1. 17 Jan, 2018 2 commits
  2. 16 Jan, 2018 1 commit
    • Yonghong Song's avatar
      fix a trace_pipe output issue · 7a46dfe2
      Yonghong Song authored
      For trace_pipe output, the /sys/kernel/debug/tracing/trace_pipe
      output format looks like below for kernel 4.12 and earlier:
      ```
       <COMM>-<PID> [CPU] FLAGS TIMESTAMP: [SYMBOL]: USER_MESSAGES
      ```
      where if an internal address is not able to be resolved to
      a kernel symbol, `SYMBOL` will not be printed out at all.
      
      kernel 4.13 and later will have format like:
      ```
       <COMM>-<PID> [CPU] FLAGS TIMESTAMP: [SYMBOL_OR_ADDR]: USER_MESSAGES
      ```
      Basically, if an address is not able to resolved into a
      kernel symbol, the address itself will be printed out.
      The change was introduced by below commit:
      ```
      commit feaf1283d11794b9d518fcfd54b6bf8bee1f0b4b
      Author: Steven Rostedt (VMware) <rostedt@goodmis.org>
      Date:   Thu Jun 22 17:04:55 2017 -0400
      
          tracing: Show address when function names are not found
      
          Currently, when a function is not found in kallsyms, instead of simply
          showing the function address, it shows nothing at all:
      
           # echo ':mod:kvm_intel' > /sys/kernel/tracing/set_ftrace_filter
           # echo function > /sys/kernel/tracing/set_ftrace_filter
           # qemu -enable-kvm /home/my-qemu-image
             <Ctrl-C>
           # rmmod kvm_intel
           # cat /sys/kernel/tracing/trace
           qemu-system-x86-2408  [001] d..2   135.013238:  <-kvm_arch_hardware_enable
           qemu-system-x86-2408  [001] ....   135.014574:  <-kvm_arch_vm_ioctl
           qemu-system-x86-2408  [001] ....   135.015420:  <-kvm_vm_ioctl_check_extension
           qemu-system-x86-2408  [001] ....   135.045411:  <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ....   135.045412:  <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ....   135.045412:  <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ....   135.045412:  <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ...1   135.045413:  <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ....   135.045413:  <-__do_cpuid_ent
      
          When it should show:
      
           qemu-system-x86-2408  [001] d..2   135.013238: 0xffffffffa02a39f0 <-kvm_arch_hardware_enable
           qemu-system-x86-2408  [001] ....   135.014574: 0xffffffffa02a2ba0 <-kvm_arch_vm_ioctl
           qemu-system-x86-2408  [001] ....   135.015420: 0xffffffffa029e4e0 <-kvm_vm_ioctl_check_extension
           qemu-system-x86-2408  [001] ....   135.045411: 0xffffffffa02a1380 <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ....   135.045412: 0xffffffffa029e160 <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ....   135.045412: 0xffffffffa029e180 <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ....   135.045412: 0xffffffffa029e520 <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ...1   135.045413: 0xffffffffa02a13b0 <-__do_cpuid_ent
           qemu-system-x86-2408  [001] ....   135.045413: 0xffffffffa02a1380 <-__do_cpuid_ent
      
          instead.
      ```
      
      This patch fixed the issue by parsing the trace_pipe output considering the
      `SYMBOL_OR_ADDRESS` field may or may not be empty.
      Signed-off-by: default avatarYonghong Song <yhs@fb.com>
      7a46dfe2
  3. 13 Jan, 2018 1 commit
  4. 12 Jan, 2018 5 commits
    • 4ast's avatar
      Merge pull request #1524 from iovisor/yhs_dev · 19c84593
      4ast authored
      usdt: better handling for probes existing in multiple binary files
      19c84593
    • yonghong-song's avatar
      Merge pull request #1526 from luciang/master · 0c405db0
      yonghong-song authored
      tools: syscount: add --errno=EPERM filter
      0c405db0
    • Yonghong Song's avatar
    • Yonghong Song's avatar
      usdt: permit to enable probes from a pid and a particular binary · fead16ad
      Yonghong Song authored
      Currently, for usdt, the commands where both a pid and a binary path
      are specified are not well supported. For example,
      ```
      funccount -p <pid> 'u:<binary_path>:probe'
      ```
      will count `probe` occurances for all binary paths in `pid`, not just
      `<binary_path>`. The command
      ```
      argdist -p <pid> 'u:<binary_path>:probe():s64:arg1'
      ```
      will also count `probe` occurances for all binary paths in `pid`
      with my previous patch.
      
      Furthermore, suppose user want to trace linker `setjmp` probe point
      with command
      ```
      trace.py -p <pid> 'u:/usr/lib64/ld-2.17.so:setjmp'
      ```
      Without my previous patch, user will have incorrect results as both
      `libc:setjmp` and `rtld:setjmp` exists and the bcc just picks the first
      one which is `libc:setjmp`. My last patch will cause `enable_probe`
      failures if in the same usdt context, two probes have the same
      probe_name but different provider name.
      
      To fix all these issues, this patch passes additional binary path
      to the pid-based usdt context, so that only probes from that particular
      binary will be added to the context. This solved all the above
      mentioned issues.
      Signed-off-by: default avatarYonghong Song <yhs@fb.com>
      fead16ad
    • Yonghong Song's avatar
      usdt: permit each probe to have locations from more than one binary path · 24894573
      Yonghong Song authored
      Fixing issue #1515.
      
      Currently, each usdt probe (provider, probe_name) can only
      have locations from the single binary. It is possible that
      USDT probes are defined in a header file which eventually causes
      the same usdt probe having locations in several different
      binary/shared_objects. In such cases, we are not able to attach
      the same bpf program to all these locations.
      
      This patch addresses this issue by defining each location to
      be `bin_path + addr_offset` vs. previous `addr_offset` only.
      This way, each internal Probe class can represent all locations
      for the same (provider, probe_name) pair.
      
      The `tplist.py` output is re-organized with the (provider, probe_name)
      in the top level like below:
      ```
      ...
      rtld:lll_futex_wake [sema 0x0]
        location #1 /usr/lib64/ld-2.17.so 0xaac8
          argument #1 8 unsigned bytes @ di
          argument #2 4 signed   bytes @ 1
          argument #3 4 signed   bytes @ 0
        location #2 /usr/lib64/ld-2.17.so 0xe9b9
          argument #1 8 unsigned bytes @ di
          argument #2 4 signed   bytes @ 1
          argument #3 4 signed   bytes @ 0
        location #3 /usr/lib64/ld-2.17.so 0xef3b
          argument #1 8 unsigned bytes @ di
          argument #2 4 signed   bytes @ 1
          argument #3 4 signed   bytes @ 0
      ...
      ```
      
      Tested with the following commands
      ```
        tplist.py
        trace.py -p <pid> 'u::probe "arg1 = %d", arg1'
        trace.py u:<binary_path>:probe "arg1 = %d", arg1'
        argdist.py -p <pid> 'u::probe():s64:arg1'
        argdist.py -C 'u:<binary_path>:probe():s64:arg1'
        funccount.py -p <pid> 'u:<binary_path>:probe'
        funccount.py 'u:<binary_path>:probe'
      ```
      Signed-off-by: default avatarYonghong Song <yhs@fb.com>
      24894573
  5. 11 Jan, 2018 2 commits
    • Lucian Adrian Grijincu's avatar
      tools: syscount: add --errno=EPERM filter · 5426ef24
      Lucian Adrian Grijincu authored
      Similar to `--filter` which reports all failing syscalls,
      `--errno=ENOENT` reports syscalls failing with the specified errno value.
      
      ```
      $ sudo bcc/tools/syscount.py -e ENOENT
      Tracing syscalls, printing top 10... Ctrl+C to quit.
      ^C[12:07:13]
      SYSCALL                   COUNT
      open                        330
      stat                        240
      access                       63
      execve                       22
      readlink                      3
      ```
      5426ef24
    • Yonghong Song's avatar
      usdt: ignore location with incorrect probe virtual address · bf2a8111
      Yonghong Song authored
      The patch fixed issue #1528. The linker ld.gold may generate
      a probe with invalid virtual address if the section which the probe
      relocates against is discarded.
      
      Instead of failing, a simple checking is added such that
      if the probe virtual address is less than the address of the first
      instruction, print out a warning and ignore this probe.
      Signed-off-by: default avatarYonghong Song <yhs@fb.com>
      bf2a8111
  6. 10 Jan, 2018 7 commits
  7. 09 Jan, 2018 1 commit
  8. 08 Jan, 2018 2 commits
    • 4ast's avatar
      Merge pull request #1517 from iovisor/yhs_dev · 2d45e02f
      4ast authored
      fix a verifier failure
      2d45e02f
    • Yonghong Song's avatar
      fix a verifier failure · 0cfd665b
      Yonghong Song authored
      when running with latest linus tree and net-next, the python test
      tests/python/test_tracepoint.py failed with the following
      symptoms:
      ```
      ......
       R0=map_value(id=0,off=0,ks=4,vs=64,imm=0) R6=map_value(id=0,off=0,ks=4,vs=64,imm=0) R7=ctx(id=0,off=0,imm=0) R10=fp0,call_-1
      34: (69) r1 = *(u16 *)(r7 +8)
      35: (67) r1 <<= 48
      36: (c7) r1 s>>= 48
      37: (0f) r7 += r1
      math between ctx pointer and register with unbounded min value is not allowed
      ......
      ```
      
      The reason of failure is due to added tightening in verifier introduced by
      the following commit:
      ```
      commit f4be569a429987343e3f424d3854b3622ffae436
      Author: Alexei Starovoitov <ast@kernel.org>
      Date: Mon Dec 18 20:12:00 2017 -0800
      
      bpf: fix integer overflows
      ......
      
      ```
      
      The patch changes `offset` type in `ctx + offset` from signed to
      unsigned so that we do not have `unbounded min value` so the
      test trace_tracepoint.py can pass.
      Signed-off-by: default avatarYonghong Song <yhs@fb.com>
      0cfd665b
  9. 04 Jan, 2018 3 commits
  10. 03 Jan, 2018 1 commit
    • Yonghong Song's avatar
      fix runqlen.py with 4.15 kernel · ffa47e67
      Yonghong Song authored
      The following kernel commit changes linux_src:kernel/sched/sched.h
      struct cfs_rq structure:
      
      ```
      commit 1ea6c46a23f1213d1972bfae220db5c165e27bba
      Author: Peter Zijlstra <peterz@infradead.org>
      Date:   Sat May 6 15:59:54 2017 +0200
      
          sched/fair: Propagate an effective runnable_load_avg
      
          The load balancer uses runnable_load_avg as load indicator. For
          !cgroup this is:
      
            runnable_load_avg = \Sum se->avg.load_avg ; where se->on_rq
      
          That is, a direct sum of all runnable tasks on that runqueue. As
          opposed to load_avg, which is a sum of all tasks on the runqueue,
          which includes a blocked component.
      ...
      ```
      
      The commit is in kernel 4.15 release and will make current
      runqlen.py internal cfs_rq_partial structure not syncing with the kernel one.
      As a result, runqlen.py will produce incorrect results on 4.15.
      
      This patch attempts to solve this issue by compiling a bpf program,
      which accesses one of fields introduced by the above commit.
      The successful compilation will indicate that we should amend
      the cfs_rq_partial structure.
      Signed-off-by: default avatarYonghong Song <yhs@fb.com>
      ffa47e67
  11. 31 Dec, 2017 1 commit
  12. 30 Dec, 2017 2 commits
  13. 28 Dec, 2017 6 commits
    • 4ast's avatar
      Merge pull request #1505 from iovisor/yhs_dev · bbfd6ea2
      4ast authored
      fix a compilation error with latest llvm/clang trunk
      bbfd6ea2
    • Yonghong Song's avatar
      fix a compilation error with latest llvm/clang trunk · c0d1694e
      Yonghong Song authored
      bcc build with latest llvm/clang trunk failed with the
      below error:
      ......
      [ 35%] Built target api-static
      /home/yhs/work/bcc/src/cc/frontends/clang/tp_frontend_action.cc: In member function ‘bool ebpf::TracepointTypeVisitor::Visit
      FunctionDecl(clang::FunctionDecl*)’:
      /home/yhs/work/bcc/src/cc/frontends/clang/tp_frontend_action.cc:163:60: error: no matching function for call to ‘clang::Qual
      Type::getAsString(clang::SplitQualType)’
               auto type_name = QualType::getAsString(type.split());
                                                                  ^
      ......
      
      The error is caused by the below clang commit:
      commit fcc28fd8cc8139cf1e4763459447880768579d8e
      Author: Aaron Ballman <aaron@aaronballman.com>
      Date:   Thu Dec 21 21:42:42 2017 +0000
      
          Re-commit r321223, which adds a printing policy to the ASTDumper.
      ......
      -  std::string getAsString() const {
      -    return getAsString(split());
      +  static std::string getAsString(SplitQualType split,
      +                                 const PrintingPolicy &Policy) {
      +    return getAsString(split.Ty, split.Quals, Policy);
         }
      +  static std::string getAsString(const Type *ty, Qualifiers qs,
      +                                 const PrintingPolicy &Policy);
      
      -  static std::string getAsString(SplitQualType split) {
      -    return getAsString(split.Ty, split.Quals);
      -  }
      -
      -  static std::string getAsString(const Type *ty, Qualifiers qs);
      -
      +  std::string getAsString() const;
         std::string getAsString(const PrintingPolicy &Policy) const;
      ......
      
      The signature of static function getAsString(), which is used
      in src/cc/frontends/clang/tp_frontend_action.cc, got changed,
      and this caused the compilation error.
      
      The patch chooses a different way to get type_name which works
      for llvm 4.0 to 6.0 (tested).
      Signed-off-by: default avatarYonghong Song <yhs@fb.com>
      c0d1694e
    • yonghong-song's avatar
      Merge pull request #1504 from samofatov/master · bb3e873f
      yonghong-song authored
      CentOS 6 support
      bb3e873f
    • 4ast's avatar
      Merge pull request #1503 from iovisor/yhs_dev · b44d7056
      4ast authored
      fix build issue for llvm 5.0.1
      b44d7056
    • nikolay.samofatov's avatar
      CentOS 6 support · c5308e96
      nikolay.samofatov authored
      c5308e96
    • Yonghong Song's avatar
      fix build issue for llvm 5.0.1 · bd7fa55b
      Yonghong Song authored
      Fix issue #1502.
      A few cmake version checking greater than 5 includes 5.0.1
      which results in compilation failure. Change version checking
      to explicitly equal to or greater than version 6.
      Signed-off-by: default avatarYonghong Song <yhs@fb.com>
      bd7fa55b
  14. 22 Dec, 2017 1 commit
  15. 21 Dec, 2017 1 commit
  16. 20 Dec, 2017 4 commits