CloudLinux adds per-account limits (LVE) and a caged file system (CageFS) to a cPanel server, which is why most shared hosts use it. When something breaks, it is usually the kernel, the licence, the package repositories or CageFS. This guide gives a server administrator the checks and fixes for each, in the order that finds the cause fastest.
These commands are for your own server, where you have root. Start by confirming the OS release, the running kernel and that LVE is loaded; then check the CloudLinux licence and registration, because an unregistered server can't reach its repositories. Fix CageFS with cagefsctl, fix CloudLinux Manager by reinstalling its packages with dnf, and never pip install into the system Python. On shared hosting you can't run any of this; open a ticket instead.
Our shared cPanel and DirectAdmin servers run CloudLinux, and we manage the kernel, LVE, CageFS and updates for you. Shared hosting accounts can't run root commands. If your site hits its limits, see how to check your hosting resource usage; for anything else, open a ticket.
1. Get a baseline first
Before you change anything, record what the server is running. Most "mystery" problems turn out to be a kernel that didn't boot, or a release that is older than you thought.
cat /etc/os-release # CloudLinux release, e.g. 8.10 or 9.x
uname -r # the kernel that is running now
grubby --default-kernel # the kernel that will boot next time
cldetect --detect-cp # which control panel CloudLinux detects
uptime # when the server last rebootedIf uname -r and grubby --default-kernel disagree, the server was updated but not rebooted, or it fell back to an older kernel on the last boot. Section 2 covers both.
CentOS 7 and CentOS 8 are end of life. A new cPanel server should run a release that cPanel currently supports, such as AlmaLinux, Rocky Linux, CloudLinux or Ubuntu LTS; the list changes between cPanel versions, so check cPanel's system requirements. See why AlmaLinux and Rocky Linux replaced CentOS.
2. Kernel and LVE checks
LVE is the kernel feature that enforces CPU, memory, process and I/O limits for each account. If it isn't loaded, limits silently stop working.
| Release | What the kernel name looks like | How LVE is provided |
|---|---|---|
| CloudLinux 8 | Contains lve, e.g. 4.18.0-553.xx.1.lve.el8.x86_64 | Built into the CloudLinux kernel |
| CloudLinux 9 | Usually no lve in the name, e.g. 5.14.0-xxx.el9_x.x86_64 | A kernel module (kmod-lve) |
So on CloudLinux 9, a kernel name without "lve" is normal. Check that LVE is actually working instead:
lsmod | grep -i lve # the LVE module is loaded
lvectl list | head # accounts and their limits
lveps # current usage per account
systemctl status lve lvestatslvectl and lveps are command-line tools, not services, so there is no systemctl status lvectl to check.
Boot the right kernel
rpm -qa 'kernel*' | sort # installed kernels
grubby --info=ALL | grep -E '^(index|kernel)'
grubby --set-default /boot/vmlinuz-<version>
rebootAfter the reboot, run uname -r again. Keep at least one older kernel installed as a fallback, and don't remove the running one.
Kernel updates without a reboot
If KernelCare is installed, it patches the running kernel live. kcarectl --info shows whether it is active, and kcarectl --uname shows the effective patched version. A full kernel update with dnf update kernel* still needs a reboot to take effect.
3. Licence, registration and repositories
CloudLinux packages come from the CloudLinux Network, and the server must hold a valid licence to reach it. Errors such as "This system is not registered", repository 403s or missing packages usually trace back here, not to a broken .repo file.
- Check the licence.Run
cldetect --check-license. It should report OK. - Refresh the registration.Run
rhn_check. If it fails, re-register withclnreg_ks --force. An IP-based licence must match the server's main IP. - Rebuild the cache.Run
dnf clean all, thendnf makecache. - List the repositories.Run
dnf repolistand confirm the CloudLinux repositories appear and are enabled. - Update.Run
dnf updateand read any error in full before retrying.
Don't paste a repository file from a forum over the one CloudLinux installed. If the release package is damaged, reinstall it from its own repository (for example, dnf reinstall cloudlinux-release) and let it write the correct configuration.
4. CageFS problems
CageFS gives every user a private view of the file system. When a site suddenly can't find a binary, a PHP extension or a newly installed tool, the cage is often out of date.
cagefsctl --display-user-mode # is CageFS on for all users, or opt-in?
cagefsctl --list-disabled # users outside the cage
cagefsctl --force-update # rebuild the cage after installing software
cagefsctl --remount-all # remount every user's cageTo test whether a problem is caused by the cage, disable it for one user with cagefsctl --disable username, retry, and enable it again with cagefsctl --enable username. Leave it disabled only as long as the test takes; outside the cage, that user can see far more of the server.
5. CloudLinux Manager errors
On a cPanel server, CloudLinux Manager is the WHM plugin (package lvemanager) where you set LVE limits, the PHP and Node.js selectors, and CageFS options. If it shows a blank page or a Python traceback such as ModuleNotFoundError:
- Don't run
pip installto add the missing module. The tools use CloudLinux's own Python packages, and pip changes files thatdnfmanages, which breaks the next update. - Do reinstall the packages that provide it:
dnf reinstall lvemanager lve-utils, then reload WHM. - If
cldiagis available on your release,cldiag --allruns CloudLinux's own consistency checks and names the failing component. - If the error survives a reinstall, send the full traceback to CloudLinux support with your licence details.
6. cPanel's side of the problem
Some faults that look like CloudLinux are really cPanel packages or configuration.
/usr/local/cpanel/scripts/check_cpanel_pkgs --fix # repair cPanel-managed RPMs
/usr/local/cpanel/scripts/upcp # run a cPanel update
/usr/local/cpanel/scripts/restartsrv_httpd # restart Apache the cPanel way
tail -100 /usr/local/cpanel/logs/error_log # cPanel's own errorsFor PHP builds and Apache modules, use EasyApache 4 rather than installing packages by hand; see EasyApache 4 with CloudLinux. If you need to hold a package at one version, use a version lock as described in managing dnf version locks on CloudLinux.
7. Where the evidence is
| Symptom | Where to look |
|---|---|
| Server won't boot the new kernel | journalctl -b -1 (the previous boot) and grubby --default-kernel |
| LVE limits not applied | Kernel messages (journalctl -k, search for "lve") and systemctl status lve |
| dnf or registration errors | The full dnf output, then rhn_check |
| A site can't find a binary | cagefsctl --force-update, then retest |
| WHM plugin errors | /usr/local/cpanel/logs/error_log |
Change one thing at a time, and write down what you changed. Take a snapshot or backup before kernel and release upgrades.
8. Where Domain India fits
If you'd rather not manage CloudLinux yourself, our shared cPanel hosting runs on CloudLinux with CageFS, and we look after the server, security updates and weekly backups. Prices on the card are live and exclude 18% GST.
- 25 GB NVMe SSD Storage
- 50 GB Monthly Bandwidth
- 1 Website
- 10 Email Accounts
If you want root access, a Domain India VPS is self-managed. cPanel is not offered on our VPS plans; you can install cPanel and CloudLinux yourself with licences you buy elsewhere, as described in installing cPanel on a VPS, or pick one of the panels offered at checkout.
- 1 vCPU
- 2 GB DDR4 RAM
- 64 GB NVMe SSD Storage
- 2 TB Monthly Bandwidth
Why doesn't my CloudLinux 9 kernel name contain "lve"?
On CloudLinux 9 the LVE feature is normally loaded as a kernel module, so the kernel name looks like a standard el9 kernel. Check that LVE works with lsmod | grep -i lve and lvectl list rather than by the kernel name.
How do I check that my CloudLinux licence is valid?
Run cldetect --check-license as root; it should report OK. If packages or repositories fail, run rhn_check, and re-register with clnreg_ks --force if needed.
Should I pip install missing Python modules for CloudLinux Manager?
No. CloudLinux tools use their own packaged Python, and pip changes files the package manager controls. Reinstall the lvemanager and lve-utils packages with dnf instead, and contact CloudLinux support if the error remains.
What does cagefsctl --force-update do?
It rebuilds the CageFS template so that software installed on the server since the last update becomes visible inside each user's cage. Run it after installing new binaries or libraries that users need.
Can I run these commands on shared hosting?
No. They need root access to the server. On Domain India shared hosting the server team manages CloudLinux; check your usage in the control panel or open a support ticket.
Does Domain India offer cPanel on a VPS?
No. cPanel is not offered on Domain India VPS plans. The VPS is self-managed, so you can install cPanel and CloudLinux yourself with your own licences, or choose shared cPanel hosting where the server is managed for you.
Ready to decide? Compare cPanel shared hosting with a self-managed VPS, or open a ticket if a limit or error on your shared account needs a look.
Shared cPanel hosting on CloudLinux, with the kernel, CageFS and updates managed for you.
See cPanel hosting plans