From: Mathieu Desnoyers <mathieu.desnoyers@efficios.com>
To: Shakeel Butt <shakeel.butt@linux.dev>,
kernel test robot <oliver.sang@intel.com>
Cc: oe-lkp@lists.linux.dev, lkp@intel.com,
Andrew Morton <akpm@linux-foundation.org>,
"Paul E. McKenney" <paulmck@kernel.org>,
Steven Rostedt <rostedt@goodmis.org>,
Masami Hiramatsu <mhiramat@kernel.org>,
Dennis Zhou <dennis@kernel.org>, Tejun Heo <tj@kernel.org>,
Christoph Lameter <cl@linux.com>,
Martin Liu <liumartin@google.com>,
David Rientjes <rientjes@google.com>,
SeongJae Park <sj@kernel.org>, Michal Hocko <mhocko@suse.com>,
Johannes Weiner <hannes@cmpxchg.org>,
Sweet Tea Dorminy <sweettea@google.com>,
Lorenzo Stoakes <lorenzo.stoakes@oracle.com>,
"Liam R . Howlett" <liam.howlett@oracle.com>,
Mike Rapoport <rppt@kernel.org>,
Suren Baghdasaryan <surenb@google.com>,
Vlastimil Babka <vbabka@suse.cz>,
Christian Brauner <brauner@kernel.org>,
Wei Yang <richard.weiyang@gmail.com>,
David Hildenbrand <david@redhat.com>,
Miaohe Lin <linmiaohe@huawei.com>,
Al Viro <viro@zeniv.linux.org.uk>, Yu Zhao <yuzhao@google.com>,
Roman Gushchin <roman.gushchin@linux.dev>,
Mateusz Guzik <mjguzik@gmail.com>,
Matthew Wilcox <willy@infradead.org>,
Baolin Wang <baolin.wang@linux.alibaba.com>,
Aboorva Devarajan <aboorvad@linux.ibm.com>,
linux-mm@kvack.org, linux-kernel@vger.kernel.org,
linux-trace-kernel@vger.kernel.org, christian.koenig@amd.com
Subject: Re: [RFC PATCH v7 2/2] mm: Fix OOM killer inaccuracy on large many-core systems
Date: Fri, 7 Nov 2025 10:53:34 -0500 [thread overview]
Message-ID: <7b76f0e4-6148-4290-a295-7ceeb1ef2feb@efficios.com> (raw)
In-Reply-To: <7732c2eb-e547-47a8-93b3-1d1b4d9c27e8@efficios.com>
On 2025-11-07 09:43, Mathieu Desnoyers wrote:
> On 2025-11-06 19:32, Shakeel Butt wrote:
>
> [...]
>
>>> [ 14.858862][ T67] BUG: Bad rss-counter state mm:ffff8881000655c0
>>> type:MM_ANONPAGES val:0 Comm:kworker/u9:0 Pid:67
>>> [ 14.894890][ T69] BUG: Bad rss-counter state mm:ffff888100061cc0
>>> type:MM_FILEPAGES val:0 Comm:kworker/u9:0 Pid:69
>>> [ 14.896108][ T69] BUG: Bad rss-counter state mm:ffff888100061cc0
>>> type:MM_ANONPAGES val:0 Comm:kworker/u9:0 Pid:69
>>
>> Hmm this shows that percpu_counter_tree_precise_sum() is returning 0 but
>> percpu_counter_tree_approximate_sum() is off more than
>> counter->inaccuracy. I have not dig deeper to find why but this needs to
>> be resolved before considering this series for upstream.
>
> I notice that those BUG show up while loading modules at boot in kworker
> context, e.g.:
>
> [ 14.858862][ T67] BUG: Bad rss-counter state mm:ffff8881000655c0
> type:MM_ANONPAGES val:0 Comm:kworker/u9:0 Pid:67
> [ 14.894890][ T69] BUG: Bad rss-counter state mm:ffff888100061cc0
> type:MM_FILEPAGES val:0 Comm:kworker/u9:0 Pid:69
> [ 14.896108][ T69] BUG: Bad rss-counter state mm:ffff888100061cc0
> type:MM_ANONPAGES val:0 Comm:kworker/u9:0 Pid:69
> [ 14.918858][ T71] module: module-autoload: duplicate request for
> module crypto-aes
> [ 14.919479][ T71] module: module-autoload: duplicate request for
> module crypto-aes-all
> [ 14.920801][ T1] krb5: Running aes128-cts-hmac-sha256-128 enc
> plain<block
> [ 14.921844][ T1] krb5: Running aes128-cts-hmac-sha256-128 enc
> plain==block
> [ 14.922852][ T1] krb5: Running aes128-cts-hmac-sha256-128 enc
> plain>block
> [ 14.923843][ T1] krb5: Running aes256-cts-hmac-sha384-192 enc no
> plain
> [ 14.939591][ T1] krb5: Running aes256-cts-hmac-sha384-192 enc
> plain<block
> [ 14.940614][ T1] krb5: Running aes256-cts-hmac-sha384-192 enc
> plain==block
> [ 14.941586][ T1] krb5: Running aes256-cts-hmac-sha384-192 enc
> plain>block
> [ 14.942547][ T1] krb5: Running camellia128-cts-cmac enc no plain
> [ 15.018568][ T85] BUG: Bad rss-counter state mm:ffff888160f81340
> type:MM_ANONPAGES val:0 Comm:kworker/u9:0 Pid:85b
>
> I used "module_init" similarly to lib/percpu_counter.c, but I think it
> happens too late in the boot sequence:
>
> module_init(percpu_counter_startup);
>
> module_init maps to __initcall within a built-in compile unit, which
> maps to device_initcall(), which happens quite late within the sequence
> called from do_initcalls(), called from do_basic_setup().
>
> And even do_basic_setup is documented as:
>
> * Ok, the machine is now initialized. None of the devices
> * have been touched yet, but the CPU subsystem is up and
> * running, and memory and process management works.
>
> which clearly requires that the mm subsystem is expected to
> be ready at that point.
>
> It probably was not an issue for the non-hierarchical percpu
> counters because all it was initializing is handling of CPU hotplug,
> but the new hierarchical counters initialize the pre-calculated
> inaccuracy value which is used to figure out whether the approximate
> sum is sufficient to compare values or if the precise sum is needed.
>
> I think this is why we are hitting this BUG.
>
> Now I wonder where I should move this initialization. It requires
> "nr_cpu_ids" to be initialized, and pretty much need to be done
> before mms are created. I'm starting to suspect that the module init
> code can spawn kworkers that have a mm before the init process runs.
At least on x86, nr_cpu_ids appears to be set by set_nr_cpu_ids()
through early_param("possible_cpus", setup_possible_cpus), which is
AFAIU called from parse_early_param(), which happens very early in the
boot sequence.
It would make sense to call an explicit percpu counter tree init
function from start_kernel() between the call to mm_core_init() and the
call to maple_tree_init(). This way it would be initialized right after
mm, but given that the hierarchical counter tree is a lib that can be
used for other purposes than mm accounting, I think it makes sense
to call its init explicitly from start_kernel() rather than bury
it within mm_core_init().
Thoughts ?
Thanks,
Mathieu
--
Mathieu Desnoyers
EfficiOS Inc.
https://www.efficios.com
next prev parent reply other threads:[~2025-11-07 15:53 UTC|newest]
Thread overview: 9+ messages / expand[flat|nested] mbox.gz Atom feed top
2025-10-31 14:42 [RFC PATCH v7 0/2] mm: Fix OOM killer inaccuracy on large many-core systems Mathieu Desnoyers
2025-10-31 14:42 ` [RFC PATCH v7 1/2] lib: Introduce hierarchical per-cpu counters Mathieu Desnoyers
2025-10-31 14:42 ` [RFC PATCH v7 2/2] mm: Fix OOM killer inaccuracy on large many-core systems Mathieu Desnoyers
2025-11-06 6:53 ` kernel test robot
2025-11-07 0:32 ` Shakeel Butt
2025-11-07 14:43 ` Mathieu Desnoyers
2025-11-07 15:53 ` Mathieu Desnoyers [this message]
2025-11-07 16:04 ` Mathieu Desnoyers
2025-11-08 0:01 ` Shakeel Butt
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=7b76f0e4-6148-4290-a295-7ceeb1ef2feb@efficios.com \
--to=mathieu.desnoyers@efficios.com \
--cc=aboorvad@linux.ibm.com \
--cc=akpm@linux-foundation.org \
--cc=baolin.wang@linux.alibaba.com \
--cc=brauner@kernel.org \
--cc=christian.koenig@amd.com \
--cc=cl@linux.com \
--cc=david@redhat.com \
--cc=dennis@kernel.org \
--cc=hannes@cmpxchg.org \
--cc=liam.howlett@oracle.com \
--cc=linmiaohe@huawei.com \
--cc=linux-kernel@vger.kernel.org \
--cc=linux-mm@kvack.org \
--cc=linux-trace-kernel@vger.kernel.org \
--cc=liumartin@google.com \
--cc=lkp@intel.com \
--cc=lorenzo.stoakes@oracle.com \
--cc=mhiramat@kernel.org \
--cc=mhocko@suse.com \
--cc=mjguzik@gmail.com \
--cc=oe-lkp@lists.linux.dev \
--cc=oliver.sang@intel.com \
--cc=paulmck@kernel.org \
--cc=richard.weiyang@gmail.com \
--cc=rientjes@google.com \
--cc=roman.gushchin@linux.dev \
--cc=rostedt@goodmis.org \
--cc=rppt@kernel.org \
--cc=shakeel.butt@linux.dev \
--cc=sj@kernel.org \
--cc=surenb@google.com \
--cc=sweettea@google.com \
--cc=tj@kernel.org \
--cc=vbabka@suse.cz \
--cc=viro@zeniv.linux.org.uk \
--cc=willy@infradead.org \
--cc=yuzhao@google.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox