Mailing List Archive

[clamav-users] Unable to start clamd daemon
Hello,

I am new to clamav and I$B!G(Bve completed installing a private mirror server. Freshclam works fine but when I try to start the clamd daemon I get this error. Any help is appreciated.


systemctl status clamd@scan -l
$B!|(B clamd@scan.service - clamd scanner (scan) daemon
Loaded: loaded (/usr/lib/systemd/system/clamd@scan.service; enabled; vendor preset: disabled)
Active: failed (Result: start-limit) since Thu 2021-06-24 23:21:13 UTC; 41min ago
Docs: man:clamd(8)
man:clamd.conf(5)
https://www.clamav.net/documents/
Process: 2030 ExecStart=/usr/sbin/clamd -c /etc/clamd.d/%i.conf (code=exited, status=1/FAILURE)

Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: clamd@scan.service: control process exited, code=exited status=1
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: Failed to start clamd scanner (scan) daemon.
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: Unit clamd@scan.service entered failed state.
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: clamd@scan.service failed.
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: clamd@scan.service holdoff time over, scheduling restart.
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: Stopped clamd scanner (scan) daemon.
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: start request repeated too quickly for clamd@scan.service
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: Failed to start clamd scanner (scan) daemon.
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: Unit clamd@scan.service entered failed state.
Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]: clamd@scan.service failed.

Carmelo Lopez
Access-CL-Concur US
Concur St. Louis Park (MN), 1550 Utica Avenue South, St. Louis Park 55416-5312, United States

T +19529471714, M +16512602626, carmelo.lopez01@sap.com<mailto:carmelo.lopez01@sap.com>

Please consider the impact on the environment before printing this email.


[signature_791736281]
Re: [clamav-users] Unable to start clamd daemon [ In reply to ]
I apologize if the answer to my question is obvious from your original
post. Although I can see you're running it in the cloud, what
distribution/flavor/version of operating system are you using?

Meanwhile, please feel free to post the output of the "clamconf"
command. Thank you.

On 6/24/21 8:04 PM, Lopez, Carmelo via clamav-users wrote:
> Hello,
>
> I am new to clamav and I’ve completed installing a private mirror
> server. Freshclam works fine but when I try to start the clamd daemon I
> get this error. Any help is appreciated.
>
> systemctl status clamd@scan -l
>
> ? clamd@scan.service - clamd scanner (scan) daemon
>
>    Loaded: loaded (/usr/lib/systemd/system/clamd@scan.service; enabled;
> vendor preset: disabled)
>
>    Active: failed (Result: start-limit) since Thu 2021-06-24 23:21:13
> UTC; 41min ago
>
>      Docs: man:clamd(8)
>
>            man:clamd.conf(5)
>
>            https://www.clamav.net/documents/
>
>   Process: 2030 ExecStart=/usr/sbin/clamd -c /etc/clamd.d/%i.conf
> (code=exited, status=1/FAILURE)
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> clamd@scan.service: control process exited, code=exited status=1
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Failed to start clamd scanner (scan) daemon.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Unit clamd@scan.service entered failed state.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> clamd@scan.service failed.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> clamd@scan.service holdoff time over, scheduling restart.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Stopped clamd scanner (scan) daemon.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> start request repeated too quickly for clamd@scan.service
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Failed to start clamd scanner (scan) daemon.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Unit clamd@scan.service entered failed state.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> clamd@scan.service failed.
>
> *Carmelo Lopez*
>
> Access-CL-Concur US
>
> *Concur St. Louis Park (MN), *1550 Utica Avenue South, St. Louis Park
> 55416-5312, United States
>
> T   +19529471714, M   +16512602626, carmelo.lopez01@sap.com
> <mailto:carmelo.lopez01@sap.com>
>
> *Please consider the impact on the environment before printing this email.*
>
> signature_791736281
>
>
>
> _______________________________________________
>
> clamav-users mailing list
> clamav-users@lists.clamav.net
> https://lists.clamav.net/mailman/listinfo/clamav-users
>
>
> Help us build a comprehensive ClamAV guide:
> https://github.com/vrtadmin/clamav-faq
>
> http://www.clamav.net/contact.html#ml
>

_______________________________________________

clamav-users mailing list
clamav-users@lists.clamav.net
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml
Re: [clamav-users] Unable to start clamd daemon [ In reply to ]
I am running RHEL, Red Hat Enterprise Linux Server release 7.9 (Maipo). The output of $B!H(Bclamconf$B!I(B below: By the way, I am running these commands from the clamav private mirror server.

[root@ip-10-64-205-168 bin]# clamconf
Checking configuration files in /etc

Config file: clamd.d/scan.conf
------------------------------
AlertExceedsMax disabled
PreludeEnable disabled
PreludeAnalyzerName disabled
LogFile = "/var/log/clamd.scan"
LogFileUnlock disabled
LogFileMaxSize = "10485760"
LogTime = "yes"
LogClean disabled
LogSyslog = "yes"
LogFacility = "LOG_LOCAL6"
LogVerbose = "yes"
LogRotate = "yes"
ExtendedDetectionInfo = "yes"
PidFile = "/var/run/clamd.scan/clamd.pid"
TemporaryDirectory disabled
DatabaseDirectory = "/var/www/html"
OfficialDatabaseOnly disabled
LocalSocket = "/var/run/clamd.scan/clamd.sock"
LocalSocketGroup disabled
LocalSocketMode disabled
FixStaleSocket = "yes"
TCPSocket = "3310"
TCPAddr = "127.0.0.1"
MaxConnectionQueueLength = "200"
StreamMaxLength = "26214400"
StreamMinPort = "1024"
StreamMaxPort = "2048"
MaxThreads = "10"
ReadTimeout = "120"
CommandReadTimeout = "30"
SendBufTimeout = "500"
MaxQueue = "100"
IdleTimeout = "30"
ExcludePath = "^/proc/", "^/sys/"
MaxDirectoryRecursion = "15"
FollowDirectorySymlinks disabled
FollowFileSymlinks disabled
CrossFilesystems = "yes"
SelfCheck = "600"
ConcurrentDatabaseReload = "yes"
DisableCache disabled
VirusEvent disabled
ExitOnOOM disabled
AllowAllMatchScan = "yes"
Foreground disabled
Debug disabled
LeaveTemporaryFiles disabled
User = "clamscan"
Bytecode = "yes"
BytecodeSecurity = "TrustSigned"
BytecodeTimeout = "10000"
BytecodeUnsigned disabled
BytecodeMode = "Auto"
DetectPUA disabled
ExcludePUA disabled
IncludePUA disabled
ScanPE = "yes"
ScanELF = "yes"
ScanMail disabled
ScanPartialMessages disabled
PhishingSignatures = "yes"
PhishingScanURLs = "yes"
HeuristicAlerts = "yes"
HeuristicScanPrecedence disabled
StructuredDataDetection disabled
StructuredMinCreditCardCount = "3"
StructuredMinSSNCount = "3"
StructuredSSNFormatNormal = "yes"
StructuredSSNFormatStripped disabled
ScanHTML = "yes"
ScanOLE2 = "yes"
AlertBrokenExecutables disabled
AlertBrokenMedia disabled
AlertEncrypted disabled
StructuredCCOnly disabled
AlertEncryptedArchive disabled
AlertEncryptedDoc disabled
AlertOLE2Macros disabled
AlertPhishingSSLMismatch disabled
AlertPhishingCloak disabled
AlertPartitionIntersection disabled
ScanPDF = "yes"
ScanSWF = "yes"
ScanXMLDOCS = "yes"
ScanHWP3 = "yes"
ScanArchive = "yes"
ForceToDisk disabled
MaxScanTime disabled
MaxScanSize = "104857600"
MaxFileSize = "26214400"
MaxRecursion = "16"
MaxFiles = "10000"
MaxEmbeddedPE = "10485760"
MaxHTMLNormalize = "10485760"
MaxHTMLNoTags = "2097152"
MaxScriptNormalize = "5242880"
MaxZipTypeRcg = "1048576"
MaxPartitions = "50"
MaxIconsPE = "100"
MaxRecHWP3 = "16"
PCREMatchLimit = "100000"
PCRERecMatchLimit = "2000"
PCREMaxFileSize = "26214400"
OnAccessMountPath = "/"
OnAccessIncludePath disabled
OnAccessExcludePath = "/proc", "/dev", "/sys", "/var/log"
OnAccessExcludeRootUID disabled
OnAccessExcludeUID disabled
OnAccessExcludeUname disabled
OnAccessMaxFileSize = "5242880"
OnAccessDisableDDD disabled
OnAccessPrevention = "yes"
OnAccessExtraScanning = "yes"
OnAccessCurlTimeout = "5000"
OnAccessMaxThreads = "5"
OnAccessRetryAttempts disabled
OnAccessDenyOnError disabled
DevACOnly disabled
DevACDepth disabled
DevPerformance disabled
DevLiblog disabled
DisableCertCheck disabled
AlgorithmicDetection = "yes"
BlockMax disabled
PhishingAlwaysBlockSSLMismatch disabled
PhishingAlwaysBlockCloak disabled
PartitionIntersection disabled
OLE2BlockMacros disabled
ArchiveBlockEncrypted disabled

Config file: freshclam.conf
---------------------------
LogFileMaxSize = "2097152"
LogTime = "yes"
LogSyslog = "yes"
LogFacility = "LOG_LOCAL6"
LogVerbose disabled
LogRotate = "yes"
PidFile = "/var/run/freshclam.pid"
DatabaseDirectory = "/var/www/html"
Foreground disabled
Debug disabled
UpdateLogFile = "/var/log/freshclam.log"
DatabaseOwner = "clamscan"
Checks = "24"
DNSDatabaseInfo = "current.cvd.clamav.net"
DatabaseMirror = "database.clamav.net"
PrivateMirror disabled
MaxAttempts = "3"
ScriptedUpdates disabled
TestDatabases = "yes"
CompressLocalDatabase disabled
ExtraDatabase disabled
ExcludeDatabase disabled
DatabaseCustomURL disabled
HTTPProxyServer = "proxy.service.cnqr.tech"
HTTPProxyPort = "3128"
HTTPProxyUsername disabled
HTTPProxyPassword disabled
HTTPUserAgent disabled
NotifyClamd = "/etc/clamd.d/scan.conf"
OnUpdateExecute disabled
OnErrorExecute disabled
OnOutdatedExecute disabled
LocalIPAddress disabled
ConnectTimeout = "300"
ReceiveTimeout disabled
Bytecode = "yes"

mail/clamav-milter.conf not found

Software settings
-----------------
Version: 0.103.2
Optional features supported: MEMPOOL IPv6 AUTOIT_EA06 BZIP2 LIBXML2 PCRE2 ICONV JSON

Database information
--------------------
Database directory: /var/www/html
daily.cvd: version 26211, sigs: 3992151, built on Thu Jun 24 11:04:24 2021
main.cvd: version 59, sigs: 4564902, built on Mon Nov 25 13:56:15 2019
bytecode.cvd: version 333, sigs: 92, built on Mon Mar 8 15:21:51 2021
Total number of signatures: 8557145

Platform information
--------------------
uname: Linux 3.10.0-1160.31.1.el7.x86_64 #1 SMP Wed May 26 20:18:08 UTC 2021 x86_64
OS: linux-gnu, ARCH: x86_64, CPU: x86_64
zlib version: 1.2.7 (1.2.7), compile flags: a9
platform id: 0x0a217b7b0800000002040805

Build information
-----------------
GNU C: 4.8.5 20150623 (Red Hat 4.8.5-44) (4.8.5)
CPPFLAGS: -I/usr/include/libprelude
CFLAGS: -O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -m64 -mtune=generic -fno-strict-aliasing -D_LARGEFILE_SOURCE -D_LARGEFILE64_SOURCE -D_FILE_OFFSET_BITS=64
CXXFLAGS: -O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -m64 -mtune=generic
LDFLAGS: -Wl,-z,relro -specs=/usr/lib/rpm/redhat/redhat-hardened-ld -Wl,--as-needed -lprelude
Configure: '--build=x86_64-redhat-linux-gnu' '--host=x86_64-redhat-linux-gnu' '--program-prefix=' '--disable-dependency-tracking' '--prefix=/usr' '--exec-prefix=/usr' '--bindir=/usr/bin' '--sbindir=/usr/sbin' '--sysconfdir=/etc' '--datadir=/usr/share' '--includedir=/usr/include' '--libdir=/usr/lib64' '--libexecdir=/usr/libexec' '--localstatedir=/var' '--sharedstatedir=/var/lib' '--mandir=/usr/share/man' '--infodir=/usr/share/info' '--enable-milter' '--disable-clamav' '--disable-static' '--disable-zlib-vcheck''--disable-unrar' '--enable-id-check' '--enable-dns' '--with-dbdir=/var/lib/clamav' '--with-group=clamupdate' '--with-user=clamupdate' '--disable-rpath' '--disable-silent-rules' '--enable-clamdtop' '--enable-prelude' 'build_alias=x86_64-redhat-linux-gnu' 'host_alias=x86_64-redhat-linux-gnu' 'CXXFLAGS=-O2 -g-pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -m64 -mtune=generic' 'LDFLAGS=-Wl,-z,relro -specs=/usr/lib/rpm/redhat/redhat-hardened-ld -Wl,--as-needed' 'CFLAGS=-O2 -g -pipe -Wall -Wp,-D_FORTIFY_SOURCE=2 -fexceptions -fstack-protector-strong --param=ssp-buffer-size=4 -grecord-gcc-switches -specs=/usr/lib/rpm/redhat/redhat-hardened-cc1 -m64 -mtune=generic' 'PKG_CONFIG_PATH=:/usr/lib64/pkgconfig:/usr/share/pkgconfig'
sizeof(void*) = 8
Engine flevel: 123, dconf: 123

From: clamav-users <clamav-users-bounces@lists.clamav.net> on behalf of vze1amckv--- via clamav-users <clamav-users@lists.clamav.net>
Date: Thursday, June 24, 2021 at 8:32 PM
To: Lopez, Carmelo via clamav-users <clamav-users@lists.clamav.net>
Cc: vze1amckv@verizon.net <vze1amckv@verizon.net>
Subject: Re: [clamav-users] Unable to start clamd daemon
I apologize if the answer to my question is obvious from your original
post. Although I can see you're running it in the cloud, what
distribution/flavor/version of operating system are you using?

Meanwhile, please feel free to post the output of the "clamconf"
command. Thank you.

On 6/24/21 8:04 PM, Lopez, Carmelo via clamav-users wrote:
> Hello,
>
> I am new to clamav and I$B!G(Bve completed installing a private mirror
> server. Freshclam works fine but when I try to start the clamd daemon I
> get this error. Any help is appreciated.
>
> systemctl status clamd@scan -l
>
> $B!|(B clamd@scan.service - clamd scanner (scan) daemon
>
> Loaded: loaded (/usr/lib/systemd/system/clamd@scan.service; enabled;
> vendor preset: disabled)
>
> Active: failed (Result: start-limit) since Thu 2021-06-24 23:21:13
> UTC; 41min ago
>
> Docs: man:clamd(8)
>
> man:clamd.conf(5)
>
> https://www.clamav.net/documents/
>
> Process: 2030 ExecStart=/usr/sbin/clamd -c /etc/clamd.d/%i.conf
> (code=exited, status=1/FAILURE)
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> clamd@scan.service: control process exited, code=exited status=1
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Failed to start clamd scanner (scan) daemon.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Unit clamd@scan.service entered failed state.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> clamd@scan.service failed.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> clamd@scan.service holdoff time over, scheduling restart.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Stopped clamd scanner (scan) daemon.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> start request repeated too quickly for clamd@scan.service
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Failed to start clamd scanner (scan) daemon.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> Unit clamd@scan.service entered failed state.
>
> Jun 24 23:21:13 ip-10-64-205-168.us-west-2.compute.internal systemd[1]:
> clamd@scan.service failed.
>
> *Carmelo Lopez*
>
> Access-CL-Concur US
>
> *Concur St. Louis Park (MN), *1550 Utica Avenue South, St. Louis Park
> 55416-5312, United States
>
> T +19529471714, M +16512602626, carmelo.lopez01@sap.com
> <mailto:carmelo.lopez01@sap.com>
>
> *Please consider the impact on the environment before printing this email.*
>
> signature_791736281
>
>
>
> _______________________________________________
>
> clamav-users mailing list
> clamav-users@lists.clamav.net
> https://lists.clamav.net/mailman/listinfo/clamav-users
>
>
> Help us build a comprehensive ClamAV guide:
> https://github.com/vrtadmin/clamav-faq
>
> http://www.clamav.net/contact.html#ml
>

_______________________________________________

clamav-users mailing list
clamav-users@lists.clamav.net
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml
Re: [clamav-users] Unable to start clamd daemon [ In reply to ]
Hi there,

On Thu, 24 June 2021, Lopez, Carmelo via clamav-users wrote:

> I am new to clamav and I$B!G(Bve completed installing a private mirror
> server.

Can you tell us why you need a private mirror? That's not to say that
I think you don't need one, but it isn't the place where a newcomer to
ClamAV would normally start. To be clear, a private mirror will only
usually be needed if you have a large number of machines in a single
network, many or all of which will run ClamAV. By having a copy of
the ClamAV database on each machine (and, more importantly, by keeping
all these individual copies up to date) the many machines might create
an unnecessarily large load - not only on your Internet connection but
also on the (Cloudflare) database servers. Cloudflare might consider
the load abusive, and, if it did, would respond by blocking connection
attempts from your public IP address.

If you're having any difficulty, and you don't actually need a private
mirror, I'd recommend keeping things simpler by getting the database
updates directly to the machines which are running ClamAV.

>> Freshclam works fine but when I try to start the clamd daemon I
>> get this error. Any help is appreciated.
>>
>> systemctl status clamd@scan -l
>> ...
>> Process: 2030 ExecStart=/usr/sbin/clamd -c /etc/clamd.d/%i.conf
>> (code=exited, status=1/FAILURE)
>> ...

Can I take it that this command was run on the private mirror server?

On Fri, 25 Jun 2021, Lopez, Carmelo via clamav-users wrote:

> I am running RHEL, Red Hat Enterprise Linux Server release 7.9
> (Maipo). The output of $B!H(Bclamconf$B!I(B below: By the way, I am running
> these commands from the clamav private mirror server.
>
> [root@ip-10-64-205-168 bin]# clamconf
> Checking configuration files in /etc
> ...

Can you tell us *exactly* how you installed ClamAV (a) on your private
mirror server and (b) on any other machines?

--

73,
Ged.
PS: My mailing list email address accepts mail only from the list.

_______________________________________________

clamav-users mailing list
clamav-users@lists.clamav.net
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml
Re: [clamav-users] Unable to start clamd daemon [ In reply to ]
We will have lots of clamav clients so that?s why I built a private mirror. I?ve resolved the issue. Apparently selinux was preventing the clamd daemon from starting. After disabling it, clamd started fine.

From: clamav-users <clamav-users-bounces@lists.clamav.net> on behalf of G.W. Haywood via clamav-users <clamav-users@lists.clamav.net>
Date: Friday, June 25, 2021 at 11:03 AM
To: Lopez, Carmelo via clamav-users <clamav-users@lists.clamav.net>
Cc: G.W. Haywood <clamav@jubileegroup.co.uk>
Subject: Re: [clamav-users] Unable to start clamd daemon
Hi there,

On Thu, 24 June 2021, Lopez, Carmelo via clamav-users wrote:

> I am new to clamav and I?ve completed installing a private mirror
> server.

Can you tell us why you need a private mirror? That's not to say that
I think you don't need one, but it isn't the place where a newcomer to
ClamAV would normally start. To be clear, a private mirror will only
usually be needed if you have a large number of machines in a single
network, many or all of which will run ClamAV. By having a copy of
the ClamAV database on each machine (and, more importantly, by keeping
all these individual copies up to date) the many machines might create
an unnecessarily large load - not only on your Internet connection but
also on the (Cloudflare) database servers. Cloudflare might consider
the load abusive, and, if it did, would respond by blocking connection
attempts from your public IP address.

If you're having any difficulty, and you don't actually need a private
mirror, I'd recommend keeping things simpler by getting the database
updates directly to the machines which are running ClamAV.

>> Freshclam works fine but when I try to start the clamd daemon I
>> get this error. Any help is appreciated.
>>
>> systemctl status clamd@scan -l
>> ...
>> Process: 2030 ExecStart=/usr/sbin/clamd -c /etc/clamd.d/%i.conf
>> (code=exited, status=1/FAILURE)
>> ...

Can I take it that this command was run on the private mirror server?

On Fri, 25 Jun 2021, Lopez, Carmelo via clamav-users wrote:

> I am running RHEL, Red Hat Enterprise Linux Server release 7.9
> (Maipo). The output of ?clamconf? below: By the way, I am running
> these commands from the clamav private mirror server.
>
> [root@ip-10-64-205-168 bin]# clamconf
> Checking configuration files in /etc
> ...

Can you tell us *exactly* how you installed ClamAV (a) on your private
mirror server and (b) on any other machines?

--

73,
Ged.
PS: My mailing list email address accepts mail only from the list.

_______________________________________________

clamav-users mailing list
clamav-users@lists.clamav.net
https://lists.clamav.net/mailman/listinfo/clamav-users


Help us build a comprehensive ClamAV guide:
https://github.com/vrtadmin/clamav-faq

http://www.clamav.net/contact.html#ml
Re: [clamav-users] Unable to start clamd daemon [ In reply to ]
On Tue, Jun 29, 2021 at 12:59 AM Lopez, Carmelo via clamav-users <
clamav-users@lists.clamav.net> wrote:

> We will have lots of clamav clients so that’s why I built a private
> mirror. I’ve resolved the issue. Apparently selinux was preventing the
> clamd daemon from starting. After disabling it, clamd started fine.
>

Instead of disabling SELinux and losing all the benefits it provides, you
should tell it to allow clamd to run. As the installation instructions say:

sudo setsebool -P antivirus_can_scan_system 1

Re-enable SELinux and try that to see if clamd will start.


Kind Regards,
Ray



>
>
> *From: *clamav-users <clamav-users-bounces@lists.clamav.net> on behalf of
> G.W. Haywood via clamav-users <clamav-users@lists.clamav.net>
> *Date: *Friday, June 25, 2021 at 11:03 AM
> *To: *Lopez, Carmelo via clamav-users <clamav-users@lists.clamav.net>
> *Cc: *G.W. Haywood <clamav@jubileegroup.co.uk>
> *Subject: *Re: [clamav-users] Unable to start clamd daemon
>
> Hi there,
>
> On Thu, 24 June 2021, Lopez, Carmelo via clamav-users wrote:
>
> > I am new to clamav and I’ve completed installing a private mirror
> > server.
>
> Can you tell us why you need a private mirror? That's not to say that
> I think you don't need one, but it isn't the place where a newcomer to
> ClamAV would normally start. To be clear, a private mirror will only
> usually be needed if you have a large number of machines in a single
> network, many or all of which will run ClamAV. By having a copy of
> the ClamAV database on each machine (and, more importantly, by keeping
> all these individual copies up to date) the many machines might create
> an unnecessarily large load - not only on your Internet connection but
> also on the (Cloudflare) database servers. Cloudflare might consider
> the load abusive, and, if it did, would respond by blocking connection
> attempts from your public IP address.
>
> If you're having any difficulty, and you don't actually need a private
> mirror, I'd recommend keeping things simpler by getting the database
> updates directly to the machines which are running ClamAV.
>
> >> Freshclam works fine but when I try to start the clamd daemon I
> >> get this error. Any help is appreciated.
> >>
> >> systemctl status clamd@scan -l
> >> ...
> >> Process: 2030 ExecStart=/usr/sbin/clamd -c /etc/clamd.d/%i.conf
> >> (code=exited, status=1/FAILURE)
> >> ...
>
> Can I take it that this command was run on the private mirror server?
>
> On Fri, 25 Jun 2021, Lopez, Carmelo via clamav-users wrote:
>
> > I am running RHEL, Red Hat Enterprise Linux Server release 7.9
> > (Maipo). The output of “clamconf” below: By the way, I am running
> > these commands from the clamav private mirror server.
> >
> > [root@ip-10-64-205-168 bin]# clamconf
> > Checking configuration files in /etc
> > ...
>
> Can you tell us *exactly* how you installed ClamAV (a) on your private
> mirror server and (b) on any other machines?
>
> --
>
> 73,
> Ged.
> PS: My mailing list email address accepts mail only from the list.
>
> _______________________________________________
>
> clamav-users mailing list
> clamav-users@lists.clamav.net
> https://lists.clamav.net/mailman/listinfo/clamav-users
>
>
> Help us build a comprehensive ClamAV guide:
> https://github.com/vrtadmin/clamav-faq
>
> http://www.clamav.net/contact.html#ml
>
> _______________________________________________
>
> clamav-users mailing list
> clamav-users@lists.clamav.net
> https://lists.clamav.net/mailman/listinfo/clamav-users
>
>
> Help us build a comprehensive ClamAV guide:
> https://github.com/vrtadmin/clamav-faq
>
> http://www.clamav.net/contact.html#ml
>

--
Notice: This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they are
addressed. Any unauthorized review, use, disclosure or distribution is
prohibited. If you are not the intended recipient, please contact the
sender by reply e-mail and destroy the message and attachments without
retaining a copy.