1*42e22086SApple OSS Distributions#include <darwintest.h> 2*42e22086SApple OSS Distributions#include <darwintest_utils.h> 3*42e22086SApple OSS Distributions#include <sys/kern_memorystatus.h> 4*42e22086SApple OSS Distributions#include <kern/debug.h> 5*42e22086SApple OSS Distributions#include <mach-o/dyld.h> 6*42e22086SApple OSS Distributions#include <sys/stackshot.h> 7*42e22086SApple OSS Distributions#include <kdd.h> 8*42e22086SApple OSS Distributions#include <signal.h> 9*42e22086SApple OSS Distributions 10*42e22086SApple OSS Distributions#define RECURSIONS 25 11*42e22086SApple OSS Distributions#define FIRST_RECURSIVE_FRAME 3 12*42e22086SApple OSS Distributions 13*42e22086SApple OSS DistributionsT_GLOBAL_META( 14*42e22086SApple OSS Distributions T_META_NAMESPACE("xnu.stackshot.accuracy"), 15*42e22086SApple OSS Distributions T_META_RADAR_COMPONENT_NAME("xnu"), 16*42e22086SApple OSS Distributions T_META_RADAR_COMPONENT_VERSION("stackshot"), 17*42e22086SApple OSS Distributions T_META_OWNER("jonathan_w_adams"), 18*42e22086SApple OSS Distributions T_META_CHECK_LEAKS(false), 19*42e22086SApple OSS Distributions T_META_ASROOT(true) 20*42e22086SApple OSS Distributions ); 21*42e22086SApple OSS Distributions 22*42e22086SApple OSS Distributions 23*42e22086SApple OSS Distributionsvoid child_init(void); 24*42e22086SApple OSS Distributionsvoid parent_helper_singleproc(int); 25*42e22086SApple OSS Distributions 26*42e22086SApple OSS Distributions#define CHECK_FOR_FAULT_STATS (1 << 0) 27*42e22086SApple OSS Distributions#define WRITE_STACKSHOT_BUFFER_TO_TMP (1 << 1) 28*42e22086SApple OSS Distributions#define CHECK_FOR_KERNEL_THREADS (1 << 2) 29*42e22086SApple OSS Distributionsint check_stackshot(void *, int); 30*42e22086SApple OSS Distributions 31*42e22086SApple OSS Distributions/* used for WRITE_STACKSHOT_BUFFER_TO_TMP */ 32*42e22086SApple OSS Distributionsstatic char const *current_scenario_name; 33*42e22086SApple OSS Distributionsstatic pid_t child_pid; 34*42e22086SApple OSS Distributions 35*42e22086SApple OSS Distributions/* helpers */ 36*42e22086SApple OSS Distributions 37*42e22086SApple OSS Distributionsstatic void __attribute__((noinline)) 38*42e22086SApple OSS Distributionschild_recurse(int r, int spin, void (^cb)(void)) 39*42e22086SApple OSS Distributions{ 40*42e22086SApple OSS Distributions if (r > 0) { 41*42e22086SApple OSS Distributions child_recurse(r - 1, spin, cb); 42*42e22086SApple OSS Distributions } 43*42e22086SApple OSS Distributions 44*42e22086SApple OSS Distributions cb(); 45*42e22086SApple OSS Distributions 46*42e22086SApple OSS Distributions /* wait forever */ 47*42e22086SApple OSS Distributions if (spin == 0) { 48*42e22086SApple OSS Distributions sleep(100000); 49*42e22086SApple OSS Distributions } else if (spin == 2) { 50*42e22086SApple OSS Distributions int v = 1; 51*42e22086SApple OSS Distributions /* ssh won't let the session die if we still have file handles open to its output. */ 52*42e22086SApple OSS Distributions close(STDERR_FILENO); 53*42e22086SApple OSS Distributions close(STDOUT_FILENO); 54*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.wedge_thread", NULL, NULL, &v, sizeof(v)), 55*42e22086SApple OSS Distributions "wedged thread in the kernel"); 56*42e22086SApple OSS Distributions } else { 57*42e22086SApple OSS Distributions while (1) { 58*42e22086SApple OSS Distributions __asm__ volatile("" : : : "memory"); 59*42e22086SApple OSS Distributions } 60*42e22086SApple OSS Distributions } 61*42e22086SApple OSS Distributions} 62*42e22086SApple OSS Distributions 63*42e22086SApple OSS DistributionsT_HELPER_DECL(simple_child_process, "child process that will be frozen and others") 64*42e22086SApple OSS Distributions{ 65*42e22086SApple OSS Distributions child_init(); 66*42e22086SApple OSS Distributions} 67*42e22086SApple OSS Distributions 68*42e22086SApple OSS DistributionsT_HELPER_DECL(sid_child_process, "child process that setsid()s") 69*42e22086SApple OSS Distributions{ 70*42e22086SApple OSS Distributions pid_t ppid = getppid(); 71*42e22086SApple OSS Distributions 72*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(setsid(), "session id set"); 73*42e22086SApple OSS Distributions 74*42e22086SApple OSS Distributions child_recurse(RECURSIONS, 2, ^{ 75*42e22086SApple OSS Distributions kill(ppid, SIGUSR1); 76*42e22086SApple OSS Distributions }); 77*42e22086SApple OSS Distributions 78*42e22086SApple OSS Distributions T_ASSERT_FAIL("child_init returned!"); 79*42e22086SApple OSS Distributions} 80*42e22086SApple OSS Distributions 81*42e22086SApple OSS Distributionsstatic void 82*42e22086SApple OSS Distributionskill_children(void) 83*42e22086SApple OSS Distributions{ 84*42e22086SApple OSS Distributions kill(child_pid, SIGKILL); 85*42e22086SApple OSS Distributions} 86*42e22086SApple OSS Distributions 87*42e22086SApple OSS Distributionsstatic void * 88*42e22086SApple OSS Distributionstake_stackshot(pid_t target_pid, uint64_t extra_flags, uint64_t since_timestamp) 89*42e22086SApple OSS Distributions{ 90*42e22086SApple OSS Distributions void *stackshot_config; 91*42e22086SApple OSS Distributions int err, retries = 5; 92*42e22086SApple OSS Distributions uint64_t stackshot_flags = STACKSHOT_KCDATA_FORMAT | 93*42e22086SApple OSS Distributions STACKSHOT_THREAD_WAITINFO | 94*42e22086SApple OSS Distributions STACKSHOT_GET_DQ; 95*42e22086SApple OSS Distributions 96*42e22086SApple OSS Distributions /* we should be able to verify delta stackshots */ 97*42e22086SApple OSS Distributions if (since_timestamp != 0) { 98*42e22086SApple OSS Distributions stackshot_flags |= STACKSHOT_COLLECT_DELTA_SNAPSHOT; 99*42e22086SApple OSS Distributions } 100*42e22086SApple OSS Distributions 101*42e22086SApple OSS Distributions stackshot_flags |= extra_flags; 102*42e22086SApple OSS Distributions 103*42e22086SApple OSS Distributions stackshot_config = stackshot_config_create(); 104*42e22086SApple OSS Distributions T_ASSERT_NOTNULL(stackshot_config, "allocate stackshot config"); 105*42e22086SApple OSS Distributions 106*42e22086SApple OSS Distributions err = stackshot_config_set_flags(stackshot_config, stackshot_flags); 107*42e22086SApple OSS Distributions T_ASSERT_EQ(err, 0, "set flags on stackshot config"); 108*42e22086SApple OSS Distributions 109*42e22086SApple OSS Distributions err = stackshot_config_set_pid(stackshot_config, target_pid); 110*42e22086SApple OSS Distributions T_ASSERT_EQ(err, 0, "set target pid on stackshot config"); 111*42e22086SApple OSS Distributions 112*42e22086SApple OSS Distributions if (since_timestamp != 0) { 113*42e22086SApple OSS Distributions err = stackshot_config_set_delta_timestamp(stackshot_config, since_timestamp); 114*42e22086SApple OSS Distributions T_ASSERT_EQ(err, 0, "set prev snapshot time on stackshot config"); 115*42e22086SApple OSS Distributions } 116*42e22086SApple OSS Distributions 117*42e22086SApple OSS Distributions while (retries > 0) { 118*42e22086SApple OSS Distributions err = stackshot_capture_with_config(stackshot_config); 119*42e22086SApple OSS Distributions if (err == 0) { 120*42e22086SApple OSS Distributions break; 121*42e22086SApple OSS Distributions } else if (err == EBUSY || err == ETIMEDOUT) { 122*42e22086SApple OSS Distributions T_LOG("stackshot capture returned %d (%s)\n", err, strerror(err)); 123*42e22086SApple OSS Distributions if (retries == 0) { 124*42e22086SApple OSS Distributions T_ASSERT_FAIL("failed to take stackshot with error after retries: %d: %s\n", err, strerror(err)); 125*42e22086SApple OSS Distributions } 126*42e22086SApple OSS Distributions 127*42e22086SApple OSS Distributions retries--; 128*42e22086SApple OSS Distributions continue; 129*42e22086SApple OSS Distributions } else { 130*42e22086SApple OSS Distributions T_ASSERT_FAIL("failed to take stackshot with error: %d: %s\n", err, strerror(err)); 131*42e22086SApple OSS Distributions } 132*42e22086SApple OSS Distributions } 133*42e22086SApple OSS Distributions 134*42e22086SApple OSS Distributions return stackshot_config; 135*42e22086SApple OSS Distributions} 136*42e22086SApple OSS Distributions 137*42e22086SApple OSS Distributionsint 138*42e22086SApple OSS Distributionscheck_stackshot(void *stackshot_config, int flags) 139*42e22086SApple OSS Distributions{ 140*42e22086SApple OSS Distributions void *buf; 141*42e22086SApple OSS Distributions uint32_t buflen, kcdata_type; 142*42e22086SApple OSS Distributions kcdata_iter_t iter; 143*42e22086SApple OSS Distributions NSError *nserror = nil; 144*42e22086SApple OSS Distributions pid_t target_pid; 145*42e22086SApple OSS Distributions int ret = 0; 146*42e22086SApple OSS Distributions uint64_t expected_return_addr = 0; 147*42e22086SApple OSS Distributions bool found_fault_stats = false; 148*42e22086SApple OSS Distributions struct stackshot_fault_stats fault_stats = {0}; 149*42e22086SApple OSS Distributions 150*42e22086SApple OSS Distributions buf = stackshot_config_get_stackshot_buffer(stackshot_config); 151*42e22086SApple OSS Distributions T_ASSERT_NOTNULL(buf, "stackshot buffer is not null"); 152*42e22086SApple OSS Distributions buflen = stackshot_config_get_stackshot_size(stackshot_config); 153*42e22086SApple OSS Distributions T_ASSERT_GT(buflen, 0, "valid stackshot buffer length"); 154*42e22086SApple OSS Distributions target_pid = ((struct stackshot_config*)stackshot_config)->sc_pid; 155*42e22086SApple OSS Distributions T_ASSERT_GT(target_pid, 0, "valid target_pid"); 156*42e22086SApple OSS Distributions 157*42e22086SApple OSS Distributions /* if need to write it to fs, do it now */ 158*42e22086SApple OSS Distributions if (flags & WRITE_STACKSHOT_BUFFER_TO_TMP) { 159*42e22086SApple OSS Distributions char sspath[MAXPATHLEN]; 160*42e22086SApple OSS Distributions strlcpy(sspath, current_scenario_name, sizeof(sspath)); 161*42e22086SApple OSS Distributions strlcat(sspath, ".kcdata", sizeof(sspath)); 162*42e22086SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(dt_resultfile(sspath, sizeof(sspath)), 163*42e22086SApple OSS Distributions "create result file path"); 164*42e22086SApple OSS Distributions 165*42e22086SApple OSS Distributions FILE *f = fopen(sspath, "w"); 166*42e22086SApple OSS Distributions T_WITH_ERRNO; T_QUIET; T_ASSERT_NOTNULL(f, 167*42e22086SApple OSS Distributions "open stackshot output file"); 168*42e22086SApple OSS Distributions 169*42e22086SApple OSS Distributions size_t written = fwrite(buf, buflen, 1, f); 170*42e22086SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_SUCCESS(written, "wrote stackshot to file"); 171*42e22086SApple OSS Distributions 172*42e22086SApple OSS Distributions fclose(f); 173*42e22086SApple OSS Distributions } 174*42e22086SApple OSS Distributions 175*42e22086SApple OSS Distributions /* begin iterating */ 176*42e22086SApple OSS Distributions iter = kcdata_iter(buf, buflen); 177*42e22086SApple OSS Distributions T_ASSERT_EQ(kcdata_iter_type(iter), KCDATA_BUFFER_BEGIN_STACKSHOT, "buffer is a stackshot"); 178*42e22086SApple OSS Distributions 179*42e22086SApple OSS Distributions /* time to iterate */ 180*42e22086SApple OSS Distributions iter = kcdata_iter_next(iter); 181*42e22086SApple OSS Distributions KCDATA_ITER_FOREACH(iter) { 182*42e22086SApple OSS Distributions kcdata_type = kcdata_iter_type(iter); 183*42e22086SApple OSS Distributions NSNumber *parsedPid; 184*42e22086SApple OSS Distributions NSMutableDictionary *parsedContainer, *parsedThreads; 185*42e22086SApple OSS Distributions 186*42e22086SApple OSS Distributions if ((flags & CHECK_FOR_FAULT_STATS) != 0 && 187*42e22086SApple OSS Distributions kcdata_type == STACKSHOT_KCTYPE_STACKSHOT_FAULT_STATS) { 188*42e22086SApple OSS Distributions memcpy(&fault_stats, kcdata_iter_payload(iter), sizeof(fault_stats)); 189*42e22086SApple OSS Distributions found_fault_stats = true; 190*42e22086SApple OSS Distributions } 191*42e22086SApple OSS Distributions 192*42e22086SApple OSS Distributions if (kcdata_type != KCDATA_TYPE_CONTAINER_BEGIN) { 193*42e22086SApple OSS Distributions continue; 194*42e22086SApple OSS Distributions } 195*42e22086SApple OSS Distributions 196*42e22086SApple OSS Distributions if (kcdata_iter_container_type(iter) != STACKSHOT_KCCONTAINER_TASK) { 197*42e22086SApple OSS Distributions continue; 198*42e22086SApple OSS Distributions } 199*42e22086SApple OSS Distributions 200*42e22086SApple OSS Distributions parsedContainer = parseKCDataContainer(&iter, &nserror); 201*42e22086SApple OSS Distributions T_ASSERT_NOTNULL(parsedContainer, "parsedContainer is not null"); 202*42e22086SApple OSS Distributions T_ASSERT_NULL(nserror, "no NSError occured while parsing the kcdata container"); 203*42e22086SApple OSS Distributions 204*42e22086SApple OSS Distributions /* 205*42e22086SApple OSS Distributions * given that we've targetted the pid, we can be sure that this 206*42e22086SApple OSS Distributions * ts_pid will be the pid we expect 207*42e22086SApple OSS Distributions */ 208*42e22086SApple OSS Distributions parsedPid = parsedContainer[@"task_snapshots"][@"task_snapshot"][@"ts_pid"]; 209*42e22086SApple OSS Distributions T_ASSERT_EQ([parsedPid intValue], target_pid, "found correct pid"); 210*42e22086SApple OSS Distributions 211*42e22086SApple OSS Distributions /* start parsing the threads */ 212*42e22086SApple OSS Distributions parsedThreads = parsedContainer[@"task_snapshots"][@"thread_snapshots"]; 213*42e22086SApple OSS Distributions for (id th_key in parsedThreads) { 214*42e22086SApple OSS Distributions uint32_t frame_index = 0; 215*42e22086SApple OSS Distributions 216*42e22086SApple OSS Distributions if ((flags & CHECK_FOR_KERNEL_THREADS) == 0) { 217*42e22086SApple OSS Distributions /* skip threads that don't have enough frames */ 218*42e22086SApple OSS Distributions if ([parsedThreads[th_key][@"user_stack_frames"] count] < RECURSIONS) { 219*42e22086SApple OSS Distributions continue; 220*42e22086SApple OSS Distributions } 221*42e22086SApple OSS Distributions 222*42e22086SApple OSS Distributions for (id frame in parsedThreads[th_key][@"user_stack_frames"]) { 223*42e22086SApple OSS Distributions if ((frame_index >= FIRST_RECURSIVE_FRAME) && (frame_index < (RECURSIONS - FIRST_RECURSIVE_FRAME))) { 224*42e22086SApple OSS Distributions if (expected_return_addr == 0ull) { 225*42e22086SApple OSS Distributions expected_return_addr = [frame[@"lr"] unsignedLongLongValue]; 226*42e22086SApple OSS Distributions } else { 227*42e22086SApple OSS Distributions T_QUIET; 228*42e22086SApple OSS Distributions T_ASSERT_EQ(expected_return_addr, [frame[@"lr"] unsignedLongLongValue], "expected return address found"); 229*42e22086SApple OSS Distributions } 230*42e22086SApple OSS Distributions } 231*42e22086SApple OSS Distributions frame_index ++; 232*42e22086SApple OSS Distributions } 233*42e22086SApple OSS Distributions } else { 234*42e22086SApple OSS Distributions T_ASSERT_NOTNULL(parsedThreads[th_key][@"kernel_stack_frames"], 235*42e22086SApple OSS Distributions "found kernel stack frames"); 236*42e22086SApple OSS Distributions } 237*42e22086SApple OSS Distributions 238*42e22086SApple OSS Distributions } 239*42e22086SApple OSS Distributions } 240*42e22086SApple OSS Distributions 241*42e22086SApple OSS Distributions if (found_fault_stats) { 242*42e22086SApple OSS Distributions T_LOG("number of pages faulted in: %d", fault_stats.sfs_pages_faulted_in); 243*42e22086SApple OSS Distributions T_LOG("MATUs spent faulting: %lld", fault_stats.sfs_time_spent_faulting); 244*42e22086SApple OSS Distributions T_LOG("MATUS fault time limit: %lld", fault_stats.sfs_system_max_fault_time); 245*42e22086SApple OSS Distributions T_LOG("did we stop because of the limit?: %s", fault_stats.sfs_stopped_faulting ? "yes" : "no"); 246*42e22086SApple OSS Distributions if (expected_return_addr != 0ull) { 247*42e22086SApple OSS Distributions T_ASSERT_GT(fault_stats.sfs_pages_faulted_in, 0, "faulted at least one page in"); 248*42e22086SApple OSS Distributions T_LOG("NOTE: successfully faulted in the pages"); 249*42e22086SApple OSS Distributions } else { 250*42e22086SApple OSS Distributions T_LOG("NOTE: We were not able to fault the stack's pages back in"); 251*42e22086SApple OSS Distributions 252*42e22086SApple OSS Distributions /* if we couldn't fault the pages back in, then at least verify that we tried */ 253*42e22086SApple OSS Distributions T_ASSERT_GT(fault_stats.sfs_time_spent_faulting, 0ull, "spent time trying to fault"); 254*42e22086SApple OSS Distributions } 255*42e22086SApple OSS Distributions } else if ((flags & CHECK_FOR_KERNEL_THREADS) == 0) { 256*42e22086SApple OSS Distributions T_ASSERT_NE(expected_return_addr, 0ull, "found child thread with recursions"); 257*42e22086SApple OSS Distributions } 258*42e22086SApple OSS Distributions 259*42e22086SApple OSS Distributions if (flags & CHECK_FOR_FAULT_STATS) { 260*42e22086SApple OSS Distributions T_ASSERT_EQ(found_fault_stats, true, "found fault stats"); 261*42e22086SApple OSS Distributions } 262*42e22086SApple OSS Distributions 263*42e22086SApple OSS Distributions return ret; 264*42e22086SApple OSS Distributions} 265*42e22086SApple OSS Distributions 266*42e22086SApple OSS Distributionsvoid 267*42e22086SApple OSS Distributionschild_init(void) 268*42e22086SApple OSS Distributions{ 269*42e22086SApple OSS Distributions#if !TARGET_OS_OSX 270*42e22086SApple OSS Distributions int freeze_state; 271*42e22086SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 272*42e22086SApple OSS Distributions pid_t pid = getpid(); 273*42e22086SApple OSS Distributions char padding[16 * 1024]; 274*42e22086SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 275*42e22086SApple OSS Distributions 276*42e22086SApple OSS Distributions T_LOG("child pid: %d\n", pid); 277*42e22086SApple OSS Distributions 278*42e22086SApple OSS Distributions#if !TARGET_OS_OSX 279*42e22086SApple OSS Distributions /* allow us to be frozen */ 280*42e22086SApple OSS Distributions freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, pid, 0, NULL, 0); 281*42e22086SApple OSS Distributions if (freeze_state == 0) { 282*42e22086SApple OSS Distributions T_LOG("CHILD was found to be UNFREEZABLE, enabling freezing."); 283*42e22086SApple OSS Distributions memorystatus_control(MEMORYSTATUS_CMD_SET_PROCESS_IS_FREEZABLE, pid, 1, NULL, 0); 284*42e22086SApple OSS Distributions freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, pid, 0, NULL, 0); 285*42e22086SApple OSS Distributions T_ASSERT_EQ(freeze_state, 1, "successfully set freezeability"); 286*42e22086SApple OSS Distributions } 287*42e22086SApple OSS Distributions#else 288*42e22086SApple OSS Distributions T_LOG("Cannot change freezeability as freezing is only available on embedded devices"); 289*42e22086SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 290*42e22086SApple OSS Distributions 291*42e22086SApple OSS Distributions /* 292*42e22086SApple OSS Distributions * recurse a bunch of times to generate predictable data in the stackshot, 293*42e22086SApple OSS Distributions * then send SIGUSR1 to the parent to let it know that we are done. 294*42e22086SApple OSS Distributions */ 295*42e22086SApple OSS Distributions child_recurse(RECURSIONS, 0, ^{ 296*42e22086SApple OSS Distributions kill(getppid(), SIGUSR1); 297*42e22086SApple OSS Distributions }); 298*42e22086SApple OSS Distributions 299*42e22086SApple OSS Distributions T_ASSERT_FAIL("child_recurse returned, but it must not?"); 300*42e22086SApple OSS Distributions} 301*42e22086SApple OSS Distributions 302*42e22086SApple OSS Distributionsvoid 303*42e22086SApple OSS Distributionsparent_helper_singleproc(int spin) 304*42e22086SApple OSS Distributions{ 305*42e22086SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 306*42e22086SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.basic_sp", NULL); 307*42e22086SApple OSS Distributions void *stackshot_config; 308*42e22086SApple OSS Distributions 309*42e22086SApple OSS Distributions dispatch_async(dq, ^{ 310*42e22086SApple OSS Distributions char padding[16 * 1024]; 311*42e22086SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 312*42e22086SApple OSS Distributions 313*42e22086SApple OSS Distributions child_recurse(RECURSIONS, spin, ^{ 314*42e22086SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 315*42e22086SApple OSS Distributions }); 316*42e22086SApple OSS Distributions }); 317*42e22086SApple OSS Distributions 318*42e22086SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 319*42e22086SApple OSS Distributions T_LOG("done waiting for child"); 320*42e22086SApple OSS Distributions 321*42e22086SApple OSS Distributions /* take the stackshot and parse it */ 322*42e22086SApple OSS Distributions stackshot_config = take_stackshot(getpid(), 0, 0); 323*42e22086SApple OSS Distributions 324*42e22086SApple OSS Distributions /* check that the stackshot has the stack frames */ 325*42e22086SApple OSS Distributions check_stackshot(stackshot_config, 0); 326*42e22086SApple OSS Distributions 327*42e22086SApple OSS Distributions T_LOG("done!"); 328*42e22086SApple OSS Distributions} 329*42e22086SApple OSS Distributions 330*42e22086SApple OSS DistributionsT_DECL(basic, "test that no-fault stackshot works correctly") 331*42e22086SApple OSS Distributions{ 332*42e22086SApple OSS Distributions char path[PATH_MAX]; 333*42e22086SApple OSS Distributions uint32_t path_size = sizeof(path); 334*42e22086SApple OSS Distributions char *args[] = { path, "-n", "simple_child_process", NULL }; 335*42e22086SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.basic", NULL); 336*42e22086SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 337*42e22086SApple OSS Distributions dispatch_source_t child_sig_src; 338*42e22086SApple OSS Distributions void *stackshot_config; 339*42e22086SApple OSS Distributions 340*42e22086SApple OSS Distributions current_scenario_name = __func__; 341*42e22086SApple OSS Distributions 342*42e22086SApple OSS Distributions T_LOG("parent pid: %d\n", getpid()); 343*42e22086SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 344*42e22086SApple OSS Distributions 345*42e22086SApple OSS Distributions /* check if we can run the child successfully */ 346*42e22086SApple OSS Distributions#if !TARGET_OS_OSX 347*42e22086SApple OSS Distributions int freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, getpid(), 0, NULL, 0); 348*42e22086SApple OSS Distributions if (freeze_state == -1) { 349*42e22086SApple OSS Distributions T_SKIP("This device doesn't have CONFIG_FREEZE enabled."); 350*42e22086SApple OSS Distributions } 351*42e22086SApple OSS Distributions#endif 352*42e22086SApple OSS Distributions 353*42e22086SApple OSS Distributions /* setup signal handling */ 354*42e22086SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 355*42e22086SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 356*42e22086SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 357*42e22086SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 358*42e22086SApple OSS Distributions }); 359*42e22086SApple OSS Distributions dispatch_activate(child_sig_src); 360*42e22086SApple OSS Distributions 361*42e22086SApple OSS Distributions /* create the child process */ 362*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 363*42e22086SApple OSS Distributions T_ATEND(kill_children); 364*42e22086SApple OSS Distributions 365*42e22086SApple OSS Distributions /* wait until the child has recursed enough */ 366*42e22086SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, dispatch_time(DISPATCH_TIME_NOW, 10 /*seconds*/ * 1000000000ULL)); 367*42e22086SApple OSS Distributions 368*42e22086SApple OSS Distributions T_LOG("child finished, parent executing"); 369*42e22086SApple OSS Distributions 370*42e22086SApple OSS Distributions /* take the stackshot and parse it */ 371*42e22086SApple OSS Distributions stackshot_config = take_stackshot(child_pid, 0, 0); 372*42e22086SApple OSS Distributions 373*42e22086SApple OSS Distributions /* check that the stackshot has the stack frames */ 374*42e22086SApple OSS Distributions check_stackshot(stackshot_config, 0); 375*42e22086SApple OSS Distributions 376*42e22086SApple OSS Distributions T_LOG("all done, killing child"); 377*42e22086SApple OSS Distributions 378*42e22086SApple OSS Distributions /* tell the child to quit */ 379*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 380*42e22086SApple OSS Distributions} 381*42e22086SApple OSS Distributions 382*42e22086SApple OSS DistributionsT_DECL(basic_singleproc, "test that no-fault stackshot works correctly in single process setting") 383*42e22086SApple OSS Distributions{ 384*42e22086SApple OSS Distributions current_scenario_name = __func__; 385*42e22086SApple OSS Distributions parent_helper_singleproc(0); 386*42e22086SApple OSS Distributions} 387*42e22086SApple OSS Distributions 388*42e22086SApple OSS DistributionsT_DECL(basic_singleproc_spin, "test that no-fault stackshot works correctly in single process setting with spinning") 389*42e22086SApple OSS Distributions{ 390*42e22086SApple OSS Distributions current_scenario_name = __func__; 391*42e22086SApple OSS Distributions parent_helper_singleproc(1); 392*42e22086SApple OSS Distributions} 393*42e22086SApple OSS Distributions 394*42e22086SApple OSS DistributionsT_DECL(fault, "test that faulting stackshots work correctly") 395*42e22086SApple OSS Distributions{ 396*42e22086SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_fault_accuracy", NULL); 397*42e22086SApple OSS Distributions dispatch_source_t child_sig_src; 398*42e22086SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 399*42e22086SApple OSS Distributions void *stackshot_config; 400*42e22086SApple OSS Distributions int oldftm, newval = 1, freeze_enabled, oldratio, newratio = 0; 401*42e22086SApple OSS Distributions size_t oldlen = sizeof(oldftm), fe_len = sizeof(freeze_enabled), ratiolen = sizeof(oldratio); 402*42e22086SApple OSS Distributions char path[PATH_MAX]; 403*42e22086SApple OSS Distributions uint32_t path_size = sizeof(path); 404*42e22086SApple OSS Distributions char *args[] = { path, "-n", "simple_child_process", NULL }; 405*42e22086SApple OSS Distributions 406*42e22086SApple OSS Distributions current_scenario_name = __func__; 407*42e22086SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 408*42e22086SApple OSS Distributions 409*42e22086SApple OSS Distributions#if TARGET_OS_OSX 410*42e22086SApple OSS Distributions T_SKIP("freezing is not available on macOS"); 411*42e22086SApple OSS Distributions#endif /* TARGET_OS_OSX */ 412*42e22086SApple OSS Distributions 413*42e22086SApple OSS Distributions /* Try checking if freezing is enabled at all */ 414*42e22086SApple OSS Distributions if (sysctlbyname("vm.freeze_enabled", &freeze_enabled, &fe_len, NULL, 0) == -1) { 415*42e22086SApple OSS Distributions if (errno == ENOENT) { 416*42e22086SApple OSS Distributions T_SKIP("This device doesn't have CONFIG_FREEZE enabled."); 417*42e22086SApple OSS Distributions } else { 418*42e22086SApple OSS Distributions T_FAIL("failed to query vm.freeze_enabled, errno: %d", errno); 419*42e22086SApple OSS Distributions } 420*42e22086SApple OSS Distributions } 421*42e22086SApple OSS Distributions 422*42e22086SApple OSS Distributions if (!freeze_enabled) { 423*42e22086SApple OSS Distributions T_SKIP("Freeze is not enabled, skipping test."); 424*42e22086SApple OSS Distributions } 425*42e22086SApple OSS Distributions 426*42e22086SApple OSS Distributions /* signal handling */ 427*42e22086SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 428*42e22086SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 429*42e22086SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 430*42e22086SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 431*42e22086SApple OSS Distributions }); 432*42e22086SApple OSS Distributions dispatch_activate(child_sig_src); 433*42e22086SApple OSS Distributions 434*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 435*42e22086SApple OSS Distributions T_ATEND(kill_children); 436*42e22086SApple OSS Distributions 437*42e22086SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 438*42e22086SApple OSS Distributions 439*42e22086SApple OSS Distributions /* keep processes in memory */ 440*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_to_memory", &oldftm, &oldlen, &newval, sizeof(newval)), 441*42e22086SApple OSS Distributions "disabled freezing to disk"); 442*42e22086SApple OSS Distributions 443*42e22086SApple OSS Distributions /* set the ratio to zero */ 444*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_private_shared_pages_ratio", &oldratio, &ratiolen, &newratio, sizeof(newratio)), "disabled private:shared ratio checking"); 445*42e22086SApple OSS Distributions 446*42e22086SApple OSS Distributions /* freeze the child */ 447*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze", NULL, 0, &child_pid, sizeof(child_pid)), 448*42e22086SApple OSS Distributions "froze child"); 449*42e22086SApple OSS Distributions 450*42e22086SApple OSS Distributions /* Sleep to allow the compressor to finish compressing the child */ 451*42e22086SApple OSS Distributions sleep(5); 452*42e22086SApple OSS Distributions 453*42e22086SApple OSS Distributions /* take the stackshot and parse it */ 454*42e22086SApple OSS Distributions stackshot_config = take_stackshot(child_pid, STACKSHOT_ENABLE_BT_FAULTING | STACKSHOT_ENABLE_UUID_FAULTING, 0); 455*42e22086SApple OSS Distributions 456*42e22086SApple OSS Distributions /* check that the stackshot has the stack frames */ 457*42e22086SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_FAULT_STATS); 458*42e22086SApple OSS Distributions 459*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_to_memory", NULL, 0, &oldftm, sizeof(oldftm)), 460*42e22086SApple OSS Distributions "reset freezing to disk"); 461*42e22086SApple OSS Distributions 462*42e22086SApple OSS Distributions /* reset the private:shared ratio */ 463*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_private_shared_pages_ratio", NULL, 0, &oldratio, sizeof(oldratio)), "reset private:shared ratio"); 464*42e22086SApple OSS Distributions 465*42e22086SApple OSS Distributions T_LOG("all done, killing child"); 466*42e22086SApple OSS Distributions 467*42e22086SApple OSS Distributions /* tell the child to quit */ 468*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 469*42e22086SApple OSS Distributions} 470*42e22086SApple OSS Distributions 471*42e22086SApple OSS DistributionsT_DECL(fault_singleproc, "test that faulting stackshots work correctly in a single process setting") 472*42e22086SApple OSS Distributions{ 473*42e22086SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 474*42e22086SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.fault_sp", NULL); 475*42e22086SApple OSS Distributions void *stackshot_config; 476*42e22086SApple OSS Distributions __block pthread_t child_thread; 477*42e22086SApple OSS Distributions char *child_stack; 478*42e22086SApple OSS Distributions size_t child_stacklen; 479*42e22086SApple OSS Distributions 480*42e22086SApple OSS Distributions#if !TARGET_OS_OSX 481*42e22086SApple OSS Distributions T_SKIP("madvise(..., ..., MADV_PAGEOUT) is not available on embedded platforms"); 482*42e22086SApple OSS Distributions#endif /* !TARGET_OS_OSX */ 483*42e22086SApple OSS Distributions 484*42e22086SApple OSS Distributions dispatch_async(dq, ^{ 485*42e22086SApple OSS Distributions char padding[16 * 1024]; 486*42e22086SApple OSS Distributions __asm__ volatile(""::"r"(padding)); 487*42e22086SApple OSS Distributions 488*42e22086SApple OSS Distributions child_recurse(RECURSIONS, 0, ^{ 489*42e22086SApple OSS Distributions child_thread = pthread_self(); 490*42e22086SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 491*42e22086SApple OSS Distributions }); 492*42e22086SApple OSS Distributions }); 493*42e22086SApple OSS Distributions 494*42e22086SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 495*42e22086SApple OSS Distributions T_LOG("done waiting for child"); 496*42e22086SApple OSS Distributions 497*42e22086SApple OSS Distributions child_stack = pthread_get_stackaddr_np(child_thread); 498*42e22086SApple OSS Distributions child_stacklen = pthread_get_stacksize_np(child_thread); 499*42e22086SApple OSS Distributions child_stack -= child_stacklen; 500*42e22086SApple OSS Distributions T_LOG("child stack: [0x%p - 0x%p]: 0x%zu bytes", (void *)child_stack, 501*42e22086SApple OSS Distributions (void *)(child_stack + child_stacklen), child_stacklen); 502*42e22086SApple OSS Distributions 503*42e22086SApple OSS Distributions /* paging out the child */ 504*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(madvise(child_stack, child_stacklen, MADV_PAGEOUT), "paged out via madvise(2) the child stack"); 505*42e22086SApple OSS Distributions 506*42e22086SApple OSS Distributions /* take the stackshot and parse it */ 507*42e22086SApple OSS Distributions stackshot_config = take_stackshot(getpid(), STACKSHOT_ENABLE_BT_FAULTING | STACKSHOT_ENABLE_UUID_FAULTING, 0); 508*42e22086SApple OSS Distributions 509*42e22086SApple OSS Distributions /* check that the stackshot has the stack frames */ 510*42e22086SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_FAULT_STATS); 511*42e22086SApple OSS Distributions 512*42e22086SApple OSS Distributions T_LOG("done!"); 513*42e22086SApple OSS Distributions} 514*42e22086SApple OSS Distributions 515*42e22086SApple OSS DistributionsT_DECL(zombie, "test that threads wedged in the kernel can be stackshot'd") 516*42e22086SApple OSS Distributions{ 517*42e22086SApple OSS Distributions dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.zombie", NULL); 518*42e22086SApple OSS Distributions dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0); 519*42e22086SApple OSS Distributions dispatch_source_t child_sig_src; 520*42e22086SApple OSS Distributions void *stackshot_config; 521*42e22086SApple OSS Distributions char path[PATH_MAX]; 522*42e22086SApple OSS Distributions uint32_t path_size = sizeof(path); 523*42e22086SApple OSS Distributions char *args[] = { path, "-n", "sid_child_process", NULL }; 524*42e22086SApple OSS Distributions 525*42e22086SApple OSS Distributions current_scenario_name = __func__; 526*42e22086SApple OSS Distributions T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath"); 527*42e22086SApple OSS Distributions 528*42e22086SApple OSS Distributions T_LOG("parent pid: %d\n", getpid()); 529*42e22086SApple OSS Distributions 530*42e22086SApple OSS Distributions /* setup signal handling */ 531*42e22086SApple OSS Distributions signal(SIGUSR1, SIG_IGN); 532*42e22086SApple OSS Distributions child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq); 533*42e22086SApple OSS Distributions dispatch_source_set_event_handler(child_sig_src, ^{ 534*42e22086SApple OSS Distributions dispatch_semaphore_signal(child_done_sema); 535*42e22086SApple OSS Distributions }); 536*42e22086SApple OSS Distributions dispatch_activate(child_sig_src); 537*42e22086SApple OSS Distributions 538*42e22086SApple OSS Distributions /* create the child process */ 539*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched"); 540*42e22086SApple OSS Distributions T_ATEND(kill_children); 541*42e22086SApple OSS Distributions 542*42e22086SApple OSS Distributions /* wait until the child has recursed enough */ 543*42e22086SApple OSS Distributions dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER); 544*42e22086SApple OSS Distributions 545*42e22086SApple OSS Distributions T_LOG("child finished, parent executing. invoking jetsam"); 546*42e22086SApple OSS Distributions 547*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(memorystatus_control(MEMORYSTATUS_CMD_TEST_JETSAM, child_pid, 0, 0, 0), 548*42e22086SApple OSS Distributions "jetsam'd the child"); 549*42e22086SApple OSS Distributions 550*42e22086SApple OSS Distributions /* Sleep to allow the target process to become zombified */ 551*42e22086SApple OSS Distributions sleep(1); 552*42e22086SApple OSS Distributions 553*42e22086SApple OSS Distributions /* take the stackshot and parse it */ 554*42e22086SApple OSS Distributions stackshot_config = take_stackshot(child_pid, 0, 0); 555*42e22086SApple OSS Distributions 556*42e22086SApple OSS Distributions /* check that the stackshot has the stack frames */ 557*42e22086SApple OSS Distributions check_stackshot(stackshot_config, CHECK_FOR_KERNEL_THREADS); 558*42e22086SApple OSS Distributions 559*42e22086SApple OSS Distributions T_LOG("all done, unwedging and killing child"); 560*42e22086SApple OSS Distributions 561*42e22086SApple OSS Distributions int v = 1; 562*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.unwedge_thread", NULL, NULL, &v, sizeof(v)), 563*42e22086SApple OSS Distributions "unwedged child"); 564*42e22086SApple OSS Distributions 565*42e22086SApple OSS Distributions /* tell the child to quit */ 566*42e22086SApple OSS Distributions T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child"); 567*42e22086SApple OSS Distributions} 568