
Research
Security News
Malicious PyPI Package Exploits Deezer API for Coordinated Music Piracy
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
pm2-php-fpm
Advanced tools
PHP-FPM module for Keymetrics
This module monitors following PHP-FPM metrics:
This module reqires PHP-FPM and PM2 to be installed. Also it may require you to edit PHP-FPM configs to enable status page. Make sure your user has privileges to access PHP-FPM socket.
pm2 install pm2-php-fpm
Default settings:
fcgi_path
is /var/run/php5-fpm.sock
;endpoint
is /status
;interval
is 1000
milliseconds.To modify the config values you can use Keymetrics dashboard or the following commands:
pm2 set pm2-php-fpm:fcgi_path /var/run/custom-php-socket.sock
pm2 set pm2-php-fpm:endpoint /health
pm2 set pm2-php-fpm:interval 5000
You may use TCP port instead of UNIX socket:
pm2 set pm2-php-fpm:fcgi_host 127.0.0.1
pm2 set pm2-php-fpm:fcgi_port 9000
Cannot connect to PHP-FPM
errorCheck module configuration. Make sure that path or host and port are the ones you have in PHP-FPM config. Also this error may appear when your PHP-FPM instance is overloaded or stopped unexpectedly.
PHP-FPM status endpoint not found
errorYou’ve entered wrong endpoint. Or changed its name in PHP-FPM configuration recently and didn’t update module settings.
Access to PHP-FPM denied
errorUser running PM2 daemon has no rights to access PHP-FPM socket. You need to add your user to group owning socket. Find out its name in PHP-FPM pool config or use stat -c %G /path/to/php5-fpm.sock
Add your user (e.g. myuser
) to target group (e.g. www-data
): sudo usermod -a -G www-data myuser
Reconnect to your server and restart PM2 daemon: pm2 update
Look through Issues. You may find someone with the same problem. If your problem is unique, feel free to create a new issue.
pm2 uninstall pm2-php-fpm
MIT
FAQs
Monitor PHP-FPM with Keymetrics
The npm package pm2-php-fpm receives a total of 3 weekly downloads. As such, pm2-php-fpm popularity was classified as not popular.
We found that pm2-php-fpm demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 3 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket researchers uncovered a malicious PyPI package exploiting Deezer’s API to enable coordinated music piracy through API abuse and C2 server control.
Research
The Socket Research Team discovered a malicious npm package, '@ton-wallet/create', stealing cryptocurrency wallet keys from developers and users in the TON ecosystem.
Security News
Newly introduced telemetry in devenv 1.4 sparked a backlash over privacy concerns, leading to the removal of its AI-powered feature after strong community pushback.