xref: /xnu-8792.61.2/tests/stackshot_accuracy.m (revision 42e220869062b56f8d7d0726fd4c88954f87902c)
1*42e22086SApple OSS Distributions#include <darwintest.h>
2*42e22086SApple OSS Distributions#include <darwintest_utils.h>
3*42e22086SApple OSS Distributions#include <sys/kern_memorystatus.h>
4*42e22086SApple OSS Distributions#include <kern/debug.h>
5*42e22086SApple OSS Distributions#include <mach-o/dyld.h>
6*42e22086SApple OSS Distributions#include <sys/stackshot.h>
7*42e22086SApple OSS Distributions#include <kdd.h>
8*42e22086SApple OSS Distributions#include <signal.h>
9*42e22086SApple OSS Distributions
10*42e22086SApple OSS Distributions#define RECURSIONS 25
11*42e22086SApple OSS Distributions#define FIRST_RECURSIVE_FRAME 3
12*42e22086SApple OSS Distributions
13*42e22086SApple OSS DistributionsT_GLOBAL_META(
14*42e22086SApple OSS Distributions		T_META_NAMESPACE("xnu.stackshot.accuracy"),
15*42e22086SApple OSS Distributions		T_META_RADAR_COMPONENT_NAME("xnu"),
16*42e22086SApple OSS Distributions		T_META_RADAR_COMPONENT_VERSION("stackshot"),
17*42e22086SApple OSS Distributions		T_META_OWNER("jonathan_w_adams"),
18*42e22086SApple OSS Distributions		T_META_CHECK_LEAKS(false),
19*42e22086SApple OSS Distributions		T_META_ASROOT(true)
20*42e22086SApple OSS Distributions		);
21*42e22086SApple OSS Distributions
22*42e22086SApple OSS Distributions
23*42e22086SApple OSS Distributionsvoid child_init(void);
24*42e22086SApple OSS Distributionsvoid parent_helper_singleproc(int);
25*42e22086SApple OSS Distributions
26*42e22086SApple OSS Distributions#define CHECK_FOR_FAULT_STATS         (1 << 0)
27*42e22086SApple OSS Distributions#define WRITE_STACKSHOT_BUFFER_TO_TMP (1 << 1)
28*42e22086SApple OSS Distributions#define CHECK_FOR_KERNEL_THREADS      (1 << 2)
29*42e22086SApple OSS Distributionsint check_stackshot(void *, int);
30*42e22086SApple OSS Distributions
31*42e22086SApple OSS Distributions/* used for WRITE_STACKSHOT_BUFFER_TO_TMP */
32*42e22086SApple OSS Distributionsstatic char const *current_scenario_name;
33*42e22086SApple OSS Distributionsstatic pid_t child_pid;
34*42e22086SApple OSS Distributions
35*42e22086SApple OSS Distributions/* helpers */
36*42e22086SApple OSS Distributions
37*42e22086SApple OSS Distributionsstatic void __attribute__((noinline))
38*42e22086SApple OSS Distributionschild_recurse(int r, int spin, void (^cb)(void))
39*42e22086SApple OSS Distributions{
40*42e22086SApple OSS Distributions	if (r > 0) {
41*42e22086SApple OSS Distributions		child_recurse(r - 1, spin, cb);
42*42e22086SApple OSS Distributions	}
43*42e22086SApple OSS Distributions
44*42e22086SApple OSS Distributions	cb();
45*42e22086SApple OSS Distributions
46*42e22086SApple OSS Distributions	/* wait forever */
47*42e22086SApple OSS Distributions	if (spin == 0) {
48*42e22086SApple OSS Distributions		sleep(100000);
49*42e22086SApple OSS Distributions	} else if (spin == 2) {
50*42e22086SApple OSS Distributions		int v = 1;
51*42e22086SApple OSS Distributions		/* ssh won't let the session die if we still have file handles open to its output. */
52*42e22086SApple OSS Distributions		close(STDERR_FILENO);
53*42e22086SApple OSS Distributions		close(STDOUT_FILENO);
54*42e22086SApple OSS Distributions		T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.wedge_thread", NULL, NULL, &v, sizeof(v)),
55*42e22086SApple OSS Distributions					"wedged thread in the kernel");
56*42e22086SApple OSS Distributions	} else {
57*42e22086SApple OSS Distributions		while (1) {
58*42e22086SApple OSS Distributions			__asm__ volatile("" : : : "memory");
59*42e22086SApple OSS Distributions		}
60*42e22086SApple OSS Distributions	}
61*42e22086SApple OSS Distributions}
62*42e22086SApple OSS Distributions
63*42e22086SApple OSS DistributionsT_HELPER_DECL(simple_child_process, "child process that will be frozen and others")
64*42e22086SApple OSS Distributions{
65*42e22086SApple OSS Distributions	child_init();
66*42e22086SApple OSS Distributions}
67*42e22086SApple OSS Distributions
68*42e22086SApple OSS DistributionsT_HELPER_DECL(sid_child_process, "child process that setsid()s")
69*42e22086SApple OSS Distributions{
70*42e22086SApple OSS Distributions	pid_t ppid = getppid();
71*42e22086SApple OSS Distributions
72*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(setsid(), "session id set");
73*42e22086SApple OSS Distributions
74*42e22086SApple OSS Distributions	child_recurse(RECURSIONS, 2, ^{
75*42e22086SApple OSS Distributions		kill(ppid, SIGUSR1);
76*42e22086SApple OSS Distributions	});
77*42e22086SApple OSS Distributions
78*42e22086SApple OSS Distributions	T_ASSERT_FAIL("child_init returned!");
79*42e22086SApple OSS Distributions}
80*42e22086SApple OSS Distributions
81*42e22086SApple OSS Distributionsstatic void
82*42e22086SApple OSS Distributionskill_children(void)
83*42e22086SApple OSS Distributions{
84*42e22086SApple OSS Distributions	kill(child_pid, SIGKILL);
85*42e22086SApple OSS Distributions}
86*42e22086SApple OSS Distributions
87*42e22086SApple OSS Distributionsstatic void *
88*42e22086SApple OSS Distributionstake_stackshot(pid_t target_pid, uint64_t extra_flags, uint64_t since_timestamp)
89*42e22086SApple OSS Distributions{
90*42e22086SApple OSS Distributions	void *stackshot_config;
91*42e22086SApple OSS Distributions	int err, retries = 5;
92*42e22086SApple OSS Distributions	uint64_t stackshot_flags = STACKSHOT_KCDATA_FORMAT |
93*42e22086SApple OSS Distributions								STACKSHOT_THREAD_WAITINFO |
94*42e22086SApple OSS Distributions								STACKSHOT_GET_DQ;
95*42e22086SApple OSS Distributions
96*42e22086SApple OSS Distributions	/* we should be able to verify delta stackshots */
97*42e22086SApple OSS Distributions	if (since_timestamp != 0) {
98*42e22086SApple OSS Distributions		stackshot_flags |= STACKSHOT_COLLECT_DELTA_SNAPSHOT;
99*42e22086SApple OSS Distributions	}
100*42e22086SApple OSS Distributions
101*42e22086SApple OSS Distributions	stackshot_flags |= extra_flags;
102*42e22086SApple OSS Distributions
103*42e22086SApple OSS Distributions	stackshot_config = stackshot_config_create();
104*42e22086SApple OSS Distributions	T_ASSERT_NOTNULL(stackshot_config, "allocate stackshot config");
105*42e22086SApple OSS Distributions
106*42e22086SApple OSS Distributions	err = stackshot_config_set_flags(stackshot_config, stackshot_flags);
107*42e22086SApple OSS Distributions	T_ASSERT_EQ(err, 0, "set flags on stackshot config");
108*42e22086SApple OSS Distributions
109*42e22086SApple OSS Distributions	err = stackshot_config_set_pid(stackshot_config, target_pid);
110*42e22086SApple OSS Distributions	T_ASSERT_EQ(err, 0, "set target pid on stackshot config");
111*42e22086SApple OSS Distributions
112*42e22086SApple OSS Distributions	if (since_timestamp != 0) {
113*42e22086SApple OSS Distributions		err = stackshot_config_set_delta_timestamp(stackshot_config, since_timestamp);
114*42e22086SApple OSS Distributions		T_ASSERT_EQ(err, 0, "set prev snapshot time on stackshot config");
115*42e22086SApple OSS Distributions	}
116*42e22086SApple OSS Distributions
117*42e22086SApple OSS Distributions	while (retries > 0) {
118*42e22086SApple OSS Distributions		err = stackshot_capture_with_config(stackshot_config);
119*42e22086SApple OSS Distributions		if (err == 0) {
120*42e22086SApple OSS Distributions			break;
121*42e22086SApple OSS Distributions		} else if (err == EBUSY || err == ETIMEDOUT) {
122*42e22086SApple OSS Distributions			T_LOG("stackshot capture returned %d (%s)\n", err, strerror(err));
123*42e22086SApple OSS Distributions			if (retries == 0) {
124*42e22086SApple OSS Distributions				T_ASSERT_FAIL("failed to take stackshot with error after retries: %d: %s\n", err, strerror(err));
125*42e22086SApple OSS Distributions			}
126*42e22086SApple OSS Distributions
127*42e22086SApple OSS Distributions			retries--;
128*42e22086SApple OSS Distributions			continue;
129*42e22086SApple OSS Distributions		} else {
130*42e22086SApple OSS Distributions			T_ASSERT_FAIL("failed to take stackshot with error: %d: %s\n", err, strerror(err));
131*42e22086SApple OSS Distributions		}
132*42e22086SApple OSS Distributions	}
133*42e22086SApple OSS Distributions
134*42e22086SApple OSS Distributions	return stackshot_config;
135*42e22086SApple OSS Distributions}
136*42e22086SApple OSS Distributions
137*42e22086SApple OSS Distributionsint
138*42e22086SApple OSS Distributionscheck_stackshot(void *stackshot_config, int flags)
139*42e22086SApple OSS Distributions{
140*42e22086SApple OSS Distributions	void *buf;
141*42e22086SApple OSS Distributions	uint32_t buflen, kcdata_type;
142*42e22086SApple OSS Distributions	kcdata_iter_t iter;
143*42e22086SApple OSS Distributions	NSError *nserror = nil;
144*42e22086SApple OSS Distributions	pid_t target_pid;
145*42e22086SApple OSS Distributions	int ret = 0;
146*42e22086SApple OSS Distributions	uint64_t expected_return_addr = 0;
147*42e22086SApple OSS Distributions	bool found_fault_stats = false;
148*42e22086SApple OSS Distributions	struct stackshot_fault_stats fault_stats = {0};
149*42e22086SApple OSS Distributions
150*42e22086SApple OSS Distributions	buf = stackshot_config_get_stackshot_buffer(stackshot_config);
151*42e22086SApple OSS Distributions	T_ASSERT_NOTNULL(buf, "stackshot buffer is not null");
152*42e22086SApple OSS Distributions	buflen = stackshot_config_get_stackshot_size(stackshot_config);
153*42e22086SApple OSS Distributions	T_ASSERT_GT(buflen, 0, "valid stackshot buffer length");
154*42e22086SApple OSS Distributions	target_pid = ((struct stackshot_config*)stackshot_config)->sc_pid;
155*42e22086SApple OSS Distributions	T_ASSERT_GT(target_pid, 0, "valid target_pid");
156*42e22086SApple OSS Distributions
157*42e22086SApple OSS Distributions	/* if need to write it to fs, do it now */
158*42e22086SApple OSS Distributions	if (flags & WRITE_STACKSHOT_BUFFER_TO_TMP) {
159*42e22086SApple OSS Distributions		char sspath[MAXPATHLEN];
160*42e22086SApple OSS Distributions		strlcpy(sspath, current_scenario_name, sizeof(sspath));
161*42e22086SApple OSS Distributions		strlcat(sspath, ".kcdata", sizeof(sspath));
162*42e22086SApple OSS Distributions		T_QUIET; T_ASSERT_POSIX_ZERO(dt_resultfile(sspath, sizeof(sspath)),
163*42e22086SApple OSS Distributions				"create result file path");
164*42e22086SApple OSS Distributions
165*42e22086SApple OSS Distributions		FILE *f = fopen(sspath, "w");
166*42e22086SApple OSS Distributions		T_WITH_ERRNO; T_QUIET; T_ASSERT_NOTNULL(f,
167*42e22086SApple OSS Distributions				"open stackshot output file");
168*42e22086SApple OSS Distributions
169*42e22086SApple OSS Distributions		size_t written = fwrite(buf, buflen, 1, f);
170*42e22086SApple OSS Distributions		T_QUIET; T_ASSERT_POSIX_SUCCESS(written, "wrote stackshot to file");
171*42e22086SApple OSS Distributions
172*42e22086SApple OSS Distributions		fclose(f);
173*42e22086SApple OSS Distributions	}
174*42e22086SApple OSS Distributions
175*42e22086SApple OSS Distributions	/* begin iterating */
176*42e22086SApple OSS Distributions	iter = kcdata_iter(buf, buflen);
177*42e22086SApple OSS Distributions	T_ASSERT_EQ(kcdata_iter_type(iter), KCDATA_BUFFER_BEGIN_STACKSHOT, "buffer is a stackshot");
178*42e22086SApple OSS Distributions
179*42e22086SApple OSS Distributions	/* time to iterate */
180*42e22086SApple OSS Distributions	iter = kcdata_iter_next(iter);
181*42e22086SApple OSS Distributions	KCDATA_ITER_FOREACH(iter) {
182*42e22086SApple OSS Distributions		kcdata_type = kcdata_iter_type(iter);
183*42e22086SApple OSS Distributions		NSNumber *parsedPid;
184*42e22086SApple OSS Distributions		NSMutableDictionary *parsedContainer, *parsedThreads;
185*42e22086SApple OSS Distributions
186*42e22086SApple OSS Distributions		if ((flags & CHECK_FOR_FAULT_STATS) != 0 &&
187*42e22086SApple OSS Distributions				kcdata_type == STACKSHOT_KCTYPE_STACKSHOT_FAULT_STATS) {
188*42e22086SApple OSS Distributions			memcpy(&fault_stats, kcdata_iter_payload(iter), sizeof(fault_stats));
189*42e22086SApple OSS Distributions			found_fault_stats = true;
190*42e22086SApple OSS Distributions		}
191*42e22086SApple OSS Distributions
192*42e22086SApple OSS Distributions		if (kcdata_type != KCDATA_TYPE_CONTAINER_BEGIN) {
193*42e22086SApple OSS Distributions			continue;
194*42e22086SApple OSS Distributions		}
195*42e22086SApple OSS Distributions
196*42e22086SApple OSS Distributions		if (kcdata_iter_container_type(iter) != STACKSHOT_KCCONTAINER_TASK) {
197*42e22086SApple OSS Distributions			continue;
198*42e22086SApple OSS Distributions		}
199*42e22086SApple OSS Distributions
200*42e22086SApple OSS Distributions		parsedContainer = parseKCDataContainer(&iter, &nserror);
201*42e22086SApple OSS Distributions		T_ASSERT_NOTNULL(parsedContainer, "parsedContainer is not null");
202*42e22086SApple OSS Distributions		T_ASSERT_NULL(nserror, "no NSError occured while parsing the kcdata container");
203*42e22086SApple OSS Distributions
204*42e22086SApple OSS Distributions		/*
205*42e22086SApple OSS Distributions		 * given that we've targetted the pid, we can be sure that this
206*42e22086SApple OSS Distributions		 * ts_pid will be the pid we expect
207*42e22086SApple OSS Distributions		 */
208*42e22086SApple OSS Distributions		parsedPid = parsedContainer[@"task_snapshots"][@"task_snapshot"][@"ts_pid"];
209*42e22086SApple OSS Distributions		T_ASSERT_EQ([parsedPid intValue], target_pid, "found correct pid");
210*42e22086SApple OSS Distributions
211*42e22086SApple OSS Distributions		/* start parsing the threads */
212*42e22086SApple OSS Distributions		parsedThreads = parsedContainer[@"task_snapshots"][@"thread_snapshots"];
213*42e22086SApple OSS Distributions		for (id th_key in parsedThreads) {
214*42e22086SApple OSS Distributions			uint32_t frame_index = 0;
215*42e22086SApple OSS Distributions
216*42e22086SApple OSS Distributions			if ((flags & CHECK_FOR_KERNEL_THREADS) == 0) {
217*42e22086SApple OSS Distributions				/* skip threads that don't have enough frames */
218*42e22086SApple OSS Distributions				if ([parsedThreads[th_key][@"user_stack_frames"] count] < RECURSIONS) {
219*42e22086SApple OSS Distributions					continue;
220*42e22086SApple OSS Distributions				}
221*42e22086SApple OSS Distributions
222*42e22086SApple OSS Distributions				for (id frame in parsedThreads[th_key][@"user_stack_frames"]) {
223*42e22086SApple OSS Distributions					if ((frame_index >= FIRST_RECURSIVE_FRAME) && (frame_index < (RECURSIONS - FIRST_RECURSIVE_FRAME))) {
224*42e22086SApple OSS Distributions						if (expected_return_addr == 0ull) {
225*42e22086SApple OSS Distributions							expected_return_addr = [frame[@"lr"] unsignedLongLongValue];
226*42e22086SApple OSS Distributions						} else {
227*42e22086SApple OSS Distributions							T_QUIET;
228*42e22086SApple OSS Distributions							T_ASSERT_EQ(expected_return_addr, [frame[@"lr"] unsignedLongLongValue], "expected return address found");
229*42e22086SApple OSS Distributions						}
230*42e22086SApple OSS Distributions					}
231*42e22086SApple OSS Distributions					frame_index ++;
232*42e22086SApple OSS Distributions				}
233*42e22086SApple OSS Distributions			} else {
234*42e22086SApple OSS Distributions				T_ASSERT_NOTNULL(parsedThreads[th_key][@"kernel_stack_frames"],
235*42e22086SApple OSS Distributions						"found kernel stack frames");
236*42e22086SApple OSS Distributions			}
237*42e22086SApple OSS Distributions
238*42e22086SApple OSS Distributions		}
239*42e22086SApple OSS Distributions	}
240*42e22086SApple OSS Distributions
241*42e22086SApple OSS Distributions	if (found_fault_stats) {
242*42e22086SApple OSS Distributions		T_LOG("number of pages faulted in: %d", fault_stats.sfs_pages_faulted_in);
243*42e22086SApple OSS Distributions		T_LOG("MATUs spent faulting: %lld", fault_stats.sfs_time_spent_faulting);
244*42e22086SApple OSS Distributions		T_LOG("MATUS fault time limit: %lld", fault_stats.sfs_system_max_fault_time);
245*42e22086SApple OSS Distributions		T_LOG("did we stop because of the limit?: %s", fault_stats.sfs_stopped_faulting ? "yes" : "no");
246*42e22086SApple OSS Distributions		if (expected_return_addr != 0ull) {
247*42e22086SApple OSS Distributions			T_ASSERT_GT(fault_stats.sfs_pages_faulted_in, 0, "faulted at least one page in");
248*42e22086SApple OSS Distributions			T_LOG("NOTE: successfully faulted in the pages");
249*42e22086SApple OSS Distributions		} else {
250*42e22086SApple OSS Distributions			T_LOG("NOTE: We were not able to fault the stack's pages back in");
251*42e22086SApple OSS Distributions
252*42e22086SApple OSS Distributions			/* if we couldn't fault the pages back in, then at least verify that we tried */
253*42e22086SApple OSS Distributions			T_ASSERT_GT(fault_stats.sfs_time_spent_faulting, 0ull, "spent time trying to fault");
254*42e22086SApple OSS Distributions		}
255*42e22086SApple OSS Distributions	} else if ((flags & CHECK_FOR_KERNEL_THREADS) == 0) {
256*42e22086SApple OSS Distributions		T_ASSERT_NE(expected_return_addr, 0ull, "found child thread with recursions");
257*42e22086SApple OSS Distributions	}
258*42e22086SApple OSS Distributions
259*42e22086SApple OSS Distributions	if (flags & CHECK_FOR_FAULT_STATS) {
260*42e22086SApple OSS Distributions		T_ASSERT_EQ(found_fault_stats, true, "found fault stats");
261*42e22086SApple OSS Distributions	}
262*42e22086SApple OSS Distributions
263*42e22086SApple OSS Distributions	return ret;
264*42e22086SApple OSS Distributions}
265*42e22086SApple OSS Distributions
266*42e22086SApple OSS Distributionsvoid
267*42e22086SApple OSS Distributionschild_init(void)
268*42e22086SApple OSS Distributions{
269*42e22086SApple OSS Distributions#if !TARGET_OS_OSX
270*42e22086SApple OSS Distributions	int freeze_state;
271*42e22086SApple OSS Distributions#endif /* !TARGET_OS_OSX */
272*42e22086SApple OSS Distributions	pid_t pid = getpid();
273*42e22086SApple OSS Distributions	char padding[16 * 1024];
274*42e22086SApple OSS Distributions	__asm__ volatile(""::"r"(padding));
275*42e22086SApple OSS Distributions
276*42e22086SApple OSS Distributions	T_LOG("child pid: %d\n", pid);
277*42e22086SApple OSS Distributions
278*42e22086SApple OSS Distributions#if !TARGET_OS_OSX
279*42e22086SApple OSS Distributions	/* allow us to be frozen */
280*42e22086SApple OSS Distributions	freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, pid, 0, NULL, 0);
281*42e22086SApple OSS Distributions	if (freeze_state == 0) {
282*42e22086SApple OSS Distributions		T_LOG("CHILD was found to be UNFREEZABLE, enabling freezing.");
283*42e22086SApple OSS Distributions		memorystatus_control(MEMORYSTATUS_CMD_SET_PROCESS_IS_FREEZABLE, pid, 1, NULL, 0);
284*42e22086SApple OSS Distributions		freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, pid, 0, NULL, 0);
285*42e22086SApple OSS Distributions		T_ASSERT_EQ(freeze_state, 1, "successfully set freezeability");
286*42e22086SApple OSS Distributions	}
287*42e22086SApple OSS Distributions#else
288*42e22086SApple OSS Distributions	T_LOG("Cannot change freezeability as freezing is only available on embedded devices");
289*42e22086SApple OSS Distributions#endif /* !TARGET_OS_OSX */
290*42e22086SApple OSS Distributions
291*42e22086SApple OSS Distributions	/*
292*42e22086SApple OSS Distributions	 * recurse a bunch of times to generate predictable data in the stackshot,
293*42e22086SApple OSS Distributions	 * then send SIGUSR1 to the parent to let it know that we are done.
294*42e22086SApple OSS Distributions	 */
295*42e22086SApple OSS Distributions	child_recurse(RECURSIONS, 0, ^{
296*42e22086SApple OSS Distributions		kill(getppid(), SIGUSR1);
297*42e22086SApple OSS Distributions	});
298*42e22086SApple OSS Distributions
299*42e22086SApple OSS Distributions	T_ASSERT_FAIL("child_recurse returned, but it must not?");
300*42e22086SApple OSS Distributions}
301*42e22086SApple OSS Distributions
302*42e22086SApple OSS Distributionsvoid
303*42e22086SApple OSS Distributionsparent_helper_singleproc(int spin)
304*42e22086SApple OSS Distributions{
305*42e22086SApple OSS Distributions	dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0);
306*42e22086SApple OSS Distributions	dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.basic_sp", NULL);
307*42e22086SApple OSS Distributions	void *stackshot_config;
308*42e22086SApple OSS Distributions
309*42e22086SApple OSS Distributions	dispatch_async(dq, ^{
310*42e22086SApple OSS Distributions		char padding[16 * 1024];
311*42e22086SApple OSS Distributions		__asm__ volatile(""::"r"(padding));
312*42e22086SApple OSS Distributions
313*42e22086SApple OSS Distributions		child_recurse(RECURSIONS, spin, ^{
314*42e22086SApple OSS Distributions			dispatch_semaphore_signal(child_done_sema);
315*42e22086SApple OSS Distributions		});
316*42e22086SApple OSS Distributions	});
317*42e22086SApple OSS Distributions
318*42e22086SApple OSS Distributions	dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER);
319*42e22086SApple OSS Distributions	T_LOG("done waiting for child");
320*42e22086SApple OSS Distributions
321*42e22086SApple OSS Distributions	/* take the stackshot and parse it */
322*42e22086SApple OSS Distributions	stackshot_config = take_stackshot(getpid(), 0, 0);
323*42e22086SApple OSS Distributions
324*42e22086SApple OSS Distributions	/* check that the stackshot has the stack frames */
325*42e22086SApple OSS Distributions	check_stackshot(stackshot_config, 0);
326*42e22086SApple OSS Distributions
327*42e22086SApple OSS Distributions	T_LOG("done!");
328*42e22086SApple OSS Distributions}
329*42e22086SApple OSS Distributions
330*42e22086SApple OSS DistributionsT_DECL(basic, "test that no-fault stackshot works correctly")
331*42e22086SApple OSS Distributions{
332*42e22086SApple OSS Distributions	char path[PATH_MAX];
333*42e22086SApple OSS Distributions	uint32_t path_size = sizeof(path);
334*42e22086SApple OSS Distributions	char *args[] = { path, "-n", "simple_child_process", NULL };
335*42e22086SApple OSS Distributions	dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.basic", NULL);
336*42e22086SApple OSS Distributions	dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0);
337*42e22086SApple OSS Distributions	dispatch_source_t child_sig_src;
338*42e22086SApple OSS Distributions	void *stackshot_config;
339*42e22086SApple OSS Distributions
340*42e22086SApple OSS Distributions	current_scenario_name = __func__;
341*42e22086SApple OSS Distributions
342*42e22086SApple OSS Distributions	T_LOG("parent pid: %d\n", getpid());
343*42e22086SApple OSS Distributions	T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath");
344*42e22086SApple OSS Distributions
345*42e22086SApple OSS Distributions	/* check if we can run the child successfully */
346*42e22086SApple OSS Distributions#if !TARGET_OS_OSX
347*42e22086SApple OSS Distributions	int freeze_state = memorystatus_control(MEMORYSTATUS_CMD_GET_PROCESS_IS_FREEZABLE, getpid(), 0, NULL, 0);
348*42e22086SApple OSS Distributions	if (freeze_state == -1) {
349*42e22086SApple OSS Distributions		T_SKIP("This device doesn't have CONFIG_FREEZE enabled.");
350*42e22086SApple OSS Distributions	}
351*42e22086SApple OSS Distributions#endif
352*42e22086SApple OSS Distributions
353*42e22086SApple OSS Distributions	/* setup signal handling */
354*42e22086SApple OSS Distributions	signal(SIGUSR1, SIG_IGN);
355*42e22086SApple OSS Distributions	child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq);
356*42e22086SApple OSS Distributions	dispatch_source_set_event_handler(child_sig_src, ^{
357*42e22086SApple OSS Distributions		dispatch_semaphore_signal(child_done_sema);
358*42e22086SApple OSS Distributions	});
359*42e22086SApple OSS Distributions	dispatch_activate(child_sig_src);
360*42e22086SApple OSS Distributions
361*42e22086SApple OSS Distributions	/* create the child process */
362*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched");
363*42e22086SApple OSS Distributions	T_ATEND(kill_children);
364*42e22086SApple OSS Distributions
365*42e22086SApple OSS Distributions	/* wait until the child has recursed enough */
366*42e22086SApple OSS Distributions	dispatch_semaphore_wait(child_done_sema, dispatch_time(DISPATCH_TIME_NOW, 10 /*seconds*/ * 1000000000ULL));
367*42e22086SApple OSS Distributions
368*42e22086SApple OSS Distributions	T_LOG("child finished, parent executing");
369*42e22086SApple OSS Distributions
370*42e22086SApple OSS Distributions	/* take the stackshot and parse it */
371*42e22086SApple OSS Distributions	stackshot_config = take_stackshot(child_pid, 0, 0);
372*42e22086SApple OSS Distributions
373*42e22086SApple OSS Distributions	/* check that the stackshot has the stack frames */
374*42e22086SApple OSS Distributions	check_stackshot(stackshot_config, 0);
375*42e22086SApple OSS Distributions
376*42e22086SApple OSS Distributions	T_LOG("all done, killing child");
377*42e22086SApple OSS Distributions
378*42e22086SApple OSS Distributions	/* tell the child to quit */
379*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child");
380*42e22086SApple OSS Distributions}
381*42e22086SApple OSS Distributions
382*42e22086SApple OSS DistributionsT_DECL(basic_singleproc, "test that no-fault stackshot works correctly in single process setting")
383*42e22086SApple OSS Distributions{
384*42e22086SApple OSS Distributions	current_scenario_name = __func__;
385*42e22086SApple OSS Distributions	parent_helper_singleproc(0);
386*42e22086SApple OSS Distributions}
387*42e22086SApple OSS Distributions
388*42e22086SApple OSS DistributionsT_DECL(basic_singleproc_spin, "test that no-fault stackshot works correctly in single process setting with spinning")
389*42e22086SApple OSS Distributions{
390*42e22086SApple OSS Distributions	current_scenario_name = __func__;
391*42e22086SApple OSS Distributions	parent_helper_singleproc(1);
392*42e22086SApple OSS Distributions}
393*42e22086SApple OSS Distributions
394*42e22086SApple OSS DistributionsT_DECL(fault, "test that faulting stackshots work correctly")
395*42e22086SApple OSS Distributions{
396*42e22086SApple OSS Distributions	dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_fault_accuracy", NULL);
397*42e22086SApple OSS Distributions	dispatch_source_t child_sig_src;
398*42e22086SApple OSS Distributions	dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0);
399*42e22086SApple OSS Distributions	void *stackshot_config;
400*42e22086SApple OSS Distributions	int oldftm, newval = 1, freeze_enabled, oldratio, newratio = 0;
401*42e22086SApple OSS Distributions	size_t oldlen = sizeof(oldftm), fe_len = sizeof(freeze_enabled), ratiolen = sizeof(oldratio);
402*42e22086SApple OSS Distributions	char path[PATH_MAX];
403*42e22086SApple OSS Distributions	uint32_t path_size = sizeof(path);
404*42e22086SApple OSS Distributions	char *args[] = { path, "-n", "simple_child_process", NULL };
405*42e22086SApple OSS Distributions
406*42e22086SApple OSS Distributions	current_scenario_name = __func__;
407*42e22086SApple OSS Distributions	T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath");
408*42e22086SApple OSS Distributions
409*42e22086SApple OSS Distributions#if TARGET_OS_OSX
410*42e22086SApple OSS Distributions	T_SKIP("freezing is not available on macOS");
411*42e22086SApple OSS Distributions#endif /* TARGET_OS_OSX */
412*42e22086SApple OSS Distributions
413*42e22086SApple OSS Distributions	/* Try checking if freezing is enabled at all */
414*42e22086SApple OSS Distributions	if (sysctlbyname("vm.freeze_enabled", &freeze_enabled, &fe_len, NULL, 0) == -1) {
415*42e22086SApple OSS Distributions		if (errno == ENOENT) {
416*42e22086SApple OSS Distributions			T_SKIP("This device doesn't have CONFIG_FREEZE enabled.");
417*42e22086SApple OSS Distributions		} else {
418*42e22086SApple OSS Distributions			T_FAIL("failed to query vm.freeze_enabled, errno: %d", errno);
419*42e22086SApple OSS Distributions		}
420*42e22086SApple OSS Distributions	}
421*42e22086SApple OSS Distributions
422*42e22086SApple OSS Distributions	if (!freeze_enabled) {
423*42e22086SApple OSS Distributions		T_SKIP("Freeze is not enabled, skipping test.");
424*42e22086SApple OSS Distributions	}
425*42e22086SApple OSS Distributions
426*42e22086SApple OSS Distributions	/* signal handling */
427*42e22086SApple OSS Distributions	signal(SIGUSR1, SIG_IGN);
428*42e22086SApple OSS Distributions	child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq);
429*42e22086SApple OSS Distributions	dispatch_source_set_event_handler(child_sig_src, ^{
430*42e22086SApple OSS Distributions		dispatch_semaphore_signal(child_done_sema);
431*42e22086SApple OSS Distributions	});
432*42e22086SApple OSS Distributions	dispatch_activate(child_sig_src);
433*42e22086SApple OSS Distributions
434*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched");
435*42e22086SApple OSS Distributions	T_ATEND(kill_children);
436*42e22086SApple OSS Distributions
437*42e22086SApple OSS Distributions	dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER);
438*42e22086SApple OSS Distributions
439*42e22086SApple OSS Distributions	/* keep processes in memory */
440*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_to_memory", &oldftm, &oldlen, &newval, sizeof(newval)),
441*42e22086SApple OSS Distributions			"disabled freezing to disk");
442*42e22086SApple OSS Distributions
443*42e22086SApple OSS Distributions	/* set the ratio to zero */
444*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_private_shared_pages_ratio", &oldratio, &ratiolen, &newratio, sizeof(newratio)), "disabled private:shared ratio checking");
445*42e22086SApple OSS Distributions
446*42e22086SApple OSS Distributions	/* freeze the child */
447*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze", NULL, 0, &child_pid, sizeof(child_pid)),
448*42e22086SApple OSS Distributions			"froze child");
449*42e22086SApple OSS Distributions
450*42e22086SApple OSS Distributions	/* Sleep to allow the compressor to finish compressing the child */
451*42e22086SApple OSS Distributions	sleep(5);
452*42e22086SApple OSS Distributions
453*42e22086SApple OSS Distributions	/* take the stackshot and parse it */
454*42e22086SApple OSS Distributions	stackshot_config = take_stackshot(child_pid, STACKSHOT_ENABLE_BT_FAULTING | STACKSHOT_ENABLE_UUID_FAULTING, 0);
455*42e22086SApple OSS Distributions
456*42e22086SApple OSS Distributions	/* check that the stackshot has the stack frames */
457*42e22086SApple OSS Distributions	check_stackshot(stackshot_config, CHECK_FOR_FAULT_STATS);
458*42e22086SApple OSS Distributions
459*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_to_memory", NULL, 0, &oldftm, sizeof(oldftm)),
460*42e22086SApple OSS Distributions			"reset freezing to disk");
461*42e22086SApple OSS Distributions
462*42e22086SApple OSS Distributions	/* reset the private:shared ratio */
463*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.memorystatus_freeze_private_shared_pages_ratio", NULL, 0, &oldratio, sizeof(oldratio)), "reset private:shared ratio");
464*42e22086SApple OSS Distributions
465*42e22086SApple OSS Distributions	T_LOG("all done, killing child");
466*42e22086SApple OSS Distributions
467*42e22086SApple OSS Distributions	/* tell the child to quit */
468*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child");
469*42e22086SApple OSS Distributions}
470*42e22086SApple OSS Distributions
471*42e22086SApple OSS DistributionsT_DECL(fault_singleproc, "test that faulting stackshots work correctly in a single process setting")
472*42e22086SApple OSS Distributions{
473*42e22086SApple OSS Distributions	dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0);
474*42e22086SApple OSS Distributions	dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.fault_sp", NULL);
475*42e22086SApple OSS Distributions	void *stackshot_config;
476*42e22086SApple OSS Distributions	__block pthread_t child_thread;
477*42e22086SApple OSS Distributions	char *child_stack;
478*42e22086SApple OSS Distributions	size_t child_stacklen;
479*42e22086SApple OSS Distributions
480*42e22086SApple OSS Distributions#if !TARGET_OS_OSX
481*42e22086SApple OSS Distributions	T_SKIP("madvise(..., ..., MADV_PAGEOUT) is not available on embedded platforms");
482*42e22086SApple OSS Distributions#endif /* !TARGET_OS_OSX */
483*42e22086SApple OSS Distributions
484*42e22086SApple OSS Distributions	dispatch_async(dq, ^{
485*42e22086SApple OSS Distributions		char padding[16 * 1024];
486*42e22086SApple OSS Distributions		__asm__ volatile(""::"r"(padding));
487*42e22086SApple OSS Distributions
488*42e22086SApple OSS Distributions		child_recurse(RECURSIONS, 0, ^{
489*42e22086SApple OSS Distributions			child_thread = pthread_self();
490*42e22086SApple OSS Distributions			dispatch_semaphore_signal(child_done_sema);
491*42e22086SApple OSS Distributions		});
492*42e22086SApple OSS Distributions	});
493*42e22086SApple OSS Distributions
494*42e22086SApple OSS Distributions	dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER);
495*42e22086SApple OSS Distributions	T_LOG("done waiting for child");
496*42e22086SApple OSS Distributions
497*42e22086SApple OSS Distributions	child_stack = pthread_get_stackaddr_np(child_thread);
498*42e22086SApple OSS Distributions	child_stacklen = pthread_get_stacksize_np(child_thread);
499*42e22086SApple OSS Distributions	child_stack -= child_stacklen;
500*42e22086SApple OSS Distributions	T_LOG("child stack: [0x%p - 0x%p]: 0x%zu bytes", (void *)child_stack,
501*42e22086SApple OSS Distributions			(void *)(child_stack + child_stacklen), child_stacklen);
502*42e22086SApple OSS Distributions
503*42e22086SApple OSS Distributions	/* paging out the child */
504*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(madvise(child_stack, child_stacklen, MADV_PAGEOUT), "paged out via madvise(2) the child stack");
505*42e22086SApple OSS Distributions
506*42e22086SApple OSS Distributions	/* take the stackshot and parse it */
507*42e22086SApple OSS Distributions	stackshot_config = take_stackshot(getpid(), STACKSHOT_ENABLE_BT_FAULTING | STACKSHOT_ENABLE_UUID_FAULTING, 0);
508*42e22086SApple OSS Distributions
509*42e22086SApple OSS Distributions	/* check that the stackshot has the stack frames */
510*42e22086SApple OSS Distributions	check_stackshot(stackshot_config, CHECK_FOR_FAULT_STATS);
511*42e22086SApple OSS Distributions
512*42e22086SApple OSS Distributions	T_LOG("done!");
513*42e22086SApple OSS Distributions}
514*42e22086SApple OSS Distributions
515*42e22086SApple OSS DistributionsT_DECL(zombie, "test that threads wedged in the kernel can be stackshot'd")
516*42e22086SApple OSS Distributions{
517*42e22086SApple OSS Distributions	dispatch_queue_t dq = dispatch_queue_create("com.apple.stackshot_accuracy.zombie", NULL);
518*42e22086SApple OSS Distributions	dispatch_semaphore_t child_done_sema = dispatch_semaphore_create(0);
519*42e22086SApple OSS Distributions	dispatch_source_t child_sig_src;
520*42e22086SApple OSS Distributions	void *stackshot_config;
521*42e22086SApple OSS Distributions	char path[PATH_MAX];
522*42e22086SApple OSS Distributions	uint32_t path_size = sizeof(path);
523*42e22086SApple OSS Distributions	char *args[] = { path, "-n", "sid_child_process", NULL };
524*42e22086SApple OSS Distributions
525*42e22086SApple OSS Distributions	current_scenario_name = __func__;
526*42e22086SApple OSS Distributions	T_QUIET; T_ASSERT_POSIX_ZERO(_NSGetExecutablePath(path, &path_size), "_NSGetExecutablePath");
527*42e22086SApple OSS Distributions
528*42e22086SApple OSS Distributions	T_LOG("parent pid: %d\n", getpid());
529*42e22086SApple OSS Distributions
530*42e22086SApple OSS Distributions	/* setup signal handling */
531*42e22086SApple OSS Distributions	signal(SIGUSR1, SIG_IGN);
532*42e22086SApple OSS Distributions	child_sig_src = dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL, SIGUSR1, 0, dq);
533*42e22086SApple OSS Distributions	dispatch_source_set_event_handler(child_sig_src, ^{
534*42e22086SApple OSS Distributions		dispatch_semaphore_signal(child_done_sema);
535*42e22086SApple OSS Distributions	});
536*42e22086SApple OSS Distributions	dispatch_activate(child_sig_src);
537*42e22086SApple OSS Distributions
538*42e22086SApple OSS Distributions	/* create the child process */
539*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(dt_launch_tool(&child_pid, args, false, NULL, NULL), "child launched");
540*42e22086SApple OSS Distributions	T_ATEND(kill_children);
541*42e22086SApple OSS Distributions
542*42e22086SApple OSS Distributions	/* wait until the child has recursed enough */
543*42e22086SApple OSS Distributions	dispatch_semaphore_wait(child_done_sema, DISPATCH_TIME_FOREVER);
544*42e22086SApple OSS Distributions
545*42e22086SApple OSS Distributions	T_LOG("child finished, parent executing. invoking jetsam");
546*42e22086SApple OSS Distributions
547*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(memorystatus_control(MEMORYSTATUS_CMD_TEST_JETSAM, child_pid, 0, 0, 0),
548*42e22086SApple OSS Distributions			"jetsam'd the child");
549*42e22086SApple OSS Distributions
550*42e22086SApple OSS Distributions	/* Sleep to allow the target process to become zombified */
551*42e22086SApple OSS Distributions	sleep(1);
552*42e22086SApple OSS Distributions
553*42e22086SApple OSS Distributions	/* take the stackshot and parse it */
554*42e22086SApple OSS Distributions	stackshot_config = take_stackshot(child_pid, 0, 0);
555*42e22086SApple OSS Distributions
556*42e22086SApple OSS Distributions	/* check that the stackshot has the stack frames */
557*42e22086SApple OSS Distributions	check_stackshot(stackshot_config, CHECK_FOR_KERNEL_THREADS);
558*42e22086SApple OSS Distributions
559*42e22086SApple OSS Distributions	T_LOG("all done, unwedging and killing child");
560*42e22086SApple OSS Distributions
561*42e22086SApple OSS Distributions	int v = 1;
562*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(sysctlbyname("kern.unwedge_thread", NULL, NULL, &v, sizeof(v)),
563*42e22086SApple OSS Distributions			"unwedged child");
564*42e22086SApple OSS Distributions
565*42e22086SApple OSS Distributions	/* tell the child to quit */
566*42e22086SApple OSS Distributions	T_ASSERT_POSIX_SUCCESS(kill(child_pid, SIGTERM), "killed child");
567*42e22086SApple OSS Distributions}
568