CloudLinux Isolation Report ​
The Isolation Report says whether this CloudLinux server keeps its hosting accounts apart: every account inside its own LVE, with its resource limits, and inside its own CageFS, unable to see other accounts' files. Where it does not, the report lists what is left and takes the steps the panel can take itself. Available since panel 1.9.0.
Overview ​
URL: /admin/settings/cloudlinux/isolation-report
Open it from Settings > CloudLinux > Isolation Report, below LVE Manager. The entry appears once the CloudLinux module is installed. On a server that does not run CloudLinux, the page says Not a CloudLinux server, and when the server cannot be asked, it says Report unavailable.
Refresh checks the server again. Below the verdict, the page shows the CloudLinux release and edition and when the report was made.
The verdict ​
At the top, the report says either:
- Account isolation is guaranteed
- Account isolation is not guaranteed, with the number of problems found. Work through the steps, then refresh the report.
Steps to full isolation ​
Each problem or warning the panel can say something about becomes a numbered step under Steps to full isolation, problems first. Where the panel can take the step itself, the step has a button, and Run this step now? asks for confirmation first:
- Enable CageFS for them - puts every hosting account that is outside CageFS into it. When an account cannot be changed, the message names it and the panel log holds the reason.
- Install mod_hostinglimits - so the entry process limit also covers CGI scripts on Apache. When the package is still being installed, the message says to refresh the report in a minute.
- Switch to PHP Selector extensions - makes CloudLinux alt-php load the extensions each account chooses in the PHP Selector, instead of the server-wide set.
A step without a button says what to do instead, for example rebooting into the CloudLinux kernel or renewing the CloudLinux license.
Moving websites to alt-php ​
On a CloudLinux server, websites and hosting plans belong on CloudLinux alt-php. The Move websites to alt-php card counts the ones that are not on it yet and moves them in three steps. Nothing changes on a website until you start the move.
- Webserver - prepares the web server for alt-php. On Apache, Load mod_lsapi prepares it, and on OpenLiteSpeed, Apply to OpenLiteSpeed does. Both restart the web server after a confirmation. LiteSpeed Enterprise needs no step.
- alt-php versions - a table lists each PHP version in use (Now on), how many Websites and Plans use it, and the alt-php version it Moves to, normally the same release. Choose another version where CloudLinux has none of the same release (No alt-php of this release) or where you want the websites on a newer one. A version that is not installed has an Install button, a version that is installed but not connected yet has a Connect button, and the badge reads Ready once the version can take the websites.
- Move the websites - Move to alt-php, available once the web server step is done, asks for confirmation, then moves every website and hosting plan whose alt-php version is ready. Each website keeps its settings, and the web server reloads.
The move runs in the background and the card shows its progress. When it has finished, the card says how many websites and plans moved and how many failed, and lists each website that did not move with the reason. Move the remaining websites runs it again for what is left. Websites on a version whose alt-php is not ready yet stay where they are.
What the report checks ​
Each check is marked OK, Info, Warning, or Problem. A check that names accounts, websites, or processes can be expanded to list them.
| Section | What it shows |
|---|---|
| CloudLinux platform | The state of CloudLinux on this server, its kernel, and its license. |
| Account isolation (CageFS) | The state of CageFS and of the hosting accounts in it. |
| Website PHP | How websites run PHP, and the websites and hosting plans that are not on alt-php yet. |
| CGI scripts | How CGI scripts run. |
| PHP Selector | The state of the PHP Selector. |
| Monitoring | Whether Watchdog is running. |
| Live processes | Account processes running outside their LVE or CageFS when the report was made. |
Health ​
While websites still run PHP outside LVE and CageFS, the Health page raises a critical issue that counts them and links to this report.
Related pages ​
- CloudLinux - the conversion and what it brings to the panel.
- LVE Manager - CloudLinux's own interface.
- PHP Versions - the PHP versions installed on the server.