From: Daniel Phillips <phillips@bonn-fries.net>
To: Alan Cox <alan@lxorguk.ukuu.org.uk>
Cc: Linus Torvalds <torvalds@transmeta.com>,
Robert Schwebel <robert@schwebel.de>,
linux-kernel@vger.kernel.org
Subject: Re: patent on O_ATOMICLOOKUP [Re: [PATCH] loopable tmpfs (2.4.17)]
Date: Sun, 26 May 2002 06:11:12 +0200 [thread overview]
Message-ID: <E17BpNE-0003qU-00@starship> (raw)
In-Reply-To: <Pine.LNX.4.44.0205251025010.6515-100000@home.transmeta.com> <E17BiBY-0003nt-00@starship> <1022381475.11811.72.camel@irongate.swansea.linux.org.uk>
On Sunday 26 May 2002 04:51, Alan Cox wrote:
> On Sat, 2002-05-25 at 21:30, Daniel Phillips wrote:
> > A short time ago I made my living by programming large factory machines
> > that can kill people in an instant. I would have loved to use Linux, but
> > it was not ready at the time. As long as core developers continue to
> > ignore the need for realtime capability in the kernel itself - as opposed
> > to waving hands
>
> This has nothing to do with real time. The capacity of computer science
> to formally validate a system (and if it can kill people it should be
> formally proven in something like Z) is not sufficient for a system so
> complex. Such a device needs a tiny verifiable kernel core.
The Linux core *is* tiny, and for that reason attractive for this purpose.
I agree that it is still too complex to verify formally, and we've suffered
because of that, i.e., when will we see the last truncate race? When will we
see a VM that doesn't fall over in corner cases? I don't accept 'never' as
an anwswer to this. Much of our current work - removal of the buffer cache,
elimination of buffer heads in most roles, coalescing of the ide and scsi
block flavors, introduction of reverse-mapping in the vm - moves the kernel
in the direction of less complexity, in the sense that state transitions and
subsystem interactions become easier to audit.
The day of the tiny, single purpose OS-let in industrial applications is
pretty much over. To illustrate, among the requirements we had was to
support modern hardware such as accelerated video cards, and high level
functions such as tcp stacks. We even had to run a database on the machine,
and a GUI. Don't even think of asking the hardware engineers to design a
two-processor system so that one of them can run a simplified OS. They won't
do it, because then they know perfectly well that one processor will do the
job, and it did, is doing it today. Reliably, and on what OS? Dos.
Surely if DoS can do it, then Linux can do it better. But not if we admit
defeat before starting.
--
Daniel
next prev parent reply other threads:[~2002-05-26 4:12 UTC|newest]
Thread overview: 179+ messages / expand[flat|nested] mbox.gz Atom feed top
[not found] <Pine.LNX.4.21.0204292127480.1709-100000@localhost.localdomain>
[not found] ` <3CEDF94C.592636A6@kegel.com>
[not found] ` <3CEDFCED.D10CD618@zip.com.au>
[not found] ` <3CEE806D.D52FBEA5@kegel.com>
2002-05-24 20:26 ` Andrea Arcangeli
2002-05-24 21:18 ` Anton Altaparmakov
2002-05-24 21:18 ` Karim Yaghmour
2002-05-24 21:46 ` Linus Torvalds
2002-05-24 23:05 ` Karim Yaghmour
2002-05-24 23:22 ` Larry McVoy
2002-05-24 23:53 ` Alexander Viro
2002-05-25 4:31 ` Karim Yaghmour
2002-05-25 4:44 ` Larry McVoy
2002-05-25 5:20 ` Karim Yaghmour
2002-05-25 5:39 ` Larry McVoy
2002-05-25 6:05 ` Karim Yaghmour
2002-05-25 7:59 ` Thunder from the hill
2002-05-25 16:14 ` Larry McVoy
2002-05-25 16:20 ` Karim Yaghmour
2002-05-25 16:25 ` Larry McVoy
2002-05-25 16:41 ` Karim Yaghmour
2002-05-25 22:47 ` Robert Schwebel
2002-05-26 1:06 ` Andrew Morton
2002-05-26 5:45 ` Robert Schwebel
2002-05-25 17:47 ` Kurt Wall
2002-05-25 18:13 ` Wolfgang Denk
2002-05-25 19:21 ` Daniel Phillips
2002-05-25 18:32 ` Karim Yaghmour
2002-05-25 18:38 ` Mark Mielke
2002-05-25 17:22 ` Linus Torvalds
2002-05-25 17:49 ` Karim Yaghmour
2002-05-25 20:07 ` Daniel Phillips
2002-05-25 20:29 ` Andre Hedrick
2002-05-26 2:53 ` Alan Cox
2002-05-26 2:17 ` Andre Hedrick
2002-05-25 20:53 ` Linus Torvalds
2002-05-25 21:19 ` Karim Yaghmour
2002-05-25 17:50 ` Wolfgang Denk
2002-05-25 18:02 ` Larry McVoy
2002-05-25 18:26 ` Wolfgang Denk
2002-05-25 18:44 ` Larry McVoy
2002-05-25 19:04 ` Wolfgang Denk
2002-05-25 19:52 ` Karim Yaghmour
2002-05-25 20:36 ` Larry McVoy
2002-05-25 20:51 ` Wolfgang Denk
2002-05-25 21:05 ` Larry McVoy
2002-05-25 21:20 ` Wolfgang Denk
2002-05-25 21:23 ` Larry McVoy
2002-05-26 2:46 ` Alan Cox
2002-05-26 3:33 ` Larry McVoy
2002-05-25 21:44 ` Daniel Phillips
2002-05-25 23:16 ` Robert Schwebel
[not found] ` <200205260255.g4Q2tkM62553@saturn.cs.uml.edu>
2002-05-26 5:48 ` Robert Schwebel
2002-05-27 5:28 ` Calin A. Culianu
2002-05-27 22:12 ` Mark Mielke
2002-05-25 21:14 ` Karim Yaghmour
2002-05-26 2:09 ` David Schleef
2002-05-26 3:17 ` Larry McVoy
2002-05-26 3:45 ` David Schleef
2002-05-26 4:03 ` Larry McVoy
2002-05-26 19:40 ` Alan Cox
2002-05-26 19:06 ` Larry McVoy
2002-05-26 20:17 ` Alexander Viro
2002-05-26 20:33 ` Larry McVoy
2002-05-26 21:33 ` Alan Cox
2002-05-26 20:44 ` Larry McVoy
2002-05-26 9:13 ` patent on O_ATOMICLOOKUP [Re: [PATCH] loopable tmpfs (2.4.17)]y Der Herr Hofrat
2002-05-26 14:13 ` Robert Schwebel
2002-05-26 16:31 ` Karim Yaghmour
2002-05-26 3:58 ` patent on O_ATOMICLOOKUP [Re: [PATCH] loopable tmpfs (2.4.17)] Alexander Viro
2002-05-26 4:13 ` Larry McVoy
2002-05-26 7:30 ` Alexander Viro
2002-05-26 14:42 ` yodaiken
2002-05-26 16:17 ` Karim Yaghmour
2002-05-26 16:27 ` Larry McVoy
2002-05-25 18:12 ` Linus Torvalds
2002-05-25 18:22 ` Karim Yaghmour
2002-05-25 18:33 ` Mark Mielke
2002-05-25 18:45 ` Karim Yaghmour
2002-05-25 23:27 ` Robert Schwebel
2002-05-25 18:44 ` Linus Torvalds
2002-05-25 19:14 ` Karim Yaghmour
2002-05-25 19:41 ` Daniel Phillips
2002-05-25 18:30 ` Wolfgang Denk
2002-05-25 18:52 ` Linus Torvalds
2002-05-25 21:22 ` Albert D. Cahalan
2002-05-25 21:33 ` Larry McVoy
2002-05-25 21:39 ` Karim Yaghmour
2002-05-25 21:55 ` Wolfgang Denk
2002-05-25 22:05 ` Larry McVoy
2002-05-25 22:13 ` Karim Yaghmour
2002-05-25 22:17 ` Wolfgang Denk
2002-05-25 23:10 ` Larry McVoy
2002-05-25 23:54 ` Wolfgang Denk
2002-05-26 4:05 ` Larry McVoy
2002-05-26 6:25 ` Karim Yaghmour
2002-05-25 23:56 ` Robert Schwebel
2002-05-26 3:40 ` Larry McVoy
2002-05-26 8:05 ` Robert Schwebel
2002-05-26 8:58 ` Wolfgang Denk
2002-05-25 22:19 ` Thomas Gleixner
2002-05-25 22:34 ` Erwin Rol
2002-05-25 23:17 ` Larry McVoy
2002-05-25 23:37 ` Robert Schwebel
2002-05-25 23:46 ` Larry McVoy
2002-05-26 0:01 ` Robert Schwebel
2002-05-26 10:11 ` David Woodhouse
2002-05-26 13:04 ` Roman Zippel
2002-05-26 13:26 ` yodaiken
2002-05-26 14:09 ` Roman Zippel
2002-05-26 14:21 ` yodaiken
2002-05-26 15:30 ` Roman Zippel
2002-05-26 16:55 ` yodaiken
2002-05-26 18:00 ` Karim Yaghmour
2002-05-26 18:29 ` Larry McVoy
2002-05-26 21:45 ` Karim Yaghmour
2002-05-26 21:58 ` Wolfgang Denk
2002-05-26 22:12 ` Erwin Rol
2002-05-26 22:34 ` Robert Schwebel
2002-05-26 22:07 ` Mark Mielke
2002-05-26 22:18 ` Karim Yaghmour
2002-05-26 18:20 ` Roman Zippel
2002-05-26 15:58 ` Nicholas Knight
2002-05-27 2:42 ` Daniel Phillips
2002-05-25 22:58 ` Robert Schwebel
2002-05-26 0:48 ` Erik Andersen
2002-05-26 5:31 ` Robert Schwebel
2002-05-26 10:19 ` Erik Andersen
2002-05-25 6:08 ` Daniel Phillips
2002-05-25 4:48 ` Karim Yaghmour
2002-05-25 5:00 ` Larry McVoy
2002-05-25 9:02 ` Robert Schwebel
2002-05-25 17:34 ` Oliver Xymoron
2002-05-24 23:27 ` Linus Torvalds
2002-05-25 3:13 ` Karim Yaghmour
2002-05-25 3:25 ` Linus Torvalds
2002-05-25 3:46 ` Karim Yaghmour
2002-05-25 4:08 ` Linus Torvalds
2002-05-25 4:25 ` Larry McVoy
2002-05-25 4:27 ` Linus Torvalds
2002-05-25 5:53 ` Daniel Phillips
2002-05-25 4:52 ` Karim Yaghmour
2002-05-25 9:08 ` Robert Schwebel
2002-05-25 17:27 ` Linus Torvalds
2002-05-25 20:30 ` Daniel Phillips
2002-05-26 2:51 ` Alan Cox
2002-05-26 4:11 ` Daniel Phillips [this message]
2002-05-26 19:37 ` Alan Cox
2002-05-26 20:05 ` Daniel Phillips
2002-05-27 15:27 ` Pavel Machek
2002-05-25 22:33 ` Robert Schwebel
2002-05-26 0:07 ` Linus Torvalds
2002-05-25 20:34 ` Pierre Cloutier
2002-05-26 0:44 ` Linus Torvalds
2002-05-25 21:03 ` Pierre Cloutier
2002-05-26 0:39 ` Linus Torvalds
2002-05-26 3:12 ` Oliver Xymoron
2002-05-26 4:20 ` Linus Torvalds
2002-05-26 4:25 ` yodaiken
2002-05-26 13:50 ` Oliver Xymoron
2002-05-26 3:28 ` patent on O_ATOMICLOOKUP - Warning actual technical content yodaiken
2002-05-26 3:36 ` Karim Yaghmour
2002-05-26 4:00 ` Andrew Morton
2002-05-26 5:38 ` Karim Yaghmour
2002-05-26 1:21 ` patent on O_ATOMICLOOKUP [Re: [PATCH] loopable tmpfs (2.4.17)] Roman Zippel
2002-05-26 5:44 ` Daniel Phillips
2002-05-27 4:12 ` Calin A. Culianu
2002-05-25 9:05 ` Robert Schwebel
2002-05-25 8:59 ` Realtime Linux Situation Robert Schwebel
2002-05-24 21:57 ` patent on O_ATOMICLOOKUP [Re: [PATCH] loopable tmpfs (2.4.17)] Andreas Dilger
2002-05-24 22:37 ` Alan Cox
2002-05-24 23:09 ` Andreas Dilger
2002-05-27 17:36 ` Siemens powermanagment patent? [was Re: patent on O_ATOMICLOOKUP [Re: [PATCH] loopable tmpfs (2.4.17)]] Pavel Machek
2002-05-27 21:36 ` Alan Cox
2002-05-24 21:56 ` patent on O_ATOMICLOOKUP [Re: [PATCH] loopable tmpfs (2.4.17)] Alexander Viro
2002-05-24 22:46 ` Alan Cox
2002-05-24 22:53 ` Alexander Viro
2002-05-27 21:52 Adam J. Richter
2002-05-27 23:26 ` Alan Cox
2002-05-28 6:29 peter
2002-05-28 11:42 ` Alan Cox
2002-05-29 11:25 Robert Kaiser
2002-05-30 22:37 patent on O_ATOMICLOOKUP [Re: [PATCH] loopable tmpfs (2.4.17) ] Ed Vance
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=E17BpNE-0003qU-00@starship \
--to=phillips@bonn-fries.net \
--cc=alan@lxorguk.ukuu.org.uk \
--cc=linux-kernel@vger.kernel.org \
--cc=robert@schwebel.de \
--cc=torvalds@transmeta.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
all inboxes | Powered by JetHome®