158f0484fSRodney W. Grimes /*- 258f0484fSRodney W. Grimes * Copyright (c) 1989, 1992, 1993 358f0484fSRodney W. Grimes * The Regents of the University of California. All rights reserved. 458f0484fSRodney W. Grimes * 558f0484fSRodney W. Grimes * This code is derived from software developed by the Computer Systems 658f0484fSRodney W. Grimes * Engineering group at Lawrence Berkeley Laboratory under DARPA contract 758f0484fSRodney W. Grimes * BG 91-66 and contributed to Berkeley. 858f0484fSRodney W. Grimes * 958f0484fSRodney W. Grimes * Redistribution and use in source and binary forms, with or without 1058f0484fSRodney W. Grimes * modification, are permitted provided that the following conditions 1158f0484fSRodney W. Grimes * are met: 1258f0484fSRodney W. Grimes * 1. Redistributions of source code must retain the above copyright 1358f0484fSRodney W. Grimes * notice, this list of conditions and the following disclaimer. 1458f0484fSRodney W. Grimes * 2. Redistributions in binary form must reproduce the above copyright 1558f0484fSRodney W. Grimes * notice, this list of conditions and the following disclaimer in the 1658f0484fSRodney W. Grimes * documentation and/or other materials provided with the distribution. 1758f0484fSRodney W. Grimes * 3. All advertising materials mentioning features or use of this software 1858f0484fSRodney W. Grimes * must display the following acknowledgement: 1958f0484fSRodney W. Grimes * This product includes software developed by the University of 2058f0484fSRodney W. Grimes * California, Berkeley and its contributors. 2158f0484fSRodney W. Grimes * 4. Neither the name of the University nor the names of its contributors 2258f0484fSRodney W. Grimes * may be used to endorse or promote products derived from this software 2358f0484fSRodney W. Grimes * without specific prior written permission. 2458f0484fSRodney W. Grimes * 2558f0484fSRodney W. Grimes * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 2658f0484fSRodney W. Grimes * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 2758f0484fSRodney W. Grimes * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 2858f0484fSRodney W. Grimes * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 2958f0484fSRodney W. Grimes * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 3058f0484fSRodney W. Grimes * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 3158f0484fSRodney W. Grimes * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 3258f0484fSRodney W. Grimes * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 3358f0484fSRodney W. Grimes * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 3458f0484fSRodney W. Grimes * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3558f0484fSRodney W. Grimes * SUCH DAMAGE. 3658f0484fSRodney W. Grimes */ 3758f0484fSRodney W. Grimes 3858f0484fSRodney W. Grimes #if defined(LIBC_SCCS) && !defined(lint) 3958f0484fSRodney W. Grimes static char sccsid[] = "@(#)kvm_proc.c 8.3 (Berkeley) 9/23/93"; 4058f0484fSRodney W. Grimes #endif /* LIBC_SCCS and not lint */ 4158f0484fSRodney W. Grimes 4258f0484fSRodney W. Grimes /* 4358f0484fSRodney W. Grimes * Proc traversal interface for kvm. ps and w are (probably) the exclusive 4458f0484fSRodney W. Grimes * users of this code, so we've factored it out into a separate module. 4558f0484fSRodney W. Grimes * Thus, we keep this grunge out of the other kvm applications (i.e., 4658f0484fSRodney W. Grimes * most other applications are interested only in open/close/read/nlist). 4758f0484fSRodney W. Grimes */ 4858f0484fSRodney W. Grimes 4958f0484fSRodney W. Grimes #include <sys/param.h> 5058f0484fSRodney W. Grimes #include <sys/user.h> 5158f0484fSRodney W. Grimes #include <sys/proc.h> 5258f0484fSRodney W. Grimes #include <sys/exec.h> 5358f0484fSRodney W. Grimes #include <sys/stat.h> 5458f0484fSRodney W. Grimes #include <sys/ioctl.h> 5558f0484fSRodney W. Grimes #include <sys/tty.h> 5658f0484fSRodney W. Grimes #include <unistd.h> 5758f0484fSRodney W. Grimes #include <nlist.h> 5858f0484fSRodney W. Grimes #include <kvm.h> 5958f0484fSRodney W. Grimes 6058f0484fSRodney W. Grimes #include <vm/vm.h> 6158f0484fSRodney W. Grimes #include <vm/vm_param.h> 6258f0484fSRodney W. Grimes #include <vm/swap_pager.h> 6358f0484fSRodney W. Grimes 6458f0484fSRodney W. Grimes #include <sys/sysctl.h> 6558f0484fSRodney W. Grimes 6658f0484fSRodney W. Grimes #include <limits.h> 6758f0484fSRodney W. Grimes #include <db.h> 6858f0484fSRodney W. Grimes #include <paths.h> 6958f0484fSRodney W. Grimes 7058f0484fSRodney W. Grimes #include "kvm_private.h" 7158f0484fSRodney W. Grimes 7258f0484fSRodney W. Grimes static char * 7358f0484fSRodney W. Grimes kvm_readswap(kd, p, va, cnt) 7458f0484fSRodney W. Grimes kvm_t *kd; 7558f0484fSRodney W. Grimes const struct proc *p; 7658f0484fSRodney W. Grimes u_long va; 7758f0484fSRodney W. Grimes u_long *cnt; 7858f0484fSRodney W. Grimes { 7958f0484fSRodney W. Grimes register int ix; 8058f0484fSRodney W. Grimes register u_long addr, head; 8158f0484fSRodney W. Grimes register u_long offset, pagestart, sbstart, pgoff; 8258f0484fSRodney W. Grimes register off_t seekpoint; 8358f0484fSRodney W. Grimes struct vm_map_entry vme; 8458f0484fSRodney W. Grimes struct vm_object vmo; 8558f0484fSRodney W. Grimes struct pager_struct pager; 8658f0484fSRodney W. Grimes struct swpager swap; 8758f0484fSRodney W. Grimes struct swblock swb; 8858f0484fSRodney W. Grimes static char page[NBPG]; 8958f0484fSRodney W. Grimes 9058f0484fSRodney W. Grimes head = (u_long)&p->p_vmspace->vm_map.header; 9158f0484fSRodney W. Grimes /* 9258f0484fSRodney W. Grimes * Look through the address map for the memory object 9358f0484fSRodney W. Grimes * that corresponds to the given virtual address. 9458f0484fSRodney W. Grimes * The header just has the entire valid range. 9558f0484fSRodney W. Grimes */ 9658f0484fSRodney W. Grimes addr = head; 9758f0484fSRodney W. Grimes while (1) { 9858f0484fSRodney W. Grimes if (kvm_read(kd, addr, (char *)&vme, sizeof(vme)) != 9958f0484fSRodney W. Grimes sizeof(vme)) 10058f0484fSRodney W. Grimes return (0); 10158f0484fSRodney W. Grimes 10258f0484fSRodney W. Grimes if (va >= vme.start && va <= vme.end && 10358f0484fSRodney W. Grimes vme.object.vm_object != 0) 10458f0484fSRodney W. Grimes break; 10558f0484fSRodney W. Grimes 10658f0484fSRodney W. Grimes addr = (u_long)vme.next; 10758f0484fSRodney W. Grimes if (addr == 0 || addr == head) 10858f0484fSRodney W. Grimes return (0); 10958f0484fSRodney W. Grimes } 11058f0484fSRodney W. Grimes /* 11158f0484fSRodney W. Grimes * We found the right object -- follow shadow links. 11258f0484fSRodney W. Grimes */ 11358f0484fSRodney W. Grimes offset = va - vme.start + vme.offset; 11458f0484fSRodney W. Grimes addr = (u_long)vme.object.vm_object; 11558f0484fSRodney W. Grimes while (1) { 11658f0484fSRodney W. Grimes if (kvm_read(kd, addr, (char *)&vmo, sizeof(vmo)) != 11758f0484fSRodney W. Grimes sizeof(vmo)) 11858f0484fSRodney W. Grimes return (0); 11958f0484fSRodney W. Grimes addr = (u_long)vmo.shadow; 12058f0484fSRodney W. Grimes if (addr == 0) 12158f0484fSRodney W. Grimes break; 12258f0484fSRodney W. Grimes offset += vmo.shadow_offset; 12358f0484fSRodney W. Grimes } 12458f0484fSRodney W. Grimes if (vmo.pager == 0) 12558f0484fSRodney W. Grimes return (0); 12658f0484fSRodney W. Grimes 12758f0484fSRodney W. Grimes offset += vmo.paging_offset; 12858f0484fSRodney W. Grimes /* 12958f0484fSRodney W. Grimes * Read in the pager info and make sure it's a swap device. 13058f0484fSRodney W. Grimes */ 13158f0484fSRodney W. Grimes addr = (u_long)vmo.pager; 13258f0484fSRodney W. Grimes if (kvm_read(kd, addr, (char *)&pager, sizeof(pager)) != sizeof(pager) 13358f0484fSRodney W. Grimes || pager.pg_type != PG_SWAP) 13458f0484fSRodney W. Grimes return (0); 13558f0484fSRodney W. Grimes 13658f0484fSRodney W. Grimes /* 13758f0484fSRodney W. Grimes * Read in the swap_pager private data, and compute the 13858f0484fSRodney W. Grimes * swap offset. 13958f0484fSRodney W. Grimes */ 14058f0484fSRodney W. Grimes addr = (u_long)pager.pg_data; 14158f0484fSRodney W. Grimes if (kvm_read(kd, addr, (char *)&swap, sizeof(swap)) != sizeof(swap)) 14258f0484fSRodney W. Grimes return (0); 14358f0484fSRodney W. Grimes ix = offset / dbtob(swap.sw_bsize); 14458f0484fSRodney W. Grimes if (swap.sw_blocks == 0 || ix >= swap.sw_nblocks) 14558f0484fSRodney W. Grimes return (0); 14658f0484fSRodney W. Grimes 14758f0484fSRodney W. Grimes addr = (u_long)&swap.sw_blocks[ix]; 14858f0484fSRodney W. Grimes if (kvm_read(kd, addr, (char *)&swb, sizeof(swb)) != sizeof(swb)) 14958f0484fSRodney W. Grimes return (0); 15058f0484fSRodney W. Grimes 15158f0484fSRodney W. Grimes sbstart = (offset / dbtob(swap.sw_bsize)) * dbtob(swap.sw_bsize); 15258f0484fSRodney W. Grimes sbstart /= NBPG; 15358f0484fSRodney W. Grimes pagestart = offset / NBPG; 15458f0484fSRodney W. Grimes pgoff = pagestart - sbstart; 15558f0484fSRodney W. Grimes 15658f0484fSRodney W. Grimes if (swb.swb_block == 0 || (swb.swb_mask & (1 << pgoff)) == 0) 15758f0484fSRodney W. Grimes return (0); 15858f0484fSRodney W. Grimes 15958f0484fSRodney W. Grimes seekpoint = dbtob(swb.swb_block) + ctob(pgoff); 16058f0484fSRodney W. Grimes errno = 0; 16158f0484fSRodney W. Grimes if (lseek(kd->swfd, seekpoint, 0) == -1 && errno != 0) 16258f0484fSRodney W. Grimes return (0); 16358f0484fSRodney W. Grimes if (read(kd->swfd, page, sizeof(page)) != sizeof(page)) 16458f0484fSRodney W. Grimes return (0); 16558f0484fSRodney W. Grimes 16658f0484fSRodney W. Grimes offset %= NBPG; 16758f0484fSRodney W. Grimes *cnt = NBPG - offset; 16858f0484fSRodney W. Grimes return (&page[offset]); 16958f0484fSRodney W. Grimes } 17058f0484fSRodney W. Grimes 17158f0484fSRodney W. Grimes #define KREAD(kd, addr, obj) \ 17258f0484fSRodney W. Grimes (kvm_read(kd, addr, (char *)(obj), sizeof(*obj)) != sizeof(*obj)) 17358f0484fSRodney W. Grimes 17458f0484fSRodney W. Grimes /* 17558f0484fSRodney W. Grimes * Read proc's from memory file into buffer bp, which has space to hold 17658f0484fSRodney W. Grimes * at most maxcnt procs. 17758f0484fSRodney W. Grimes */ 17858f0484fSRodney W. Grimes static int 17958f0484fSRodney W. Grimes kvm_proclist(kd, what, arg, p, bp, maxcnt) 18058f0484fSRodney W. Grimes kvm_t *kd; 18158f0484fSRodney W. Grimes int what, arg; 18258f0484fSRodney W. Grimes struct proc *p; 18358f0484fSRodney W. Grimes struct kinfo_proc *bp; 18458f0484fSRodney W. Grimes int maxcnt; 18558f0484fSRodney W. Grimes { 18658f0484fSRodney W. Grimes register int cnt = 0; 18758f0484fSRodney W. Grimes struct eproc eproc; 18858f0484fSRodney W. Grimes struct pgrp pgrp; 18958f0484fSRodney W. Grimes struct session sess; 19058f0484fSRodney W. Grimes struct tty tty; 19158f0484fSRodney W. Grimes struct proc proc; 19258f0484fSRodney W. Grimes 19358f0484fSRodney W. Grimes for (; cnt < maxcnt && p != NULL; p = proc.p_next) { 19458f0484fSRodney W. Grimes if (KREAD(kd, (u_long)p, &proc)) { 19558f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "can't read proc at %x", p); 19658f0484fSRodney W. Grimes return (-1); 19758f0484fSRodney W. Grimes } 19858f0484fSRodney W. Grimes if (KREAD(kd, (u_long)proc.p_cred, &eproc.e_pcred) == 0) 19958f0484fSRodney W. Grimes KREAD(kd, (u_long)eproc.e_pcred.pc_ucred, 20058f0484fSRodney W. Grimes &eproc.e_ucred); 20158f0484fSRodney W. Grimes 20258f0484fSRodney W. Grimes switch(what) { 20358f0484fSRodney W. Grimes 20458f0484fSRodney W. Grimes case KERN_PROC_PID: 20558f0484fSRodney W. Grimes if (proc.p_pid != (pid_t)arg) 20658f0484fSRodney W. Grimes continue; 20758f0484fSRodney W. Grimes break; 20858f0484fSRodney W. Grimes 20958f0484fSRodney W. Grimes case KERN_PROC_UID: 21058f0484fSRodney W. Grimes if (eproc.e_ucred.cr_uid != (uid_t)arg) 21158f0484fSRodney W. Grimes continue; 21258f0484fSRodney W. Grimes break; 21358f0484fSRodney W. Grimes 21458f0484fSRodney W. Grimes case KERN_PROC_RUID: 21558f0484fSRodney W. Grimes if (eproc.e_pcred.p_ruid != (uid_t)arg) 21658f0484fSRodney W. Grimes continue; 21758f0484fSRodney W. Grimes break; 21858f0484fSRodney W. Grimes } 21958f0484fSRodney W. Grimes /* 22058f0484fSRodney W. Grimes * We're going to add another proc to the set. If this 22158f0484fSRodney W. Grimes * will overflow the buffer, assume the reason is because 22258f0484fSRodney W. Grimes * nprocs (or the proc list) is corrupt and declare an error. 22358f0484fSRodney W. Grimes */ 22458f0484fSRodney W. Grimes if (cnt >= maxcnt) { 22558f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "nprocs corrupt"); 22658f0484fSRodney W. Grimes return (-1); 22758f0484fSRodney W. Grimes } 22858f0484fSRodney W. Grimes /* 22958f0484fSRodney W. Grimes * gather eproc 23058f0484fSRodney W. Grimes */ 23158f0484fSRodney W. Grimes eproc.e_paddr = p; 23258f0484fSRodney W. Grimes if (KREAD(kd, (u_long)proc.p_pgrp, &pgrp)) { 23358f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "can't read pgrp at %x", 23458f0484fSRodney W. Grimes proc.p_pgrp); 23558f0484fSRodney W. Grimes return (-1); 23658f0484fSRodney W. Grimes } 23758f0484fSRodney W. Grimes eproc.e_sess = pgrp.pg_session; 23858f0484fSRodney W. Grimes eproc.e_pgid = pgrp.pg_id; 23958f0484fSRodney W. Grimes eproc.e_jobc = pgrp.pg_jobc; 24058f0484fSRodney W. Grimes if (KREAD(kd, (u_long)pgrp.pg_session, &sess)) { 24158f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "can't read session at %x", 24258f0484fSRodney W. Grimes pgrp.pg_session); 24358f0484fSRodney W. Grimes return (-1); 24458f0484fSRodney W. Grimes } 24558f0484fSRodney W. Grimes if ((proc.p_flag & P_CONTROLT) && sess.s_ttyp != NULL) { 24658f0484fSRodney W. Grimes if (KREAD(kd, (u_long)sess.s_ttyp, &tty)) { 24758f0484fSRodney W. Grimes _kvm_err(kd, kd->program, 24858f0484fSRodney W. Grimes "can't read tty at %x", sess.s_ttyp); 24958f0484fSRodney W. Grimes return (-1); 25058f0484fSRodney W. Grimes } 25158f0484fSRodney W. Grimes eproc.e_tdev = tty.t_dev; 25258f0484fSRodney W. Grimes eproc.e_tsess = tty.t_session; 25358f0484fSRodney W. Grimes if (tty.t_pgrp != NULL) { 25458f0484fSRodney W. Grimes if (KREAD(kd, (u_long)tty.t_pgrp, &pgrp)) { 25558f0484fSRodney W. Grimes _kvm_err(kd, kd->program, 25658f0484fSRodney W. Grimes "can't read tpgrp at &x", 25758f0484fSRodney W. Grimes tty.t_pgrp); 25858f0484fSRodney W. Grimes return (-1); 25958f0484fSRodney W. Grimes } 26058f0484fSRodney W. Grimes eproc.e_tpgid = pgrp.pg_id; 26158f0484fSRodney W. Grimes } else 26258f0484fSRodney W. Grimes eproc.e_tpgid = -1; 26358f0484fSRodney W. Grimes } else 26458f0484fSRodney W. Grimes eproc.e_tdev = NODEV; 26558f0484fSRodney W. Grimes eproc.e_flag = sess.s_ttyvp ? EPROC_CTTY : 0; 26658f0484fSRodney W. Grimes if (sess.s_leader == p) 26758f0484fSRodney W. Grimes eproc.e_flag |= EPROC_SLEADER; 26858f0484fSRodney W. Grimes if (proc.p_wmesg) 26958f0484fSRodney W. Grimes (void)kvm_read(kd, (u_long)proc.p_wmesg, 27058f0484fSRodney W. Grimes eproc.e_wmesg, WMESGLEN); 27158f0484fSRodney W. Grimes 27258f0484fSRodney W. Grimes #ifdef sparc 27358f0484fSRodney W. Grimes (void)kvm_read(kd, (u_long)&proc.p_vmspace->vm_rssize, 27458f0484fSRodney W. Grimes (char *)&eproc.e_vm.vm_rssize, 27558f0484fSRodney W. Grimes sizeof(eproc.e_vm.vm_rssize)); 27658f0484fSRodney W. Grimes (void)kvm_read(kd, (u_long)&proc.p_vmspace->vm_tsize, 27758f0484fSRodney W. Grimes (char *)&eproc.e_vm.vm_tsize, 27858f0484fSRodney W. Grimes 3 * sizeof(eproc.e_vm.vm_rssize)); /* XXX */ 27958f0484fSRodney W. Grimes #else 28058f0484fSRodney W. Grimes (void)kvm_read(kd, (u_long)proc.p_vmspace, 28158f0484fSRodney W. Grimes (char *)&eproc.e_vm, sizeof(eproc.e_vm)); 28258f0484fSRodney W. Grimes #endif 28358f0484fSRodney W. Grimes eproc.e_xsize = eproc.e_xrssize = 0; 28458f0484fSRodney W. Grimes eproc.e_xccount = eproc.e_xswrss = 0; 28558f0484fSRodney W. Grimes 28658f0484fSRodney W. Grimes switch (what) { 28758f0484fSRodney W. Grimes 28858f0484fSRodney W. Grimes case KERN_PROC_PGRP: 28958f0484fSRodney W. Grimes if (eproc.e_pgid != (pid_t)arg) 29058f0484fSRodney W. Grimes continue; 29158f0484fSRodney W. Grimes break; 29258f0484fSRodney W. Grimes 29358f0484fSRodney W. Grimes case KERN_PROC_TTY: 29458f0484fSRodney W. Grimes if ((proc.p_flag & P_CONTROLT) == 0 || 29558f0484fSRodney W. Grimes eproc.e_tdev != (dev_t)arg) 29658f0484fSRodney W. Grimes continue; 29758f0484fSRodney W. Grimes break; 29858f0484fSRodney W. Grimes } 29958f0484fSRodney W. Grimes bcopy(&proc, &bp->kp_proc, sizeof(proc)); 30058f0484fSRodney W. Grimes bcopy(&eproc, &bp->kp_eproc, sizeof(eproc)); 30158f0484fSRodney W. Grimes ++bp; 30258f0484fSRodney W. Grimes ++cnt; 30358f0484fSRodney W. Grimes } 30458f0484fSRodney W. Grimes return (cnt); 30558f0484fSRodney W. Grimes } 30658f0484fSRodney W. Grimes 30758f0484fSRodney W. Grimes /* 30858f0484fSRodney W. Grimes * Build proc info array by reading in proc list from a crash dump. 30958f0484fSRodney W. Grimes * Return number of procs read. maxcnt is the max we will read. 31058f0484fSRodney W. Grimes */ 31158f0484fSRodney W. Grimes static int 31258f0484fSRodney W. Grimes kvm_deadprocs(kd, what, arg, a_allproc, a_zombproc, maxcnt) 31358f0484fSRodney W. Grimes kvm_t *kd; 31458f0484fSRodney W. Grimes int what, arg; 31558f0484fSRodney W. Grimes u_long a_allproc; 31658f0484fSRodney W. Grimes u_long a_zombproc; 31758f0484fSRodney W. Grimes int maxcnt; 31858f0484fSRodney W. Grimes { 31958f0484fSRodney W. Grimes register struct kinfo_proc *bp = kd->procbase; 32058f0484fSRodney W. Grimes register int acnt, zcnt; 32158f0484fSRodney W. Grimes struct proc *p; 32258f0484fSRodney W. Grimes 32358f0484fSRodney W. Grimes if (KREAD(kd, a_allproc, &p)) { 32458f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "cannot read allproc"); 32558f0484fSRodney W. Grimes return (-1); 32658f0484fSRodney W. Grimes } 32758f0484fSRodney W. Grimes acnt = kvm_proclist(kd, what, arg, p, bp, maxcnt); 32858f0484fSRodney W. Grimes if (acnt < 0) 32958f0484fSRodney W. Grimes return (acnt); 33058f0484fSRodney W. Grimes 33158f0484fSRodney W. Grimes if (KREAD(kd, a_zombproc, &p)) { 33258f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "cannot read zombproc"); 33358f0484fSRodney W. Grimes return (-1); 33458f0484fSRodney W. Grimes } 33558f0484fSRodney W. Grimes zcnt = kvm_proclist(kd, what, arg, p, bp + acnt, maxcnt - acnt); 33658f0484fSRodney W. Grimes if (zcnt < 0) 33758f0484fSRodney W. Grimes zcnt = 0; 33858f0484fSRodney W. Grimes 33958f0484fSRodney W. Grimes return (acnt + zcnt); 34058f0484fSRodney W. Grimes } 34158f0484fSRodney W. Grimes 34258f0484fSRodney W. Grimes struct kinfo_proc * 34358f0484fSRodney W. Grimes kvm_getprocs(kd, op, arg, cnt) 34458f0484fSRodney W. Grimes kvm_t *kd; 34558f0484fSRodney W. Grimes int op, arg; 34658f0484fSRodney W. Grimes int *cnt; 34758f0484fSRodney W. Grimes { 34858f0484fSRodney W. Grimes int mib[4], size, st, nprocs; 34958f0484fSRodney W. Grimes 35058f0484fSRodney W. Grimes if (kd->procbase != 0) { 35158f0484fSRodney W. Grimes free((void *)kd->procbase); 35258f0484fSRodney W. Grimes /* 35358f0484fSRodney W. Grimes * Clear this pointer in case this call fails. Otherwise, 35458f0484fSRodney W. Grimes * kvm_close() will free it again. 35558f0484fSRodney W. Grimes */ 35658f0484fSRodney W. Grimes kd->procbase = 0; 35758f0484fSRodney W. Grimes } 35858f0484fSRodney W. Grimes if (ISALIVE(kd)) { 35958f0484fSRodney W. Grimes size = 0; 36058f0484fSRodney W. Grimes mib[0] = CTL_KERN; 36158f0484fSRodney W. Grimes mib[1] = KERN_PROC; 36258f0484fSRodney W. Grimes mib[2] = op; 36358f0484fSRodney W. Grimes mib[3] = arg; 36458f0484fSRodney W. Grimes st = sysctl(mib, 4, NULL, &size, NULL, 0); 36558f0484fSRodney W. Grimes if (st == -1) { 36658f0484fSRodney W. Grimes _kvm_syserr(kd, kd->program, "kvm_getprocs"); 36758f0484fSRodney W. Grimes return (0); 36858f0484fSRodney W. Grimes } 36958f0484fSRodney W. Grimes kd->procbase = (struct kinfo_proc *)_kvm_malloc(kd, size); 37058f0484fSRodney W. Grimes if (kd->procbase == 0) 37158f0484fSRodney W. Grimes return (0); 37258f0484fSRodney W. Grimes st = sysctl(mib, 4, kd->procbase, &size, NULL, 0); 37358f0484fSRodney W. Grimes if (st == -1) { 37458f0484fSRodney W. Grimes _kvm_syserr(kd, kd->program, "kvm_getprocs"); 37558f0484fSRodney W. Grimes return (0); 37658f0484fSRodney W. Grimes } 37758f0484fSRodney W. Grimes if (size % sizeof(struct kinfo_proc) != 0) { 37858f0484fSRodney W. Grimes _kvm_err(kd, kd->program, 37958f0484fSRodney W. Grimes "proc size mismatch (%d total, %d chunks)", 38058f0484fSRodney W. Grimes size, sizeof(struct kinfo_proc)); 38158f0484fSRodney W. Grimes return (0); 38258f0484fSRodney W. Grimes } 38358f0484fSRodney W. Grimes nprocs = size / sizeof(struct kinfo_proc); 38458f0484fSRodney W. Grimes } else { 38558f0484fSRodney W. Grimes struct nlist nl[4], *p; 38658f0484fSRodney W. Grimes 38758f0484fSRodney W. Grimes nl[0].n_name = "_nprocs"; 38858f0484fSRodney W. Grimes nl[1].n_name = "_allproc"; 38958f0484fSRodney W. Grimes nl[2].n_name = "_zombproc"; 39058f0484fSRodney W. Grimes nl[3].n_name = 0; 39158f0484fSRodney W. Grimes 39258f0484fSRodney W. Grimes if (kvm_nlist(kd, nl) != 0) { 39358f0484fSRodney W. Grimes for (p = nl; p->n_type != 0; ++p) 39458f0484fSRodney W. Grimes ; 39558f0484fSRodney W. Grimes _kvm_err(kd, kd->program, 39658f0484fSRodney W. Grimes "%s: no such symbol", p->n_name); 39758f0484fSRodney W. Grimes return (0); 39858f0484fSRodney W. Grimes } 39958f0484fSRodney W. Grimes if (KREAD(kd, nl[0].n_value, &nprocs)) { 40058f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "can't read nprocs"); 40158f0484fSRodney W. Grimes return (0); 40258f0484fSRodney W. Grimes } 40358f0484fSRodney W. Grimes size = nprocs * sizeof(struct kinfo_proc); 40458f0484fSRodney W. Grimes kd->procbase = (struct kinfo_proc *)_kvm_malloc(kd, size); 40558f0484fSRodney W. Grimes if (kd->procbase == 0) 40658f0484fSRodney W. Grimes return (0); 40758f0484fSRodney W. Grimes 40858f0484fSRodney W. Grimes nprocs = kvm_deadprocs(kd, op, arg, nl[1].n_value, 40958f0484fSRodney W. Grimes nl[2].n_value, nprocs); 41058f0484fSRodney W. Grimes #ifdef notdef 41158f0484fSRodney W. Grimes size = nprocs * sizeof(struct kinfo_proc); 41258f0484fSRodney W. Grimes (void)realloc(kd->procbase, size); 41358f0484fSRodney W. Grimes #endif 41458f0484fSRodney W. Grimes } 41558f0484fSRodney W. Grimes *cnt = nprocs; 41658f0484fSRodney W. Grimes return (kd->procbase); 41758f0484fSRodney W. Grimes } 41858f0484fSRodney W. Grimes 41958f0484fSRodney W. Grimes void 42058f0484fSRodney W. Grimes _kvm_freeprocs(kd) 42158f0484fSRodney W. Grimes kvm_t *kd; 42258f0484fSRodney W. Grimes { 42358f0484fSRodney W. Grimes if (kd->procbase) { 42458f0484fSRodney W. Grimes free(kd->procbase); 42558f0484fSRodney W. Grimes kd->procbase = 0; 42658f0484fSRodney W. Grimes } 42758f0484fSRodney W. Grimes } 42858f0484fSRodney W. Grimes 42958f0484fSRodney W. Grimes void * 43058f0484fSRodney W. Grimes _kvm_realloc(kd, p, n) 43158f0484fSRodney W. Grimes kvm_t *kd; 43258f0484fSRodney W. Grimes void *p; 43358f0484fSRodney W. Grimes size_t n; 43458f0484fSRodney W. Grimes { 43558f0484fSRodney W. Grimes void *np = (void *)realloc(p, n); 43658f0484fSRodney W. Grimes 43758f0484fSRodney W. Grimes if (np == 0) 43858f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "out of memory"); 43958f0484fSRodney W. Grimes return (np); 44058f0484fSRodney W. Grimes } 44158f0484fSRodney W. Grimes 44258f0484fSRodney W. Grimes #ifndef MAX 44358f0484fSRodney W. Grimes #define MAX(a, b) ((a) > (b) ? (a) : (b)) 44458f0484fSRodney W. Grimes #endif 44558f0484fSRodney W. Grimes 44658f0484fSRodney W. Grimes /* 44758f0484fSRodney W. Grimes * Read in an argument vector from the user address space of process p. 44858f0484fSRodney W. Grimes * addr if the user-space base address of narg null-terminated contiguous 44958f0484fSRodney W. Grimes * strings. This is used to read in both the command arguments and 45058f0484fSRodney W. Grimes * environment strings. Read at most maxcnt characters of strings. 45158f0484fSRodney W. Grimes */ 45258f0484fSRodney W. Grimes static char ** 45358f0484fSRodney W. Grimes kvm_argv(kd, p, addr, narg, maxcnt) 45458f0484fSRodney W. Grimes kvm_t *kd; 45558f0484fSRodney W. Grimes struct proc *p; 45658f0484fSRodney W. Grimes register u_long addr; 45758f0484fSRodney W. Grimes register int narg; 45858f0484fSRodney W. Grimes register int maxcnt; 45958f0484fSRodney W. Grimes { 46058f0484fSRodney W. Grimes register char *cp; 46158f0484fSRodney W. Grimes register int len, cc; 46258f0484fSRodney W. Grimes register char **argv; 46358f0484fSRodney W. Grimes 46458f0484fSRodney W. Grimes /* 46558f0484fSRodney W. Grimes * Check that there aren't an unreasonable number of agruments, 46658f0484fSRodney W. Grimes * and that the address is in user space. 46758f0484fSRodney W. Grimes */ 46858f0484fSRodney W. Grimes if (narg > 512 || addr < VM_MIN_ADDRESS || addr >= VM_MAXUSER_ADDRESS) 46958f0484fSRodney W. Grimes return (0); 47058f0484fSRodney W. Grimes 47158f0484fSRodney W. Grimes if (kd->argv == 0) { 47258f0484fSRodney W. Grimes /* 47358f0484fSRodney W. Grimes * Try to avoid reallocs. 47458f0484fSRodney W. Grimes */ 47558f0484fSRodney W. Grimes kd->argc = MAX(narg + 1, 32); 47658f0484fSRodney W. Grimes kd->argv = (char **)_kvm_malloc(kd, kd->argc * 47758f0484fSRodney W. Grimes sizeof(*kd->argv)); 47858f0484fSRodney W. Grimes if (kd->argv == 0) 47958f0484fSRodney W. Grimes return (0); 48058f0484fSRodney W. Grimes } else if (narg + 1 > kd->argc) { 48158f0484fSRodney W. Grimes kd->argc = MAX(2 * kd->argc, narg + 1); 48258f0484fSRodney W. Grimes kd->argv = (char **)_kvm_realloc(kd, kd->argv, kd->argc * 48358f0484fSRodney W. Grimes sizeof(*kd->argv)); 48458f0484fSRodney W. Grimes if (kd->argv == 0) 48558f0484fSRodney W. Grimes return (0); 48658f0484fSRodney W. Grimes } 48758f0484fSRodney W. Grimes if (kd->argspc == 0) { 48858f0484fSRodney W. Grimes kd->argspc = (char *)_kvm_malloc(kd, NBPG); 48958f0484fSRodney W. Grimes if (kd->argspc == 0) 49058f0484fSRodney W. Grimes return (0); 49158f0484fSRodney W. Grimes kd->arglen = NBPG; 49258f0484fSRodney W. Grimes } 49358f0484fSRodney W. Grimes cp = kd->argspc; 49458f0484fSRodney W. Grimes argv = kd->argv; 49558f0484fSRodney W. Grimes *argv = cp; 49658f0484fSRodney W. Grimes len = 0; 49758f0484fSRodney W. Grimes /* 49858f0484fSRodney W. Grimes * Loop over pages, filling in the argument vector. 49958f0484fSRodney W. Grimes */ 50058f0484fSRodney W. Grimes while (addr < VM_MAXUSER_ADDRESS) { 50158f0484fSRodney W. Grimes cc = NBPG - (addr & PGOFSET); 50258f0484fSRodney W. Grimes if (maxcnt > 0 && cc > maxcnt - len) 50358f0484fSRodney W. Grimes cc = maxcnt - len;; 50458f0484fSRodney W. Grimes if (len + cc > kd->arglen) { 50558f0484fSRodney W. Grimes register int off; 50658f0484fSRodney W. Grimes register char **pp; 50758f0484fSRodney W. Grimes register char *op = kd->argspc; 50858f0484fSRodney W. Grimes 50958f0484fSRodney W. Grimes kd->arglen *= 2; 51058f0484fSRodney W. Grimes kd->argspc = (char *)_kvm_realloc(kd, kd->argspc, 51158f0484fSRodney W. Grimes kd->arglen); 51258f0484fSRodney W. Grimes if (kd->argspc == 0) 51358f0484fSRodney W. Grimes return (0); 51458f0484fSRodney W. Grimes cp = &kd->argspc[len]; 51558f0484fSRodney W. Grimes /* 51658f0484fSRodney W. Grimes * Adjust argv pointers in case realloc moved 51758f0484fSRodney W. Grimes * the string space. 51858f0484fSRodney W. Grimes */ 51958f0484fSRodney W. Grimes off = kd->argspc - op; 52058f0484fSRodney W. Grimes for (pp = kd->argv; pp < argv; ++pp) 52158f0484fSRodney W. Grimes *pp += off; 52258f0484fSRodney W. Grimes } 52358f0484fSRodney W. Grimes if (kvm_uread(kd, p, addr, cp, cc) != cc) 52458f0484fSRodney W. Grimes /* XXX */ 52558f0484fSRodney W. Grimes return (0); 52658f0484fSRodney W. Grimes len += cc; 52758f0484fSRodney W. Grimes addr += cc; 52858f0484fSRodney W. Grimes 52958f0484fSRodney W. Grimes if (maxcnt == 0 && len > 16 * NBPG) 53058f0484fSRodney W. Grimes /* sanity */ 53158f0484fSRodney W. Grimes return (0); 53258f0484fSRodney W. Grimes 53358f0484fSRodney W. Grimes while (--cc >= 0) { 53458f0484fSRodney W. Grimes if (*cp++ == 0) { 53558f0484fSRodney W. Grimes if (--narg <= 0) { 53658f0484fSRodney W. Grimes *++argv = 0; 53758f0484fSRodney W. Grimes return (kd->argv); 53858f0484fSRodney W. Grimes } else 53958f0484fSRodney W. Grimes *++argv = cp; 54058f0484fSRodney W. Grimes } 54158f0484fSRodney W. Grimes } 54258f0484fSRodney W. Grimes if (maxcnt > 0 && len >= maxcnt) { 54358f0484fSRodney W. Grimes /* 54458f0484fSRodney W. Grimes * We're stopping prematurely. Terminate the 54558f0484fSRodney W. Grimes * argv and current string. 54658f0484fSRodney W. Grimes */ 54758f0484fSRodney W. Grimes *++argv = 0; 54858f0484fSRodney W. Grimes *cp = 0; 54958f0484fSRodney W. Grimes return (kd->argv); 55058f0484fSRodney W. Grimes } 55158f0484fSRodney W. Grimes } 55258f0484fSRodney W. Grimes } 55358f0484fSRodney W. Grimes 55458f0484fSRodney W. Grimes static void 55558f0484fSRodney W. Grimes ps_str_a(p, addr, n) 55658f0484fSRodney W. Grimes struct ps_strings *p; 55758f0484fSRodney W. Grimes u_long *addr; 55858f0484fSRodney W. Grimes int *n; 55958f0484fSRodney W. Grimes { 56058f0484fSRodney W. Grimes *addr = (u_long)p->ps_argvstr; 56158f0484fSRodney W. Grimes *n = p->ps_nargvstr; 56258f0484fSRodney W. Grimes } 56358f0484fSRodney W. Grimes 56458f0484fSRodney W. Grimes static void 56558f0484fSRodney W. Grimes ps_str_e(p, addr, n) 56658f0484fSRodney W. Grimes struct ps_strings *p; 56758f0484fSRodney W. Grimes u_long *addr; 56858f0484fSRodney W. Grimes int *n; 56958f0484fSRodney W. Grimes { 57058f0484fSRodney W. Grimes *addr = (u_long)p->ps_envstr; 57158f0484fSRodney W. Grimes *n = p->ps_nenvstr; 57258f0484fSRodney W. Grimes } 57358f0484fSRodney W. Grimes 57458f0484fSRodney W. Grimes /* 57558f0484fSRodney W. Grimes * Determine if the proc indicated by p is still active. 57658f0484fSRodney W. Grimes * This test is not 100% foolproof in theory, but chances of 57758f0484fSRodney W. Grimes * being wrong are very low. 57858f0484fSRodney W. Grimes */ 57958f0484fSRodney W. Grimes static int 58058f0484fSRodney W. Grimes proc_verify(kd, kernp, p) 58158f0484fSRodney W. Grimes kvm_t *kd; 58258f0484fSRodney W. Grimes u_long kernp; 58358f0484fSRodney W. Grimes const struct proc *p; 58458f0484fSRodney W. Grimes { 58558f0484fSRodney W. Grimes struct proc kernproc; 58658f0484fSRodney W. Grimes 58758f0484fSRodney W. Grimes /* 58858f0484fSRodney W. Grimes * Just read in the whole proc. It's not that big relative 58958f0484fSRodney W. Grimes * to the cost of the read system call. 59058f0484fSRodney W. Grimes */ 59158f0484fSRodney W. Grimes if (kvm_read(kd, kernp, (char *)&kernproc, sizeof(kernproc)) != 59258f0484fSRodney W. Grimes sizeof(kernproc)) 59358f0484fSRodney W. Grimes return (0); 59458f0484fSRodney W. Grimes return (p->p_pid == kernproc.p_pid && 59558f0484fSRodney W. Grimes (kernproc.p_stat != SZOMB || p->p_stat == SZOMB)); 59658f0484fSRodney W. Grimes } 59758f0484fSRodney W. Grimes 59858f0484fSRodney W. Grimes static char ** 59958f0484fSRodney W. Grimes kvm_doargv(kd, kp, nchr, info) 60058f0484fSRodney W. Grimes kvm_t *kd; 60158f0484fSRodney W. Grimes const struct kinfo_proc *kp; 60258f0484fSRodney W. Grimes int nchr; 60358f0484fSRodney W. Grimes int (*info)(struct ps_strings*, u_long *, int *); 60458f0484fSRodney W. Grimes { 60558f0484fSRodney W. Grimes register const struct proc *p = &kp->kp_proc; 60658f0484fSRodney W. Grimes register char **ap; 60758f0484fSRodney W. Grimes u_long addr; 60858f0484fSRodney W. Grimes int cnt; 60958f0484fSRodney W. Grimes struct ps_strings arginfo; 61058f0484fSRodney W. Grimes 61158f0484fSRodney W. Grimes /* 61258f0484fSRodney W. Grimes * Pointers are stored at the top of the user stack. 61358f0484fSRodney W. Grimes */ 61458f0484fSRodney W. Grimes if (p->p_stat == SZOMB || 61558f0484fSRodney W. Grimes kvm_uread(kd, p, USRSTACK - sizeof(arginfo), (char *)&arginfo, 61658f0484fSRodney W. Grimes sizeof(arginfo)) != sizeof(arginfo)) 61758f0484fSRodney W. Grimes return (0); 61858f0484fSRodney W. Grimes 61958f0484fSRodney W. Grimes (*info)(&arginfo, &addr, &cnt); 62058f0484fSRodney W. Grimes ap = kvm_argv(kd, p, addr, cnt, nchr); 62158f0484fSRodney W. Grimes /* 62258f0484fSRodney W. Grimes * For live kernels, make sure this process didn't go away. 62358f0484fSRodney W. Grimes */ 62458f0484fSRodney W. Grimes if (ap != 0 && ISALIVE(kd) && 62558f0484fSRodney W. Grimes !proc_verify(kd, (u_long)kp->kp_eproc.e_paddr, p)) 62658f0484fSRodney W. Grimes ap = 0; 62758f0484fSRodney W. Grimes return (ap); 62858f0484fSRodney W. Grimes } 62958f0484fSRodney W. Grimes 63058f0484fSRodney W. Grimes /* 63158f0484fSRodney W. Grimes * Get the command args. This code is now machine independent. 63258f0484fSRodney W. Grimes */ 63358f0484fSRodney W. Grimes char ** 63458f0484fSRodney W. Grimes kvm_getargv(kd, kp, nchr) 63558f0484fSRodney W. Grimes kvm_t *kd; 63658f0484fSRodney W. Grimes const struct kinfo_proc *kp; 63758f0484fSRodney W. Grimes int nchr; 63858f0484fSRodney W. Grimes { 63958f0484fSRodney W. Grimes return (kvm_doargv(kd, kp, nchr, ps_str_a)); 64058f0484fSRodney W. Grimes } 64158f0484fSRodney W. Grimes 64258f0484fSRodney W. Grimes char ** 64358f0484fSRodney W. Grimes kvm_getenvv(kd, kp, nchr) 64458f0484fSRodney W. Grimes kvm_t *kd; 64558f0484fSRodney W. Grimes const struct kinfo_proc *kp; 64658f0484fSRodney W. Grimes int nchr; 64758f0484fSRodney W. Grimes { 64858f0484fSRodney W. Grimes return (kvm_doargv(kd, kp, nchr, ps_str_e)); 64958f0484fSRodney W. Grimes } 65058f0484fSRodney W. Grimes 65158f0484fSRodney W. Grimes /* 65258f0484fSRodney W. Grimes * Read from user space. The user context is given by p. 65358f0484fSRodney W. Grimes */ 65458f0484fSRodney W. Grimes ssize_t 65558f0484fSRodney W. Grimes kvm_uread(kd, p, uva, buf, len) 65658f0484fSRodney W. Grimes kvm_t *kd; 65758f0484fSRodney W. Grimes register struct proc *p; 65858f0484fSRodney W. Grimes register u_long uva; 65958f0484fSRodney W. Grimes register char *buf; 66058f0484fSRodney W. Grimes register size_t len; 66158f0484fSRodney W. Grimes { 66258f0484fSRodney W. Grimes register char *cp; 66358f0484fSRodney W. Grimes 66458f0484fSRodney W. Grimes cp = buf; 66558f0484fSRodney W. Grimes while (len > 0) { 66658f0484fSRodney W. Grimes u_long pa; 66758f0484fSRodney W. Grimes register int cc; 66858f0484fSRodney W. Grimes 66958f0484fSRodney W. Grimes cc = _kvm_uvatop(kd, p, uva, &pa); 67058f0484fSRodney W. Grimes if (cc > 0) { 67158f0484fSRodney W. Grimes if (cc > len) 67258f0484fSRodney W. Grimes cc = len; 67358f0484fSRodney W. Grimes errno = 0; 67458f0484fSRodney W. Grimes if (lseek(kd->pmfd, (off_t)pa, 0) == -1 && errno != 0) { 67558f0484fSRodney W. Grimes _kvm_err(kd, 0, "invalid address (%x)", uva); 67658f0484fSRodney W. Grimes break; 67758f0484fSRodney W. Grimes } 67858f0484fSRodney W. Grimes cc = read(kd->pmfd, cp, cc); 67958f0484fSRodney W. Grimes if (cc < 0) { 68058f0484fSRodney W. Grimes _kvm_syserr(kd, 0, _PATH_MEM); 68158f0484fSRodney W. Grimes break; 68258f0484fSRodney W. Grimes } else if (cc < len) { 68358f0484fSRodney W. Grimes _kvm_err(kd, kd->program, "short read"); 68458f0484fSRodney W. Grimes break; 68558f0484fSRodney W. Grimes } 68658f0484fSRodney W. Grimes } else if (ISALIVE(kd)) { 68758f0484fSRodney W. Grimes /* try swap */ 68858f0484fSRodney W. Grimes register char *dp; 68958f0484fSRodney W. Grimes int cnt; 69058f0484fSRodney W. Grimes 69158f0484fSRodney W. Grimes dp = kvm_readswap(kd, p, uva, &cnt); 69258f0484fSRodney W. Grimes if (dp == 0) { 69358f0484fSRodney W. Grimes _kvm_err(kd, 0, "invalid address (%x)", uva); 69458f0484fSRodney W. Grimes return (0); 69558f0484fSRodney W. Grimes } 69658f0484fSRodney W. Grimes cc = MIN(cnt, len); 69758f0484fSRodney W. Grimes bcopy(dp, cp, cc); 69858f0484fSRodney W. Grimes } else 69958f0484fSRodney W. Grimes break; 70058f0484fSRodney W. Grimes cp += cc; 70158f0484fSRodney W. Grimes uva += cc; 70258f0484fSRodney W. Grimes len -= cc; 70358f0484fSRodney W. Grimes } 70458f0484fSRodney W. Grimes return (ssize_t)(cp - buf); 70558f0484fSRodney W. Grimes } 706