2 * Copyright (c) 1999-2016 Apple Inc. All rights reserved.
4 * @APPLE_LICENSE_HEADER_START@
6 * "Portions Copyright (c) 1999 Apple Computer, Inc. All Rights
7 * Reserved. This file contains Original Code and/or Modifications of
8 * Original Code as defined in and that are subject to the Apple Public
9 * Source License Version 1.0 (the 'License'). You may not use this file
10 * except in compliance with the License. Please obtain a copy of the
11 * License at http://www.apple.com/publicsource and read it before using
14 * The Original Code and all software distributed under the License are
15 * distributed on an 'AS IS' basis, WITHOUT WARRANTY OF ANY KIND, EITHER
16 * EXPRESS OR IMPLIED, AND APPLE HEREBY DISCLAIMS ALL SUCH WARRANTIES,
17 * INCLUDING WITHOUT LIMITATION, ANY WARRANTIES OF MERCHANTABILITY,
18 * FITNESS FOR A PARTICULAR PURPOSE OR NON-INFRINGEMENT. Please see the
19 * License for the specific language governing rights and limitations
22 * @APPLE_LICENSE_HEADER_END@
26 * SDKROOT=macosx.internal cc -I`xcrun -sdk macosx.internal --show-sdk-path`/System/Library/Frameworks/System.framework/Versions/B/PrivateHeaders -arch x86_64 -Os -lktrace -lutil -o fs_usage fs_usage.c
43 #include <ktrace/session.h>
44 #include <System/sys/kdebug.h>
48 #include <sys/fcntl.h>
50 #include <sys/ioctl.h>
52 #include <sys/param.h>
53 #include <sys/socket.h>
54 #include <sys/syslimits.h>
56 #include <sys/types.h>
58 #import <mach/clock_types.h>
59 #import <mach/mach_time.h>
62 * MAXCOLS controls when extra data kicks in.
63 * MAX_WIDE_MODE_COLS controls -w mode to get even wider data in path.
66 #define MAX_WIDE_MODE_COLS 264
67 #define MAXWIDTH MAX_WIDE_MODE_COLS + 64
69 typedef struct th_info
{
73 /* this is needed for execve()/posix_spawn(), because the command name at the end probe is the new name, which we don't want */
74 char command
[MAXCOMLEN
+ 1];
77 * sometimes a syscall can cause multiple VFS_LOOKUPs of the same vnode with multiple paths
78 * (e.g., one absolute, one relative). traditional fs_usage behavior was to display the
79 * *first* lookup, so we need to save it off once we see it.
81 unsigned long vnodeid
; /* the vp of the VFS_LOOKUP we're currently in, 0 if we are not in one */
82 char pathname
[MAXPATHLEN
];
83 char pathname2
[MAXPATHLEN
];
84 char *newest_pathname
; /* points to pathname2 if it's filled, otherwise pathname if it's filled, otherwise NULL */
107 unsigned long iosize
;
108 unsigned long io_errno
;
109 unsigned long is_meta
;
111 uintptr_t issuing_thread
;
113 uintptr_t completion_thread
;
114 char issuing_command
[MAXCOMLEN
+ 1];
115 uint64_t issued_time
;
116 uint64_t completed_time
;
117 struct timeval completed_walltime
;
121 #define HASH_SIZE 1024
122 #define HASH_MASK (HASH_SIZE - 1)
124 void setup_ktrace_callbacks(void);
125 void extend_syscall(uintptr_t thread
, int type
, ktrace_event_t event
);
127 /* printing routines */
128 bool check_filter_mode(pid_t pid
, th_info_t ti
, unsigned long type
, int error
, int retval
, char *sc_name
);
129 void format_print(th_info_t ti
, char *sc_name
, ktrace_event_t event
, unsigned long type
, int format
, uint64_t now
, uint64_t stime
, int waited
, const char *pathname
, struct diskio
*dio
);
130 int print_open(ktrace_event_t event
, uintptr_t flags
);
132 /* metadata info hash routines */
133 void meta_add_name(uint64_t blockno
, const char *pathname
);
134 const char *meta_find_name(uint64_t blockno
);
135 void meta_delete_all(void);
137 /* event ("thread info") routines */
138 void event_enter(int type
, ktrace_event_t event
);
139 void event_exit(char *sc_name
, int type
, ktrace_event_t event
, int format
);
140 th_info_t
event_find(uintptr_t thread
, int type
);
141 void event_delete(th_info_t ti_to_delete
);
142 void event_delete_all(void);
143 void event_mark_thread_waited(uintptr_t);
145 /* network fd set routines */
146 void fd_set_is_network(pid_t pid
, unsigned long fd
, bool set
);
147 bool fd_is_network(pid_t pid
, unsigned long fd
);
148 void fd_clear_pid(pid_t pid
);
149 void fd_clear_all(void);
151 /* shared region address lookup routines */
152 void init_shared_cache_mapping(void);
153 void lookup_name(uint64_t user_addr
, char **type
, char **name
);
155 /* disk I/O tracking routines */
156 struct diskio
*diskio_start(unsigned long type
, unsigned long bp
, unsigned long dev
, unsigned long blkno
, unsigned long iosize
, ktrace_event_t event
);
157 struct diskio
*diskio_find(unsigned long bp
);
158 struct diskio
*diskio_complete(unsigned long bp
, unsigned long io_errno
, unsigned long resid
, uintptr_t thread
, uint64_t curtime
, struct timeval curtime_wall
);
159 void diskio_print(struct diskio
*dio
);
160 void diskio_free(struct diskio
*dio
);
162 /* disk name routines */
165 char *generate_cs_disk_name(unsigned long dev
, char *s
);
166 char *find_disk_name(unsigned long dev
);
167 void cache_disk_names(void);
169 #define CLASS_MASK 0xff000000
170 #define CSC_MASK 0xffff0000
171 #define BSC_INDEX(type) ((type >> 2) & 0x3fff)
173 #define MACH_vmfault 0x01300008
174 #define MACH_pageout 0x01300004
175 #define MACH_sched 0x01400000
176 #define MACH_stkhandoff 0x01400008
177 #define MACH_idle 0x01400024
179 #define BSC_thread_terminate 0x040c05a4
181 #define HFS_update 0x3018000
182 #define HFS_modify_block_end 0x3018004
184 #define Throttled 0x3010184
185 #define SPEC_ioctl 0x3060000
186 #define SPEC_unmap_info 0x3060004
187 #define proc_exit 0x4010004
189 #define BC_IO_HIT 0x03070010
190 #define BC_IO_HIT_STALLED 0x03070020
191 #define BC_IO_MISS 0x03070040
192 #define BC_IO_MISS_CUT_THROUGH 0x03070080
193 #define BC_PLAYBACK_IO 0x03070100
194 #define BC_STR(s) ( \
195 (s == BC_IO_HIT) ? "HIT" : \
196 (s == BC_IO_HIT_STALLED) ? "STALL" : \
197 (s == BC_IO_MISS) ? "MISS" : \
198 (s == BC_IO_MISS_CUT_THROUGH) ? "CUT" : \
199 (s == BC_PLAYBACK_IO) ? "PLBK" : \
200 (s == 0x0) ? "NONE" : "UNKN" )
202 #define P_DISKIO_READ (DKIO_READ << 2)
203 #define P_DISKIO_ASYNC (DKIO_ASYNC << 2)
204 #define P_DISKIO_META (DKIO_META << 2)
205 #define P_DISKIO_PAGING (DKIO_PAGING << 2)
206 #define P_DISKIO_THROTTLE (DKIO_THROTTLE << 2)
207 #define P_DISKIO_PASSIVE (DKIO_PASSIVE << 2)
208 #define P_DISKIO_NOCACHE (DKIO_NOCACHE << 2)
209 #define P_DISKIO_TIER_MASK (DKIO_TIER_MASK << 2)
210 #define P_DISKIO_TIER_SHIFT (DKIO_TIER_SHIFT + 2)
211 #define P_DISKIO_TIER_UPGRADE (DKIO_TIER_UPGRADE << 2)
213 #define P_DISKIO (FSDBG_CODE(DBG_DKRW, 0))
214 #define P_DISKIO_DONE (P_DISKIO | (DKIO_DONE << 2))
215 #define P_DISKIO_TYPE (P_DISKIO | P_DISKIO_READ | P_DISKIO_META | P_DISKIO_PAGING)
216 #define P_DISKIO_MASK (CSC_MASK | 0x4)
218 #define P_WrData (P_DISKIO)
219 #define P_RdData (P_DISKIO | P_DISKIO_READ)
220 #define P_WrMeta (P_DISKIO | P_DISKIO_META)
221 #define P_RdMeta (P_DISKIO | P_DISKIO_META | P_DISKIO_READ)
222 #define P_PgOut (P_DISKIO | P_DISKIO_PAGING)
223 #define P_PgIn (P_DISKIO | P_DISKIO_PAGING | P_DISKIO_READ)
225 #define P_CS_Class 0x0a000000 // DBG_CORESTORAGE
226 #define P_CS_Type_Mask 0xfffffff0
227 #define P_CS_IO_Done 0x00000004
229 #define P_CS_ReadChunk 0x0a000200 // chopped up request
230 #define P_CS_WriteChunk 0x0a000210
231 #define P_CS_MetaRead 0x0a000300 // meta data
232 #define P_CS_MetaWrite 0x0a000310
233 #define P_CS_TransformRead 0x0a000500 // background transform
234 #define P_CS_TransformWrite 0x0a000510
235 #define P_CS_MigrationRead 0x0a000600 // composite disk block migration
236 #define P_CS_MigrationWrite 0x0a000610
237 #define P_CS_SYNC_DISK 0x0a010000
239 #define MSC_map_fd 0x010c00ac
241 #define BSC_BASE 0x040C0000
243 // Network related codes
244 #define BSC_recvmsg 0x040C006C
245 #define BSC_sendmsg 0x040C0070
246 #define BSC_recvfrom 0x040C0074
247 #define BSC_accept 0x040C0078
248 #define BSC_select 0x040C0174
249 #define BSC_socket 0x040C0184
250 #define BSC_connect 0x040C0188
251 #define BSC_bind 0x040C01A0
252 #define BSC_listen 0x040C01A8
253 #define BSC_sendto 0x040C0214
254 #define BSC_socketpair 0x040C021C
255 #define BSC_recvmsg_nocancel 0x040c0644
256 #define BSC_sendmsg_nocancel 0x040c0648
257 #define BSC_recvfrom_nocancel 0x040c064c
258 #define BSC_accept_nocancel 0x040c0650
259 #define BSC_connect_nocancel 0x040c0664
260 #define BSC_sendto_nocancel 0x040c0674
262 #define BSC_exit 0x040C0004
263 #define BSC_read 0x040C000C
264 #define BSC_write 0x040C0010
265 #define BSC_open 0x040C0014
266 #define BSC_close 0x040C0018
267 #define BSC_link 0x040C0024
268 #define BSC_unlink 0x040C0028
269 #define BSC_chdir 0x040c0030
270 #define BSC_fchdir 0x040c0034
271 #define BSC_mknod 0x040C0038
272 #define BSC_chmod 0x040C003C
273 #define BSC_chown 0x040C0040
274 #define BSC_getfsstat 0x040C0048
275 #define BSC_access 0x040C0084
276 #define BSC_chflags 0x040C0088
277 #define BSC_fchflags 0x040C008C
278 #define BSC_sync 0x040C0090
279 #define BSC_dup 0x040C00A4
280 #define BSC_ioctl 0x040C00D8
281 #define BSC_revoke 0x040C00E0
282 #define BSC_symlink 0x040C00E4
283 #define BSC_readlink 0x040C00E8
284 #define BSC_execve 0x040C00EC
285 #define BSC_umask 0x040C00F0
286 #define BSC_chroot 0x040C00F4
287 #define BSC_msync 0x040C0104
288 #define BSC_dup2 0x040C0168
289 #define BSC_fcntl 0x040C0170
290 #define BSC_fsync 0x040C017C
291 #define BSC_readv 0x040C01E0
292 #define BSC_writev 0x040C01E4
293 #define BSC_fchown 0x040C01EC
294 #define BSC_fchmod 0x040C01F0
295 #define BSC_rename 0x040C0200
296 #define BSC_flock 0x040C020C
297 #define BSC_mkfifo 0x040C0210
298 #define BSC_mkdir 0x040C0220
299 #define BSC_rmdir 0x040C0224
300 #define BSC_utimes 0x040C0228
301 #define BSC_futimes 0x040C022C
302 #define BSC_pread 0x040C0264
303 #define BSC_pwrite 0x040C0268
304 #define BSC_statfs 0x040C0274
305 #define BSC_fstatfs 0x040C0278
306 #define BSC_unmount 0x040C027C
307 #define BSC_mount 0x040C029C
308 #define BSC_fdatasync 0x040C02EC
309 #define BSC_stat 0x040C02F0
310 #define BSC_fstat 0x040C02F4
311 #define BSC_lstat 0x040C02F8
312 #define BSC_pathconf 0x040C02FC
313 #define BSC_fpathconf 0x040C0300
314 #define BSC_getdirentries 0x040C0310
315 #define BSC_mmap 0x040c0314
316 #define BSC_lseek 0x040c031c
317 #define BSC_truncate 0x040C0320
318 #define BSC_ftruncate 0x040C0324
319 #define BSC_undelete 0x040C0334
320 #define BSC_open_dprotected_np 0x040C0360
321 #define BSC_getattrlist 0x040C0370
322 #define BSC_setattrlist 0x040C0374
323 #define BSC_getdirentriesattr 0x040C0378
324 #define BSC_exchangedata 0x040C037C
325 #define BSC_checkuseraccess 0x040C0380
326 #define BSC_searchfs 0x040C0384
327 #define BSC_delete 0x040C0388
328 #define BSC_copyfile 0x040C038C
329 #define BSC_fgetattrlist 0x040C0390
330 #define BSC_fsetattrlist 0x040C0394
331 #define BSC_getxattr 0x040C03A8
332 #define BSC_fgetxattr 0x040C03AC
333 #define BSC_setxattr 0x040C03B0
334 #define BSC_fsetxattr 0x040C03B4
335 #define BSC_removexattr 0x040C03B8
336 #define BSC_fremovexattr 0x040C03BC
337 #define BSC_listxattr 0x040C03C0
338 #define BSC_flistxattr 0x040C03C4
339 #define BSC_fsctl 0x040C03C8
340 #define BSC_posix_spawn 0x040C03D0
341 #define BSC_ffsctl 0x040C03D4
342 #define BSC_open_extended 0x040C0454
343 #define BSC_umask_extended 0x040C0458
344 #define BSC_stat_extended 0x040C045C
345 #define BSC_lstat_extended 0x040C0460
346 #define BSC_fstat_extended 0x040C0464
347 #define BSC_chmod_extended 0x040C0468
348 #define BSC_fchmod_extended 0x040C046C
349 #define BSC_access_extended 0x040C0470
350 #define BSC_mkfifo_extended 0x040C048C
351 #define BSC_mkdir_extended 0x040C0490
352 #define BSC_aio_fsync 0x040C04E4
353 #define BSC_aio_return 0x040C04E8
354 #define BSC_aio_suspend 0x040C04EC
355 #define BSC_aio_cancel 0x040C04F0
356 #define BSC_aio_error 0x040C04F4
357 #define BSC_aio_read 0x040C04F8
358 #define BSC_aio_write 0x040C04FC
359 #define BSC_lio_listio 0x040C0500
360 #define BSC_sendfile 0x040C0544
361 #define BSC_stat64 0x040C0548
362 #define BSC_fstat64 0x040C054C
363 #define BSC_lstat64 0x040C0550
364 #define BSC_stat64_extended 0x040C0554
365 #define BSC_lstat64_extended 0x040C0558
366 #define BSC_fstat64_extended 0x040C055C
367 #define BSC_getdirentries64 0x040C0560
368 #define BSC_statfs64 0x040C0564
369 #define BSC_fstatfs64 0x040C0568
370 #define BSC_getfsstat64 0x040C056C
371 #define BSC_pthread_chdir 0x040C0570
372 #define BSC_pthread_fchdir 0x040C0574
373 #define BSC_lchown 0x040C05B0
375 #define BSC_read_nocancel 0x040c0630
376 #define BSC_write_nocancel 0x040c0634
377 #define BSC_open_nocancel 0x040c0638
378 #define BSC_close_nocancel 0x040c063c
379 #define BSC_msync_nocancel 0x040c0654
380 #define BSC_fcntl_nocancel 0x040c0658
381 #define BSC_select_nocancel 0x040c065c
382 #define BSC_fsync_nocancel 0x040c0660
383 #define BSC_readv_nocancel 0x040c066c
384 #define BSC_writev_nocancel 0x040c0670
385 #define BSC_pread_nocancel 0x040c0678
386 #define BSC_pwrite_nocancel 0x040c067c
387 #define BSC_aio_suspend_nocancel 0x40c0694
388 #define BSC_guarded_open_np 0x040c06e4
389 #define BSC_guarded_close_np 0x040c06e8
391 #define BSC_fsgetpath 0x040c06ac
393 #define BSC_getattrlistbulk 0x040c0734
395 #define BSC_openat 0x040c073c
396 #define BSC_openat_nocancel 0x040c0740
397 #define BSC_renameat 0x040c0744
398 #define BSC_chmodat 0x040c074c
399 #define BSC_chownat 0x040c0750
400 #define BSC_fstatat 0x040c0754
401 #define BSC_fstatat64 0x040c0758
402 #define BSC_linkat 0x040c075c
403 #define BSC_unlinkat 0x040c0760
404 #define BSC_readlinkat 0x040c0764
405 #define BSC_symlinkat 0x040c0768
406 #define BSC_mkdirat 0x040c076c
407 #define BSC_getattrlistat 0x040c0770
409 #define BSC_msync_extended 0x040e0104
410 #define BSC_pread_extended 0x040e0264
411 #define BSC_pwrite_extended 0x040e0268
412 #define BSC_mmap_extended 0x040e0314
413 #define BSC_mmap_extended2 0x040f0314
415 #define FMT_NOTHING -1
416 #define FMT_DEFAULT 0
423 #define FMT_CACHEHIT 7
427 #define FMT_FTRUNC 11
429 #define FMT_SELECT 13
431 #define FMT_AIO_FSYNC 15
432 #define FMT_AIO_RETURN 16
433 #define FMT_AIO_SUSPEND 17
434 #define FMT_AIO_CANCEL 18
436 #define FMT_LIO_LISTIO 20
439 #define FMT_ACCESS 23
441 #define FMT_FCHMOD 25
442 #define FMT_CHMOD_EXT 26
443 #define FMT_FCHMOD_EXT 27
444 #define FMT_CHFLAGS 28
445 #define FMT_FCHFLAGS 29
449 #define FMT_SENDFILE 33
450 #define FMT_IOCTL_SYNC 34
452 #define FMT_UNMOUNT 36
453 #define FMT_DISKIO_CS 37
454 #define FMT_SYNC_DISK_CS 38
455 #define FMT_IOCTL_UNMAP 39
456 #define FMT_UNMAP_INFO 40
457 #define FMT_HFS_update 41
460 #define FMT_CHMODAT 44
461 #define FMT_OPENAT 45
462 #define FMT_RENAMEAT 46
463 #define FMT_IOCTL_SYNCCACHE 47
465 #define DBG_FUNC_ALL (DBG_FUNC_START | DBG_FUNC_END)
467 #pragma mark global state
470 bool BC_flag
= false;
471 bool RAW_flag
= false;
472 bool wideflag
= false;
473 bool include_waited_flag
= false;
474 bool want_kernel_task
= true;
475 dispatch_source_t stop_timer
, sigquit_source
, sigpipe_source
, sighup_source
, sigterm_source
, sigwinch_source
;
476 uint64_t mach_time_of_first_event
;
477 uint64_t start_time_ns
= 0;
478 uint64_t end_time_ns
= UINT64_MAX
;
479 unsigned int columns
= 0;
482 * Network only or filesystem only output filter
483 * Default of zero means report all activity - no filtering
485 #define FILESYS_FILTER 0x01
486 #define NETWORK_FILTER 0x02
487 #define EXEC_FILTER 0x08
488 #define PATHNAME_FILTER 0x10
489 #define DISKIO_FILTER 0x20
490 #define DEFAULT_DO_NOT_FILTER 0x00
492 int filter_mode
= DEFAULT_DO_NOT_FILTER
;
493 bool show_cachehits
= false;
495 #pragma mark syscall lookup table
497 #define MAX_BSD_SYSCALL 526
504 #define NORMAL_SYSCALL(name) \
505 [BSC_INDEX(BSC_##name)] = {#name, FMT_DEFAULT}
507 #define SYSCALL(name, format) \
508 [BSC_INDEX(BSC_##name)] = {#name, format}
510 #define SYSCALL_NAMED(name, displayname, format) \
511 [BSC_INDEX(BSC_##name)] = {#displayname, format}
513 #define SYSCALL_WITH_NOCANCEL(name, format) \
514 [BSC_INDEX(BSC_##name)] = {#name, format}, \
515 [BSC_INDEX(BSC_##name##_nocancel)] = {#name, format}
517 const struct bsd_syscall bsd_syscalls
[MAX_BSD_SYSCALL
] = {
518 SYSCALL(sendfile
, FMT_FD
), /* this should be changed to FMT_SENDFILE once we add an extended info trace event */
519 SYSCALL_WITH_NOCANCEL(recvmsg
, FMT_FD_IO
),
520 SYSCALL_WITH_NOCANCEL(sendmsg
, FMT_FD_IO
),
521 SYSCALL_WITH_NOCANCEL(recvfrom
, FMT_FD_IO
),
522 SYSCALL_WITH_NOCANCEL(sendto
, FMT_FD_IO
),
523 SYSCALL_WITH_NOCANCEL(select
, FMT_SELECT
),
524 SYSCALL_WITH_NOCANCEL(accept
, FMT_FD_2
),
525 SYSCALL(socket
, FMT_SOCKET
),
526 SYSCALL_WITH_NOCANCEL(connect
, FMT_FD
),
527 SYSCALL(bind
, FMT_FD
),
528 SYSCALL(listen
, FMT_FD
),
529 SYSCALL(mmap
, FMT_MMAP
),
530 NORMAL_SYSCALL(socketpair
),
531 NORMAL_SYSCALL(getxattr
),
532 NORMAL_SYSCALL(setxattr
),
533 NORMAL_SYSCALL(removexattr
),
534 NORMAL_SYSCALL(listxattr
),
535 NORMAL_SYSCALL(stat
),
536 NORMAL_SYSCALL(stat64
),
537 NORMAL_SYSCALL(stat_extended
),
538 SYSCALL_NAMED(stat64_extended
, stat_extended64
, FMT_DEFAULT
), /* should be stat64_extended ? */
539 SYSCALL(mount
, FMT_MOUNT
),
540 SYSCALL(unmount
, FMT_UNMOUNT
),
541 NORMAL_SYSCALL(exit
),
542 NORMAL_SYSCALL(execve
),
543 NORMAL_SYSCALL(posix_spawn
),
544 SYSCALL_WITH_NOCANCEL(open
, FMT_OPEN
),
545 SYSCALL(open_extended
, FMT_OPEN
),
546 SYSCALL(guarded_open_np
, FMT_OPEN
),
547 SYSCALL_NAMED(open_dprotected_np
, open_dprotected
, FMT_OPEN
),
548 SYSCALL(dup
, FMT_FD_2
),
549 SYSCALL(dup2
, FMT_FD_2
),
550 SYSCALL_WITH_NOCANCEL(close
, FMT_FD
),
551 SYSCALL(guarded_close_np
, FMT_FD
),
552 SYSCALL_WITH_NOCANCEL(read
, FMT_FD_IO
),
553 SYSCALL_WITH_NOCANCEL(write
, FMT_FD_IO
),
554 SYSCALL(fgetxattr
, FMT_FD
),
555 SYSCALL(fsetxattr
, FMT_FD
),
556 SYSCALL(fremovexattr
, FMT_FD
),
557 SYSCALL(flistxattr
, FMT_FD
),
558 SYSCALL(fstat
, FMT_FD
),
559 SYSCALL(fstat64
, FMT_FD
),
560 SYSCALL(fstat_extended
, FMT_FD
),
561 SYSCALL(fstat64_extended
, FMT_FD
),
562 NORMAL_SYSCALL(lstat
),
563 NORMAL_SYSCALL(lstat64
),
564 NORMAL_SYSCALL(lstat_extended
),
565 SYSCALL_NAMED(lstat64_extended
, lstat_extended64
, FMT_DEFAULT
),
566 NORMAL_SYSCALL(link
),
567 NORMAL_SYSCALL(unlink
),
568 NORMAL_SYSCALL(mknod
),
569 SYSCALL(umask
, FMT_UMASK
),
570 SYSCALL(umask_extended
, FMT_UMASK
),
571 SYSCALL(chmod
, FMT_CHMOD
),
572 SYSCALL(chmod_extended
, FMT_CHMOD_EXT
),
573 SYSCALL(fchmod
, FMT_FCHMOD
),
574 SYSCALL(fchmod_extended
, FMT_FCHMOD_EXT
),
575 NORMAL_SYSCALL(chown
),
576 NORMAL_SYSCALL(lchown
),
577 SYSCALL(fchown
, FMT_FD
),
578 SYSCALL(access
, FMT_ACCESS
),
579 NORMAL_SYSCALL(access_extended
),
580 NORMAL_SYSCALL(chdir
),
581 NORMAL_SYSCALL(pthread_chdir
),
582 NORMAL_SYSCALL(chroot
),
583 NORMAL_SYSCALL(utimes
),
584 SYSCALL_NAMED(delete, delete-Carbon
, FMT_DEFAULT
),
585 NORMAL_SYSCALL(undelete
),
586 NORMAL_SYSCALL(revoke
),
587 NORMAL_SYSCALL(fsctl
),
588 SYSCALL(ffsctl
, FMT_FD
),
589 SYSCALL(chflags
, FMT_CHFLAGS
),
590 SYSCALL(fchflags
, FMT_FCHFLAGS
),
591 SYSCALL(fchdir
, FMT_FD
),
592 SYSCALL(pthread_fchdir
, FMT_FD
),
593 SYSCALL(futimes
, FMT_FD
),
594 NORMAL_SYSCALL(sync
),
595 NORMAL_SYSCALL(symlink
),
596 NORMAL_SYSCALL(readlink
),
597 SYSCALL_WITH_NOCANCEL(fsync
, FMT_FD
),
598 SYSCALL(fdatasync
, FMT_FD
),
599 SYSCALL_WITH_NOCANCEL(readv
, FMT_FD_IO
),
600 SYSCALL_WITH_NOCANCEL(writev
, FMT_FD_IO
),
601 SYSCALL_WITH_NOCANCEL(pread
, FMT_PREAD
),
602 SYSCALL_WITH_NOCANCEL(pwrite
, FMT_PREAD
),
603 NORMAL_SYSCALL(mkdir
),
604 NORMAL_SYSCALL(mkdir_extended
),
605 NORMAL_SYSCALL(mkfifo
),
606 NORMAL_SYSCALL(mkfifo_extended
),
607 NORMAL_SYSCALL(rmdir
),
608 NORMAL_SYSCALL(statfs
),
609 NORMAL_SYSCALL(statfs64
),
610 NORMAL_SYSCALL(getfsstat
),
611 NORMAL_SYSCALL(getfsstat64
),
612 SYSCALL(fstatfs
, FMT_FD
),
613 SYSCALL(fstatfs64
, FMT_FD
),
614 NORMAL_SYSCALL(pathconf
),
615 SYSCALL(fpathconf
, FMT_FD
),
616 SYSCALL(getdirentries
, FMT_FD_IO
),
617 SYSCALL(getdirentries64
, FMT_FD_IO
),
618 SYSCALL(lseek
, FMT_LSEEK
),
619 SYSCALL(truncate
, FMT_TRUNC
),
620 SYSCALL(ftruncate
, FMT_FTRUNC
),
621 SYSCALL(flock
, FMT_FLOCK
),
622 NORMAL_SYSCALL(getattrlist
),
623 NORMAL_SYSCALL(setattrlist
),
624 SYSCALL(fgetattrlist
, FMT_FD
),
625 SYSCALL(fsetattrlist
, FMT_FD
),
626 SYSCALL(getdirentriesattr
, FMT_FD
),
627 NORMAL_SYSCALL(exchangedata
),
628 NORMAL_SYSCALL(rename
),
629 NORMAL_SYSCALL(copyfile
),
630 NORMAL_SYSCALL(checkuseraccess
),
631 NORMAL_SYSCALL(searchfs
),
632 SYSCALL(aio_fsync
, FMT_AIO_FSYNC
),
633 SYSCALL(aio_return
, FMT_AIO_RETURN
),
634 SYSCALL_WITH_NOCANCEL(aio_suspend
, FMT_AIO_SUSPEND
),
635 SYSCALL(aio_cancel
, FMT_AIO_CANCEL
),
636 SYSCALL(aio_error
, FMT_AIO
),
637 SYSCALL(aio_read
, FMT_AIO
),
638 SYSCALL(aio_write
, FMT_AIO
),
639 SYSCALL(lio_listio
, FMT_LIO_LISTIO
),
640 SYSCALL_WITH_NOCANCEL(msync
, FMT_MSYNC
),
641 SYSCALL_WITH_NOCANCEL(fcntl
, FMT_FCNTL
),
642 SYSCALL(ioctl
, FMT_IOCTL
),
643 NORMAL_SYSCALL(fsgetpath
),
644 NORMAL_SYSCALL(getattrlistbulk
),
645 SYSCALL_WITH_NOCANCEL(openat
, FMT_OPENAT
), /* open_nocancel() was previously shown as "open_nocanel" (note spelling) */
646 SYSCALL(renameat
, FMT_RENAMEAT
),
647 SYSCALL(chmodat
, FMT_CHMODAT
),
648 SYSCALL(chownat
, FMT_AT
),
649 SYSCALL(fstatat
, FMT_AT
),
650 SYSCALL(fstatat64
, FMT_AT
),
651 SYSCALL(linkat
, FMT_AT
),
652 SYSCALL(unlinkat
, FMT_AT
),
653 SYSCALL(readlinkat
, FMT_AT
),
654 SYSCALL(symlinkat
, FMT_AT
),
655 SYSCALL(mkdirat
, FMT_AT
),
656 SYSCALL(getattrlistat
, FMT_AT
),
660 get_screenwidth(void)
666 if (isatty(STDOUT_FILENO
)) {
667 if (ioctl(1, TIOCGWINSZ
, &size
) != -1) {
668 columns
= size
.ws_col
;
670 if (columns
> MAXWIDTH
)
677 mach_to_nano(uint64_t mach
)
679 uint64_t nanoseconds
= 0;
680 assert(ktrace_convert_timestamp_to_nanoseconds(s
, mach
, &nanoseconds
) == 0);
690 myname
= getprogname();
692 fprintf(stderr
, "Usage: %s [-e] [-w] [-f mode] [-b] [-t seconds] [-R rawfile [-S start_time] [-E end_time]] [pid | cmd [pid | cmd] ...]\n", myname
);
693 fprintf(stderr
, " -e exclude the specified list of pids from the sample\n");
694 fprintf(stderr
, " and exclude fs_usage by default\n");
695 fprintf(stderr
, " -w force wider, detailed, output\n");
696 fprintf(stderr
, " -f output is based on the mode provided\n");
697 fprintf(stderr
, " mode = \"network\" Show network-related events\n");
698 fprintf(stderr
, " mode = \"filesys\" Show filesystem-related events\n");
699 fprintf(stderr
, " mode = \"pathname\" Show only pathname-related events\n");
700 fprintf(stderr
, " mode = \"exec\" Show only exec and spawn events\n");
701 fprintf(stderr
, " mode = \"diskio\" Show only disk I/O events\n");
702 fprintf(stderr
, " mode = \"cachehit\" In addition, show cache hits\n");
703 fprintf(stderr
, " -b annotate disk I/O events with BootCache info (if available)\n");
704 fprintf(stderr
, " -t specifies timeout in seconds (for use in automated tools)\n");
705 fprintf(stderr
, " -R specifies a raw trace file to process\n");
706 fprintf(stderr
, " -S if -R is specified, selects a start point in microseconds\n");
707 fprintf(stderr
, " -E if -R is specified, selects an end point in microseconds\n");
708 fprintf(stderr
, " pid selects process(s) to sample\n");
709 fprintf(stderr
, " cmd selects process(s) matching command string to sample\n");
710 fprintf(stderr
, "By default (no options) the following processes are excluded from the output:\n");
711 fprintf(stderr
, "fs_usage, Terminal, telnetd, sshd, rlogind, tcsh, csh, sh\n\n");
717 main(int argc
, char *argv
[])
721 bool exclude_pids
= false;
722 uint64_t time_limit_ns
= 0;
726 s
= ktrace_session_create();
729 while ((ch
= getopt(argc
, argv
, "bewf:R:S:E:t:W")) != -1) {
737 columns
= MAX_WIDE_MODE_COLS
;
741 include_waited_flag
= true;
745 if (!strcmp(optarg
, "network"))
746 filter_mode
|= NETWORK_FILTER
;
747 else if (!strcmp(optarg
, "filesys"))
748 filter_mode
|= FILESYS_FILTER
;
749 else if (!strcmp(optarg
, "cachehit"))
750 show_cachehits
= true;
751 else if (!strcmp(optarg
, "exec"))
752 filter_mode
|= EXEC_FILTER
;
753 else if (!strcmp(optarg
, "pathname"))
754 filter_mode
|= PATHNAME_FILTER
;
755 else if (!strcmp(optarg
, "diskio"))
756 filter_mode
|= DISKIO_FILTER
;
765 time_limit_ns
= (uint64_t)(NSEC_PER_SEC
* atof(optarg
));
766 if (time_limit_ns
== 0) {
767 fprintf(stderr
, "ERROR: could not set time limit to %s\n",
775 rv
= ktrace_set_file(s
, optarg
);
777 fprintf(stderr
, "ERROR: reading trace from '%s' failed (%s)\n", optarg
, strerror(errno
));
783 start_time_ns
= NSEC_PER_SEC
* atof(optarg
);
787 end_time_ns
= NSEC_PER_SEC
* atof(optarg
);
798 if (time_limit_ns
> 0) {
800 fprintf(stderr
, "NOTE: time limit ignored when a raw file is specified\n");
802 dispatch_after(dispatch_time(DISPATCH_TIME_NOW
, time_limit_ns
),
803 dispatch_get_global_queue(QOS_CLASS_USER_INITIATED
, 0),
811 if (geteuid() != 0) {
812 fprintf(stderr
, "'fs_usage' must be run as root...\n");
817 * ktrace can't both *in*clude and *ex*clude pids, so: if we are
818 * already excluding pids, or if we are not explicitly including
819 * or excluding any pids, then exclude the defaults.
821 * if on the other hand we are explicitly including pids, we'll
822 * filter the defaults out naturally.
824 if (exclude_pids
|| argc
== 0) {
825 ktrace_exclude_process(s
, "fs_usage");
826 ktrace_exclude_process(s
, "Terminal");
827 ktrace_exclude_process(s
, "telnetd");
828 ktrace_exclude_process(s
, "telnet");
829 ktrace_exclude_process(s
, "sshd");
830 ktrace_exclude_process(s
, "rlogind");
831 ktrace_exclude_process(s
, "tcsh");
832 ktrace_exclude_process(s
, "csh");
833 ktrace_exclude_process(s
, "sh");
834 ktrace_exclude_process(s
, "zsh");
835 #if TARGET_OS_EMBEDDED
836 ktrace_exclude_process(s
, "dropbear");
837 #endif /* TARGET_OS_EMBEDDED */
842 * If we're *in*cluding processes, also *in*clude the kernel_task, which
843 * issues trace points when disk I/Os complete. But set a flag for us to
844 * avoid showing events attributed to the kernel_task.
846 * If the user actually wants to those events, we'll change that flag in
849 if (argc
> 0 && !exclude_pids
) {
850 ktrace_filter_pid(s
, 0);
851 want_kernel_task
= false;
855 * Process the list of specified pids, and in/exclude them as
864 pid
= (pid_t
)strtoul(name
, &endptr
, 10);
866 if (*name
!= '\0' && *endptr
== '\0') {
868 rv
= ktrace_exclude_pid(s
, pid
);
871 want_kernel_task
= true;
873 rv
= ktrace_filter_pid(s
, pid
);
877 rv
= ktrace_exclude_process(s
, name
);
879 if (!strcmp(name
, "kernel_task"))
880 want_kernel_task
= true;
882 rv
= ktrace_filter_process(s
, name
);
887 fprintf(stderr
, "ERROR: cannot both include and exclude simultaneously\n");
897 /* provides SIGINT, SIGHUP, SIGPIPE, SIGTERM handlers */
898 ktrace_set_signal_handler(s
);
900 ktrace_set_completion_handler(s
, ^{
904 signal(SIGWINCH
, SIG_IGN
);
905 sigwinch_source
= dispatch_source_create(DISPATCH_SOURCE_TYPE_SIGNAL
, SIGWINCH
, 0, dispatch_get_main_queue());
906 dispatch_source_set_event_handler(sigwinch_source
, ^{
910 dispatch_activate(sigwinch_source
);
912 init_shared_cache_mapping();
916 setup_ktrace_callbacks();
918 ktrace_set_dropped_events_handler(s
, ^{
919 fprintf(stderr
, "fs_usage: buffer overrun, events generated too quickly\n");
921 /* clear any state that is now potentially invalid */
928 ktrace_set_default_event_names_enabled(KTRACE_FEATURE_DISABLED
);
929 ktrace_set_execnames_enabled(s
, KTRACE_FEATURE_LAZY
);
930 ktrace_set_vnode_paths_enabled(s
, true);
931 /* no need to symbolicate addresses */
932 ktrace_set_uuid_map_enabled(s
, KTRACE_FEATURE_DISABLED
);
934 rv
= ktrace_start(s
, dispatch_get_main_queue());
937 perror("ktrace_start");
947 setup_ktrace_callbacks(void)
949 ktrace_events_subclass(s
, DBG_MACH
, DBG_MACH_EXCP_SC
, ^(ktrace_event_t event
) {
952 type
= event
->debugid
& KDBG_EVENTID_MASK
;
954 if (type
== MSC_map_fd
) {
955 if (event
->debugid
& DBG_FUNC_START
) {
956 event_enter(type
, event
);
958 event_exit("map_fd", type
, event
, FMT_FD
);
963 ktrace_events_subclass(s
, DBG_MACH
, DBG_MACH_VM
, ^(ktrace_event_t event
) {
967 type
= event
->debugid
& KDBG_EVENTID_MASK
;
969 if (type
!= MACH_pageout
&& type
!= MACH_vmfault
)
972 if (event
->debugid
& DBG_FUNC_START
) {
973 event_enter(type
, event
);
978 event_exit("PAGE_OUT_ANON", type
, event
, FMT_PGOUT
);
980 event_exit("PAGE_OUT_FILE", type
, event
, FMT_PGOUT
);
985 if (event
->arg4
== DBG_PAGEIN_FAULT
)
986 event_exit("PAGE_IN", type
, event
, FMT_PGIN
);
987 else if (event
->arg4
== DBG_PAGEINV_FAULT
)
988 event_exit("PAGE_IN_FILE", type
, event
, FMT_PGIN
);
989 else if (event
->arg4
== DBG_PAGEIND_FAULT
)
990 event_exit("PAGE_IN_ANON", type
, event
, FMT_PGIN
);
991 else if (event
->arg4
== DBG_CACHE_HIT_FAULT
)
992 event_exit("CACHE_HIT", type
, event
, FMT_CACHEHIT
);
993 else if ((ti
= event_find(event
->threadid
, type
)))
1004 if (include_waited_flag
|| RAW_flag
) {
1005 ktrace_events_subclass(s
, DBG_MACH
, DBG_MACH_SCHED
, ^(ktrace_event_t event
) {
1008 type
= event
->debugid
& KDBG_EVENTID_MASK
;
1013 case MACH_stkhandoff
:
1014 event_mark_thread_waited(event
->threadid
);
1019 ktrace_events_subclass(s
, DBG_FSYSTEM
, DBG_FSRW
, ^(ktrace_event_t event
) {
1023 type
= event
->debugid
& KDBG_EVENTID_MASK
;
1026 case HFS_modify_block_end
:
1028 * the expected path here is as follows:
1030 * look up a path, which gets stored in ti->vnode / ti->pathname
1031 * modify a metadata block -- we assume the modification has something to do with the path that was looked up
1034 * later, someone writes that metadata block; the last path associated with it is attributed
1036 if ((ti
= event_find(event
->threadid
, 0))) {
1037 if (ti
->newest_pathname
)
1038 meta_add_name(event
->arg2
, ti
->newest_pathname
);
1044 if (event
->debugid
& DBG_FUNC_START
) {
1045 if ((ti
= event_find(event
->threadid
, 0)) && !ti
->vnodeid
) {
1046 ti
->vnodeid
= event
->arg1
;
1050 /* it can be both start and end */
1052 if (event
->debugid
& DBG_FUNC_END
) {
1053 if ((ti
= event_find(event
->threadid
, 0)) && ti
->vnodeid
) {
1054 const char *pathname
;
1056 pathname
= ktrace_get_path_for_vp(s
, ti
->vnodeid
);
1061 if (ti
->pathname
[0] == '\0') {
1062 strncpy(ti
->pathname
, pathname
, MAXPATHLEN
);
1063 ti
->newest_pathname
= ti
->pathname
;
1064 } else if (ti
->pathname2
[0] == '\0') {
1065 strncpy(ti
->pathname2
, pathname
, MAXPATHLEN
);
1066 ti
->newest_pathname
= ti
->pathname2
;
1075 if (type
!= Throttled
&& type
!= HFS_update
)
1078 if (event
->debugid
& DBG_FUNC_START
) {
1079 event_enter(type
, event
);
1083 event_exit(" THROTTLED", type
, event
, FMT_NOTHING
);
1087 event_exit(" HFS_update", type
, event
, FMT_HFS_update
);
1096 ktrace_events_subclass(s
, DBG_FSYSTEM
, DBG_DKRW
, ^(ktrace_event_t event
) {
1100 type
= event
->debugid
& KDBG_EVENTID_MASK
;
1102 if ((type
& P_DISKIO_MASK
) == P_DISKIO
) {
1103 diskio_start(type
, event
->arg1
, event
->arg2
, event
->arg3
, event
->arg4
, event
);
1104 } else if ((type
& P_DISKIO_MASK
) == P_DISKIO_DONE
) {
1105 if ((dio
= diskio_complete(event
->arg1
, event
->arg4
, event
->arg3
, event
->threadid
, event
->timestamp
, event
->walltime
))) {
1106 dio
->vnodeid
= event
->arg2
;
1113 ktrace_events_subclass(s
, DBG_FSYSTEM
, DBG_IOCTL
, ^(ktrace_event_t event
) {
1118 type
= event
->debugid
& KDBG_EVENTID_MASK
;
1121 case SPEC_unmap_info
:
1122 pid
= ktrace_get_pid_for_thread(s
, event
->threadid
);
1124 if (check_filter_mode(pid
, NULL
, SPEC_unmap_info
, 0, 0, "SPEC_unmap_info"))
1125 format_print(NULL
, " TrimExtent", event
, type
, FMT_UNMAP_INFO
, event
->timestamp
, event
->timestamp
, 0, "", NULL
);
1130 if (event
->debugid
& DBG_FUNC_START
) {
1131 event_enter(type
, event
);
1133 if (event
->arg2
== DKIOCSYNCHRONIZECACHE
)
1134 event_exit("IOCTL", type
, event
, FMT_IOCTL_SYNCCACHE
);
1135 else if (event
->arg2
== DKIOCUNMAP
)
1136 event_exit("IOCTL", type
, event
, FMT_IOCTL_UNMAP
);
1137 else if (event
->arg2
== DKIOCSYNCHRONIZE
&& (event
->debugid
& DBG_FUNC_ALL
) == DBG_FUNC_NONE
)
1138 event_exit("IOCTL", type
, event
, FMT_IOCTL_SYNC
);
1139 else if ((ti
= event_find(event
->threadid
, type
)))
1147 if (BC_flag
|| RAW_flag
) {
1148 ktrace_events_subclass(s
, DBG_FSYSTEM
, DBG_BOOTCACHE
, ^(ktrace_event_t event
) {
1152 type
= event
->debugid
& KDBG_EVENTID_MASK
;
1156 case BC_IO_HIT_STALLED
:
1158 case BC_IO_MISS_CUT_THROUGH
:
1159 case BC_PLAYBACK_IO
:
1160 if ((dio
= diskio_find(event
->arg1
)) != NULL
)
1161 dio
->bc_info
= type
;
1166 void (^bsd_sc_proc_cb
)(ktrace_event_t event
) = ^(ktrace_event_t event
) {
1170 type
= event
->debugid
& KDBG_EVENTID_MASK
;
1173 case BSC_exit
: /* see below */
1177 event
->arg1
= event
->arg2
>> 8;
1180 pid
= ktrace_get_pid_for_thread(s
, event
->threadid
);
1186 if (event
->arg4
& MAP_ANON
)
1192 if ((index
= BSC_INDEX(type
)) >= MAX_BSD_SYSCALL
)
1195 if (!bsd_syscalls
[index
].sc_name
)
1198 if (event
->debugid
& DBG_FUNC_START
) {
1199 event_enter(type
, event
);
1201 event_exit(bsd_syscalls
[index
].sc_name
, type
, event
, bsd_syscalls
[index
].sc_format
);
1205 ktrace_events_subclass(s
, DBG_BSD
, DBG_BSD_EXCP_SC
, bsd_sc_proc_cb
);
1206 ktrace_events_subclass(s
, DBG_BSD
, DBG_BSD_PROC
, bsd_sc_proc_cb
);
1208 ktrace_events_range(s
, KDBG_EVENTID(DBG_BSD
, DBG_BSD_SC_EXTENDED_INFO
, 0), KDBG_EVENTID(DBG_BSD
, DBG_BSD_SC_EXTENDED_INFO2
+ 1, 0), ^(ktrace_event_t event
) {
1209 extend_syscall(event
->threadid
, event
->debugid
& KDBG_EVENTID_MASK
, event
);
1212 ktrace_events_subclass(s
, DBG_CORESTORAGE
, DBG_CS_IO
, ^(ktrace_event_t event
) {
1213 // the usual DBG_FUNC_START/END does not work for i/o since it will
1214 // return on a different thread, this code uses the P_CS_IO_Done (0x4) bit
1215 // instead. the trace command doesn't know how handle either method
1216 // (unmatched start/end or 0x4) but works a little better this way.
1219 int cs_type
= event
->debugid
& P_CS_Type_Mask
; // strip out the done bit
1220 bool start
= (event
->debugid
& P_CS_IO_Done
) != P_CS_IO_Done
;
1223 case P_CS_ReadChunk
:
1224 case P_CS_WriteChunk
:
1226 case P_CS_MetaWrite
:
1228 diskio_start(cs_type
, event
->arg2
, event
->arg1
, event
->arg3
, event
->arg4
, event
);
1230 if ((dio
= diskio_complete(event
->arg2
, event
->arg4
, event
->arg3
, event
->threadid
, event
->timestamp
, event
->walltime
))) {
1237 case P_CS_TransformRead
:
1238 case P_CS_TransformWrite
:
1239 case P_CS_MigrationRead
:
1240 case P_CS_MigrationWrite
:
1242 diskio_start(cs_type
, event
->arg2
, CS_DEV
, event
->arg3
, event
->arg4
, event
);
1244 if ((dio
= diskio_complete(event
->arg2
, event
->arg4
, event
->arg3
, event
->threadid
, event
->timestamp
, event
->walltime
))) {
1254 ktrace_events_subclass(s
, DBG_CORESTORAGE
, 1 /* DBG_CS_SYNC */, ^(ktrace_event_t event
) {
1255 int cs_type
= event
->debugid
& P_CS_Type_Mask
; // strip out the done bit
1256 bool start
= (event
->debugid
& P_CS_IO_Done
) != P_CS_IO_Done
;
1258 if (cs_type
== P_CS_SYNC_DISK
) {
1260 event_enter(cs_type
, event
);
1262 event_exit(" SyncCacheCS", cs_type
, event
, FMT_SYNC_DISK_CS
);
1269 * Handle system call extended trace data.
1271 * Wipe out the kd args that were collected upon syscall_entry
1272 * because it is the extended info that we really want, and it
1273 * is all we really need.
1276 extend_syscall(uintptr_t thread
, int type
, ktrace_event_t event
)
1281 case BSC_mmap_extended
:
1282 if ((ti
= event_find(thread
, BSC_mmap
)) == NULL
)
1285 ti
->arg8
= ti
->arg3
; /* save protection */
1286 ti
->arg1
= event
->arg1
; /* the fd */
1287 ti
->arg3
= event
->arg2
; /* bottom half address */
1288 ti
->arg5
= event
->arg3
; /* bottom half size */
1291 case BSC_mmap_extended2
:
1292 if ((ti
= event_find(thread
, BSC_mmap
)) == NULL
)
1295 ti
->arg2
= event
->arg1
; /* top half address */
1296 ti
->arg4
= event
->arg2
; /* top half size */
1297 ti
->arg6
= event
->arg3
; /* top half file offset */
1298 ti
->arg7
= event
->arg4
; /* bottom half file offset */
1301 case BSC_msync_extended
:
1302 if ((ti
= event_find(thread
, BSC_msync
)) == NULL
) {
1303 if ((ti
= event_find(thread
, BSC_msync_nocancel
)) == NULL
)
1307 ti
->arg4
= event
->arg1
; /* top half address */
1308 ti
->arg5
= event
->arg2
; /* top half size */
1311 case BSC_pread_extended
:
1312 if ((ti
= event_find(thread
, BSC_pread
)) == NULL
) {
1313 if ((ti
= event_find(thread
, BSC_pread_nocancel
)) == NULL
)
1317 ti
->arg1
= event
->arg1
; /* the fd */
1318 ti
->arg2
= event
->arg2
; /* nbytes */
1319 ti
->arg3
= event
->arg3
; /* top half offset */
1320 ti
->arg4
= event
->arg4
; /* bottom half offset */
1323 case BSC_pwrite_extended
:
1324 if ((ti
= event_find(thread
, BSC_pwrite
)) == NULL
) {
1325 if ((ti
= event_find(thread
, BSC_pwrite_nocancel
)) == NULL
)
1329 ti
->arg1
= event
->arg1
; /* the fd */
1330 ti
->arg2
= event
->arg2
; /* nbytes */
1331 ti
->arg3
= event
->arg3
; /* top half offset */
1332 ti
->arg4
= event
->arg4
; /* bottom half offset */
1337 #pragma mark printing routines
1340 get_mode_nibble(char *buf
, unsigned long smode
, unsigned long special
, char x_on
, char x_off
)
1360 get_mode_string(unsigned long mode
, char *buf
)
1362 memset(buf
, '-', 9);
1365 get_mode_nibble(&buf
[6], mode
, (mode
& 01000), 't', 'T');
1366 get_mode_nibble(&buf
[3], (mode
>>3), (mode
& 02000), 's', 'S');
1367 get_mode_nibble(&buf
[0], (mode
>>6), (mode
& 04000), 's', 'S');
1371 clip_64bit(char *s
, uint64_t value
)
1375 if ( (value
& 0xff00000000000000LL
) )
1376 clen
= printf("%s0x%16.16qx", s
, value
);
1377 else if ( (value
& 0x00ff000000000000LL
) )
1378 clen
= printf("%s0x%14.14qx ", s
, value
);
1379 else if ( (value
& 0x0000ff0000000000LL
) )
1380 clen
= printf("%s0x%12.12qx ", s
, value
);
1381 else if ( (value
& 0x000000ff00000000LL
) )
1382 clen
= printf("%s0x%10.10qx ", s
, value
);
1384 clen
= printf("%s0x%8.8qx ", s
, value
);
1390 * ret = 1 means print the entry
1391 * ret = 0 means don't print the entry
1395 * meaning of filter flags:
1396 * cachehit turn on display of CACHE_HIT events (which are filtered out by default)
1398 * exec show exec/posix_spawn
1399 * pathname show events with a pathname and close()
1400 * diskio show disk I/Os
1401 * filesys show filesystem events
1402 * network show network events
1404 * filters may be combined; default is all filters on (except cachehit)
1407 check_filter_mode(pid_t pid
, th_info_t ti
, unsigned long type
, int error
, int retval
, char *sc_name
)
1410 int network_fd_isset
= 0;
1413 /* cachehit is special -- it's not on by default */
1414 if (sc_name
[0] == 'C' && !strcmp(sc_name
, "CACHE_HIT")) {
1415 return show_cachehits
;
1418 if (filter_mode
== DEFAULT_DO_NOT_FILTER
)
1421 if (filter_mode
& DISKIO_FILTER
) {
1422 if ((type
& P_DISKIO_MASK
) == P_DISKIO
)
1425 if (type
== Throttled
)
1429 if (filter_mode
& EXEC_FILTER
) {
1430 if (type
== BSC_execve
|| type
== BSC_posix_spawn
)
1434 if (filter_mode
& PATHNAME_FILTER
) {
1435 if (ti
&& ti
->pathname
[0])
1438 if (type
== BSC_close
|| type
== BSC_close_nocancel
||
1439 type
== BSC_guarded_close_np
)
1444 if (filter_mode
& FILESYS_FILTER
)
1452 case BSC_close_nocancel
:
1453 case BSC_guarded_close_np
:
1455 network_fd_isset
= fd_is_network(pid
, fd
);
1458 fd_set_is_network(pid
, fd
, false);
1460 if (network_fd_isset
) {
1461 if (filter_mode
& NETWORK_FILTER
)
1464 if (filter_mode
& FILESYS_FILTER
)
1472 case BSC_read_nocancel
:
1473 case BSC_write_nocancel
:
1475 * we don't care about error in these cases
1479 if (fd_is_network(pid
, fd
)) {
1480 if (filter_mode
& NETWORK_FILTER
)
1482 } else if (filter_mode
& FILESYS_FILTER
) {
1489 case BSC_accept_nocancel
:
1494 fd_set_is_network(pid
, fd
, true);
1496 if (filter_mode
& NETWORK_FILTER
)
1508 case BSC_sendto_nocancel
:
1509 case BSC_recvfrom_nocancel
:
1510 case BSC_recvmsg_nocancel
:
1511 case BSC_sendmsg_nocancel
:
1512 case BSC_connect_nocancel
:
1516 fd_set_is_network(pid
, fd
, true);
1518 if (filter_mode
& NETWORK_FILTER
)
1524 case BSC_select_nocancel
:
1525 case BSC_socketpair
:
1527 * Cannot determine info about file descriptors
1529 if (filter_mode
& NETWORK_FILTER
)
1537 * We track these cases for fd state only
1541 if (error
== 0 && fd_is_network(pid
, fd
)) {
1543 * then we are duping a socket descriptor
1545 fd
= retval
; /* the new fd */
1546 fd_set_is_network(pid
, fd
, true);
1552 if (filter_mode
& FILESYS_FILTER
)
1562 print_open(ktrace_event_t event
, uintptr_t flags
)
1564 char mode
[] = "______";
1566 if (flags
& O_RDWR
) {
1569 } else if (flags
& O_WRONLY
) {
1575 if (flags
& O_CREAT
) {
1578 if (flags
& O_APPEND
) {
1581 if (flags
& O_TRUNC
) {
1584 if (flags
& O_EXCL
) {
1589 return printf(" [%3d] (%s) ", (int)event
->arg1
, mode
);
1591 return printf(" F=%-3d (%s) ", (int)event
->arg2
, mode
);
1598 * exit_event() (syscalls etc.)
1599 * print_diskio() (disk I/Os)
1600 * block callback for TrimExtent
1603 format_print(th_info_t ti
, char *sc_name
, ktrace_event_t event
,
1604 unsigned long type
, int format
, uint64_t now
, uint64_t stime
,
1605 int waited
, const char *pathname
, struct diskio
*dio
)
1607 uint64_t secs
, usecs
;
1609 static time_t last_walltime_secs
= -1;
1610 const char *command_name
;
1615 unsigned long class;
1618 char *framework_name
;
1619 char *framework_type
;
1623 char cs_diskname
[32];
1624 unsigned long threadid
;
1625 struct timeval now_walltime
;
1627 static char timestamp
[32];
1628 static size_t timestamp_len
= 0;
1630 if (!mach_time_of_first_event
)
1631 mach_time_of_first_event
= now
;
1633 if (format
== FMT_DISKIO
|| format
== FMT_DISKIO_CS
) {
1638 if (format
!= FMT_UNMAP_INFO
)
1642 /* <rdar://problem/19852325> Filter out WindowServer/xcpm ioctls in fs_usage */
1643 if (type
== BSC_ioctl
&& ti
->arg2
== 0xffffffffc030581dUL
)
1646 /* honor -S and -E */
1648 uint64_t relative_time_ns
;
1650 relative_time_ns
= mach_to_nano(now
- mach_time_of_first_event
);
1652 if (relative_time_ns
< start_time_ns
|| relative_time_ns
> end_time_ns
)
1656 class = KDBG_EXTRACT_CLASS(type
);
1659 command_name
= dio
->issuing_command
;
1660 threadid
= dio
->issuing_thread
;
1661 pid
= dio
->issuing_pid
;
1662 now_walltime
= dio
->completed_walltime
;
1664 if (ti
&& ti
->command
[0] != '\0') {
1665 command_name
= ti
->command
;
1666 threadid
= ti
->thread
;
1669 command_name
= ktrace_get_execname_for_thread(s
, event
->threadid
);
1670 threadid
= event
->threadid
;
1671 pid
= ktrace_get_pid_for_thread(s
, event
->threadid
);
1674 now_walltime
= event
->walltime
;
1677 if (!want_kernel_task
&& pid
== 0)
1683 assert(now_walltime
.tv_sec
|| now_walltime
.tv_usec
);
1685 /* try and reuse the timestamp string */
1686 if (last_walltime_secs
!= now_walltime
.tv_sec
) {
1687 timestamp_len
= strftime(timestamp
, sizeof (timestamp
), "%H:%M:%S", localtime(&now_walltime
.tv_sec
));
1688 last_walltime_secs
= now_walltime
.tv_sec
;
1691 if (columns
> MAXCOLS
|| wideflag
) {
1692 tlen
= timestamp_len
;
1695 sprintf(×tamp
[tlen
], ".%06d", now_walltime
.tv_usec
);
1698 timestamp
[tlen
] = '\0';
1703 clen
= printf("%s %-17.17s", timestamp
, sc_name
);
1705 framework_name
= NULL
;
1707 if (columns
> MAXCOLS
|| wideflag
) {
1708 off_t offset_reassembled
= 0LL;
1712 clen
+= printf(" ");
1719 * pathname based system calls or
1720 * calls with no fd or pathname (i.e. sync)
1723 clen
+= printf(" [%3d] ", (int)event
->arg1
);
1725 clen
+= printf(" ");
1731 * fd based system call... no I/O
1734 clen
+= printf(" F=%-3d[%3d]", (int)ti
->arg1
, (int)event
->arg1
);
1736 clen
+= printf(" F=%-3d", (int)ti
->arg1
);
1745 clen
+= printf(" F=%-3d[%3d]", (int)ti
->arg1
, (int)event
->arg1
);
1747 clen
+= printf(" F=%-3d F=%-3d", (int)ti
->arg1
, (int)event
->arg2
);
1753 * system calls with fd's that return an I/O completion count
1756 clen
+= printf(" F=%-3d[%3d]", (int)ti
->arg1
, (int)event
->arg1
);
1758 clen
+= printf(" F=%-3d B=0x%-6lx", (int)ti
->arg1
, event
->arg2
);
1766 user_addr
= ((uint64_t)event
->arg1
<< 32) | (uint32_t)event
->arg2
;
1768 lookup_name(user_addr
, &framework_type
, &framework_name
);
1769 clen
+= clip_64bit(" A=", user_addr
);
1776 user_addr
= ((uint64_t)event
->arg1
<< 32) | (uint32_t)event
->arg2
;
1778 lookup_name(user_addr
, &framework_type
, &framework_name
);
1779 clen
+= clip_64bit(" A=", user_addr
);
1786 clen
+= printf(" B=0x%-8lx", event
->arg1
);
1789 case FMT_HFS_update
:
1791 static const struct {
1795 { DBG_HFS_UPDATE_SKIPPED
, 'S' },
1796 { DBG_HFS_UPDATE_FORCE
, 'F' },
1797 { DBG_HFS_UPDATE_MODIFIED
, 'M' },
1798 { DBG_HFS_UPDATE_MINOR
, 'N' },
1799 { DBG_HFS_UPDATE_DATEADDED
, 'd' },
1800 { DBG_HFS_UPDATE_CHGTIME
, 'c' },
1801 { DBG_HFS_UPDATE_ACCTIME
, 'a' },
1802 { DBG_HFS_UPDATE_MODTIME
, 'm' },
1807 int sflag
= (int)event
->arg2
;
1809 flagcount
= sizeof (hfsflags
) / sizeof (*hfsflags
);
1810 sbuf
= malloc(flagcount
+ 1);
1812 for (i
= 0; i
< flagcount
; i
++) {
1813 if (sflag
& hfsflags
[i
].flag
) {
1814 sbuf
[i
] = hfsflags
[i
].ch
;
1820 sbuf
[flagcount
] = '\0';
1822 clen
+= printf(" %*s(%s) ", 17 - flagcount
, "", sbuf
);
1826 pathname
= ktrace_get_path_for_vp(s
, event
->arg1
);
1840 if (dio
->io_errno
) {
1841 clen
+= printf(" D=0x%8.8lx [%3d]", dio
->blkno
, (int)dio
->io_errno
);
1844 clen
+= printf(" D=0x%8.8lx B=0x%-6lx BC:%s /dev/%s ", dio
->blkno
, dio
->iosize
, BC_STR(dio
->bc_info
), find_disk_name(dio
->dev
));
1846 clen
+= printf(" D=0x%8.8lx B=0x%-6lx /dev/%s ", dio
->blkno
, dio
->iosize
, find_disk_name(dio
->dev
));
1849 if (!(type
& P_DISKIO_READ
)) {
1850 pathname
= meta_find_name(dio
->blkno
);
1853 pathname
= ktrace_get_path_for_vp(s
, dio
->vnodeid
);
1869 clen
+= printf(" D=0x%8.8lx [%3lu]", dio
->blkno
, dio
->io_errno
);
1871 clen
+= printf(" D=0x%8.8lx B=0x%-6lx /dev/%s", dio
->blkno
, dio
->iosize
, generate_cs_disk_name(dio
->dev
, cs_diskname
));
1875 case FMT_SYNC_DISK_CS
:
1877 * physical disk sync cache
1879 clen
+= printf(" /dev/%s", generate_cs_disk_name(event
->arg1
, cs_diskname
));
1892 if (ti
->arg3
& MS_ASYNC
)
1893 mlen
+= sprintf(&buf
[mlen
], "MS_ASYNC | ");
1895 mlen
+= sprintf(&buf
[mlen
], "MS_SYNC | ");
1897 if (ti
->arg3
& MS_INVALIDATE
)
1898 mlen
+= sprintf(&buf
[mlen
], "MS_INVALIDATE | ");
1899 if (ti
->arg3
& MS_KILLPAGES
)
1900 mlen
+= sprintf(&buf
[mlen
], "MS_KILLPAGES | ");
1901 if (ti
->arg3
& MS_DEACTIVATE
)
1902 mlen
+= sprintf(&buf
[mlen
], "MS_DEACTIVATE | ");
1904 if (ti
->arg3
& ~(MS_ASYNC
| MS_SYNC
| MS_INVALIDATE
| MS_KILLPAGES
| MS_DEACTIVATE
))
1905 mlen
+= sprintf(&buf
[mlen
], "UNKNOWN | ");
1908 buf
[mlen
- 3] = '\0';
1911 clen
+= printf(" [%3d]", (int)event
->arg1
);
1913 user_addr
= (((off_t
)(unsigned int)(ti
->arg4
)) << 32) | (unsigned int)(ti
->arg1
);
1914 clen
+= clip_64bit(" A=", user_addr
);
1916 user_size
= (((off_t
)(unsigned int)(ti
->arg5
)) << 32) | (unsigned int)(ti
->arg2
);
1918 clen
+= printf(" B=0x%-16qx <%s>", user_size
, buf
);
1932 if (ti
->arg2
& LOCK_SH
)
1933 mlen
+= sprintf(&buf
[mlen
], "LOCK_SH | ");
1934 if (ti
->arg2
& LOCK_EX
)
1935 mlen
+= sprintf(&buf
[mlen
], "LOCK_EX | ");
1936 if (ti
->arg2
& LOCK_NB
)
1937 mlen
+= sprintf(&buf
[mlen
], "LOCK_NB | ");
1938 if (ti
->arg2
& LOCK_UN
)
1939 mlen
+= sprintf(&buf
[mlen
], "LOCK_UN | ");
1941 if (ti
->arg2
& ~(LOCK_SH
| LOCK_EX
| LOCK_NB
| LOCK_UN
))
1942 mlen
+= sprintf(&buf
[mlen
], "UNKNOWN | ");
1945 buf
[mlen
- 3] = '\0';
1948 clen
+= printf(" F=%-3d[%3d] <%s>", (int)ti
->arg1
, (int)event
->arg1
, buf
);
1950 clen
+= printf(" F=%-3d <%s>", (int)ti
->arg1
, buf
);
1964 clen
+= printf(" F=%-3d[%3d]", (int)ti
->arg1
, (int)event
->arg1
);
1966 clen
+= printf(" F=%-3d", (int)ti
->arg1
);
2029 case F_PATHPKG_CHECK
:
2030 p
= "PATHPKG_CHECK";
2036 if (event
->arg1
== 0)
2037 fd
= (int)event
->arg2
;
2044 case F_CHECK_OPENEVT
:
2045 p
= "CHECK_OPENEVT";
2055 case F_GLOBAL_NOCACHE
:
2057 p
= "CACHING OFF (GLOBAL)";
2059 p
= "CACHING ON (GLOBAL)";
2066 clen
+= printf(" <%s>", p
);
2068 clen
+= printf(" <%s> F=%d", p
, fd
);
2070 clen
+= printf(" <CMD=%d>", (int)ti
->arg2
);
2082 clen
+= printf(" F=%-3d[%3d]", (int)ti
->arg1
, (int)event
->arg1
);
2084 clen
+= printf(" F=%-3d", (int)ti
->arg1
);
2086 clen
+= printf(" <CMD=0x%x>", (int)ti
->arg2
);
2091 case FMT_IOCTL_SYNC
:
2096 clen
+= printf(" <DKIOCSYNCHRONIZE> B=%lu /dev/%s", event
->arg3
, find_disk_name(event
->arg1
));
2101 case FMT_IOCTL_SYNCCACHE
:
2106 clen
+= printf(" <DKIOCSYNCHRONIZECACHE> /dev/%s", find_disk_name(event
->arg1
));
2111 case FMT_IOCTL_UNMAP
:
2116 clen
+= printf(" <DKIOCUNMAP> /dev/%s", find_disk_name(event
->arg1
));
2121 case FMT_UNMAP_INFO
:
2123 clen
+= printf(" D=0x%8.8lx B=0x%-6lx /dev/%s", event
->arg2
, event
->arg3
, find_disk_name(event
->arg1
));
2133 clen
+= printf(" [%3d]", (int)event
->arg1
);
2135 clen
+= printf(" S=%-3d", (int)event
->arg2
);
2142 * pread, pwrite, lseek
2144 clen
+= printf(" F=%-3d", (int)ti
->arg1
);
2147 clen
+= printf("[%3d] ", (int)event
->arg1
);
2149 if (format
== FMT_PREAD
)
2150 clen
+= printf(" B=0x%-8lx ", event
->arg2
);
2152 clen
+= printf(" ");
2155 if (format
== FMT_PREAD
)
2156 offset_reassembled
= (((off_t
)(unsigned int)(ti
->arg3
)) << 32) | (unsigned int)(ti
->arg4
);
2159 offset_reassembled
= (((off_t
)(unsigned int)(arg2
)) << 32) | (unsigned int)(arg3
);
2161 offset_reassembled
= (((off_t
)(unsigned int)(event
->arg3
)) << 32) | (unsigned int)(event
->arg2
);
2164 clen
+= clip_64bit("O=", offset_reassembled
);
2166 if (format
== FMT_LSEEK
) {
2169 if (ti
->arg3
== SEEK_SET
)
2171 else if (ti
->arg3
== SEEK_CUR
)
2173 else if (ti
->arg3
== SEEK_END
)
2178 clen
+= printf(" <%s>", mode
);
2187 clen
+= printf(" F=%-3d ", (int)ti
->arg1
);
2190 clen
+= printf("[%3d] ", (int)event
->arg1
);
2192 user_addr
= (((off_t
)(unsigned int)(ti
->arg2
)) << 32) | (unsigned int)(ti
->arg3
);
2194 clen
+= clip_64bit("A=", user_addr
);
2196 offset_reassembled
= (((off_t
)(unsigned int)(ti
->arg6
)) << 32) | (unsigned int)(ti
->arg7
);
2198 clen
+= clip_64bit("O=", offset_reassembled
);
2200 user_size
= (((off_t
)(unsigned int)(ti
->arg4
)) << 32) | (unsigned int)(ti
->arg5
);
2202 clen
+= printf("B=0x%-16qx", user_size
);
2204 clen
+= printf(" <");
2206 if (ti
->arg8
& PROT_READ
)
2207 clen
+= printf("READ");
2209 if (ti
->arg8
& PROT_WRITE
)
2210 clen
+= printf("|WRITE");
2212 if (ti
->arg8
& PROT_EXEC
)
2213 clen
+= printf("|EXEC");
2215 clen
+= printf(">");
2223 * ftruncate, truncate
2225 if (format
== FMT_FTRUNC
)
2226 clen
+= printf(" F=%-3d", (int)ti
->arg1
);
2228 clen
+= printf(" ");
2231 clen
+= printf("[%3d]", (int)event
->arg1
);
2234 offset_reassembled
= (((off_t
)(unsigned int)(ti
->arg2
)) << 32) | (unsigned int)(ti
->arg3
);
2236 offset_reassembled
= (((off_t
)(unsigned int)(ti
->arg3
)) << 32) | (unsigned int)(ti
->arg2
);
2238 clen
+= clip_64bit(" O=", offset_reassembled
);
2251 if (format
== FMT_FCHFLAGS
) {
2253 clen
+= printf(" F=%-3d[%3d]", (int)ti
->arg1
, (int)event
->arg1
);
2255 clen
+= printf(" F=%-3d", (int)ti
->arg1
);
2258 clen
+= printf(" [%3d] ", (int)event
->arg1
);
2264 if (ti
->arg2
& UF_NODUMP
)
2265 mlen
+= sprintf(&buf
[mlen
], "UF_NODUMP | ");
2266 if (ti
->arg2
& UF_IMMUTABLE
)
2267 mlen
+= sprintf(&buf
[mlen
], "UF_IMMUTABLE | ");
2268 if (ti
->arg2
& UF_APPEND
)
2269 mlen
+= sprintf(&buf
[mlen
], "UF_APPEND | ");
2270 if (ti
->arg2
& UF_OPAQUE
)
2271 mlen
+= sprintf(&buf
[mlen
], "UF_OPAQUE | ");
2272 if (ti
->arg2
& SF_ARCHIVED
)
2273 mlen
+= sprintf(&buf
[mlen
], "SF_ARCHIVED | ");
2274 if (ti
->arg2
& SF_IMMUTABLE
)
2275 mlen
+= sprintf(&buf
[mlen
], "SF_IMMUTABLE | ");
2276 if (ti
->arg2
& SF_APPEND
)
2277 mlen
+= sprintf(&buf
[mlen
], "SF_APPEND | ");
2280 mlen
+= sprintf(&buf
[mlen
], "CLEAR_ALL_FLAGS | ");
2281 else if (ti
->arg2
& ~(UF_NODUMP
| UF_IMMUTABLE
| UF_APPEND
| SF_ARCHIVED
| SF_IMMUTABLE
| SF_APPEND
))
2282 mlen
+= sprintf(&buf
[mlen
], "UNKNOWN | ");
2291 memset(&buf
[mlen
], ' ', 19 - mlen
);
2296 clen
+= printf("%s", buf
);
2304 case FMT_FCHMOD_EXT
:
2310 * fchmod, fchmod_extended, chmod, chmod_extended
2314 if (format
== FMT_FCHMOD
|| format
== FMT_FCHMOD_EXT
) {
2316 clen
+= printf(" F=%-3d[%3d] ", (int)ti
->arg1
, (int)event
->arg1
);
2318 clen
+= printf(" F=%-3d ", (int)ti
->arg1
);
2321 clen
+= printf(" [%3d] ", (int)event
->arg1
);
2323 clen
+= printf(" ");
2326 if (format
== FMT_UMASK
)
2328 else if (format
== FMT_FCHMOD
|| format
== FMT_CHMOD
|| format
== FMT_CHMODAT
)
2333 get_mode_string(mode
, &buf
[0]);
2335 if (event
->arg1
== 0)
2336 clen
+= printf("<%s> ", buf
);
2338 clen
+= printf("<%s>", buf
);
2349 memset(mode
, '_', 4);
2352 if (ti
->arg2
& R_OK
)
2354 if (ti
->arg2
& W_OK
)
2356 if (ti
->arg2
& X_OK
)
2358 if (ti
->arg2
== F_OK
)
2362 clen
+= printf(" [%3d] (%s) ", (int)event
->arg1
, mode
);
2364 clen
+= printf(" (%s) ", mode
);
2373 clen
+= printf(" [%3d] <FLGS=0x%lx> ", (int)event
->arg1
, ti
->arg3
);
2375 clen
+= printf(" <FLGS=0x%lx> ", ti
->arg3
);
2385 if (ti
->arg2
& MNT_FORCE
)
2386 mountflag
= "<FORCE>";
2391 clen
+= printf(" [%3d] %s ", (int)event
->arg1
, mountflag
);
2393 clen
+= printf(" %s ", mountflag
);
2400 clen
+= print_open(event
, ti
->arg2
);
2405 clen
+= print_open(event
, ti
->arg3
);
2436 domain
= "AF_IMPLINK";
2446 type
= "SOCK_STREAM";
2449 type
= "SOCK_DGRAM";
2460 clen
+= printf(" [%3d] <%s, %s, 0x%lx>", (int)event
->arg1
, domain
, type
, ti
->arg3
);
2462 clen
+= printf(" F=%-3d <%s, %s, 0x%lx>", (int)event
->arg2
, domain
, type
, ti
->arg3
);
2470 * aio_fsync [errno] AIOCBP OP
2474 if (ti
->arg1
== O_SYNC
|| ti
->arg1
== 0)
2477 else if (ti
->arg1
== O_DSYNC
)
2484 clen
+= printf(" [%3d] P=0x%8.8lx <%s>", (int)event
->arg1
, ti
->arg2
, op
);
2486 clen
+= printf(" P=0x%8.8lx <%s>", ti
->arg2
, op
);
2491 case FMT_AIO_RETURN
:
2493 * aio_return [errno] AIOCBP IOSIZE
2496 clen
+= printf(" [%3d] P=0x%8.8lx", (int)event
->arg1
, ti
->arg1
);
2498 clen
+= printf(" P=0x%8.8lx B=0x%-8lx", ti
->arg1
, event
->arg2
);
2502 case FMT_AIO_SUSPEND
:
2504 * aio_suspend [errno] NENTS
2507 clen
+= printf(" [%3d] N=%d", (int)event
->arg1
, (int)ti
->arg2
);
2509 clen
+= printf(" N=%d", (int)ti
->arg2
);
2513 case FMT_AIO_CANCEL
:
2515 * aio_cancel [errno] FD or AIOCBP (if non-null)
2519 clen
+= printf(" [%3d] P=0x%8.8lx", (int)event
->arg1
, ti
->arg2
);
2521 clen
+= printf(" P=0x%8.8lx", ti
->arg2
);
2524 clen
+= printf(" F=%-3d[%3d]", (int)ti
->arg1
, (int)event
->arg1
);
2526 clen
+= printf(" F=%-3d", (int)ti
->arg1
);
2533 * aio_error, aio_read, aio_write [errno] AIOCBP
2536 clen
+= printf(" [%3d] P=0x%8.8lx", (int)event
->arg1
, ti
->arg1
);
2538 clen
+= printf(" P=0x%8.8lx", ti
->arg1
);
2542 case FMT_LIO_LISTIO
: {
2544 * lio_listio [errno] NENTS MODE
2548 if (ti
->arg1
== LIO_NOWAIT
)
2550 else if (ti
->arg1
== LIO_WAIT
)
2556 clen
+= printf(" [%3d] N=%d <%s>", (int)event
->arg1
, (int)ti
->arg3
, op
);
2558 clen
+= printf(" N=%d <%s>", (int)ti
->arg3
, op
);
2566 * Calculate space available to print pathname
2568 if (columns
> MAXCOLS
|| wideflag
)
2569 clen
= columns
- (clen
+ 14 + 20 + 11);
2571 clen
= columns
- (clen
+ 14 + 12);
2576 if (framework_name
) {
2577 len
= sprintf(&buf
[0], " %s %s ", framework_type
, framework_name
);
2578 } else if (*pathname
!= '\0') {
2583 len
= sprintf(&buf
[0], " [%d]/%s ", (int)ti
->arg1
, pathname
);
2586 len
= sprintf(&buf
[0], " [%d]/%s ", (int)ti
->arg3
, pathname
);
2589 len
= sprintf(&buf
[0], " %s ", pathname
);
2592 if (format
== FMT_MOUNT
&& ti
->pathname2
[0] != '\0') {
2595 memset(&buf
[len
], ' ', 2);
2597 len2
= sprintf(&buf
[len
+2], " %s ", ti
->pathname2
);
2598 len
= len
+ 2 + len2
;
2606 * Add null padding if column length
2607 * is wider than the pathname length.
2609 memset(&buf
[len
], ' ', clen
- len
);
2613 } else if (clen
== len
) {
2615 } else if ((clen
> 0) && (clen
< len
)) {
2617 * This prints the tail end of the pathname
2619 buf
[len
-clen
] = ' ';
2621 pathname
= &buf
[len
- clen
];
2627 * fudge some additional system call overhead
2628 * that currently isn't tracked... this also
2629 * insures that we see a minimum of 1 us for
2632 usecs
= (mach_to_nano(now
- stime
) + (NSEC_PER_USEC
- 1)) / NSEC_PER_USEC
;
2633 secs
= usecs
/ USEC_PER_SEC
;
2634 usecs
-= secs
* USEC_PER_SEC
;
2646 if (columns
> MAXCOLS
|| wideflag
)
2647 printf("%s%s %3llu.%06llu%s %s.%lu\n", p1
, pathname
, secs
, usecs
, p2
, command_name
, threadid
);
2649 printf("%s%s %3llu.%06llu%s %-12.12s\n", p1
, pathname
, secs
, usecs
, p2
, command_name
);
2655 #pragma mark metadata info hash routines
2657 #define VN_HASH_SIZE 16384
2658 #define VN_HASH_MASK (VN_HASH_SIZE - 1)
2660 typedef struct meta_info
{
2661 struct meta_info
*m_next
;
2663 char m_name
[MAXPATHLEN
];
2666 meta_info_t m_info_hash
[VN_HASH_SIZE
];
2669 meta_add_name(uint64_t blockno
, const char *pathname
)
2674 hashid
= blockno
& VN_HASH_MASK
;
2676 for (mi
= m_info_hash
[hashid
]; mi
; mi
= mi
->m_next
) {
2677 if (mi
->m_blkno
== blockno
)
2682 mi
= malloc(sizeof (struct meta_info
));
2684 mi
->m_next
= m_info_hash
[hashid
];
2685 m_info_hash
[hashid
] = mi
;
2686 mi
->m_blkno
= blockno
;
2689 strncpy(mi
->m_name
, pathname
, sizeof (mi
->m_name
));
2693 meta_find_name(uint64_t blockno
)
2698 hashid
= blockno
& VN_HASH_MASK
;
2700 for (mi
= m_info_hash
[hashid
]; mi
; mi
= mi
->m_next
) {
2701 if (mi
->m_blkno
== blockno
)
2709 meta_delete_all(void)
2711 meta_info_t mi
, next
;
2714 for (i
= 0; i
< HASH_MASK
; i
++) {
2715 for (mi
= m_info_hash
[i
]; mi
; mi
= next
) {
2721 m_info_hash
[i
] = NULL
;
2725 #pragma mark event ("thread info") routines
2727 th_info_t th_info_hash
[HASH_SIZE
];
2728 th_info_t th_info_freelist
;
2731 add_event(ktrace_event_t event
, int type
)
2735 unsigned long eventid
;
2737 if ((ti
= th_info_freelist
))
2738 th_info_freelist
= ti
->next
;
2740 ti
= malloc(sizeof (struct th_info
));
2742 bzero(ti
, sizeof (struct th_info
));
2744 hashid
= event
->threadid
& HASH_MASK
;
2746 ti
->next
= th_info_hash
[hashid
];
2747 th_info_hash
[hashid
] = ti
;
2749 eventid
= event
->debugid
& KDBG_EVENTID_MASK
;
2751 if (eventid
== BSC_execve
|| eventid
== BSC_posix_spawn
) {
2752 const char *command
;
2754 command
= ktrace_get_execname_for_thread(s
, event
->threadid
);
2759 strncpy(ti
->command
, command
, sizeof (ti
->command
));
2760 ti
->command
[MAXCOMLEN
] = '\0';
2763 ti
->thread
= event
->threadid
;
2770 event_find(uintptr_t thread
, int type
)
2775 hashid
= thread
& HASH_MASK
;
2777 for (ti
= th_info_hash
[hashid
]; ti
; ti
= ti
->next
) {
2778 if (ti
->thread
== thread
) {
2779 if (type
== ti
->type
)
2791 event_delete(th_info_t ti_to_delete
)
2797 hashid
= ti_to_delete
->thread
& HASH_MASK
;
2799 if ((ti
= th_info_hash
[hashid
])) {
2800 if (ti
== ti_to_delete
)
2801 th_info_hash
[hashid
] = ti
->next
;
2805 for (ti
= ti
->next
; ti
; ti
= ti
->next
) {
2806 if (ti
== ti_to_delete
) {
2807 ti_prev
->next
= ti
->next
;
2814 ti
->next
= th_info_freelist
;
2815 th_info_freelist
= ti
;
2821 event_delete_all(void)
2824 th_info_t ti_next
= 0;
2827 for (i
= 0; i
< HASH_SIZE
; i
++) {
2829 for (ti
= th_info_hash
[i
]; ti
; ti
= ti_next
) {
2831 ti
->next
= th_info_freelist
;
2832 th_info_freelist
= ti
;
2834 th_info_hash
[i
] = 0;
2839 event_enter(int type
, ktrace_event_t event
)
2850 case P_CS_SYNC_DISK
:
2860 if ((type
& CSC_MASK
) == BSC_BASE
) {
2861 if ((index
= BSC_INDEX(type
)) < MAX_BSD_SYSCALL
&& bsd_syscalls
[index
].sc_name
)
2868 if ((ti
= add_event(event
, type
)) == NULL
)
2871 ti
->stime
= event
->timestamp
;
2872 ti
->arg1
= event
->arg1
;
2873 ti
->arg2
= event
->arg2
;
2874 ti
->arg3
= event
->arg3
;
2875 ti
->arg4
= event
->arg4
;
2879 event_exit(char *sc_name
, int type
, ktrace_event_t event
, int format
)
2884 if ((ti
= event_find(event
->threadid
, type
)) == NULL
)
2887 pid
= ktrace_get_pid_for_thread(s
, event
->threadid
);
2889 if (check_filter_mode(pid
, ti
, type
, (int)event
->arg1
, (int)event
->arg2
, sc_name
)) {
2890 const char *pathname
;
2894 /* most things are just interested in the first lookup */
2895 if (ti
->pathname
[0] != '\0')
2896 pathname
= ti
->pathname
;
2901 format_print(ti
, sc_name
, event
, type
, format
, event
->timestamp
, ti
->stime
, ti
->waited
, pathname
, NULL
);
2908 event_mark_thread_waited(uintptr_t thread
)
2913 hashid
= thread
& HASH_MASK
;
2915 for (ti
= th_info_hash
[hashid
]; ti
; ti
= ti
->next
) {
2916 if (ti
->thread
== thread
)
2921 #pragma mark network fd set routines
2924 struct pid_fd_set
*next
;
2927 size_t setsize
; /* number of *bytes*, not bits */
2930 struct pid_fd_set
*pfs_hash
[HASH_SIZE
];
2932 static struct pid_fd_set
*
2935 struct pid_fd_set
*pfs
;
2940 hashid
= pid
& HASH_MASK
;
2942 for (pfs
= pfs_hash
[hashid
]; pfs
; pfs
= pfs
->next
) {
2943 if (pfs
->pid
== pid
) {
2948 pfs
= calloc(1, sizeof (struct pid_fd_set
));
2953 pfs
->next
= pfs_hash
[hashid
];
2954 pfs_hash
[hashid
] = pfs
;
2960 fd_clear_pid(pid_t pid
)
2962 struct pid_fd_set
*pfs
, *prev
;
2968 hashid
= pid
& HASH_MASK
;
2970 pfs
= pfs_hash
[hashid
];
2974 if (pfs
->pid
== pid
) {
2976 prev
->next
= pfs
->next
;
2978 pfs_hash
[hashid
] = pfs
->next
;
2995 struct pid_fd_set
*pfs
, *next
;
2998 for (i
= 0; i
< HASH_SIZE
; i
++) {
2999 for (pfs
= pfs_hash
[i
]; pfs
; pfs
= next
) {
3011 fd_set_is_network(pid_t pid
, unsigned long fd
, bool set
)
3013 struct pid_fd_set
*pfs
;
3022 if (fd
>= pfs
->setsize
* CHAR_BIT
) {
3027 newsize
= MAX((fd
+ CHAR_BIT
) / CHAR_BIT
, 2 * pfs
->setsize
);
3028 pfs
->set
= reallocf(pfs
->set
, newsize
);
3029 assert(pfs
->set
!= NULL
);
3031 bzero(pfs
->set
+ pfs
->setsize
, newsize
- pfs
->setsize
);
3032 pfs
->setsize
= newsize
;
3036 setbit(pfs
->set
, fd
);
3038 clrbit(pfs
->set
, fd
);
3042 fd_is_network(pid_t pid
, unsigned long fd
)
3044 struct pid_fd_set
*pfs
;
3051 if (fd
>= pfs
->setsize
* CHAR_BIT
) {
3055 return isset(pfs
->set
, fd
);
3058 #pragma mark shared region address lookup routines
3060 #define MAXINDEX 2048
3062 struct library_range
{
3067 struct library_info
{
3074 struct library_range framework32
= {0, 0};
3075 struct library_range framework64
= {0, 0};
3076 struct library_range framework64h
= {0, 0};
3078 struct library_info library_infos
[MAXINDEX
];
3079 int num_libraries
= 0;
3087 #define LINKEDIT_R 6
3090 sort_library_addresses(void)
3092 library_infos
[num_libraries
].b_address
= library_infos
[num_libraries
- 1].b_address
+ 0x800000;
3093 library_infos
[num_libraries
].e_address
= library_infos
[num_libraries
].b_address
;
3094 library_infos
[num_libraries
].name
= NULL
;
3096 qsort_b(library_infos
, num_libraries
, sizeof (struct library_info
), ^int(const void *aa
, const void *bb
) {
3097 struct library_info
*a
= (struct library_info
*)aa
;
3098 struct library_info
*b
= (struct library_info
*)bb
;
3100 if (a
->b_address
< b
->b_address
) return -1;
3101 if (a
->b_address
== b
->b_address
) return 0;
3107 scanline(char *inputstring
, char **argv
, int maxtokens
)
3110 char **ap
= argv
, *p
, *val
;
3112 for (p
= inputstring
; n
< maxtokens
&& p
!= NULL
; ) {
3113 while ((val
= strsep(&p
, " \t")) != NULL
&& *val
== '\0') ;
3125 read_shared_cache_map(const char *path
, struct library_range
*lr
, char *linkedit_name
)
3127 uint64_t b_address
, e_address
;
3129 char *fnp
, *fn_tofree
;
3131 char frameworkName
[256];
3135 int linkedit_found
= 0;
3136 char *substring
, *ptr
;
3138 bzero(buf
, sizeof(buf
));
3139 bzero(tokens
, sizeof(tokens
));
3144 if ((fd
= fopen(path
, "r")) == 0)
3147 while (fgets(buf
, 1023, fd
)) {
3148 if (strncmp(buf
, "mapping", 7))
3152 buf
[strlen(buf
)-1] = 0;
3154 frameworkName
[0] = 0;
3158 * Extract lib name from path name
3160 if ((substring
= strrchr(buf
, '.'))) {
3162 * There is a ".": name is whatever is between the "/" around the "."
3164 while ( *substring
!= '/') /* find "/" before "." */
3169 strncpy(frameworkName
, substring
, 256); /* copy path from "/" */
3170 frameworkName
[255] = 0;
3171 substring
= frameworkName
;
3173 while ( *substring
!= '/' && *substring
) /* find "/" after "." and stop string there */
3179 * No ".": take segment after last "/"
3186 substring
= ptr
+ 1;
3190 strncpy(frameworkName
, substring
, 256);
3191 frameworkName
[255] = 0;
3194 fnp
= malloc(strlen(frameworkName
) + 1);
3196 strcpy(fnp
, frameworkName
);
3198 while (fgets(buf
, 1023, fd
) && num_libraries
< (MAXINDEX
- 2)) {
3202 buf
[strlen(buf
)-1] = 0;
3204 ntokens
= scanline(buf
, tokens
, 64);
3209 if (strncmp(tokens
[0], "__TEXT", 6) == 0)
3211 else if (strncmp(tokens
[0], "__DATA", 6) == 0)
3213 else if (strncmp(tokens
[0], "__OBJC", 6) == 0)
3215 else if (strncmp(tokens
[0], "__IMPORT", 8) == 0)
3217 else if (strncmp(tokens
[0], "__UNICODE", 9) == 0)
3219 else if (strncmp(tokens
[0], "__IMAGE", 7) == 0)
3221 else if (strncmp(tokens
[0], "__LINKEDIT", 10) == 0)
3226 if (type
== LINKEDIT_R
&& linkedit_found
)
3230 b_address
= strtoull(tokens
[1], 0, 16);
3231 e_address
= strtoull(tokens
[3], 0, 16);
3233 library_infos
[num_libraries
].b_address
= b_address
;
3234 library_infos
[num_libraries
].e_address
= e_address
;
3235 library_infos
[num_libraries
].r_type
= type
;
3237 if (type
== LINKEDIT_R
) {
3238 library_infos
[num_libraries
].name
= linkedit_name
;
3241 library_infos
[num_libraries
].name
= fnp
;
3245 printf("%s(%d): %qx-%qx\n", frameworkInfo
[numFrameworks
].name
, type
, b_address
, e_address
);
3247 if (lr
->b_address
== 0 || b_address
< lr
->b_address
)
3248 lr
->b_address
= b_address
;
3250 if (lr
->e_address
== 0 || e_address
> lr
->e_address
)
3251 lr
->e_address
= e_address
;
3256 if (type
== LINKEDIT_R
)
3262 if (fgets(buf
, 1023, fd
) == 0)
3265 buf
[strlen(buf
)-1] = 0;
3271 printf("%s range, %qx-%qx\n", path
, lr
->b_address
, lr
->e_address
);
3277 init_shared_cache_mapping(void)
3279 read_shared_cache_map("/var/db/dyld/dyld_shared_cache_i386.map", &framework32
, "/var/db/dyld/dyld_shared_cache_i386");
3281 if (0 == read_shared_cache_map("/var/db/dyld/dyld_shared_cache_x86_64h.map", &framework64h
, "/var/db/dyld/dyld_shared_cache_x86_64h")) {
3282 read_shared_cache_map("/var/db/dyld/dyld_shared_cache_x86_64.map", &framework64
, "/var/db/dyld/dyld_shared_cache_x86_64");
3285 sort_library_addresses();
3289 lookup_name(uint64_t user_addr
, char **type
, char **name
)
3294 static char *frameworkType
[] = {
3307 if (num_libraries
) {
3308 if ((user_addr
>= framework32
.b_address
&& user_addr
< framework32
.e_address
) ||
3309 (user_addr
>= framework64
.b_address
&& user_addr
< framework64
.e_address
) ||
3310 (user_addr
>= framework64h
.b_address
&& user_addr
< framework64h
.e_address
)) {
3313 last
= num_libraries
;
3315 for (i
= num_libraries
/ 2; start
< last
; i
= start
+ ((last
- start
) / 2)) {
3316 if (user_addr
> library_infos
[i
].e_address
)
3322 if (start
< num_libraries
&&
3323 user_addr
>= library_infos
[start
].b_address
&& user_addr
< library_infos
[start
].e_address
) {
3324 *type
= frameworkType
[library_infos
[start
].r_type
];
3325 *name
= library_infos
[start
].name
;
3331 #pragma mark disk I/O tracking routines
3333 struct diskio
*free_diskios
= NULL
;
3334 struct diskio
*busy_diskios
= NULL
;
3337 diskio_start(unsigned long type
, unsigned long bp
, unsigned long dev
,
3338 unsigned long blkno
, unsigned long iosize
, ktrace_event_t event
)
3340 const char *command
;
3343 if ((dio
= free_diskios
)) {
3344 free_diskios
= dio
->next
;
3346 dio
= malloc(sizeof (struct diskio
));
3355 dio
->iosize
= iosize
;
3356 dio
->issued_time
= event
->timestamp
;
3357 dio
->issuing_thread
= event
->threadid
;
3358 dio
->issuing_pid
= ktrace_get_pid_for_thread(s
, event
->threadid
);
3362 command
= ktrace_get_execname_for_thread(s
, event
->threadid
);
3367 strncpy(dio
->issuing_command
, command
, MAXCOMLEN
);
3368 dio
->issuing_command
[MAXCOMLEN
] = '\0';
3370 dio
->next
= busy_diskios
;
3373 dio
->next
->prev
= dio
;
3381 diskio_find(unsigned long bp
)
3385 for (dio
= busy_diskios
; dio
; dio
= dio
->next
) {
3394 diskio_complete(unsigned long bp
, unsigned long io_errno
, unsigned long resid
,
3395 uintptr_t thread
, uint64_t curtime
, struct timeval curtime_wall
)
3399 if ((dio
= diskio_find(bp
)) == NULL
) return NULL
;
3401 if (dio
== busy_diskios
) {
3402 if ((busy_diskios
= dio
->next
))
3403 dio
->next
->prev
= NULL
;
3406 dio
->next
->prev
= dio
->prev
;
3407 dio
->prev
->next
= dio
->next
;
3410 dio
->iosize
-= resid
;
3411 dio
->io_errno
= io_errno
;
3412 dio
->completed_time
= curtime
;
3413 dio
->completed_walltime
= curtime_wall
;
3414 dio
->completion_thread
= thread
;
3420 diskio_free(struct diskio
*dio
)
3422 dio
->next
= free_diskios
;
3427 diskio_print(struct diskio
*dio
)
3432 int format
= FMT_DISKIO
;
3438 if ((type
& P_CS_Class
) == P_CS_Class
) {
3440 case P_CS_ReadChunk
:
3443 format
= FMT_DISKIO_CS
;
3445 case P_CS_WriteChunk
:
3448 format
= FMT_DISKIO_CS
;
3453 format
= FMT_DISKIO_CS
;
3455 case P_CS_MetaWrite
:
3458 format
= FMT_DISKIO_CS
;
3460 case P_CS_TransformRead
:
3464 case P_CS_TransformWrite
:
3468 case P_CS_MigrationRead
:
3472 case P_CS_MigrationWrite
:
3482 strncpy(buf
, p
, len
);
3484 switch (type
& P_DISKIO_TYPE
) {
3517 strncpy(buf
, p
, len
);
3521 if (type
& P_DISKIO_ASYNC
)
3526 if (type
& P_DISKIO_NOCACHE
)
3529 int tier
= (type
& P_DISKIO_TIER_MASK
) >> P_DISKIO_TIER_SHIFT
;
3533 if (tier
> 0 && tier
< 10)
3534 buf
[len
++] = '0' + tier
;
3536 if (type
& P_DISKIO_TIER_UPGRADE
) {
3541 if (type
& P_DISKIO_PASSIVE
)
3549 if (check_filter_mode(-1, NULL
, type
, 0, 0, buf
))
3550 format_print(NULL
, buf
, NULL
, type
, format
, dio
->completed_time
, dio
->issued_time
, 1, "", dio
);
3553 #pragma mark disk name routines
3556 struct diskrec
*next
;
3561 struct diskrec
*disk_list
= NULL
;
3564 cache_disk_names(void)
3569 struct diskrec
*dnp
;
3571 if ((dirp
= opendir("/dev")) == NULL
)
3574 while ((dir
= readdir(dirp
)) != NULL
) {
3575 char nbuf
[MAXPATHLEN
];
3577 if (dir
->d_namlen
< 5 || strncmp("disk", dir
->d_name
, 4))
3580 snprintf(nbuf
, MAXPATHLEN
, "%s/%s", "/dev", dir
->d_name
);
3582 if (stat(nbuf
, &st
) < 0)
3585 if ((dnp
= malloc(sizeof(struct diskrec
))) == NULL
)
3588 if ((dnp
->diskname
= malloc(dir
->d_namlen
+ 1)) == NULL
) {
3592 strncpy(dnp
->diskname
, dir
->d_name
, dir
->d_namlen
);
3593 dnp
->diskname
[dir
->d_namlen
] = 0;
3594 dnp
->dev
= st
.st_rdev
;
3596 dnp
->next
= disk_list
;
3604 recache_disk_names(void)
3606 struct diskrec
*dnp
, *next_dnp
;
3608 for (dnp
= disk_list
; dnp
; dnp
= next_dnp
) {
3609 next_dnp
= dnp
->next
;
3611 free(dnp
->diskname
);
3620 find_disk_name(unsigned long dev
)
3622 struct diskrec
*dnp
;
3631 for (i
= 0; i
< 2; i
++) {
3632 for (dnp
= disk_list
; dnp
; dnp
= dnp
->next
) {
3633 if (dnp
->dev
== dev
)
3634 return (dnp
->diskname
);
3636 recache_disk_names();
3643 generate_cs_disk_name(unsigned long dev
, char *s
)
3648 sprintf(s
, "disk%lus%lu", (dev
>> 16) & 0xffff, dev
& 0xffff);