1eda14cbcSMatt Macy /* 2eda14cbcSMatt Macy * CDDL HEADER START 3eda14cbcSMatt Macy * 4eda14cbcSMatt Macy * The contents of this file are subject to the terms of the 5eda14cbcSMatt Macy * Common Development and Distribution License (the "License"). 6eda14cbcSMatt Macy * You may not use this file except in compliance with the License. 7eda14cbcSMatt Macy * 8eda14cbcSMatt Macy * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 9271171e0SMartin Matuska * or https://opensource.org/licenses/CDDL-1.0. 10eda14cbcSMatt Macy * See the License for the specific language governing permissions 11eda14cbcSMatt Macy * and limitations under the License. 12eda14cbcSMatt Macy * 13eda14cbcSMatt Macy * When distributing Covered Code, include this CDDL HEADER in each 14eda14cbcSMatt Macy * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 15eda14cbcSMatt Macy * If applicable, add the following below this CDDL HEADER, with the 16eda14cbcSMatt Macy * fields enclosed by brackets "[]" replaced with your own identifying 17eda14cbcSMatt Macy * information: Portions Copyright [yyyy] [name of copyright owner] 18eda14cbcSMatt Macy * 19eda14cbcSMatt Macy * CDDL HEADER END 20eda14cbcSMatt Macy */ 21eda14cbcSMatt Macy /* 22eda14cbcSMatt Macy * Copyright (c) 2006, 2010, Oracle and/or its affiliates. All rights reserved. 23716fd348SMartin Matuska * Copyright (c) 2013, 2014, Delphix. All rights reserved. 24271171e0SMartin Matuska * Copyright (c) 2019 Datto Inc. 2508aba0aeSMartin Matuska * Copyright (c) 2021, 2022, George Amanakis. All rights reserved. 26eda14cbcSMatt Macy */ 27eda14cbcSMatt Macy 28eda14cbcSMatt Macy /* 29eda14cbcSMatt Macy * Routines to manage the on-disk persistent error log. 30eda14cbcSMatt Macy * 31eda14cbcSMatt Macy * Each pool stores a log of all logical data errors seen during normal 32eda14cbcSMatt Macy * operation. This is actually the union of two distinct logs: the last log, 33eda14cbcSMatt Macy * and the current log. All errors seen are logged to the current log. When a 34eda14cbcSMatt Macy * scrub completes, the current log becomes the last log, the last log is thrown 35eda14cbcSMatt Macy * out, and the current log is reinitialized. This way, if an error is somehow 36eda14cbcSMatt Macy * corrected, a new scrub will show that it no longer exists, and will be 37eda14cbcSMatt Macy * deleted from the log when the scrub completes. 38eda14cbcSMatt Macy * 39eda14cbcSMatt Macy * The log is stored using a ZAP object whose key is a string form of the 40eda14cbcSMatt Macy * zbookmark_phys tuple (objset, object, level, blkid), and whose contents is an 41eda14cbcSMatt Macy * optional 'objset:object' human-readable string describing the data. When an 42eda14cbcSMatt Macy * error is first logged, this string will be empty, indicating that no name is 43eda14cbcSMatt Macy * known. This prevents us from having to issue a potentially large amount of 44eda14cbcSMatt Macy * I/O to discover the object name during an error path. Instead, we do the 45eda14cbcSMatt Macy * calculation when the data is requested, storing the result so future queries 46eda14cbcSMatt Macy * will be faster. 47eda14cbcSMatt Macy * 48716fd348SMartin Matuska * If the head_errlog feature is enabled, a different on-disk format is used. 49716fd348SMartin Matuska * The error log of each head dataset is stored separately in the zap object 50716fd348SMartin Matuska * and keyed by the head id. This enables listing every dataset affected in 51716fd348SMartin Matuska * userland. In order to be able to track whether an error block has been 52716fd348SMartin Matuska * modified or added to snapshots since it was marked as an error, a new tuple 53716fd348SMartin Matuska * is introduced: zbookmark_err_phys_t. It allows the storage of the birth 54716fd348SMartin Matuska * transaction group of an error block on-disk. The birth transaction group is 55716fd348SMartin Matuska * used by check_filesystem() to assess whether this block was freed, 56716fd348SMartin Matuska * re-written or added to a snapshot since its marking as an error. 57716fd348SMartin Matuska * 58eda14cbcSMatt Macy * This log is then shipped into an nvlist where the key is the dataset name and 59eda14cbcSMatt Macy * the value is the object name. Userland is then responsible for uniquifying 60eda14cbcSMatt Macy * this list and displaying it to the user. 61eda14cbcSMatt Macy */ 62eda14cbcSMatt Macy 63eda14cbcSMatt Macy #include <sys/dmu_tx.h> 64eda14cbcSMatt Macy #include <sys/spa.h> 65eda14cbcSMatt Macy #include <sys/spa_impl.h> 66eda14cbcSMatt Macy #include <sys/zap.h> 67eda14cbcSMatt Macy #include <sys/zio.h> 68716fd348SMartin Matuska #include <sys/dsl_dir.h> 69716fd348SMartin Matuska #include <sys/dmu_objset.h> 70716fd348SMartin Matuska #include <sys/dbuf.h> 7108aba0aeSMartin Matuska #include <sys/zfs_znode.h> 72eda14cbcSMatt Macy 73271171e0SMartin Matuska #define NAME_MAX_LEN 64 74271171e0SMartin Matuska 75716fd348SMartin Matuska /* 76716fd348SMartin Matuska * spa_upgrade_errlog_limit : A zfs module parameter that controls the number 77716fd348SMartin Matuska * of on-disk error log entries that will be converted to the new 78716fd348SMartin Matuska * format when enabling head_errlog. Defaults to 0 which converts 79716fd348SMartin Matuska * all log entries. 80716fd348SMartin Matuska */ 81be181ee2SMartin Matuska static uint_t spa_upgrade_errlog_limit = 0; 82eda14cbcSMatt Macy 83eda14cbcSMatt Macy /* 84eda14cbcSMatt Macy * Convert a bookmark to a string. 85eda14cbcSMatt Macy */ 86eda14cbcSMatt Macy static void 87eda14cbcSMatt Macy bookmark_to_name(zbookmark_phys_t *zb, char *buf, size_t len) 88eda14cbcSMatt Macy { 89eda14cbcSMatt Macy (void) snprintf(buf, len, "%llx:%llx:%llx:%llx", 90eda14cbcSMatt Macy (u_longlong_t)zb->zb_objset, (u_longlong_t)zb->zb_object, 91eda14cbcSMatt Macy (u_longlong_t)zb->zb_level, (u_longlong_t)zb->zb_blkid); 92eda14cbcSMatt Macy } 93eda14cbcSMatt Macy 94eda14cbcSMatt Macy /* 95716fd348SMartin Matuska * Convert an err_phys to a string. 96eda14cbcSMatt Macy */ 97716fd348SMartin Matuska static void 98716fd348SMartin Matuska errphys_to_name(zbookmark_err_phys_t *zep, char *buf, size_t len) 99716fd348SMartin Matuska { 100716fd348SMartin Matuska (void) snprintf(buf, len, "%llx:%llx:%llx:%llx", 101716fd348SMartin Matuska (u_longlong_t)zep->zb_object, (u_longlong_t)zep->zb_level, 102716fd348SMartin Matuska (u_longlong_t)zep->zb_blkid, (u_longlong_t)zep->zb_birth); 103716fd348SMartin Matuska } 104716fd348SMartin Matuska 105716fd348SMartin Matuska /* 106716fd348SMartin Matuska * Convert a string to a err_phys. 107716fd348SMartin Matuska */ 108716fd348SMartin Matuska static void 109716fd348SMartin Matuska name_to_errphys(char *buf, zbookmark_err_phys_t *zep) 110716fd348SMartin Matuska { 111716fd348SMartin Matuska zep->zb_object = zfs_strtonum(buf, &buf); 112716fd348SMartin Matuska ASSERT(*buf == ':'); 113716fd348SMartin Matuska zep->zb_level = (int)zfs_strtonum(buf + 1, &buf); 114716fd348SMartin Matuska ASSERT(*buf == ':'); 115716fd348SMartin Matuska zep->zb_blkid = zfs_strtonum(buf + 1, &buf); 116716fd348SMartin Matuska ASSERT(*buf == ':'); 117716fd348SMartin Matuska zep->zb_birth = zfs_strtonum(buf + 1, &buf); 118716fd348SMartin Matuska ASSERT(*buf == '\0'); 119716fd348SMartin Matuska } 120716fd348SMartin Matuska 121716fd348SMartin Matuska /* 122716fd348SMartin Matuska * Convert a string to a bookmark. 123716fd348SMartin Matuska */ 124eda14cbcSMatt Macy static void 125eda14cbcSMatt Macy name_to_bookmark(char *buf, zbookmark_phys_t *zb) 126eda14cbcSMatt Macy { 127eda14cbcSMatt Macy zb->zb_objset = zfs_strtonum(buf, &buf); 128eda14cbcSMatt Macy ASSERT(*buf == ':'); 129eda14cbcSMatt Macy zb->zb_object = zfs_strtonum(buf + 1, &buf); 130eda14cbcSMatt Macy ASSERT(*buf == ':'); 131eda14cbcSMatt Macy zb->zb_level = (int)zfs_strtonum(buf + 1, &buf); 132eda14cbcSMatt Macy ASSERT(*buf == ':'); 133eda14cbcSMatt Macy zb->zb_blkid = zfs_strtonum(buf + 1, &buf); 134eda14cbcSMatt Macy ASSERT(*buf == '\0'); 135eda14cbcSMatt Macy } 136716fd348SMartin Matuska 137716fd348SMartin Matuska #ifdef _KERNEL 138716fd348SMartin Matuska static void 139716fd348SMartin Matuska zep_to_zb(uint64_t dataset, zbookmark_err_phys_t *zep, zbookmark_phys_t *zb) 140716fd348SMartin Matuska { 141716fd348SMartin Matuska zb->zb_objset = dataset; 142716fd348SMartin Matuska zb->zb_object = zep->zb_object; 143716fd348SMartin Matuska zb->zb_level = zep->zb_level; 144716fd348SMartin Matuska zb->zb_blkid = zep->zb_blkid; 145716fd348SMartin Matuska } 146eda14cbcSMatt Macy #endif 147eda14cbcSMatt Macy 148716fd348SMartin Matuska static void 149716fd348SMartin Matuska name_to_object(char *buf, uint64_t *obj) 150716fd348SMartin Matuska { 151716fd348SMartin Matuska *obj = zfs_strtonum(buf, &buf); 152716fd348SMartin Matuska ASSERT(*buf == '\0'); 153716fd348SMartin Matuska } 154716fd348SMartin Matuska 155716fd348SMartin Matuska static int 156716fd348SMartin Matuska get_head_and_birth_txg(spa_t *spa, zbookmark_err_phys_t *zep, uint64_t ds_obj, 157716fd348SMartin Matuska uint64_t *head_dataset_id) 158716fd348SMartin Matuska { 159716fd348SMartin Matuska dsl_pool_t *dp = spa->spa_dsl_pool; 160716fd348SMartin Matuska dsl_dataset_t *ds; 161716fd348SMartin Matuska objset_t *os; 162716fd348SMartin Matuska 163716fd348SMartin Matuska int error = dsl_dataset_hold_obj(dp, ds_obj, FTAG, &ds); 164716fd348SMartin Matuska if (error != 0) { 165716fd348SMartin Matuska return (error); 166716fd348SMartin Matuska } 167716fd348SMartin Matuska ASSERT(head_dataset_id); 168716fd348SMartin Matuska *head_dataset_id = dsl_dir_phys(ds->ds_dir)->dd_head_dataset_obj; 169716fd348SMartin Matuska 170716fd348SMartin Matuska error = dmu_objset_from_ds(ds, &os); 171716fd348SMartin Matuska if (error != 0) { 172716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 173716fd348SMartin Matuska return (error); 174716fd348SMartin Matuska } 175716fd348SMartin Matuska 17608aba0aeSMartin Matuska /* 17708aba0aeSMartin Matuska * If the key is not loaded dbuf_dnode_findbp() will error out with 17808aba0aeSMartin Matuska * EACCES. However in that case dnode_hold() will eventually call 17908aba0aeSMartin Matuska * dbuf_read()->zio_wait() which may call spa_log_error(). This will 18008aba0aeSMartin Matuska * lead to a deadlock due to us holding the mutex spa_errlist_lock. 18108aba0aeSMartin Matuska * Avoid this by checking here if the keys are loaded, if not return. 18208aba0aeSMartin Matuska * If the keys are not loaded the head_errlog feature is meaningless 18308aba0aeSMartin Matuska * as we cannot figure out the birth txg of the block pointer. 18408aba0aeSMartin Matuska */ 18508aba0aeSMartin Matuska if (dsl_dataset_get_keystatus(ds->ds_dir) == 18608aba0aeSMartin Matuska ZFS_KEYSTATUS_UNAVAILABLE) { 18708aba0aeSMartin Matuska zep->zb_birth = 0; 18808aba0aeSMartin Matuska dsl_dataset_rele(ds, FTAG); 18908aba0aeSMartin Matuska return (0); 19008aba0aeSMartin Matuska } 19108aba0aeSMartin Matuska 192716fd348SMartin Matuska dnode_t *dn; 193716fd348SMartin Matuska blkptr_t bp; 194716fd348SMartin Matuska 195716fd348SMartin Matuska error = dnode_hold(os, zep->zb_object, FTAG, &dn); 196716fd348SMartin Matuska if (error != 0) { 197716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 198716fd348SMartin Matuska return (error); 199716fd348SMartin Matuska } 200716fd348SMartin Matuska 201716fd348SMartin Matuska rw_enter(&dn->dn_struct_rwlock, RW_READER); 202716fd348SMartin Matuska error = dbuf_dnode_findbp(dn, zep->zb_level, zep->zb_blkid, &bp, NULL, 203716fd348SMartin Matuska NULL); 204716fd348SMartin Matuska if (error == 0 && BP_IS_HOLE(&bp)) 205716fd348SMartin Matuska error = SET_ERROR(ENOENT); 206716fd348SMartin Matuska 20708aba0aeSMartin Matuska /* 20808aba0aeSMartin Matuska * If the key is loaded but the encrypted filesystem is unmounted when 20908aba0aeSMartin Matuska * a scrub is run, then dbuf_dnode_findbp() will still error out with 21008aba0aeSMartin Matuska * EACCES (possibly due to the key mapping being removed upon 21108aba0aeSMartin Matuska * unmounting). In that case the head_errlog feature is also 21208aba0aeSMartin Matuska * meaningless as we cannot figure out the birth txg of the block 21308aba0aeSMartin Matuska * pointer. 21408aba0aeSMartin Matuska */ 21508aba0aeSMartin Matuska if (error == EACCES) 21608aba0aeSMartin Matuska error = 0; 21708aba0aeSMartin Matuska else if (!error) 218716fd348SMartin Matuska zep->zb_birth = bp.blk_birth; 21908aba0aeSMartin Matuska 220716fd348SMartin Matuska rw_exit(&dn->dn_struct_rwlock); 221716fd348SMartin Matuska dnode_rele(dn, FTAG); 222716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 223716fd348SMartin Matuska return (error); 224716fd348SMartin Matuska } 225716fd348SMartin Matuska 226eda14cbcSMatt Macy /* 227eda14cbcSMatt Macy * Log an uncorrectable error to the persistent error log. We add it to the 228eda14cbcSMatt Macy * spa's list of pending errors. The changes are actually synced out to disk 229eda14cbcSMatt Macy * during spa_errlog_sync(). 230eda14cbcSMatt Macy */ 231eda14cbcSMatt Macy void 232eda14cbcSMatt Macy spa_log_error(spa_t *spa, const zbookmark_phys_t *zb) 233eda14cbcSMatt Macy { 234eda14cbcSMatt Macy spa_error_entry_t search; 235eda14cbcSMatt Macy spa_error_entry_t *new; 236eda14cbcSMatt Macy avl_tree_t *tree; 237eda14cbcSMatt Macy avl_index_t where; 238eda14cbcSMatt Macy 239eda14cbcSMatt Macy /* 240eda14cbcSMatt Macy * If we are trying to import a pool, ignore any errors, as we won't be 241eda14cbcSMatt Macy * writing to the pool any time soon. 242eda14cbcSMatt Macy */ 243eda14cbcSMatt Macy if (spa_load_state(spa) == SPA_LOAD_TRYIMPORT) 244eda14cbcSMatt Macy return; 245eda14cbcSMatt Macy 246eda14cbcSMatt Macy mutex_enter(&spa->spa_errlist_lock); 247eda14cbcSMatt Macy 248eda14cbcSMatt Macy /* 249eda14cbcSMatt Macy * If we have had a request to rotate the log, log it to the next list 250eda14cbcSMatt Macy * instead of the current one. 251eda14cbcSMatt Macy */ 252eda14cbcSMatt Macy if (spa->spa_scrub_active || spa->spa_scrub_finished) 253eda14cbcSMatt Macy tree = &spa->spa_errlist_scrub; 254eda14cbcSMatt Macy else 255eda14cbcSMatt Macy tree = &spa->spa_errlist_last; 256eda14cbcSMatt Macy 257eda14cbcSMatt Macy search.se_bookmark = *zb; 258eda14cbcSMatt Macy if (avl_find(tree, &search, &where) != NULL) { 259eda14cbcSMatt Macy mutex_exit(&spa->spa_errlist_lock); 260eda14cbcSMatt Macy return; 261eda14cbcSMatt Macy } 262eda14cbcSMatt Macy 263eda14cbcSMatt Macy new = kmem_zalloc(sizeof (spa_error_entry_t), KM_SLEEP); 264eda14cbcSMatt Macy new->se_bookmark = *zb; 265eda14cbcSMatt Macy avl_insert(tree, new, where); 266eda14cbcSMatt Macy 267eda14cbcSMatt Macy mutex_exit(&spa->spa_errlist_lock); 268eda14cbcSMatt Macy } 269eda14cbcSMatt Macy 270716fd348SMartin Matuska #ifdef _KERNEL 271716fd348SMartin Matuska static int 272716fd348SMartin Matuska find_birth_txg(dsl_dataset_t *ds, zbookmark_err_phys_t *zep, 273716fd348SMartin Matuska uint64_t *birth_txg) 274716fd348SMartin Matuska { 275716fd348SMartin Matuska objset_t *os; 276716fd348SMartin Matuska int error = dmu_objset_from_ds(ds, &os); 277716fd348SMartin Matuska if (error != 0) 278716fd348SMartin Matuska return (error); 279716fd348SMartin Matuska 280716fd348SMartin Matuska dnode_t *dn; 281716fd348SMartin Matuska blkptr_t bp; 282716fd348SMartin Matuska 283716fd348SMartin Matuska error = dnode_hold(os, zep->zb_object, FTAG, &dn); 284716fd348SMartin Matuska if (error != 0) 285716fd348SMartin Matuska return (error); 286716fd348SMartin Matuska 287716fd348SMartin Matuska rw_enter(&dn->dn_struct_rwlock, RW_READER); 288716fd348SMartin Matuska error = dbuf_dnode_findbp(dn, zep->zb_level, zep->zb_blkid, &bp, NULL, 289716fd348SMartin Matuska NULL); 290716fd348SMartin Matuska if (error == 0 && BP_IS_HOLE(&bp)) 291716fd348SMartin Matuska error = SET_ERROR(ENOENT); 292716fd348SMartin Matuska 293716fd348SMartin Matuska *birth_txg = bp.blk_birth; 294716fd348SMartin Matuska rw_exit(&dn->dn_struct_rwlock); 295716fd348SMartin Matuska dnode_rele(dn, FTAG); 296716fd348SMartin Matuska return (error); 297716fd348SMartin Matuska } 298716fd348SMartin Matuska 299716fd348SMartin Matuska /* 300*15f0b8c3SMartin Matuska * Copy the bookmark to the end of the user-space buffer which starts at 301*15f0b8c3SMartin Matuska * uaddr and has *count unused entries, and decrement *count by 1. 302*15f0b8c3SMartin Matuska */ 303*15f0b8c3SMartin Matuska static int 304*15f0b8c3SMartin Matuska copyout_entry(const zbookmark_phys_t *zb, void *uaddr, uint64_t *count) 305*15f0b8c3SMartin Matuska { 306*15f0b8c3SMartin Matuska if (*count == 0) 307*15f0b8c3SMartin Matuska return (SET_ERROR(ENOMEM)); 308*15f0b8c3SMartin Matuska 309*15f0b8c3SMartin Matuska *count -= 1; 310*15f0b8c3SMartin Matuska if (copyout(zb, (char *)uaddr + (*count) * sizeof (zbookmark_phys_t), 311*15f0b8c3SMartin Matuska sizeof (zbookmark_phys_t)) != 0) 312*15f0b8c3SMartin Matuska return (SET_ERROR(EFAULT)); 313*15f0b8c3SMartin Matuska return (0); 314*15f0b8c3SMartin Matuska } 315*15f0b8c3SMartin Matuska 316*15f0b8c3SMartin Matuska /* 317*15f0b8c3SMartin Matuska * Each time the error block is referenced by a snapshot or clone, add a 318*15f0b8c3SMartin Matuska * zbookmark_phys_t entry to the userspace array at uaddr. The array is 319*15f0b8c3SMartin Matuska * filled from the back and the in-out parameter *count is modified to be the 320*15f0b8c3SMartin Matuska * number of unused entries at the beginning of the array. 321716fd348SMartin Matuska */ 322716fd348SMartin Matuska static int 323716fd348SMartin Matuska check_filesystem(spa_t *spa, uint64_t head_ds, zbookmark_err_phys_t *zep, 324*15f0b8c3SMartin Matuska void *uaddr, uint64_t *count) 325716fd348SMartin Matuska { 326716fd348SMartin Matuska dsl_dataset_t *ds; 327716fd348SMartin Matuska dsl_pool_t *dp = spa->spa_dsl_pool; 328716fd348SMartin Matuska 329716fd348SMartin Matuska int error = dsl_dataset_hold_obj(dp, head_ds, FTAG, &ds); 330716fd348SMartin Matuska if (error != 0) 331716fd348SMartin Matuska return (error); 332716fd348SMartin Matuska 333716fd348SMartin Matuska uint64_t latest_txg; 334716fd348SMartin Matuska uint64_t txg_to_consider = spa->spa_syncing_txg; 335716fd348SMartin Matuska boolean_t check_snapshot = B_TRUE; 336716fd348SMartin Matuska error = find_birth_txg(ds, zep, &latest_txg); 33708aba0aeSMartin Matuska 33808aba0aeSMartin Matuska /* 33908aba0aeSMartin Matuska * If we cannot figure out the current birth txg of the block pointer 34008aba0aeSMartin Matuska * error out. If the filesystem is encrypted and the key is not loaded 34108aba0aeSMartin Matuska * or the encrypted filesystem is not mounted the error will be EACCES. 34208aba0aeSMartin Matuska * In that case do not return an error. 34308aba0aeSMartin Matuska */ 34408aba0aeSMartin Matuska if (error == EACCES) { 34508aba0aeSMartin Matuska dsl_dataset_rele(ds, FTAG); 34608aba0aeSMartin Matuska return (0); 34708aba0aeSMartin Matuska } 34808aba0aeSMartin Matuska if (error) { 34908aba0aeSMartin Matuska dsl_dataset_rele(ds, FTAG); 35008aba0aeSMartin Matuska return (error); 35108aba0aeSMartin Matuska } 352716fd348SMartin Matuska if (zep->zb_birth == latest_txg) { 353716fd348SMartin Matuska /* Block neither free nor rewritten. */ 354716fd348SMartin Matuska zbookmark_phys_t zb; 355716fd348SMartin Matuska zep_to_zb(head_ds, zep, &zb); 356*15f0b8c3SMartin Matuska error = copyout_entry(&zb, uaddr, count); 357*15f0b8c3SMartin Matuska if (error != 0) { 358716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 359*15f0b8c3SMartin Matuska return (error); 360716fd348SMartin Matuska } 361716fd348SMartin Matuska check_snapshot = B_FALSE; 362716fd348SMartin Matuska } else { 363716fd348SMartin Matuska ASSERT3U(zep->zb_birth, <, latest_txg); 364716fd348SMartin Matuska txg_to_consider = latest_txg; 365716fd348SMartin Matuska } 366716fd348SMartin Matuska 367716fd348SMartin Matuska /* How many snapshots reference this block. */ 368716fd348SMartin Matuska uint64_t snap_count; 369716fd348SMartin Matuska error = zap_count(spa->spa_meta_objset, 370716fd348SMartin Matuska dsl_dataset_phys(ds)->ds_snapnames_zapobj, &snap_count); 371716fd348SMartin Matuska if (error != 0) { 372716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 373716fd348SMartin Matuska return (error); 374716fd348SMartin Matuska } 375716fd348SMartin Matuska 376716fd348SMartin Matuska if (snap_count == 0) { 377716fd348SMartin Matuska /* File system has no snapshot. */ 378716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 379716fd348SMartin Matuska return (0); 380716fd348SMartin Matuska } 381716fd348SMartin Matuska 382716fd348SMartin Matuska uint64_t *snap_obj_array = kmem_alloc(snap_count * sizeof (uint64_t), 383716fd348SMartin Matuska KM_SLEEP); 384716fd348SMartin Matuska 385716fd348SMartin Matuska int aff_snap_count = 0; 386716fd348SMartin Matuska uint64_t snap_obj = dsl_dataset_phys(ds)->ds_prev_snap_obj; 387716fd348SMartin Matuska uint64_t snap_obj_txg = dsl_dataset_phys(ds)->ds_prev_snap_txg; 388716fd348SMartin Matuska 389716fd348SMartin Matuska /* Check only snapshots created from this file system. */ 390716fd348SMartin Matuska while (snap_obj != 0 && zep->zb_birth < snap_obj_txg && 391716fd348SMartin Matuska snap_obj_txg <= txg_to_consider) { 392716fd348SMartin Matuska 393716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 394716fd348SMartin Matuska error = dsl_dataset_hold_obj(dp, snap_obj, FTAG, &ds); 395716fd348SMartin Matuska if (error != 0) 396716fd348SMartin Matuska goto out; 397716fd348SMartin Matuska 398716fd348SMartin Matuska if (dsl_dir_phys(ds->ds_dir)->dd_head_dataset_obj != head_ds) 399716fd348SMartin Matuska break; 400716fd348SMartin Matuska 401716fd348SMartin Matuska boolean_t affected = B_TRUE; 402716fd348SMartin Matuska if (check_snapshot) { 403716fd348SMartin Matuska uint64_t blk_txg; 404716fd348SMartin Matuska error = find_birth_txg(ds, zep, &blk_txg); 405716fd348SMartin Matuska affected = (error == 0 && zep->zb_birth == blk_txg); 406716fd348SMartin Matuska } 407716fd348SMartin Matuska 408716fd348SMartin Matuska if (affected) { 409716fd348SMartin Matuska snap_obj_array[aff_snap_count] = snap_obj; 410716fd348SMartin Matuska aff_snap_count++; 411716fd348SMartin Matuska 412716fd348SMartin Matuska zbookmark_phys_t zb; 413716fd348SMartin Matuska zep_to_zb(snap_obj, zep, &zb); 414*15f0b8c3SMartin Matuska error = copyout_entry(&zb, uaddr, count); 415*15f0b8c3SMartin Matuska if (error != 0) { 416716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 417716fd348SMartin Matuska goto out; 418716fd348SMartin Matuska } 419716fd348SMartin Matuska 420716fd348SMartin Matuska /* 421716fd348SMartin Matuska * Only clones whose origins were affected could also 422716fd348SMartin Matuska * have affected snapshots. 423716fd348SMartin Matuska */ 424716fd348SMartin Matuska zap_cursor_t zc; 425716fd348SMartin Matuska zap_attribute_t za; 426716fd348SMartin Matuska for (zap_cursor_init(&zc, spa->spa_meta_objset, 427716fd348SMartin Matuska dsl_dataset_phys(ds)->ds_next_clones_obj); 428716fd348SMartin Matuska zap_cursor_retrieve(&zc, &za) == 0; 429716fd348SMartin Matuska zap_cursor_advance(&zc)) { 430716fd348SMartin Matuska error = check_filesystem(spa, 431*15f0b8c3SMartin Matuska za.za_first_integer, zep, uaddr, count); 432716fd348SMartin Matuska 433716fd348SMartin Matuska if (error != 0) { 434716fd348SMartin Matuska zap_cursor_fini(&zc); 435716fd348SMartin Matuska goto out; 436716fd348SMartin Matuska } 437716fd348SMartin Matuska } 438716fd348SMartin Matuska zap_cursor_fini(&zc); 439716fd348SMartin Matuska } 440716fd348SMartin Matuska snap_obj_txg = dsl_dataset_phys(ds)->ds_prev_snap_txg; 441716fd348SMartin Matuska snap_obj = dsl_dataset_phys(ds)->ds_prev_snap_obj; 442716fd348SMartin Matuska } 443716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 444716fd348SMartin Matuska 445716fd348SMartin Matuska out: 446716fd348SMartin Matuska kmem_free(snap_obj_array, sizeof (*snap_obj_array)); 447716fd348SMartin Matuska return (error); 448716fd348SMartin Matuska } 449716fd348SMartin Matuska 450716fd348SMartin Matuska static int 451716fd348SMartin Matuska find_top_affected_fs(spa_t *spa, uint64_t head_ds, zbookmark_err_phys_t *zep, 452716fd348SMartin Matuska uint64_t *top_affected_fs) 453716fd348SMartin Matuska { 454716fd348SMartin Matuska uint64_t oldest_dsobj; 455716fd348SMartin Matuska int error = dsl_dataset_oldest_snapshot(spa, head_ds, zep->zb_birth, 456716fd348SMartin Matuska &oldest_dsobj); 457716fd348SMartin Matuska if (error != 0) 458716fd348SMartin Matuska return (error); 459716fd348SMartin Matuska 460716fd348SMartin Matuska dsl_dataset_t *ds; 461716fd348SMartin Matuska error = dsl_dataset_hold_obj(spa->spa_dsl_pool, oldest_dsobj, 462716fd348SMartin Matuska FTAG, &ds); 463716fd348SMartin Matuska if (error != 0) 464716fd348SMartin Matuska return (error); 465716fd348SMartin Matuska 466716fd348SMartin Matuska *top_affected_fs = 467716fd348SMartin Matuska dsl_dir_phys(ds->ds_dir)->dd_head_dataset_obj; 468716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 469716fd348SMartin Matuska return (0); 470716fd348SMartin Matuska } 471716fd348SMartin Matuska 472716fd348SMartin Matuska static int 473716fd348SMartin Matuska process_error_block(spa_t *spa, uint64_t head_ds, zbookmark_err_phys_t *zep, 474*15f0b8c3SMartin Matuska void *uaddr, uint64_t *count) 475716fd348SMartin Matuska { 47608aba0aeSMartin Matuska /* 47708aba0aeSMartin Matuska * If the zb_birth is 0 it means we failed to retrieve the birth txg 47808aba0aeSMartin Matuska * of the block pointer. This happens when an encrypted filesystem is 47908aba0aeSMartin Matuska * not mounted or when the key is not loaded. Do not proceed to 48008aba0aeSMartin Matuska * check_filesystem(), instead do the accounting here. 48108aba0aeSMartin Matuska */ 48208aba0aeSMartin Matuska if (zep->zb_birth == 0) { 48308aba0aeSMartin Matuska zbookmark_phys_t zb; 48408aba0aeSMartin Matuska zep_to_zb(head_ds, zep, &zb); 485*15f0b8c3SMartin Matuska int error = copyout_entry(&zb, uaddr, count); 486*15f0b8c3SMartin Matuska if (error != 0) { 487716fd348SMartin Matuska return (error); 488716fd348SMartin Matuska } 489716fd348SMartin Matuska return (0); 490716fd348SMartin Matuska } 491716fd348SMartin Matuska 492*15f0b8c3SMartin Matuska uint64_t top_affected_fs; 493*15f0b8c3SMartin Matuska int error = find_top_affected_fs(spa, head_ds, zep, &top_affected_fs); 494*15f0b8c3SMartin Matuska if (error == 0) { 495*15f0b8c3SMartin Matuska error = check_filesystem(spa, top_affected_fs, zep, 496*15f0b8c3SMartin Matuska uaddr, count); 497716fd348SMartin Matuska } 498*15f0b8c3SMartin Matuska 499*15f0b8c3SMartin Matuska return (error); 500716fd348SMartin Matuska } 501716fd348SMartin Matuska #endif 502716fd348SMartin Matuska 503eda14cbcSMatt Macy /* 504271171e0SMartin Matuska * If a healed bookmark matches an entry in the error log we stash it in a tree 505271171e0SMartin Matuska * so that we can later remove the related log entries in sync context. 506271171e0SMartin Matuska */ 507271171e0SMartin Matuska static void 508271171e0SMartin Matuska spa_add_healed_error(spa_t *spa, uint64_t obj, zbookmark_phys_t *healed_zb) 509271171e0SMartin Matuska { 510271171e0SMartin Matuska char name[NAME_MAX_LEN]; 511271171e0SMartin Matuska 512271171e0SMartin Matuska if (obj == 0) 513271171e0SMartin Matuska return; 514271171e0SMartin Matuska 515271171e0SMartin Matuska bookmark_to_name(healed_zb, name, sizeof (name)); 516271171e0SMartin Matuska mutex_enter(&spa->spa_errlog_lock); 517271171e0SMartin Matuska if (zap_contains(spa->spa_meta_objset, obj, name) == 0) { 518271171e0SMartin Matuska /* 519271171e0SMartin Matuska * Found an error matching healed zb, add zb to our 520271171e0SMartin Matuska * tree of healed errors 521271171e0SMartin Matuska */ 522271171e0SMartin Matuska avl_tree_t *tree = &spa->spa_errlist_healed; 523271171e0SMartin Matuska spa_error_entry_t search; 524271171e0SMartin Matuska spa_error_entry_t *new; 525271171e0SMartin Matuska avl_index_t where; 526271171e0SMartin Matuska search.se_bookmark = *healed_zb; 527271171e0SMartin Matuska mutex_enter(&spa->spa_errlist_lock); 528271171e0SMartin Matuska if (avl_find(tree, &search, &where) != NULL) { 529271171e0SMartin Matuska mutex_exit(&spa->spa_errlist_lock); 530271171e0SMartin Matuska mutex_exit(&spa->spa_errlog_lock); 531271171e0SMartin Matuska return; 532271171e0SMartin Matuska } 533271171e0SMartin Matuska new = kmem_zalloc(sizeof (spa_error_entry_t), KM_SLEEP); 534271171e0SMartin Matuska new->se_bookmark = *healed_zb; 535271171e0SMartin Matuska avl_insert(tree, new, where); 536271171e0SMartin Matuska mutex_exit(&spa->spa_errlist_lock); 537271171e0SMartin Matuska } 538271171e0SMartin Matuska mutex_exit(&spa->spa_errlog_lock); 539271171e0SMartin Matuska } 540271171e0SMartin Matuska 541271171e0SMartin Matuska /* 542271171e0SMartin Matuska * If this error exists in the given tree remove it. 543271171e0SMartin Matuska */ 544271171e0SMartin Matuska static void 545271171e0SMartin Matuska remove_error_from_list(spa_t *spa, avl_tree_t *t, const zbookmark_phys_t *zb) 546271171e0SMartin Matuska { 547271171e0SMartin Matuska spa_error_entry_t search, *found; 548271171e0SMartin Matuska avl_index_t where; 549271171e0SMartin Matuska 550271171e0SMartin Matuska mutex_enter(&spa->spa_errlist_lock); 551271171e0SMartin Matuska search.se_bookmark = *zb; 552271171e0SMartin Matuska if ((found = avl_find(t, &search, &where)) != NULL) { 553271171e0SMartin Matuska avl_remove(t, found); 554271171e0SMartin Matuska kmem_free(found, sizeof (spa_error_entry_t)); 555271171e0SMartin Matuska } 556271171e0SMartin Matuska mutex_exit(&spa->spa_errlist_lock); 557271171e0SMartin Matuska } 558271171e0SMartin Matuska 559271171e0SMartin Matuska 560271171e0SMartin Matuska /* 561271171e0SMartin Matuska * Removes all of the recv healed errors from both on-disk error logs 562271171e0SMartin Matuska */ 563271171e0SMartin Matuska static void 564271171e0SMartin Matuska spa_remove_healed_errors(spa_t *spa, avl_tree_t *s, avl_tree_t *l, dmu_tx_t *tx) 565271171e0SMartin Matuska { 566271171e0SMartin Matuska char name[NAME_MAX_LEN]; 567271171e0SMartin Matuska spa_error_entry_t *se; 568271171e0SMartin Matuska void *cookie = NULL; 569271171e0SMartin Matuska 570271171e0SMartin Matuska ASSERT(MUTEX_HELD(&spa->spa_errlog_lock)); 571271171e0SMartin Matuska 572271171e0SMartin Matuska while ((se = avl_destroy_nodes(&spa->spa_errlist_healed, 573271171e0SMartin Matuska &cookie)) != NULL) { 574271171e0SMartin Matuska remove_error_from_list(spa, s, &se->se_bookmark); 575271171e0SMartin Matuska remove_error_from_list(spa, l, &se->se_bookmark); 576271171e0SMartin Matuska bookmark_to_name(&se->se_bookmark, name, sizeof (name)); 577271171e0SMartin Matuska kmem_free(se, sizeof (spa_error_entry_t)); 578271171e0SMartin Matuska (void) zap_remove(spa->spa_meta_objset, 579271171e0SMartin Matuska spa->spa_errlog_last, name, tx); 580271171e0SMartin Matuska (void) zap_remove(spa->spa_meta_objset, 581271171e0SMartin Matuska spa->spa_errlog_scrub, name, tx); 582271171e0SMartin Matuska } 583271171e0SMartin Matuska } 584271171e0SMartin Matuska 585271171e0SMartin Matuska /* 586271171e0SMartin Matuska * Stash away healed bookmarks to remove them from the on-disk error logs 587271171e0SMartin Matuska * later in spa_remove_healed_errors(). 588271171e0SMartin Matuska */ 589271171e0SMartin Matuska void 590271171e0SMartin Matuska spa_remove_error(spa_t *spa, zbookmark_phys_t *zb) 591271171e0SMartin Matuska { 592271171e0SMartin Matuska char name[NAME_MAX_LEN]; 593271171e0SMartin Matuska 594271171e0SMartin Matuska bookmark_to_name(zb, name, sizeof (name)); 595271171e0SMartin Matuska 596271171e0SMartin Matuska spa_add_healed_error(spa, spa->spa_errlog_last, zb); 597271171e0SMartin Matuska spa_add_healed_error(spa, spa->spa_errlog_scrub, zb); 598271171e0SMartin Matuska } 599271171e0SMartin Matuska 600*15f0b8c3SMartin Matuska static uint64_t 601*15f0b8c3SMartin Matuska approx_errlog_size_impl(spa_t *spa, uint64_t spa_err_obj) 602*15f0b8c3SMartin Matuska { 603*15f0b8c3SMartin Matuska if (spa_err_obj == 0) 604*15f0b8c3SMartin Matuska return (0); 605*15f0b8c3SMartin Matuska uint64_t total = 0; 606*15f0b8c3SMartin Matuska 607*15f0b8c3SMartin Matuska zap_cursor_t zc; 608*15f0b8c3SMartin Matuska zap_attribute_t za; 609*15f0b8c3SMartin Matuska for (zap_cursor_init(&zc, spa->spa_meta_objset, spa_err_obj); 610*15f0b8c3SMartin Matuska zap_cursor_retrieve(&zc, &za) == 0; zap_cursor_advance(&zc)) { 611*15f0b8c3SMartin Matuska uint64_t count; 612*15f0b8c3SMartin Matuska if (zap_count(spa->spa_meta_objset, za.za_first_integer, 613*15f0b8c3SMartin Matuska &count) == 0) 614*15f0b8c3SMartin Matuska total += count; 615*15f0b8c3SMartin Matuska } 616*15f0b8c3SMartin Matuska zap_cursor_fini(&zc); 617*15f0b8c3SMartin Matuska return (total); 618*15f0b8c3SMartin Matuska } 619*15f0b8c3SMartin Matuska 620271171e0SMartin Matuska /* 621*15f0b8c3SMartin Matuska * Return the approximate number of errors currently in the error log. This 622*15f0b8c3SMartin Matuska * will be nonzero if there are some errors, but otherwise it may be more 623*15f0b8c3SMartin Matuska * or less than the number of entries returned by spa_get_errlog(). 624eda14cbcSMatt Macy */ 625eda14cbcSMatt Macy uint64_t 626*15f0b8c3SMartin Matuska spa_approx_errlog_size(spa_t *spa) 627eda14cbcSMatt Macy { 628716fd348SMartin Matuska uint64_t total = 0; 629eda14cbcSMatt Macy 630716fd348SMartin Matuska if (!spa_feature_is_enabled(spa, SPA_FEATURE_HEAD_ERRLOG)) { 631eda14cbcSMatt Macy mutex_enter(&spa->spa_errlog_lock); 632716fd348SMartin Matuska uint64_t count; 633eda14cbcSMatt Macy if (spa->spa_errlog_scrub != 0 && 634eda14cbcSMatt Macy zap_count(spa->spa_meta_objset, spa->spa_errlog_scrub, 635eda14cbcSMatt Macy &count) == 0) 636eda14cbcSMatt Macy total += count; 637eda14cbcSMatt Macy 638eda14cbcSMatt Macy if (spa->spa_errlog_last != 0 && !spa->spa_scrub_finished && 639eda14cbcSMatt Macy zap_count(spa->spa_meta_objset, spa->spa_errlog_last, 640eda14cbcSMatt Macy &count) == 0) 641eda14cbcSMatt Macy total += count; 642eda14cbcSMatt Macy mutex_exit(&spa->spa_errlog_lock); 643eda14cbcSMatt Macy 644*15f0b8c3SMartin Matuska } else { 645*15f0b8c3SMartin Matuska mutex_enter(&spa->spa_errlog_lock); 646*15f0b8c3SMartin Matuska total += approx_errlog_size_impl(spa, spa->spa_errlog_last); 647*15f0b8c3SMartin Matuska total += approx_errlog_size_impl(spa, spa->spa_errlog_scrub); 648*15f0b8c3SMartin Matuska mutex_exit(&spa->spa_errlog_lock); 649*15f0b8c3SMartin Matuska } 650eda14cbcSMatt Macy mutex_enter(&spa->spa_errlist_lock); 651eda14cbcSMatt Macy total += avl_numnodes(&spa->spa_errlist_last); 652eda14cbcSMatt Macy total += avl_numnodes(&spa->spa_errlist_scrub); 653eda14cbcSMatt Macy mutex_exit(&spa->spa_errlist_lock); 654eda14cbcSMatt Macy return (total); 655eda14cbcSMatt Macy } 656eda14cbcSMatt Macy 657716fd348SMartin Matuska /* 658716fd348SMartin Matuska * This function sweeps through an on-disk error log and stores all bookmarks 659716fd348SMartin Matuska * as error bookmarks in a new ZAP object. At the end we discard the old one, 660716fd348SMartin Matuska * and spa_update_errlog() will set the spa's on-disk error log to new ZAP 661716fd348SMartin Matuska * object. 662716fd348SMartin Matuska */ 663716fd348SMartin Matuska static void 664716fd348SMartin Matuska sync_upgrade_errlog(spa_t *spa, uint64_t spa_err_obj, uint64_t *newobj, 665716fd348SMartin Matuska dmu_tx_t *tx) 666eda14cbcSMatt Macy { 667eda14cbcSMatt Macy zap_cursor_t zc; 668eda14cbcSMatt Macy zap_attribute_t za; 669eda14cbcSMatt Macy zbookmark_phys_t zb; 670716fd348SMartin Matuska uint64_t count; 671716fd348SMartin Matuska 672716fd348SMartin Matuska *newobj = zap_create(spa->spa_meta_objset, DMU_OT_ERROR_LOG, 673716fd348SMartin Matuska DMU_OT_NONE, 0, tx); 674716fd348SMartin Matuska 675716fd348SMartin Matuska /* 676716fd348SMartin Matuska * If we cannnot perform the upgrade we should clear the old on-disk 677716fd348SMartin Matuska * error logs. 678716fd348SMartin Matuska */ 679716fd348SMartin Matuska if (zap_count(spa->spa_meta_objset, spa_err_obj, &count) != 0) { 680716fd348SMartin Matuska VERIFY0(dmu_object_free(spa->spa_meta_objset, spa_err_obj, tx)); 681716fd348SMartin Matuska return; 682716fd348SMartin Matuska } 683716fd348SMartin Matuska 684716fd348SMartin Matuska for (zap_cursor_init(&zc, spa->spa_meta_objset, spa_err_obj); 685716fd348SMartin Matuska zap_cursor_retrieve(&zc, &za) == 0; 686716fd348SMartin Matuska zap_cursor_advance(&zc)) { 687716fd348SMartin Matuska if (spa_upgrade_errlog_limit != 0 && 688716fd348SMartin Matuska zc.zc_cd == spa_upgrade_errlog_limit) 689716fd348SMartin Matuska break; 690716fd348SMartin Matuska 691716fd348SMartin Matuska name_to_bookmark(za.za_name, &zb); 692716fd348SMartin Matuska 693716fd348SMartin Matuska zbookmark_err_phys_t zep; 694716fd348SMartin Matuska zep.zb_object = zb.zb_object; 695716fd348SMartin Matuska zep.zb_level = zb.zb_level; 696716fd348SMartin Matuska zep.zb_blkid = zb.zb_blkid; 69708aba0aeSMartin Matuska zep.zb_birth = 0; 698716fd348SMartin Matuska 699716fd348SMartin Matuska /* 700716fd348SMartin Matuska * We cannot use get_head_and_birth_txg() because it will 701716fd348SMartin Matuska * acquire the pool config lock, which we already have. In case 702716fd348SMartin Matuska * of an error we simply continue. 703716fd348SMartin Matuska */ 704716fd348SMartin Matuska uint64_t head_dataset_obj; 705716fd348SMartin Matuska dsl_pool_t *dp = spa->spa_dsl_pool; 706716fd348SMartin Matuska dsl_dataset_t *ds; 707716fd348SMartin Matuska objset_t *os; 708716fd348SMartin Matuska 709716fd348SMartin Matuska int error = dsl_dataset_hold_obj(dp, zb.zb_objset, FTAG, &ds); 710716fd348SMartin Matuska if (error != 0) 711716fd348SMartin Matuska continue; 712716fd348SMartin Matuska 713716fd348SMartin Matuska head_dataset_obj = 714716fd348SMartin Matuska dsl_dir_phys(ds->ds_dir)->dd_head_dataset_obj; 715716fd348SMartin Matuska 716716fd348SMartin Matuska /* 717716fd348SMartin Matuska * The objset and the dnode are required for getting the block 718716fd348SMartin Matuska * pointer, which is used to determine if BP_IS_HOLE(). If 719716fd348SMartin Matuska * getting the objset or the dnode fails, do not create a 720716fd348SMartin Matuska * zap entry (presuming we know the dataset) as this may create 721716fd348SMartin Matuska * spurious errors that we cannot ever resolve. If an error is 722716fd348SMartin Matuska * truly persistent, it should re-appear after a scan. 723716fd348SMartin Matuska */ 724716fd348SMartin Matuska if (dmu_objset_from_ds(ds, &os) != 0) { 725716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 726716fd348SMartin Matuska continue; 727716fd348SMartin Matuska } 728716fd348SMartin Matuska 729716fd348SMartin Matuska dnode_t *dn; 730716fd348SMartin Matuska blkptr_t bp; 731716fd348SMartin Matuska 732716fd348SMartin Matuska if (dnode_hold(os, zep.zb_object, FTAG, &dn) != 0) { 733716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 734716fd348SMartin Matuska continue; 735716fd348SMartin Matuska } 736716fd348SMartin Matuska 737716fd348SMartin Matuska rw_enter(&dn->dn_struct_rwlock, RW_READER); 738716fd348SMartin Matuska error = dbuf_dnode_findbp(dn, zep.zb_level, zep.zb_blkid, &bp, 739716fd348SMartin Matuska NULL, NULL); 74008aba0aeSMartin Matuska if (error == EACCES) 74108aba0aeSMartin Matuska error = 0; 74208aba0aeSMartin Matuska else if (!error) 743716fd348SMartin Matuska zep.zb_birth = bp.blk_birth; 74408aba0aeSMartin Matuska 745716fd348SMartin Matuska rw_exit(&dn->dn_struct_rwlock); 746716fd348SMartin Matuska dnode_rele(dn, FTAG); 747716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 748716fd348SMartin Matuska 749716fd348SMartin Matuska if (error != 0 || BP_IS_HOLE(&bp)) 750716fd348SMartin Matuska continue; 751716fd348SMartin Matuska 752716fd348SMartin Matuska uint64_t err_obj; 753716fd348SMartin Matuska error = zap_lookup_int_key(spa->spa_meta_objset, *newobj, 754716fd348SMartin Matuska head_dataset_obj, &err_obj); 755716fd348SMartin Matuska 756716fd348SMartin Matuska if (error == ENOENT) { 757716fd348SMartin Matuska err_obj = zap_create(spa->spa_meta_objset, 758716fd348SMartin Matuska DMU_OT_ERROR_LOG, DMU_OT_NONE, 0, tx); 759716fd348SMartin Matuska 760716fd348SMartin Matuska (void) zap_update_int_key(spa->spa_meta_objset, 761716fd348SMartin Matuska *newobj, head_dataset_obj, err_obj, tx); 762716fd348SMartin Matuska } 763716fd348SMartin Matuska 764716fd348SMartin Matuska char buf[64]; 765716fd348SMartin Matuska errphys_to_name(&zep, buf, sizeof (buf)); 766716fd348SMartin Matuska 767a0b956f5SMartin Matuska const char *name = ""; 768716fd348SMartin Matuska (void) zap_update(spa->spa_meta_objset, err_obj, 769716fd348SMartin Matuska buf, 1, strlen(name) + 1, name, tx); 770716fd348SMartin Matuska } 771716fd348SMartin Matuska zap_cursor_fini(&zc); 772716fd348SMartin Matuska 773716fd348SMartin Matuska VERIFY0(dmu_object_free(spa->spa_meta_objset, spa_err_obj, tx)); 774716fd348SMartin Matuska } 775716fd348SMartin Matuska 776716fd348SMartin Matuska void 777716fd348SMartin Matuska spa_upgrade_errlog(spa_t *spa, dmu_tx_t *tx) 778716fd348SMartin Matuska { 779716fd348SMartin Matuska uint64_t newobj = 0; 780716fd348SMartin Matuska 781716fd348SMartin Matuska mutex_enter(&spa->spa_errlog_lock); 782716fd348SMartin Matuska if (spa->spa_errlog_last != 0) { 783716fd348SMartin Matuska sync_upgrade_errlog(spa, spa->spa_errlog_last, &newobj, tx); 784716fd348SMartin Matuska spa->spa_errlog_last = newobj; 785716fd348SMartin Matuska } 786716fd348SMartin Matuska 787716fd348SMartin Matuska if (spa->spa_errlog_scrub != 0) { 788716fd348SMartin Matuska sync_upgrade_errlog(spa, spa->spa_errlog_scrub, &newobj, tx); 789716fd348SMartin Matuska spa->spa_errlog_scrub = newobj; 790716fd348SMartin Matuska } 791716fd348SMartin Matuska mutex_exit(&spa->spa_errlog_lock); 792716fd348SMartin Matuska } 793716fd348SMartin Matuska 794716fd348SMartin Matuska #ifdef _KERNEL 795716fd348SMartin Matuska /* 796*15f0b8c3SMartin Matuska * If an error block is shared by two datasets it will be counted twice. 797716fd348SMartin Matuska */ 798716fd348SMartin Matuska static int 799716fd348SMartin Matuska process_error_log(spa_t *spa, uint64_t obj, void *uaddr, uint64_t *count) 800716fd348SMartin Matuska { 801716fd348SMartin Matuska zap_cursor_t zc; 802716fd348SMartin Matuska zap_attribute_t za; 803eda14cbcSMatt Macy 804eda14cbcSMatt Macy if (obj == 0) 805eda14cbcSMatt Macy return (0); 806eda14cbcSMatt Macy 807716fd348SMartin Matuska if (!spa_feature_is_enabled(spa, SPA_FEATURE_HEAD_ERRLOG)) { 808eda14cbcSMatt Macy for (zap_cursor_init(&zc, spa->spa_meta_objset, obj); 809eda14cbcSMatt Macy zap_cursor_retrieve(&zc, &za) == 0; 810eda14cbcSMatt Macy zap_cursor_advance(&zc)) { 811eda14cbcSMatt Macy if (*count == 0) { 812eda14cbcSMatt Macy zap_cursor_fini(&zc); 813eda14cbcSMatt Macy return (SET_ERROR(ENOMEM)); 814eda14cbcSMatt Macy } 815eda14cbcSMatt Macy 816716fd348SMartin Matuska zbookmark_phys_t zb; 817eda14cbcSMatt Macy name_to_bookmark(za.za_name, &zb); 818eda14cbcSMatt Macy 819*15f0b8c3SMartin Matuska int error = copyout_entry(&zb, uaddr, count); 820*15f0b8c3SMartin Matuska if (error != 0) { 821eda14cbcSMatt Macy zap_cursor_fini(&zc); 822*15f0b8c3SMartin Matuska return (error); 823eda14cbcSMatt Macy } 824716fd348SMartin Matuska } 825716fd348SMartin Matuska zap_cursor_fini(&zc); 826716fd348SMartin Matuska return (0); 827eda14cbcSMatt Macy } 828eda14cbcSMatt Macy 829716fd348SMartin Matuska for (zap_cursor_init(&zc, spa->spa_meta_objset, obj); 830716fd348SMartin Matuska zap_cursor_retrieve(&zc, &za) == 0; 831716fd348SMartin Matuska zap_cursor_advance(&zc)) { 832eda14cbcSMatt Macy 833716fd348SMartin Matuska zap_cursor_t head_ds_cursor; 834716fd348SMartin Matuska zap_attribute_t head_ds_attr; 835716fd348SMartin Matuska 836716fd348SMartin Matuska uint64_t head_ds_err_obj = za.za_first_integer; 837716fd348SMartin Matuska uint64_t head_ds; 838716fd348SMartin Matuska name_to_object(za.za_name, &head_ds); 839716fd348SMartin Matuska for (zap_cursor_init(&head_ds_cursor, spa->spa_meta_objset, 840716fd348SMartin Matuska head_ds_err_obj); zap_cursor_retrieve(&head_ds_cursor, 841716fd348SMartin Matuska &head_ds_attr) == 0; zap_cursor_advance(&head_ds_cursor)) { 842716fd348SMartin Matuska 843716fd348SMartin Matuska zbookmark_err_phys_t head_ds_block; 844716fd348SMartin Matuska name_to_errphys(head_ds_attr.za_name, &head_ds_block); 845716fd348SMartin Matuska int error = process_error_block(spa, head_ds, 846*15f0b8c3SMartin Matuska &head_ds_block, uaddr, count); 847716fd348SMartin Matuska 848716fd348SMartin Matuska if (error != 0) { 849716fd348SMartin Matuska zap_cursor_fini(&head_ds_cursor); 850716fd348SMartin Matuska zap_cursor_fini(&zc); 851716fd348SMartin Matuska return (error); 852716fd348SMartin Matuska } 853716fd348SMartin Matuska } 854716fd348SMartin Matuska zap_cursor_fini(&head_ds_cursor); 855716fd348SMartin Matuska } 856716fd348SMartin Matuska zap_cursor_fini(&zc); 857eda14cbcSMatt Macy return (0); 858eda14cbcSMatt Macy } 859eda14cbcSMatt Macy 860eda14cbcSMatt Macy static int 861716fd348SMartin Matuska process_error_list(spa_t *spa, avl_tree_t *list, void *uaddr, uint64_t *count) 862eda14cbcSMatt Macy { 863eda14cbcSMatt Macy spa_error_entry_t *se; 864eda14cbcSMatt Macy 865716fd348SMartin Matuska if (!spa_feature_is_enabled(spa, SPA_FEATURE_HEAD_ERRLOG)) { 866716fd348SMartin Matuska for (se = avl_first(list); se != NULL; 867716fd348SMartin Matuska se = AVL_NEXT(list, se)) { 868*15f0b8c3SMartin Matuska int error = 869*15f0b8c3SMartin Matuska copyout_entry(&se->se_bookmark, uaddr, count); 870*15f0b8c3SMartin Matuska if (error != 0) { 871*15f0b8c3SMartin Matuska return (error); 872*15f0b8c3SMartin Matuska } 873eda14cbcSMatt Macy } 874716fd348SMartin Matuska return (0); 875716fd348SMartin Matuska } 876eda14cbcSMatt Macy 877716fd348SMartin Matuska for (se = avl_first(list); se != NULL; se = AVL_NEXT(list, se)) { 878716fd348SMartin Matuska zbookmark_err_phys_t zep; 879716fd348SMartin Matuska zep.zb_object = se->se_bookmark.zb_object; 880716fd348SMartin Matuska zep.zb_level = se->se_bookmark.zb_level; 881716fd348SMartin Matuska zep.zb_blkid = se->se_bookmark.zb_blkid; 88208aba0aeSMartin Matuska zep.zb_birth = 0; 883716fd348SMartin Matuska 884716fd348SMartin Matuska uint64_t head_ds_obj; 885716fd348SMartin Matuska int error = get_head_and_birth_txg(spa, &zep, 886716fd348SMartin Matuska se->se_bookmark.zb_objset, &head_ds_obj); 887716fd348SMartin Matuska 88808aba0aeSMartin Matuska if (!error) 88908aba0aeSMartin Matuska error = process_error_block(spa, head_ds_obj, &zep, 890*15f0b8c3SMartin Matuska uaddr, count); 89108aba0aeSMartin Matuska if (error) 892716fd348SMartin Matuska return (error); 893716fd348SMartin Matuska } 894eda14cbcSMatt Macy return (0); 895eda14cbcSMatt Macy } 896eda14cbcSMatt Macy #endif 897eda14cbcSMatt Macy 898eda14cbcSMatt Macy /* 899eda14cbcSMatt Macy * Copy all known errors to userland as an array of bookmarks. This is 900eda14cbcSMatt Macy * actually a union of the on-disk last log and current log, as well as any 901eda14cbcSMatt Macy * pending error requests. 902eda14cbcSMatt Macy * 903eda14cbcSMatt Macy * Because the act of reading the on-disk log could cause errors to be 904eda14cbcSMatt Macy * generated, we have two separate locks: one for the error log and one for the 905eda14cbcSMatt Macy * in-core error lists. We only need the error list lock to log and error, so 906eda14cbcSMatt Macy * we grab the error log lock while we read the on-disk logs, and only pick up 907eda14cbcSMatt Macy * the error list lock when we are finished. 908eda14cbcSMatt Macy */ 909eda14cbcSMatt Macy int 910716fd348SMartin Matuska spa_get_errlog(spa_t *spa, void *uaddr, uint64_t *count) 911eda14cbcSMatt Macy { 912eda14cbcSMatt Macy int ret = 0; 913eda14cbcSMatt Macy 914eda14cbcSMatt Macy #ifdef _KERNEL 915*15f0b8c3SMartin Matuska /* 916*15f0b8c3SMartin Matuska * The pool config lock is needed to hold a dataset_t via (among other 917*15f0b8c3SMartin Matuska * places) process_error_list() -> get_head_and_birth_txg(), and lock 918*15f0b8c3SMartin Matuska * ordering requires that we get it before the spa_errlog_lock. 919*15f0b8c3SMartin Matuska */ 920*15f0b8c3SMartin Matuska dsl_pool_config_enter(spa->spa_dsl_pool, FTAG); 921eda14cbcSMatt Macy mutex_enter(&spa->spa_errlog_lock); 922eda14cbcSMatt Macy 923eda14cbcSMatt Macy ret = process_error_log(spa, spa->spa_errlog_scrub, uaddr, count); 924eda14cbcSMatt Macy 925eda14cbcSMatt Macy if (!ret && !spa->spa_scrub_finished) 926eda14cbcSMatt Macy ret = process_error_log(spa, spa->spa_errlog_last, uaddr, 927eda14cbcSMatt Macy count); 928eda14cbcSMatt Macy 929eda14cbcSMatt Macy mutex_enter(&spa->spa_errlist_lock); 930eda14cbcSMatt Macy if (!ret) 931716fd348SMartin Matuska ret = process_error_list(spa, &spa->spa_errlist_scrub, uaddr, 932eda14cbcSMatt Macy count); 933eda14cbcSMatt Macy if (!ret) 934716fd348SMartin Matuska ret = process_error_list(spa, &spa->spa_errlist_last, uaddr, 935eda14cbcSMatt Macy count); 936eda14cbcSMatt Macy mutex_exit(&spa->spa_errlist_lock); 937eda14cbcSMatt Macy 938eda14cbcSMatt Macy mutex_exit(&spa->spa_errlog_lock); 939*15f0b8c3SMartin Matuska dsl_pool_config_exit(spa->spa_dsl_pool, FTAG); 940e92ffd9bSMartin Matuska #else 941e92ffd9bSMartin Matuska (void) spa, (void) uaddr, (void) count; 942eda14cbcSMatt Macy #endif 943eda14cbcSMatt Macy 944eda14cbcSMatt Macy return (ret); 945eda14cbcSMatt Macy } 946eda14cbcSMatt Macy 947eda14cbcSMatt Macy /* 948eda14cbcSMatt Macy * Called when a scrub completes. This simply set a bit which tells which AVL 949eda14cbcSMatt Macy * tree to add new errors. spa_errlog_sync() is responsible for actually 950eda14cbcSMatt Macy * syncing the changes to the underlying objects. 951eda14cbcSMatt Macy */ 952eda14cbcSMatt Macy void 953eda14cbcSMatt Macy spa_errlog_rotate(spa_t *spa) 954eda14cbcSMatt Macy { 955eda14cbcSMatt Macy mutex_enter(&spa->spa_errlist_lock); 956eda14cbcSMatt Macy spa->spa_scrub_finished = B_TRUE; 957eda14cbcSMatt Macy mutex_exit(&spa->spa_errlist_lock); 958eda14cbcSMatt Macy } 959eda14cbcSMatt Macy 960eda14cbcSMatt Macy /* 961eda14cbcSMatt Macy * Discard any pending errors from the spa_t. Called when unloading a faulted 962eda14cbcSMatt Macy * pool, as the errors encountered during the open cannot be synced to disk. 963eda14cbcSMatt Macy */ 964eda14cbcSMatt Macy void 965eda14cbcSMatt Macy spa_errlog_drain(spa_t *spa) 966eda14cbcSMatt Macy { 967eda14cbcSMatt Macy spa_error_entry_t *se; 968eda14cbcSMatt Macy void *cookie; 969eda14cbcSMatt Macy 970eda14cbcSMatt Macy mutex_enter(&spa->spa_errlist_lock); 971eda14cbcSMatt Macy 972eda14cbcSMatt Macy cookie = NULL; 973eda14cbcSMatt Macy while ((se = avl_destroy_nodes(&spa->spa_errlist_last, 974eda14cbcSMatt Macy &cookie)) != NULL) 975eda14cbcSMatt Macy kmem_free(se, sizeof (spa_error_entry_t)); 976eda14cbcSMatt Macy cookie = NULL; 977eda14cbcSMatt Macy while ((se = avl_destroy_nodes(&spa->spa_errlist_scrub, 978eda14cbcSMatt Macy &cookie)) != NULL) 979eda14cbcSMatt Macy kmem_free(se, sizeof (spa_error_entry_t)); 980eda14cbcSMatt Macy 981eda14cbcSMatt Macy mutex_exit(&spa->spa_errlist_lock); 982eda14cbcSMatt Macy } 983eda14cbcSMatt Macy 984eda14cbcSMatt Macy /* 985eda14cbcSMatt Macy * Process a list of errors into the current on-disk log. 986eda14cbcSMatt Macy */ 987716fd348SMartin Matuska void 988eda14cbcSMatt Macy sync_error_list(spa_t *spa, avl_tree_t *t, uint64_t *obj, dmu_tx_t *tx) 989eda14cbcSMatt Macy { 990eda14cbcSMatt Macy spa_error_entry_t *se; 991271171e0SMartin Matuska char buf[NAME_MAX_LEN]; 992eda14cbcSMatt Macy void *cookie; 993eda14cbcSMatt Macy 994716fd348SMartin Matuska if (avl_numnodes(t) == 0) 995716fd348SMartin Matuska return; 996716fd348SMartin Matuska 997eda14cbcSMatt Macy /* create log if necessary */ 998eda14cbcSMatt Macy if (*obj == 0) 999716fd348SMartin Matuska *obj = zap_create(spa->spa_meta_objset, DMU_OT_ERROR_LOG, 1000716fd348SMartin Matuska DMU_OT_NONE, 0, tx); 1001eda14cbcSMatt Macy 1002eda14cbcSMatt Macy /* add errors to the current log */ 1003716fd348SMartin Matuska if (!spa_feature_is_enabled(spa, SPA_FEATURE_HEAD_ERRLOG)) { 1004eda14cbcSMatt Macy for (se = avl_first(t); se != NULL; se = AVL_NEXT(t, se)) { 1005eda14cbcSMatt Macy bookmark_to_name(&se->se_bookmark, buf, sizeof (buf)); 1006eda14cbcSMatt Macy 1007a0b956f5SMartin Matuska const char *name = se->se_name ? se->se_name : ""; 1008716fd348SMartin Matuska (void) zap_update(spa->spa_meta_objset, *obj, buf, 1, 1009716fd348SMartin Matuska strlen(name) + 1, name, tx); 1010eda14cbcSMatt Macy } 1011716fd348SMartin Matuska } else { 1012716fd348SMartin Matuska for (se = avl_first(t); se != NULL; se = AVL_NEXT(t, se)) { 1013716fd348SMartin Matuska zbookmark_err_phys_t zep; 1014716fd348SMartin Matuska zep.zb_object = se->se_bookmark.zb_object; 1015716fd348SMartin Matuska zep.zb_level = se->se_bookmark.zb_level; 1016716fd348SMartin Matuska zep.zb_blkid = se->se_bookmark.zb_blkid; 101708aba0aeSMartin Matuska zep.zb_birth = 0; 1018716fd348SMartin Matuska 1019716fd348SMartin Matuska /* 1020716fd348SMartin Matuska * If we cannot find out the head dataset and birth txg 1021716fd348SMartin Matuska * of the present error block, we simply continue. 1022716fd348SMartin Matuska * Reinserting that error block to the error lists, 1023716fd348SMartin Matuska * even if we are not syncing the final txg, results 1024716fd348SMartin Matuska * in duplicate posting of errors. 1025716fd348SMartin Matuska */ 1026716fd348SMartin Matuska uint64_t head_dataset_obj; 1027716fd348SMartin Matuska int error = get_head_and_birth_txg(spa, &zep, 1028716fd348SMartin Matuska se->se_bookmark.zb_objset, &head_dataset_obj); 102908aba0aeSMartin Matuska if (error) 1030716fd348SMartin Matuska continue; 1031716fd348SMartin Matuska 1032716fd348SMartin Matuska uint64_t err_obj; 1033716fd348SMartin Matuska error = zap_lookup_int_key(spa->spa_meta_objset, 1034716fd348SMartin Matuska *obj, head_dataset_obj, &err_obj); 1035716fd348SMartin Matuska 1036716fd348SMartin Matuska if (error == ENOENT) { 1037716fd348SMartin Matuska err_obj = zap_create(spa->spa_meta_objset, 1038716fd348SMartin Matuska DMU_OT_ERROR_LOG, DMU_OT_NONE, 0, tx); 1039716fd348SMartin Matuska 1040716fd348SMartin Matuska (void) zap_update_int_key(spa->spa_meta_objset, 1041716fd348SMartin Matuska *obj, head_dataset_obj, err_obj, tx); 1042716fd348SMartin Matuska } 1043716fd348SMartin Matuska errphys_to_name(&zep, buf, sizeof (buf)); 1044716fd348SMartin Matuska 1045a0b956f5SMartin Matuska const char *name = se->se_name ? se->se_name : ""; 1046716fd348SMartin Matuska (void) zap_update(spa->spa_meta_objset, 1047716fd348SMartin Matuska err_obj, buf, 1, strlen(name) + 1, name, tx); 1048716fd348SMartin Matuska } 1049716fd348SMartin Matuska } 1050eda14cbcSMatt Macy /* purge the error list */ 1051eda14cbcSMatt Macy cookie = NULL; 1052eda14cbcSMatt Macy while ((se = avl_destroy_nodes(t, &cookie)) != NULL) 1053eda14cbcSMatt Macy kmem_free(se, sizeof (spa_error_entry_t)); 1054eda14cbcSMatt Macy } 1055716fd348SMartin Matuska 1056716fd348SMartin Matuska static void 1057716fd348SMartin Matuska delete_errlog(spa_t *spa, uint64_t spa_err_obj, dmu_tx_t *tx) 1058716fd348SMartin Matuska { 1059716fd348SMartin Matuska if (spa_feature_is_enabled(spa, SPA_FEATURE_HEAD_ERRLOG)) { 1060716fd348SMartin Matuska zap_cursor_t zc; 1061716fd348SMartin Matuska zap_attribute_t za; 1062716fd348SMartin Matuska for (zap_cursor_init(&zc, spa->spa_meta_objset, spa_err_obj); 1063716fd348SMartin Matuska zap_cursor_retrieve(&zc, &za) == 0; 1064716fd348SMartin Matuska zap_cursor_advance(&zc)) { 1065716fd348SMartin Matuska VERIFY0(dmu_object_free(spa->spa_meta_objset, 1066716fd348SMartin Matuska za.za_first_integer, tx)); 1067716fd348SMartin Matuska } 1068716fd348SMartin Matuska zap_cursor_fini(&zc); 1069716fd348SMartin Matuska } 1070716fd348SMartin Matuska VERIFY0(dmu_object_free(spa->spa_meta_objset, spa_err_obj, tx)); 1071eda14cbcSMatt Macy } 1072eda14cbcSMatt Macy 1073eda14cbcSMatt Macy /* 1074eda14cbcSMatt Macy * Sync the error log out to disk. This is a little tricky because the act of 1075eda14cbcSMatt Macy * writing the error log requires the spa_errlist_lock. So, we need to lock the 1076eda14cbcSMatt Macy * error lists, take a copy of the lists, and then reinitialize them. Then, we 1077eda14cbcSMatt Macy * drop the error list lock and take the error log lock, at which point we 1078eda14cbcSMatt Macy * do the errlog processing. Then, if we encounter an I/O error during this 1079eda14cbcSMatt Macy * process, we can successfully add the error to the list. Note that this will 1080eda14cbcSMatt Macy * result in the perpetual recycling of errors, but it is an unlikely situation 1081eda14cbcSMatt Macy * and not a performance critical operation. 1082eda14cbcSMatt Macy */ 1083eda14cbcSMatt Macy void 1084eda14cbcSMatt Macy spa_errlog_sync(spa_t *spa, uint64_t txg) 1085eda14cbcSMatt Macy { 1086eda14cbcSMatt Macy dmu_tx_t *tx; 1087eda14cbcSMatt Macy avl_tree_t scrub, last; 1088eda14cbcSMatt Macy int scrub_finished; 1089eda14cbcSMatt Macy 1090eda14cbcSMatt Macy mutex_enter(&spa->spa_errlist_lock); 1091eda14cbcSMatt Macy 1092eda14cbcSMatt Macy /* 1093eda14cbcSMatt Macy * Bail out early under normal circumstances. 1094eda14cbcSMatt Macy */ 1095eda14cbcSMatt Macy if (avl_numnodes(&spa->spa_errlist_scrub) == 0 && 1096eda14cbcSMatt Macy avl_numnodes(&spa->spa_errlist_last) == 0 && 1097271171e0SMartin Matuska avl_numnodes(&spa->spa_errlist_healed) == 0 && 1098eda14cbcSMatt Macy !spa->spa_scrub_finished) { 1099eda14cbcSMatt Macy mutex_exit(&spa->spa_errlist_lock); 1100eda14cbcSMatt Macy return; 1101eda14cbcSMatt Macy } 1102eda14cbcSMatt Macy 1103eda14cbcSMatt Macy spa_get_errlists(spa, &last, &scrub); 1104eda14cbcSMatt Macy scrub_finished = spa->spa_scrub_finished; 1105eda14cbcSMatt Macy spa->spa_scrub_finished = B_FALSE; 1106eda14cbcSMatt Macy 1107eda14cbcSMatt Macy mutex_exit(&spa->spa_errlist_lock); 1108*15f0b8c3SMartin Matuska 1109*15f0b8c3SMartin Matuska /* 1110*15f0b8c3SMartin Matuska * The pool config lock is needed to hold a dataset_t via 1111*15f0b8c3SMartin Matuska * sync_error_list() -> get_head_and_birth_txg(), and lock ordering 1112*15f0b8c3SMartin Matuska * requires that we get it before the spa_errlog_lock. 1113*15f0b8c3SMartin Matuska */ 1114*15f0b8c3SMartin Matuska dsl_pool_config_enter(spa->spa_dsl_pool, FTAG); 1115eda14cbcSMatt Macy mutex_enter(&spa->spa_errlog_lock); 1116eda14cbcSMatt Macy 1117eda14cbcSMatt Macy tx = dmu_tx_create_assigned(spa->spa_dsl_pool, txg); 1118eda14cbcSMatt Macy 1119eda14cbcSMatt Macy /* 1120271171e0SMartin Matuska * Remove healed errors from errors. 1121271171e0SMartin Matuska */ 1122271171e0SMartin Matuska spa_remove_healed_errors(spa, &last, &scrub, tx); 1123271171e0SMartin Matuska 1124271171e0SMartin Matuska /* 1125eda14cbcSMatt Macy * Sync out the current list of errors. 1126eda14cbcSMatt Macy */ 1127eda14cbcSMatt Macy sync_error_list(spa, &last, &spa->spa_errlog_last, tx); 1128eda14cbcSMatt Macy 1129eda14cbcSMatt Macy /* 1130eda14cbcSMatt Macy * Rotate the log if necessary. 1131eda14cbcSMatt Macy */ 1132eda14cbcSMatt Macy if (scrub_finished) { 1133eda14cbcSMatt Macy if (spa->spa_errlog_last != 0) 1134716fd348SMartin Matuska delete_errlog(spa, spa->spa_errlog_last, tx); 1135eda14cbcSMatt Macy spa->spa_errlog_last = spa->spa_errlog_scrub; 1136eda14cbcSMatt Macy spa->spa_errlog_scrub = 0; 1137eda14cbcSMatt Macy 1138eda14cbcSMatt Macy sync_error_list(spa, &scrub, &spa->spa_errlog_last, tx); 1139eda14cbcSMatt Macy } 1140eda14cbcSMatt Macy 1141eda14cbcSMatt Macy /* 1142eda14cbcSMatt Macy * Sync out any pending scrub errors. 1143eda14cbcSMatt Macy */ 1144eda14cbcSMatt Macy sync_error_list(spa, &scrub, &spa->spa_errlog_scrub, tx); 1145eda14cbcSMatt Macy 1146eda14cbcSMatt Macy /* 1147eda14cbcSMatt Macy * Update the MOS to reflect the new values. 1148eda14cbcSMatt Macy */ 1149eda14cbcSMatt Macy (void) zap_update(spa->spa_meta_objset, DMU_POOL_DIRECTORY_OBJECT, 1150eda14cbcSMatt Macy DMU_POOL_ERRLOG_LAST, sizeof (uint64_t), 1, 1151eda14cbcSMatt Macy &spa->spa_errlog_last, tx); 1152eda14cbcSMatt Macy (void) zap_update(spa->spa_meta_objset, DMU_POOL_DIRECTORY_OBJECT, 1153eda14cbcSMatt Macy DMU_POOL_ERRLOG_SCRUB, sizeof (uint64_t), 1, 1154eda14cbcSMatt Macy &spa->spa_errlog_scrub, tx); 1155eda14cbcSMatt Macy 1156eda14cbcSMatt Macy dmu_tx_commit(tx); 1157eda14cbcSMatt Macy 1158eda14cbcSMatt Macy mutex_exit(&spa->spa_errlog_lock); 1159*15f0b8c3SMartin Matuska dsl_pool_config_exit(spa->spa_dsl_pool, FTAG); 1160eda14cbcSMatt Macy } 1161eda14cbcSMatt Macy 1162716fd348SMartin Matuska static void 1163716fd348SMartin Matuska delete_dataset_errlog(spa_t *spa, uint64_t spa_err_obj, uint64_t ds, 1164716fd348SMartin Matuska dmu_tx_t *tx) 1165716fd348SMartin Matuska { 1166716fd348SMartin Matuska if (spa_err_obj == 0) 1167716fd348SMartin Matuska return; 1168716fd348SMartin Matuska 1169716fd348SMartin Matuska zap_cursor_t zc; 1170716fd348SMartin Matuska zap_attribute_t za; 1171716fd348SMartin Matuska for (zap_cursor_init(&zc, spa->spa_meta_objset, spa_err_obj); 1172716fd348SMartin Matuska zap_cursor_retrieve(&zc, &za) == 0; zap_cursor_advance(&zc)) { 1173716fd348SMartin Matuska uint64_t head_ds; 1174716fd348SMartin Matuska name_to_object(za.za_name, &head_ds); 1175716fd348SMartin Matuska if (head_ds == ds) { 1176716fd348SMartin Matuska (void) zap_remove(spa->spa_meta_objset, spa_err_obj, 1177716fd348SMartin Matuska za.za_name, tx); 1178716fd348SMartin Matuska VERIFY0(dmu_object_free(spa->spa_meta_objset, 1179716fd348SMartin Matuska za.za_first_integer, tx)); 1180716fd348SMartin Matuska break; 1181716fd348SMartin Matuska } 1182716fd348SMartin Matuska } 1183716fd348SMartin Matuska zap_cursor_fini(&zc); 1184716fd348SMartin Matuska } 1185716fd348SMartin Matuska 1186716fd348SMartin Matuska void 1187716fd348SMartin Matuska spa_delete_dataset_errlog(spa_t *spa, uint64_t ds, dmu_tx_t *tx) 1188716fd348SMartin Matuska { 1189716fd348SMartin Matuska mutex_enter(&spa->spa_errlog_lock); 1190716fd348SMartin Matuska delete_dataset_errlog(spa, spa->spa_errlog_scrub, ds, tx); 1191716fd348SMartin Matuska delete_dataset_errlog(spa, spa->spa_errlog_last, ds, tx); 1192716fd348SMartin Matuska mutex_exit(&spa->spa_errlog_lock); 1193716fd348SMartin Matuska } 1194716fd348SMartin Matuska 1195716fd348SMartin Matuska static int 1196716fd348SMartin Matuska find_txg_ancestor_snapshot(spa_t *spa, uint64_t new_head, uint64_t old_head, 1197716fd348SMartin Matuska uint64_t *txg) 1198716fd348SMartin Matuska { 1199716fd348SMartin Matuska dsl_dataset_t *ds; 1200716fd348SMartin Matuska dsl_pool_t *dp = spa->spa_dsl_pool; 1201716fd348SMartin Matuska 1202716fd348SMartin Matuska int error = dsl_dataset_hold_obj(dp, old_head, FTAG, &ds); 1203716fd348SMartin Matuska if (error != 0) 1204716fd348SMartin Matuska return (error); 1205716fd348SMartin Matuska 1206716fd348SMartin Matuska uint64_t prev_obj = dsl_dataset_phys(ds)->ds_prev_snap_obj; 1207716fd348SMartin Matuska uint64_t prev_obj_txg = dsl_dataset_phys(ds)->ds_prev_snap_txg; 1208716fd348SMartin Matuska 1209716fd348SMartin Matuska while (prev_obj != 0) { 1210716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 1211716fd348SMartin Matuska if ((error = dsl_dataset_hold_obj(dp, prev_obj, 1212716fd348SMartin Matuska FTAG, &ds)) == 0 && 1213716fd348SMartin Matuska dsl_dir_phys(ds->ds_dir)->dd_head_dataset_obj == new_head) 1214716fd348SMartin Matuska break; 1215716fd348SMartin Matuska 1216716fd348SMartin Matuska if (error != 0) 1217716fd348SMartin Matuska return (error); 1218716fd348SMartin Matuska 1219716fd348SMartin Matuska prev_obj_txg = dsl_dataset_phys(ds)->ds_prev_snap_txg; 1220716fd348SMartin Matuska prev_obj = dsl_dataset_phys(ds)->ds_prev_snap_obj; 1221716fd348SMartin Matuska } 1222716fd348SMartin Matuska dsl_dataset_rele(ds, FTAG); 1223716fd348SMartin Matuska ASSERT(prev_obj != 0); 1224716fd348SMartin Matuska *txg = prev_obj_txg; 1225716fd348SMartin Matuska return (0); 1226716fd348SMartin Matuska } 1227716fd348SMartin Matuska 1228716fd348SMartin Matuska static void 1229716fd348SMartin Matuska swap_errlog(spa_t *spa, uint64_t spa_err_obj, uint64_t new_head, uint64_t 1230716fd348SMartin Matuska old_head, dmu_tx_t *tx) 1231716fd348SMartin Matuska { 1232716fd348SMartin Matuska if (spa_err_obj == 0) 1233716fd348SMartin Matuska return; 1234716fd348SMartin Matuska 1235716fd348SMartin Matuska uint64_t old_head_errlog; 1236716fd348SMartin Matuska int error = zap_lookup_int_key(spa->spa_meta_objset, spa_err_obj, 1237716fd348SMartin Matuska old_head, &old_head_errlog); 1238716fd348SMartin Matuska 1239716fd348SMartin Matuska /* If no error log, then there is nothing to do. */ 1240716fd348SMartin Matuska if (error != 0) 1241716fd348SMartin Matuska return; 1242716fd348SMartin Matuska 1243716fd348SMartin Matuska uint64_t txg; 1244716fd348SMartin Matuska error = find_txg_ancestor_snapshot(spa, new_head, old_head, &txg); 1245716fd348SMartin Matuska if (error != 0) 1246716fd348SMartin Matuska return; 1247716fd348SMartin Matuska 1248716fd348SMartin Matuska /* 1249716fd348SMartin Matuska * Create an error log if the file system being promoted does not 1250716fd348SMartin Matuska * already have one. 1251716fd348SMartin Matuska */ 1252716fd348SMartin Matuska uint64_t new_head_errlog; 1253716fd348SMartin Matuska error = zap_lookup_int_key(spa->spa_meta_objset, spa_err_obj, new_head, 1254716fd348SMartin Matuska &new_head_errlog); 1255716fd348SMartin Matuska 1256716fd348SMartin Matuska if (error != 0) { 1257716fd348SMartin Matuska new_head_errlog = zap_create(spa->spa_meta_objset, 1258716fd348SMartin Matuska DMU_OT_ERROR_LOG, DMU_OT_NONE, 0, tx); 1259716fd348SMartin Matuska 1260716fd348SMartin Matuska (void) zap_update_int_key(spa->spa_meta_objset, spa_err_obj, 1261716fd348SMartin Matuska new_head, new_head_errlog, tx); 1262716fd348SMartin Matuska } 1263716fd348SMartin Matuska 1264716fd348SMartin Matuska zap_cursor_t zc; 1265716fd348SMartin Matuska zap_attribute_t za; 1266716fd348SMartin Matuska zbookmark_err_phys_t err_block; 1267716fd348SMartin Matuska for (zap_cursor_init(&zc, spa->spa_meta_objset, old_head_errlog); 1268716fd348SMartin Matuska zap_cursor_retrieve(&zc, &za) == 0; zap_cursor_advance(&zc)) { 1269716fd348SMartin Matuska 1270a0b956f5SMartin Matuska const char *name = ""; 1271716fd348SMartin Matuska name_to_errphys(za.za_name, &err_block); 1272716fd348SMartin Matuska if (err_block.zb_birth < txg) { 1273716fd348SMartin Matuska (void) zap_update(spa->spa_meta_objset, new_head_errlog, 1274716fd348SMartin Matuska za.za_name, 1, strlen(name) + 1, name, tx); 1275716fd348SMartin Matuska 1276716fd348SMartin Matuska (void) zap_remove(spa->spa_meta_objset, old_head_errlog, 1277716fd348SMartin Matuska za.za_name, tx); 1278716fd348SMartin Matuska } 1279716fd348SMartin Matuska } 1280716fd348SMartin Matuska zap_cursor_fini(&zc); 1281716fd348SMartin Matuska } 1282716fd348SMartin Matuska 1283716fd348SMartin Matuska void 1284716fd348SMartin Matuska spa_swap_errlog(spa_t *spa, uint64_t new_head_ds, uint64_t old_head_ds, 1285716fd348SMartin Matuska dmu_tx_t *tx) 1286716fd348SMartin Matuska { 1287716fd348SMartin Matuska mutex_enter(&spa->spa_errlog_lock); 1288716fd348SMartin Matuska swap_errlog(spa, spa->spa_errlog_scrub, new_head_ds, old_head_ds, tx); 1289716fd348SMartin Matuska swap_errlog(spa, spa->spa_errlog_last, new_head_ds, old_head_ds, tx); 1290716fd348SMartin Matuska mutex_exit(&spa->spa_errlog_lock); 1291716fd348SMartin Matuska } 1292716fd348SMartin Matuska 1293eda14cbcSMatt Macy #if defined(_KERNEL) 1294eda14cbcSMatt Macy /* error handling */ 1295eda14cbcSMatt Macy EXPORT_SYMBOL(spa_log_error); 1296*15f0b8c3SMartin Matuska EXPORT_SYMBOL(spa_approx_errlog_size); 1297eda14cbcSMatt Macy EXPORT_SYMBOL(spa_get_errlog); 1298eda14cbcSMatt Macy EXPORT_SYMBOL(spa_errlog_rotate); 1299eda14cbcSMatt Macy EXPORT_SYMBOL(spa_errlog_drain); 1300eda14cbcSMatt Macy EXPORT_SYMBOL(spa_errlog_sync); 1301eda14cbcSMatt Macy EXPORT_SYMBOL(spa_get_errlists); 1302716fd348SMartin Matuska EXPORT_SYMBOL(spa_delete_dataset_errlog); 1303716fd348SMartin Matuska EXPORT_SYMBOL(spa_swap_errlog); 1304716fd348SMartin Matuska EXPORT_SYMBOL(sync_error_list); 1305716fd348SMartin Matuska EXPORT_SYMBOL(spa_upgrade_errlog); 1306eda14cbcSMatt Macy #endif 1307716fd348SMartin Matuska 1308716fd348SMartin Matuska /* BEGIN CSTYLED */ 1309be181ee2SMartin Matuska ZFS_MODULE_PARAM(zfs_spa, spa_, upgrade_errlog_limit, UINT, ZMOD_RW, 1310716fd348SMartin Matuska "Limit the number of errors which will be upgraded to the new " 1311716fd348SMartin Matuska "on-disk error log when enabling head_errlog"); 1312716fd348SMartin Matuska /* END CSTYLED */ 1313