From owner-freebsd-net@FreeBSD.ORG Thu Apr 23 14:42:12 2009 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id B4FCA1065670; Thu, 23 Apr 2009 14:42:12 +0000 (UTC) (envelope-from to.my.trociny@gmail.com) Received: from mail-ew0-f171.google.com (mail-ew0-f171.google.com [209.85.219.171]) by mx1.freebsd.org (Postfix) with ESMTP id 0A6C48FC1C; Thu, 23 Apr 2009 14:42:11 +0000 (UTC) (envelope-from to.my.trociny@gmail.com) Received: by ewy19 with SMTP id 19so531584ewy.43 for ; Thu, 23 Apr 2009 07:42:11 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:to:cc:subject:references :organization:from:date:in-reply-to:message-id:user-agent :mime-version:content-type; bh=7iZLkvFgcTYvMdgKrNm/TozAX+c+wOT0sT7+fxfZZG0=; b=Pvu0sevLNiAcecW7zumziK9uG+Pt8JzeGWHxOqVJoZbr6DL9hNu7OncK9jgfIqFZuL D8KMCTNL6XpCAkE8d0IGKH7octcAeM6vYei9ghroVhEfmmMN8P7wss4ff+0cEqNFQpYr Yuk9/sKHUzUpRJvSShsLSKIB4IKvmT/ghVAeM= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=to:cc:subject:references:organization:from:date:in-reply-to :message-id:user-agent:mime-version:content-type; b=F8Byvf1D7+pFRxnmoUUX/OKyqCE3XumLb8KZOKhx+zXBH2xkQ2fn6aV7Jk8HuF9M50 U6YReEud/URrdh25LNIv/+eo5L6XvvMLXV5H58H5l1Os91H9ktMmBjP7J4+GTAZl+gwJ cyaQ46OmmzS2phYiYcPLkd/edm7PUvBzslfQc= Received: by 10.210.81.10 with SMTP id e10mr1077575ebb.9.1240496044691; Thu, 23 Apr 2009 07:14:04 -0700 (PDT) Received: from localhost (ms.singlescrowd.net [80.85.90.67]) by mx.google.com with ESMTPS id 23sm132114eya.9.2009.04.23.07.14.03 (version=TLSv1/SSLv3 cipher=RC4-MD5); Thu, 23 Apr 2009 07:14:04 -0700 (PDT) To: bug-followup@FreeBSD.org References: <200904220651.n3M6pSW2042168@freefall.freebsd.org> Organization: TOA Ukraine From: Mikolaj Golub Date: Thu, 23 Apr 2009 17:14:02 +0300 In-Reply-To: <200904220651.n3M6pSW2042168@freefall.freebsd.org> (linimon@freebsd.org's message of "Wed\, 22 Apr 2009 06\:51\:28 GMT") Message-ID: <81prf3h2z9.fsf@zhuzha.ua1> User-Agent: Gnus/5.11 (Gnus v5.11) Emacs/22.3 (berkeley-unix) MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Cc: freebsd-net@FreeBSD.org, freebsd-bugs@FreeBSD.org, lsantagostini@gmail.com Subject: Re: kern/133902: [tun] Killing tun0 iface ssh tunnel causes Panic String: page fault X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 23 Apr 2009 14:42:13 -0000 I have asked Leonardo to provide more info and backtrace. So here is backtrace: cobra4# kgdb /boot/kernel/kernel.symbols /var/crash/vmcore.0 [GDB will not be able to debug user-mode threads: /usr/lib/libthread_db.so: Undefined symbol "ps_pglobal_lookup"] GNU gdb 6.1.1 [FreeBSD] Copyright 2004 Free Software Foundation, Inc. GDB is free software, covered by the GNU General Public License, and you are welcome to change it and/or distribute copies of it under certain conditions. Type "show copying" to see the conditions. There is absolutely no warranty for GDB. Type "show warranty" for details. This GDB was configured as "i386-marcel-freebsd". Unread portion of the kernel message buffer: Fatal trap 12: page fault while in kernel mode cpuid = 0; apic id = 00 fault virtual address = 0x65656c7b fault code = supervisor write, page not present instruction pointer = 0x20:0xc0786e00 stack pointer = 0x28:0xe958fac4 frame pointer = 0x28:0xe958fac4 code segment = base 0x0, limit 0xfffff, type 0x1b = DPL 0, pres 1, def32 1, gran 1 processor eflags = interrupt enabled, resume, IOPL = 0 current process = 66873 (ssh) trap number = 12 panic: page fault cpuid = 1 Uptime: 54d11h21m54s Physical memory: 2023 MB Dumping 277 MB: 262 246 230 214 198 182 166 150 134 118 102 86 70 54 38 22 6 #0 doadump () at pcpu.h:195 195 pcpu.h: No such file or directory. in pcpu.h (kgdb) backtrace #0 doadump () at pcpu.h:195 #1 0xc0754457 in boot (howto=260) at /usr/src/sys/kern/kern_shutdown.c:409 #2 0xc0754719 in panic (fmt=Variable "fmt" is not available. ) at /usr/src/sys/kern/kern_shutdown.c:563 #3 0xc0a4905c in trap_fatal (frame=0xe958fa84, eva=1701145723) at /usr/src/sys/i386/i386/trap.c:899 #4 0xc0a492e0 in trap_pfault (frame=0xe958fa84, usermode=0, eva=1701145723) at /usr/src/sys/i386/i386/trap.c:812 #5 0xc0a49c8c in trap (frame=0xe958fa84) at /usr/src/sys/i386/i386/trap.c:490 #6 0xc0a2fc0b in calltrap () at /usr/src/sys/i386/i386/exception.s:139 #7 0xc0786e00 in clear_selinfo_list (td=0xca3fc840) at /usr/src/sys/kern/sys_generic.c:1065 #8 0xc0788efc in kern_select (td=0xca3fc840, nd=8, fd_in=0x284010b8, fd_ou=0x284010bc, fd_ex=0x0, tvp=0x0) at /usr/src/sys/kern/sys_generic.c:794 #9 0xc07890de in select (td=0xca3fc840, uap=0xe958fcfc) at /usr/src/sys/kern/sys_generic.c:663 #10 0xc0a49635 in syscall (frame=0xe958fd38) at /usr/src/sys/i386/i386/trap.c:1035 #11 0xc0a2fc70 in Xint0x80_syscall () at /usr/src/sys/i386/i386/exception.s:196 #12 0x00000033 in ?? () Previous frame inner to this frame (corrupt stack?) (kgdb) The system panics on ifconfig tun0 destroy This issue is related to kern/116837. Leonardo, you can try the patch attached to that pr. -- Mikolaj Golub