From mboxrd@z Thu Jan 1 00:00:00 1970 From: Stephen Hemminger Subject: Re: [Patch] bonding: fix potential deadlock in bond_uninit() Date: Wed, 31 Mar 2010 16:02:37 -0700 Message-ID: <20100331160237.73560dfe@s6510> References: <20100331105559.5607.38643.sendpatchset@localhost.localdomain> Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Cc: Amerigo Wang , linux-kernel@vger.kernel.org, Jiri Pirko , netdev@vger.kernel.org, "David S. Miller" , bonding-devel@lists.sourceforge.net, Jay Vosburgh To: ebiederm@xmission.com (Eric W. Biederman) Return-path: In-Reply-To: Sender: linux-kernel-owner@vger.kernel.org List-Id: netdev.vger.kernel.org On Wed, 31 Mar 2010 04:28:33 -0700 ebiederm@xmission.com (Eric W. Biederman) wrote: > Amerigo Wang writes: > > > bond_uninit() is invoked with rtnl_lock held, when it does destroy_workqueue() > > which will potentially flush all works in this workqueue, if we hold rtnl_lock > > again in the work function, it will deadlock. > > > > So unlock rtnl_lock before calling destroy_workqueue(). > > Ouch. That seems rather rude to our caller, and likely very > dangerous. > > Is this a deadlock you actually hit, or is this something lockdep > warned about? > > My gut feel says we need to move the destroy_workqueue into > the network device destructor. > > Eric Why is there one workqueue per bond device rather than just one workqueue for all bonding devices controlled by the module instance? It would be cleaner on removal and less space and overhead. I can't see that doing arp/mii or alb work is high parallel and load activity.