From: Artem Bityutskiy <Artem.Bityutskiy@nokia.com>
To: Pekka Enberg <penberg@cs.helsinki.fi>
Cc: Artem Bityutskiy <dedekind@yandex.ru>,
LKML <linux-kernel@vger.kernel.org>,
Adrian Hunter <ext-adrian.hunter@nokia.com>
Subject: Re: [RFC PATCH 25/26] UBIFS: add debugging stuff
Date: Tue, 01 Apr 2008 11:32:58 +0300 [thread overview]
Message-ID: <47F1F33A.1020909@nokia.com> (raw)
In-Reply-To: <47F1E534.7050803@cs.helsinki.fi>
Pekka, I still do not see why you are opposed to assertions so much :-)
Pekka Enberg wrote:
> Why would you want to have assertions that are compiled out by default?
Because we want to have a way to catch bugs and to quickly fix them. This
is why we injected many assertions all over the place. Enabling them by
default is inefficient and makes the code larger, which is not good
especially for small embedded systems.
If someone reports us an obscure oops, and we have no idea why it happened,
and we cannot reproduce it on our setup, we ask the reporter to enable
debugging and report us results. This helps us to figure out what was the
reason and to quickly fix the bug. I do not see why you want to prevent
us from doing this.
> Either you handle the error or don't (and have an assertion).
We handle all errors. Errors are things like I/O failures, memory allocation
failures, unexpected behavior. We do handle this. Assertion are about
_debugging_, when you already know you have a problem.
Indeed, bugs may be tricky. An oops may happen because half an hour ago a
function craped out something. Assertions allow us to catch problems on
_early_ stage, instead of dealing with consequences and scratching the head
what was the reason.
But I do agree we have too much of that. We will lessen the amount of
course.
> The reason
> some subsystems have had their own asserts is because they go overboard
> with defensive checks as they haven't bothered to think through a
> reasonable error handling strategy. The downside? It clutters the code
> and causes the (compiled out) assertions to bit-rot.
I am not sure what you mean. I would not want to delve into a general
discussion of the debugging stuff. I would better talk about specific
things. I'll just point you examples of debugging stuff in the kernel
in other subsystems which exists and does not hurt anyone. And I believe
it is helpful. It is compiled out by default and is enable when it is
needed to hunt a bug.
fs/ext2: ea_idebug(), EXT2FS_DEBUG
fs/xfs: #ifdef DEBUG, XFS_LOUD_RECOVERY and so on
fs/ocfs2: OCFS2_DEBUG_FS
fs/jfs: CONFIG_JFS_DEBUG, assert(), etc
fs: DEBUG_EPOLL, #ifdef DEBUG
fs/jbd2: assert_spin_locked(), CONFIG_JBD2_DEBUG, etc
mm: CONFIG_SLUB_DEBUG, SLABDEBUG, CONFIG_DEBUG_VM, and so on
> Note that they're also a total pain in the ass to enable for anyone not
> intimately familiar with your code.
Of course. People who are not familiar with the code send bug reports and
we have to fix the problem quickly, and debugging stuff helps.
> Not to mention you're now making the
> lives of those crazy embedded folks that disable CONFIG_BUG for smaller
> kernel size harder as well.
It is OK to have few BUG_ON() checks, and we should probably turn few
assertions into BUG_ON(). But only few.
> Do you know why we don't have compiled out asserts in the core kernel?
> That's because it simply can't just roll-over and die if something
> unexpected happens and your filesystem shouldn't probably do that
> either.
If something unexpected happens, UBIFS will just return -EINVAL in the
most cases, because one of the function will find out that something is
going wrong. Assertions have nothing to do with this. The help to _fix_
bugs which were hit in certain circumstances.
> Sure, if you have some debugging checks that are way too
> expensive for production use, you might want to have a
> CONFIG_UBIFS_DEBUG but that shouldn't happen at assertion level but
> rather at much higher level.
We have heavy checks, right. They are expensive, so disabled by default.
Why can't assertions be similar?
--
Best Regards,
Artem Bityutskiy (Артём Битюцкий)
next prev parent reply other threads:[~2008-04-01 8:37 UTC|newest]
Thread overview: 89+ messages / expand[flat|nested] mbox.gz Atom feed top
2008-03-27 14:55 [RFC PATCH] UBIFS - new flash file system Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 01/26] VFS: introduce writeback_inodes_sb() Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 02/26] UBIFS: add I/O sub-system Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 03/26] UBIFS: add flash scanning Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 04/26] UBIFS: add journal replay Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 05/26] UBIFS: add file-system build Artem Bityutskiy
2008-03-28 10:12 ` Andrew Morton
2008-03-28 11:04 ` Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 06/26] UBIFS: add superblock and master node Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 07/26] UBIFS: add file-system recovery Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 08/26] UBIFS: add compression support Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 09/26] UBIFS: add key helpers Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 10/26] UBIFS: add the journal Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 11/26] UBIFS: add commit functionality Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 12/26] UBIFS: add TNC implementation Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 13/26] UBIFS: add TNC commit implementation Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 14/26] UBIFS: add TNC shrinker Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 15/26] UBIFS: add LEB properties Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 16/26] UBIFS: add LEB properties tree Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 17/26] " Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 18/26] UBIFS: add LEB find subsystem Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 19/26] UBIFS: add Garbage Collector Artem Bityutskiy
2008-04-01 2:11 ` Arnd Bergmann
2008-03-27 14:55 ` [RFC PATCH 20/26] UBIFS: add VFS operations Artem Bityutskiy
2008-03-27 13:36 ` Andi Kleen
2008-03-27 13:42 ` Artem Bityutskiy
2008-04-01 12:08 ` Pekka Enberg
2008-04-01 12:42 ` Artem Bityutskiy
2008-04-01 13:12 ` Pekka Enberg
2008-04-01 14:04 ` Artem Bityutskiy
2008-04-01 15:14 ` Adrian Hunter
2008-03-27 14:55 ` [RFC PATCH 21/26] UBIFS: add budgeting Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 22/26] UBIFS: add extended attribute support Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 23/26] UBIFS: add orphans handling sub-system Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 24/26] UBIFS: add header files Artem Bityutskiy
2008-03-27 14:55 ` [RFC PATCH 25/26] UBIFS: add debugging stuff Artem Bityutskiy
2008-03-31 21:00 ` Pekka Enberg
2008-04-01 6:20 ` Artem Bityutskiy
2008-04-01 7:33 ` Pekka Enberg
2008-04-01 8:32 ` Artem Bityutskiy [this message]
2008-04-01 9:00 ` Pekka Enberg
2008-04-01 9:04 ` Artem Bityutskiy
2008-04-01 8:34 ` Adrian Hunter
2008-04-01 7:43 ` Pekka Enberg
2008-03-27 14:55 ` [RFC PATCH 26/26] UBIFS: include FS to compilation Artem Bityutskiy
2008-04-01 7:39 ` Pekka Enberg
2008-04-01 8:51 ` Artem Bityutskiy
2008-04-01 9:15 ` Pekka Enberg
2008-04-01 9:25 ` Artem Bityutskiy
2008-04-01 10:04 ` Pekka Enberg
2008-04-01 10:26 ` Artem Bityutskiy
2008-04-01 11:33 ` Pekka Enberg
2008-04-01 11:56 ` Artem Bityutskiy
2008-04-26 9:37 ` Christoph Hellwig
2008-04-28 7:10 ` Adrian Hunter
2008-04-28 9:03 ` ext Christoph Hellwig
2008-04-30 7:04 ` Adrian Hunter
2008-04-26 9:35 ` Christoph Hellwig
2008-04-28 7:09 ` Adrian Hunter
2008-04-28 9:00 ` ext Christoph Hellwig
2008-04-28 11:23 ` Adrian Hunter
2008-04-28 11:39 ` ext ext Christoph Hellwig
2008-04-28 12:25 ` Adrian Hunter
2008-04-28 13:02 ` Christoph Hellwig
2008-03-27 16:20 ` [RFC PATCH] UBIFS - new flash file system Josh Boyer
2008-03-28 6:17 ` Artem Bityutskiy
2008-03-28 6:45 ` Artem Bityutskiy
2008-03-31 12:29 ` Jan Engelhardt
2008-03-31 12:47 ` Adrian Hunter
2008-03-31 13:20 ` Jörn Engel
2008-03-31 14:00 ` Artem Bityutskiy
2008-03-31 17:17 ` Jörn Engel
2008-03-31 20:49 ` Pekka Enberg
2008-03-31 21:21 ` Jörn Engel
2008-04-01 6:00 ` Artem Bityutskiy
2008-04-01 5:26 ` UBIFS vs Logfs (was [RFC PATCH] UBIFS - new flash file system) Artem Bityutskiy
2008-04-01 5:28 ` Artem Bityutskiy
2008-04-01 5:56 ` Artem Bityutskiy
2008-04-01 9:25 ` Jörn Engel
2008-04-01 9:39 ` Artem Bityutskiy
2008-04-01 10:51 ` Jörn Engel
2008-04-01 11:17 ` Artem Bityutskiy
2008-04-01 9:19 ` Jörn Engel
2008-04-01 9:46 ` Artem Bityutskiy
2008-04-01 11:16 ` Jörn Engel
2008-03-31 13:40 ` [RFC PATCH] UBIFS - new flash file system Jörn Engel
2008-04-01 21:01 ` Matthieu CASTET
2008-04-03 7:07 ` Artem Bityutskiy
2008-04-18 9:05 ` Thomas Gleixner
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=47F1F33A.1020909@nokia.com \
--to=artem.bityutskiy@nokia.com \
--cc=dedekind@yandex.ru \
--cc=ext-adrian.hunter@nokia.com \
--cc=linux-kernel@vger.kernel.org \
--cc=penberg@cs.helsinki.fi \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.