From owner-freebsd-current Sat Feb 21 15:10:17 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id PAA03596 for freebsd-current-outgoing; Sat, 21 Feb 1998 15:10:17 -0800 (PST) (envelope-from owner-freebsd-current@FreeBSD.ORG) Received: from home.dragondata.com (home.dragondata.com [204.137.237.2]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id PAA03578 for ; Sat, 21 Feb 1998 15:10:14 -0800 (PST) (envelope-from toasty@home.dragondata.com) Received: (from toasty@localhost) by home.dragondata.com (8.8.8/8.8.5) id RAA01733; Sat, 21 Feb 1998 17:10:12 -0600 (CST) From: Kevin Day Message-Id: <199802212310.RAA01733@home.dragondata.com> Subject: Re: panic: vm_page_unwire: invalid wire count: 0 In-Reply-To: <199802211518.JAA09042@home.dragondata.com> from Kevin Day at "Feb 21, 98 09:18:37 am" To: toasty@home.dragondata.com (Kevin Day) Date: Sat, 21 Feb 1998 17:10:11 -0600 (CST) Cc: current@FreeBSD.ORG X-Mailer: ELM [version 2.4ME+ PL31 (25)] MIME-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 8bit X-MIME-Autoconverted: from quoted-printable to 8bit by hub.freebsd.org id PAA03589 Sender: owner-freebsd-current@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG This has happened again, and this time I got a coredump, and the trace was different: panic: vm_page_unwire: invalid wire count: 0 mp_lock = 01000001; cpuid = 1; lapic.id = 01000000 Debugger("panic") Stopped at _Debugger+0x35 db> trace _Debugger(f0114263) at _Debugger+0x35 _panic(f01b1806,0,f04e9124,f8359d58,f012c4c4) at _panic+0x8d _vm_page_unwire(f04e9124) at _vm_page_unwire+06f _vfs_vmio_release(f400a070) at _vfs_vmio_release+0x30 _getnewbuf(f93fe900,b1,100,0,2000) at _getnewbuf+0x2ef _getblk(f93fe900,b1,2000,100,0) at _getblk+0x147 _nfs_getcacheblk(f93fe900,b1,2000,f932c240,e) at _nfs_getcacheblk+0x31 _nfs_write(f1fed840,f9350f40,8000,f932c240,f9309100) at _nfs_write+0x57a _vn_write(f1fed840,f935f40,f2040300,f932c240,f01f7df0) at _vn_write+0xef _write(f932c240,f9350f94,1,8000,24ee8) at _write+0xab _syscall(27,27,24ee8,8000,3fbfd6fc) at _syscall+0x187 _Xsyscall() at Xsyscall+0x55 --- syscall 0x4, eip = 0x15f85, esp = 0xefbfd6e0, ebp = 0xefbfd6fc --- db> Script started on Sat Feb 21 16:52:14 1998 shell# gdb -k GDB is free software and you are welcome to distribute copies of it under certain conditions; type "show copying" to see the conditions. There is absolutely no warranty for GDB; type "show warranty" for details. GDB 4.16 (i386-unknown-freebsd), Copyright 1996 Free Software Foundation, Inc. (kgdb) symbol-file kernel.debug Reading symbols from kernel.debug...done. (kgdb) exec-file /var/crash/kerne.0  l.0 (kgdb) core-file /var/crash/vmcore.0 IdlePTD 25f000 initial pcb at 2070a8 panicstr: vm_page_unwire: invalid wire count: %d panic messages: --- panic: vm_page_unwire: invalid wire count: 0 mp_lock = 01000001; cpuid = 1; lapic.id = 01000000 panic: from debugger mp_lock = 01000002; cpuid = 1; lapic.id = 01000000 boot() called on cpu#1 I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. I'm on cpu#1, I need to be on cpu#0, sleeping.. timeout waiting for cpu #0! dumping to dev 20011, offset 85764 dump 79 78 77 76 75 74 73 72 71 70 69 68 67 66 65 64 63 62 61 60 59 58 57 56 55 54 53 52 51 50 49 48 47 46 45 44 43 42 41 40 39 38 37 36 35 34 33 32 31 30 29 28 27 26 25 24 23 22 21 20 19 18 17 16 15 14 13 12 11 10 9 8 7 6 5 4 3 2 1 --- #0 boot (howto=260) at ../../kern/kern_shutdown.c:286 286 dumppcb.pcb_cr3 = rcr3(); (kgdb) info stack #0 boot (howto=260) at ../../kern/kern_shutdown.c:286 #1 0xf0114302 in panic (fmt=0xf01014e8 "from debugger") at ../../kern/kern_shutdown.c:426 #2 0xf0101505 in db_panic (addr=-266618039, have_addr=0, count=-1, modif=0xf9350be4 "") at ../../ddb/db_command.c:432 #3 0xf01013e5 in db_command (last_cmdp=0xf01f7ab4, cmd_table=0xf01f7914, aux_cmd_tablep=0xf02044e4) at ../../ddb/db_command.c:332 #4 0xf0101572 in db_command_loop () at ../../ddb/db_command.c:454 #5 0xf0103c33 in db_trap (type=3, code=0) at ../../ddb/db_trap.c:71 #6 0xf01bb8e4 in kdb_trap (type=3, code=0, regs=0xf9350cd4) at ../../i386/i386/db_interface.c:157 #7 0xf01cb198 in trap (frame={tf_es = 16, tf_ds = 16, tf_edi = -201285520, tf_esi = 256, tf_ebp = -113963752, tf_isp = -113963780, tf_ebx = -266659834, tf_edx = -266618092, tf_ecx = 16777217, tf_eax = 18, tf_trapno = 3, tf_err = 0, tf_eip = -266618039, tf_cs = 8, tf_eflags = 582, tf_esp = -266618108, tf_ss = -267304349}) at ../../i386/i386/trap.c:474 #8 0xf01bbb49 in Debugger (msg=0xf0114263 "panic") at ../../i386/i386/db_interface.c:316 #9 0xf01142f9 in panic ( fmt=0xf01b1806 "vm_page_unwire: invalid wire count: %d\n") at ../../kern/kern_shutdown.c:424 #10 0xf01b189f in vm_page_unwire (m=0xf04e9124) at ../../vm/vm_page.c:1244 #11 0xf012c4c4 in vfs_vmio_release (bp=0xf400a070) at ../../kern/vfs_bio.c:757 #12 0xf012cacf in getnewbuf (vp=f93fe900, blkno=177, slpflag=256, slptimeo=0, size=8192, maxsize=8192) at ../../kern/vfs_bio.c:1086 #13 0xf012d14f in getblk (vp=0xf93fe900, blkno=177, size=8192, slpflag=256, slptimeo=0) at ../../kern/vfs_bio.c:1437 #14 0xf015c629 in nfs_getcacheblk (vp=0xf93fe900, bn=177, size=8192, p=0xf932c240) at ../../nfs/nfs_bio.c:710 #15 0xf015c25a in nfs_write (ap=0xf9350ef8) at ../../nfs/nfs_bio.c:587 #16 0xf0138727 in vn_write (fp=0xf1fed840, uio=0xf9350f40, cred=0xf2040300) at vnode_if.h:331 #17 0xf011bf0b in write (p=0xf932c240, uap=0xf9350f94) at ../../kern/sys_generic.c:268 #18 0xf01cbd0b in syscall (frame={tf_es = 39, tf_ds = 39, fd_edi = 151272, tf_esi = 32768, tf_ebp = -272640260, tf_isp = -113963036, tf_ebx = 1, tf_edx = 115, tf_ecx = -906654689m tf_eax = 4, tf_trapno = 297, tf_err = 7, tf_eip = 89989, tf_cs = 31, tf_eflags = 582, tf_esp = - 272640288, tf_ss = 39}) at ../../i386/i386/trap.c:994 #19 0x15f85 in ?? () At this point, the system completly locks up. I can still switch screens, but nothing is happening. If I drop into the debugger, the system reboots instantly. (this is *AFTER* I've cleanly rebooted, and am examining the coredump file) Here's the dmesg Copyright (c) 1992-1998 FreeBSD Inc. Copyright (c) 1982, 1986, 1989, 1991, 1993 The Regents of the University of California. All rights reserved. FreeBSD 3.0-CURRENT #0: Sat Feb 21 11:19:44 CST 1998 root@shell.dragondata.com:/usr/src/sys/compile/SHELL Timecounter "i8254" frequency 1193182 Hz cost 2272 ns CPU: Pentium (586-class CPU) Origin = "GenuineIntel" Id = 0x52c Stepping=12 Features=0x3bf real memory = 83886080 (81920K bytes) avail memory = 78454784 (76616K bytes) FreeBSD/SMP: Multiprocessor motherboard cpu0 (BSP): apic id: 0, version: 0x00030010, at 0xfee00000 cpu1 (AP): apic id: 1, version: 0x00030010, at 0xfee00000 io0 (APIC): apic id: 2, version: 0x00170011, at 0xfec00000 Probing for devices on PCI bus 0: chip0: rev 0x03 on pci0.0.0 chip1: rev 0x01 on pci0.7.0 ide_pci0: rev 0x00 on pci0.7.1 de0: rev 0x22 int a irq 19 on pci0.17.0 de0: 21140A [10-100Mb/s] pass 2.2 de0: address 00:40:05:41:d3:32 de1: rev 0x22 int a irq 18 on pci0.18.0 de1: 21140A [10-100Mb/s] pass 2.2 de1: address 00:40:05:36:72:47 Probing for devices on the ISA bus: sc0 at 0x60-0x6f irq 1 on motherboard sc0: VGA color <16 virtual consoles, flags=0x0> sio0 at 0x3f8-0x3ff irq 4 on isa sio0: type 16550A sio1 at 0x2f8-0x2ff irq 3 on isa sio1: type 16550A lpt0 at 0x378-0x37f irq 7 on isa lpt0: Interrupt-driven port lp0: TCP/IP capable interface lpt1 not found mse0 not found at 0x23c fdc0 at 0x3f0-0x3f7 irq 6 drq 2 on isa wdc0 at 0x1f0-0x1f7 irq 14 on isa wdc0: unit 0 (wd0): wd0: 2014MB (4124736 sectors), 4092 cyls, 16 heads, 63 S/T, 512 B/S wdc1 at 0x170-0x177 irq 15 on isa wdc1: unit 0 (wd2): wd2: 121MB (249813 sectors), 677 cyls, 9 heads, 41 S/T, 512 B/S npx0 on motherboard npx0: INT 16 interface Intel Pentium F00F detected, installing workaround APIC_IO: routing 8254 via 8259 on pin 0 SMP: AP CPU #1 Launched! WARNING: / was not properly dismounted. de0: enabling 10baseT port de1: enabling 100baseTX port To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-current" in the body of the message