[dpdk-dev] DPDK and ASLR

Bruce Richardson bruce.richardson at intel.com
Mon Jun 15 12:21:39 CEST 2015


On Fri, Jun 12, 2015 at 10:53:58PM +0000, Assaad, Sami (Sami) wrote:
> When I operate a DPDK based application, the EAL always reports the following:
> EAL: WARNING: Address Space Layout Randomization (ASLR) is enabled in the kernel.
> EAL:      This may cause issues with mapping memory into secondary processes.
> 
> Our application is DPDK client/server based and runs properly.
> 
> My questions are:
> 
> *         Is this warning of any importance?

Yes, it's there for a reason. With ASLR, the position of the hugepage (and other)
memory in your DPDK primary process virtual address space will move about from
one run to another, and the same with the secondary process. Because of this,
you may occasionally get instances where your application fails to run because
an essential piece of memory is mapped at address X in the primary, while something
else is mapped at address X in the secondary process. How frequently, if ever,
this happens will vary from application to application.

If ASLR is disabled, the memory mappings created in the primary and secondary
processes will be identical and repeatable from one run to another, so you can
know that if a set of processes starts once, it will start a second time. With
ASLR enabled, that guarantee cannot be made.


> 
> *         Should ASLR be disabled?
> 

That is a questions we can't answer for you. ASLR is a security feature in the OS
so you should be aware of the implications of disabling it. However, if you need
absolute guarantees of repeatabiltiy of mappings from one multi-process run to
another, the only way get that - that I am aware of - is to disable ASLR. If an
occasional random failure at startup is ok, then ASLR can safely be left on.

> *         Does ASLR affect DPDK performance?

No, it only affects the repeatability of memory mappings at DPDK start-up.

Hope this clarifies things.

/Bruce
> 


More information about the dev mailing list