Operations
Monitoring & Logs
bash
# Nginx
sudo nginx -t && sudo systemctl reload nginx
sudo nginx -T | sed -n '/server_name 10\.129\.80\.89/,/}/p'
# Docker
docker ps
docker logs CONTAINER_NAME
# Systemd
systemctl status nginx --no-pager
journalctl -u nginx -n 200 --no-pagerBackups & Recovery (PostgreSQL)
bash
# Backup
pg_dump -h 127.0.0.1 -p 3003 -U USERNAME DBNAME > backup.sql
# Restore
psql -h 127.0.0.1 -p 3003 -U USERNAME DBNAME -f backup.sqlSecurity & SELinux
bash
# Frontend: proxy_pass toestaan
sudo setsebool -P httpd_can_network_connect on
# Backend: API poort
sudo firewall-cmd --add-port=3000/tcp --permanent
sudo firewall-cmd --reload
# SELinux poortlabel (indien nodig)
semanage port -l | grep http_port_t | grep 3000 || sudo semanage port -a -t http_port_t -p tcp 3000
# AVC denials
sudo ausearch -m AVC,USER_AVC -ts recent | tail -n 30