Skip to content

Latest commit

 

History

History
82 lines (50 loc) · 4 KB

File metadata and controls

82 lines (50 loc) · 4 KB

Troubleshooting

Wikibase or other services don't start or show as "unhealthy" or "restarting"

Check the current status of the WBS services:

docker compose ps

If a service does not start, or if the status shows unhealthy or restarting, check the logs for that service. For example, run the following command to see the Wikibase startup logs:

docker compose logs wikibase

If the problem was caused by incorrect .env values, fix the values and then follow Resetting an instance before starting again.

Query service updater keeps restarting

If using Wikibase Suite 7.0.0 or before and the wdqs-updater service keeps restarting, check the query service logs:

docker compose logs wdqs-updater

This can happen on a fresh or empty instance if the updater is restarted before query service has synced any entity data. The updater can enter a restart loop and needs a manual --init --start run before the regular updater can continue.

Follow the recovery procedure in the WDQS image README for the latest affected WDQS image version: Updater keeps restarting.

Once the updater has synced the first entity from Wikibase, normal restarts should not trigger this same failure mode.

Browser shows "This site can't be reached" or opens a different site

If your browser cannot find your WBS domain names, or if a domain name opens a parking page or another website, the DNS records may not point to your server yet.

Check the domain names in your .env file:

cat .env

Look for the WIKIBASE_PUBLIC_HOST and WDQS_PUBLIC_HOST values.

Then check whether each domain name resolves to your server's public IP address. Replace the example domain names below with the actual WIKIBASE_PUBLIC_HOST and WDQS_PUBLIC_HOST values from your .env file:

getent hosts yourdomain.example
getent hosts query.yourdomain.example

If the command prints no IP address, or if the returned IP address is different from your server's public IP address, update the DNS records with your DNS provider. DNS changes can also take time to become visible everywhere, so a recently changed record may need more time before WBS is reachable.

If the domain names point to your server but the browser still cannot reach WBS, check that ports 80 and 443 are reachable from the internet. You may need to update your server firewall, cloud provider firewall, or security group settings.

Note

WBS uses Traefik to route web requests and request HTTPS certificates from Let's Encrypt. Let's Encrypt must be able to reach the Traefik service on port 80 using the same domain names that are configured in .env.

You can also check the Traefik logs:

docker compose logs traefik

Browser shows "Your connection is not private" or "This connection is not private"

If your browser shows warnings when you open WBS, the HTTPS certificate may not have been issued yet.

Check the Traefik logs:

docker compose logs traefik

Look for Let's Encrypt errors such as rateLimited, too many certificates already issued, too many failed authorizations recently, or retry after.

Note

WBS uses Traefik to route web requests and request HTTPS certificates from Let's Encrypt. Traefik stores certificate data in the traefik-letsencrypt-data Docker volume.

This can happen if the traefik-letsencrypt-data volume was removed repeatedly while resetting or reinstalling WBS. Keep this volume unless you are intentionally removing the instance.

If Let's Encrypt has rate-limited certificate requests, you may need to wait before another certificate can be issued. Failed validation attempts usually recover gradually within about an hour, but repeatedly requesting certificates for the same domain names can block new certificates for longer. See the Let's Encrypt rate limits documentation for the current limits and retry behavior.