ffs_alloc panic patch

Colin Percival colin.percival at wadham.ox.ac.uk
Fri Aug 27 15:05:10 PDT 2004


At 12:36 27/08/2004, Ken Smith wrote:
>          ... Here you again wind up in a
>          situation where the filesystem data structures on the disk can
>          become corrupted.  Typically at some point the ffs code will
>          recognize that the metadata is incorrect and again a panic is
>          better than trying to carry on pretending nothing is wrong.

Shouldn't a corrupt filesystem be handled by forcibly dismounting it,
rather than invoking panic()?  We certainly don't want to keep on using
a corrupt filesystem, but we should attempt to isolate a single failing
piece of hardware rather than allowing it to bring down the entire
system.

Colin Percival




More information about the freebsd-stable mailing list