From patchwork Fri Jan 10 06:00:31 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Alistair Popple X-Patchwork-Id: 13933721 Received: from NAM04-DM6-obe.outbound.protection.outlook.com (mail-dm6nam04on2074.outbound.protection.outlook.com [40.107.102.74]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 07DCC2066CB; Fri, 10 Jan 2025 06:01:41 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=fail smtp.client-ip=40.107.102.74 ARC-Seal: i=2; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1736488903; cv=fail; b=HrANyluUqfd9V7ixHytDY4rlf39HYqGVunCwAeRms2VCsUdfkxyCi+O9ILjmZljQKR8LOB24iaRul+eIO0N8L1tEecf1ZXNhMDveJK+S8h9PxM4ZXs6PzEL0mULJ5+EUe5Ya4a5zBJGfUozWufIjNpoJXpGwzRYTZlnQ5OVGdOo= ARC-Message-Signature: i=2; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1736488903; c=relaxed/simple; bh=z5+rxg7rP0hfIi4VPwraU4BJ/Udhf4heFZ9QHND/jfo=; h=From:To:Cc:Subject:Date:Message-ID:In-Reply-To:References: Content-Type:MIME-Version; b=E+WjUr2X3/EiY+RekkbxET/x3z46dt+S+22cotqyfQmB+Q2G6WavpdHVEWfmGGkxdL9eohOVSd8RNiwWzOGT1EfCTDnLac4hsd1Lr097qsH2MpW7/RfgXBUdwVAmi0AWAvPbvLdFAgc7X7q8fPBs2BhZX1eQ1VWssUfaKj29shI= ARC-Authentication-Results: i=2; smtp.subspace.kernel.org; dmarc=pass (p=reject dis=none) header.from=nvidia.com; spf=fail smtp.mailfrom=nvidia.com; dkim=pass (2048-bit key) header.d=Nvidia.com header.i=@Nvidia.com header.b=dUwjIf9S; arc=fail smtp.client-ip=40.107.102.74 Authentication-Results: smtp.subspace.kernel.org; dmarc=pass (p=reject dis=none) header.from=nvidia.com Authentication-Results: smtp.subspace.kernel.org; spf=fail smtp.mailfrom=nvidia.com Authentication-Results: smtp.subspace.kernel.org; dkim=pass (2048-bit key) header.d=Nvidia.com header.i=@Nvidia.com header.b="dUwjIf9S" ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=ZpxvqaoIWSZqSR0z5uEPch2vk3IBEX0f3Xi00SzTp2RHiA6QCFijKvzLaQjqnCFueiX30ijAO1Kmfdr040oMm7PWv4hBdNDHdhJYsj4K3uST0i4JdB+Zh+v6sXI6pvGYv87PsvkNyu8eVmCbGmc0HfcieM1f+Fv7avl5As7ZB6Xv2Lye5/1YWf8swREluOz9YPzJ1/9qu2ZMM/xU0EK4KtRznNTPyq4PU1JB5Fp4pOAa1e0FL6iASe/HEPIz4KqeVSlYGoFXi4UkyQvzZ9VQRiaxzsBB/1YHP1pqoOeXHZz3gRc6vajWU4FfHe2R2OJoXY/9jeuVELFmJ+5VUTscxA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=+5+bIA5D/ZXBMmnESNZ5YW8DsaUjooc64ARwvTry73M=; b=kPBXLnzfaXWq9g3kgRQFIdILu7pU2MLeOvGhIuTl+Wb725zbPz+5U5KnBAm4Fc5+4B1mGKJTnoAgMbBcH8Bo6r4JJmd0X2w5sSlXfjYV69qryUNbzLIuzI467tRFuP/pHlCUhTdXU2waDcI3uh7Ec2p/gbzukH31b9R0KFotelCnJPEBsZpIq96DY5x+/336fbtx0/UeTVQjtXYZHahEOCWhhpfc4fkgRCP4xtYmL8LgBdy3Q01nt36T6oT2Y+SVoZzm2qf3haTic3i1Qlasn5E5Eu5bEXgUpyrxQXwjwaEky7/eWPyL7krbqufUQ4xQ8uBuh9vs2nou7d60Le1Vhw== ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=nvidia.com; dmarc=pass action=none header.from=nvidia.com; dkim=pass header.d=nvidia.com; arc=none DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=Nvidia.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=+5+bIA5D/ZXBMmnESNZ5YW8DsaUjooc64ARwvTry73M=; b=dUwjIf9SbGKfY5G4bLU82HeZgF9ADgFS9zu1OFHxCugs2La9JvfG0KnEPhSJnng2T47Bnsk+ZDNKawHf2/9W2DbryT0L1nhXebNA1mM9/7t9yH98sH/Tks69IL+SDSLuYwkfMi+FS10TUjTCP0FybusO9PmZh/2c5thazTWCX/Fs07wt2fbDUaqR6SaBOOHTzhlbHDTXGZSCFKVAP5sYYm6VzJ1x7vTMt5MCIVTOCHtXl2U4RWDS5pD2o+b/rrClZvOHUAMOB101XGSKKvd9L2gaT8ahbr6mnl3bCSw4AfSC4VLdZMI+naf3C8XDEWxWTpRdukgIX6JWTS53RhEPBw== Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=nvidia.com; Received: from DS0PR12MB7726.namprd12.prod.outlook.com (2603:10b6:8:130::6) by BY5PR12MB4132.namprd12.prod.outlook.com (2603:10b6:a03:209::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.8335.10; Fri, 10 Jan 2025 06:01:39 +0000 Received: from DS0PR12MB7726.namprd12.prod.outlook.com ([fe80::953f:2f80:90c5:67fe]) by DS0PR12MB7726.namprd12.prod.outlook.com ([fe80::953f:2f80:90c5:67fe%7]) with mapi id 15.20.8335.011; Fri, 10 Jan 2025 06:01:39 +0000 From: Alistair Popple To: akpm@linux-foundation.org, dan.j.williams@intel.com, linux-mm@kvack.org Cc: alison.schofield@intel.com, Alistair Popple , lina@asahilina.net, zhang.lyra@gmail.com, gerald.schaefer@linux.ibm.com, vishal.l.verma@intel.com, dave.jiang@intel.com, logang@deltatee.com, bhelgaas@google.com, jack@suse.cz, jgg@ziepe.ca, catalin.marinas@arm.com, will@kernel.org, mpe@ellerman.id.au, npiggin@gmail.com, dave.hansen@linux.intel.com, ira.weiny@intel.com, willy@infradead.org, djwong@kernel.org, tytso@mit.edu, linmiaohe@huawei.com, david@redhat.com, peterx@redhat.com, linux-doc@vger.kernel.org, linux-kernel@vger.kernel.org, linux-arm-kernel@lists.infradead.org, linuxppc-dev@lists.ozlabs.org, nvdimm@lists.linux.dev, linux-cxl@vger.kernel.org, linux-fsdevel@vger.kernel.org, linux-ext4@vger.kernel.org, linux-xfs@vger.kernel.org, jhubbard@nvidia.com, hch@lst.de, david@fromorbit.com, chenhuacai@kernel.org, kernel@xen0n.name, loongarch@lists.linux.dev Subject: [PATCH v6 03/26] fs/dax: Don't skip locked entries when scanning entries Date: Fri, 10 Jan 2025 17:00:31 +1100 Message-ID: <742791bcac80aaa46b964c8a09b45be4dadca294.1736488799.git-series.apopple@nvidia.com> X-Mailer: git-send-email 2.45.2 In-Reply-To: References: X-ClientProxiedBy: SY5P300CA0082.AUSP300.PROD.OUTLOOK.COM (2603:10c6:10:247::24) To DS0PR12MB7726.namprd12.prod.outlook.com (2603:10b6:8:130::6) Precedence: bulk X-Mailing-List: linux-xfs@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 X-MS-PublicTrafficType: Email X-MS-TrafficTypeDiagnostic: DS0PR12MB7726:EE_|BY5PR12MB4132:EE_ X-MS-Office365-Filtering-Correlation-Id: d6767834-2fc8-4ada-eb71-08dd313c3f73 X-MS-Exchange-SenderADCheck: 1 X-MS-Exchange-AntiSpam-Relay: 0 X-Microsoft-Antispam: BCL:0;ARA:13230040|1800799024|376014|7416014|366016; X-Microsoft-Antispam-Message-Info: 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 X-Forefront-Antispam-Report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:DS0PR12MB7726.namprd12.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(1800799024)(376014)(7416014)(366016);DIR:OUT;SFP:1101; X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1 X-MS-Exchange-AntiSpam-MessageData-0: /D/2TNH/syia8AXqxHP5KhAuoVV+c3ilcmZXfOYIyKJM+vT3NnGbOxSvBDHLtDdGyGbmwhDnV5iZcHrGsT0ylFTbDzR7UbebNiHOQGqIKnCBqD1Ev9LReyuDdPFcnQQZy+qcYKqrIRYZ3f+EeJoUt0GcZAF/BHzVG2S2ODPZTIaJBKOJveb+AN4OMYWjAsjnDYW7Iv7mJNejiQkZvyycqLNHS9A+fVfR9H4drzQyRCyMj2GhYg+QHJRgj8vp1qTB7sFSAaT3zM48emOGjgUVfYQmVd/44AWguG1C4c2WNQWyrxOeuSn6KT5OoQdfLYvnzqjNLlMRs/Da02ZHCNoBocb66LnNx/JDBAzMARvCWZ87dY/LtAeNSDRxjEr7oJMl487VDujwMkbQc831pCe0jdkm83SMIl8I99yv1DhCwthHCrsnYyFCZv7XY0j447t3k9VGk0QmFRNiXGpCiVvw/obs69ogPq+PBKaV5VOwOpLfTHEGqdEKhvjWyQR+rldBnJganGuklHpieUq1ynMvzyhmCwQ9gvUhqo8aab/i9k/94oahGgdSYLzueQJ4cqMo64T0c+3oL3zuW3J1WxBnSquNgFNtq8uaUOAMtYK9lTb2RLrmDjJGrcfztAunFAtxCyBpO0Fzfg/2Hj1be/BM+tn6J9g8ERkif+xc8ETAP2edYEYXeyXpyM4PE1QLlacZ6b1cm40uM/xndBEcAgnnazHGw8Ex+iMpZiLCrYgcOlPrj/wwsAnMYLPrHZtvEl9vfMbk1XZ0L2wOJEswmYWEWDwpmhNoXn7HRWbTjbVzFkXyBCnSWhxTdTfL6LdaMO7Oj9YAUMeyHn0DUoA30U1LAK3kNbYh9UX6i94tDfteDBv8OIQKl2sW1ii+eG+StISKSE2lRX5TKgUKSvoPQZiNqAms65VJq7JfeFu2rPH3B9/8XJHrWTANRYanq7fUjtzGX8KxkdbjjrW1ZittZCI2hfjo1QzQnPeI4gjOdAZPorqxBb2ZCqeLdAQPF2lT1JPaSREIbvUrRB7fZa2001mliVB8qdWPbsdCJhvcR0Td36tGv2pY63fs1429H/eTLxkth/w1ezPq2OIbIKmAbFP/1f/fLas3vzWCjF0YxdhyJlRmJKNrqoRd/Qjxa4kW5ho/JtN9ZwjsVAdd13fWyN87Dgm2Q/iwM2mqYpyRLPHZv644D+t7hwdBKYpah9UZlRJ7Os94NivpCEsrxxOJ6SVQnWAeWy9QY1Kj9vmhRGFhxJhfbJ564aPa9pN0lWNsnl86QaVufzs7GPq8WVPNqoj7vlzCVnWyCXmxDDtgpTFuKpPPBAOuViNeWAL83F+X+C32T8/58+rwQ3atUMZePcHUdnrXSXSEYw5vdUbKeMPRv8cBmIvGLig9E51St+fbTEYM6X8yvZ3P7+lpyzy6MXxqOxdw0ZK4/pRP4feYDWFAqn/u+HHnW2Vd1u8l10qx29C43B8GCjWSKNJIUdn5LLLkogfFU7f18kUU6Bu4Gu+8+gTi+bG7cV30C4UpoE/DQ3E1nzTwUGQucA47odRAPPVFudyGdNrnuWd8pWwg01G4zigRX7dUZUod4tbjPrY9NxTK X-OriginatorOrg: Nvidia.com X-MS-Exchange-CrossTenant-Network-Message-Id: d6767834-2fc8-4ada-eb71-08dd313c3f73 X-MS-Exchange-CrossTenant-AuthSource: DS0PR12MB7726.namprd12.prod.outlook.com X-MS-Exchange-CrossTenant-AuthAs: Internal X-MS-Exchange-CrossTenant-OriginalArrivalTime: 10 Jan 2025 06:01:39.1760 (UTC) X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted X-MS-Exchange-CrossTenant-Id: 43083d15-7273-40c1-b7db-39efd9ccc17a X-MS-Exchange-CrossTenant-MailboxType: HOSTED X-MS-Exchange-CrossTenant-UserPrincipalName: NLBQz6/k3gwLQkFb+F3y6EoZw94HJsChHCY7CT5Np83gFIkdjKcJuBty+g0I6DVtzyaaIuOMtq1f+/92MXFJGQ== X-MS-Exchange-Transport-CrossTenantHeadersStamped: BY5PR12MB4132 Several functions internal to FS DAX use the following pattern when trying to obtain an unlocked entry: xas_for_each(&xas, entry, end_idx) { if (dax_is_locked(entry)) entry = get_unlocked_entry(&xas, 0); This is problematic because get_unlocked_entry() will get the next present entry in the range, and the next entry may not be locked. Therefore any processing of the original locked entry will be skipped. This can cause dax_layout_busy_page_range() to miss DMA-busy pages in the range, leading file systems to free blocks whilst DMA operations are ongoing which can lead to file system corruption. Instead callers from within a xas_for_each() loop should be waiting for the current entry to be unlocked without advancing the XArray state so a new function is introduced to wait. Also while we are here rename get_unlocked_entry() to get_next_unlocked_entry() to make it clear that it may advance the iterator state. Signed-off-by: Alistair Popple Reviewed-by: Dan Williams --- fs/dax.c | 50 +++++++++++++++++++++++++++++++++++++++++--------- 1 file changed, 41 insertions(+), 9 deletions(-) diff --git a/fs/dax.c b/fs/dax.c index 5133568..d010c10 100644 --- a/fs/dax.c +++ b/fs/dax.c @@ -206,7 +206,7 @@ static void dax_wake_entry(struct xa_state *xas, void *entry, * * Must be called with the i_pages lock held. */ -static void *get_unlocked_entry(struct xa_state *xas, unsigned int order) +static void *get_next_unlocked_entry(struct xa_state *xas, unsigned int order) { void *entry; struct wait_exceptional_entry_queue ewait; @@ -236,6 +236,37 @@ static void *get_unlocked_entry(struct xa_state *xas, unsigned int order) } /* + * Wait for the given entry to become unlocked. Caller must hold the i_pages + * lock and call either put_unlocked_entry() if it did not lock the entry or + * dax_unlock_entry() if it did. Returns an unlocked entry if still present. + */ +static void *wait_entry_unlocked_exclusive(struct xa_state *xas, void *entry) +{ + struct wait_exceptional_entry_queue ewait; + wait_queue_head_t *wq; + + init_wait(&ewait.wait); + ewait.wait.func = wake_exceptional_entry_func; + + while (unlikely(dax_is_locked(entry))) { + wq = dax_entry_waitqueue(xas, entry, &ewait.key); + prepare_to_wait_exclusive(wq, &ewait.wait, + TASK_UNINTERRUPTIBLE); + xas_pause(xas); + xas_unlock_irq(xas); + schedule(); + finish_wait(wq, &ewait.wait); + xas_lock_irq(xas); + entry = xas_load(xas); + } + + if (xa_is_internal(entry)) + return NULL; + + return entry; +} + +/* * The only thing keeping the address space around is the i_pages lock * (it's cycled in clear_inode() after removing the entries from i_pages) * After we call xas_unlock_irq(), we cannot touch xas->xa. @@ -250,7 +281,7 @@ static void wait_entry_unlocked(struct xa_state *xas, void *entry) wq = dax_entry_waitqueue(xas, entry, &ewait.key); /* - * Unlike get_unlocked_entry() there is no guarantee that this + * Unlike get_next_unlocked_entry() there is no guarantee that this * path ever successfully retrieves an unlocked entry before an * inode dies. Perform a non-exclusive wait in case this path * never successfully performs its own wake up. @@ -580,7 +611,7 @@ static void *grab_mapping_entry(struct xa_state *xas, retry: pmd_downgrade = false; xas_lock_irq(xas); - entry = get_unlocked_entry(xas, order); + entry = get_next_unlocked_entry(xas, order); if (entry) { if (dax_is_conflict(entry)) @@ -716,8 +747,7 @@ struct page *dax_layout_busy_page_range(struct address_space *mapping, xas_for_each(&xas, entry, end_idx) { if (WARN_ON_ONCE(!xa_is_value(entry))) continue; - if (unlikely(dax_is_locked(entry))) - entry = get_unlocked_entry(&xas, 0); + entry = wait_entry_unlocked_exclusive(&xas, entry); if (entry) page = dax_busy_page(entry); put_unlocked_entry(&xas, entry, WAKE_NEXT); @@ -750,7 +780,7 @@ static int __dax_invalidate_entry(struct address_space *mapping, void *entry; xas_lock_irq(&xas); - entry = get_unlocked_entry(&xas, 0); + entry = get_next_unlocked_entry(&xas, 0); if (!entry || WARN_ON_ONCE(!xa_is_value(entry))) goto out; if (!trunc && @@ -776,7 +806,9 @@ static int __dax_clear_dirty_range(struct address_space *mapping, xas_lock_irq(&xas); xas_for_each(&xas, entry, end) { - entry = get_unlocked_entry(&xas, 0); + entry = wait_entry_unlocked_exclusive(&xas, entry); + if (!entry) + continue; xas_clear_mark(&xas, PAGECACHE_TAG_DIRTY); xas_clear_mark(&xas, PAGECACHE_TAG_TOWRITE); put_unlocked_entry(&xas, entry, WAKE_NEXT); @@ -940,7 +972,7 @@ static int dax_writeback_one(struct xa_state *xas, struct dax_device *dax_dev, if (unlikely(dax_is_locked(entry))) { void *old_entry = entry; - entry = get_unlocked_entry(xas, 0); + entry = get_next_unlocked_entry(xas, 0); /* Entry got punched out / reallocated? */ if (!entry || WARN_ON_ONCE(!xa_is_value(entry))) @@ -1949,7 +1981,7 @@ dax_insert_pfn_mkwrite(struct vm_fault *vmf, pfn_t pfn, unsigned int order) vm_fault_t ret; xas_lock_irq(&xas); - entry = get_unlocked_entry(&xas, order); + entry = get_next_unlocked_entry(&xas, order); /* Did we race with someone splitting entry or so? */ if (!entry || dax_is_conflict(entry) || (order == 0 && !dax_is_pte_entry(entry))) {