# Heartbeat sighup received

**URL:** <https://discuss.elastic.co/t/heartbeat-sighup-received/201267>\
**Category:** Beats\
**Tags:** heartbeat\
**Created:** [September 26, 2019, 4:07pm UTC](https://discuss.elastic.co/t/heartbeat-sighup-received/201267 "2019-09-26T16:07:26Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![ea1987](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ea1987/32/51356_2.png) [@ea1987](https://discuss.elastic.co/u/ea1987)\
**Post date:** [September 26, 2019, 4:07pm UTC](https://discuss.elastic.co/t/heartbeat-sighup-received/201267/1 "2019-09-26T16:07:26Z")

</div>

Hi all,  
I usually start Heartbeat (and other beats) with the following command:

> nohup ./beatname \>/dev/null 2\>&1 &

but heartbeat stops after a while (random period). I checked on debug logs and this is the message I found:

> 2019-09-26T13:00:36.933+0200 DEBUG [service] service/service.go:55 Received sighup, stopping

Of course, sighup is related to an iterrupt of the process related to the user disconnection from the terminal, but this is strange cause sometimes heartbeat runs for hour after user disconnection.  
NB: Elasticsearch and Kibana are running in the same server and are started using the same command, but they are not stopped.

According to your experience what could be the cause of this issue?  
Thanks

---

<div class="post-metadata">

**Author:** ![Andrew\_Cholakian1](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/andrew_cholakian1/32/3612_2.png) [@Andrew\_Cholakian1](https://discuss.elastic.co/u/Andrew_Cholakian1)\
**Post date:** [September 27, 2019, 2:07pm UTC](https://discuss.elastic.co/t/heartbeat-sighup-received/201267/2 "2019-09-27T14:07:44Z")

</div>

This is the first such report we've seen unfortunately. Is there some other thing on the server that could be sending SIGHUPs?

SIGHUP can be sent via `kill` or from `systemd` and similar. It's very hard to say without investigating one's full environment.

---

<div class="post-metadata">

**Author:** ![ea1987](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ea1987/32/51356_2.png) [@ea1987](https://discuss.elastic.co/u/ea1987)\
**Post date:** [September 30, 2019, 10:56am UTC](https://discuss.elastic.co/t/heartbeat-sighup-received/201267/3 "2019-09-30T10:56:00Z")

</div>

Well, I have performed a brief check on all main ELK components about their signal managements and I noticed that beats, apm and node (Kibana) handle sighup command by theirself, as can be seen looking at the last SigIn digit (it should be a number, instead of 0)

```
[elk@<my_host> bin]$ nohup ./kibana >/dev/null 2>&1 &
[4] 29926
[elk@<my_host> bin]$ grep Sig /proc/$!/status
SigQ: 1/63460
SigPnd: 0000000000000000
SigBlk: 0000000000000000
SigIgn: 0000000000001000
SigCgt: 0000000180004202

[elk@<my_host> bin]$ nohup ./elasticsearch >/dev/null 2>&1 &
[2] 29541
[elk@<my_host> bin]$ grep Sig /proc/$!/status
SigQ: 1/63460
SigPnd: 0000000000000000
SigBlk: 0000000000000000
SigIgn: 0000000000000001
SigCgt: 2000000181005cce

[elk@<my_host> heartbeat-7.3.1-linux-x86_64]$ nohup ./heartbeat >/dev/null 2>&1 &
[3] 29739
[elk@<my_host> heartbeat-7.3.1-linux-x86_64]$ grep Sig /proc/$!/status
SigQ: 1/63460
SigPnd: 0000000000000000
SigBlk: fffffffe3bfa3a00
SigIgn: 0000000000000000
SigCgt: ffffffffffc1feff

[elk@itgrezlphd000 metricbeat-7.3.1-linux-x86_64]$ nohup ./metricbeat > /dev/null 2>&1 &
[1] 12077
[elk@itgrezlphd000 metricbeat-7.3.1-linux-x86_64]$ grep Sig /proc/$!/status
SigQ: 0/514512
SigPnd: 0000000000000000
SigBlk: 0000000000000000
SigIgn: 0000000000000000
SigCgt: ffffffffffc1feff

[elk@itgrezlphd000 filebeat-7.3.1-linux-x86_64]$ grep Sig /proc/$!/status
SigQ: 0/514512
SigPnd: 0000000000000000
SigBlk: 0000000000000000
SigIgn: 0000000000000000
SigCgt: ffffffffffc1feff

[elk@<my_host> apm-server-7.3.1]$ nohup ./apm-server >/dev/null 2>&1 &
[5] 30687
[elk@<my_host> apm-server-7.3.1]$ grep Sig /proc/$!/status
SigQ: 1/63460
SigPnd: 0000000000000000
SigBlk: fffffffe3bfa3a00
SigIgn: 0000000000000000
SigCgt: ffffffffffc1feff

```

Is my analysis right?  
I have restarted metricbeats and heartbeat using disown. I will let you know if it works.  
Thanks

---

<div class="post-metadata">

**Author:** ![ea1987](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ea1987/32/51356_2.png) [@ea1987](https://discuss.elastic.co/u/ea1987)\
**Post date:** [October 11, 2019, 10:20am UTC](https://discuss.elastic.co/t/heartbeat-sighup-received/201267/4 "2019-10-11T10:20:49Z")

</div>

Hi,  
disown seems to be the solution 🙂

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 8, 2019, 10:20am UTC](https://discuss.elastic.co/t/heartbeat-sighup-received/201267/5 "2019-11-08T10:20:54Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
