Fatal trap 12: page fault while in kernel mode cpuid = 11; apic id = 11 fault virtual address = 0x17c fault code = supervisor read data, page not present instruction pointer = 0x20:0xffffffff831bb8c3 stack pointer = 0x28:0xfffffe01c358f780 frame pointer = 0x28:0xfffffe01c358f810 code segment = base 0x0, limit 0xfffff, type 0x1b = DPL 0, pres 1, long 1, def32 0, gran 1 processor eflags = interrupt enabled, resume, IOPL = 0 current process = 27739 (ctladm) trap number = 12 panic: page fault cpuid = 11 time = 1583839216 KDB: stack backtrace: db_trace_self_wrapper() at db_trace_self_wrapper+0x2b/frame 0xfffffe01c358f3e0 vpanic() at vpanic+0x185/frame 0xfffffe01c358f440 panic() at panic+0x43/frame 0xfffffe01c358f4a0 trap_fatal() at trap_fatal+0x386/frame 0xfffffe01c358f500 trap_pfault() at trap_pfault+0x99/frame 0xfffffe01c358f580 trap() at trap+0x2a7/frame 0xfffffe01c358f6b0 calltrap() at calltrap+0x8/frame 0xfffffe01c358f6b0 --- trap 0xc, rip = 0xffffffff831bb8c3, rsp = 0xfffffe01c358f780, rbp = 0xfffffe01c358f810 --- cfiscsi_ioctl() at cfiscsi_ioctl+0x753/frame 0xfffffe01c358f810 devfs_ioctl() at devfs_ioctl+0xcc/frame 0xfffffe01c358f860 vn_ioctl() at vn_ioctl+0x132/frame 0xfffffe01c358f970 devfs_ioctl_f() at devfs_ioctl_f+0x1e/frame 0xfffffe01c358f990 kern_ioctl() at kern_ioctl+0x295/frame 0xfffffe01c358f9f0 sys_ioctl() at sys_ioctl+0x15c/frame 0xfffffe01c358fac0 amd64_syscall() at amd64_syscall+0x168/frame 0xfffffe01c358fbf0 fast_syscall_common() at fast_syscall_common+0x101/frame 0xfffffe01c358fbf0 --- syscall (54, FreeBSD ELF64, sys_ioctl), rip = 0x8004c19ba, rsp = 0x7fffffffe448, rbp = 0x7fffffffeab0 --- KDB: enter: panic __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:55 --Type for more, q to quit, c to continue without paging-- 55 __asm("movq %%gs:%P1,%0" : "=r" (td) : "n" (offsetof(struct pcpu, (kgdb) (kgdb) bt #0 __curthread () at /usr/src/sys/amd64/include/pcpu_aux.h:55 #1 doadump (textdump=0) at /usr/src/sys/kern/kern_shutdown.c:393 #2 0xffffffff8049ccba in db_dump (dummy=, dummy2=, dummy3=, dummy4=) at /usr/src/sys/ddb/db_command.c:575 #3 0xffffffff8049ca7c in db_command (last_cmdp=, cmd_table=, dopager=1) at /usr/src/sys/ddb/db_command.c:482 #4 0xffffffff8049c7ed in db_command_loop () at /usr/src/sys/ddb/db_command.c:535 #5 0xffffffff8049fa18 in db_trap (type=, code=) at /usr/src/sys/ddb/db_main.c:252 #6 0xffffffff80c12e17 in kdb_trap (type=3, code=0, tf=) at /usr/src/sys/kern/subr_kdb.c:689 #7 0xffffffff8106ca8e in trap (frame=0xfffffe01c358f310) at /usr/src/sys/amd64/amd64/trap.c:579 #8 #9 kdb_enter (why=0xffffffff811fb0f8 "panic", msg=) at /usr/src/sys/kern/subr_kdb.c:476 #10 0xffffffff80bc8071 in vpanic (fmt=, ap=) at /usr/src/sys/kern/kern_shutdown.c:899 #11 0xffffffff80bc7e03 in panic (fmt=0xffffffff81c7afa8 "E\367\033\201\377\377\377\377") at /usr/src/sys/kern/kern_shutdown.c:836 #12 0xffffffff8106cee6 in trap_fatal (frame=0xfffffe01c358f6c0, eva=380) at /usr/src/sys/amd64/amd64/trap.c:920 #13 0xffffffff8106cf89 in trap_pfault (frame=, usermode=, signo=, ucode=0x0) at /usr/src/sys/amd64/amd64/trap.c:737 #14 0xffffffff8106c587 in trap (frame=0xfffffe01c358f6c0) at /usr/src/sys/amd64/amd64/trap.c:401 #15 #16 cfiscsi_ioctl_list (ci=0xffffffff831c05ba) at /usr/src/sys/cam/ctl/ctl_frontend_iscsi.c:1719 #17 cfiscsi_ioctl (dev=, cmd=, addr=0xfffff80048132000 "\001", flag=, td=) at /usr/src/sys/cam/ctl/ctl_frontend_iscsi.c:2283 #18 0xffffffff80a79dfc in devfs_ioctl (ap=0xfffffe01c358f878) at /usr/src/sys/fs/devfs/devfs_vnops.c:823 #19 0xffffffff80cb4542 in vn_ioctl (fp=0xfffff8040f2bfd20, com=, data=0xfffff80048132000, active_cred=0xfffff80005474900, td=0xfffff800053c7dad) at /usr/src/sys/kern/vfs_vnops.c:1502 #20 0xffffffff80a7a47e in devfs_ioctl_f (fp=0xfffff80221bf7547, com=1352, data=0x76, cred=0xfffff800053c7ccd, td=0xfffffe01c07e7800) at /usr/src/sys/fs/devfs/devfs_vnops.c:755 #21 0xffffffff80c39375 in fo_ioctl (fp=, com=3277906213, data=0xfffff800053c7ddc, active_cred=0xfffff800053c7ccd, td=0xfffffe01c07e7800) at /usr/src/sys/sys/file.h:342 #22 kern_ioctl (td=, fd=, com=, data=0xfffff800053c7ddc "") at /usr/src/sys/kern/sys_generic.c:801 #23 0xffffffff80c3906c in sys_ioctl (td=0xfffffe01c07e7800, uap=0xfffffe01c07e7bd0) at /usr/src/sys/kern/sys_generic.c:709 #24 0xffffffff8106d8f8 in syscallenter (td=) at /usr/src/sys/amd64/amd64/../../kern/subr_syscall.c:162 #25 amd64_syscall (td=0xfffffe01c07e7800, traced=0) at /usr/src/sys/amd64/amd64/trap.c:1162 #26 #27 0x00000008004c19ba in ?? () Backtrace stopped: Cannot access memory at address 0x7fffffffe448 (kgdb) (kgdb) frame 16 #16 cfiscsi_ioctl_list (ci=0xffffffff831c05ba) at /usr/src/sys/cam/ctl/ctl_frontend_iscsi.c:1719 1719 cs->cs_target->ct_tag, (kgdb) p *cs $1 = {cs_next = {tqe_next = 0xfffff80108eb9400, tqe_prev = 0xfffff8021e4e8c00}, cs_lock = {lock_object = {lo_name = 0xffffffff831c0985 "cfiscsi_lock", lo_flags = 16973824, lo_data = 0, lo_witness = 0xfffff8107fd95180}, mtx_lock = 0}, cs_conn = 0xfffff80215b72c00, cs_cmdsn = 0, cs_statsn = 2, cs_target_transfer_tag = 0, cs_outstanding_ctl_pdus = 0, cs_waiting_for_data_out = {tqh_first = 0x0, tqh_last = 0xfffff800053c7c48}, cs_target = 0x0, cs_callout = {c_links = {le = {le_next = 0x0, le_prev = 0xffffffff81dbae20 }, sle = { sle_next = 0x0}, tqe = {tqe_next = 0x0, tqe_prev = 0xffffffff81dbae20 }}, c_time = 17391252523553, c_precision = 268435437, c_arg = 0xfffff800053c7c00, c_func = 0xffffffff831bf160 , c_lock = 0x0, c_flags = 2, c_iflags = 144, c_cpu = 0}, cs_timeout = 0, cs_maintenance_cv = {cv_description = 0xffffffff831c0e91 "cfiscsi_mt", cv_waiters = 1}, cs_terminating = true, cs_handoff_in_progress = false, cs_tasks_aborted = false, cs_max_recv_data_segment_length = 131072, cs_max_send_data_segment_length = 131072, cs_max_burst_length = 262144, cs_first_burst_length = 65536, cs_immediate_data = true, cs_initiator_name = "iqn.1994-09.org.freebsd:q1u001.z.vstack.com", '\000' , cs_initiator_addr = "192.168.101.1", '\000' , cs_initiator_alias = '\000' , cs_initiator_isid = "\200\211\071\372~\323", cs_initiator_id = "iqn.1994-09.org.freebsd:q1u001.z.vstack.com,i,0x808939fa7ed3", '\000' , cs_id = 118, cs_ctl_initid = -1} (kgdb) p cs->cs_target $2 = (struct cfiscsi_target *) 0x0