From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id 6C4F4CD128A for ; Mon, 1 Apr 2024 16:14:21 +0000 (UTC) Received: from localhost ([::1] helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1rrKHr-0006Z7-0N; Mon, 01 Apr 2024 12:13:31 -0400 Received: from eggs.gnu.org ([2001:470:142:3::10]) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1rrKHp-0006Yz-Oo for qemu-devel@nongnu.org; Mon, 01 Apr 2024 12:13:29 -0400 Received: from us-smtp-delivery-124.mimecast.com ([170.10.133.124]) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1rrKHm-0003F9-Fe for qemu-devel@nongnu.org; Mon, 01 Apr 2024 12:13:29 -0400 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhat.com; s=mimecast20190719; t=1711988005; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: in-reply-to:in-reply-to:references:references; bh=gUvPAx5Rc0Xfh6vpBf9IBGlVEERfS06hNir4El4T4Gs=; b=Ikx+YJwhIMbJr8eZGXITGcl9uH13tWV4RVUBFtTTNbw3UaHIplZhNM4AFXOn48+ASiXlx2 a7FYg8HKEwkXxKIOKuMpMQe9bTkDFQIgJqCOFAQh40sXBX+N6zLClqsTv0EbQsU93fH/A4 yR1mS/g0PridJJZccZA6YUdUZZNV3ps= Received: from mail-qv1-f71.google.com (mail-qv1-f71.google.com [209.85.219.71]) by relay.mimecast.com with ESMTP with STARTTLS (version=TLSv1.3, cipher=TLS_AES_256_GCM_SHA384) id us-mta-84-2DDMmI6XNAG8RtQeuA-bog-1; Mon, 01 Apr 2024 12:13:24 -0400 X-MC-Unique: 2DDMmI6XNAG8RtQeuA-bog-1 Received: by mail-qv1-f71.google.com with SMTP id 6a1803df08f44-69627b26a51so2063676d6.1 for ; Mon, 01 Apr 2024 09:13:23 -0700 (PDT) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1711988003; x=1712592803; h=in-reply-to:content-disposition:mime-version:references:message-id :subject:cc:to:from:date:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=gUvPAx5Rc0Xfh6vpBf9IBGlVEERfS06hNir4El4T4Gs=; b=fqqKz+MAOYQaXiSgT1F+n+qu2Dmm+tCTFzZSVxbMIHmD5o+Gfeup0nofVpIHYpeMUt Mv4JOhv3k/PhDAiwDx4weVuHjulyscC7rh3PDhopLq5OsENwCgp4o0vSffaIGDwomCfL 6b1kmKmGN2sIuPBMKkuRASf3w3kcqw8dwfmr9M6Q1aVZ7Ij/fV6SiEdLTNeYO15+Cnqt q9uKCcnqLukBL+gJlr/fEGqM648ikWrW8Frj2f0YP7Wqz9AOmmXNvO2ndKHg7GOVAbc0 QmH2TkAb49h9CzWj1dXSOHZ1JQDKJQYbVNxATMqbTJUbwrQiuHVrtxocpeB8ahjbVBwO E0Rg== X-Forwarded-Encrypted: i=1; AJvYcCUWVXphNvsDI7tFtb8M/atvTEn30IkDTlOOvFZ5Uy3pYcFkDmapcjEI7UhG5dw4ixW8OqA7rc5viXCB6cNZ24Q8wXlkdZQ= X-Gm-Message-State: AOJu0Ywt6eZFKZTomGf7utJG8FDWiJuvnzuZh12rEhMedo8giGP8v8X/ POYbORkaJBSYpFspSHQ5ztGSSb95G8p+EqcdbVgyovUt6MhYWJjdeRji0fnHSGOItNitw3aSrId L3SB0nmv1k9ivqft/a6lrVzkChuhBjJ2nm+mhC82ErQuASsMZI0Qd/Q5oQ085 X-Received: by 2002:ad4:46d3:0:b0:698:fc78:21ae with SMTP id pm19-20020ad446d3000000b00698fc7821aemr5820632qvb.6.1711988003156; Mon, 01 Apr 2024 09:13:23 -0700 (PDT) X-Google-Smtp-Source: AGHT+IHj4eF9jGM2m6PKeeAFPG8f9AeRopzG30T8ZZ1EL6JnfSBQ71276IVSm01XD6Dv8ew7buRA0g== X-Received: by 2002:ad4:46d3:0:b0:698:fc78:21ae with SMTP id pm19-20020ad446d3000000b00698fc7821aemr5820595qvb.6.1711988002385; Mon, 01 Apr 2024 09:13:22 -0700 (PDT) Received: from x1n ([99.254.121.117]) by smtp.gmail.com with ESMTPSA id a2-20020a056214062200b006967ba7f1adsm4633937qvx.96.2024.04.01.09.13.21 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Mon, 01 Apr 2024 09:13:22 -0700 (PDT) Date: Mon, 1 Apr 2024 12:13:20 -0400 From: Peter Xu To: "Wang, Wei W" Cc: "Wang, Lei4" , "qemu-devel@nongnu.org" , "farosas@suse.de" Subject: Re: [PATCH] migration: Yield coroutine when receiving MIG_CMD_POSTCOPY_LISTEN Message-ID: References: <20240329033205.26087-1-lei4.wang@intel.com> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline In-Reply-To: Received-SPF: pass client-ip=170.10.133.124; envelope-from=peterx@redhat.com; helo=us-smtp-delivery-124.mimecast.com X-Spam_score_int: -5 X-Spam_score: -0.6 X-Spam_bar: / X-Spam_report: (-0.6 / 5.0 requ) BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_SORBS_WEB=1.5, SPF_HELO_NONE=0.001, SPF_PASS=-0.001 autolearn=no autolearn_force=no X-Spam_action: no action X-BeenThere: qemu-devel@nongnu.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: qemu-devel-bounces+qemu-devel=archiver.kernel.org@nongnu.org Sender: qemu-devel-bounces+qemu-devel=archiver.kernel.org@nongnu.org On Fri, Mar 29, 2024 at 08:54:07AM +0000, Wang, Wei W wrote: > On Friday, March 29, 2024 11:32 AM, Wang, Lei4 wrote: > > When using the post-copy preemption feature to perform post-copy live > > migration, the below scenario could lead to a deadlock and the migration will > > never finish: > > > > - Source connect() the preemption channel in postcopy_start(). > > - Source and the destination side TCP stack finished the 3-way handshake > > thus the connection is successful. > > - The destination side main thread is handling the loading of the bulk RAM > > pages thus it doesn't start to handle the pending connection event in the > > event loop. and doesn't post the semaphore postcopy_qemufile_dst_done for > > the preemption thread. > > - The source side sends non-iterative device states, such as the virtio > > states. > > - The destination main thread starts to receive the virtio states, this > > process may lead to a page fault (e.g., virtio_load()->vring_avail_idx() > > may trigger a page fault since the avail ring page may not be received > > yet). Ouch. Yeah I think this part got overlooked when working on the preempt channel. > > - The page request is sent back to the source side. Source sends the page > > content to the destination side preemption thread. > > - Since the event is not arrived and the semaphore > > postcopy_qemufile_dst_done is not posted, the preemption thread in > > destination side is blocked, and cannot handle receiving the page. > > - The QEMU main load thread on the destination side is stuck at the page > > fault, and cannot yield and handle the connect() event for the > > preemption channel to unblock the preemption thread. > > - The postcopy will stuck there forever since this is a deadlock. > > > > The key point to reproduce this bug is that the source side is sending pages at a > > rate faster than the destination handling, otherwise, the qemu_get_be64() in > > ram_load_precopy() will have a chance to yield since at that time there are no > > pending data in the buffer to get. This will make this bug harder to be > > reproduced. How hard would this reproduce? I'm thinking whether this should be 9.0 material or 9.1. It's pretty late for 9.0 though, but we can still discuss. > > > > Fix this by yielding the load coroutine when receiving > > MIG_CMD_POSTCOPY_LISTEN so the main event loop can handle the > > connection event before loading the non-iterative devices state to avoid the > > deadlock condition. > > > > Signed-off-by: Lei Wang > > This seems to be a regression issue caused by this commit: > 737840e2c6ea (migration: Use the number of transferred bytes directly) > > Adding qemu_fflush back to migration_rate_exceeded() or ram_save_iterate > seems to work (might not be a good fix though). > > > --- > > migration/savevm.c | 5 +++++ > > 1 file changed, 5 insertions(+) > > > > diff --git a/migration/savevm.c b/migration/savevm.c index > > e386c5267f..8fd4dc92f2 100644 > > --- a/migration/savevm.c > > +++ b/migration/savevm.c > > @@ -2445,6 +2445,11 @@ static int loadvm_process_command(QEMUFile *f) > > return loadvm_postcopy_handle_advise(mis, len); > > > > case MIG_CMD_POSTCOPY_LISTEN: > > + if (migrate_postcopy_preempt() && qemu_in_coroutine()) { > > + aio_co_schedule(qemu_get_current_aio_context(), > > + qemu_coroutine_self()); > > + qemu_coroutine_yield(); > > + } > > The above could be moved to loadvm_postcopy_handle_listen(). I'm not 100% sure such thing (no matter here or moved into it, which does look cleaner) would work for us. The problem is I still don't yet see an ordering restricted on top of (1) accept() happens, and (2) receive LISTEN cmd here. What happens if the accept() request is not yet received when reaching LISTEN? Or is it always guaranteed the accept(fd) will always be polled here? For example, the source QEMU (no matter pre-7.2 or later) will always setup the preempt channel asynchrounously, then IIUC it can connect() after sending the whole chunk of packed data which should include this LISTEN. I think it means it's not guaranteed this will 100% work, but maybe further reduce the possibility of the race. One right fix that I can think of is moving the sem_wait(&done) into the main thread too, so we wait for the sem _before_ reading the packed data, so there's no chance of fault. However I don't think sem_wait() will be smart enough to yield when in a coroutine.. In the long term run I think we should really make migration loadvm to do work in the thread rather than the main thread. I think it means we have one more example to be listed in this todo so that's preferred.. https://wiki.qemu.org/ToDo/LiveMigration#Create_a_thread_for_migration_destination I attached such draft patch below, but I'm not sure it'll work. Let me know how both of you think about it. > > Another option is to follow the old way (i.e. pre_7_2) to do postcopy_preempt_setup > in migrate_fd_connect. This can save the above overhead of switching to the > main thread during the downtime. Seems Peter's previous patch already solved the > channel disordering issue. Let's see Peter and others' opinions. IIUC we still need that pre_7_2 stuff and keep the postponed connect() to make sure the ordering is done properly. Wei, could you elaborate the patch you mentioned? Maybe I missed some spots. You raised a good point that this may introduce higher downtime. Did you or Lei tried to measure how large it is? If that is too high, we may need to think another solution, e.g., wait the channel connection before vm stop happens. Thanks, > > > return loadvm_postcopy_handle_listen(mis); > > > > > case MIG_CMD_POSTCOPY_RUN: > > -- > > 2.39.3 > ===8<=== diff --git a/migration/migration.c b/migration/migration.c index 696762bc64..bacd1328cf 100644 --- a/migration/migration.c +++ b/migration/migration.c @@ -2593,6 +2593,12 @@ static int postcopy_start(MigrationState *ms, Error **errp) /* * Make sure the receiver can get incoming pages before we send the rest * of the state + * + * When preempt mode enabled, this must be done after we initiate the + * preempt channel, as destination QEMU will wait for the channel when + * processing the LISTEN request. Currently it may not matter a huge + * deal if we always create the channel asynchrously with a qio task, + * but we need to keep this in mind. */ qemu_savevm_send_postcopy_listen(fb); diff --git a/migration/postcopy-ram.c b/migration/postcopy-ram.c index eccff499cb..4f26a89ac9 100644 --- a/migration/postcopy-ram.c +++ b/migration/postcopy-ram.c @@ -1254,6 +1254,26 @@ int postcopy_ram_incoming_setup(MigrationIncomingState *mis) } if (migrate_postcopy_preempt()) { + /* + * The preempt channel is established in asynchronous way. Wait + * for its completion. + */ + while (!qemu_sem_timedwait(&mis->postcopy_qemufile_dst_done, 100)) { + /* + * Note that to make sure the main thread can still schedule an + * accept() request we need to proactively yield for the main + * loop to run for some duration (100ms in this case), which is + * pretty ugly. + * + * TODO: we should do this in a separate thread to load the VM + * rather than in the main thread, just like the source side. + */ + if (qemu_in_coroutine()) { + aio_co_schedule(qemu_get_current_aio_context(), + qemu_coroutine_self()); + qemu_coroutine_yield(); + } + } /* * This thread needs to be created after the temp pages because * it'll fetch RAM_CHANNEL_POSTCOPY PostcopyTmpPage immediately. @@ -1743,12 +1763,6 @@ void *postcopy_preempt_thread(void *opaque) qemu_sem_post(&mis->thread_sync_sem); - /* - * The preempt channel is established in asynchronous way. Wait - * for its completion. - */ - qemu_sem_wait(&mis->postcopy_qemufile_dst_done); - /* Sending RAM_SAVE_FLAG_EOS to terminate this thread */ qemu_mutex_lock(&mis->postcopy_prio_thread_mutex); while (preempt_thread_should_run(mis)) { -- 2.44.0 -- Peter Xu