/var/log/syslog 包含:
Jul 31 13:45:01 ray-desktop CRON[5667]: (root) CMD (command -v debian-sa1 > /dev/null && debian-sa1 1 1)
Jul 31 13:45:50 ray-desktop org.gnome.Shell.desktop[1689]: [2036:2054:0731/134550.778035:ERROR:socket_stream.cc(219)] Closing stream with result -2
Jul 31 13:47:51 ray-desktop rasdaemon[695]: <...>-35 [-41071872] 0.001327: mce_record: 2019-07-31 12:27:04 -0400 bank=8, status= 8c2001000001110b, corrected filtering (some unreported errors in same region) Generic CACHE Level-3 Generic Error, mci=Corrected_error Threshold based error status: green, mca=corrected filtering (some unreported errors in same region) Generic CACHE Level-3 Generic Error Large number of corrected cache errors. System operating, but might leadto uncorrected errors soon, cpu_type= Intel generic architectural MCA, cpu= 0, socketid= 0, misc= 31c0, addr= 2cee80000075b7d, mcgstatus=0, mcgcap= c09, apicid= 0
Jul 31 13:47:51 ray-desktop kernel: [18114.699831] mce: [Hardware Error]: Machine check events logged
Jul 31 13:47:51 ray-desktop rasdaemon[695]: cpu 00:rasdaemon: mce_record store: 0x556ec46df398
Jul 31 13:47:51 ray-desktop rasdaemon[695]: rasdaemon: register inserted at db
Jul 31 13:48:22 ray-desktop kernel: [18145.544922] perf: interrupt took too long (5187 > 5062), lowering kernel.perf_event_max_sample_rate to 38500
紧随其后的是 13:55:53 的重启日志。
我知道“mce”日志记录已被“rasdaemon”取代,这两者都在上面提到过。
$ find /sys/kernel/debug/tracing -type f \! -empty
一无所获。
该目录中有超过 22,000 个文件,都是空的,并且都是在重新启动时创建的。
这是 rasdaemon 保存其信息的地方吗?如果是,如果重新启动后全部归零,它有什么用?
下面的一切
/sys
通常都是内核的虚拟文件系统,特别/sys/kernel/debug/tracing
是tracefs。这与rasdaemon
.如果
rasdaemon
以参数-r
/--record
开头,它将事件存储在 Sqlite3 数据库中,在我的系统上位于/var/lib/rasdaemon/ras-mc_event.db
. 这个数据库可以用ras-mc-ctl --errors
.