01-17-2024 01:33 AM
Good day!
Recently we had to reload one of our ASR9001/XR 6.4.2 because of huge memory leak.
While trying to figure out what was the root cause of the leak I found syslog message from this router with a very strange process name:
wdsysmon[480]: %HA-HA_WD-4-TOP_MEMORY_USER_WARNING : 0: Process Name: .[65925], pid: 1328935301, Heap usage 364400 Kbytes, Virtual Shared memory usage: 69988 Kbytes
I wonder what is the process with name "." and huge pid number ?
Appreciate any support.
Solved! Go to Solution.
01-18-2024 12:33 PM
01-17-2024 07:37 AM
Hello @serjo7979 ,
Hope you are doing well.
Checking this, I'm not able to find what is this process.
Maybe with show context or show processes blocked the name of this process could be found.
Also, you probably know this already but 6.4.2 is a very old release, maybe an upgrade should be consider as memory leak will probably happen again in the future even if you reloaded the ASR9001.
Hope it helps and have a nice day.
Kind Regards,
Antoine
01-18-2024 10:50 AM
Hello Antoine,
unfortunately the router in question was so deep in comatose that we couldn`t ssh or telnet to it - even from its p2p neighbor. Needless to say that all OSPF/LDP/BGP sessions were down. That is why we couldn`t collect any diagnostic commands output. And you are absolutely right about maturity XR642, now we have all necessary reasons to upgrade it.
Sergey
01-18-2024 11:21 AM
Hello @serjo7979 ,
Thank you for your reply.
If you need any recommendation regarding the release you want to upgrade to, let me know.
Otherwise, if you already know which release you will upgrade to, please mark this thread as resolved to clear the queue.
Thanks for you feedback and cooperation.
Kind Regards,
Antoine
01-17-2024 08:31 AM
Based on the PID value it is a transient process. Do you have the cli history from around the time this message was logged or know if any scripts were logging in and collecting data?
Thanks,
Sam
01-18-2024 10:53 AM
Hello Sam,
here is the list of show commands our NMS periodically collects every day:
Router`s config wasn`t changed for weeks. You said it was a transient process. Transient of what kind - almost dead or just respawned and haven`t received its birth certificate yet ?
The amount of heap memory this process was holding looks pretty similar to Netconf.
Sergey
01-18-2024 12:33 PM
01-27-2024 10:16 AM
I`m sorry for long radio silence. You helped me greatly, thank you very much!
Sergey
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide