kern_malloc.c revision 1.79.2.4 1 1.79.2.4 skrll /* $NetBSD: kern_malloc.c,v 1.79.2.4 2005/01/17 19:32:25 skrll Exp $ */
2 1.9 cgd
3 1.1 cgd /*
4 1.8 cgd * Copyright (c) 1987, 1991, 1993
5 1.8 cgd * The Regents of the University of California. All rights reserved.
6 1.1 cgd *
7 1.1 cgd * Redistribution and use in source and binary forms, with or without
8 1.1 cgd * modification, are permitted provided that the following conditions
9 1.1 cgd * are met:
10 1.1 cgd * 1. Redistributions of source code must retain the above copyright
11 1.1 cgd * notice, this list of conditions and the following disclaimer.
12 1.1 cgd * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 cgd * notice, this list of conditions and the following disclaimer in the
14 1.1 cgd * documentation and/or other materials provided with the distribution.
15 1.79.2.1 skrll * 3. Neither the name of the University nor the names of its contributors
16 1.79.2.1 skrll * may be used to endorse or promote products derived from this software
17 1.79.2.1 skrll * without specific prior written permission.
18 1.79.2.1 skrll *
19 1.79.2.1 skrll * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
20 1.79.2.1 skrll * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
21 1.79.2.1 skrll * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
22 1.79.2.1 skrll * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
23 1.79.2.1 skrll * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
24 1.79.2.1 skrll * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
25 1.79.2.1 skrll * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
26 1.79.2.1 skrll * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
27 1.79.2.1 skrll * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
28 1.79.2.1 skrll * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
29 1.79.2.1 skrll * SUCH DAMAGE.
30 1.79.2.1 skrll *
31 1.79.2.1 skrll * @(#)kern_malloc.c 8.4 (Berkeley) 5/20/95
32 1.79.2.1 skrll */
33 1.79.2.1 skrll
34 1.79.2.1 skrll /*
35 1.79.2.1 skrll * Copyright (c) 1996 Christopher G. Demetriou. All rights reserved.
36 1.79.2.1 skrll *
37 1.79.2.1 skrll * Redistribution and use in source and binary forms, with or without
38 1.79.2.1 skrll * modification, are permitted provided that the following conditions
39 1.79.2.1 skrll * are met:
40 1.79.2.1 skrll * 1. Redistributions of source code must retain the above copyright
41 1.79.2.1 skrll * notice, this list of conditions and the following disclaimer.
42 1.79.2.1 skrll * 2. Redistributions in binary form must reproduce the above copyright
43 1.79.2.1 skrll * notice, this list of conditions and the following disclaimer in the
44 1.79.2.1 skrll * documentation and/or other materials provided with the distribution.
45 1.1 cgd * 3. All advertising materials mentioning features or use of this software
46 1.1 cgd * must display the following acknowledgement:
47 1.1 cgd * This product includes software developed by the University of
48 1.1 cgd * California, Berkeley and its contributors.
49 1.1 cgd * 4. Neither the name of the University nor the names of its contributors
50 1.1 cgd * may be used to endorse or promote products derived from this software
51 1.1 cgd * without specific prior written permission.
52 1.1 cgd *
53 1.1 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
54 1.1 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
55 1.1 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
56 1.1 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
57 1.1 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
58 1.1 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
59 1.1 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
60 1.1 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
61 1.1 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
62 1.1 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
63 1.1 cgd * SUCH DAMAGE.
64 1.1 cgd *
65 1.32 fvdl * @(#)kern_malloc.c 8.4 (Berkeley) 5/20/95
66 1.1 cgd */
67 1.64 lukem
68 1.64 lukem #include <sys/cdefs.h>
69 1.79.2.4 skrll __KERNEL_RCSID(0, "$NetBSD: kern_malloc.c,v 1.79.2.4 2005/01/17 19:32:25 skrll Exp $");
70 1.31 mrg
71 1.33 thorpej #include "opt_lockdebug.h"
72 1.1 cgd
73 1.7 mycroft #include <sys/param.h>
74 1.7 mycroft #include <sys/proc.h>
75 1.7 mycroft #include <sys/kernel.h>
76 1.7 mycroft #include <sys/malloc.h>
77 1.12 christos #include <sys/systm.h>
78 1.24 thorpej
79 1.28 mrg #include <uvm/uvm_extern.h>
80 1.28 mrg
81 1.79.2.4 skrll static struct vm_map_kernel kmem_map_store;
82 1.58 chs struct vm_map *kmem_map = NULL;
83 1.28 mrg
84 1.49 thorpej #include "opt_kmempages.h"
85 1.49 thorpej
86 1.49 thorpej #ifdef NKMEMCLUSTERS
87 1.52 sommerfe #error NKMEMCLUSTERS is obsolete; remove it from your kernel config file and use NKMEMPAGES instead or let the kernel auto-size
88 1.49 thorpej #endif
89 1.49 thorpej
90 1.49 thorpej /*
91 1.49 thorpej * Default number of pages in kmem_map. We attempt to calculate this
92 1.49 thorpej * at run-time, but allow it to be either patched or set in the kernel
93 1.49 thorpej * config file.
94 1.49 thorpej */
95 1.49 thorpej #ifndef NKMEMPAGES
96 1.49 thorpej #define NKMEMPAGES 0
97 1.49 thorpej #endif
98 1.49 thorpej int nkmempages = NKMEMPAGES;
99 1.49 thorpej
100 1.49 thorpej /*
101 1.49 thorpej * Defaults for lower- and upper-bounds for the kmem_map page count.
102 1.49 thorpej * Can be overridden by kernel config options.
103 1.49 thorpej */
104 1.49 thorpej #ifndef NKMEMPAGES_MIN
105 1.49 thorpej #define NKMEMPAGES_MIN NKMEMPAGES_MIN_DEFAULT
106 1.49 thorpej #endif
107 1.49 thorpej
108 1.49 thorpej #ifndef NKMEMPAGES_MAX
109 1.49 thorpej #define NKMEMPAGES_MAX NKMEMPAGES_MAX_DEFAULT
110 1.49 thorpej #endif
111 1.49 thorpej
112 1.24 thorpej #include "opt_kmemstats.h"
113 1.27 thorpej #include "opt_malloclog.h"
114 1.71 fvdl #include "opt_malloc_debug.h"
115 1.12 christos
116 1.1 cgd struct kmembuckets bucket[MINBUCKET + 16];
117 1.1 cgd struct kmemusage *kmemusage;
118 1.1 cgd char *kmembase, *kmemlimit;
119 1.77 thorpej
120 1.77 thorpej struct malloc_type *kmemstatistics;
121 1.1 cgd
122 1.27 thorpej #ifdef MALLOCLOG
123 1.27 thorpej #ifndef MALLOCLOGSIZE
124 1.27 thorpej #define MALLOCLOGSIZE 100000
125 1.27 thorpej #endif
126 1.27 thorpej
127 1.27 thorpej struct malloclog {
128 1.27 thorpej void *addr;
129 1.27 thorpej long size;
130 1.77 thorpej struct malloc_type *type;
131 1.27 thorpej int action;
132 1.27 thorpej const char *file;
133 1.27 thorpej long line;
134 1.27 thorpej } malloclog[MALLOCLOGSIZE];
135 1.27 thorpej
136 1.27 thorpej long malloclogptr;
137 1.27 thorpej
138 1.27 thorpej static void
139 1.77 thorpej domlog(void *a, long size, struct malloc_type *type, int action,
140 1.77 thorpej const char *file, long line)
141 1.27 thorpej {
142 1.27 thorpej
143 1.27 thorpej malloclog[malloclogptr].addr = a;
144 1.27 thorpej malloclog[malloclogptr].size = size;
145 1.27 thorpej malloclog[malloclogptr].type = type;
146 1.27 thorpej malloclog[malloclogptr].action = action;
147 1.27 thorpej malloclog[malloclogptr].file = file;
148 1.27 thorpej malloclog[malloclogptr].line = line;
149 1.27 thorpej malloclogptr++;
150 1.27 thorpej if (malloclogptr >= MALLOCLOGSIZE)
151 1.27 thorpej malloclogptr = 0;
152 1.27 thorpej }
153 1.27 thorpej
154 1.27 thorpej static void
155 1.69 enami hitmlog(void *a)
156 1.27 thorpej {
157 1.27 thorpej struct malloclog *lp;
158 1.27 thorpej long l;
159 1.27 thorpej
160 1.69 enami #define PRT do { \
161 1.79.2.1 skrll lp = &malloclog[l]; \
162 1.79.2.1 skrll if (lp->addr == a && lp->action) { \
163 1.27 thorpej printf("malloc log entry %ld:\n", l); \
164 1.27 thorpej printf("\taddr = %p\n", lp->addr); \
165 1.27 thorpej printf("\tsize = %ld\n", lp->size); \
166 1.77 thorpej printf("\ttype = %s\n", lp->type->ks_shortdesc); \
167 1.27 thorpej printf("\taction = %s\n", lp->action == 1 ? "alloc" : "free"); \
168 1.27 thorpej printf("\tfile = %s\n", lp->file); \
169 1.27 thorpej printf("\tline = %ld\n", lp->line); \
170 1.69 enami } \
171 1.69 enami } while (/* CONSTCOND */0)
172 1.27 thorpej
173 1.27 thorpej for (l = malloclogptr; l < MALLOCLOGSIZE; l++)
174 1.69 enami PRT;
175 1.27 thorpej
176 1.27 thorpej for (l = 0; l < malloclogptr; l++)
177 1.69 enami PRT;
178 1.79.2.1 skrll #undef PRT
179 1.27 thorpej }
180 1.27 thorpej #endif /* MALLOCLOG */
181 1.27 thorpej
182 1.8 cgd #ifdef DIAGNOSTIC
183 1.8 cgd /*
184 1.8 cgd * This structure provides a set of masks to catch unaligned frees.
185 1.8 cgd */
186 1.57 jdolecek const long addrmask[] = { 0,
187 1.8 cgd 0x00000001, 0x00000003, 0x00000007, 0x0000000f,
188 1.8 cgd 0x0000001f, 0x0000003f, 0x0000007f, 0x000000ff,
189 1.8 cgd 0x000001ff, 0x000003ff, 0x000007ff, 0x00000fff,
190 1.8 cgd 0x00001fff, 0x00003fff, 0x00007fff, 0x0000ffff,
191 1.8 cgd };
192 1.8 cgd
193 1.8 cgd /*
194 1.8 cgd * The WEIRD_ADDR is used as known text to copy into free objects so
195 1.8 cgd * that modifications after frees can be detected.
196 1.8 cgd */
197 1.76 thorpej #define WEIRD_ADDR ((uint32_t) 0xdeadbeef)
198 1.55 chs #ifdef DEBUG
199 1.69 enami #define MAX_COPY PAGE_SIZE
200 1.55 chs #else
201 1.69 enami #define MAX_COPY 32
202 1.55 chs #endif
203 1.8 cgd
204 1.8 cgd /*
205 1.11 cgd * Normally the freelist structure is used only to hold the list pointer
206 1.11 cgd * for free objects. However, when running with diagnostics, the first
207 1.77 thorpej * 8/16 bytes of the structure is unused except for diagnostic information,
208 1.77 thorpej * and the free list pointer is at offset 8/16 in the structure. Since the
209 1.11 cgd * first 8 bytes is the portion of the structure most often modified, this
210 1.11 cgd * helps to detect memory reuse problems and avoid free list corruption.
211 1.8 cgd */
212 1.8 cgd struct freelist {
213 1.76 thorpej uint32_t spare0;
214 1.77 thorpej #ifdef _LP64
215 1.77 thorpej uint32_t spare1; /* explicit padding */
216 1.77 thorpej #endif
217 1.77 thorpej struct malloc_type *type;
218 1.8 cgd caddr_t next;
219 1.8 cgd };
220 1.8 cgd #else /* !DIAGNOSTIC */
221 1.8 cgd struct freelist {
222 1.8 cgd caddr_t next;
223 1.8 cgd };
224 1.8 cgd #endif /* DIAGNOSTIC */
225 1.8 cgd
226 1.1 cgd /*
227 1.77 thorpej * The following are standard, build-in malloc types are are not
228 1.77 thorpej * specific to any one subsystem.
229 1.77 thorpej */
230 1.77 thorpej MALLOC_DEFINE(M_DEVBUF, "devbuf", "device driver memory");
231 1.77 thorpej MALLOC_DEFINE(M_DMAMAP, "DMA map", "bus_dma(9) structures");
232 1.77 thorpej MALLOC_DEFINE(M_FREE, "free", "should be on free list");
233 1.77 thorpej MALLOC_DEFINE(M_PCB, "pcb", "protocol control block");
234 1.77 thorpej MALLOC_DEFINE(M_SOFTINTR, "softintr", "Softinterrupt structures");
235 1.77 thorpej MALLOC_DEFINE(M_TEMP, "temp", "misc. temporary data buffers");
236 1.77 thorpej
237 1.77 thorpej /* XXX These should all be elsewhere. */
238 1.77 thorpej MALLOC_DEFINE(M_RTABLE, "routetbl", "routing tables");
239 1.77 thorpej MALLOC_DEFINE(M_FTABLE, "fragtbl", "fragment reassembly header");
240 1.77 thorpej MALLOC_DEFINE(M_UFSMNT, "UFS mount", "UFS mount structure");
241 1.77 thorpej MALLOC_DEFINE(M_NETADDR, "Export Host", "Export host address structure");
242 1.77 thorpej MALLOC_DEFINE(M_IPMOPTS, "ip_moptions", "internet multicast options");
243 1.77 thorpej MALLOC_DEFINE(M_IPMADDR, "in_multi", "internet multicast address");
244 1.77 thorpej MALLOC_DEFINE(M_MRTABLE, "mrt", "multicast routing tables");
245 1.79.2.2 skrll MALLOC_DEFINE(M_BWMETER, "bwmeter", "multicast upcall bw meters");
246 1.77 thorpej MALLOC_DEFINE(M_1394DATA, "1394data", "IEEE 1394 data buffers");
247 1.77 thorpej
248 1.78 pk struct simplelock malloc_slock = SIMPLELOCK_INITIALIZER;
249 1.78 pk
250 1.77 thorpej /*
251 1.1 cgd * Allocate a block of memory
252 1.1 cgd */
253 1.27 thorpej #ifdef MALLOCLOG
254 1.27 thorpej void *
255 1.77 thorpej _malloc(unsigned long size, struct malloc_type *ksp, int flags,
256 1.77 thorpej const char *file, long line)
257 1.27 thorpej #else
258 1.1 cgd void *
259 1.77 thorpej malloc(unsigned long size, struct malloc_type *ksp, int flags)
260 1.27 thorpej #endif /* MALLOCLOG */
261 1.1 cgd {
262 1.50 augustss struct kmembuckets *kbp;
263 1.50 augustss struct kmemusage *kup;
264 1.50 augustss struct freelist *freep;
265 1.5 andrew long indx, npg, allocsize;
266 1.1 cgd int s;
267 1.1 cgd caddr_t va, cp, savedlist;
268 1.8 cgd #ifdef DIAGNOSTIC
269 1.76 thorpej uint32_t *end, *lp;
270 1.8 cgd int copysize;
271 1.8 cgd #endif
272 1.1 cgd
273 1.59 thorpej #ifdef LOCKDEBUG
274 1.59 thorpej if ((flags & M_NOWAIT) == 0)
275 1.59 thorpej simple_lock_only_held(NULL, "malloc");
276 1.59 thorpej #endif
277 1.62 thorpej #ifdef MALLOC_DEBUG
278 1.79.2.1 skrll if (debug_malloc(size, ksp, flags, (void *) &va))
279 1.62 thorpej return ((void *) va);
280 1.62 thorpej #endif
281 1.1 cgd indx = BUCKETINDX(size);
282 1.1 cgd kbp = &bucket[indx];
283 1.56 thorpej s = splvm();
284 1.78 pk simple_lock(&malloc_slock);
285 1.1 cgd #ifdef KMEMSTATS
286 1.1 cgd while (ksp->ks_memuse >= ksp->ks_limit) {
287 1.1 cgd if (flags & M_NOWAIT) {
288 1.78 pk simple_unlock(&malloc_slock);
289 1.1 cgd splx(s);
290 1.1 cgd return ((void *) NULL);
291 1.1 cgd }
292 1.1 cgd if (ksp->ks_limblocks < 65535)
293 1.1 cgd ksp->ks_limblocks++;
294 1.78 pk ltsleep((caddr_t)ksp, PSWP+2, ksp->ks_shortdesc, 0,
295 1.78 pk &malloc_slock);
296 1.1 cgd }
297 1.8 cgd ksp->ks_size |= 1 << indx;
298 1.8 cgd #endif
299 1.8 cgd #ifdef DIAGNOSTIC
300 1.8 cgd copysize = 1 << indx < MAX_COPY ? 1 << indx : MAX_COPY;
301 1.1 cgd #endif
302 1.1 cgd if (kbp->kb_next == NULL) {
303 1.8 cgd kbp->kb_last = NULL;
304 1.1 cgd if (size > MAXALLOCSAVE)
305 1.66 enami allocsize = round_page(size);
306 1.1 cgd else
307 1.1 cgd allocsize = 1 << indx;
308 1.47 ragge npg = btoc(allocsize);
309 1.78 pk simple_unlock(&malloc_slock);
310 1.63 chs va = (caddr_t) uvm_km_kmemalloc(kmem_map, NULL,
311 1.69 enami (vsize_t)ctob(npg),
312 1.73 chs ((flags & M_NOWAIT) ? UVM_KMF_NOWAIT : 0) |
313 1.73 chs ((flags & M_CANFAIL) ? UVM_KMF_CANFAIL : 0));
314 1.51 thorpej if (__predict_false(va == NULL)) {
315 1.17 cgd /*
316 1.17 cgd * Kmem_malloc() can return NULL, even if it can
317 1.79.2.4 skrll * wait, if there is no map space available, because
318 1.17 cgd * it can't fix that problem. Neither can we,
319 1.17 cgd * right now. (We should release pages which
320 1.17 cgd * are completely free and which are in buckets
321 1.17 cgd * with too many free elements.)
322 1.17 cgd */
323 1.68 jdolecek if ((flags & (M_NOWAIT|M_CANFAIL)) == 0)
324 1.17 cgd panic("malloc: out of space in kmem_map");
325 1.6 cgd splx(s);
326 1.73 chs return (NULL);
327 1.1 cgd }
328 1.78 pk simple_lock(&malloc_slock);
329 1.1 cgd #ifdef KMEMSTATS
330 1.1 cgd kbp->kb_total += kbp->kb_elmpercl;
331 1.1 cgd #endif
332 1.1 cgd kup = btokup(va);
333 1.1 cgd kup->ku_indx = indx;
334 1.1 cgd if (allocsize > MAXALLOCSAVE) {
335 1.1 cgd if (npg > 65535)
336 1.1 cgd panic("malloc: allocation too large");
337 1.1 cgd kup->ku_pagecnt = npg;
338 1.1 cgd #ifdef KMEMSTATS
339 1.1 cgd ksp->ks_memuse += allocsize;
340 1.1 cgd #endif
341 1.1 cgd goto out;
342 1.1 cgd }
343 1.1 cgd #ifdef KMEMSTATS
344 1.1 cgd kup->ku_freecnt = kbp->kb_elmpercl;
345 1.1 cgd kbp->kb_totalfree += kbp->kb_elmpercl;
346 1.1 cgd #endif
347 1.1 cgd /*
348 1.1 cgd * Just in case we blocked while allocating memory,
349 1.1 cgd * and someone else also allocated memory for this
350 1.1 cgd * bucket, don't assume the list is still empty.
351 1.1 cgd */
352 1.1 cgd savedlist = kbp->kb_next;
353 1.49 thorpej kbp->kb_next = cp = va + (npg << PAGE_SHIFT) - allocsize;
354 1.8 cgd for (;;) {
355 1.8 cgd freep = (struct freelist *)cp;
356 1.8 cgd #ifdef DIAGNOSTIC
357 1.8 cgd /*
358 1.8 cgd * Copy in known text to detect modification
359 1.8 cgd * after freeing.
360 1.8 cgd */
361 1.79.2.1 skrll end = (uint32_t *)&cp[copysize];
362 1.79.2.1 skrll for (lp = (uint32_t *)cp; lp < end; lp++)
363 1.8 cgd *lp = WEIRD_ADDR;
364 1.8 cgd freep->type = M_FREE;
365 1.8 cgd #endif /* DIAGNOSTIC */
366 1.8 cgd if (cp <= va)
367 1.8 cgd break;
368 1.8 cgd cp -= allocsize;
369 1.8 cgd freep->next = cp;
370 1.8 cgd }
371 1.8 cgd freep->next = savedlist;
372 1.8 cgd if (kbp->kb_last == NULL)
373 1.8 cgd kbp->kb_last = (caddr_t)freep;
374 1.1 cgd }
375 1.1 cgd va = kbp->kb_next;
376 1.8 cgd kbp->kb_next = ((struct freelist *)va)->next;
377 1.8 cgd #ifdef DIAGNOSTIC
378 1.8 cgd freep = (struct freelist *)va;
379 1.77 thorpej /* XXX potential to get garbage pointer here. */
380 1.29 chs if (kbp->kb_next) {
381 1.29 chs int rv;
382 1.35 eeh vaddr_t addr = (vaddr_t)kbp->kb_next;
383 1.29 chs
384 1.43 thorpej vm_map_lock(kmem_map);
385 1.29 chs rv = uvm_map_checkprot(kmem_map, addr,
386 1.69 enami addr + sizeof(struct freelist), VM_PROT_WRITE);
387 1.43 thorpej vm_map_unlock(kmem_map);
388 1.29 chs
389 1.51 thorpej if (__predict_false(rv == 0)) {
390 1.69 enami printf("Data modified on freelist: "
391 1.69 enami "word %ld of object %p size %ld previous type %s "
392 1.69 enami "(invalid addr %p)\n",
393 1.41 mrg (long)((int32_t *)&kbp->kb_next - (int32_t *)kbp),
394 1.79.2.1 skrll va, size, "foo", kbp->kb_next);
395 1.27 thorpej #ifdef MALLOCLOG
396 1.41 mrg hitmlog(va);
397 1.27 thorpej #endif
398 1.41 mrg kbp->kb_next = NULL;
399 1.29 chs }
400 1.8 cgd }
401 1.11 cgd
402 1.11 cgd /* Fill the fields that we've used with WEIRD_ADDR */
403 1.77 thorpej #ifdef _LP64
404 1.77 thorpej freep->type = (struct malloc_type *)
405 1.77 thorpej (WEIRD_ADDR | (((u_long) WEIRD_ADDR) << 32));
406 1.77 thorpej #else
407 1.77 thorpej freep->type = (struct malloc_type *) WEIRD_ADDR;
408 1.8 cgd #endif
409 1.79.2.1 skrll end = (uint32_t *)&freep->next +
410 1.11 cgd (sizeof(freep->next) / sizeof(int32_t));
411 1.79.2.1 skrll for (lp = (uint32_t *)&freep->next; lp < end; lp++)
412 1.11 cgd *lp = WEIRD_ADDR;
413 1.11 cgd
414 1.11 cgd /* and check that the data hasn't been modified. */
415 1.76 thorpej end = (uint32_t *)&va[copysize];
416 1.79.2.1 skrll for (lp = (uint32_t *)va; lp < end; lp++) {
417 1.51 thorpej if (__predict_true(*lp == WEIRD_ADDR))
418 1.8 cgd continue;
419 1.69 enami printf("Data modified on freelist: "
420 1.69 enami "word %ld of object %p size %ld previous type %s "
421 1.69 enami "(0x%x != 0x%x)\n",
422 1.76 thorpej (long)(lp - (uint32_t *)va), va, size,
423 1.79.2.1 skrll "bar", *lp, WEIRD_ADDR);
424 1.27 thorpej #ifdef MALLOCLOG
425 1.27 thorpej hitmlog(va);
426 1.27 thorpej #endif
427 1.8 cgd break;
428 1.8 cgd }
429 1.11 cgd
430 1.8 cgd freep->spare0 = 0;
431 1.8 cgd #endif /* DIAGNOSTIC */
432 1.1 cgd #ifdef KMEMSTATS
433 1.1 cgd kup = btokup(va);
434 1.1 cgd if (kup->ku_indx != indx)
435 1.1 cgd panic("malloc: wrong bucket");
436 1.1 cgd if (kup->ku_freecnt == 0)
437 1.1 cgd panic("malloc: lost data");
438 1.1 cgd kup->ku_freecnt--;
439 1.1 cgd kbp->kb_totalfree--;
440 1.1 cgd ksp->ks_memuse += 1 << indx;
441 1.1 cgd out:
442 1.1 cgd kbp->kb_calls++;
443 1.1 cgd ksp->ks_inuse++;
444 1.1 cgd ksp->ks_calls++;
445 1.1 cgd if (ksp->ks_memuse > ksp->ks_maxused)
446 1.1 cgd ksp->ks_maxused = ksp->ks_memuse;
447 1.1 cgd #else
448 1.1 cgd out:
449 1.1 cgd #endif
450 1.27 thorpej #ifdef MALLOCLOG
451 1.79.2.1 skrll domlog(va, size, ksp, 1, file, line);
452 1.27 thorpej #endif
453 1.78 pk simple_unlock(&malloc_slock);
454 1.1 cgd splx(s);
455 1.67 enami if ((flags & M_ZERO) != 0)
456 1.65 lukem memset(va, 0, size);
457 1.1 cgd return ((void *) va);
458 1.1 cgd }
459 1.1 cgd
460 1.1 cgd /*
461 1.1 cgd * Free a block of memory allocated by malloc.
462 1.1 cgd */
463 1.27 thorpej #ifdef MALLOCLOG
464 1.27 thorpej void
465 1.79.2.1 skrll _free(void *addr, struct malloc_type *ksp, const char *file, long line)
466 1.27 thorpej #else
467 1.1 cgd void
468 1.77 thorpej free(void *addr, struct malloc_type *ksp)
469 1.27 thorpej #endif /* MALLOCLOG */
470 1.1 cgd {
471 1.50 augustss struct kmembuckets *kbp;
472 1.50 augustss struct kmemusage *kup;
473 1.50 augustss struct freelist *freep;
474 1.8 cgd long size;
475 1.8 cgd int s;
476 1.5 andrew #ifdef DIAGNOSTIC
477 1.8 cgd caddr_t cp;
478 1.11 cgd int32_t *end, *lp;
479 1.11 cgd long alloc, copysize;
480 1.5 andrew #endif
481 1.48 thorpej
482 1.62 thorpej #ifdef MALLOC_DEBUG
483 1.77 thorpej if (debug_free(addr, ksp))
484 1.62 thorpej return;
485 1.62 thorpej #endif
486 1.62 thorpej
487 1.48 thorpej #ifdef DIAGNOSTIC
488 1.48 thorpej /*
489 1.48 thorpej * Ensure that we're free'ing something that we could
490 1.48 thorpej * have allocated in the first place. That is, check
491 1.48 thorpej * to see that the address is within kmem_map.
492 1.48 thorpej */
493 1.79.2.1 skrll if (__predict_false((vaddr_t)addr < vm_map_min(kmem_map) ||
494 1.79.2.1 skrll (vaddr_t)addr >= vm_map_max(kmem_map)))
495 1.48 thorpej panic("free: addr %p not within kmem_map", addr);
496 1.1 cgd #endif
497 1.1 cgd
498 1.1 cgd kup = btokup(addr);
499 1.1 cgd size = 1 << kup->ku_indx;
500 1.8 cgd kbp = &bucket[kup->ku_indx];
501 1.56 thorpej s = splvm();
502 1.78 pk simple_lock(&malloc_slock);
503 1.27 thorpej #ifdef MALLOCLOG
504 1.79.2.1 skrll domlog(addr, 0, ksp, 2, file, line);
505 1.27 thorpej #endif
506 1.1 cgd #ifdef DIAGNOSTIC
507 1.8 cgd /*
508 1.8 cgd * Check for returns of data that do not point to the
509 1.8 cgd * beginning of the allocation.
510 1.8 cgd */
511 1.49 thorpej if (size > PAGE_SIZE)
512 1.49 thorpej alloc = addrmask[BUCKETINDX(PAGE_SIZE)];
513 1.1 cgd else
514 1.1 cgd alloc = addrmask[kup->ku_indx];
515 1.8 cgd if (((u_long)addr & alloc) != 0)
516 1.75 provos panic("free: unaligned addr %p, size %ld, type %s, mask %ld",
517 1.77 thorpej addr, size, ksp->ks_shortdesc, alloc);
518 1.1 cgd #endif /* DIAGNOSTIC */
519 1.1 cgd if (size > MAXALLOCSAVE) {
520 1.35 eeh uvm_km_free(kmem_map, (vaddr_t)addr, ctob(kup->ku_pagecnt));
521 1.1 cgd #ifdef KMEMSTATS
522 1.1 cgd size = kup->ku_pagecnt << PGSHIFT;
523 1.1 cgd ksp->ks_memuse -= size;
524 1.1 cgd kup->ku_indx = 0;
525 1.1 cgd kup->ku_pagecnt = 0;
526 1.1 cgd if (ksp->ks_memuse + size >= ksp->ks_limit &&
527 1.1 cgd ksp->ks_memuse < ksp->ks_limit)
528 1.1 cgd wakeup((caddr_t)ksp);
529 1.79 fvdl #ifdef DIAGNOSTIC
530 1.79 fvdl if (ksp->ks_inuse == 0)
531 1.79 fvdl panic("free 1: inuse 0, probable double free");
532 1.79 fvdl #endif
533 1.1 cgd ksp->ks_inuse--;
534 1.1 cgd kbp->kb_total -= 1;
535 1.1 cgd #endif
536 1.78 pk simple_unlock(&malloc_slock);
537 1.1 cgd splx(s);
538 1.1 cgd return;
539 1.1 cgd }
540 1.8 cgd freep = (struct freelist *)addr;
541 1.8 cgd #ifdef DIAGNOSTIC
542 1.8 cgd /*
543 1.8 cgd * Check for multiple frees. Use a quick check to see if
544 1.8 cgd * it looks free before laboriously searching the freelist.
545 1.8 cgd */
546 1.51 thorpej if (__predict_false(freep->spare0 == WEIRD_ADDR)) {
547 1.16 cgd for (cp = kbp->kb_next; cp;
548 1.16 cgd cp = ((struct freelist *)cp)->next) {
549 1.8 cgd if (addr != cp)
550 1.8 cgd continue;
551 1.22 christos printf("multiply freed item %p\n", addr);
552 1.27 thorpej #ifdef MALLOCLOG
553 1.27 thorpej hitmlog(addr);
554 1.27 thorpej #endif
555 1.8 cgd panic("free: duplicated free");
556 1.8 cgd }
557 1.8 cgd }
558 1.38 chs #ifdef LOCKDEBUG
559 1.38 chs /*
560 1.38 chs * Check if we're freeing a locked simple lock.
561 1.38 chs */
562 1.40 chs simple_lock_freecheck(addr, (char *)addr + size);
563 1.38 chs #endif
564 1.8 cgd /*
565 1.8 cgd * Copy in known text to detect modification after freeing
566 1.8 cgd * and to make it look free. Also, save the type being freed
567 1.8 cgd * so we can list likely culprit if modification is detected
568 1.8 cgd * when the object is reallocated.
569 1.8 cgd */
570 1.8 cgd copysize = size < MAX_COPY ? size : MAX_COPY;
571 1.11 cgd end = (int32_t *)&((caddr_t)addr)[copysize];
572 1.11 cgd for (lp = (int32_t *)addr; lp < end; lp++)
573 1.8 cgd *lp = WEIRD_ADDR;
574 1.77 thorpej freep->type = ksp;
575 1.8 cgd #endif /* DIAGNOSTIC */
576 1.1 cgd #ifdef KMEMSTATS
577 1.1 cgd kup->ku_freecnt++;
578 1.36 thorpej if (kup->ku_freecnt >= kbp->kb_elmpercl) {
579 1.1 cgd if (kup->ku_freecnt > kbp->kb_elmpercl)
580 1.1 cgd panic("free: multiple frees");
581 1.1 cgd else if (kbp->kb_totalfree > kbp->kb_highwat)
582 1.1 cgd kbp->kb_couldfree++;
583 1.36 thorpej }
584 1.1 cgd kbp->kb_totalfree++;
585 1.1 cgd ksp->ks_memuse -= size;
586 1.1 cgd if (ksp->ks_memuse + size >= ksp->ks_limit &&
587 1.1 cgd ksp->ks_memuse < ksp->ks_limit)
588 1.1 cgd wakeup((caddr_t)ksp);
589 1.79 fvdl #ifdef DIAGNOSTIC
590 1.79 fvdl if (ksp->ks_inuse == 0)
591 1.79 fvdl panic("free 2: inuse 0, probable double free");
592 1.79 fvdl #endif
593 1.1 cgd ksp->ks_inuse--;
594 1.1 cgd #endif
595 1.8 cgd if (kbp->kb_next == NULL)
596 1.8 cgd kbp->kb_next = addr;
597 1.8 cgd else
598 1.8 cgd ((struct freelist *)kbp->kb_last)->next = addr;
599 1.8 cgd freep->next = NULL;
600 1.8 cgd kbp->kb_last = addr;
601 1.78 pk simple_unlock(&malloc_slock);
602 1.1 cgd splx(s);
603 1.20 cgd }
604 1.20 cgd
605 1.20 cgd /*
606 1.20 cgd * Change the size of a block of memory.
607 1.20 cgd */
608 1.20 cgd void *
609 1.77 thorpej realloc(void *curaddr, unsigned long newsize, struct malloc_type *ksp,
610 1.77 thorpej int flags)
611 1.20 cgd {
612 1.50 augustss struct kmemusage *kup;
613 1.72 thorpej unsigned long cursize;
614 1.20 cgd void *newaddr;
615 1.20 cgd #ifdef DIAGNOSTIC
616 1.20 cgd long alloc;
617 1.20 cgd #endif
618 1.20 cgd
619 1.20 cgd /*
620 1.69 enami * realloc() with a NULL pointer is the same as malloc().
621 1.20 cgd */
622 1.20 cgd if (curaddr == NULL)
623 1.77 thorpej return (malloc(newsize, ksp, flags));
624 1.20 cgd
625 1.20 cgd /*
626 1.69 enami * realloc() with zero size is the same as free().
627 1.20 cgd */
628 1.20 cgd if (newsize == 0) {
629 1.77 thorpej free(curaddr, ksp);
630 1.20 cgd return (NULL);
631 1.20 cgd }
632 1.59 thorpej
633 1.59 thorpej #ifdef LOCKDEBUG
634 1.59 thorpej if ((flags & M_NOWAIT) == 0)
635 1.59 thorpej simple_lock_only_held(NULL, "realloc");
636 1.59 thorpej #endif
637 1.20 cgd
638 1.20 cgd /*
639 1.20 cgd * Find out how large the old allocation was (and do some
640 1.20 cgd * sanity checking).
641 1.20 cgd */
642 1.20 cgd kup = btokup(curaddr);
643 1.20 cgd cursize = 1 << kup->ku_indx;
644 1.20 cgd
645 1.20 cgd #ifdef DIAGNOSTIC
646 1.20 cgd /*
647 1.20 cgd * Check for returns of data that do not point to the
648 1.20 cgd * beginning of the allocation.
649 1.20 cgd */
650 1.49 thorpej if (cursize > PAGE_SIZE)
651 1.49 thorpej alloc = addrmask[BUCKETINDX(PAGE_SIZE)];
652 1.20 cgd else
653 1.20 cgd alloc = addrmask[kup->ku_indx];
654 1.20 cgd if (((u_long)curaddr & alloc) != 0)
655 1.69 enami panic("realloc: "
656 1.69 enami "unaligned addr %p, size %ld, type %s, mask %ld\n",
657 1.77 thorpej curaddr, cursize, ksp->ks_shortdesc, alloc);
658 1.20 cgd #endif /* DIAGNOSTIC */
659 1.20 cgd
660 1.20 cgd if (cursize > MAXALLOCSAVE)
661 1.20 cgd cursize = ctob(kup->ku_pagecnt);
662 1.20 cgd
663 1.20 cgd /*
664 1.20 cgd * If we already actually have as much as they want, we're done.
665 1.20 cgd */
666 1.20 cgd if (newsize <= cursize)
667 1.20 cgd return (curaddr);
668 1.20 cgd
669 1.20 cgd /*
670 1.20 cgd * Can't satisfy the allocation with the existing block.
671 1.20 cgd * Allocate a new one and copy the data.
672 1.20 cgd */
673 1.77 thorpej newaddr = malloc(newsize, ksp, flags);
674 1.51 thorpej if (__predict_false(newaddr == NULL)) {
675 1.20 cgd /*
676 1.69 enami * malloc() failed, because flags included M_NOWAIT.
677 1.20 cgd * Return NULL to indicate that failure. The old
678 1.20 cgd * pointer is still valid.
679 1.20 cgd */
680 1.69 enami return (NULL);
681 1.20 cgd }
682 1.34 perry memcpy(newaddr, curaddr, cursize);
683 1.20 cgd
684 1.20 cgd /*
685 1.20 cgd * We were successful: free the old allocation and return
686 1.20 cgd * the new one.
687 1.20 cgd */
688 1.77 thorpej free(curaddr, ksp);
689 1.20 cgd return (newaddr);
690 1.70 enami }
691 1.70 enami
692 1.70 enami /*
693 1.70 enami * Roundup size to the actual allocation size.
694 1.70 enami */
695 1.70 enami unsigned long
696 1.70 enami malloc_roundup(unsigned long size)
697 1.70 enami {
698 1.70 enami
699 1.70 enami if (size > MAXALLOCSAVE)
700 1.70 enami return (roundup(size, PAGE_SIZE));
701 1.70 enami else
702 1.70 enami return (1 << BUCKETINDX(size));
703 1.1 cgd }
704 1.1 cgd
705 1.1 cgd /*
706 1.77 thorpej * Add a malloc type to the system.
707 1.77 thorpej */
708 1.77 thorpej void
709 1.77 thorpej malloc_type_attach(struct malloc_type *type)
710 1.77 thorpej {
711 1.77 thorpej
712 1.77 thorpej if (nkmempages == 0)
713 1.77 thorpej panic("malloc_type_attach: nkmempages == 0");
714 1.77 thorpej
715 1.77 thorpej if (type->ks_magic != M_MAGIC)
716 1.77 thorpej panic("malloc_type_attach: bad magic");
717 1.77 thorpej
718 1.77 thorpej #ifdef DIAGNOSTIC
719 1.77 thorpej {
720 1.77 thorpej struct malloc_type *ksp;
721 1.77 thorpej for (ksp = kmemstatistics; ksp != NULL; ksp = ksp->ks_next) {
722 1.77 thorpej if (ksp == type)
723 1.77 thorpej panic("malloc_type_attach: already on list");
724 1.77 thorpej }
725 1.77 thorpej }
726 1.77 thorpej #endif
727 1.77 thorpej
728 1.77 thorpej #ifdef KMEMSTATS
729 1.77 thorpej if (type->ks_limit == 0)
730 1.77 thorpej type->ks_limit = ((u_long)nkmempages << PAGE_SHIFT) * 6U / 10U;
731 1.77 thorpej #else
732 1.77 thorpej type->ks_limit = 0;
733 1.77 thorpej #endif
734 1.77 thorpej
735 1.77 thorpej type->ks_next = kmemstatistics;
736 1.77 thorpej kmemstatistics = type;
737 1.77 thorpej }
738 1.77 thorpej
739 1.77 thorpej /*
740 1.77 thorpej * Remove a malloc type from the system..
741 1.77 thorpej */
742 1.77 thorpej void
743 1.77 thorpej malloc_type_detach(struct malloc_type *type)
744 1.77 thorpej {
745 1.77 thorpej struct malloc_type *ksp;
746 1.77 thorpej
747 1.77 thorpej #ifdef DIAGNOSTIC
748 1.77 thorpej if (type->ks_magic != M_MAGIC)
749 1.77 thorpej panic("malloc_type_detach: bad magic");
750 1.77 thorpej #endif
751 1.77 thorpej
752 1.77 thorpej if (type == kmemstatistics)
753 1.77 thorpej kmemstatistics = type->ks_next;
754 1.77 thorpej else {
755 1.77 thorpej for (ksp = kmemstatistics; ksp->ks_next != NULL;
756 1.77 thorpej ksp = ksp->ks_next) {
757 1.77 thorpej if (ksp->ks_next == type) {
758 1.77 thorpej ksp->ks_next = type->ks_next;
759 1.77 thorpej break;
760 1.77 thorpej }
761 1.77 thorpej }
762 1.77 thorpej #ifdef DIAGNOSTIC
763 1.77 thorpej if (ksp->ks_next == NULL)
764 1.77 thorpej panic("malloc_type_detach: not on list");
765 1.77 thorpej #endif
766 1.77 thorpej }
767 1.77 thorpej type->ks_next = NULL;
768 1.77 thorpej }
769 1.77 thorpej
770 1.77 thorpej /*
771 1.77 thorpej * Set the limit on a malloc type.
772 1.77 thorpej */
773 1.77 thorpej void
774 1.77 thorpej malloc_type_setlimit(struct malloc_type *type, u_long limit)
775 1.77 thorpej {
776 1.77 thorpej #ifdef KMEMSTATS
777 1.77 thorpej int s;
778 1.77 thorpej
779 1.77 thorpej s = splvm();
780 1.77 thorpej type->ks_limit = limit;
781 1.77 thorpej splx(s);
782 1.77 thorpej #endif
783 1.77 thorpej }
784 1.77 thorpej
785 1.77 thorpej /*
786 1.49 thorpej * Compute the number of pages that kmem_map will map, that is,
787 1.49 thorpej * the size of the kernel malloc arena.
788 1.49 thorpej */
789 1.49 thorpej void
790 1.69 enami kmeminit_nkmempages(void)
791 1.49 thorpej {
792 1.49 thorpej int npages;
793 1.49 thorpej
794 1.49 thorpej if (nkmempages != 0) {
795 1.49 thorpej /*
796 1.49 thorpej * It's already been set (by us being here before, or
797 1.49 thorpej * by patching or kernel config options), bail out now.
798 1.49 thorpej */
799 1.49 thorpej return;
800 1.49 thorpej }
801 1.49 thorpej
802 1.79.2.4 skrll npages = physmem;
803 1.49 thorpej
804 1.49 thorpej if (npages > NKMEMPAGES_MAX)
805 1.49 thorpej npages = NKMEMPAGES_MAX;
806 1.49 thorpej
807 1.49 thorpej if (npages < NKMEMPAGES_MIN)
808 1.49 thorpej npages = NKMEMPAGES_MIN;
809 1.49 thorpej
810 1.49 thorpej nkmempages = npages;
811 1.49 thorpej }
812 1.49 thorpej
813 1.49 thorpej /*
814 1.1 cgd * Initialize the kernel memory allocator
815 1.1 cgd */
816 1.12 christos void
817 1.69 enami kmeminit(void)
818 1.1 cgd {
819 1.77 thorpej __link_set_decl(malloc_types, struct malloc_type);
820 1.77 thorpej struct malloc_type * const *ksp;
821 1.79.2.1 skrll vaddr_t kmb, kml;
822 1.23 tls #ifdef KMEMSTATS
823 1.50 augustss long indx;
824 1.23 tls #endif
825 1.1 cgd
826 1.1 cgd #if ((MAXALLOCSAVE & (MAXALLOCSAVE - 1)) != 0)
827 1.1 cgd ERROR!_kmeminit:_MAXALLOCSAVE_not_power_of_2
828 1.1 cgd #endif
829 1.1 cgd #if (MAXALLOCSAVE > MINALLOCSIZE * 32768)
830 1.1 cgd ERROR!_kmeminit:_MAXALLOCSAVE_too_big
831 1.1 cgd #endif
832 1.47 ragge #if (MAXALLOCSAVE < NBPG)
833 1.1 cgd ERROR!_kmeminit:_MAXALLOCSAVE_too_small
834 1.1 cgd #endif
835 1.11 cgd
836 1.11 cgd if (sizeof(struct freelist) > (1 << MINBUCKET))
837 1.11 cgd panic("minbucket too small/struct freelist too big");
838 1.11 cgd
839 1.49 thorpej /*
840 1.49 thorpej * Compute the number of kmem_map pages, if we have not
841 1.49 thorpej * done so already.
842 1.49 thorpej */
843 1.49 thorpej kmeminit_nkmempages();
844 1.49 thorpej
845 1.28 mrg kmemusage = (struct kmemusage *) uvm_km_zalloc(kernel_map,
846 1.69 enami (vsize_t)(nkmempages * sizeof(struct kmemusage)));
847 1.79.2.1 skrll kmb = 0;
848 1.79.2.1 skrll kmem_map = uvm_km_suballoc(kernel_map, &kmb,
849 1.79.2.4 skrll &kml, ((vsize_t)nkmempages << PAGE_SHIFT),
850 1.69 enami VM_MAP_INTRSAFE, FALSE, &kmem_map_store);
851 1.79.2.4 skrll uvm_km_vacache_init(kmem_map, "kvakmem", 0);
852 1.79.2.1 skrll kmembase = (char *)kmb;
853 1.79.2.1 skrll kmemlimit = (char *)kml;
854 1.1 cgd #ifdef KMEMSTATS
855 1.1 cgd for (indx = 0; indx < MINBUCKET + 16; indx++) {
856 1.49 thorpej if (1 << indx >= PAGE_SIZE)
857 1.1 cgd bucket[indx].kb_elmpercl = 1;
858 1.1 cgd else
859 1.49 thorpej bucket[indx].kb_elmpercl = PAGE_SIZE / (1 << indx);
860 1.1 cgd bucket[indx].kb_highwat = 5 * bucket[indx].kb_elmpercl;
861 1.1 cgd }
862 1.62 thorpej #endif
863 1.77 thorpej
864 1.77 thorpej /* Attach all of the statically-linked malloc types. */
865 1.77 thorpej __link_set_foreach(ksp, malloc_types)
866 1.77 thorpej malloc_type_attach(*ksp);
867 1.77 thorpej
868 1.62 thorpej #ifdef MALLOC_DEBUG
869 1.62 thorpej debug_malloc_init();
870 1.1 cgd #endif
871 1.1 cgd }
872 1.39 thorpej
873 1.39 thorpej #ifdef DDB
874 1.39 thorpej #include <ddb/db_output.h>
875 1.39 thorpej
876 1.39 thorpej /*
877 1.39 thorpej * Dump kmem statistics from ddb.
878 1.39 thorpej *
879 1.39 thorpej * usage: call dump_kmemstats
880 1.39 thorpej */
881 1.69 enami void dump_kmemstats(void);
882 1.39 thorpej
883 1.39 thorpej void
884 1.69 enami dump_kmemstats(void)
885 1.39 thorpej {
886 1.39 thorpej #ifdef KMEMSTATS
887 1.77 thorpej struct malloc_type *ksp;
888 1.39 thorpej
889 1.77 thorpej for (ksp = kmemstatistics; ksp != NULL; ksp = ksp->ks_next) {
890 1.77 thorpej if (ksp->ks_memuse == 0)
891 1.77 thorpej continue;
892 1.77 thorpej db_printf("%s%.*s %ld\n", ksp->ks_shortdesc,
893 1.77 thorpej (int)(20 - strlen(ksp->ks_shortdesc)),
894 1.77 thorpej " ",
895 1.77 thorpej ksp->ks_memuse);
896 1.39 thorpej }
897 1.39 thorpej #else
898 1.39 thorpej db_printf("Kmem stats are not being collected.\n");
899 1.39 thorpej #endif /* KMEMSTATS */
900 1.39 thorpej }
901 1.39 thorpej #endif /* DDB */
902 1.79.2.1 skrll
903 1.79.2.1 skrll
904 1.79.2.1 skrll #if 0
905 1.79.2.1 skrll /*
906 1.79.2.1 skrll * Diagnostic messages about "Data modified on
907 1.79.2.1 skrll * freelist" indicate a memory corruption, but
908 1.79.2.1 skrll * they do not help tracking it down.
909 1.79.2.1 skrll * This function can be called at various places
910 1.79.2.1 skrll * to sanity check malloc's freelist and discover
911 1.79.2.1 skrll * where does the corruption take place.
912 1.79.2.1 skrll */
913 1.79.2.1 skrll int
914 1.79.2.1 skrll freelist_sanitycheck(void) {
915 1.79.2.1 skrll int i,j;
916 1.79.2.1 skrll struct kmembuckets *kbp;
917 1.79.2.1 skrll struct freelist *freep;
918 1.79.2.1 skrll int rv = 0;
919 1.79.2.1 skrll
920 1.79.2.1 skrll for (i = MINBUCKET; i <= MINBUCKET + 15; i++) {
921 1.79.2.1 skrll kbp = &bucket[i];
922 1.79.2.1 skrll freep = (struct freelist *)kbp->kb_next;
923 1.79.2.1 skrll j = 0;
924 1.79.2.1 skrll while(freep) {
925 1.79.2.1 skrll vm_map_lock(kmem_map);
926 1.79.2.1 skrll rv = uvm_map_checkprot(kmem_map, (vaddr_t)freep,
927 1.79.2.1 skrll (vaddr_t)freep + sizeof(struct freelist),
928 1.79.2.1 skrll VM_PROT_WRITE);
929 1.79.2.1 skrll vm_map_unlock(kmem_map);
930 1.79.2.1 skrll
931 1.79.2.1 skrll if ((rv == 0) || (*(int *)freep != WEIRD_ADDR)) {
932 1.79.2.1 skrll printf("bucket %i, chunck %d at %p modified\n",
933 1.79.2.1 skrll i, j, freep);
934 1.79.2.1 skrll return 1;
935 1.79.2.1 skrll }
936 1.79.2.1 skrll freep = (struct freelist *)freep->next;
937 1.79.2.1 skrll j++;
938 1.79.2.1 skrll }
939 1.79.2.1 skrll }
940 1.79.2.1 skrll
941 1.79.2.1 skrll return 0;
942 1.79.2.1 skrll }
943 1.79.2.1 skrll #endif
944