From owner-freebsd-net@FreeBSD.ORG Wed May 13 20:10:08 2009 Return-Path: Delivered-To: freebsd-net@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 0391D106566B for ; Wed, 13 May 2009 20:10:08 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id DB8728FC12 for ; Wed, 13 May 2009 20:10:07 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.14.3/8.14.3) with ESMTP id n4DKA7AF095810 for ; Wed, 13 May 2009 20:10:07 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.3/8.14.3/Submit) id n4DKA7gT095806; Wed, 13 May 2009 20:10:07 GMT (envelope-from gnats) Date: Wed, 13 May 2009 20:10:07 GMT Message-Id: <200905132010.n4DKA7gT095806@freefall.freebsd.org> To: freebsd-net@FreeBSD.org From: Boris Kochergin Cc: Subject: Re: kern/129508: [panic] Kernel panic with EtherIP (may be related to SVN commit 178025) X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Boris Kochergin List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 13 May 2009 20:10:08 -0000 The following reply was made to PR kern/129508; it has been noted by GNATS. From: Boris Kochergin To: bug-followup@FreeBSD.org Cc: Subject: Re: kern/129508: [panic] Kernel panic with EtherIP (may be related to SVN commit 178025) Date: Wed, 13 May 2009 15:38:47 -0400 As a workaround, lowering the MTU of the 802.11 interfaces on all of the access points made the panic go away, until one of the machines that was panicking was upgraded to 7.2-RELEASE. Afterward, a panic with a different backtrace started occuring: Unread portion of the kernel message buffer: in_cksum_skip: out of data by 21295 delayed m_pullup, m->len: 22 off: 28410 p: 97 Fatal trap 12: page fault while in kernel mode fault virtual address = 0x44032cbf fault code = supervisor read, page not present instruction pointer = 0x20:0xc05a9b54 stack pointer = 0x28:0xc1f274cc frame pointer = 0x28:0xc1f274d4 code segment = base 0x0, limit 0xfffff, type 0x1b = DPL 0, pres 1, def32 1, gran 1 processor eflags = interrupt enabled, resume, IOPL = 0 current process = 19 (irq5: xl0) trap number = 12 panic: page fault Uptime: 7d15h55m48s Physical memory: 246 MB Dumping 58 MB: 43 27 11 Reading symbols from /boot/kernel/acpi.ko...Reading symbols from /boot/kernel/acpi.ko.symbols...done. done. Loaded symbols for /boot/kernel/acpi.ko #0 doadump () at /usr/src/sys/kern/kern_shutdown.c:244 244 dumptid = curthread->td_tid; (kgdb) where #0 doadump () at /usr/src/sys/kern/kern_shutdown.c:244 #1 0xc0542599 in boot (howto=260) at /usr/src/sys/kern/kern_shutdown.c:418 #2 0xc0542955 in panic (fmt=Could not find the frame base for "panic".) at /usr/src/sys/kern/kern_shutdown.c:574 #3 0xc0754ee1 in trap_fatal (frame=0xc1f2748c, eva=1141058751) at /usr/src/sys/i386/i386/trap.c:939 #4 0xc0754ad0 in trap_pfault (frame=0xc1f2748c, usermode=0, eva=1141058751) at /usr/src/sys/i386/i386/trap.c:852 #5 0xc075439a in trap (frame=0xc1f2748c) at /usr/src/sys/i386/i386/trap.c:530 #6 0xc073c3fb in calltrap () at /usr/src/sys/i386/i386/exception.s:159 #7 0xc05a9b54 in m_tag_locate (m=0xc3004300, cookie=0, type=21, t=0x0) at /usr/src/sys/kern/uipc_mbuf2.c:391 #8 0xc043ef81 in m_tag_find (m=0xc3004300, type=21, start=0x0) at mbuf.h:957 #9 0xc043eee1 in pf_get_mtag (m=0xc3004300) at pf_mtag.h:70 #10 0xc044c44e in pf_test (dir=2, ifp=0xc20b6c00, m0=0xc1f276f0, eh=0x0, inp=0x0) at /usr/src/sys/contrib/pf/net/pf.c:6776 #11 0xc0459f3f in pf_check_out (arg=0x0, m=0xc1f276f0, ifp=0xc20b6c00, dir=2, inp=0x0) at /usr/src/sys/contrib/pf/net/pf_ioctl.c:3687 #12 0xc061da71 in pfil_run_hooks (ph=0xc07dee60, mp=0xc1f277b4, ifp=0xc20b6c00, dir=2, inp=0x0) at /usr/src/sys/net/pfil.c:78 #13 0xc064557e in ip_output (m=0xc3004300, opt=0x0, ro=0xc21b1aa4, flags=0, imo=0x0, inp=0x0) at /usr/src/sys/netinet/ip_output.c:443 #14 0xc06359d3 in in_gif_output (ifp=0xc2103400, family=18, m=0xc3004300) at /usr/src/sys/netinet/in_gif.c:244 #15 0xc061b3cd in gif_output (ifp=0xc2103400, m=0xc238c100, dst=0xc219c560, rt=0x0) at /usr/src/sys/net/if_gif.c:455 #16 0xc061b009 in gif_start (ifp=0xc2103400) at /usr/src/sys/net/if_gif.c:351 #17 0xc0612c39 in bridge_enqueue (sc=0xc222c800, dst_ifp=0xc2103400, m=0x0) at /usr/src/sys/net/if_bridge.c:1742 #18 0xc0614d9c in bridge_broadcast (sc=0xc222c800, src_if=0xc2196000, m=0xc238c100, runfilt=1) at /usr/src/sys/net/if_bridge.c:2386 #19 0xc0613951 in bridge_forward (sc=0xc222c800, sbif=0xc22c8400, m=0xc238c100) at /usr/src/sys/net/if_bridge.c:2046 #20 0xc0613ed5 in bridge_input (ifp=0xc2196000, m=0xc3068600) at /usr/src/sys/net/if_bridge.c:2168 #21 0xc061b6da in gif_input (m=0xc3068600, af=18, ifp=0xc2196000) at /usr/src/sys/net/if_gif.c:563 #22 0xc0635d34 in in_gif_input (m=0xc3068600, off=20) at /usr/src/sys/netinet/in_gif.c:342 #23 0xc063d905 in encap4_input (m=0xc3068600, off=20) at /usr/src/sys/netinet/ip_encap.c:191 #24 0xc064190f in ip_input (m=0xc3068600) at /usr/src/sys/netinet/ip_input.c:664 #25 0xc061d61a in netisr_dispatch (num=2, m=0xc3068600) at /usr/src/sys/net/netisr.c:185 #26 0xc0619d16 in ether_demux (ifp=0xc20b6c00, m=0xc3068600) at /usr/src/sys/net/if_ethersubr.c:834 #27 0xc0619af2 in ether_input (ifp=0xc20b6c00, m=0xc3068600) at /usr/src/sys/net/if_ethersubr.c:692 #28 0xc06a1924 in xl_rxeof (sc=0xc20d7000) at /usr/src/sys/pci/if_xl.c:2022 #29 0xc06a23ce in xl_intr (arg=0xc20d7000) at /usr/src/sys/pci/if_xl.c:2257 #30 0xc0518ca0 in ithread_execute_handlers (p=0xc20aa000, ie=0xc2009900) at /usr/src/sys/kern/kern_intr.c:1088 #31 0xc0518e67 in ithread_loop (arg=0xc20d3c80) at /usr/src/sys/kern/kern_intr.c:1175 #32 0xc0516d23 in fork_exit (callout=0xc0518de0 , arg=0xc20d3c80, frame=0xc1f27d38) at /usr/src/sys/kern/kern_fork.c:810 #33 0xc073c470 in fork_trampoline () at /usr/src/sys/i386/i386/exception.s:264