Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 25 Feb 2003 17:01:01 -0300
From:      "Daniel C. Sobral" <dcs@tcoip.com.br>
To:        current@freebsd.org
Subject:   TCP stack panic (panic: bremfree: bp 0xc7743f60 not locked)
Message-ID:  <3E5BCB7D.9080304@tcoip.com.br>

index | next in thread | raw e-mail

This is just not my day. Today's (25/03) kernel:

savecore: reboot after panic: bremfree: bp 0xc7743f60 not locked
Feb 25 16:48:39 dcs savecore: reboot after panic: bremfree: bp 
0xc7743f60 not lo
cked
savecore: writing core to vmcore.5

root@dcs:/root$ gdb -k /var/crash/kernel.5 /var/crash/vmcore.5
GNU gdb 5.2.1 (FreeBSD)
Copyright 2002 Free Software Foundation, Inc.
GDB is free software, covered by the GNU General Public License, and you are
welcome to change it and/or distribute copies of it under certain 
conditions.
Type "show copying" to see the conditions.
There is absolutely no warranty for GDB.  Type "show warranty" for details.
This GDB was configured as "i386-undermydesk-freebsd"...
panic: bremfree: bp 0xc7743f60 not locked
panic messages:
---
panic: headlocked should be 0

syncing disks, buffers remaining... panic: bremfree: bp 0xc7743f60 not 
locked
Uptime: 8m11s
Dumping 255 MB
ata0: resetting devices ..
done
  16 32 48 64 80 96 112 128 144 160 176 192 208 224 240
---
#0  doadump () at /usr/src/sys/kern/kern_shutdown.c:239
239             dumping++;
(kgdb) bt full
#0  doadump () at /usr/src/sys/kern/kern_shutdown.c:239
No locals.
#1  0xc01eace7 in boot (howto=260) at /usr/src/sys/kern/kern_shutdown.c:371
No locals.
#2  0xc01eaf53 in panic () at /usr/src/sys/kern/kern_shutdown.c:542
	td = (struct thread *) 0xc0ec8c30
	bootopt = 260
	newpanic = 0
	buf = "bremfree: bp 0xc7743f60 not locked", '\0' <repeats 221 times>
#3  0xc022cde7 in bremfreel (bp=0xc7743f60) at 
/usr/src/sys/kern/vfs_bio.c:680
	old_qindex = 3
#4  0xc022cd55 in bremfree (bp=0x0) at /usr/src/sys/kern/vfs_bio.c:667
No locals.
#5  0xc022f073 in vfs_bio_awrite (bp=0x3) at 
/usr/src/sys/kern/vfs_bio.c:1765
	i = 6
	j = -948682708
	lblkno = 196800
	vp = (struct vnode *) 0xc26b7000
	ncl = 0
	nwritten = -948682912
	size = -1033146368
	maxcl = 0
#6  0xc0236316 in vop_stdfsync (ap=0xcd2b1a34)
     at /usr/src/sys/kern/vfs_default.c:755
	vp = (struct vnode *) 0xc26b7000
	bp = (struct buf *) 0xc7743f60
	nbp = (struct buf *) 0x0
	error = 0
	maxretry = 100
#7  0xc01a38c0 in spec_fsync (ap=0xcd2b1a34)
     at /usr/src/sys/fs/specfs/spec_vnops.c:422
No locals.
#8  0xc01a2ce8 in spec_vnoperate (ap=0x0)
     at /usr/src/sys/fs/specfs/spec_vnops.c:123
No locals.
#9  0xc028e6f7 in ffs_sync (mp=0xc25cd400, waitfor=2, cred=0xc0eb7e80,
     td=0xc034c640) at vnode_if.h:612
	nvp = (struct vnode *) 0x0
	vp = (struct vnode *) 0xcd2b1a34
	devvp = (struct vnode *) 0xcd2b1a34
	ip = (struct inode *) 0x0
	ump = (struct ufsmount *) 0xc26b3200
	fs = (struct fs *) 0xc2613800
	error = -1070283200
	count = 0
	wait = 0
	lockreq = 18
	allerror = 0
#10 0xc024222b in sync (td=0xc034c640, uap=0x0)
     at /usr/src/sys/kern/vfs_syscalls.c:138
	mp = (struct mount *) 0xc25cd400
	nmp = (struct mount *) 0x0
	asyncflag = 0
#11 0xc01ea8ec in boot (howto=256) at /usr/src/sys/kern/kern_shutdown.c:280
	bp = (struct buf *) 0x0
	iter = -1058239440
	nbusy = -1058250624
	pbusy = -1070448168
	subiter = -1058250624
#12 0xc01eaf53 in panic () at /usr/src/sys/kern/kern_shutdown.c:542
	td = (struct thread *) 0xc0ec8c30
	bootopt = 256
	newpanic = 1
	buf = "bremfree: bp 0xc7743f60 not locked", '\0' <repeats 221 times>
#13 0xc02670a8 in tcp_input (m=0xc0eddb00, off0=20)
     at /usr/src/sys/netinet/tcp_input.c:2251
	th = (struct tcphdr *) 0xc1366034
	ip = (struct ip *) 0xc1366020
	ipov = (struct ipovly *) 0x0
	inp = (struct inpcb *) 0xc28060e4
	optp = (u_char *) 0xc1366048 "\001\001\b\n!Õ}»"
	optlen = 12
	len = -1025473848
	tlen = 0
	off = -1025473848
	drop_hdrlen = 52
	tp = (struct tcpcb *) 0xc2e082c8
	thflags = 0
	so = (struct socket *) 0xc2da5400
	todrop = -1025473848
	acked = -1025473848
	ourfinisacked = -1025473848
	needoutput = 0
	tiwin = 31856
	to = {to_flags = 1, to_tsval = 567639483, to_tsecr = 489925,
   to_cc = 0, to_ccecho = 0, to_mss = 0, to_requested_s_scale = 0 '\0',
   to_pad = 0 '\0'}
	taop = (struct rmxp_tao *) 0xc2e082c8
	tao_noncached = {tao_cc = 3223375443, tao_ccsent = 3224899888,
   tao_mssopt = 4840}
	headlocked = 1
	next_hop = (struct sockaddr_in *) 0x0
	rstreason = -1025473848
#14 0xc02608e6 in ip_input (m=0xc0eddb00)
     at /usr/src/sys/netinet/ip_input.c:947
	ip = (struct ip *) 0xc1366020
	fp = (struct ipq *) 0xc26e8400
	ia = (struct in_ifaddr *) 0xc26e8400
	ifa = (struct ifaddr *) 0x0
	i = 0
	hlen = 20
	checkif = 1
	sum = 0
	pkt_dst = {s_addr = 100794378}
	divert_info = 0
	args = {m = 0xc03a4738, oif = 0x0, next_hop = 0x0, rule = 0x0,
   eh = 0x0, ro = 0xcd2b1cb8, dst = 0xc0359d54, flags = 962, f_id = {
     dst_ip = 3224554013, src_ip = 3442154664, dst_port = 5168,
     src_port = 49182, proto = 84 'T', flags = 157 '\235'}, divert_rule = 0,
   retval = 3224515833}
#15 0xc0260991 in ipintr () at /usr/src/sys/netinet/ip_input.c:965
	m = (struct mbuf *) 0xc0eddb00
#16 0xc0254814 in swi_net (dummy=0x0) at /usr/src/sys/net/netisr.c:97
	pollmore = 0
	bits = 4
	i = 2
#17 0xc01c9a72 in ithread_loop (arg=0xc0ec6100)
     at /usr/src/sys/kern/kern_intr.c:536
	ithd = (struct ithd *) 0xc0ec6100
	ih = (struct intrhand *) 0xc0ebd400
	td = (struct thread *) 0xc0ec8c30
	p = (struct proc *) 0xc0ec75f4
#18 0xc01c8b44 in fork_exit (callout=0xc0ebd400, arg=0x0, frame=0x0)
     at /usr/src/sys/kern/kern_fork.c:871
	td = (struct thread *) 0x0
	p = (struct proc *) 0xc0ec6100


Core dump and kernel with debugging symbols are still available for 
post-crash perusal.

-- 
Daniel C. Sobral
Gerência de Operações
Divisão de Comunicação de Dados
Coordenação de Segurança
TCO
Fones: 55-61-313-7654/Cel: 55-61-9618-0904
E-mail:	Daniel.Capo@tco.net.br
	Daniel.Sobral@tcoip.com.br
	dcs@tcoip.com.br



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-current" in the body of the message



help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3E5BCB7D.9080304>