Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 1 | Linux Magic System Request Key Hacks |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 2 | Documentation for sysrq.c |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 3 | |
| 4 | * What is the magic SysRq key? |
| 5 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
| 6 | It is a 'magical' key combo you can hit which the kernel will respond to |
| 7 | regardless of whatever else it is doing, unless it is completely locked up. |
| 8 | |
| 9 | * How do I enable the magic SysRq key? |
| 10 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
| 11 | You need to say "yes" to 'Magic SysRq key (CONFIG_MAGIC_SYSRQ)' when |
| 12 | configuring the kernel. When running a kernel with SysRq compiled in, |
| 13 | /proc/sys/kernel/sysrq controls the functions allowed to be invoked via |
| 14 | the SysRq key. By default the file contains 1 which means that every |
| 15 | possible SysRq request is allowed (in older versions SysRq was disabled |
| 16 | by default, and you were required to specifically enable it at run-time |
| 17 | but this is not the case any more). Here is the list of possible values |
| 18 | in /proc/sys/kernel/sysrq: |
| 19 | 0 - disable sysrq completely |
| 20 | 1 - enable all functions of sysrq |
| 21 | >1 - bitmask of allowed sysrq functions (see below for detailed function |
| 22 | description): |
| 23 | 2 - enable control of console logging level |
| 24 | 4 - enable control of keyboard (SAK, unraw) |
| 25 | 8 - enable debugging dumps of processes etc. |
| 26 | 16 - enable sync command |
| 27 | 32 - enable remount read-only |
| 28 | 64 - enable signalling of processes (term, kill, oom-kill) |
| 29 | 128 - allow reboot/poweroff |
| 30 | 256 - allow nicing of all RT tasks |
| 31 | |
| 32 | You can set the value in the file by the following command: |
| 33 | echo "number" >/proc/sys/kernel/sysrq |
| 34 | |
| 35 | Note that the value of /proc/sys/kernel/sysrq influences only the invocation |
| 36 | via a keyboard. Invocation of any operation via /proc/sysrq-trigger is always |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 37 | allowed (by a user with admin privileges). |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 38 | |
| 39 | * How do I use the magic SysRq key? |
| 40 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
| 41 | On x86 - You press the key combo 'ALT-SysRq-<command key>'. Note - Some |
| 42 | keyboards may not have a key labeled 'SysRq'. The 'SysRq' key is |
| 43 | also known as the 'Print Screen' key. Also some keyboards cannot |
| 44 | handle so many keys being pressed at the same time, so you might |
Pavel Machek | dfb0042 | 2007-10-07 00:24:37 -0700 | [diff] [blame] | 45 | have better luck with "press Alt", "press SysRq", "release SysRq", |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 46 | "press <command key>", release everything. |
| 47 | |
| 48 | On SPARC - You press 'ALT-STOP-<command key>', I believe. |
| 49 | |
| 50 | On the serial console (PC style standard serial ports only) - |
| 51 | You send a BREAK, then within 5 seconds a command key. Sending |
| 52 | BREAK twice is interpreted as a normal BREAK. |
| 53 | |
| 54 | On PowerPC - Press 'ALT - Print Screen (or F13) - <command key>, |
| 55 | Print Screen (or F13) - <command key> may suffice. |
| 56 | |
| 57 | On other - If you know of the key combos for other architectures, please |
| 58 | let me know so I can add them to this section. |
| 59 | |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 60 | On all - write a character to /proc/sysrq-trigger. e.g.: |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 61 | |
| 62 | echo t > /proc/sysrq-trigger |
| 63 | |
| 64 | * What are the 'command' keys? |
| 65 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 66 | 'b' - Will immediately reboot the system without syncing or unmounting |
| 67 | your disks. |
| 68 | |
Hidetoshi Seto | cab8bd3 | 2009-07-29 15:04:14 -0700 | [diff] [blame] | 69 | 'c' - Will perform a system crash by a NULL pointer dereference. |
| 70 | A crashdump will be taken if configured. |
Hariprasad Nellitheertha | 86b1ae3 | 2005-06-25 14:58:25 -0700 | [diff] [blame] | 71 | |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 72 | 'd' - Shows all locks that are held. |
| 73 | |
Randy Dunlap | 78831ba | 2007-02-10 01:45:55 -0800 | [diff] [blame] | 74 | 'e' - Send a SIGTERM to all processes, except for init. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 75 | |
Randy Dunlap | 78831ba | 2007-02-10 01:45:55 -0800 | [diff] [blame] | 76 | 'f' - Will call oom_kill to kill a memory hog process. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 77 | |
Randy Dunlap | 003bb8a | 2010-10-26 14:20:40 -0700 | [diff] [blame] | 78 | 'g' - Used by kgdb (kernel debugger) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 79 | |
Randy Dunlap | 78831ba | 2007-02-10 01:45:55 -0800 | [diff] [blame] | 80 | 'h' - Will display help (actually any other key than those listed |
Jesper Juhl | 09736bd | 2007-08-10 13:01:04 -0700 | [diff] [blame] | 81 | here will display help. but 'h' is easy to remember :-) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 82 | |
Randy Dunlap | 78831ba | 2007-02-10 01:45:55 -0800 | [diff] [blame] | 83 | 'i' - Send a SIGKILL to all processes, except for init. |
| 84 | |
Eric Sandeen | c2d7543 | 2009-03-31 15:23:46 -0700 | [diff] [blame] | 85 | 'j' - Forcibly "Just thaw it" - filesystems frozen by the FIFREEZE ioctl. |
| 86 | |
Randy Dunlap | 78831ba | 2007-02-10 01:45:55 -0800 | [diff] [blame] | 87 | 'k' - Secure Access Key (SAK) Kills all programs on the current virtual |
| 88 | console. NOTE: See important comments below in SAK section. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 89 | |
Rik van Riel | 5045bca | 2008-04-29 00:59:21 -0700 | [diff] [blame] | 90 | 'l' - Shows a stack backtrace for all active CPUs. |
| 91 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 92 | 'm' - Will dump current memory info to your console. |
| 93 | |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 94 | 'n' - Used to make RT tasks nice-able |
| 95 | |
Randy Dunlap | 78831ba | 2007-02-10 01:45:55 -0800 | [diff] [blame] | 96 | 'o' - Will shut your system off (if configured and supported). |
| 97 | |
| 98 | 'p' - Will dump the current registers and flags to your console. |
| 99 | |
Linus Torvalds | 99ebcf8 | 2008-10-20 13:19:56 -0700 | [diff] [blame] | 100 | 'q' - Will dump per CPU lists of all armed hrtimers (but NOT regular |
| 101 | timer_list timers) and detailed information about all |
| 102 | clockevent devices. |
Johannes Weiner | acf11fa | 2007-03-22 00:11:18 -0800 | [diff] [blame] | 103 | |
Randy Dunlap | 78831ba | 2007-02-10 01:45:55 -0800 | [diff] [blame] | 104 | 'r' - Turns off keyboard raw mode and sets it to XLATE. |
| 105 | |
| 106 | 's' - Will attempt to sync all mounted filesystems. |
| 107 | |
| 108 | 't' - Will dump a list of current tasks and their information to your |
| 109 | console. |
| 110 | |
| 111 | 'u' - Will attempt to remount all mounted filesystems read-only. |
| 112 | |
Randy Dunlap | 003bb8a | 2010-10-26 14:20:40 -0700 | [diff] [blame] | 113 | 'v' - Forcefully restores framebuffer console |
| 114 | 'v' - Causes ETM buffer dump [ARM-specific] |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 115 | |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 116 | 'w' - Dumps tasks that are in uninterruptable (blocked) state. |
| 117 | |
| 118 | 'x' - Used by xmon interface on ppc/powerpc platforms. |
David S. Miller | 916ca14 | 2012-10-16 09:34:01 -0700 | [diff] [blame] | 119 | Show global PMU Registers on sparc64. |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 120 | |
Randy Dunlap | 003bb8a | 2010-10-26 14:20:40 -0700 | [diff] [blame] | 121 | 'y' - Show global CPU Registers [SPARC-64 specific] |
| 122 | |
Randy Dunlap | 3871f2f | 2008-12-24 16:06:57 -0800 | [diff] [blame] | 123 | 'z' - Dump the ftrace buffer |
| 124 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 125 | '0'-'9' - Sets the console log level, controlling which kernel messages |
| 126 | will be printed to your console. ('0', for example would make |
| 127 | it so that only emergency messages like PANICs or OOPSes would |
| 128 | make it to your console.) |
| 129 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 130 | * Okay, so what can I use them for? |
| 131 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
zhangwei(Jovi) | e2a8b0a | 2013-04-30 15:28:57 -0700 | [diff] [blame] | 132 | Well, unraw(r) is very handy when your X server or a svgalib program crashes. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 133 | |
zhangwei(Jovi) | e2a8b0a | 2013-04-30 15:28:57 -0700 | [diff] [blame] | 134 | sak(k) (Secure Access Key) is useful when you want to be sure there is no |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 135 | trojan program running at console which could grab your password |
| 136 | when you would try to login. It will kill all programs on given console, |
| 137 | thus letting you make sure that the login prompt you see is actually |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 138 | the one from init, not some trojan program. |
Jesper Juhl | 3eecd1d | 2006-06-25 05:48:16 -0700 | [diff] [blame] | 139 | IMPORTANT: In its true form it is not a true SAK like the one in a :IMPORTANT |
| 140 | IMPORTANT: c2 compliant system, and it should not be mistaken as :IMPORTANT |
| 141 | IMPORTANT: such. :IMPORTANT |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 142 | It seems others find it useful as (System Attention Key) which is |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 143 | useful when you want to exit a program that will not let you switch consoles. |
| 144 | (For example, X or a svgalib program.) |
| 145 | |
zhangwei(Jovi) | e2a8b0a | 2013-04-30 15:28:57 -0700 | [diff] [blame] | 146 | reboot(b) is good when you're unable to shut down. But you should also |
| 147 | sync(s) and umount(u) first. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 148 | |
zhangwei(Jovi) | e2a8b0a | 2013-04-30 15:28:57 -0700 | [diff] [blame] | 149 | crash(c) can be used to manually trigger a crashdump when the system is hung. |
Hidetoshi Seto | cab8bd3 | 2009-07-29 15:04:14 -0700 | [diff] [blame] | 150 | Note that this just triggers a crash if there is no dump mechanism available. |
Hariprasad Nellitheertha | 86b1ae3 | 2005-06-25 14:58:25 -0700 | [diff] [blame] | 151 | |
zhangwei(Jovi) | e2a8b0a | 2013-04-30 15:28:57 -0700 | [diff] [blame] | 152 | sync(s) is great when your system is locked up, it allows you to sync your |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 153 | disks and will certainly lessen the chance of data loss and fscking. Note |
| 154 | that the sync hasn't taken place until you see the "OK" and "Done" appear |
| 155 | on the screen. (If the kernel is really in strife, you may not ever get the |
| 156 | OK or Done message...) |
| 157 | |
zhangwei(Jovi) | e2a8b0a | 2013-04-30 15:28:57 -0700 | [diff] [blame] | 158 | umount(u) is basically useful in the same ways as sync(s). I generally sync(s), |
| 159 | umount(u), then reboot(b) when my system locks. It's saved me many a fsck. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 160 | Again, the unmount (remount read-only) hasn't taken place until you see the |
| 161 | "OK" and "Done" message appear on the screen. |
| 162 | |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 163 | The loglevels '0'-'9' are useful when your console is being flooded with |
| 164 | kernel messages you do not want to see. Selecting '0' will prevent all but |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 165 | the most urgent kernel messages from reaching your console. (They will |
| 166 | still be logged if syslogd/klogd are alive, though.) |
| 167 | |
zhangwei(Jovi) | e2a8b0a | 2013-04-30 15:28:57 -0700 | [diff] [blame] | 168 | term(e) and kill(i) are useful if you have some sort of runaway process you |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 169 | are unable to kill any other way, especially if it's spawning other |
| 170 | processes. |
| 171 | |
zhangwei(Jovi) | e2a8b0a | 2013-04-30 15:28:57 -0700 | [diff] [blame] | 172 | "just thaw it(j)" is useful if your system becomes unresponsive due to a frozen |
Eric Sandeen | c2d7543 | 2009-03-31 15:23:46 -0700 | [diff] [blame] | 173 | (probably root) filesystem via the FIFREEZE ioctl. |
| 174 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 175 | * Sometimes SysRq seems to get 'stuck' after using it, what can I do? |
| 176 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
| 177 | That happens to me, also. I've found that tapping shift, alt, and control |
| 178 | on both sides of the keyboard, and hitting an invalid sysrq sequence again |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 179 | will fix the problem. (i.e., something like alt-sysrq-z). Switching to another |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 180 | virtual console (ALT+Fn) and then back again should also help. |
| 181 | |
| 182 | * I hit SysRq, but nothing seems to happen, what's wrong? |
| 183 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
Paul Fox | a2056ff | 2010-05-19 10:11:13 -0700 | [diff] [blame] | 184 | There are some keyboards that produce a different keycode for SysRq than the |
| 185 | pre-defined value of 99 (see KEY_SYSRQ in include/linux/input.h), or which |
| 186 | don't have a SysRq key at all. In these cases, run 'showkey -s' to find an |
| 187 | appropriate scancode sequence, and use 'setkeycodes <sequence> 99' to map |
| 188 | this sequence to the usual SysRq code (e.g., 'setkeycodes e05b 99'). It's |
| 189 | probably best to put this command in a boot script. Oh, and by the way, you |
| 190 | exit 'showkey' by not typing anything for ten seconds. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 191 | |
| 192 | * I want to add SysRQ key events to a module, how does it work? |
| 193 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
| 194 | In order to register a basic function with the table, you must first include |
| 195 | the header 'include/linux/sysrq.h', this will define everything else you need. |
| 196 | Next, you must create a sysrq_key_op struct, and populate it with A) the key |
| 197 | handler function you will use, B) a help_msg string, that will print when SysRQ |
| 198 | prints help, and C) an action_msg string, that will print right before your |
Adrian Bunk | 338cec3 | 2005-09-10 00:26:54 -0700 | [diff] [blame] | 199 | handler is called. Your handler must conform to the prototype in 'sysrq.h'. |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 200 | |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 201 | After the sysrq_key_op is created, you can call the kernel function |
| 202 | register_sysrq_key(int key, struct sysrq_key_op *op_p); this will |
| 203 | register the operation pointed to by 'op_p' at table key 'key', |
| 204 | if that slot in the table is blank. At module unload time, you must call |
| 205 | the function unregister_sysrq_key(int key, struct sysrq_key_op *op_p), which |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 206 | will remove the key op pointed to by 'op_p' from the key 'key', if and only if |
| 207 | it is currently registered in that slot. This is in case the slot has been |
| 208 | overwritten since you registered it. |
| 209 | |
| 210 | The Magic SysRQ system works by registering key operations against a key op |
| 211 | lookup table, which is defined in 'drivers/char/sysrq.c'. This key table has |
| 212 | a number of operations registered into it at compile time, but is mutable, |
Randy Dunlap | d346cce | 2007-01-31 23:48:17 -0800 | [diff] [blame] | 213 | and 2 functions are exported for interface to it: |
| 214 | register_sysrq_key and unregister_sysrq_key. |
| 215 | Of course, never ever leave an invalid pointer in the table. I.e., when |
| 216 | your module that called register_sysrq_key() exits, it must call |
| 217 | unregister_sysrq_key() to clean up the sysrq key table entry that it used. |
| 218 | Null pointers in the table are always safe. :) |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 219 | |
| 220 | If for some reason you feel the need to call the handle_sysrq function from |
| 221 | within a function called by handle_sysrq, you must be aware that you are in |
| 222 | a lock (you are also in an interrupt handler, which means don't sleep!), so |
| 223 | you must call __handle_sysrq_nolock instead. |
| 224 | |
Andy Whitcroft | 47c33d9 | 2009-01-15 13:50:51 -0800 | [diff] [blame] | 225 | * When I hit a SysRq key combination only the header appears on the console? |
| 226 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
| 227 | Sysrq output is subject to the same console loglevel control as all |
| 228 | other console output. This means that if the kernel was booted 'quiet' |
| 229 | as is common on distro kernels the output may not appear on the actual |
| 230 | console, even though it will appear in the dmesg buffer, and be accessible |
| 231 | via the dmesg command and to the consumers of /proc/kmsg. As a specific |
| 232 | exception the header line from the sysrq command is passed to all console |
| 233 | consumers as if the current loglevel was maximum. If only the header |
| 234 | is emitted it is almost certain that the kernel loglevel is too low. |
| 235 | Should you require the output on the console channel then you will need |
| 236 | to temporarily up the console loglevel using alt-sysrq-8 or: |
| 237 | |
| 238 | echo 8 > /proc/sysrq-trigger |
| 239 | |
| 240 | Remember to return the loglevel to normal after triggering the sysrq |
| 241 | command you are interested in. |
| 242 | |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 243 | * I have more questions, who can I ask? |
| 244 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
Randy Dunlap | 21106b0 | 2012-03-30 13:37:06 -0700 | [diff] [blame] | 245 | Just ask them on the linux-kernel mailing list: |
| 246 | linux-kernel@vger.kernel.org |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 247 | |
| 248 | * Credits |
| 249 | ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
Adam D. Moss | 5e03e2c | 2006-01-03 13:31:01 +0100 | [diff] [blame] | 250 | Written by Mydraal <vulpyne@vulpyne.net> |
Linus Torvalds | 1da177e | 2005-04-16 15:20:36 -0700 | [diff] [blame] | 251 | Updated by Adam Sulmicki <adam@cfar.umd.edu> |
| 252 | Updated by Jeremy M. Dolan <jmd@turbogeek.org> 2001/01/28 10:15:59 |
| 253 | Added to by Crutcher Dunnavant <crutcher+kernel@datastacks.com> |