It's interesting that you have IPSEC in the kernel ("IPSEC" or "FAST_IPSEC"?), and are using WAPBL. If you can afford the crashes, it would be interesting to see if: you can provoke lockups with "find / -type f > /dev/null", or perhaps "| xargs ls -l > /dev/null" if disabling WAPBL results in a stable system if removing IPSEC from the kennel results in a stable system My particular system having trouble has WAPBL, but no cgd. Unfortunately it's not handy for experimenting at the moment. My working hypothesis is that there's a bad memory leak in some case most people don't hit.
Description: PGP signature