Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Not after every update. Restart services that are still using outdated libraries, and reboot when a kernel update must take effect or an updated package requests a reboot. Check Debian’s reboot signal, but do not treat its absence as proof that no reboot is needed.

When Debian needs a reboot—and when it needs a service restart

Security updates can affect different parts of a running server. A library update may leave a running daemon using the old library code; restarting the affected service loads the updated code. A kernel update is different: the server continues running its current kernel until it reboots.

Update or signal What to do Why
Updated library used by a running daemon Identify and restart the affected service when operationally appropriate. A daemon that was already running may still use the old library.
Updated kernel Schedule a host reboot. The updated kernel is activated at boot.
/run/reboot-required exists Review the listed packages and plan a reboot. Packages can use this convention to signal that a reboot is requested.

Debian’s Securing Debian Manual explains that services may need restarting after a security update because running daemons can continue using old libraries. It also recommends restarting after a kernel update. Debian’s Policy Manual, version 4.7.4.1, describes the reboot-required files as a convention and says there is no guarantee about when or whether a requested reboot will occur.

How to decide after installing updates

  1. Review the update result. Complete the package update and read its output and any package-specific instructions.
  2. Check Debian’s reboot signal. Run if [ -e /run/reboot-required ]; then cat /run/reboot-required.pkgs; else echo "No reboot-required file"; fi. If the signal exists, the second file may list packages recorded by maintainers. Treat it as useful evidence, not a complete test: Debian Policy does not guarantee that every reboot need will be signaled.
  3. Look for services that need restarting. Use needrestart to identify services still needing a restart after library updates. Debian’s Security Manual says it can run after APT upgrades and prompt for affected service restarts. For older Debian releases, the manual also mentions checkrestart, available in debian-goodies.
  4. Restart affected services safely. Debian’s default init system and service manager is systemd, according to Debian Policy section 9.3.1. Use the service manager for the affected service; for example, sudo systemctl restart SERVICE, replacing SERVICE with its actual unit name. Check the service’s health afterward.
  5. Reboot for a kernel update or an explicit reboot request. Choose a maintenance window that suits the workload and arrange monitoring and recovery access before restarting the host.
  6. Verify recovery. After boot, confirm that the server is reachable, critical services are healthy, and the running kernel is the expected one.

Take extra care on a remote server

A reboot can interrupt availability, and a networking problem may prevent a remote host from coming back online. Before rebooting, make sure you have a workable recovery route, such as provider console access or a remote serial console where available. Debian’s Debian 13 (trixie) Release Notes specifically warn that a remotely managed machine may need local-console recovery if networking does not return after a kernel upgrade. Their detailed serial-terminal recommendation is for the Bookworm-to-Trixie upgrade; the broader lesson is to plan recovery before a remote reboot.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

If an update requires restarting SSH, keep the current SSH session open and test a second connection before closing it. Debian’s Security Manual recommends this check so a failed restart or access change does not immediately lock you out.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi