- 
                Notifications
    You must be signed in to change notification settings 
- Fork 13.9k
          std: use block_current_task for thread parking on Hermit
          #98534
        
          New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
          
     Closed
      
        
      
    
  
     Closed
                    Changes from all commits
      Commits
    
    
  File filter
Filter by extension
Conversations
          Failed to load comments.   
        
        
          
      Loading
        
  Jump to
        
          Jump to file
        
      
      
          Failed to load files.   
        
        
          
      Loading
        
  Diff view
Diff view
There are no files selected for viewing
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
              
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
              
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
              
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
              
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
              | Original file line number | Diff line number | Diff line change | 
|---|---|---|
| @@ -0,0 +1,134 @@ | ||
| // Hermit has efficient thread parking primitives in the form of the `block_current_task`/ | ||
| // `wakeup_task` syscalls. `block_current_task` marks the current thread as blocked, which | ||
| // means the scheduler will not try to reschedule the task once it is switched away from. | ||
| // `wakeup_task` undoes this. Since Hermit is not pre-emptive, this means programs get to | ||
| // run code in between calling `block_current_task` and actually waiting (with a call to | ||
| // `yield_now`) without encountering any race conditions. | ||
| // | ||
| // The thread parker uses an atomic variable which is set one of three states: | ||
| // * EMPTY: the token has not been made available | ||
| // * NOTIFIED: the token is available | ||
| // * some pid: the thread with the specified PID is waiting or about to be waiting for | ||
| // the token | ||
| // Since `wakeup_task` requires the task to be actually waiting, the state needs to | ||
| // be checked in between preparing to park and actually parking to avoid deadlocks. | ||
| // If the state has changed, the thread resets its own state by calling `wakeup_task`. | ||
|  | ||
| use super::abi; | ||
| use crate::pin::Pin; | ||
| use crate::sync::atomic::AtomicU64; | ||
| use crate::sync::atomic::Ordering::{Acquire, Relaxed, Release}; | ||
| use crate::time::{Duration, Instant}; | ||
|  | ||
| // These values are larger than u32::MAX, so they never conflict with the thread's `pid`. | ||
| const EMPTY: u64 = 0x1_0000_0000; | ||
| const NOTIFIED: u64 = 0x2_0000_0000; | ||
|  | ||
| // Note about atomic memory orderings: | ||
| // Acquire ordering is necessary to obtain the token, as otherwise the parked thread | ||
| // could perform memory operations visible before it was unparked. Since once set, | ||
| // the token cannot be unset by other threads, the state can be reset with a relaxed | ||
| // store once it has been read with acquire ordering. | ||
| pub struct Parker { | ||
| state: AtomicU64, | ||
| } | ||
|  | ||
| impl Parker { | ||
| /// Construct the thread parker. The UNIX parker implementation | ||
| /// requires this to happen in-place. | ||
| pub unsafe fn new(parker: *mut Parker) { | ||
| parker.write(Parker { state: AtomicU64::new(EMPTY) }) | ||
| } | ||
|  | ||
| // This implementation doesn't require `unsafe` and `Pin`, but other implementations do. | ||
| pub unsafe fn park(self: Pin<&Self>) { | ||
| if self.state.load(Acquire) == NOTIFIED { | ||
| self.state.store(EMPTY, Relaxed); | ||
| return; | ||
| } | ||
|  | ||
| let pid = abi::getpid(); | ||
| abi::block_current_task(); | ||
| if self.state.compare_exchange(EMPTY, pid as u64, Acquire, Acquire).is_ok() { | ||
| // Loop to avoid spurious wakeups. | ||
| loop { | ||
| abi::yield_now(); | ||
|  | ||
| if self.state.load(Acquire) == NOTIFIED { | ||
| break; | ||
| } | ||
|  | ||
| abi::block_current_task(); | ||
|  | ||
| if self.state.load(Acquire) == NOTIFIED { | ||
| abi::wakeup_task(pid); | ||
| break; | ||
| } | ||
| } | ||
| } else { | ||
| abi::wakeup_task(pid); | ||
|         
                  joboet marked this conversation as resolved.
              Outdated
          
            Show resolved
            Hide resolved | ||
| } | ||
|  | ||
| self.state.store(EMPTY, Relaxed); | ||
| } | ||
|  | ||
| // This implementation doesn't require `unsafe` and `Pin`, but other implementations do. | ||
| pub unsafe fn park_timeout(self: Pin<&Self>, dur: Duration) { | ||
| if self.state.load(Acquire) == NOTIFIED { | ||
| self.state.store(EMPTY, Relaxed); | ||
| return; | ||
| } | ||
|  | ||
| if dur < Duration::from_millis(1) { | ||
| // Spin on the token for sub-millisecond parking. | ||
| let now = Instant::now(); | ||
| let Some(deadline) = now.checked_add(dur) else { return; }; | ||
| loop { | ||
| abi::yield_now(); | ||
|  | ||
| if self.state.load(Acquire) == NOTIFIED { | ||
| self.state.store(EMPTY, Relaxed); | ||
| return; | ||
| } else if Instant::now() >= deadline { | ||
| // Swap to provide acquire ordering even if the timeout occurred | ||
| // before the token was set. | ||
| self.state.swap(EMPTY, Acquire); | ||
| return; | ||
| } | ||
| } | ||
| } else { | ||
| let timeout = dur.as_millis().try_into().unwrap_or(u64::MAX); | ||
| let pid = abi::getpid(); | ||
| abi::block_current_task_with_timeout(timeout); | ||
| if self.state.compare_exchange(EMPTY, pid as u64, Acquire, Acquire).is_ok() { | ||
| abi::yield_now(); | ||
|  | ||
| // Swap to provide acquire ordering even if the timeout occurred | ||
| // before the token was set. This situation can result in spurious | ||
| // wakeups on the next call to `park_timeout`, but it is better to let | ||
| // those be handled by the user rather than to do some perhaps unnecessary, | ||
| // but always expensive guarding. | ||
| self.state.swap(EMPTY, Acquire); | ||
| } else { | ||
| abi::wakeup_task(pid); | ||
| self.state.store(EMPTY, Relaxed); | ||
| } | ||
| } | ||
| } | ||
|  | ||
| // This implementation doesn't require `Pin`, but other implementations do. | ||
| pub fn unpark(self: Pin<&Self>) { | ||
| // Use release ordering to synchonize with the parked thread. | ||
| let state = self.state.swap(NOTIFIED, Release); | ||
|  | ||
| if !matches!(state, EMPTY | NOTIFIED) { | ||
| // SAFETY: `wakeup_task` is marked unsafe, but is actually safe to use | ||
| unsafe { | ||
| let pid = state as u32; | ||
| // This is a noop if the task is not blocked or has terminated, but | ||
| // that is fine. | ||
| abi::wakeup_task(pid); | ||
| } | ||
| } | ||
| } | ||
| } | ||
  
    
      This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
      Learn more about bidirectional Unicode characters
    
  
  
    
              
  Add this suggestion to a batch that can be applied as a single commit.
  This suggestion is invalid because no changes were made to the code.
  Suggestions cannot be applied while the pull request is closed.
  Suggestions cannot be applied while viewing a subset of changes.
  Only one suggestion per line can be applied in a batch.
  Add this suggestion to a batch that can be applied as a single commit.
  Applying suggestions on deleted lines is not supported.
  You must change the existing code in this line in order to create a valid suggestion.
  Outdated suggestions cannot be applied.
  This suggestion has been applied or marked resolved.
  Suggestions cannot be applied from pending reviews.
  Suggestions cannot be applied on multi-line comments.
  Suggestions cannot be applied while the pull request is queued to merge.
  Suggestion cannot be applied right now. Please check back later.
  
    
  
    
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
I am not sure this is convincing to me. My understanding (perhaps flawed, I'm definitely not an expert in this) is that relaxed doesn't guarantee that other threads will observe the new empty state; we need a release store that synchronizes with the other thread's acquire ordering in order to guarantee correct behavior here.
In general, I'm not sure that hermit should deviate from the pattern of the general unix thread parker implementation, which uses SeqCst ordering for all of these operations.
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
That's not correct. SeqCst or Release+Acquire also don't guarantee any other thread will directly observe the new value either. The specification only talks about ordering, not about timing. And even Relaxed guarantees a perfectly consistent ordering for all operations on the same atomic variable. Using stronger memory ordering only means that you can under some conditions guarantee that something that happened to another piece of memory is observable once an atomic store/change is observed, but is unrelated to when that change is observed in the first place.