1*a325d9c4SApple OSS Distributions#include <darwintest.h> 2*a325d9c4SApple OSS Distributions#include <darwintest_utils.h> 3*a325d9c4SApple OSS Distributions#include <sys/kern_memorystatus.h> 4*a325d9c4SApple OSS Distributions#include <kern/debug.h> 5*a325d9c4SApple OSS Distributions#include <mach-o/dyld.h> 6*a325d9c4SApple OSS Distributions#include <sys/stackshot.h> 7*a325d9c4SApple OSS Distributions#include <kdd.h> 8*a325d9c4SApple OSS Distributions#include <signal.h> 9*a325d9c4SApple OSS Distributions 10*a325d9c4SApple OSS Distributions#define RECURSIONS 25 11*a325d9c4SApple OSS Distributions#define FIRST_RECURSIVE_FRAME 3 12*a325d9c4SApple OSS Distributions 13*a325d9c4SApple OSS DistributionsT_GLOBAL_META( 14*a325d9c4SApple OSS Distributions T_META_NAMESPACE("xnu.stackshot.accuracy"), 15*a325d9c4SApple OSS Distributions T_META_RADAR_COMPONENT_NAME("xnu"), 16*a325d9c4SApple OSS Distributions T_META_RADAR_COMPONENT_VERSION("stackshot"), 17*a325d9c4SApple OSS Distributions T_META_OWNER("jonathan_w_adams"), 18*a325d9c4SApple OSS Distributions T_META_CHECK_LEAKS(false), 19*a325d9c4SApple OSS Distributions T_META_ASROOT(true) 20*a325d9c4SApple OSS Distributions ); 21*a325d9c4SApple OSS Distributions 22*a325d9c4SApple OSS Distributions 23*a325d9c4SApple OSS Distributionsvoid child_init(void); 24*a325d9c4SApple OSS Distributionsvoid parent_helper_singleproc(int); 25*a325d9c4SApple OSS Distributions 26*a325d9c4SApple OSS Distributions#define CHECK_FOR_FAULT_STATS (1 << 0) 27*a325d9c4SApple OSS Distributions#define WRITE_STACKSHOT_BUFFER_TO_TMP (1 << 1) 28*a325d9c4SApple OSS Distributions#define CHECK_FOR_KERNEL_THREADS (1 << 2) 29*a325d9c4SApple OSS Distributionsint check_stackshot(void *, int); 30*a325d9c4SApple OSS Distributions 31*a325d9c4SApple OSS Distributions/* used for WRITE_STACKSHOT_BUFFER_TO_TMP */ 32*a325d9c4SApple OSS Distributionsstatic char const *current_scenario_name; 33*a325d9c4SApple OSS Distributionsstatic pid_t child_pid; 34*a325d9c4SApple OSS Distributions 35*a325d9c4SApple OSS Distributions/* helpers */ 36*a325d9c4SApple OSS Distributions 37*a325d9c4SApple OSS Distributionsstatic void __attribute__((noinline)) 38*a325d9c4SApple OSS Distributionschild_recurse(int r, int spin, void (^cb)(void)) 39*a325d9c4SApple OSS Distributions{ 40*a325d9c4SApple OSS Distributions if (r > 0) { 41*a325d9c4SApple OSS Distributions child_recurse(r - 1, spin, cb); 42*a325d9c4SApple OSS Distributions } 43*a325d9c4SApple OSS Distributions 44*a325d9c4SApple OSS Distributions cb(); 45*a325d9c4SApple OSS Distributions 46*a325d9c4SApple OSS Distributions /* wait forever */ 47*a325d9c4SApple OSS Distributions if (spin == 0) { 48*a325d9c4SApple OSS Distributions sleep(100000); 49*a325d9c4SApple OSS Distributions } else if (spin == 2) { 50*a325d9c4SApple OSS Distributions int v = 1; 51*a325d9c4SApple OSS Distributions /* ssh won't let the session die if we still have file handles open to its output. */ 52*a325d9c4SApple OSS Distributions close(STDERR_FILENO); 53*a325d9c4SApple OSS Distributions close(STDOUT_FILENO); 54*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.wedge_thread", NULL, NULL, &v, sizeof(v)), 55*a325d9c4SApple OSS Distributions "wedged thread in the kernel"); 56*a325d9c4SApple OSS Distributions } else { 57*a325d9c4SApple OSS Distributions while (1) { 58*a325d9c4SApple OSS Distributions __asm__ volatile("" : : : "memory"); 59*a325d9c4SApple OSS Distributions } 60*a325d9c4SApple OSS Distributions } 61*a325d9c4SApple OSS Distributions} 62*a325d9c4SApple OSS Distributions 63*a325d9c4SApple OSS DistributionsT_HELPER_DECL(simple_child_process, "child process that will be frozen and others") 64*a325d9c4SApple OSS Distributions{ 65*a325d9c4SApple OSS Distributions child_init(); 66*a325d9c4SApple OSS Distributions} 67*a325d9c4SApple OSS Distributions 68*a325d9c4SApple OSS DistributionsT_HELPER_DECL(sid_child_process, "child process that setsid()s") 69*a325d9c4SApple OSS Distributions{ 70*a325d9c4SApple OSS Distributions pid_t ppid = getppid(); 71*a325d9c4SApple OSS Distributions 72*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(setsid(), "session id set"); 73*a325d9c4SApple OSS Distributions 74*a325d9c4SApple OSS Distributions child_recurse(RECURSIONS, 2, ^{ 75*a325d9c4SApple OSS Distributions kill(ppid, SIGUSR1); 76*a325d9c4SApple OSS Distributions }); 77*a325d9c4SApple OSS Distributions 78*a325d9c4SApple OSS Distributions T_ASSERT_FAIL("child_init returned!"); 79*a325d9c4SApple OSS Distributions} 80*a325d9c4SApple OSS Distributions 81*a325d9c4SApple OSS Distributionsstatic void 82*a325d9c4SApple OSS Distributionskill_children(void) 83*a325d9c4SApple OSS Distributions{ 84*a325d9c4SApple OSS Distributions kill(child_pid, SIGKILL); 85*a325d9c4SApple OSS Distributions} 86*a325d9c4SApple OSS Distributions 87*a325d9c4SApple OSS Distributionsstatic void * 88*a325d9c4SApple OSS Distributionstake_stackshot(pid_t target_pid, uint64_t extra_flags, uint64_t since_timestamp) 89*a325d9c4SApple OSS Distributions{ 90*a325d9c4SApple OSS Distributions void *stackshot_config; 91*a325d9c4SApple OSS Distributions int err, retries = 5; 92*a325d9c4SApple OSS Distributions uint64_t stackshot_flags = STACKSHOT_KCDATA_FORMAT | 93*a325d9c4SApple OSS Distributions STACKSHOT_THREAD_WAITINFO | 94*a325d9c4SApple OSS Distributions STACKSHOT_GET_DQ; 95*a325d9c4SApple OSS Distributions 96*a325d9c4SApple OSS Distributions /* we should be able to verify delta stackshots */ 97*a325d9c4SApple OSS Distributions if (since_timestamp != 0) { 98*a325d9c4SApple OSS Distributions stackshot_flags |= STACKSHOT_COLLECT_DELTA_SNAPSHOT; 99*a325d9c4SApple OSS Distributions } 100*a325d9c4SApple OSS Distributions 101*a325d9c4SApple OSS Distributions stackshot_flags |= extra_flags; 102*a325d9c4SApple OSS Distributions 103*a325d9c4SApple OSS Distributions stackshot_config = stackshot_config_create(); 104*a325d9c4SApple OSS Distributions T_ASSERT_NOTNULL(stackshot_config, "allocate stackshot config"); 105*a325d9c4SApple OSS Distributions 106*a325d9c4SApple OSS Distributions err = stackshot_config_set_flags(stackshot_config, stackshot_flags); 107*a325d9c4SApple OSS Distributions T_ASSERT_EQ(err, 0, "set flags on stackshot config"); 108*a325d9c4SApple OSS Distributions 109*a325d9c4SApple OSS Distributions err = stackshot_config_set_pid(stackshot_config, target_pid); 110*a325d9c4SApple OSS Distributions T_ASSERT_EQ(err, 0, "set target pid on stackshot config"); 111*a325d9c4SApple OSS Distributions 112*a325d9c4SApple OSS Distributions if (since_timestamp != 0) { 113*a325d9c4SApple OSS Distributions err = stackshot_config_set_delta_timestamp(stackshot_config, since_timestamp); 114*a325d9c4SApple OSS Distributions T_ASSERT_EQ(err, 0, "set prev snapshot time on stackshot config"); 115*a325d9c4SApple OSS Distributions } 116*a325d9c4SApple OSS Distributions 117*a325d9c4SApple OSS Distributions while (retries > 0) { 118*a325d9c4SApple OSS Distributions err = stackshot_capture_with_config(stackshot_config); 119*a325d9c4SApple OSS Distributions if (err == 0) { 120*a325d9c4SApple OSS Distributions break; 121*a325d9c4SApple OSS Distributions } else if (err == EBUSY || err == ETIMEDOUT) { 122*a325d9c4SApple OSS Distributions T_LOG("stackshot capture returned %d (%s)\n", err, strerror(err)); 123*a325d9c4SApple OSS Distributions if (retries == 0) { 124*a325d9c4SApple OSS Distributions T_ASSERT_FAIL("failed to take stackshot with error after retries: %d: %s\n", err, strerror(err)); 125*a325d9c4SApple OSS Distributions } 126*a325d9c4SApple OSS Distributions 127*a325d9c4SApple OSS Distributions retries--; 128*a325d9c4SApple OSS Distributions continue; 129*a325d9c4SApple OSS Distributions } else { 130*a325d9c4SApple OSS Distributions T_ASSERT_FAIL("failed to take stackshot with error: %d: %s\n", err, strerror(err)); 131*a325d9c4SApple OSS Distributions } 132*a325d9c4SApple OSS Distributions } 133*a325d9c4SApple OSS Distributions 134*a325d9c4SApple OSS Distributions return stackshot_config; 135*a325d9c4SApple OSS Distributions} 136*a325d9c4SApple OSS Distributions 137*a325d9c4SApple OSS Distributionsint 138*a325d9c4SApple OSS Distributionscheck_stackshot(void *stackshot_config, int flags) 139*a325d9c4SApple OSS Distributions{ 140*a325d9c4SApple OSS Distributions void *buf; 141*a325d9c4SApple OSS Distributions uint32_t buflen, kcdata_type; 142*a325d9c4SApple OSS Distributions kcdata_iter_t iter; 143*a325d9c4SApple OSS Distributions NSError *nserror = nil; 144*a325d9c4SApple OSS Distributions pid_t target_pid; 145*a325d9c4SApple OSS Distributions int ret = 0; 146*a325d9c4SApple OSS Distributions uint64_t expected_return_addr = 0; 147*a325d9c4SApple OSS Distributions bool found_fault_stats = false; 148*a325d9c4SApple OSS Distributions struct stackshot_fault_stats fault_stats = {0}; 149*a325d9c4SApple OSS Distributions 150*a325d9c4SApple OSS Distributions buf = stackshot_config_get_stackshot_buffer(stackshot_config); 151*a325d9c4SApple OSS Distributions T_ASSERT_NOTNULL(buf, "stackshot buffer is not null"); 152*a325d9c4SApple OSS Distributions buflen = stackshot_config_get_stackshot_size(stackshot_config); 153*a325d9c4SApple OSS Distributions T_ASSERT_GT(buflen, 0, "valid stackshot buffer length"); 154*a325d9c4SApple OSS Distributions target_pid = ((struct stackshot_config*)stackshot_config)->sc_pid; 155*a325d9c4SApple OSS Distributions T_ASSERT_GT(target_pid, 0, "valid target_pid"); 156*a325d9c4SApple OSS Distributions 157*a325d9c4SApple OSS Distributions /* if need to write it to fs, do it now */ 158*a325d9c4SApple OSS Distributions if (flags & WRITE_STACKSHOT_BUFFER_TO_TMP) { 159*a325d9c4SApple OSS Distributions char sspath[MAXPATHLEN]; 160*a325d9c4SApple OSS Distributions strlcpy(sspath, current_scenario_name, sizeof(sspath)); 161*a325d9c4SApple OSS Distributions strlcat(sspath, ".kcdata", sizeof(sspath)); 162*a325d9c4SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(dt_resultfile(sspath, sizeof(sspath)), 163*a325d9c4SApple OSS Distributions "create result file path"); 164*a325d9c4SApple OSS Distributions 165*a325d9c4SApple OSS Distributions FILE *f = fopen(sspath, "w"); 166*a325d9c4SApple OSS Distributions T_WITH_ERRNO; T_QUIET; T_ASSERT_NOTNULL(f, 167*a325d9c4SApple OSS Distributions "open stackshot output file"); 168*a325d9c4SApple OSS Distributions 169*a325d9c4SApple OSS Distributions size_t written = fwrite(buf, buflen, 1, f); 170*a325d9c4SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_SUCCESS(written, "wrote stackshot to file"); 171*a325d9c4SApple OSS Distributions 172*a325d9c4SApple OSS Distributions fclose(f); 173*a325d9c4SApple OSS Distributions } 174*a325d9c4SApple OSS Distributions 175*a325d9c4SApple OSS Distributions /* begin iterating */ 176*a325d9c4SApple OSS Distributions iter = kcdata_iter(buf, buflen); 177*a325d9c4SApple OSS Distributions T_ASSERT_EQ(kcdata_iter_type(iter), KCDATA_BUFFER_BEGIN_STACKSHOT, "buffer is a stackshot"); 178*a325d9c4SApple OSS Distributions 179*a325d9c4SApple OSS Distributions /* time to iterate */ 180*a325d9c4SApple OSS Distributions iter = kcdata_iter_next(iter); 181*a325d9c4SApple OSS Distributions KCDATA_ITER_FOREACH(iter) { 182*a325d9c4SApple OSS Distributions kcdata_type = kcdata_iter_type(iter); 183*a325d9c4SApple OSS Distributions NSNumber *parsedPid; 184*a325d9c4SApple OSS Distributions NSMutableDictionary *parsedContainer, *parsedThreads; 185*a325d9c4SApple OSS Distributions 186*a325d9c4SApple OSS Distributions if ((flags & CHECK_FOR_FAULT_STATS) != 0 && 187*a325d9c4SApple OSS Distributions kcdata_type == STACKSHOT_KCTYPE_STACKSHOT_FAULT_STATS) { 188*a325d9c4SApple OSS Distributions memcpy(&fault_stats, kcdata_iter_payload(iter), sizeof(fault_stats)); 189*a325d9c4SApple OSS Distributions found_fault_stats = true; 190*a325d9c4SApple OSS Distributions } 191*a325d9c4SApple OSS Distributions 192*a325d9c4SApple OSS Distributions if (kcdata_type != KCDATA_TYPE_CONTAINER_BEGIN) { 193*a325d9c4SApple OSS Distributions continue; 194*a325d9c4SApple OSS Distributions } 195*a325d9c4SApple OSS Distributions 196*a325d9c4SApple OSS Distributions if (kcdata_iter_container_type(iter) != STACKSHOT_KCCONTAINER_TASK) { 197*a325d9c4SApple OSS Distributions continue; 198*a325d9c4SApple OSS Distributions } 199*a325d9c4SApple OSS Distributions 200*a325d9c4SApple OSS Distributions parsedContainer = parseKCDataContainer(&iter, &nserror); 201*a325d9c4SApple OSS Distributions T_ASSERT_NOTNULL(parsedContainer, "parsedContainer is not null"); 202*a325d9c4SApple OSS Distributions T_ASSERT_NULL(nserror, "no NSError occured while parsing the kcdata container"); 203*a325d9c4SApple OSS Distributions 204*a325d9c4SApple OSS Distributions /* 205*a325d9c4SApple OSS Distributions * given that we've targetted the pid, we can be sure that this 206*a325d9c4SApple OSS Distributions * ts_pid will be the pid we expect 207*a325d9c4SApple OSS Distributions */ 208*a325d9c4SApple OSS Distributions parsedPid = parsedContainer[@"task_snapshots"][@"task_snapshot"][@"ts_pid"]; 209*a325d9c4SApple OSS Distributions T_ASSERT_EQ([parsedPid intValue], target_pid, "found correct pid"); 210*a325d9c4SApple OSS Distributions 211*a325d9c4SApple OSS Distributions /* start parsing the threads */ 212*a325d9c4SApple OSS Distributions parsedThreads = parsedContainer[@"task_snapshots"][@"thread_snapshots"]; 213*a325d9c4SApple OSS Distributions for (id th_key in parsedThreads) { 214*a325d9c4SApple OSS Distributions uint32_t frame_index = 0; 215*a325d9c4SApple OSS Distributions 216*a325d9c4SApple OSS Distributions if ((flags & CHECK_FOR_KERNEL_THREADS) == 0) { 217*a325d9c4SApple OSS Distributions /* skip threads that don't have enough frames */ 218*a325d9c4SApple OSS Distributions if ([parsedThreads[th_key][@"user_stack_frames"] count] < RECURSIONS) { 219*a325d9c4SApple OSS Distributions continue; 220*a325d9c4SApple OSS Distributions } 221*a325d9c4SApple OSS Distributions 222*a325d9c4SApple OSS Distributions for (id frame in parsedThreads[th_key][@"user_stack_frames"]) { 223*a325d9c4SApple OSS Distributions if ((frame_index >= FIRST_RECURSIVE_FRAME) && (frame_index < (RECURSIONS - FIRST_RECURSIVE_FRAME))) { 224*a325d9c4SApple OSS Distributions if (expected_return_addr == 0ull) { 225*a325d9c4SApple OSS Distributions expected_return_addr = [frame[@"lr"] unsignedLongLongValue]; 226*a325d9c4SApple OSS Distributions } else { 227*a325d9c4SApple OSS Distributions T_QUIET; 228*a325d9c4SApple OSS Distributions T_ASSERT_EQ(expected_return_addr, [frame[@"lr"] unsignedLongLongValue], "expected return address found"); 229*a325d9c4SApple OSS Distributions } 230*a325d9c4SApple OSS Distributions } 231*a325d9c4SApple OSS Distributions frame_index ++; 232*a325d9c4SApple OSS Distributions } 233*a325d9c4SApple OSS Distributions } else { 234*a325d9c4SApple OSS Distributions T_ASSERT_NOTNULL(parsedThreads[th_key][@"kernel_stack_frames"], 235*a325d9c4SApple OSS Distributions "found kernel stack frames"); 236*a325d9c4SApple OSS Distributions } 237*a325d9c4SApple OSS Distributions 238*a325d9c4SApple OSS Distributions } 239*a325d9c4SApple OSS Distributions } 240*a325d9c4SApple OSS Distributions 241*a325d9c4SApple OSS Distributions if (found_fault_stats) { 242*a325d9c4SApple OSS Distributions T_LOG("number of pages faulted in: %d", fault_stats.sfs_pages_faulted_in); 243*a325d9c4SApple OSS Distributions T_LOG("MATUs spent faulting: %lld", fault_stats.sfs_time_spent_faulting); 244*a325d9c4SApple OSS Distributions T_LOG("MATUS fault time limit: %lld", fault_stats.sfs_system_max_fault_time); 245*a325d9c4SApple OSS Distributions T_LOG("did we stop because of the limit?: %s", fault_stats.sfs_stopped_faulting ? "yes" : "no"); 246*a325d9c4SApple OSS Distributions if (expected_return_addr != 0ull) { 247*a325d9c4SApple OSS Distributions T_ASSERT_GT(fault_stats.sfs_pages_faulted_in, 0, "faulted at least one page in"); 248*a325d9c4SApple OSS Distributions T_LOG("NOTE: successfully faulted in the pages"); 249*a325d9c4SApple OSS Distributions } else { 250*a325d9c4SApple OSS Distributions T_LOG("NOTE: We were not able to fault the stack's pages back in"); 251*a325d9c4SApple OSS Distributions 252*a325d9c4SApple OSS Distributions /* if we couldn't fault the pages back in, then at least verify that we tried */ 253*a325d9c4SApple OSS Distributions T_ASSERT_GT(fault_stats.sfs_time_spent_faulting, 0ull, "spent time trying to fault"); 254*a325d9c4SApple OSS Distributions } 255*a325d9c4SApple OSS Distributions } else if ((flags & CHECK_FOR_KERNEL_THREADS) == 0) { 256*a325d9c4SApple OSS Distributions T_ASSERT_NE(expected_return_addr, 0ull, "found child thread with recursions"); 257*a325d9c4SApple OSS Distributions } 258*a325d9c4SApple OSS Distributions 259*a325d9c4SApple OSS Distributions if (flags & CHECK_FOR_FAULT_STATS) { 260*a325d9c4SApple OSS Distributions T_ASSERT_EQ(found_fault_stats, true, "found fault stats"); 261*a325d9c4SApple OSS Distributions } 262*a325d9c4SApple OSS Distributions 263*a325d9c4SApple OSS Distributions return ret; 264*a325d9c4SApple OSS Distributions} 265*a325d9c4SApple OSS Distributions 266*a325d9c4SApple OSS Distributionsvoid 267*a325d9c4SApple OSS Distributionschild_init(void) 268*a325d9c4SApple OSS Distributions{ 269*a325d9c4SApple OSS Distributions#if !TARGET_OS_OSX 270*a325d9c4SApple OSS Distributions int freeze_state; 271*a325d9c4SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 272*a325d9c4SApple OSS Distributions pid_t pid = getpid(); 273*a325d9c4SApple OSS Distributions char padding[16 * 1024]; 274*a325d9c4SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 275*a325d9c4SApple OSS Distributions 276*a325d9c4SApple OSS Distributions T_LOG("child pid: %d\n", pid); 277*a325d9c4SApple OSS Distributions 278*a325d9c4SApple OSS Distributions#if !TARGET_OS_OSX 279*a325d9c4SApple OSS Distributions /* allow us to be frozen */ 280*a325d9c4SApple OSS Distributions freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, pid, 0, NULL, 0); 281*a325d9c4SApple OSS Distributions if (freeze_state == 0) { 282*a325d9c4SApple OSS Distributions T_LOG("CHILD was found to be UNFREEZABLE, enabling freezing."); 283*a325d9c4SApple OSS Distributions memorystatus_control(MEMORYSTATUS_CMD_SET_PROCESS_IS_FREEZABLE, pid, 1, NULL, 0); 284*a325d9c4SApple OSS Distributions freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, pid, 0, NULL, 0); 285*a325d9c4SApple OSS Distributions T_ASSERT_EQ(freeze_state, 1, "successfully set freezeability"); 286*a325d9c4SApple OSS Distributions } 287*a325d9c4SApple OSS Distributions#else 288*a325d9c4SApple OSS Distributions T_LOG("Cannot change freezeability as freezing is only available on embedded devices"); 289*a325d9c4SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 290*a325d9c4SApple OSS Distributions 291*a325d9c4SApple OSS Distributions /* 292*a325d9c4SApple OSS Distributions * recurse a bunch of times to generate predictable data in the stackshot, 293*a325d9c4SApple OSS Distributions * then send SIGUSR1 to the parent to let it know that we are done. 294*a325d9c4SApple OSS Distributions */ 295*a325d9c4SApple OSS Distributions child_recurse(RECURSIONS, 0, ^{ 296*a325d9c4SApple OSS Distributions kill(getppid(), SIGUSR1); 297*a325d9c4SApple OSS Distributions }); 298*a325d9c4SApple OSS Distributions 299*a325d9c4SApple OSS Distributions T_ASSERT_FAIL("child_recurse returned, but it must not?"); 300*a325d9c4SApple OSS Distributions} 301*a325d9c4SApple OSS Distributions 302*a325d9c4SApple OSS Distributionsvoid 303*a325d9c4SApple OSS Distributionsparent_helper_singleproc(int spin) 304*a325d9c4SApple OSS Distributions{ 305*a325d9c4SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 306*a325d9c4SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.basic_sp", NULL); 307*a325d9c4SApple OSS Distributions void *stackshot_config; 308*a325d9c4SApple OSS Distributions 309*a325d9c4SApple OSS Distributions dispatch_async(dq, ^{ 310*a325d9c4SApple OSS Distributions char padding[16 * 1024]; 311*a325d9c4SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 312*a325d9c4SApple OSS Distributions 313*a325d9c4SApple OSS Distributions child_recurse(RECURSIONS, spin, ^{ 314*a325d9c4SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 315*a325d9c4SApple OSS Distributions }); 316*a325d9c4SApple OSS Distributions }); 317*a325d9c4SApple OSS Distributions 318*a325d9c4SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 319*a325d9c4SApple OSS Distributions T_LOG("done waiting for child"); 320*a325d9c4SApple OSS Distributions 321*a325d9c4SApple OSS Distributions /* take the stackshot and parse it */ 322*a325d9c4SApple OSS Distributions stackshot_config = take_stackshot(getpid(), 0, 0); 323*a325d9c4SApple OSS Distributions 324*a325d9c4SApple OSS Distributions /* check that the stackshot has the stack frames */ 325*a325d9c4SApple OSS Distributions check_stackshot(stackshot_config, 0); 326*a325d9c4SApple OSS Distributions 327*a325d9c4SApple OSS Distributions T_LOG("done!"); 328*a325d9c4SApple OSS Distributions} 329*a325d9c4SApple OSS Distributions 330*a325d9c4SApple OSS DistributionsT_DECL(basic, "test that no-fault stackshot works correctly") 331*a325d9c4SApple OSS Distributions{ 332*a325d9c4SApple OSS Distributions char path[PATH_MAX]; 333*a325d9c4SApple OSS Distributions uint32_t path_size = sizeof(path); 334*a325d9c4SApple OSS Distributions char *args[] = { path, "-n", "simple_child_process", NULL }; 335*a325d9c4SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.basic", NULL); 336*a325d9c4SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 337*a325d9c4SApple OSS Distributions dispatch_source_t child_sig_src; 338*a325d9c4SApple OSS Distributions void *stackshot_config; 339*a325d9c4SApple OSS Distributions 340*a325d9c4SApple OSS Distributions current_scenario_name = __func__; 341*a325d9c4SApple OSS Distributions 342*a325d9c4SApple OSS Distributions T_LOG("parent pid: %d\n", getpid()); 343*a325d9c4SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 344*a325d9c4SApple OSS Distributions 345*a325d9c4SApple OSS Distributions /* check if we can run the child successfully */ 346*a325d9c4SApple OSS Distributions#if !TARGET_OS_OSX 347*a325d9c4SApple OSS Distributions int freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, getpid(), 0, NULL, 0); 348*a325d9c4SApple OSS Distributions if (freeze_state == -1) { 349*a325d9c4SApple OSS Distributions T_SKIP("This device doesn't have CONFIG_FREEZE enabled."); 350*a325d9c4SApple OSS Distributions } 351*a325d9c4SApple OSS Distributions#endif 352*a325d9c4SApple OSS Distributions 353*a325d9c4SApple OSS Distributions /* setup signal handling */ 354*a325d9c4SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 355*a325d9c4SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 356*a325d9c4SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 357*a325d9c4SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 358*a325d9c4SApple OSS Distributions }); 359*a325d9c4SApple OSS Distributions dispatch_activate(child_sig_src); 360*a325d9c4SApple OSS Distributions 361*a325d9c4SApple OSS Distributions /* create the child process */ 362*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 363*a325d9c4SApple OSS Distributions T_ATEND(kill_children); 364*a325d9c4SApple OSS Distributions 365*a325d9c4SApple OSS Distributions /* wait until the child has recursed enough */ 366*a325d9c4SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, dispatch_time(DISPATCH_TIME_NOW, 10 /*seconds*/ * 1000000000ULL)); 367*a325d9c4SApple OSS Distributions 368*a325d9c4SApple OSS Distributions T_LOG("child finished, parent executing"); 369*a325d9c4SApple OSS Distributions 370*a325d9c4SApple OSS Distributions /* take the stackshot and parse it */ 371*a325d9c4SApple OSS Distributions stackshot_config = take_stackshot(child_pid, 0, 0); 372*a325d9c4SApple OSS Distributions 373*a325d9c4SApple OSS Distributions /* check that the stackshot has the stack frames */ 374*a325d9c4SApple OSS Distributions check_stackshot(stackshot_config, 0); 375*a325d9c4SApple OSS Distributions 376*a325d9c4SApple OSS Distributions T_LOG("all done, killing child"); 377*a325d9c4SApple OSS Distributions 378*a325d9c4SApple OSS Distributions /* tell the child to quit */ 379*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 380*a325d9c4SApple OSS Distributions} 381*a325d9c4SApple OSS Distributions 382*a325d9c4SApple OSS DistributionsT_DECL(basic_singleproc, "test that no-fault stackshot works correctly in single process setting") 383*a325d9c4SApple OSS Distributions{ 384*a325d9c4SApple OSS Distributions current_scenario_name = __func__; 385*a325d9c4SApple OSS Distributions parent_helper_singleproc(0); 386*a325d9c4SApple OSS Distributions} 387*a325d9c4SApple OSS Distributions 388*a325d9c4SApple OSS DistributionsT_DECL(basic_singleproc_spin, "test that no-fault stackshot works correctly in single process setting with spinning") 389*a325d9c4SApple OSS Distributions{ 390*a325d9c4SApple OSS Distributions current_scenario_name = __func__; 391*a325d9c4SApple OSS Distributions parent_helper_singleproc(1); 392*a325d9c4SApple OSS Distributions} 393*a325d9c4SApple OSS Distributions 394*a325d9c4SApple OSS DistributionsT_DECL(fault, "test that faulting stackshots work correctly") 395*a325d9c4SApple OSS Distributions{ 396*a325d9c4SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_fault_accuracy", NULL); 397*a325d9c4SApple OSS Distributions dispatch_source_t child_sig_src; 398*a325d9c4SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 399*a325d9c4SApple OSS Distributions void *stackshot_config; 400*a325d9c4SApple OSS Distributions int oldftm, newval = 1, freeze_enabled, oldratio, newratio = 0; 401*a325d9c4SApple OSS Distributions size_t oldlen = sizeof(oldftm), fe_len = sizeof(freeze_enabled), ratiolen = sizeof(oldratio); 402*a325d9c4SApple OSS Distributions char path[PATH_MAX]; 403*a325d9c4SApple OSS Distributions uint32_t path_size = sizeof(path); 404*a325d9c4SApple OSS Distributions char *args[] = { path, "-n", "simple_child_process", NULL }; 405*a325d9c4SApple OSS Distributions 406*a325d9c4SApple OSS Distributions current_scenario_name = __func__; 407*a325d9c4SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 408*a325d9c4SApple OSS Distributions 409*a325d9c4SApple OSS Distributions#if TARGET_OS_OSX 410*a325d9c4SApple OSS Distributions T_SKIP("freezing is not available on macOS"); 411*a325d9c4SApple OSS Distributions#endif /* TARGET_OS_OSX */ 412*a325d9c4SApple OSS Distributions 413*a325d9c4SApple OSS Distributions /* Try checking if freezing is enabled at all */ 414*a325d9c4SApple OSS Distributions if (sysctlbyname("vm.freeze_enabled", &freeze_enabled, &fe_len, NULL, 0) == -1) { 415*a325d9c4SApple OSS Distributions if (errno == ENOENT) { 416*a325d9c4SApple OSS Distributions T_SKIP("This device doesn't have CONFIG_FREEZE enabled."); 417*a325d9c4SApple OSS Distributions } else { 418*a325d9c4SApple OSS Distributions T_FAIL("failed to query vm.freeze_enabled, errno: %d", errno); 419*a325d9c4SApple OSS Distributions } 420*a325d9c4SApple OSS Distributions } 421*a325d9c4SApple OSS Distributions 422*a325d9c4SApple OSS Distributions if (!freeze_enabled) { 423*a325d9c4SApple OSS Distributions T_SKIP("Freeze is not enabled, skipping test."); 424*a325d9c4SApple OSS Distributions } 425*a325d9c4SApple OSS Distributions 426*a325d9c4SApple OSS Distributions /* signal handling */ 427*a325d9c4SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 428*a325d9c4SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 429*a325d9c4SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 430*a325d9c4SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 431*a325d9c4SApple OSS Distributions }); 432*a325d9c4SApple OSS Distributions dispatch_activate(child_sig_src); 433*a325d9c4SApple OSS Distributions 434*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 435*a325d9c4SApple OSS Distributions T_ATEND(kill_children); 436*a325d9c4SApple OSS Distributions 437*a325d9c4SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 438*a325d9c4SApple OSS Distributions 439*a325d9c4SApple OSS Distributions /* keep processes in memory */ 440*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_to_memory", &oldftm, &oldlen, &newval, sizeof(newval)), 441*a325d9c4SApple OSS Distributions "disabled freezing to disk"); 442*a325d9c4SApple OSS Distributions 443*a325d9c4SApple OSS Distributions /* set the ratio to zero */ 444*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_private_shared_pages_ratio", &oldratio, &ratiolen, &newratio, sizeof(newratio)), "disabled private:shared ratio checking"); 445*a325d9c4SApple OSS Distributions 446*a325d9c4SApple OSS Distributions /* freeze the child */ 447*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze", NULL, 0, &child_pid, sizeof(child_pid)), 448*a325d9c4SApple OSS Distributions "froze child"); 449*a325d9c4SApple OSS Distributions 450*a325d9c4SApple OSS Distributions /* Sleep to allow the compressor to finish compressing the child */ 451*a325d9c4SApple OSS Distributions sleep(5); 452*a325d9c4SApple OSS Distributions 453*a325d9c4SApple OSS Distributions /* take the stackshot and parse it */ 454*a325d9c4SApple OSS Distributions stackshot_config = take_stackshot(child_pid, STACKSHOT_ENABLE_BT_FAULTING | STACKSHOT_ENABLE_UUID_FAULTING, 0); 455*a325d9c4SApple OSS Distributions 456*a325d9c4SApple OSS Distributions /* check that the stackshot has the stack frames */ 457*a325d9c4SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_FAULT_STATS); 458*a325d9c4SApple OSS Distributions 459*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_to_memory", NULL, 0, &oldftm, sizeof(oldftm)), 460*a325d9c4SApple OSS Distributions "reset freezing to disk"); 461*a325d9c4SApple OSS Distributions 462*a325d9c4SApple OSS Distributions /* reset the private:shared ratio */ 463*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_private_shared_pages_ratio", NULL, 0, &oldratio, sizeof(oldratio)), "reset private:shared ratio"); 464*a325d9c4SApple OSS Distributions 465*a325d9c4SApple OSS Distributions T_LOG("all done, killing child"); 466*a325d9c4SApple OSS Distributions 467*a325d9c4SApple OSS Distributions /* tell the child to quit */ 468*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 469*a325d9c4SApple OSS Distributions} 470*a325d9c4SApple OSS Distributions 471*a325d9c4SApple OSS DistributionsT_DECL(fault_singleproc, "test that faulting stackshots work correctly in a single process setting") 472*a325d9c4SApple OSS Distributions{ 473*a325d9c4SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 474*a325d9c4SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.fault_sp", NULL); 475*a325d9c4SApple OSS Distributions void *stackshot_config; 476*a325d9c4SApple OSS Distributions __block pthread_t child_thread; 477*a325d9c4SApple OSS Distributions char *child_stack; 478*a325d9c4SApple OSS Distributions size_t child_stacklen; 479*a325d9c4SApple OSS Distributions 480*a325d9c4SApple OSS Distributions#if !TARGET_OS_OSX 481*a325d9c4SApple OSS Distributions T_SKIP("madvise(..., ..., MADV_PAGEOUT) is not available on embedded platforms"); 482*a325d9c4SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 483*a325d9c4SApple OSS Distributions 484*a325d9c4SApple OSS Distributions dispatch_async(dq, ^{ 485*a325d9c4SApple OSS Distributions char padding[16 * 1024]; 486*a325d9c4SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 487*a325d9c4SApple OSS Distributions 488*a325d9c4SApple OSS Distributions child_recurse(RECURSIONS, 0, ^{ 489*a325d9c4SApple OSS Distributions child_thread = pthread_self(); 490*a325d9c4SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 491*a325d9c4SApple OSS Distributions }); 492*a325d9c4SApple OSS Distributions }); 493*a325d9c4SApple OSS Distributions 494*a325d9c4SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 495*a325d9c4SApple OSS Distributions T_LOG("done waiting for child"); 496*a325d9c4SApple OSS Distributions 497*a325d9c4SApple OSS Distributions child_stack = pthread_get_stackaddr_np(child_thread); 498*a325d9c4SApple OSS Distributions child_stacklen = pthread_get_stacksize_np(child_thread); 499*a325d9c4SApple OSS Distributions child_stack -= child_stacklen; 500*a325d9c4SApple OSS Distributions T_LOG("child stack: [0x%p - 0x%p]: 0x%zu bytes", (void *)child_stack, 501*a325d9c4SApple OSS Distributions (void *)(child_stack + child_stacklen), child_stacklen); 502*a325d9c4SApple OSS Distributions 503*a325d9c4SApple OSS Distributions /* paging out the child */ 504*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(madvise(child_stack, child_stacklen, MADV_PAGEOUT), "paged out via madvise(2) the child stack"); 505*a325d9c4SApple OSS Distributions 506*a325d9c4SApple OSS Distributions /* take the stackshot and parse it */ 507*a325d9c4SApple OSS Distributions stackshot_config = take_stackshot(getpid(), STACKSHOT_ENABLE_BT_FAULTING | STACKSHOT_ENABLE_UUID_FAULTING, 0); 508*a325d9c4SApple OSS Distributions 509*a325d9c4SApple OSS Distributions /* check that the stackshot has the stack frames */ 510*a325d9c4SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_FAULT_STATS); 511*a325d9c4SApple OSS Distributions 512*a325d9c4SApple OSS Distributions T_LOG("done!"); 513*a325d9c4SApple OSS Distributions} 514*a325d9c4SApple OSS Distributions 515*a325d9c4SApple OSS DistributionsT_DECL(zombie, "test that threads wedged in the kernel can be stackshot'd") 516*a325d9c4SApple OSS Distributions{ 517*a325d9c4SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.zombie", NULL); 518*a325d9c4SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 519*a325d9c4SApple OSS Distributions dispatch_source_t child_sig_src; 520*a325d9c4SApple OSS Distributions void *stackshot_config; 521*a325d9c4SApple OSS Distributions char path[PATH_MAX]; 522*a325d9c4SApple OSS Distributions uint32_t path_size = sizeof(path); 523*a325d9c4SApple OSS Distributions char *args[] = { path, "-n", "sid_child_process", NULL }; 524*a325d9c4SApple OSS Distributions 525*a325d9c4SApple OSS Distributions current_scenario_name = __func__; 526*a325d9c4SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 527*a325d9c4SApple OSS Distributions 528*a325d9c4SApple OSS Distributions T_LOG("parent pid: %d\n", getpid()); 529*a325d9c4SApple OSS Distributions 530*a325d9c4SApple OSS Distributions /* setup signal handling */ 531*a325d9c4SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 532*a325d9c4SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 533*a325d9c4SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 534*a325d9c4SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 535*a325d9c4SApple OSS Distributions }); 536*a325d9c4SApple OSS Distributions dispatch_activate(child_sig_src); 537*a325d9c4SApple OSS Distributions 538*a325d9c4SApple OSS Distributions /* create the child process */ 539*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 540*a325d9c4SApple OSS Distributions T_ATEND(kill_children); 541*a325d9c4SApple OSS Distributions 542*a325d9c4SApple OSS Distributions /* wait until the child has recursed enough */ 543*a325d9c4SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 544*a325d9c4SApple OSS Distributions 545*a325d9c4SApple OSS Distributions T_LOG("child finished, parent executing. invoking jetsam"); 546*a325d9c4SApple OSS Distributions 547*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(memorystatus_control(MEMORYSTATUS_CMD_TEST_JETSAM, child_pid, 0, 0, 0), 548*a325d9c4SApple OSS Distributions "jetsam'd the child"); 549*a325d9c4SApple OSS Distributions 550*a325d9c4SApple OSS Distributions /* Sleep to allow the target process to become zombified */ 551*a325d9c4SApple OSS Distributions sleep(1); 552*a325d9c4SApple OSS Distributions 553*a325d9c4SApple OSS Distributions /* take the stackshot and parse it */ 554*a325d9c4SApple OSS Distributions stackshot_config = take_stackshot(child_pid, 0, 0); 555*a325d9c4SApple OSS Distributions 556*a325d9c4SApple OSS Distributions /* check that the stackshot has the stack frames */ 557*a325d9c4SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_KERNEL_THREADS); 558*a325d9c4SApple OSS Distributions 559*a325d9c4SApple OSS Distributions T_LOG("all done, unwedging and killing child"); 560*a325d9c4SApple OSS Distributions 561*a325d9c4SApple OSS Distributions int v = 1; 562*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.unwedge_thread", NULL, NULL, &v, sizeof(v)), 563*a325d9c4SApple OSS Distributions "unwedged child"); 564*a325d9c4SApple OSS Distributions 565*a325d9c4SApple OSS Distributions /* tell the child to quit */ 566*a325d9c4SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 567*a325d9c4SApple OSS Distributions} 568