUpdate": "2026-02-16T11:54:24.557Z",
|
||||
"version": "1.0.115",
|
||||
"lastUpdate": "2026-02-16T14:40:14.777Z",
|
||||
"changelog": [
|
||||
{
|
||||
"version": "1.0.115",
|
||||
"date": "2026-02-16",
|
||||
"type": "patch",
|
||||
"description": "Deployment automatico v1.0.115"
|
||||
},
|
||||
{
|
||||
"version": "1.0.114",
|
||||
"date": "2026-02-16",
|
||||
@ -295,12 +301,6 @@
|
||||
"date": "2025-11-24",
|
||||
"type": "patch",
|
||||
"description": "Deployment automatico v1.0.66"
|
||||
},
|
||||
{
|
||||
"version": "1.0.65",
|
||||
"date": "2025-11-24",
|
||||
"type": "patch",
|
||||
"description": "Deployment automatico v1.0.65"
|
||||
}
|
||||
]
|
||||
}
|
||||
Loading…
Reference in New Issue
Block a user