1*5e3eaea3SApple OSS Distributions#include <darwintest.h> 2*5e3eaea3SApple OSS Distributions#include <darwintest_utils.h> 3*5e3eaea3SApple OSS Distributions#include <sys/kern_memorystatus.h> 4*5e3eaea3SApple OSS Distributions#include <kern/debug.h> 5*5e3eaea3SApple OSS Distributions#include <mach-o/dyld.h> 6*5e3eaea3SApple OSS Distributions#include <sys/stackshot.h> 7*5e3eaea3SApple OSS Distributions#include <kdd.h> 8*5e3eaea3SApple OSS Distributions#include <signal.h> 9*5e3eaea3SApple OSS Distributions 10*5e3eaea3SApple OSS Distributions#define RECURSIONS 25 11*5e3eaea3SApple OSS Distributions#define FIRST_RECURSIVE_FRAME 3 12*5e3eaea3SApple OSS Distributions 13*5e3eaea3SApple OSS DistributionsT_GLOBAL_META( 14*5e3eaea3SApple OSS Distributions T_META_NAMESPACE("xnu.stackshot.accuracy"), 15*5e3eaea3SApple OSS Distributions T_META_RADAR_COMPONENT_NAME("xnu"), 16*5e3eaea3SApple OSS Distributions T_META_RADAR_COMPONENT_VERSION("stackshot"), 17*5e3eaea3SApple OSS Distributions T_META_OWNER("jonathan_w_adams"), 18*5e3eaea3SApple OSS Distributions T_META_CHECK_LEAKS(false), 19*5e3eaea3SApple OSS Distributions T_META_ASROOT(true) 20*5e3eaea3SApple OSS Distributions ); 21*5e3eaea3SApple OSS Distributions 22*5e3eaea3SApple OSS Distributions 23*5e3eaea3SApple OSS Distributionsvoid child_init(void); 24*5e3eaea3SApple OSS Distributionsvoid parent_helper_singleproc(int); 25*5e3eaea3SApple OSS Distributions 26*5e3eaea3SApple OSS Distributions#define CHECK_FOR_FAULT_STATS (1 << 0) 27*5e3eaea3SApple OSS Distributions#define WRITE_STACKSHOT_BUFFER_TO_TMP (1 << 1) 28*5e3eaea3SApple OSS Distributions#define CHECK_FOR_KERNEL_THREADS (1 << 2) 29*5e3eaea3SApple OSS Distributionsint check_stackshot(void *, int); 30*5e3eaea3SApple OSS Distributions 31*5e3eaea3SApple OSS Distributions/* used for WRITE_STACKSHOT_BUFFER_TO_TMP */ 32*5e3eaea3SApple OSS Distributionsstatic char const *current_scenario_name; 33*5e3eaea3SApple OSS Distributionsstatic pid_t child_pid; 34*5e3eaea3SApple OSS Distributions 35*5e3eaea3SApple OSS Distributions/* helpers */ 36*5e3eaea3SApple OSS Distributions 37*5e3eaea3SApple OSS Distributionsstatic void __attribute__((noinline)) 38*5e3eaea3SApple OSS Distributionschild_recurse(int r, int spin, void (^cb)(void)) 39*5e3eaea3SApple OSS Distributions{ 40*5e3eaea3SApple OSS Distributions if (r > 0) { 41*5e3eaea3SApple OSS Distributions child_recurse(r - 1, spin, cb); 42*5e3eaea3SApple OSS Distributions } 43*5e3eaea3SApple OSS Distributions 44*5e3eaea3SApple OSS Distributions cb(); 45*5e3eaea3SApple OSS Distributions 46*5e3eaea3SApple OSS Distributions /* wait forever */ 47*5e3eaea3SApple OSS Distributions if (spin == 0) { 48*5e3eaea3SApple OSS Distributions sleep(100000); 49*5e3eaea3SApple OSS Distributions } else if (spin == 2) { 50*5e3eaea3SApple OSS Distributions int v = 1; 51*5e3eaea3SApple OSS Distributions /* ssh won't let the session die if we still have file handles open to its output. */ 52*5e3eaea3SApple OSS Distributions close(STDERR_FILENO); 53*5e3eaea3SApple OSS Distributions close(STDOUT_FILENO); 54*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.wedge_thread", NULL, NULL, &v, sizeof(v)), 55*5e3eaea3SApple OSS Distributions "wedged thread in the kernel"); 56*5e3eaea3SApple OSS Distributions } else { 57*5e3eaea3SApple OSS Distributions while (1) { 58*5e3eaea3SApple OSS Distributions __asm__ volatile("" : : : "memory"); 59*5e3eaea3SApple OSS Distributions } 60*5e3eaea3SApple OSS Distributions } 61*5e3eaea3SApple OSS Distributions} 62*5e3eaea3SApple OSS Distributions 63*5e3eaea3SApple OSS DistributionsT_HELPER_DECL(simple_child_process, "child process that will be frozen and others") 64*5e3eaea3SApple OSS Distributions{ 65*5e3eaea3SApple OSS Distributions child_init(); 66*5e3eaea3SApple OSS Distributions} 67*5e3eaea3SApple OSS Distributions 68*5e3eaea3SApple OSS DistributionsT_HELPER_DECL(sid_child_process, "child process that setsid()s") 69*5e3eaea3SApple OSS Distributions{ 70*5e3eaea3SApple OSS Distributions pid_t ppid = getppid(); 71*5e3eaea3SApple OSS Distributions 72*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(setsid(), "session id set"); 73*5e3eaea3SApple OSS Distributions 74*5e3eaea3SApple OSS Distributions child_recurse(RECURSIONS, 2, ^{ 75*5e3eaea3SApple OSS Distributions kill(ppid, SIGUSR1); 76*5e3eaea3SApple OSS Distributions }); 77*5e3eaea3SApple OSS Distributions 78*5e3eaea3SApple OSS Distributions T_ASSERT_FAIL("child_init returned!"); 79*5e3eaea3SApple OSS Distributions} 80*5e3eaea3SApple OSS Distributions 81*5e3eaea3SApple OSS Distributionsstatic void 82*5e3eaea3SApple OSS Distributionskill_children(void) 83*5e3eaea3SApple OSS Distributions{ 84*5e3eaea3SApple OSS Distributions kill(child_pid, SIGKILL); 85*5e3eaea3SApple OSS Distributions} 86*5e3eaea3SApple OSS Distributions 87*5e3eaea3SApple OSS Distributionsstatic void * 88*5e3eaea3SApple OSS Distributionstake_stackshot(pid_t target_pid, uint64_t extra_flags, uint64_t since_timestamp) 89*5e3eaea3SApple OSS Distributions{ 90*5e3eaea3SApple OSS Distributions void *stackshot_config; 91*5e3eaea3SApple OSS Distributions int err, retries = 5; 92*5e3eaea3SApple OSS Distributions uint64_t stackshot_flags = STACKSHOT_KCDATA_FORMAT | 93*5e3eaea3SApple OSS Distributions STACKSHOT_THREAD_WAITINFO | 94*5e3eaea3SApple OSS Distributions STACKSHOT_GET_DQ; 95*5e3eaea3SApple OSS Distributions 96*5e3eaea3SApple OSS Distributions /* we should be able to verify delta stackshots */ 97*5e3eaea3SApple OSS Distributions if (since_timestamp != 0) { 98*5e3eaea3SApple OSS Distributions stackshot_flags |= STACKSHOT_COLLECT_DELTA_SNAPSHOT; 99*5e3eaea3SApple OSS Distributions } 100*5e3eaea3SApple OSS Distributions 101*5e3eaea3SApple OSS Distributions stackshot_flags |= extra_flags; 102*5e3eaea3SApple OSS Distributions 103*5e3eaea3SApple OSS Distributions stackshot_config = stackshot_config_create(); 104*5e3eaea3SApple OSS Distributions T_ASSERT_NOTNULL(stackshot_config, "allocate stackshot config"); 105*5e3eaea3SApple OSS Distributions 106*5e3eaea3SApple OSS Distributions err = stackshot_config_set_flags(stackshot_config, stackshot_flags); 107*5e3eaea3SApple OSS Distributions T_ASSERT_EQ(err, 0, "set flags on stackshot config"); 108*5e3eaea3SApple OSS Distributions 109*5e3eaea3SApple OSS Distributions err = stackshot_config_set_pid(stackshot_config, target_pid); 110*5e3eaea3SApple OSS Distributions T_ASSERT_EQ(err, 0, "set target pid on stackshot config"); 111*5e3eaea3SApple OSS Distributions 112*5e3eaea3SApple OSS Distributions if (since_timestamp != 0) { 113*5e3eaea3SApple OSS Distributions err = stackshot_config_set_delta_timestamp(stackshot_config, since_timestamp); 114*5e3eaea3SApple OSS Distributions T_ASSERT_EQ(err, 0, "set prev snapshot time on stackshot config"); 115*5e3eaea3SApple OSS Distributions } 116*5e3eaea3SApple OSS Distributions 117*5e3eaea3SApple OSS Distributions while (retries > 0) { 118*5e3eaea3SApple OSS Distributions err = stackshot_capture_with_config(stackshot_config); 119*5e3eaea3SApple OSS Distributions if (err == 0) { 120*5e3eaea3SApple OSS Distributions break; 121*5e3eaea3SApple OSS Distributions } else if (err == EBUSY || err == ETIMEDOUT) { 122*5e3eaea3SApple OSS Distributions T_LOG("stackshot capture returned %d (%s)\n", err, strerror(err)); 123*5e3eaea3SApple OSS Distributions if (retries == 0) { 124*5e3eaea3SApple OSS Distributions T_ASSERT_FAIL("failed to take stackshot with error after retries: %d: %s\n", err, strerror(err)); 125*5e3eaea3SApple OSS Distributions } 126*5e3eaea3SApple OSS Distributions 127*5e3eaea3SApple OSS Distributions retries--; 128*5e3eaea3SApple OSS Distributions continue; 129*5e3eaea3SApple OSS Distributions } else { 130*5e3eaea3SApple OSS Distributions T_ASSERT_FAIL("failed to take stackshot with error: %d: %s\n", err, strerror(err)); 131*5e3eaea3SApple OSS Distributions } 132*5e3eaea3SApple OSS Distributions } 133*5e3eaea3SApple OSS Distributions 134*5e3eaea3SApple OSS Distributions return stackshot_config; 135*5e3eaea3SApple OSS Distributions} 136*5e3eaea3SApple OSS Distributions 137*5e3eaea3SApple OSS Distributionsint 138*5e3eaea3SApple OSS Distributionscheck_stackshot(void *stackshot_config, int flags) 139*5e3eaea3SApple OSS Distributions{ 140*5e3eaea3SApple OSS Distributions void *buf; 141*5e3eaea3SApple OSS Distributions uint32_t buflen, kcdata_type; 142*5e3eaea3SApple OSS Distributions kcdata_iter_t iter; 143*5e3eaea3SApple OSS Distributions NSError *nserror = nil; 144*5e3eaea3SApple OSS Distributions pid_t target_pid; 145*5e3eaea3SApple OSS Distributions int ret = 0; 146*5e3eaea3SApple OSS Distributions uint64_t expected_return_addr = 0; 147*5e3eaea3SApple OSS Distributions bool found_fault_stats = false; 148*5e3eaea3SApple OSS Distributions struct stackshot_fault_stats fault_stats = {0}; 149*5e3eaea3SApple OSS Distributions 150*5e3eaea3SApple OSS Distributions buf = stackshot_config_get_stackshot_buffer(stackshot_config); 151*5e3eaea3SApple OSS Distributions T_ASSERT_NOTNULL(buf, "stackshot buffer is not null"); 152*5e3eaea3SApple OSS Distributions buflen = stackshot_config_get_stackshot_size(stackshot_config); 153*5e3eaea3SApple OSS Distributions T_ASSERT_GT(buflen, 0, "valid stackshot buffer length"); 154*5e3eaea3SApple OSS Distributions target_pid = ((struct stackshot_config*)stackshot_config)->sc_pid; 155*5e3eaea3SApple OSS Distributions T_ASSERT_GT(target_pid, 0, "valid target_pid"); 156*5e3eaea3SApple OSS Distributions 157*5e3eaea3SApple OSS Distributions /* if need to write it to fs, do it now */ 158*5e3eaea3SApple OSS Distributions if (flags & WRITE_STACKSHOT_BUFFER_TO_TMP) { 159*5e3eaea3SApple OSS Distributions char sspath[MAXPATHLEN]; 160*5e3eaea3SApple OSS Distributions strlcpy(sspath, current_scenario_name, sizeof(sspath)); 161*5e3eaea3SApple OSS Distributions strlcat(sspath, ".kcdata", sizeof(sspath)); 162*5e3eaea3SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(dt_resultfile(sspath, sizeof(sspath)), 163*5e3eaea3SApple OSS Distributions "create result file path"); 164*5e3eaea3SApple OSS Distributions 165*5e3eaea3SApple OSS Distributions FILE *f = fopen(sspath, "w"); 166*5e3eaea3SApple OSS Distributions T_WITH_ERRNO; T_QUIET; T_ASSERT_NOTNULL(f, 167*5e3eaea3SApple OSS Distributions "open stackshot output file"); 168*5e3eaea3SApple OSS Distributions 169*5e3eaea3SApple OSS Distributions size_t written = fwrite(buf, buflen, 1, f); 170*5e3eaea3SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_SUCCESS(written, "wrote stackshot to file"); 171*5e3eaea3SApple OSS Distributions 172*5e3eaea3SApple OSS Distributions fclose(f); 173*5e3eaea3SApple OSS Distributions } 174*5e3eaea3SApple OSS Distributions 175*5e3eaea3SApple OSS Distributions /* begin iterating */ 176*5e3eaea3SApple OSS Distributions iter = kcdata_iter(buf, buflen); 177*5e3eaea3SApple OSS Distributions T_ASSERT_EQ(kcdata_iter_type(iter), KCDATA_BUFFER_BEGIN_STACKSHOT, "buffer is a stackshot"); 178*5e3eaea3SApple OSS Distributions 179*5e3eaea3SApple OSS Distributions /* time to iterate */ 180*5e3eaea3SApple OSS Distributions iter = kcdata_iter_next(iter); 181*5e3eaea3SApple OSS Distributions KCDATA_ITER_FOREACH(iter) { 182*5e3eaea3SApple OSS Distributions kcdata_type = kcdata_iter_type(iter); 183*5e3eaea3SApple OSS Distributions NSNumber *parsedPid; 184*5e3eaea3SApple OSS Distributions NSMutableDictionary *parsedContainer, *parsedThreads; 185*5e3eaea3SApple OSS Distributions 186*5e3eaea3SApple OSS Distributions if ((flags & CHECK_FOR_FAULT_STATS) != 0 && 187*5e3eaea3SApple OSS Distributions kcdata_type == STACKSHOT_KCTYPE_STACKSHOT_FAULT_STATS) { 188*5e3eaea3SApple OSS Distributions memcpy(&fault_stats, kcdata_iter_payload(iter), sizeof(fault_stats)); 189*5e3eaea3SApple OSS Distributions found_fault_stats = true; 190*5e3eaea3SApple OSS Distributions } 191*5e3eaea3SApple OSS Distributions 192*5e3eaea3SApple OSS Distributions if (kcdata_type != KCDATA_TYPE_CONTAINER_BEGIN) { 193*5e3eaea3SApple OSS Distributions continue; 194*5e3eaea3SApple OSS Distributions } 195*5e3eaea3SApple OSS Distributions 196*5e3eaea3SApple OSS Distributions if (kcdata_iter_container_type(iter) != STACKSHOT_KCCONTAINER_TASK) { 197*5e3eaea3SApple OSS Distributions continue; 198*5e3eaea3SApple OSS Distributions } 199*5e3eaea3SApple OSS Distributions 200*5e3eaea3SApple OSS Distributions parsedContainer = parseKCDataContainer(&iter, &nserror); 201*5e3eaea3SApple OSS Distributions T_ASSERT_NOTNULL(parsedContainer, "parsedContainer is not null"); 202*5e3eaea3SApple OSS Distributions T_ASSERT_NULL(nserror, "no NSError occured while parsing the kcdata container"); 203*5e3eaea3SApple OSS Distributions 204*5e3eaea3SApple OSS Distributions /* 205*5e3eaea3SApple OSS Distributions * given that we've targetted the pid, we can be sure that this 206*5e3eaea3SApple OSS Distributions * ts_pid will be the pid we expect 207*5e3eaea3SApple OSS Distributions */ 208*5e3eaea3SApple OSS Distributions parsedPid = parsedContainer[@"task_snapshots"][@"task_snapshot"][@"ts_pid"]; 209*5e3eaea3SApple OSS Distributions T_ASSERT_EQ([parsedPid intValue], target_pid, "found correct pid"); 210*5e3eaea3SApple OSS Distributions 211*5e3eaea3SApple OSS Distributions /* start parsing the threads */ 212*5e3eaea3SApple OSS Distributions parsedThreads = parsedContainer[@"task_snapshots"][@"thread_snapshots"]; 213*5e3eaea3SApple OSS Distributions for (id th_key in parsedThreads) { 214*5e3eaea3SApple OSS Distributions uint32_t frame_index = 0; 215*5e3eaea3SApple OSS Distributions 216*5e3eaea3SApple OSS Distributions if ((flags & CHECK_FOR_KERNEL_THREADS) == 0) { 217*5e3eaea3SApple OSS Distributions /* skip threads that don't have enough frames */ 218*5e3eaea3SApple OSS Distributions if ([parsedThreads[th_key][@"user_stack_frames"] count] < RECURSIONS) { 219*5e3eaea3SApple OSS Distributions continue; 220*5e3eaea3SApple OSS Distributions } 221*5e3eaea3SApple OSS Distributions 222*5e3eaea3SApple OSS Distributions for (id frame in parsedThreads[th_key][@"user_stack_frames"]) { 223*5e3eaea3SApple OSS Distributions if ((frame_index >= FIRST_RECURSIVE_FRAME) && (frame_index < (RECURSIONS - FIRST_RECURSIVE_FRAME))) { 224*5e3eaea3SApple OSS Distributions if (expected_return_addr == 0ull) { 225*5e3eaea3SApple OSS Distributions expected_return_addr = [frame[@"lr"] unsignedLongLongValue]; 226*5e3eaea3SApple OSS Distributions } else { 227*5e3eaea3SApple OSS Distributions T_QUIET; 228*5e3eaea3SApple OSS Distributions T_ASSERT_EQ(expected_return_addr, [frame[@"lr"] unsignedLongLongValue], "expected return address found"); 229*5e3eaea3SApple OSS Distributions } 230*5e3eaea3SApple OSS Distributions } 231*5e3eaea3SApple OSS Distributions frame_index ++; 232*5e3eaea3SApple OSS Distributions } 233*5e3eaea3SApple OSS Distributions } else { 234*5e3eaea3SApple OSS Distributions T_ASSERT_NOTNULL(parsedThreads[th_key][@"kernel_stack_frames"], 235*5e3eaea3SApple OSS Distributions "found kernel stack frames"); 236*5e3eaea3SApple OSS Distributions } 237*5e3eaea3SApple OSS Distributions 238*5e3eaea3SApple OSS Distributions } 239*5e3eaea3SApple OSS Distributions } 240*5e3eaea3SApple OSS Distributions 241*5e3eaea3SApple OSS Distributions if (found_fault_stats) { 242*5e3eaea3SApple OSS Distributions T_LOG("number of pages faulted in: %d", fault_stats.sfs_pages_faulted_in); 243*5e3eaea3SApple OSS Distributions T_LOG("MATUs spent faulting: %lld", fault_stats.sfs_time_spent_faulting); 244*5e3eaea3SApple OSS Distributions T_LOG("MATUS fault time limit: %lld", fault_stats.sfs_system_max_fault_time); 245*5e3eaea3SApple OSS Distributions T_LOG("did we stop because of the limit?: %s", fault_stats.sfs_stopped_faulting ? "yes" : "no"); 246*5e3eaea3SApple OSS Distributions if (expected_return_addr != 0ull) { 247*5e3eaea3SApple OSS Distributions T_ASSERT_GT(fault_stats.sfs_pages_faulted_in, 0, "faulted at least one page in"); 248*5e3eaea3SApple OSS Distributions T_LOG("NOTE: successfully faulted in the pages"); 249*5e3eaea3SApple OSS Distributions } else { 250*5e3eaea3SApple OSS Distributions T_LOG("NOTE: We were not able to fault the stack's pages back in"); 251*5e3eaea3SApple OSS Distributions 252*5e3eaea3SApple OSS Distributions /* if we couldn't fault the pages back in, then at least verify that we tried */ 253*5e3eaea3SApple OSS Distributions T_ASSERT_GT(fault_stats.sfs_time_spent_faulting, 0ull, "spent time trying to fault"); 254*5e3eaea3SApple OSS Distributions } 255*5e3eaea3SApple OSS Distributions } else if ((flags & CHECK_FOR_KERNEL_THREADS) == 0) { 256*5e3eaea3SApple OSS Distributions T_ASSERT_NE(expected_return_addr, 0ull, "found child thread with recursions"); 257*5e3eaea3SApple OSS Distributions } 258*5e3eaea3SApple OSS Distributions 259*5e3eaea3SApple OSS Distributions if (flags & CHECK_FOR_FAULT_STATS) { 260*5e3eaea3SApple OSS Distributions T_ASSERT_EQ(found_fault_stats, true, "found fault stats"); 261*5e3eaea3SApple OSS Distributions } 262*5e3eaea3SApple OSS Distributions 263*5e3eaea3SApple OSS Distributions return ret; 264*5e3eaea3SApple OSS Distributions} 265*5e3eaea3SApple OSS Distributions 266*5e3eaea3SApple OSS Distributionsvoid 267*5e3eaea3SApple OSS Distributionschild_init(void) 268*5e3eaea3SApple OSS Distributions{ 269*5e3eaea3SApple OSS Distributions#if !TARGET_OS_OSX 270*5e3eaea3SApple OSS Distributions int freeze_state; 271*5e3eaea3SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 272*5e3eaea3SApple OSS Distributions pid_t pid = getpid(); 273*5e3eaea3SApple OSS Distributions char padding[16 * 1024]; 274*5e3eaea3SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 275*5e3eaea3SApple OSS Distributions 276*5e3eaea3SApple OSS Distributions T_LOG("child pid: %d\n", pid); 277*5e3eaea3SApple OSS Distributions 278*5e3eaea3SApple OSS Distributions#if !TARGET_OS_OSX 279*5e3eaea3SApple OSS Distributions /* allow us to be frozen */ 280*5e3eaea3SApple OSS Distributions freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, pid, 0, NULL, 0); 281*5e3eaea3SApple OSS Distributions if (freeze_state == 0) { 282*5e3eaea3SApple OSS Distributions T_LOG("CHILD was found to be UNFREEZABLE, enabling freezing."); 283*5e3eaea3SApple OSS Distributions memorystatus_control(MEMORYSTATUS_CMD_SET_PROCESS_IS_FREEZABLE, pid, 1, NULL, 0); 284*5e3eaea3SApple OSS Distributions freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, pid, 0, NULL, 0); 285*5e3eaea3SApple OSS Distributions T_ASSERT_EQ(freeze_state, 1, "successfully set freezeability"); 286*5e3eaea3SApple OSS Distributions } 287*5e3eaea3SApple OSS Distributions#else 288*5e3eaea3SApple OSS Distributions T_LOG("Cannot change freezeability as freezing is only available on embedded devices"); 289*5e3eaea3SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 290*5e3eaea3SApple OSS Distributions 291*5e3eaea3SApple OSS Distributions /* 292*5e3eaea3SApple OSS Distributions * recurse a bunch of times to generate predictable data in the stackshot, 293*5e3eaea3SApple OSS Distributions * then send SIGUSR1 to the parent to let it know that we are done. 294*5e3eaea3SApple OSS Distributions */ 295*5e3eaea3SApple OSS Distributions child_recurse(RECURSIONS, 0, ^{ 296*5e3eaea3SApple OSS Distributions kill(getppid(), SIGUSR1); 297*5e3eaea3SApple OSS Distributions }); 298*5e3eaea3SApple OSS Distributions 299*5e3eaea3SApple OSS Distributions T_ASSERT_FAIL("child_recurse returned, but it must not?"); 300*5e3eaea3SApple OSS Distributions} 301*5e3eaea3SApple OSS Distributions 302*5e3eaea3SApple OSS Distributionsvoid 303*5e3eaea3SApple OSS Distributionsparent_helper_singleproc(int spin) 304*5e3eaea3SApple OSS Distributions{ 305*5e3eaea3SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 306*5e3eaea3SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.basic_sp", NULL); 307*5e3eaea3SApple OSS Distributions void *stackshot_config; 308*5e3eaea3SApple OSS Distributions 309*5e3eaea3SApple OSS Distributions dispatch_async(dq, ^{ 310*5e3eaea3SApple OSS Distributions char padding[16 * 1024]; 311*5e3eaea3SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 312*5e3eaea3SApple OSS Distributions 313*5e3eaea3SApple OSS Distributions child_recurse(RECURSIONS, spin, ^{ 314*5e3eaea3SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 315*5e3eaea3SApple OSS Distributions }); 316*5e3eaea3SApple OSS Distributions }); 317*5e3eaea3SApple OSS Distributions 318*5e3eaea3SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 319*5e3eaea3SApple OSS Distributions T_LOG("done waiting for child"); 320*5e3eaea3SApple OSS Distributions 321*5e3eaea3SApple OSS Distributions /* take the stackshot and parse it */ 322*5e3eaea3SApple OSS Distributions stackshot_config = take_stackshot(getpid(), 0, 0); 323*5e3eaea3SApple OSS Distributions 324*5e3eaea3SApple OSS Distributions /* check that the stackshot has the stack frames */ 325*5e3eaea3SApple OSS Distributions check_stackshot(stackshot_config, 0); 326*5e3eaea3SApple OSS Distributions 327*5e3eaea3SApple OSS Distributions T_LOG("done!"); 328*5e3eaea3SApple OSS Distributions} 329*5e3eaea3SApple OSS Distributions 330*5e3eaea3SApple OSS DistributionsT_DECL(basic, "test that no-fault stackshot works correctly") 331*5e3eaea3SApple OSS Distributions{ 332*5e3eaea3SApple OSS Distributions char path[PATH_MAX]; 333*5e3eaea3SApple OSS Distributions uint32_t path_size = sizeof(path); 334*5e3eaea3SApple OSS Distributions char *args[] = { path, "-n", "simple_child_process", NULL }; 335*5e3eaea3SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.basic", NULL); 336*5e3eaea3SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 337*5e3eaea3SApple OSS Distributions dispatch_source_t child_sig_src; 338*5e3eaea3SApple OSS Distributions void *stackshot_config; 339*5e3eaea3SApple OSS Distributions 340*5e3eaea3SApple OSS Distributions current_scenario_name = __func__; 341*5e3eaea3SApple OSS Distributions 342*5e3eaea3SApple OSS Distributions T_LOG("parent pid: %d\n", getpid()); 343*5e3eaea3SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 344*5e3eaea3SApple OSS Distributions 345*5e3eaea3SApple OSS Distributions /* check if we can run the child successfully */ 346*5e3eaea3SApple OSS Distributions#if !TARGET_OS_OSX 347*5e3eaea3SApple OSS Distributions int freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, getpid(), 0, NULL, 0); 348*5e3eaea3SApple OSS Distributions if (freeze_state == -1) { 349*5e3eaea3SApple OSS Distributions T_SKIP("This device doesn't have CONFIG_FREEZE enabled."); 350*5e3eaea3SApple OSS Distributions } 351*5e3eaea3SApple OSS Distributions#endif 352*5e3eaea3SApple OSS Distributions 353*5e3eaea3SApple OSS Distributions /* setup signal handling */ 354*5e3eaea3SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 355*5e3eaea3SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 356*5e3eaea3SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 357*5e3eaea3SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 358*5e3eaea3SApple OSS Distributions }); 359*5e3eaea3SApple OSS Distributions dispatch_activate(child_sig_src); 360*5e3eaea3SApple OSS Distributions 361*5e3eaea3SApple OSS Distributions /* create the child process */ 362*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 363*5e3eaea3SApple OSS Distributions T_ATEND(kill_children); 364*5e3eaea3SApple OSS Distributions 365*5e3eaea3SApple OSS Distributions /* wait until the child has recursed enough */ 366*5e3eaea3SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, dispatch_time(DISPATCH_TIME_NOW, 10 /*seconds*/ * 1000000000ULL)); 367*5e3eaea3SApple OSS Distributions 368*5e3eaea3SApple OSS Distributions T_LOG("child finished, parent executing"); 369*5e3eaea3SApple OSS Distributions 370*5e3eaea3SApple OSS Distributions /* take the stackshot and parse it */ 371*5e3eaea3SApple OSS Distributions stackshot_config = take_stackshot(child_pid, 0, 0); 372*5e3eaea3SApple OSS Distributions 373*5e3eaea3SApple OSS Distributions /* check that the stackshot has the stack frames */ 374*5e3eaea3SApple OSS Distributions check_stackshot(stackshot_config, 0); 375*5e3eaea3SApple OSS Distributions 376*5e3eaea3SApple OSS Distributions T_LOG("all done, killing child"); 377*5e3eaea3SApple OSS Distributions 378*5e3eaea3SApple OSS Distributions /* tell the child to quit */ 379*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 380*5e3eaea3SApple OSS Distributions} 381*5e3eaea3SApple OSS Distributions 382*5e3eaea3SApple OSS DistributionsT_DECL(basic_singleproc, "test that no-fault stackshot works correctly in single process setting") 383*5e3eaea3SApple OSS Distributions{ 384*5e3eaea3SApple OSS Distributions current_scenario_name = __func__; 385*5e3eaea3SApple OSS Distributions parent_helper_singleproc(0); 386*5e3eaea3SApple OSS Distributions} 387*5e3eaea3SApple OSS Distributions 388*5e3eaea3SApple OSS DistributionsT_DECL(basic_singleproc_spin, "test that no-fault stackshot works correctly in single process setting with spinning") 389*5e3eaea3SApple OSS Distributions{ 390*5e3eaea3SApple OSS Distributions current_scenario_name = __func__; 391*5e3eaea3SApple OSS Distributions parent_helper_singleproc(1); 392*5e3eaea3SApple OSS Distributions} 393*5e3eaea3SApple OSS Distributions 394*5e3eaea3SApple OSS DistributionsT_DECL(fault, "test that faulting stackshots work correctly") 395*5e3eaea3SApple OSS Distributions{ 396*5e3eaea3SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_fault_accuracy", NULL); 397*5e3eaea3SApple OSS Distributions dispatch_source_t child_sig_src; 398*5e3eaea3SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 399*5e3eaea3SApple OSS Distributions void *stackshot_config; 400*5e3eaea3SApple OSS Distributions int oldftm, newval = 1, freeze_enabled, oldratio, newratio = 0; 401*5e3eaea3SApple OSS Distributions size_t oldlen = sizeof(oldftm), fe_len = sizeof(freeze_enabled), ratiolen = sizeof(oldratio); 402*5e3eaea3SApple OSS Distributions char path[PATH_MAX]; 403*5e3eaea3SApple OSS Distributions uint32_t path_size = sizeof(path); 404*5e3eaea3SApple OSS Distributions char *args[] = { path, "-n", "simple_child_process", NULL }; 405*5e3eaea3SApple OSS Distributions 406*5e3eaea3SApple OSS Distributions current_scenario_name = __func__; 407*5e3eaea3SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 408*5e3eaea3SApple OSS Distributions 409*5e3eaea3SApple OSS Distributions#if TARGET_OS_OSX 410*5e3eaea3SApple OSS Distributions T_SKIP("freezing is not available on macOS"); 411*5e3eaea3SApple OSS Distributions#endif /* TARGET_OS_OSX */ 412*5e3eaea3SApple OSS Distributions 413*5e3eaea3SApple OSS Distributions /* Try checking if freezing is enabled at all */ 414*5e3eaea3SApple OSS Distributions if (sysctlbyname("vm.freeze_enabled", &freeze_enabled, &fe_len, NULL, 0) == -1) { 415*5e3eaea3SApple OSS Distributions if (errno == ENOENT) { 416*5e3eaea3SApple OSS Distributions T_SKIP("This device doesn't have CONFIG_FREEZE enabled."); 417*5e3eaea3SApple OSS Distributions } else { 418*5e3eaea3SApple OSS Distributions T_FAIL("failed to query vm.freeze_enabled, errno: %d", errno); 419*5e3eaea3SApple OSS Distributions } 420*5e3eaea3SApple OSS Distributions } 421*5e3eaea3SApple OSS Distributions 422*5e3eaea3SApple OSS Distributions if (!freeze_enabled) { 423*5e3eaea3SApple OSS Distributions T_SKIP("Freeze is not enabled, skipping test."); 424*5e3eaea3SApple OSS Distributions } 425*5e3eaea3SApple OSS Distributions 426*5e3eaea3SApple OSS Distributions /* signal handling */ 427*5e3eaea3SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 428*5e3eaea3SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 429*5e3eaea3SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 430*5e3eaea3SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 431*5e3eaea3SApple OSS Distributions }); 432*5e3eaea3SApple OSS Distributions dispatch_activate(child_sig_src); 433*5e3eaea3SApple OSS Distributions 434*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 435*5e3eaea3SApple OSS Distributions T_ATEND(kill_children); 436*5e3eaea3SApple OSS Distributions 437*5e3eaea3SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 438*5e3eaea3SApple OSS Distributions 439*5e3eaea3SApple OSS Distributions /* keep processes in memory */ 440*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_to_memory", &oldftm, &oldlen, &newval, sizeof(newval)), 441*5e3eaea3SApple OSS Distributions "disabled freezing to disk"); 442*5e3eaea3SApple OSS Distributions 443*5e3eaea3SApple OSS Distributions /* set the ratio to zero */ 444*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_private_shared_pages_ratio", &oldratio, &ratiolen, &newratio, sizeof(newratio)), "disabled private:shared ratio checking"); 445*5e3eaea3SApple OSS Distributions 446*5e3eaea3SApple OSS Distributions /* freeze the child */ 447*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze", NULL, 0, &child_pid, sizeof(child_pid)), 448*5e3eaea3SApple OSS Distributions "froze child"); 449*5e3eaea3SApple OSS Distributions 450*5e3eaea3SApple OSS Distributions /* Sleep to allow the compressor to finish compressing the child */ 451*5e3eaea3SApple OSS Distributions sleep(5); 452*5e3eaea3SApple OSS Distributions 453*5e3eaea3SApple OSS Distributions /* take the stackshot and parse it */ 454*5e3eaea3SApple OSS Distributions stackshot_config = take_stackshot(child_pid, STACKSHOT_ENABLE_BT_FAULTING | STACKSHOT_ENABLE_UUID_FAULTING, 0); 455*5e3eaea3SApple OSS Distributions 456*5e3eaea3SApple OSS Distributions /* check that the stackshot has the stack frames */ 457*5e3eaea3SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_FAULT_STATS); 458*5e3eaea3SApple OSS Distributions 459*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_to_memory", NULL, 0, &oldftm, sizeof(oldftm)), 460*5e3eaea3SApple OSS Distributions "reset freezing to disk"); 461*5e3eaea3SApple OSS Distributions 462*5e3eaea3SApple OSS Distributions /* reset the private:shared ratio */ 463*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_private_shared_pages_ratio", NULL, 0, &oldratio, sizeof(oldratio)), "reset private:shared ratio"); 464*5e3eaea3SApple OSS Distributions 465*5e3eaea3SApple OSS Distributions T_LOG("all done, killing child"); 466*5e3eaea3SApple OSS Distributions 467*5e3eaea3SApple OSS Distributions /* tell the child to quit */ 468*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 469*5e3eaea3SApple OSS Distributions} 470*5e3eaea3SApple OSS Distributions 471*5e3eaea3SApple OSS DistributionsT_DECL(fault_singleproc, "test that faulting stackshots work correctly in a single process setting") 472*5e3eaea3SApple OSS Distributions{ 473*5e3eaea3SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 474*5e3eaea3SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.fault_sp", NULL); 475*5e3eaea3SApple OSS Distributions void *stackshot_config; 476*5e3eaea3SApple OSS Distributions __block pthread_t child_thread; 477*5e3eaea3SApple OSS Distributions char *child_stack; 478*5e3eaea3SApple OSS Distributions size_t child_stacklen; 479*5e3eaea3SApple OSS Distributions 480*5e3eaea3SApple OSS Distributions#if !TARGET_OS_OSX 481*5e3eaea3SApple OSS Distributions T_SKIP("madvise(..., ..., MADV_PAGEOUT) is not available on embedded platforms"); 482*5e3eaea3SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 483*5e3eaea3SApple OSS Distributions 484*5e3eaea3SApple OSS Distributions dispatch_async(dq, ^{ 485*5e3eaea3SApple OSS Distributions char padding[16 * 1024]; 486*5e3eaea3SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 487*5e3eaea3SApple OSS Distributions 488*5e3eaea3SApple OSS Distributions child_recurse(RECURSIONS, 0, ^{ 489*5e3eaea3SApple OSS Distributions child_thread = pthread_self(); 490*5e3eaea3SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 491*5e3eaea3SApple OSS Distributions }); 492*5e3eaea3SApple OSS Distributions }); 493*5e3eaea3SApple OSS Distributions 494*5e3eaea3SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 495*5e3eaea3SApple OSS Distributions T_LOG("done waiting for child"); 496*5e3eaea3SApple OSS Distributions 497*5e3eaea3SApple OSS Distributions child_stack = pthread_get_stackaddr_np(child_thread); 498*5e3eaea3SApple OSS Distributions child_stacklen = pthread_get_stacksize_np(child_thread); 499*5e3eaea3SApple OSS Distributions child_stack -= child_stacklen; 500*5e3eaea3SApple OSS Distributions T_LOG("child stack: [0x%p - 0x%p]: 0x%zu bytes", (void *)child_stack, 501*5e3eaea3SApple OSS Distributions (void *)(child_stack + child_stacklen), child_stacklen); 502*5e3eaea3SApple OSS Distributions 503*5e3eaea3SApple OSS Distributions /* paging out the child */ 504*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(madvise(child_stack, child_stacklen, MADV_PAGEOUT), "paged out via madvise(2) the child stack"); 505*5e3eaea3SApple OSS Distributions 506*5e3eaea3SApple OSS Distributions /* take the stackshot and parse it */ 507*5e3eaea3SApple OSS Distributions stackshot_config = take_stackshot(getpid(), STACKSHOT_ENABLE_BT_FAULTING | STACKSHOT_ENABLE_UUID_FAULTING, 0); 508*5e3eaea3SApple OSS Distributions 509*5e3eaea3SApple OSS Distributions /* check that the stackshot has the stack frames */ 510*5e3eaea3SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_FAULT_STATS); 511*5e3eaea3SApple OSS Distributions 512*5e3eaea3SApple OSS Distributions T_LOG("done!"); 513*5e3eaea3SApple OSS Distributions} 514*5e3eaea3SApple OSS Distributions 515*5e3eaea3SApple OSS DistributionsT_DECL(zombie, "test that threads wedged in the kernel can be stackshot'd") 516*5e3eaea3SApple OSS Distributions{ 517*5e3eaea3SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.zombie", NULL); 518*5e3eaea3SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 519*5e3eaea3SApple OSS Distributions dispatch_source_t child_sig_src; 520*5e3eaea3SApple OSS Distributions void *stackshot_config; 521*5e3eaea3SApple OSS Distributions char path[PATH_MAX]; 522*5e3eaea3SApple OSS Distributions uint32_t path_size = sizeof(path); 523*5e3eaea3SApple OSS Distributions char *args[] = { path, "-n", "sid_child_process", NULL }; 524*5e3eaea3SApple OSS Distributions 525*5e3eaea3SApple OSS Distributions current_scenario_name = __func__; 526*5e3eaea3SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 527*5e3eaea3SApple OSS Distributions 528*5e3eaea3SApple OSS Distributions T_LOG("parent pid: %d\n", getpid()); 529*5e3eaea3SApple OSS Distributions 530*5e3eaea3SApple OSS Distributions /* setup signal handling */ 531*5e3eaea3SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 532*5e3eaea3SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 533*5e3eaea3SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 534*5e3eaea3SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 535*5e3eaea3SApple OSS Distributions }); 536*5e3eaea3SApple OSS Distributions dispatch_activate(child_sig_src); 537*5e3eaea3SApple OSS Distributions 538*5e3eaea3SApple OSS Distributions /* create the child process */ 539*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 540*5e3eaea3SApple OSS Distributions T_ATEND(kill_children); 541*5e3eaea3SApple OSS Distributions 542*5e3eaea3SApple OSS Distributions /* wait until the child has recursed enough */ 543*5e3eaea3SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 544*5e3eaea3SApple OSS Distributions 545*5e3eaea3SApple OSS Distributions T_LOG("child finished, parent executing. invoking jetsam"); 546*5e3eaea3SApple OSS Distributions 547*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(memorystatus_control(MEMORYSTATUS_CMD_TEST_JETSAM, child_pid, 0, 0, 0), 548*5e3eaea3SApple OSS Distributions "jetsam'd the child"); 549*5e3eaea3SApple OSS Distributions 550*5e3eaea3SApple OSS Distributions /* Sleep to allow the target process to become zombified */ 551*5e3eaea3SApple OSS Distributions sleep(1); 552*5e3eaea3SApple OSS Distributions 553*5e3eaea3SApple OSS Distributions /* take the stackshot and parse it */ 554*5e3eaea3SApple OSS Distributions stackshot_config = take_stackshot(child_pid, 0, 0); 555*5e3eaea3SApple OSS Distributions 556*5e3eaea3SApple OSS Distributions /* check that the stackshot has the stack frames */ 557*5e3eaea3SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_KERNEL_THREADS); 558*5e3eaea3SApple OSS Distributions 559*5e3eaea3SApple OSS Distributions T_LOG("all done, unwedging and killing child"); 560*5e3eaea3SApple OSS Distributions 561*5e3eaea3SApple OSS Distributions int v = 1; 562*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.unwedge_thread", NULL, NULL, &v, sizeof(v)), 563*5e3eaea3SApple OSS Distributions "unwedged child"); 564*5e3eaea3SApple OSS Distributions 565*5e3eaea3SApple OSS Distributions /* tell the child to quit */ 566*5e3eaea3SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 567*5e3eaea3SApple OSS Distributions} 568