I want to find the cause that is why my server restarts.

Dell R320 / CentOS 6.8 / Webmin 1.801 / Virtualmin GPL 5.03

I found that my server was rebooted this morning.
My server is under normal operation.
All services have been well operation.
I want to find the cause that is why the server restarts.
Do I have to open any log files?

Thank you.

Howdy,

First, I’ll offer that Virtualmin wouldn’t reboot your server automatically… in fact no service would.

Is this the first time that happened?

Also, how long has your server been up and running?

It sounds like you’re saying this is a dedicated server? And what is the output of the command “free -m”?

Yes, you can look at the logs – you may want to take a look at /var/log/messages and /var/log/secure around the time the reboots occurred.

-Eric

Thank you, sir.
My server are running last 2 morth.

free -m

______ total______used______ free______ shared______buffers______ cached
Mem: 15874______ 958______ 14916______ 2 ______ 128 ______ 325
-/+ buffers/cache: ______ 505 15369
Swap:
7999 ______ 0 ______ 7999

Here my server boot.log
my server have 1 SSD + 2 HDD

e%Gata_id[293]: HDIO_GET_IDENTITY failed for ‘/dev/sda’

ata_id[295]: HDIO_GET_IDENTITY failed for ‘/dev/sdb’

ata_id[297]: HDIO_GET_IDENTITY failed for ‘/dev/sdc’

	Welcome to e[0;36mCentOSe[0;39m 

Starting udev: e%Gata_id[701]: HDIO_GET_IDENTITY failed for ‘/dev/sda’

ata_id[706]: HDIO_GET_IDENTITY failed for ‘/dev/sdb’

ata_id[716]: HDIO_GET_IDENTITY failed for ‘/dev/sdc’

e[60G[e[0;32m OK e[0;39m]

Setting hostname huso.kr: e[60G[e[0;32m OK e[0;39m]

Checking filesystems
/dev/sda6: clean, 15159/1281120 files, 280730/5120000 blocks
/dev/sda1: recovering journal
/dev/sda1: clean, 60/128016 files, 149322/512000 blocks
/dev/sda8: recovering journal
/dev/sdc1: recovering journal
/dev/sdb1: recovering journal
/dev/sda8: Clearing orphaned inode 20 (uid=27, gid=27, mode=0100600, size=0)
/dev/sda8: Clearing orphaned inode 19 (uid=27, gid=27, mode=0100600, size=0)
/dev/sda8: Clearing orphaned inode 18 (uid=27, gid=27, mode=0100600, size=0)
/dev/sda8: Clearing orphaned inode 16 (uid=27, gid=27, mode=0100600, size=0)
/dev/sda8: Clearing orphaned inode 13 (uid=27, gid=27, mode=0100600, size=0)
/dev/sda8: clean, 195/5808128 files, 411728/23217408 blocks
/dev/sda5: recovering journal
/dev/sdc1: clean, 75775/61054976 files, 4488702/244190208 blocks
/dev/sdb1: clean, 42524/61054976 files, 7724547/244190208 blocks
/dev/sda5: Clearing orphaned inode 916018 (uid=0, gid=0, mode=0100755, size=1383392)
/dev/sda5: clean, 160618/1602496 files, 808978/6400000 blocks
/dev/sda2: recovering journal
/dev/sda2: clean, 44/3203072 files, 247106/12800000 blocks
/dev/sda3: recovering journal
/dev/sda3: Clearing orphaned inode 786507 (uid=0, gid=0, mode=0140777, size=0)
/dev/sda3: Clearing orphaned inode 786506 (uid=0, gid=0, mode=0100600, size=0)
/dev/sda3: Clearing orphaned inode 786505 (uid=0, gid=0, mode=0100600, size=0)
/dev/sda3: clean, 7102/3203072 files, 437005/12800000 blocks
e[60G[e[0;32m OK e[0;39m]

Remounting root filesystem in read-write mode: e[60G[e[0;32m OK e[0;39m]

Mounting local filesystems: e[60G[e[0;32m OK e[0;39m]

Enabling local filesystem quotas: e[60G[e[0;32m OK e[0;39m]

Enabling /etc/fstab swaps: e[60G[e[0;32m OK e[0;39m]

Entering non-interactive startup
ipset: Loaded with no configuration
ip6tables: No config file.e[60G[e[0;33mWARNINGe[0;39m]

iptables: Applying firewall rules: e[60G[e[0;32m OK e[0;39m]

Bringing up loopback interface: e[60G[e[0;32m OK e[0;39m]

Bringing up interface em1: Determining if ip address 112.216.156.205 is already in use for device em1…
e[60G[e[0;32m OK e[0;39m]

Bringing up interface em2: Determining if ip address 192.168.10.205 is already in use for device em2…
e[60G[e[0;32m OK e[0;39m]

Starting auditd: e[60G[e[0;32m OK e[0;39m]

Starting portreserve: e[60G[e[0;32m OK e[0;39m]

Starting system logger: e[60G[e[0;32m OK e[0;39m]

Starting system message bus: e[60G[e[0;32m OK e[0;39m]

Setting network parameters… e[60G[e[0;32m OK e[0;39m]

Starting NetworkManager daemon: e[60G[e[0;32m OK e[0;39m]

Starting named: e[60G[e[0;32m OK e[0;39m]

Mounting filesystems: e[60G[e[0;32m OK e[0;39m]

Starting HAL daemon: e[60G[e[0;32m OK e[0;39m]

Retrigger failed udev eventse[60G[e[0;32m OK e[0;39m]

Starting kdump:e[60G[e[0;32m OK e[0;39m]

Starting sshd: e[60G[e[0;32m OK e[0;39m]

Starting mysqld: e[60G[e[0;32m OK e[0;39m]

Starting Dovecot Imap: e[60G[e[0;32m OK e[0;39m]

Starting saslauthd: e[60G[e[0;32m OK e[0;39m]

Starting postfix: e[60G[e[0;32m OK e[0;39m]

Starting proftpd: e[60G[e[0;32m OK e[0;39m]

Starting httpd: [Thu Jun 30 16:18:22 2016] [warn] module ssl_module is already loaded, skipping
httpd: Could not reliably determine the server’s fully qualified domain name, using huso.kr for ServerName
[Thu Jun 30 16:18:22 2016] [warn] default VirtualHost overlap on port 443, the first has precedence
e[60G[e[0;32m OK e[0;39m]

Starting crond: e[60G[e[0;32m OK e[0;39m]

Starting fail2ban: e[60G[e[0;32m OK e[0;39m]