Skip to content

checklocks: fix proc network sysctl ownership - #14321

Closed
tamird wants to merge 1 commit into
google:masterfrom
tamird:checklocks-proc-network-sysctls
Closed

checklocks: fix proc network sysctl ownership#14321
tamird wants to merge 1 commit into
google:masterfrom
tamird:checklocks-proc-network-sysctls

Conversation

@tamird

@tamird tamird commented Aug 22, 2026

Copy link
Copy Markdown
Contributor

Proc file descriptions share sysctl sources, so per-FD locks do not protect cached state. Read the port range and TCP SACK setting from the synchronized stack instead of retaining unsynchronized duplicate caches. Rejected SACK writes no longer change the value read back. The old netstack replacement path was removed by f4da28b.

Enforce the mutex protecting PortManager's authoritative ephemeral range with checklocks. Keep the synchronous reservation callback's caller-held lock contract explicit where it cannot yet be annotated.

Forwarding intentionally retains the last-written value introduced by 600d14f. Give that source its own mutex and serialize the cache update with SetForwarding. Cover cross-source readback and rejected SACK writes.

Assisted-by: Codex

Proc file descriptions share sysctl sources, so per-FD locks do not
protect cached state. Read the port range and TCP SACK setting from the
synchronized stack instead of retaining unsynchronized duplicate caches.
Rejected SACK writes no longer change the value read back. The old
netstack replacement path was removed by f4da28b.

Enforce the mutex protecting PortManager's authoritative ephemeral range
with checklocks. Keep the synchronous reservation callback's caller-held
lock contract explicit where it cannot yet be annotated.

Forwarding intentionally retains the last-written value introduced by
600d14f. Give that source its own mutex and serialize the cache
update with SetForwarding. Cover cross-source readback and rejected SACK
writes.

Assisted-by: Codex
@tamird

tamird commented Aug 22, 2026

Copy link
Copy Markdown
Contributor Author

r? @nybidari Could you review authoritative SACK/port-range readback and forwarding serialization?

Focused local Bazel checks passed. No upstream build/test result is reported yet.

cc @milantracy

The reviewer-assignment check failed with HTTP 422 because at least one selected reviewer is not an eligible repository collaborator. The job does not identify which account. This is an assignment-automation failure, not a build/test failure; the review request above remains in place.

Assisted-by: Codex

@tamird

tamird commented Aug 23, 2026

Copy link
Copy Markdown
Contributor Author

Closing in favor of consolidated #14338. The expanded replacement commits are prepared locally; the replacement branch has not been pushed yet.

Assisted-by: Codex

@tamird tamird closed this Aug 23, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant