blob: d0fae8104a484ec6dbad368fe36f3e105d48514e [file] [log] [blame]
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001#!/usr/bin/env python
maruelea586f32016-04-05 11:11:33 -07002# Copyright 2012 The LUCI Authors. All rights reserved.
maruelf1f5e2a2016-05-25 17:10:39 -07003# Use of this source code is governed under the Apache License, Version 2.0
4# that can be found in the LICENSE file.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00005
nodir55be77b2016-05-03 09:39:57 -07006"""Runs a command with optional isolated input/output.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00007
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +00008run_isolated takes cares of setting up a temporary environment, running a
9command, and tearing it down.
nodir55be77b2016-05-03 09:39:57 -070010
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +000011It handles downloading and uploading isolated files, mapping CIPD packages and
12reusing stateful named caches.
13
14The isolated files, CIPD packages and named caches are kept as a global LRU
15cache.
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -050016
Roberto Carrillo71ade6d2018-10-08 22:30:24 +000017Any ${EXECUTABLE_SUFFIX} on the command line or the environment variables passed
18with the --env option will be replaced with ".exe" string on Windows and "" on
19other platforms.
nodirbe642ff2016-06-09 15:51:51 -070020
Roberto Carrillo71ade6d2018-10-08 22:30:24 +000021Any ${ISOLATED_OUTDIR} on the command line or the environment variables passed
22with the --env option will be replaced by the location of a temporary directory
23upon execution of the command specified in the .isolated file. All content
24written to this directory will be uploaded upon termination and the .isolated
25file describing this directory will be printed to stdout.
bpastene447c1992016-06-20 15:21:47 -070026
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +000027Any ${SWARMING_BOT_FILE} on the command line or the environment variables passed
28with the --env option will be replaced by the value of the --bot-file parameter.
29This file is used by a swarming bot to communicate state of the host to tasks.
30It is written to by the swarming bot's on_before_task() hook in the swarming
31server's custom bot_config.py.
32
33See
34https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/doc/Magic-Values.md
35for all the variables.
36
37See
38https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/swarming_bot/config/bot_config.py
39for more information about bot_config.py.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000040"""
41
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +000042from __future__ import print_function
43
44__version__ = '1.0.1'
maruel@chromium.orgdedbf492013-09-12 20:42:11 +000045
aludwin7556e0c2016-10-26 08:46:10 -070046import argparse
maruel064c0a32016-04-05 11:47:15 -070047import base64
iannucci96fcccc2016-08-30 15:52:22 -070048import collections
vadimsh232f5a82017-01-20 19:23:44 -080049import contextlib
Ye Kuangfff1e502020-07-13 13:21:57 +000050import distutils
Sadaf Matinkhoo10743a62018-03-29 16:28:58 -040051import errno
aludwin7556e0c2016-10-26 08:46:10 -070052import json
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000053import logging
54import optparse
55import os
Takuto Ikuta5c59a842020-01-24 03:05:24 +000056import platform
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -040057import re
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000058import sys
59import tempfile
maruel064c0a32016-04-05 11:47:15 -070060import time
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000061
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000062from utils import tools
63tools.force_local_third_party()
vadimsh@chromium.orga4326472013-08-24 02:05:41 +000064
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000065# third_party/
66from depot_tools import fix_encoding
Takuto Ikuta6e2ff962019-10-29 12:35:27 +000067import six
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000068
69# pylint: disable=ungrouped-imports
70import auth
71import cipd
72import isolate_storage
73import isolateserver
74import local_caching
75from libs import luci_context
Vadim Shtayura6b555c12014-07-23 16:22:18 -070076from utils import file_path
maruel12e30012015-10-09 11:55:35 -070077from utils import fs
maruel064c0a32016-04-05 11:47:15 -070078from utils import large
Marc-Antoine Ruelf74cffe2015-07-15 15:21:34 -040079from utils import logging_utils
Ye Kuang2dd17442020-04-22 08:45:52 +000080from utils import net
Marc-Antoine Ruelcfb60852014-07-02 15:22:00 -040081from utils import on_error
Marc-Antoine Ruelc44f5722015-01-08 16:10:01 -050082from utils import subprocess42
maruel@chromium.orgdedbf492013-09-12 20:42:11 +000083
vadimsh@chromium.orga4326472013-08-24 02:05:41 +000084
maruele2f2cb82016-07-13 14:41:03 -070085# Magic variables that can be found in the isolate task command line.
86ISOLATED_OUTDIR_PARAMETER = '${ISOLATED_OUTDIR}'
87EXECUTABLE_SUFFIX_PARAMETER = '${EXECUTABLE_SUFFIX}'
88SWARMING_BOT_FILE_PARAMETER = '${SWARMING_BOT_FILE}'
89
90
csharp@chromium.orgff2a4662012-11-21 20:49:32 +000091# The name of the log file to use.
92RUN_ISOLATED_LOG_FILE = 'run_isolated.log'
93
maruele2f2cb82016-07-13 14:41:03 -070094
csharp@chromium.orge217f302012-11-22 16:51:53 +000095# The name of the log to use for the run_test_cases.py command
vadimsh@chromium.org8b9d56b2013-08-21 22:24:35 +000096RUN_TEST_CASES_LOG = 'run_test_cases.log'
csharp@chromium.orge217f302012-11-22 16:51:53 +000097
vadimsh@chromium.org87d63262013-04-04 19:34:21 +000098
maruele2f2cb82016-07-13 14:41:03 -070099# Use short names for temporary directories. This is driven by Windows, which
100# imposes a relatively short maximum path length of 260 characters, often
101# referred to as MAX_PATH. It is relatively easy to create files with longer
Marc-Antoine Ruel793bff32019-04-18 17:50:48 +0000102# path length. A use case is with recursive dependency trees like npm packages.
maruele2f2cb82016-07-13 14:41:03 -0700103#
104# It is recommended to start the script with a `root_dir` as short as
105# possible.
106# - ir stands for isolated_run
107# - io stands for isolated_out
108# - it stands for isolated_tmp
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000109# - ic stands for isolated_client
maruele2f2cb82016-07-13 14:41:03 -0700110ISOLATED_RUN_DIR = u'ir'
111ISOLATED_OUT_DIR = u'io'
112ISOLATED_TMP_DIR = u'it'
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000113ISOLATED_CLIENT_DIR = u'ic'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000114_CAS_CLIENT_DIR = u'cc'
maruele2f2cb82016-07-13 14:41:03 -0700115
Takuto Ikuta02edca22019-11-29 10:04:51 +0000116# TODO(tikuta): take these parameter from luci-config?
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +0000117# Update tag by `./client/update_go_clients.sh`.
Takuto Ikutac8c92e62020-04-01 07:07:29 +0000118# Or take revision from
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000119# https://ci.chromium.org/p/infra-internal/g/infra-packagers/console
Takuto Ikuta02edca22019-11-29 10:04:51 +0000120ISOLATED_PACKAGE = 'infra/tools/luci/isolated/${platform}'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000121_CAS_PACKAGE = 'infra/tools/luci/cas/${platform}'
Takuto Ikuta02714bd2020-10-09 06:19:59 +0000122_LUCI_GO_REVISION = 'git_revision:7939542400b9511d60e67501839275f66bac8d0a'
maruele2f2cb82016-07-13 14:41:03 -0700123
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400124# Keep synced with task_request.py
Lei Leife202df2019-06-11 17:33:34 +0000125CACHE_NAME_RE = re.compile(r'^[a-z0-9_]{1,4096}$')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400126
127
marueld928c862017-06-08 08:20:04 -0700128OUTLIVING_ZOMBIE_MSG = """\
129*** Swarming tried multiple times to delete the %s directory and failed ***
130*** Hard failing the task ***
131
132Swarming detected that your testing script ran an executable, which may have
133started a child executable, and the main script returned early, leaving the
134children executables playing around unguided.
135
136You don't want to leave children processes outliving the task on the Swarming
137bot, do you? The Swarming bot doesn't.
138
139How to fix?
140- For any process that starts children processes, make sure all children
141 processes terminated properly before each parent process exits. This is
142 especially important in very deep process trees.
143 - This must be done properly both in normal successful task and in case of
144 task failure. Cleanup is very important.
145- The Swarming bot sends a SIGTERM in case of timeout.
146 - You have %s seconds to comply after the signal was sent to the process
147 before the process is forcibly killed.
148- To achieve not leaking children processes in case of signals on timeout, you
149 MUST handle signals in each executable / python script and propagate them to
150 children processes.
151 - When your test script (python or binary) receives a signal like SIGTERM or
152 CTRL_BREAK_EVENT on Windows), send it to all children processes and wait for
153 them to terminate before quitting.
154
155See
Marc-Antoine Ruelc7243592018-05-24 17:04:04 -0400156https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/doc/Bot.md#Graceful-termination_aka-the-SIGTERM-and-SIGKILL-dance
marueld928c862017-06-08 08:20:04 -0700157for more information.
158
159*** May the SIGKILL force be with you ***
160"""
161
162
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000163# Currently hardcoded. Eventually could be exposed as a flag once there's value.
164# 3 weeks
165MAX_AGE_SECS = 21*24*60*60
166
Ye Kuang72e6fe82020-08-05 06:30:04 +0000167# TODO(1099655): Enable this once all prod issues are gone.
168_USE_GO_ISOLATED_TO_UPLOAD = False
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000169
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500170TaskData = collections.namedtuple(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000171 'TaskData',
172 [
Takuto Ikuta9a319502019-11-26 07:40:14 +0000173 # List of strings; the command line to use, independent of what was
174 # specified in the isolated file.
175 'command',
176 # Relative directory to start command into.
177 'relative_cwd',
178 # List of strings; the arguments to add to the command specified in the
179 # isolated file.
180 'extra_args',
181 # Hash of the .isolated file that must be retrieved to recreate the tree
182 # of files to run the target executable. The command specified in the
183 # .isolated is executed. Mutually exclusive with command argument.
184 'isolated_hash',
185 # isolateserver.Storage instance to retrieve remote objects. This object
186 # has a reference to an isolateserver.StorageApi, which does the actual
187 # I/O.
188 'storage',
189 # isolateserver.LocalCache instance to keep from retrieving the same
190 # objects constantly by caching the objects retrieved. Can be on-disk or
191 # in-memory.
192 'isolate_cache',
Junji Watanabe54925c32020-09-08 00:56:18 +0000193 # Digest of the input root on RBE-CAS.
194 'cas_digest',
195 # Full CAS instance name.
196 'cas_instance',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000197 # List of paths relative to root_dir to put into the output isolated
198 # bundle upon task completion (see link_outputs_to_outdir).
199 'outputs',
200 # Function (run_dir) => context manager that installs named caches into
201 # |run_dir|.
202 'install_named_caches',
203 # If True, the temporary directory will be deliberately leaked for later
204 # examination.
205 'leak_temp_dir',
206 # Path to the directory to use to create the temporary directory. If not
207 # specified, a random temporary directory is created.
208 'root_dir',
209 # Kills the process if it lasts more than this amount of seconds.
210 'hard_timeout',
211 # Number of seconds to wait between SIGTERM and SIGKILL.
212 'grace_period',
213 # Path to a file with bot state, used in place of ${SWARMING_BOT_FILE}
214 # task command line argument.
215 'bot_file',
216 # Logical account to switch LUCI_CONTEXT into.
217 'switch_to_account',
218 # Context manager dir => CipdInfo, see install_client_and_packages.
219 'install_packages_fn',
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000220 # Use go isolated client.
221 'use_go_isolated',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000222 # Cache directory for go `isolated` client.
Takuto Ikuta057c5342019-12-03 04:05:05 +0000223 'go_cache_dir',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000224 # Parameters passed to go `isolated` client.
Takuto Ikuta879788c2020-01-10 08:00:26 +0000225 'go_cache_policies',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000226 # Cache directory for `cas` client.
227 'cas_cache_dir',
228 # Parameters passed to `cas` client.
229 'cas_cache_policies',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000230 # Environment variables to set.
231 'env',
232 # Environment variables to mutate with relative directories.
233 # Example: {"ENV_KEY": ['relative', 'paths', 'to', 'prepend']}
234 'env_prefix',
235 # Lowers the task process priority.
236 'lower_priority',
237 # subprocess42.Containment instance. Can be None.
238 'containment',
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000239 ])
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500240
241
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500242def _to_str(s):
243 """Downgrades a unicode instance to str. Pass str through as-is."""
244 if isinstance(s, str):
245 return s
246 # This is technically incorrect, especially on Windows. In theory
247 # sys.getfilesystemencoding() should be used to use the right 'ANSI code
248 # page' on Windows, but that causes other problems, as the character set
249 # is very limited.
250 return s.encode('utf-8')
251
252
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -0500253def _to_unicode(s):
254 """Upgrades a str instance to unicode. Pass unicode through as-is."""
Takuto Ikuta95459dd2019-10-29 12:39:47 +0000255 if isinstance(s, six.text_type) or s is None:
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -0500256 return s
257 return s.decode('utf-8')
258
259
maruel03e11842016-07-14 10:50:16 -0700260def make_temp_dir(prefix, root_dir):
261 """Returns a new unique temporary directory."""
Takuto Ikuta6e2ff962019-10-29 12:35:27 +0000262 return six.text_type(tempfile.mkdtemp(prefix=prefix, dir=root_dir))
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +0000263
264
vadimsh9c54b2c2017-07-25 14:08:29 -0700265@contextlib.contextmanager
266def set_luci_context_account(account, tmp_dir):
267 """Sets LUCI_CONTEXT account to be used by the task.
268
269 If 'account' is None or '', does nothing at all. This happens when
270 run_isolated.py is called without '--switch-to-account' flag. In this case,
271 if run_isolated.py is running in some LUCI_CONTEXT environment, the task will
Takuto Ikuta33e2ff32019-09-30 12:44:03 +0000272 just inherit whatever account is already set. This may happen if users invoke
vadimsh9c54b2c2017-07-25 14:08:29 -0700273 run_isolated.py explicitly from their code.
274
275 If the requested account is not defined in the context, switches to
276 non-authenticated access. This happens for Swarming tasks that don't use
277 'task' service accounts.
278
279 If not using LUCI_CONTEXT-based auth, does nothing.
280 If already running as requested account, does nothing.
281 """
282 if not account:
283 # Not actually switching.
284 yield
285 return
286
287 local_auth = luci_context.read('local_auth')
288 if not local_auth:
289 # Not using LUCI_CONTEXT auth at all.
290 yield
291 return
292
293 # See LUCI_CONTEXT.md for the format of 'local_auth'.
294 if local_auth.get('default_account_id') == account:
295 # Already set, no need to switch.
296 yield
297 return
298
299 available = {a['id'] for a in local_auth.get('accounts') or []}
300 if account in available:
301 logging.info('Switching default LUCI_CONTEXT account to %r', account)
302 local_auth['default_account_id'] = account
303 else:
304 logging.warning(
305 'Requested LUCI_CONTEXT account %r is not available (have only %r), '
306 'disabling authentication', account, sorted(available))
307 local_auth.pop('default_account_id', None)
308
309 with luci_context.write(_tmpdir=tmp_dir, local_auth=local_auth):
310 yield
311
312
nodir90bc8dc2016-06-15 13:35:21 -0700313def process_command(command, out_dir, bot_file):
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000314 """Replaces parameters in a command line.
nodirbe642ff2016-06-09 15:51:51 -0700315
316 Raises:
317 ValueError if a parameter is requested in |command| but its value is not
318 provided.
319 """
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000320 return [replace_parameters(arg, out_dir, bot_file) for arg in command]
321
322
323def replace_parameters(arg, out_dir, bot_file):
324 """Replaces parameter tokens with appropriate values in a string.
325
326 Raises:
327 ValueError if a parameter is requested in |arg| but its value is not
328 provided.
329 """
330 arg = arg.replace(EXECUTABLE_SUFFIX_PARAMETER, cipd.EXECUTABLE_SUFFIX)
331 replace_slash = False
332 if ISOLATED_OUTDIR_PARAMETER in arg:
333 if not out_dir:
334 raise ValueError(
335 'output directory is requested in command or env var, but not '
336 'provided; please specify one')
337 arg = arg.replace(ISOLATED_OUTDIR_PARAMETER, out_dir)
338 replace_slash = True
339 if SWARMING_BOT_FILE_PARAMETER in arg:
340 if bot_file:
341 arg = arg.replace(SWARMING_BOT_FILE_PARAMETER, bot_file)
nodirbe642ff2016-06-09 15:51:51 -0700342 replace_slash = True
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000343 else:
344 logging.warning('SWARMING_BOT_FILE_PARAMETER found in command or env '
345 'var, but no bot_file specified. Leaving parameter '
346 'unchanged.')
347 if replace_slash:
348 # Replace slashes only if parameters are present
349 # because of arguments like '${ISOLATED_OUTDIR}/foo/bar'
350 arg = arg.replace('/', os.sep)
351 return arg
maruela9cfd6f2015-09-15 11:03:15 -0700352
353
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000354
355def get_command_env(tmp_dir, cipd_info, run_dir, env, env_prefixes, out_dir,
356 bot_file):
vadimsh232f5a82017-01-20 19:23:44 -0800357 """Returns full OS environment to run a command in.
358
Robert Iannuccibf5f84c2017-11-22 12:56:50 -0800359 Sets up TEMP, puts directory with cipd binary in front of PATH, exposes
360 CIPD_CACHE_DIR env var, and installs all env_prefixes.
vadimsh232f5a82017-01-20 19:23:44 -0800361
362 Args:
363 tmp_dir: temp directory.
364 cipd_info: CipdInfo object is cipd client is used, None if not.
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500365 run_dir: The root directory the isolated tree is mapped in.
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500366 env: environment variables to use
Robert Iannuccibf5f84c2017-11-22 12:56:50 -0800367 env_prefixes: {"ENV_KEY": ['cwd', 'relative', 'paths', 'to', 'prepend']}
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000368 out_dir: Isolated output directory. Required to be != None if any of the
369 env vars contain ISOLATED_OUTDIR_PARAMETER.
370 bot_file: Required to be != None if any of the env vars contain
371 SWARMING_BOT_FILE_PARAMETER.
vadimsh232f5a82017-01-20 19:23:44 -0800372 """
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500373 out = os.environ.copy()
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +0000374 for k, v in env.items():
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500375 if not v:
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500376 out.pop(k, None)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500377 else:
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000378 out[k] = replace_parameters(v, out_dir, bot_file)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500379
380 if cipd_info:
381 bin_dir = os.path.dirname(cipd_info.client.binary_path)
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500382 out['PATH'] = '%s%s%s' % (_to_str(bin_dir), os.pathsep, out['PATH'])
383 out['CIPD_CACHE_DIR'] = _to_str(cipd_info.cache_dir)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500384
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +0000385 for key, paths in env_prefixes.items():
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500386 assert isinstance(paths, list), paths
387 paths = [os.path.normpath(os.path.join(run_dir, p)) for p in paths]
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500388 cur = out.get(key)
389 if cur:
390 paths.append(cur)
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500391 out[key] = _to_str(os.path.pathsep.join(paths))
vadimsh232f5a82017-01-20 19:23:44 -0800392
Marc-Antoine Ruelefb30b12018-07-25 18:34:36 +0000393 tmp_dir = _to_str(tmp_dir)
394 # pylint: disable=line-too-long
395 # * python respects $TMPDIR, $TEMP, and $TMP in this order, regardless of
396 # platform. So $TMPDIR must be set on all platforms.
397 # https://github.com/python/cpython/blob/2.7/Lib/tempfile.py#L155
398 out['TMPDIR'] = tmp_dir
399 if sys.platform == 'win32':
400 # * chromium's base utils uses GetTempPath().
401 # https://cs.chromium.org/chromium/src/base/files/file_util_win.cc?q=GetTempPath
402 # * Go uses GetTempPath().
403 # * GetTempDir() uses %TMP%, then %TEMP%, then other stuff. So %TMP% must be
404 # set.
405 # https://docs.microsoft.com/en-us/windows/desktop/api/fileapi/nf-fileapi-gettemppathw
406 out['TMP'] = tmp_dir
407 # https://blogs.msdn.microsoft.com/oldnewthing/20150417-00/?p=44213
408 out['TEMP'] = tmp_dir
409 elif sys.platform == 'darwin':
410 # * Chromium uses an hack on macOS before calling into
411 # NSTemporaryDirectory().
412 # https://cs.chromium.org/chromium/src/base/files/file_util_mac.mm?q=GetTempDir
413 # https://developer.apple.com/documentation/foundation/1409211-nstemporarydirectory
414 out['MAC_CHROMIUM_TMPDIR'] = tmp_dir
415 else:
416 # TMPDIR is specified as the POSIX standard envvar for the temp directory.
417 # http://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap08.html
418 # * mktemp on linux respects $TMPDIR.
419 # * Chromium respects $TMPDIR on linux.
420 # https://cs.chromium.org/chromium/src/base/files/file_util_posix.cc?q=GetTempDir
421 # * Go uses $TMPDIR.
422 # https://go.googlesource.com/go/+/go1.10.3/src/os/file_unix.go#307
423 pass
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500424 return out
vadimsh232f5a82017-01-20 19:23:44 -0800425
426
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000427def run_command(
428 command, cwd, env, hard_timeout, grace_period, lower_priority, containment):
maruel6be7f9e2015-10-01 12:25:30 -0700429 """Runs the command.
430
431 Returns:
432 tuple(process exit code, bool if had a hard timeout)
433 """
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000434 logging.info(
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000435 'run_command(%s, %s, %s, %s, %s, %s)',
436 command, cwd, hard_timeout, grace_period, lower_priority, containment)
marueleb5fbee2015-09-17 13:01:36 -0700437
maruel6be7f9e2015-10-01 12:25:30 -0700438 exit_code = None
439 had_hard_timeout = False
maruela9cfd6f2015-09-15 11:03:15 -0700440 with tools.Profiler('RunTest'):
maruel6be7f9e2015-10-01 12:25:30 -0700441 proc = None
442 had_signal = []
maruela9cfd6f2015-09-15 11:03:15 -0700443 try:
maruel6be7f9e2015-10-01 12:25:30 -0700444 # TODO(maruel): This code is imperfect. It doesn't handle well signals
445 # during the download phase and there's short windows were things can go
446 # wrong.
447 def handler(signum, _frame):
448 if proc and not had_signal:
449 logging.info('Received signal %d', signum)
450 had_signal.append(True)
maruel556d9052015-10-05 11:12:44 -0700451 raise subprocess42.TimeoutExpired(command, None)
maruel6be7f9e2015-10-01 12:25:30 -0700452
Marc-Antoine Ruel30b80fe2019-02-08 13:51:31 +0000453 proc = subprocess42.Popen(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000454 command, cwd=cwd, env=env, detached=True, close_fds=True,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000455 lower_priority=lower_priority, containment=containment)
maruel6be7f9e2015-10-01 12:25:30 -0700456 with subprocess42.set_signal_handler(subprocess42.STOP_SIGNALS, handler):
457 try:
John Budorickc398f092019-06-10 22:49:44 +0000458 exit_code = proc.wait(hard_timeout or None)
maruel6be7f9e2015-10-01 12:25:30 -0700459 except subprocess42.TimeoutExpired:
460 if not had_signal:
461 logging.warning('Hard timeout')
462 had_hard_timeout = True
463 logging.warning('Sending SIGTERM')
464 proc.terminate()
465
Takuto Ikuta684f7912020-09-29 07:49:49 +0000466 kill_sent = False
maruel6be7f9e2015-10-01 12:25:30 -0700467 # Ignore signals in grace period. Forcibly give the grace period to the
468 # child process.
469 if exit_code is None:
470 ignore = lambda *_: None
471 with subprocess42.set_signal_handler(subprocess42.STOP_SIGNALS, ignore):
472 try:
473 exit_code = proc.wait(grace_period or None)
474 except subprocess42.TimeoutExpired:
475 # Now kill for real. The user can distinguish between the
476 # following states:
477 # - signal but process exited within grace period,
478 # hard_timed_out will be set but the process exit code will be
479 # script provided.
480 # - processed exited late, exit code will be -9 on posix.
481 logging.warning('Grace exhausted; sending SIGKILL')
482 proc.kill()
Takuto Ikuta684f7912020-09-29 07:49:49 +0000483 kill_sent = True
martiniss5c8043e2017-08-01 17:09:43 -0700484 logging.info('Waiting for process exit')
maruel6be7f9e2015-10-01 12:25:30 -0700485 exit_code = proc.wait()
Takuto Ikuta684f7912020-09-29 07:49:49 +0000486
487 # the process group / job object may be dangling so if we didn't kill
488 # it already, give it a poke now.
489 if not kill_sent:
490 proc.kill()
Takuto Ikutaeccf0862020-03-19 03:05:55 +0000491 except OSError as e:
maruela9cfd6f2015-09-15 11:03:15 -0700492 # This is not considered to be an internal error. The executable simply
493 # does not exit.
maruela72f46e2016-02-24 11:05:45 -0800494 sys.stderr.write(
tikuta2d678212019-09-23 23:12:08 +0000495 '<The executable does not exist, a dependent library is missing or '
496 'the command line is too long>\n'
497 '<Check for missing .so/.dll in the .isolate or GN file or length of '
498 'command line args>\n'
Takuto Ikutaeccf0862020-03-19 03:05:55 +0000499 '<Command: %s, Exception: %s>\n' % (command, e))
maruela72f46e2016-02-24 11:05:45 -0800500 if os.environ.get('SWARMING_TASK_ID'):
501 # Give an additional hint when running as a swarming task.
502 sys.stderr.write(
503 '<See the task\'s page for commands to help diagnose this issue '
504 'by reproducing the task locally>\n')
maruela9cfd6f2015-09-15 11:03:15 -0700505 exit_code = 1
506 logging.info(
507 'Command finished with exit code %d (%s)',
508 exit_code, hex(0xffffffff & exit_code))
maruel6be7f9e2015-10-01 12:25:30 -0700509 return exit_code, had_hard_timeout
maruela9cfd6f2015-09-15 11:03:15 -0700510
511
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000512def _run_go_cmd_and_wait(cmd):
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000513 """
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000514 Runs an external Go command, `isolated` or `cas`, and wait for its completion.
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000515
516 While this is a generic function to launch a subprocess, it has logic that
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000517 is specific to Go `isolated` and `cas` for waiting and logging.
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000518
519 Returns:
520 The subprocess object
521 """
Ye Kuang3c40e9f2020-07-28 13:15:25 +0000522 cmd_str = ' '.join(cmd)
Ye Kuangc1d800f2020-07-28 10:14:55 +0000523 try:
524 proc = subprocess42.Popen(cmd)
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000525
Ye Kuangc1d800f2020-07-28 10:14:55 +0000526 exceeded_max_timeout = True
527 check_period_sec = 30
528 max_checks = 100
529 # max timeout = max_checks * check_period_sec = 50 minutes
530 for i in range(max_checks):
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000531 # This is to prevent I/O timeout error during setup.
Ye Kuangc1d800f2020-07-28 10:14:55 +0000532 try:
533 retcode = proc.wait(check_period_sec)
534 if retcode != 0:
535 raise ValueError("retcode is not 0: %s (cmd=%s)" % (retcode, cmd_str))
536 exceeded_max_timeout = False
537 break
538 except subprocess42.TimeoutExpired:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000539 print('still running (after %d seconds)' % ((i + 1) * check_period_sec))
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000540
Ye Kuangc1d800f2020-07-28 10:14:55 +0000541 if exceeded_max_timeout:
542 proc.terminate()
543 try:
544 proc.wait(check_period_sec)
545 except subprocess42.TimeoutExpired:
546 logging.exception(
547 "failed to terminate? timeout happened after %d seconds",
548 check_period_sec)
549 proc.kill()
550 proc.wait()
551 # Raise unconditionally, because |proc| was forcefully terminated.
552 raise ValueError("timedout after %d seconds (cmd=%s)" %
553 (check_period_sec * max_checks, cmd_str))
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000554
Ye Kuangc1d800f2020-07-28 10:14:55 +0000555 return proc
556 except Exception:
557 logging.exception('Failed to run Go cmd %s', cmd_str)
558 raise
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000559
560
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000561def _fetch_and_map_with_cas(cas_client, digest, instance, output_dir, cache_dir,
562 policies):
563 """
564 Fetches a CAS tree using cas client, create the tree and returns download
565 stats.
566 """
567
Takuto Ikuta34a86c52020-10-13 05:30:57 +0000568 # TODO(crbug.com/chrome-operations/49):
569 # remove this after isolate to RBE-CAS migration.
570 _CAS_EMPTY_DIR_DIGEST = (
571 'e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855/0')
572 if digest == _CAS_EMPTY_DIR_DIGEST:
573 return {
574 'duration': 0.0,
575 'items_cold': '',
576 'items_hot': '',
577 }
578
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000579 start = time.time()
580 result_json_handle, result_json_path = tempfile.mkstemp(
581 prefix=u'fetch-and-map-result-', suffix=u'.json')
582 os.close(result_json_handle)
583 try:
584 cmd = [
585 cas_client,
586 'download',
587 '-digest',
588 digest,
589 '-cas-instance',
590 instance,
591 # flags for cache.
592 '-cache-dir',
593 cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000594 '-cache-max-size',
595 str(policies.max_cache_size),
596 '-cache-min-free-space',
597 str(policies.min_free_space),
598 # flags for output.
599 '-dir',
600 output_dir,
601 '-dump-stats-json',
602 result_json_path,
603 ]
604 _run_go_cmd_and_wait(cmd)
605
606 with open(result_json_path) as json_file:
607 result_json = json.load(json_file)
608
609 return {
610 'duration': time.time() - start,
611 'items_cold': result_json['items_cold'],
612 'items_hot': result_json['items_hot'],
613 }
614 finally:
615 fs.remove(result_json_path)
616
617
618def _fetch_and_map_with_go_isolated(isolated_hash, storage, outdir,
619 go_cache_dir, policies, isolated_client):
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000620 """
621 Fetches an isolated tree using go client, create the tree and returns
622 (bundle, stats).
623 """
624 start = time.time()
625 server_ref = storage.server_ref
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000626 result_json_handle, result_json_path = tempfile.mkstemp(
627 prefix=u'fetch-and-map-result-', suffix=u'.json')
628 os.close(result_json_handle)
629 try:
Ye Kuanga98764c2020-04-09 03:17:37 +0000630 cmd = [
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000631 isolated_client,
632 'download',
633 '-isolate-server',
634 server_ref.url,
635 '-namespace',
636 server_ref.namespace,
637 '-isolated',
638 isolated_hash,
639
640 # flags for cache
641 '-cache-dir',
Takuto Ikuta057c5342019-12-03 04:05:05 +0000642 go_cache_dir,
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000643 '-cache-max-items',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000644 str(policies.max_items),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000645 '-cache-max-size',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000646 str(policies.max_cache_size),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000647 '-cache-min-free-space',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000648 str(policies.min_free_space),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000649
650 # flags for output
651 '-output-dir',
652 outdir,
653 '-fetch-and-map-result-json',
654 result_json_path,
Ye Kuanga98764c2020-04-09 03:17:37 +0000655 ]
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000656 _run_go_cmd_and_wait(cmd)
Takuto Ikuta3153e3b2020-02-18 06:11:47 +0000657
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000658 with open(result_json_path) as json_file:
659 result_json = json.load(json_file)
660
661 isolated = result_json['isolated']
662 bundle = isolateserver.IsolatedBundle(filter_cb=None)
663 # Only following properties are used in caller.
664 bundle.command = isolated.get('command')
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000665 bundle.relative_cwd = isolated.get('relative_cwd')
666
667 return bundle, {
668 'duration': time.time() - start,
669 'items_cold': result_json['items_cold'],
670 'items_hot': result_json['items_hot'],
671 }
672 finally:
673 fs.remove(result_json_path)
674
675
676# TODO(crbug.com/932396): remove this function.
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000677def fetch_and_map(isolated_hash, storage, cache, outdir):
maruel4409e302016-07-19 14:25:51 -0700678 """Fetches an isolated tree, create the tree and returns (bundle, stats)."""
nodir6f801882016-04-29 14:41:50 -0700679 start = time.time()
680 bundle = isolateserver.fetch_isolated(
681 isolated_hash=isolated_hash,
682 storage=storage,
683 cache=cache,
maruel4409e302016-07-19 14:25:51 -0700684 outdir=outdir,
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000685 use_symlinks=False)
Takuto Ikuta2b9640e2019-06-19 00:53:23 +0000686 hot = (collections.Counter(cache.used) -
687 collections.Counter(cache.added)).elements()
nodir6f801882016-04-29 14:41:50 -0700688 return bundle, {
Takuto Ikuta630f99d2020-07-02 12:59:35 +0000689 'duration': time.time() - start,
690 'items_cold': base64.b64encode(large.pack(sorted(cache.added))).decode(),
691 'items_hot': base64.b64encode(large.pack(sorted(hot))).decode(),
nodir6f801882016-04-29 14:41:50 -0700692 }
693
694
aludwin0a8e17d2016-10-27 15:57:39 -0700695def link_outputs_to_outdir(run_dir, out_dir, outputs):
696 """Links any named outputs to out_dir so they can be uploaded.
697
698 Raises an error if the file already exists in that directory.
699 """
700 if not outputs:
701 return
702 isolateserver.create_directories(out_dir, outputs)
703 for o in outputs:
Sadaf Matinkhoo10743a62018-03-29 16:28:58 -0400704 copy_recursively(os.path.join(run_dir, o), os.path.join(out_dir, o))
705
706
707def copy_recursively(src, dst):
708 """Efficiently copies a file or directory from src_dir to dst_dir.
709
710 `item` may be a file, directory, or a symlink to a file or directory.
711 All symlinks are replaced with their targets, so the resulting
712 directory structure in dst_dir will never have any symlinks.
713
714 To increase speed, copy_recursively hardlinks individual files into the
715 (newly created) directory structure if possible, unlike Python's
716 shutil.copytree().
717 """
718 orig_src = src
719 try:
720 # Replace symlinks with their final target.
721 while fs.islink(src):
722 res = fs.readlink(src)
723 src = os.path.join(os.path.dirname(src), res)
724 # TODO(sadafm): Explicitly handle cyclic symlinks.
725
726 # Note that fs.isfile (which is a wrapper around os.path.isfile) throws
727 # an exception if src does not exist. A warning will be logged in that case.
728 if fs.isfile(src):
729 file_path.link_file(dst, src, file_path.HARDLINK_WITH_FALLBACK)
730 return
731
732 if not fs.exists(dst):
733 os.makedirs(dst)
734
735 for child in fs.listdir(src):
736 copy_recursively(os.path.join(src, child), os.path.join(dst, child))
737
738 except OSError as e:
739 if e.errno == errno.ENOENT:
740 logging.warning('Path %s does not exist or %s is a broken symlink',
741 src, orig_src)
742 else:
743 logging.info("Couldn't collect output file %s: %s", src, e)
aludwin0a8e17d2016-10-27 15:57:39 -0700744
745
Ye Kuangfb0bad62020-07-28 08:07:25 +0000746def _upload_with_py(storage, out_dir):
747
748 def process_stats(f_st):
749 st = sorted(i.size for i in f_st)
750 return base64.b64encode(large.pack(st)).decode()
751
752 try:
753 results, f_cold, f_hot = isolateserver.archive_files_to_storage(
754 storage, [out_dir], None, verify_push=True)
755
756 isolated = list(results.values())[0]
757 cold = process_stats(f_cold)
758 hot = process_stats(f_hot)
759 return isolated, cold, hot
760
761 except isolateserver.Aborted:
762 # This happens when a signal SIGTERM was received while uploading data.
763 # There is 2 causes:
764 # - The task was too slow and was about to be killed anyway due to
765 # exceeding the hard timeout.
766 # - The amount of data uploaded back is very large and took too much
767 # time to archive.
768 sys.stderr.write('Received SIGTERM while uploading')
769 # Re-raise, so it will be treated as an internal failure.
770 raise
771
772
773def _upload_with_go(storage, outdir, isolated_client):
774 """
775 Uploads results back using the Go `isolated` CLI.
776 """
777 server_ref = storage.server_ref
778 isolated_handle, isolated_path = tempfile.mkstemp(
779 prefix=u'isolated-hash-', suffix=u'.txt')
780 stats_json_handle, stats_json_path = tempfile.mkstemp(
781 prefix=u'dump-stats-', suffix=u'.json')
782 os.close(isolated_handle)
783 os.close(stats_json_handle)
784 try:
785 cmd = [
786 isolated_client,
787 'archive',
788 '-isolate-server',
789 server_ref.url,
790 '-namespace',
791 server_ref.namespace,
792 '-dirs',
793 # Format: <working directory>:<relative path to dir>
794 outdir + ':',
795
796 # output
797 '-dump-hash',
798 isolated_path,
799 '-dump-stats-json',
800 stats_json_path,
Ye Kuangbc4e8402020-07-29 09:54:30 +0000801 '-quiet',
Ye Kuangfb0bad62020-07-28 08:07:25 +0000802 ]
Ye Kuang0023dc52020-08-04 05:28:41 +0000803 # Will do exponential backoff, e.g. 10, 20, 40...
804 # This mitigates https://crbug.com/1094369, where there is a data race on
805 # the uploaded files.
806 backoff = 10
Takuto Ikutae0bfec72020-08-28 02:52:52 +0000807 started = time.time()
Ye Kuang0023dc52020-08-04 05:28:41 +0000808 while True:
809 try:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000810 _run_go_cmd_and_wait(cmd)
Ye Kuang0023dc52020-08-04 05:28:41 +0000811 break
812 except Exception:
Takuto Ikutae0bfec72020-08-28 02:52:52 +0000813 if time.time() > started + 60 * 2:
814 # This is to not wait task having leaked process long time.
Ye Kuang0023dc52020-08-04 05:28:41 +0000815 raise
816
817 on_error.report('error before %d second backoff' % backoff)
818 logging.exception(
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000819 '_run_go_cmd_and_wait() failed, will retry after %d seconds',
Ye Kuang0023dc52020-08-04 05:28:41 +0000820 backoff)
821 time.sleep(backoff)
822 backoff *= 2
Ye Kuangfb0bad62020-07-28 08:07:25 +0000823
824 with open(isolated_path) as isol_file:
825 isolated = isol_file.read()
826 with open(stats_json_path) as json_file:
827 stats_json = json.load(json_file)
828
829 return isolated, stats_json['items_cold'], stats_json['items_hot']
830 finally:
831 fs.remove(isolated_path)
832 fs.remove(stats_json_path)
833
834
Ye Kuangbc4e8402020-07-29 09:54:30 +0000835def upload_out_dir(storage, out_dir, go_isolated_client):
836 """Uploads the results in |out_dir| back, if there is any.
maruela9cfd6f2015-09-15 11:03:15 -0700837
838 Returns:
Ye Kuangbc4e8402020-07-29 09:54:30 +0000839 tuple(outputs_ref, stats)
maruel064c0a32016-04-05 11:47:15 -0700840 - outputs_ref: a dict referring to the results archived back to the isolated
841 server, if applicable.
nodir6f801882016-04-29 14:41:50 -0700842 - stats: uploading stats.
maruela9cfd6f2015-09-15 11:03:15 -0700843 """
maruela9cfd6f2015-09-15 11:03:15 -0700844 # Upload out_dir and generate a .isolated file out of this directory. It is
845 # only done if files were written in the directory.
846 outputs_ref = None
Ye Kuangfb0bad62020-07-28 08:07:25 +0000847 cold = ''
848 hot = ''
nodir6f801882016-04-29 14:41:50 -0700849 start = time.time()
850
maruel12e30012015-10-09 11:55:35 -0700851 if fs.isdir(out_dir) and fs.listdir(out_dir):
maruela9cfd6f2015-09-15 11:03:15 -0700852 with tools.Profiler('ArchiveOutput'):
Ye Kuangfb0bad62020-07-28 08:07:25 +0000853 isolated = None
Ye Kuang72e6fe82020-08-05 06:30:04 +0000854 if _USE_GO_ISOLATED_TO_UPLOAD and go_isolated_client is not None:
Ye Kuangfb0bad62020-07-28 08:07:25 +0000855 isolated, cold, hot = _upload_with_go(storage, out_dir,
856 go_isolated_client)
Ye Kuang72e6fe82020-08-05 06:30:04 +0000857 else:
858 isolated, cold, hot = _upload_with_py(storage, out_dir)
Ye Kuangfb0bad62020-07-28 08:07:25 +0000859 outputs_ref = {
860 'isolated': isolated,
861 'isolatedserver': storage.server_ref.url,
862 'namespace': storage.server_ref.namespace,
863 }
nodir6f801882016-04-29 14:41:50 -0700864
nodir6f801882016-04-29 14:41:50 -0700865 stats = {
Takuto Ikuta630f99d2020-07-02 12:59:35 +0000866 'duration': time.time() - start,
Ye Kuangfb0bad62020-07-28 08:07:25 +0000867 'items_cold': cold,
868 'items_hot': hot,
nodir6f801882016-04-29 14:41:50 -0700869 }
Ye Kuangbc4e8402020-07-29 09:54:30 +0000870 return outputs_ref, stats
maruela9cfd6f2015-09-15 11:03:15 -0700871
872
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000873def upload_outdir_with_cas(cas_client, cas_instance, outdir):
874 """Uploads the results in |outdir|, if there is any.
875
876 Returns:
877 tuple(root_digest, stats)
878 - root_digest: a digest of the output directory.
879 - stats: uploading stats.
880 """
881 digest_file_handle, digest_path = tempfile.mkstemp(
882 prefix=u'cas-digest', suffix=u'.txt')
883 os.close(digest_file_handle)
884 stats_json_handle, stats_json_path = tempfile.mkstemp(
885 prefix=u'upload-stats', suffix=u'.json')
886 os.close(stats_json_handle)
887
888 try:
889 cmd = [
890 cas_client,
891 'archive',
892 '-cas-instance',
893 cas_instance,
894 '-paths',
895 # Format: <working directory>:<relative path to dir>
896 outdir + ':',
897 # output
898 '-dump-digest',
899 digest_path,
900 '-dump-stats-json',
901 stats_json_path,
902 ]
903
904 start = time.time()
905
906 _run_go_cmd_and_wait(cmd)
907
908 with open(digest_path) as digest_file:
909 digest = digest_file.read()
Junji Watanabec208b302020-09-25 09:18:27 +0000910 h, s = digest.split('/')
911 cas_output_root = {
912 'cas_instance': cas_instance,
913 'digest': {
914 'hash': h,
915 'size_bytes': int(s)
916 }
917 }
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000918 with open(stats_json_path) as stats_file:
919 stats = json.load(stats_file)
920
921 stats['duration'] = time.time() - start
922
Junji Watanabec208b302020-09-25 09:18:27 +0000923 return cas_output_root, stats
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000924 finally:
925 fs.remove(digest_path)
926 fs.remove(stats_json_path)
927
928
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500929def map_and_run(data, constant_run_path):
nodir55be77b2016-05-03 09:39:57 -0700930 """Runs a command with optional isolated input/output.
931
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500932 Arguments:
933 - data: TaskData instance.
934 - constant_run_path: TODO
nodir55be77b2016-05-03 09:39:57 -0700935
936 Returns metadata about the result.
937 """
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000938
939 if data.isolate_cache:
940 download_stats = {
941 #'duration': 0.,
942 'initial_number_items': len(data.isolate_cache),
943 'initial_size': data.isolate_cache.total_size,
944 #'items_cold': '<large.pack()>',
945 #'items_hot': '<large.pack()>',
946 }
947 else:
948 # TODO(tikuta): take stats from state.json in this case too.
949 download_stats = {}
950
maruela9cfd6f2015-09-15 11:03:15 -0700951 result = {
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000952 'duration': None,
953 'exit_code': None,
954 'had_hard_timeout': False,
955 'internal_failure': 'run_isolated did not complete properly',
956 'stats': {
957 #'cipd': {
958 # 'duration': 0.,
959 # 'get_client_duration': 0.,
960 #},
961 'isolated': {
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000962 'download': download_stats,
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000963 #'upload': {
964 # 'duration': 0.,
965 # 'items_cold': '<large.pack()>',
966 # 'items_hot': '<large.pack()>',
967 #},
968 },
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000969 },
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000970 #'cipd_pins': {
971 # 'packages': [
972 # {'package_name': ..., 'version': ..., 'path': ...},
973 # ...
974 # ],
975 # 'client_package': {'package_name': ..., 'version': ...},
976 #},
977 'outputs_ref': None,
Junji Watanabe54925c32020-09-08 00:56:18 +0000978 'cas_output_root': None,
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000979 'version': 5,
maruela9cfd6f2015-09-15 11:03:15 -0700980 }
nodirbe642ff2016-06-09 15:51:51 -0700981
Takuto Ikutad46ea762020-10-07 05:43:22 +0000982 assert os.path.isabs(data.root_dir), ("data.root_dir is not abs path: %s" %
983 data.root_dir)
984 file_path.ensure_tree(data.root_dir, 0o700)
985
maruele2f2cb82016-07-13 14:41:03 -0700986 # See comment for these constants.
maruelcffa0542017-04-07 08:39:20 -0700987 # TODO(maruel): This is not obvious. Change this to become an error once we
988 # make the constant_run_path an exposed flag.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500989 if constant_run_path and data.root_dir:
990 run_dir = os.path.join(data.root_dir, ISOLATED_RUN_DIR)
maruel5c4eed82017-05-26 05:33:40 -0700991 if os.path.isdir(run_dir):
992 file_path.rmtree(run_dir)
Lei Leife202df2019-06-11 17:33:34 +0000993 os.mkdir(run_dir, 0o700)
maruelcffa0542017-04-07 08:39:20 -0700994 else:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500995 run_dir = make_temp_dir(ISOLATED_RUN_DIR, data.root_dir)
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000996
997 # True if CAS is used for download/upload files.
998 use_cas = bool(data.cas_digest)
999
maruel03e11842016-07-14 10:50:16 -07001000 # storage should be normally set but don't crash if it is not. This can happen
1001 # as Swarming task can run without an isolate server.
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001002 out_dir = None
1003 if data.storage or use_cas:
1004 out_dir = make_temp_dir(ISOLATED_OUT_DIR, data.root_dir)
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001005 tmp_dir = make_temp_dir(ISOLATED_TMP_DIR, data.root_dir)
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001006 isolated_client_dir = make_temp_dir(ISOLATED_CLIENT_DIR, data.root_dir)
nodir55be77b2016-05-03 09:39:57 -07001007 cwd = run_dir
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001008 if data.relative_cwd:
1009 cwd = os.path.normpath(os.path.join(cwd, data.relative_cwd))
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001010 command = data.command
Ye Kuangfb0bad62020-07-28 08:07:25 +00001011 go_isolated_client = None
1012 if data.use_go_isolated:
1013 go_isolated_client = os.path.join(isolated_client_dir,
1014 'isolated' + cipd.EXECUTABLE_SUFFIX)
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001015
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001016 cas_client = None
1017 cas_client_dir = make_temp_dir(_CAS_CLIENT_DIR, data.root_dir)
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001018 if use_cas:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001019 cas_client = os.path.join(cas_client_dir, 'cas' + cipd.EXECUTABLE_SUFFIX)
1020
nodir55be77b2016-05-03 09:39:57 -07001021 try:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001022 with data.install_packages_fn(run_dir, isolated_client_dir,
1023 cas_client_dir) as cipd_info:
vadimsh232f5a82017-01-20 19:23:44 -08001024 if cipd_info:
1025 result['stats']['cipd'] = cipd_info.stats
1026 result['cipd_pins'] = cipd_info.pins
nodir90bc8dc2016-06-15 13:35:21 -07001027
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001028 isolated_stats = result['stats'].setdefault('isolated', {})
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001029 if data.isolated_hash:
Takuto Ikutad03ffcc2019-12-02 01:04:23 +00001030 if data.use_go_isolated:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001031 bundle, stats = _fetch_and_map_with_go_isolated(
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001032 isolated_hash=data.isolated_hash,
1033 storage=data.storage,
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001034 outdir=run_dir,
1035 go_cache_dir=data.go_cache_dir,
Takuto Ikuta879788c2020-01-10 08:00:26 +00001036 policies=data.go_cache_policies,
Ye Kuangfb0bad62020-07-28 08:07:25 +00001037 isolated_client=go_isolated_client)
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001038 else:
Takuto Ikutad03ffcc2019-12-02 01:04:23 +00001039 bundle, stats = fetch_and_map(
1040 isolated_hash=data.isolated_hash,
1041 storage=data.storage,
1042 cache=data.isolate_cache,
Takuto Ikuta16fac4b2019-12-09 04:57:18 +00001043 outdir=run_dir)
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +00001044 isolated_stats['download'].update(stats)
Takuto Ikutab58dbd12020-06-05 09:29:14 +00001045
maruelabec63c2017-04-26 11:53:24 -07001046 # Inject the command
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001047 if not command and bundle.command:
1048 command = bundle.command + data.extra_args
Marc-Antoine Rueld704a1f2017-10-31 10:51:23 -04001049 # Only set the relative directory if the isolated file specified a
1050 # command, and no raw command was specified.
1051 if bundle.relative_cwd:
1052 cwd = os.path.normpath(os.path.join(cwd, bundle.relative_cwd))
maruelabec63c2017-04-26 11:53:24 -07001053
Junji Watanabe54925c32020-09-08 00:56:18 +00001054 elif data.cas_digest:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001055 stats = _fetch_and_map_with_cas(
1056 cas_client=cas_client,
1057 digest=data.cas_digest,
1058 instance=data.cas_instance,
1059 output_dir=run_dir,
Junji Watanabeb03450b2020-09-25 05:09:27 +00001060 cache_dir=data.cas_cache_dir,
1061 policies=data.cas_cache_policies)
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001062 isolated_stats['download'].update(stats)
Junji Watanabe54925c32020-09-08 00:56:18 +00001063
maruelabec63c2017-04-26 11:53:24 -07001064 if not command:
1065 # Handle this as a task failure, not an internal failure.
1066 sys.stderr.write(
1067 '<No command was specified!>\n'
1068 '<Please secify a command when triggering your Swarming task>\n')
1069 result['exit_code'] = 1
1070 return result
nodirbe642ff2016-06-09 15:51:51 -07001071
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001072 if not cwd.startswith(run_dir):
1073 # Handle this as a task failure, not an internal failure. This is a
1074 # 'last chance' way to gate against directory escape.
1075 sys.stderr.write('<Relative CWD is outside of run directory!>\n')
1076 result['exit_code'] = 1
1077 return result
1078
1079 if not os.path.isdir(cwd):
1080 # Accepts relative_cwd that does not exist.
Lei Leife202df2019-06-11 17:33:34 +00001081 os.makedirs(cwd, 0o700)
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001082
vadimsh232f5a82017-01-20 19:23:44 -08001083 # If we have an explicit list of files to return, make sure their
1084 # directories exist now.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001085 if data.storage and data.outputs:
1086 isolateserver.create_directories(run_dir, data.outputs)
aludwin0a8e17d2016-10-27 15:57:39 -07001087
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001088 with data.install_named_caches(run_dir):
nodird6160682017-02-02 13:03:35 -08001089 sys.stdout.flush()
1090 start = time.time()
1091 try:
vadimsh9c54b2c2017-07-25 14:08:29 -07001092 # Need to switch the default account before 'get_command_env' call,
1093 # so it can grab correct value of LUCI_CONTEXT env var.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001094 with set_luci_context_account(data.switch_to_account, tmp_dir):
1095 env = get_command_env(
Roberto Carrillo71ade6d2018-10-08 22:30:24 +00001096 tmp_dir, cipd_info, run_dir, data.env, data.env_prefix, out_dir,
1097 data.bot_file)
Brian Sheedy7a761172019-08-30 22:55:14 +00001098 command = tools.find_executable(command, env)
Robert Iannucci24ae76a2018-02-26 12:51:18 -08001099 command = process_command(command, out_dir, data.bot_file)
1100 file_path.ensure_command_has_abs_path(command, cwd)
1101
vadimsh9c54b2c2017-07-25 14:08:29 -07001102 result['exit_code'], result['had_hard_timeout'] = run_command(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +00001103 command, cwd, env, data.hard_timeout, data.grace_period,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001104 data.lower_priority, data.containment)
nodird6160682017-02-02 13:03:35 -08001105 finally:
1106 result['duration'] = max(time.time() - start, 0)
Seth Koehler49139812017-12-19 13:59:33 -05001107
Ye Kuangbc4e8402020-07-29 09:54:30 +00001108 if out_dir:
1109 # Try to link files to the output directory, if specified.
1110 link_outputs_to_outdir(run_dir, out_dir, data.outputs)
1111 isolated_stats = result['stats'].setdefault('isolated', {})
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001112 if use_cas:
1113 result['cas_output_root'], isolated_stats['upload'] = (
1114 upload_outdir_with_cas(cas_client, data.cas_instance, out_dir))
1115 else:
1116 # This could use |go_isolated_client|, so make sure it runs when the
1117 # CIPD package still exists.
1118 result['outputs_ref'], isolated_stats['upload'] = (
1119 upload_out_dir(data.storage, out_dir, go_isolated_client))
Seth Koehler49139812017-12-19 13:59:33 -05001120 # We successfully ran the command, set internal_failure back to
1121 # None (even if the command failed, it's not an internal error).
1122 result['internal_failure'] = None
maruela9cfd6f2015-09-15 11:03:15 -07001123 except Exception as e:
nodir90bc8dc2016-06-15 13:35:21 -07001124 # An internal error occurred. Report accordingly so the swarming task will
1125 # be retried automatically.
maruel12e30012015-10-09 11:55:35 -07001126 logging.exception('internal failure: %s', e)
maruela9cfd6f2015-09-15 11:03:15 -07001127 result['internal_failure'] = str(e)
1128 on_error.report(None)
aludwin0a8e17d2016-10-27 15:57:39 -07001129
1130 # Clean up
maruela9cfd6f2015-09-15 11:03:15 -07001131 finally:
1132 try:
Ye Kuangbc4e8402020-07-29 09:54:30 +00001133 success = True
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001134 if data.leak_temp_dir:
nodir32a1ec12016-10-26 18:34:07 -07001135 success = True
maruela9cfd6f2015-09-15 11:03:15 -07001136 logging.warning(
1137 'Deliberately leaking %s for later examination', run_dir)
marueleb5fbee2015-09-17 13:01:36 -07001138 else:
maruel84537cb2015-10-16 14:21:28 -07001139 # On Windows rmtree(run_dir) call above has a synchronization effect: it
1140 # finishes only when all task child processes terminate (since a running
1141 # process locks *.exe file). Examine out_dir only after that call
1142 # completes (since child processes may write to out_dir too and we need
1143 # to wait for them to finish).
Junji Watanabeb03450b2020-09-25 05:09:27 +00001144 dirs_to_remove = [run_dir, tmp_dir, isolated_client_dir, cas_client_dir]
Ye Kuangbc4e8402020-07-29 09:54:30 +00001145 if out_dir:
1146 dirs_to_remove.append(out_dir)
1147 for directory in dirs_to_remove:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001148 if not fs.isdir(directory):
1149 continue
maruel84537cb2015-10-16 14:21:28 -07001150 try:
Ye Kuangbc4e8402020-07-29 09:54:30 +00001151 success = success and file_path.rmtree(directory)
maruel84537cb2015-10-16 14:21:28 -07001152 except OSError as e:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001153 logging.error('rmtree(%r) failed: %s', directory, e)
maruel84537cb2015-10-16 14:21:28 -07001154 success = False
1155 if not success:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001156 sys.stderr.write(
1157 OUTLIVING_ZOMBIE_MSG % (directory, data.grace_period))
Takuto Ikutad7d64e12020-07-31 06:18:45 +00001158 subprocess42.check_call(['tasklist.exe', '/V'], stdout=sys.stderr)
maruel84537cb2015-10-16 14:21:28 -07001159 if result['exit_code'] == 0:
1160 result['exit_code'] = 1
maruela9cfd6f2015-09-15 11:03:15 -07001161
maruela9cfd6f2015-09-15 11:03:15 -07001162 if not success and result['exit_code'] == 0:
1163 result['exit_code'] = 1
1164 except Exception as e:
1165 # Swallow any exception in the main finally clause.
nodir9130f072016-05-27 13:59:08 -07001166 if out_dir:
1167 logging.exception('Leaking out_dir %s: %s', out_dir, e)
maruela9cfd6f2015-09-15 11:03:15 -07001168 result['internal_failure'] = str(e)
Takuto Ikutaa9a907b2020-04-17 08:50:50 +00001169 on_error.report(None)
maruela9cfd6f2015-09-15 11:03:15 -07001170 return result
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -05001171
1172
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001173def run_tha_test(data, result_json):
nodir55be77b2016-05-03 09:39:57 -07001174 """Runs an executable and records execution metadata.
1175
nodir55be77b2016-05-03 09:39:57 -07001176 If isolated_hash is specified, downloads the dependencies in the cache,
1177 hardlinks them into a temporary directory and runs the command specified in
1178 the .isolated.
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -05001179
1180 A temporary directory is created to hold the output files. The content inside
1181 this directory will be uploaded back to |storage| packaged as a .isolated
1182 file.
1183
1184 Arguments:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001185 - data: TaskData instance.
1186 - result_json: File path to dump result metadata into. If set, the process
1187 exit code is always 0 unless an internal error occurred.
maruela9cfd6f2015-09-15 11:03:15 -07001188
1189 Returns:
1190 Process exit code that should be used.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001191 """
maruela76b9ee2015-12-15 06:18:08 -08001192 if result_json:
1193 # Write a json output file right away in case we get killed.
1194 result = {
Junji Watanabe54925c32020-09-08 00:56:18 +00001195 'exit_code': None,
1196 'had_hard_timeout': False,
1197 'internal_failure': 'Was terminated before completion',
1198 'outputs_ref': None,
1199 'cas_output_root': None,
1200 'version': 5,
maruela76b9ee2015-12-15 06:18:08 -08001201 }
1202 tools.write_json(result_json, result, dense=True)
1203
maruela9cfd6f2015-09-15 11:03:15 -07001204 # run_isolated exit code. Depends on if result_json is used or not.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001205 result = map_and_run(data, True)
maruela9cfd6f2015-09-15 11:03:15 -07001206 logging.info('Result:\n%s', tools.format_json(result, dense=True))
bpastene3ae09522016-06-10 17:12:59 -07001207
maruela9cfd6f2015-09-15 11:03:15 -07001208 if result_json:
maruel05d5a882015-09-21 13:59:02 -07001209 # We've found tests to delete 'work' when quitting, causing an exception
1210 # here. Try to recreate the directory if necessary.
nodire5028a92016-04-29 14:38:21 -07001211 file_path.ensure_tree(os.path.dirname(result_json))
maruela9cfd6f2015-09-15 11:03:15 -07001212 tools.write_json(result_json, result, dense=True)
1213 # Only return 1 if there was an internal error.
1214 return int(bool(result['internal_failure']))
maruel@chromium.org781ccf62013-09-17 19:39:47 +00001215
maruela9cfd6f2015-09-15 11:03:15 -07001216 # Marshall into old-style inline output.
1217 if result['outputs_ref']:
Marc-Antoine Ruel793bff32019-04-18 17:50:48 +00001218 # pylint: disable=unsubscriptable-object
maruela9cfd6f2015-09-15 11:03:15 -07001219 data = {
Junji Watanabe38b28b02020-04-23 10:23:30 +00001220 'hash': result['outputs_ref']['isolated'],
1221 'namespace': result['outputs_ref']['namespace'],
1222 'storage': result['outputs_ref']['isolatedserver'],
maruela9cfd6f2015-09-15 11:03:15 -07001223 }
Marc-Antoine Ruelc44f5722015-01-08 16:10:01 -05001224 sys.stdout.flush()
Junji Watanabe38b28b02020-04-23 10:23:30 +00001225 print('[run_isolated_out_hack]%s[/run_isolated_out_hack]' %
1226 tools.format_json(data, dense=True))
maruelb76604c2015-11-11 11:53:44 -08001227 sys.stdout.flush()
maruela9cfd6f2015-09-15 11:03:15 -07001228 return result['exit_code'] or int(bool(result['internal_failure']))
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001229
1230
iannuccib58d10d2017-03-18 02:00:25 -07001231# Yielded by 'install_client_and_packages'.
vadimsh232f5a82017-01-20 19:23:44 -08001232CipdInfo = collections.namedtuple('CipdInfo', [
1233 'client', # cipd.CipdClient object
1234 'cache_dir', # absolute path to bot-global cipd tag and instance cache
1235 'stats', # dict with stats to return to the server
1236 'pins', # dict with installed cipd pins to return to the server
1237])
1238
1239
1240@contextlib.contextmanager
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001241def noop_install_packages(_run_dir, _isolated_dir, _cas_dir):
iannuccib58d10d2017-03-18 02:00:25 -07001242 """Placeholder for 'install_client_and_packages' if cipd is disabled."""
vadimsh232f5a82017-01-20 19:23:44 -08001243 yield None
1244
1245
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001246def _install_packages(run_dir, cipd_cache_dir, client, packages):
iannuccib58d10d2017-03-18 02:00:25 -07001247 """Calls 'cipd ensure' for packages.
1248
1249 Args:
1250 run_dir (str): root of installation.
1251 cipd_cache_dir (str): the directory to use for the cipd package cache.
1252 client (CipdClient): the cipd client to use
1253 packages: packages to install, list [(path, package_name, version), ...].
iannuccib58d10d2017-03-18 02:00:25 -07001254
1255 Returns: list of pinned packages. Looks like [
1256 {
1257 'path': 'subdirectory',
1258 'package_name': 'resolved/package/name',
1259 'version': 'deadbeef...',
1260 },
1261 ...
1262 ]
1263 """
1264 package_pins = [None]*len(packages)
1265 def insert_pin(path, name, version, idx):
1266 package_pins[idx] = {
1267 'package_name': name,
1268 # swarming deals with 'root' as '.'
1269 'path': path or '.',
1270 'version': version,
1271 }
1272
1273 by_path = collections.defaultdict(list)
1274 for i, (path, name, version) in enumerate(packages):
1275 # cipd deals with 'root' as ''
1276 if path == '.':
1277 path = ''
1278 by_path[path].append((name, version, i))
1279
1280 pins = client.ensure(
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001281 run_dir,
1282 {
1283 subdir: [(name, vers) for name, vers, _ in pkgs
1284 ] for subdir, pkgs in by_path.items()
1285 },
1286 cache_dir=cipd_cache_dir,
iannuccib58d10d2017-03-18 02:00:25 -07001287 )
1288
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +00001289 for subdir, pin_list in sorted(pins.items()):
iannuccib58d10d2017-03-18 02:00:25 -07001290 this_subdir = by_path[subdir]
1291 for i, (name, version) in enumerate(pin_list):
1292 insert_pin(subdir, name, version, this_subdir[i][2])
1293
Robert Iannucci461b30d2017-12-13 11:34:03 -08001294 assert None not in package_pins, (packages, pins, package_pins)
iannuccib58d10d2017-03-18 02:00:25 -07001295
1296 return package_pins
1297
1298
vadimsh232f5a82017-01-20 19:23:44 -08001299@contextlib.contextmanager
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001300def install_client_and_packages(run_dir, packages, service_url,
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001301 client_package_name, client_version, cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001302 isolated_dir, cas_dir):
vadimsh902948e2017-01-20 15:57:32 -08001303 """Bootstraps CIPD client and installs CIPD packages.
iannucci96fcccc2016-08-30 15:52:22 -07001304
vadimsh232f5a82017-01-20 19:23:44 -08001305 Yields CipdClient, stats, client info and pins (as single CipdInfo object).
1306
1307 Pins and the CIPD client info are in the form of:
iannucci96fcccc2016-08-30 15:52:22 -07001308 [
1309 {
1310 "path": path, "package_name": package_name, "version": version,
1311 },
1312 ...
1313 ]
vadimsh902948e2017-01-20 15:57:32 -08001314 (the CIPD client info is a single dictionary instead of a list)
iannucci96fcccc2016-08-30 15:52:22 -07001315
1316 such that they correspond 1:1 to all input package arguments from the command
1317 line. These dictionaries make their all the way back to swarming, where they
1318 become the arguments of CipdPackage.
nodirbe642ff2016-06-09 15:51:51 -07001319
vadimsh902948e2017-01-20 15:57:32 -08001320 If 'packages' list is empty, will bootstrap CIPD client, but won't install
1321 any packages.
1322
1323 The bootstrapped client (regardless whether 'packages' list is empty or not),
vadimsh232f5a82017-01-20 19:23:44 -08001324 will be made available to the task via $PATH.
vadimsh902948e2017-01-20 15:57:32 -08001325
nodirbe642ff2016-06-09 15:51:51 -07001326 Args:
nodir90bc8dc2016-06-15 13:35:21 -07001327 run_dir (str): root of installation.
vadimsh902948e2017-01-20 15:57:32 -08001328 packages: packages to install, list [(path, package_name, version), ...].
nodirbe642ff2016-06-09 15:51:51 -07001329 service_url (str): CIPD server url, e.g.
1330 "https://chrome-infra-packages.appspot.com."
nodir90bc8dc2016-06-15 13:35:21 -07001331 client_package_name (str): CIPD package name of CIPD client.
1332 client_version (str): Version of CIPD client.
nodirbe642ff2016-06-09 15:51:51 -07001333 cache_dir (str): where to keep cache of cipd clients, packages and tags.
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001334 isolated_dir (str): where to download isolated client.
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001335 cas_dir (str): where to download cas client.
nodirbe642ff2016-06-09 15:51:51 -07001336 """
1337 assert cache_dir
nodir90bc8dc2016-06-15 13:35:21 -07001338
nodirbe642ff2016-06-09 15:51:51 -07001339 start = time.time()
nodirbe642ff2016-06-09 15:51:51 -07001340
vadimsh902948e2017-01-20 15:57:32 -08001341 cache_dir = os.path.abspath(cache_dir)
vadimsh232f5a82017-01-20 19:23:44 -08001342 cipd_cache_dir = os.path.join(cache_dir, 'cache') # tag and instance caches
nodir90bc8dc2016-06-15 13:35:21 -07001343 run_dir = os.path.abspath(run_dir)
vadimsh902948e2017-01-20 15:57:32 -08001344 packages = packages or []
nodir90bc8dc2016-06-15 13:35:21 -07001345
nodirbe642ff2016-06-09 15:51:51 -07001346 get_client_start = time.time()
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001347 client_manager = cipd.get_client(cache_dir, service_url, client_package_name,
1348 client_version)
iannucci96fcccc2016-08-30 15:52:22 -07001349
nodirbe642ff2016-06-09 15:51:51 -07001350 with client_manager as client:
1351 get_client_duration = time.time() - get_client_start
nodir90bc8dc2016-06-15 13:35:21 -07001352
iannuccib58d10d2017-03-18 02:00:25 -07001353 package_pins = []
1354 if packages:
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001355 package_pins = _install_packages(run_dir, cipd_cache_dir, client,
1356 packages)
iannuccib58d10d2017-03-18 02:00:25 -07001357
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001358 # Install isolated client to |isolated_dir|.
Takuto Ikuta02edca22019-11-29 10:04:51 +00001359 _install_packages(isolated_dir, cipd_cache_dir, client,
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +00001360 [('', ISOLATED_PACKAGE, _LUCI_GO_REVISION)])
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001361
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001362 # Install cas client to |cas_dir|.
1363 _install_packages(cas_dir, cipd_cache_dir, client,
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +00001364 [('', _CAS_PACKAGE, _LUCI_GO_REVISION)])
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001365
iannuccib58d10d2017-03-18 02:00:25 -07001366 file_path.make_tree_files_read_only(run_dir)
nodir90bc8dc2016-06-15 13:35:21 -07001367
vadimsh232f5a82017-01-20 19:23:44 -08001368 total_duration = time.time() - start
Junji Watanabe38b28b02020-04-23 10:23:30 +00001369 logging.info('Installing CIPD client and packages took %d seconds',
1370 total_duration)
nodir90bc8dc2016-06-15 13:35:21 -07001371
vadimsh232f5a82017-01-20 19:23:44 -08001372 yield CipdInfo(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001373 client=client,
1374 cache_dir=cipd_cache_dir,
1375 stats={
1376 'duration': total_duration,
1377 'get_client_duration': get_client_duration,
iannuccib58d10d2017-03-18 02:00:25 -07001378 },
Junji Watanabe38b28b02020-04-23 10:23:30 +00001379 pins={
1380 'client_package': {
1381 'package_name': client.package_name,
1382 'version': client.instance_id,
1383 },
1384 'packages': package_pins,
1385 })
nodirbe642ff2016-06-09 15:51:51 -07001386
1387
1388def create_option_parser():
Marc-Antoine Ruelf74cffe2015-07-15 15:21:34 -04001389 parser = logging_utils.OptionParserWithLogging(
nodir55be77b2016-05-03 09:39:57 -07001390 usage='%prog <options> [command to run or extra args]',
maruel@chromium.orgdedbf492013-09-12 20:42:11 +00001391 version=__version__,
1392 log_file=RUN_ISOLATED_LOG_FILE)
maruela9cfd6f2015-09-15 11:03:15 -07001393 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001394 '--clean',
1395 action='store_true',
maruel36a963d2016-04-08 17:15:49 -07001396 help='Cleans the cache, trimming it necessary and remove corrupted items '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001397 'and returns without executing anything; use with -v to know what '
1398 'was done')
maruel36a963d2016-04-08 17:15:49 -07001399 parser.add_option(
maruela9cfd6f2015-09-15 11:03:15 -07001400 '--json',
1401 help='dump output metadata to json file. When used, run_isolated returns '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001402 'non-zero only on internal failure')
maruel6be7f9e2015-10-01 12:25:30 -07001403 parser.add_option(
maruel5c9e47b2015-12-18 13:02:30 -08001404 '--hard-timeout', type='float', help='Enforce hard timeout in execution')
maruel6be7f9e2015-10-01 12:25:30 -07001405 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001406 '--grace-period',
1407 type='float',
maruel6be7f9e2015-10-01 12:25:30 -07001408 help='Grace period between SIGTERM and SIGKILL')
bpastene3ae09522016-06-10 17:12:59 -07001409 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001410 '--raw-cmd',
1411 action='store_true',
Marc-Antoine Ruel49e347d2017-10-24 16:52:02 -07001412 help='Ignore the isolated command, use the one supplied at the command '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001413 'line')
Marc-Antoine Ruel49e347d2017-10-24 16:52:02 -07001414 parser.add_option(
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001415 '--relative-cwd',
1416 help='Ignore the isolated \'relative_cwd\' and use this one instead; '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001417 'requires --raw-cmd')
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001418 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001419 '--env',
1420 default=[],
1421 action='append',
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001422 help='Environment variables to set for the child process')
1423 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001424 '--env-prefix',
1425 default=[],
1426 action='append',
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001427 help='Specify a VAR=./path/fragment to put in the environment variable '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001428 'before executing the command. The path fragment must be relative '
1429 'to the isolated run directory, and must not contain a `..` token. '
1430 'The path will be made absolute and prepended to the indicated '
1431 '$VAR using the OS\'s path separator. Multiple items for the same '
1432 '$VAR will be prepended in order.')
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001433 parser.add_option(
bpastene3ae09522016-06-10 17:12:59 -07001434 '--bot-file',
1435 help='Path to a file describing the state of the host. The content is '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001436 'defined by on_before_task() in bot_config.')
aludwin7556e0c2016-10-26 08:46:10 -07001437 parser.add_option(
vadimsh9c54b2c2017-07-25 14:08:29 -07001438 '--switch-to-account',
1439 help='If given, switches LUCI_CONTEXT to given logical service account '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001440 '(e.g. "task" or "system") before launching the isolated process.')
vadimsh9c54b2c2017-07-25 14:08:29 -07001441 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001442 '--output',
1443 action='append',
aludwin0a8e17d2016-10-27 15:57:39 -07001444 help='Specifies an output to return. If no outputs are specified, all '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001445 'files located in $(ISOLATED_OUTDIR) will be returned; '
1446 'otherwise, outputs in both $(ISOLATED_OUTDIR) and those '
1447 'specified by --output option (there can be multiple) will be '
1448 'returned. Note that if a file in OUT_DIR has the same path '
1449 'as an --output option, the --output version will be returned.')
aludwin0a8e17d2016-10-27 15:57:39 -07001450 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001451 '-a',
1452 '--argsfile',
aludwin7556e0c2016-10-26 08:46:10 -07001453 # This is actually handled in parse_args; it's included here purely so it
1454 # can make it into the help text.
1455 help='Specify a file containing a JSON array of arguments to this '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001456 'script. If --argsfile is provided, no other argument may be '
1457 'provided on the command line.')
Takuto Ikutad4be2f12020-05-12 02:15:25 +00001458 parser.add_option(
1459 '--report-on-exception',
1460 action='store_true',
1461 help='Whether report exception during execution to isolate server. '
1462 'This flag should only be used in swarming bot.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001463
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001464 group = optparse.OptionGroup(parser, 'Data source - Isolate server')
Junji Watanabe54925c32020-09-08 00:56:18 +00001465 # Deprecated. Isoate server is being migrated to RBE-CAS.
1466 # Remove --isolated and isolate server options after migration.
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001467 group.add_option(
Marc-Antoine Ruel185ded42015-01-28 20:49:18 -05001468 '-s', '--isolated',
nodir55be77b2016-05-03 09:39:57 -07001469 help='Hash of the .isolated to grab from the isolate server.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001470 isolateserver.add_isolate_server_options(group)
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001471 parser.add_option_group(group)
1472
1473 group = optparse.OptionGroup(parser,
1474 'Data source - Content Addressed Storage')
Junji Watanabe54925c32020-09-08 00:56:18 +00001475 group.add_option(
1476 '--cas-instance', help='Full CAS instance name for input/output files.')
1477 group.add_option(
1478 '--cas-digest',
1479 help='Digest of the input root on RBE-CAS. The format is '
1480 '`{hash}/{size_bytes}`.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001481 parser.add_option_group(group)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001482
Junji Watanabeb03450b2020-09-25 05:09:27 +00001483 # Cache options.
Marc-Antoine Ruela57d7db2014-10-15 20:31:19 -04001484 isolateserver.add_cache_options(parser)
Junji Watanabeb03450b2020-09-25 05:09:27 +00001485 add_cas_cache_options(parser)
nodirbe642ff2016-06-09 15:51:51 -07001486
1487 cipd.add_cipd_options(parser)
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001488
1489 group = optparse.OptionGroup(parser, 'Named caches')
1490 group.add_option(
1491 '--named-cache',
1492 dest='named_caches',
1493 action='append',
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001494 nargs=3,
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001495 default=[],
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001496 help='A named cache to request. Accepts 3 arguments: name, path, hint. '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001497 'name identifies the cache, must match regex [a-z0-9_]{1,4096}. '
1498 'path is a path relative to the run dir where the cache directory '
1499 'must be put to. '
1500 'This option can be specified more than once.')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001501 group.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001502 '--named-cache-root',
1503 default='named_caches',
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001504 help='Cache root directory. Default=%default')
1505 parser.add_option_group(group)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001506
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001507 group = optparse.OptionGroup(parser, 'Process containment')
1508 parser.add_option(
1509 '--lower-priority', action='store_true',
1510 help='Lowers the child process priority')
1511 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001512 '--containment-type',
1513 choices=('NONE', 'AUTO', 'JOB_OBJECT'),
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001514 default='NONE',
1515 help='Type of container to use')
1516 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001517 '--limit-processes',
1518 type='int',
1519 default=0,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001520 help='Maximum number of active processes in the containment')
1521 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001522 '--limit-total-committed-memory',
1523 type='int',
1524 default=0,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001525 help='Maximum sum of committed memory in the containment')
1526 parser.add_option_group(group)
1527
1528 group = optparse.OptionGroup(parser, 'Debugging')
1529 group.add_option(
Kenneth Russell61d42352014-09-15 11:41:16 -07001530 '--leak-temp-dir',
1531 action='store_true',
nodirbe642ff2016-06-09 15:51:51 -07001532 help='Deliberately leak isolate\'s temp dir for later examination. '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001533 'Default: %default')
1534 group.add_option('--root-dir', help='Use a directory instead of a random one')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001535 parser.add_option_group(group)
Kenneth Russell61d42352014-09-15 11:41:16 -07001536
Vadim Shtayurae34e13a2014-02-02 11:23:26 -08001537 auth.add_auth_options(parser)
nodirbe642ff2016-06-09 15:51:51 -07001538
Ye Kuang1d096cb2020-06-26 08:38:21 +00001539 parser.set_defaults(cache='cache')
nodirbe642ff2016-06-09 15:51:51 -07001540 return parser
1541
1542
Junji Watanabeb03450b2020-09-25 05:09:27 +00001543def add_cas_cache_options(parser):
1544 group = optparse.OptionGroup(parser, 'CAS cache management')
1545 group.add_option(
1546 '--cas-cache',
1547 metavar='DIR',
1548 default='cas-cache',
1549 help='Directory to keep a local cache of the files. Accelerates download '
1550 'by reusing already downloaded files. Default=%default')
1551 parser.add_option_group(group)
1552
1553
1554def process_cas_cache_options(options):
1555 if options.cas_cache:
1556 policies = local_caching.CachePolicies(
1557 max_cache_size=options.max_cache_size,
1558 min_free_space=options.min_free_space,
1559 # max_items isn't used for CAS cache for now.
1560 max_items=None,
1561 max_age_secs=MAX_AGE_SECS)
1562
1563 return local_caching.DiskContentAddressedCache(
1564 six.text_type(os.path.abspath(options.cas_cache)), policies, trim=False)
1565 return local_caching.MemoryContentAddressedCache()
1566
1567
Marc-Antoine Ruel49f9f8d2018-05-24 15:57:06 -04001568def process_named_cache_options(parser, options, time_fn=None):
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001569 """Validates named cache options and returns a CacheManager."""
1570 if options.named_caches and not options.named_cache_root:
1571 parser.error('--named-cache is specified, but --named-cache-root is empty')
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001572 for name, path, hint in options.named_caches:
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001573 if not CACHE_NAME_RE.match(name):
1574 parser.error(
1575 'cache name %r does not match %r' % (name, CACHE_NAME_RE.pattern))
1576 if not path:
1577 parser.error('cache path cannot be empty')
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001578 try:
Takuto Ikuta630f99d2020-07-02 12:59:35 +00001579 int(hint)
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001580 except ValueError:
1581 parser.error('cache hint must be a number')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001582 if options.named_cache_root:
1583 # Make these configurable later if there is use case but for now it's fairly
1584 # safe values.
1585 # In practice, a fair chunk of bots are already recycled on a daily schedule
1586 # so this code doesn't have any effect to them, unless they are preloaded
1587 # with a really old cache.
1588 policies = local_caching.CachePolicies(
1589 # 1TiB.
1590 max_cache_size=1024*1024*1024*1024,
1591 min_free_space=options.min_free_space,
1592 max_items=50,
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +00001593 max_age_secs=MAX_AGE_SECS)
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001594 root_dir = six.text_type(os.path.abspath(options.named_cache_root))
John Budorickc6186972020-02-26 00:58:14 +00001595 cache = local_caching.NamedCache(root_dir, policies, time_fn=time_fn)
1596 # Touch any named caches we're going to use to minimize thrashing
1597 # between tasks that request some (but not all) of the same named caches.
John Budorick0a4dab62020-03-02 22:23:35 +00001598 cache.touch(*[name for name, _, _ in options.named_caches])
John Budorickc6186972020-02-26 00:58:14 +00001599 return cache
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001600 return None
1601
1602
aludwin7556e0c2016-10-26 08:46:10 -07001603def parse_args(args):
1604 # Create a fake mini-parser just to get out the "-a" command. Note that
1605 # it's not documented here; instead, it's documented in create_option_parser
1606 # even though that parser will never actually get to parse it. This is
1607 # because --argsfile is exclusive with all other options and arguments.
1608 file_argparse = argparse.ArgumentParser(add_help=False)
1609 file_argparse.add_argument('-a', '--argsfile')
1610 (file_args, nonfile_args) = file_argparse.parse_known_args(args)
1611 if file_args.argsfile:
1612 if nonfile_args:
1613 file_argparse.error('Can\'t specify --argsfile with'
1614 'any other arguments (%s)' % nonfile_args)
1615 try:
1616 with open(file_args.argsfile, 'r') as f:
1617 args = json.load(f)
1618 except (IOError, OSError, ValueError) as e:
1619 # We don't need to error out here - "args" is now empty,
1620 # so the call below to parser.parse_args(args) will fail
1621 # and print the full help text.
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +00001622 print('Couldn\'t read arguments: %s' % e, file=sys.stderr)
aludwin7556e0c2016-10-26 08:46:10 -07001623
1624 # Even if we failed to read the args, just call the normal parser now since it
1625 # will print the correct help message.
nodirbe642ff2016-06-09 15:51:51 -07001626 parser = create_option_parser()
Marc-Antoine Ruel90c98162013-12-18 15:11:57 -05001627 options, args = parser.parse_args(args)
Ye Kuangfff1e502020-07-13 13:21:57 +00001628 if not isinstance(options.cipd_enabled, (bool, int)):
1629 options.cipd_enabled = distutils.util.strtobool(options.cipd_enabled)
aludwin7556e0c2016-10-26 08:46:10 -07001630 return (parser, options, args)
1631
1632
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001633def _calc_named_cache_hint(named_cache, named_caches):
1634 """Returns the expected size of the missing named caches."""
1635 present = named_cache.available
1636 size = 0
1637 for name, _, hint in named_caches:
1638 if name not in present:
Takuto Ikuta630f99d2020-07-02 12:59:35 +00001639 hint = int(hint)
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001640 if hint > 0:
1641 size += hint
1642 return size
1643
1644
aludwin7556e0c2016-10-26 08:46:10 -07001645def main(args):
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -05001646 # Warning: when --argsfile is used, the strings are unicode instances, when
1647 # parsed normally, the strings are str instances.
aludwin7556e0c2016-10-26 08:46:10 -07001648 (parser, options, args) = parse_args(args)
maruel36a963d2016-04-08 17:15:49 -07001649
Takuto Ikutad4be2f12020-05-12 02:15:25 +00001650 if options.report_on_exception and options.isolate_server:
1651 on_error.report_on_exception_exit(options.isolate_server)
1652
Marc-Antoine Ruel5028ba22017-08-25 17:37:51 -04001653 if not file_path.enable_symlink():
Marc-Antoine Ruel5a024272019-01-15 20:11:16 +00001654 logging.warning('Symlink support is not enabled')
Marc-Antoine Ruel5028ba22017-08-25 17:37:51 -04001655
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001656 named_cache = process_named_cache_options(parser, options)
Marc-Antoine Ruel0d8b0f62018-09-10 14:40:35 +00001657 # hint is 0 if there's no named cache.
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001658 hint = _calc_named_cache_hint(named_cache, options.named_caches)
1659 if hint:
1660 # Increase the --min-free-space value by the hint, and recreate the
1661 # NamedCache instance so it gets the updated CachePolicy.
1662 options.min_free_space += hint
1663 named_cache = process_named_cache_options(parser, options)
1664
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001665 # TODO(crbug.com/932396): Remove this.
Takuto Ikuta4a22c2c2020-06-05 02:02:23 +00001666 use_go_isolated = options.cipd_enabled
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001667
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001668 # TODO(maruel): CIPD caches should be defined at an higher level here too, so
1669 # they can be cleaned the same way.
Junji Watanabeb03450b2020-09-25 05:09:27 +00001670 # TODO(crbug.com/1131313):
1671 # Modifying stats.json from run_isolated.py and Go isolated/cas clients may
1672 # cause unexpected issues. Initialize CachePolicies when not using Go client
1673 # or executing --clean.
1674 isolate_cache = None
1675 if options.clean or not use_go_isolated:
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +00001676 isolate_cache = isolateserver.process_cache_options(options, trim=False)
Junji Watanabeb03450b2020-09-25 05:09:27 +00001677 cas_cache = None
1678 if options.clean:
1679 cas_cache = process_cas_cache_options(options)
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +00001680
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001681 caches = []
1682 if isolate_cache:
1683 caches.append(isolate_cache)
Junji Watanabeb03450b2020-09-25 05:09:27 +00001684 if cas_cache:
1685 caches.append(cas_cache)
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001686 if named_cache:
1687 caches.append(named_cache)
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001688 root = caches[0].cache_dir if caches else six.text_type(os.getcwd())
maruel36a963d2016-04-08 17:15:49 -07001689 if options.clean:
1690 if options.isolated:
1691 parser.error('Can\'t use --isolated with --clean.')
1692 if options.isolate_server:
1693 parser.error('Can\'t use --isolate-server with --clean.')
1694 if options.json:
1695 parser.error('Can\'t use --json with --clean.')
nodirf33b8d62016-10-26 22:34:58 -07001696 if options.named_caches:
1697 parser.error('Can\t use --named-cache with --clean.')
Junji Watanabeb19f54d2020-09-17 05:54:52 +00001698 if options.cas_instance or options.cas_digest:
1699 parser.error('Can\t use --cas-instance, --cas-digest with --clean.')
Takuto Ikuta9ab28552020-07-31 08:15:45 +00001700
1701 logging.info("initial free space: %d", file_path.get_free_space(root))
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001702 # Trim first, then clean.
1703 local_caching.trim_caches(
1704 caches,
1705 root,
Takuto Ikuta616ce262020-09-07 08:43:48 +00001706 min_free_space=options.min_free_space,
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001707 max_age_secs=MAX_AGE_SECS)
Takuto Ikuta9ab28552020-07-31 08:15:45 +00001708 logging.info("free space after trim: %d", file_path.get_free_space(root))
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001709 for c in caches:
Marc-Antoine Ruel87fc2222018-06-18 13:09:24 +00001710 c.cleanup()
Takuto Ikuta9ab28552020-07-31 08:15:45 +00001711 logging.info("free space after cleanup: %d", file_path.get_free_space(root))
maruel36a963d2016-04-08 17:15:49 -07001712 return 0
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001713
1714 # Trim must still be done for the following case:
1715 # - named-cache was used
1716 # - some entries, with a large hint, where missing
1717 # - --min-free-space was increased accordingly, thus trimming is needed
1718 # Otherwise, this will have no effect, as bot_main calls run_isolated with
1719 # --clean after each task.
1720 if hint:
1721 logging.info('Additional trimming of %d bytes', hint)
Marc-Antoine Ruel0d8b0f62018-09-10 14:40:35 +00001722 local_caching.trim_caches(
1723 caches,
1724 root,
Takuto Ikuta616ce262020-09-07 08:43:48 +00001725 min_free_space=options.min_free_space,
Marc-Antoine Ruel0d8b0f62018-09-10 14:40:35 +00001726 max_age_secs=MAX_AGE_SECS)
maruel36a963d2016-04-08 17:15:49 -07001727
nodir55be77b2016-05-03 09:39:57 -07001728 if not options.isolated and not args:
1729 parser.error('--isolated or command to run is required.')
1730
Vadim Shtayura5d1efce2014-02-04 10:55:43 -08001731 auth.process_auth_options(parser, options)
nodir55be77b2016-05-03 09:39:57 -07001732
Takuto Ikutaae767b32020-05-11 01:22:19 +00001733 isolateserver.process_isolate_server_options(parser, options, False)
Junji Watanabeed9ce352020-09-25 12:32:07 +00001734 if ISOLATED_OUTDIR_PARAMETER in args and (not options.isolate_server and
1735 not options.cas_instance):
1736 parser.error('%s in args requires --isolate-server or --cas-instance' %
1737 ISOLATED_OUTDIR_PARAMETER)
1738
1739 if options.isolated and not options.isolate_server:
1740 parser.error('--isolated requires --isolate-server')
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001741
nodir90bc8dc2016-06-15 13:35:21 -07001742 if options.root_dir:
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001743 options.root_dir = six.text_type(os.path.abspath(options.root_dir))
Takuto Ikutad46ea762020-10-07 05:43:22 +00001744 else:
1745 options.root_dir = six.text_type(tempfile.mkdtemp(prefix='root'))
maruel12e30012015-10-09 11:55:35 -07001746 if options.json:
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001747 options.json = six.text_type(os.path.abspath(options.json))
nodir55be77b2016-05-03 09:39:57 -07001748
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001749 if any('=' not in i for i in options.env):
1750 parser.error(
1751 '--env required key=value form. value can be skipped to delete '
1752 'the variable')
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -05001753 options.env = dict(i.split('=', 1) for i in options.env)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001754
1755 prefixes = {}
1756 cwd = os.path.realpath(os.getcwd())
1757 for item in options.env_prefix:
1758 if '=' not in item:
1759 parser.error(
1760 '--env-prefix %r is malformed, must be in the form `VAR=./path`'
1761 % item)
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -05001762 key, opath = item.split('=', 1)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001763 if os.path.isabs(opath):
1764 parser.error('--env-prefix %r path is bad, must be relative.' % opath)
1765 opath = os.path.normpath(opath)
1766 if not os.path.realpath(os.path.join(cwd, opath)).startswith(cwd):
1767 parser.error(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001768 '--env-prefix %r path is bad, must be relative and not contain `..`.'
1769 % opath)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001770 prefixes.setdefault(key, []).append(opath)
1771 options.env_prefix = prefixes
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001772
nodirbe642ff2016-06-09 15:51:51 -07001773 cipd.validate_cipd_options(parser, options)
1774
vadimsh232f5a82017-01-20 19:23:44 -08001775 install_packages_fn = noop_install_packages
Ye Kuang1d096cb2020-06-26 08:38:21 +00001776 tmp_cipd_cache_dir = None
vadimsh902948e2017-01-20 15:57:32 -08001777 if options.cipd_enabled:
Ye Kuang1d096cb2020-06-26 08:38:21 +00001778 cache_dir = options.cipd_cache
1779 if not cache_dir:
1780 tmp_cipd_cache_dir = six.text_type(tempfile.mkdtemp())
1781 cache_dir = tmp_cipd_cache_dir
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001782 install_packages_fn = (
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001783 lambda run_dir, isolated_dir, cas_dir: install_client_and_packages(
Ye Kuang1d096cb2020-06-26 08:38:21 +00001784 run_dir,
1785 cipd.parse_package_args(options.cipd_packages),
1786 options.cipd_server,
1787 options.cipd_client_package,
1788 options.cipd_client_version,
1789 cache_dir=cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001790 isolated_dir=isolated_dir,
1791 cas_dir=cas_dir,
1792 ))
nodirbe642ff2016-06-09 15:51:51 -07001793
nodird6160682017-02-02 13:03:35 -08001794 @contextlib.contextmanager
nodir0ae98b32017-05-11 13:21:53 -07001795 def install_named_caches(run_dir):
nodird6160682017-02-02 13:03:35 -08001796 # WARNING: this function depends on "options" variable defined in the outer
1797 # function.
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001798 assert six.text_type(run_dir), repr(run_dir)
Marc-Antoine Ruel49f9f8d2018-05-24 15:57:06 -04001799 assert os.path.isabs(run_dir), run_dir
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001800 named_caches = [(os.path.join(run_dir, six.text_type(relpath)), name)
1801 for name, relpath, _ in options.named_caches]
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001802 for path, name in named_caches:
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001803 named_cache.install(path, name)
nodird6160682017-02-02 13:03:35 -08001804 try:
1805 yield
1806 finally:
dnje289d132017-07-07 11:16:44 -07001807 # Uninstall each named cache, returning it to the cache pool. If an
1808 # uninstall fails for a given cache, it will remain in the task's
1809 # temporary space, get cleaned up by the Swarming bot, and be lost.
1810 #
1811 # If the Swarming bot cannot clean up the cache, it will handle it like
1812 # any other bot file that could not be removed.
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001813 for path, name in reversed(named_caches):
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001814 try:
Marc-Antoine Ruele9558372018-08-03 03:41:22 +00001815 # uninstall() doesn't trim but does call save() implicitly. Trimming
1816 # *must* be done manually via periodic 'run_isolated.py --clean'.
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001817 named_cache.uninstall(path, name)
1818 except local_caching.NamedCacheError:
1819 logging.exception('Error while removing named cache %r at %r. '
1820 'The cache will be lost.', path, name)
nodirf33b8d62016-10-26 22:34:58 -07001821
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001822 extra_args = []
1823 command = []
1824 if options.raw_cmd:
1825 command = args
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001826 if options.relative_cwd:
1827 a = os.path.normpath(os.path.abspath(options.relative_cwd))
1828 if not a.startswith(os.getcwd()):
1829 parser.error(
1830 '--relative-cwd must not try to escape the working directory')
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001831 else:
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001832 if options.relative_cwd:
1833 parser.error('--relative-cwd requires --raw-cmd')
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001834 extra_args = args
1835
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001836 containment_type = subprocess42.Containment.NONE
1837 if options.containment_type == 'AUTO':
1838 containment_type = subprocess42.Containment.AUTO
1839 if options.containment_type == 'JOB_OBJECT':
1840 containment_type = subprocess42.Containment.JOB_OBJECT
1841 containment = subprocess42.Containment(
1842 containment_type=containment_type,
1843 limit_processes=options.limit_processes,
1844 limit_total_committed_memory=options.limit_total_committed_memory)
1845
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001846 data = TaskData(
1847 command=command,
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001848 relative_cwd=options.relative_cwd,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001849 extra_args=extra_args,
1850 isolated_hash=options.isolated,
1851 storage=None,
1852 isolate_cache=isolate_cache,
Junji Watanabe54925c32020-09-08 00:56:18 +00001853 cas_instance=options.cas_instance,
1854 cas_digest=options.cas_digest,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001855 outputs=options.output,
1856 install_named_caches=install_named_caches,
1857 leak_temp_dir=options.leak_temp_dir,
1858 root_dir=_to_unicode(options.root_dir),
1859 hard_timeout=options.hard_timeout,
1860 grace_period=options.grace_period,
1861 bot_file=options.bot_file,
1862 switch_to_account=options.switch_to_account,
1863 install_packages_fn=install_packages_fn,
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001864 use_go_isolated=use_go_isolated,
Takuto Ikuta10cae642020-01-08 08:12:07 +00001865 go_cache_dir=options.cache,
Takuto Ikuta879788c2020-01-10 08:00:26 +00001866 go_cache_policies=local_caching.CachePolicies(
1867 max_cache_size=options.max_cache_size,
1868 min_free_space=options.min_free_space,
1869 max_items=options.max_items,
1870 max_age_secs=None,
1871 ),
Junji Watanabeb03450b2020-09-25 05:09:27 +00001872 cas_cache_dir=options.cas_cache,
1873 cas_cache_policies=local_caching.CachePolicies(
1874 max_cache_size=options.max_cache_size,
1875 min_free_space=options.min_free_space,
1876 max_items=None,
1877 max_age_secs=None,
1878 ),
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001879 env=options.env,
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +00001880 env_prefix=options.env_prefix,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001881 lower_priority=bool(options.lower_priority),
1882 containment=containment)
nodirbe642ff2016-06-09 15:51:51 -07001883 try:
nodir90bc8dc2016-06-15 13:35:21 -07001884 if options.isolate_server:
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001885 server_ref = isolate_storage.ServerRef(
nodir90bc8dc2016-06-15 13:35:21 -07001886 options.isolate_server, options.namespace)
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001887 storage = isolateserver.get_storage(server_ref)
nodir90bc8dc2016-06-15 13:35:21 -07001888 with storage:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001889 data = data._replace(storage=storage)
nodirf33b8d62016-10-26 22:34:58 -07001890 # Hashing schemes used by |storage| and |isolate_cache| MUST match.
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001891 assert storage.server_ref.hash_algo == server_ref.hash_algo
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001892 return run_tha_test(data, options.json)
1893 return run_tha_test(data, options.json)
Junji Watanabe38b28b02020-04-23 10:23:30 +00001894 except (cipd.Error, local_caching.NamedCacheError,
1895 local_caching.NoMoreSpace) as ex:
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +00001896 print(ex.message, file=sys.stderr)
nodirbe642ff2016-06-09 15:51:51 -07001897 return 1
Ye Kuang1d096cb2020-06-26 08:38:21 +00001898 finally:
1899 if tmp_cipd_cache_dir is not None:
1900 try:
1901 file_path.rmtree(tmp_cipd_cache_dir)
1902 except OSError:
1903 logging.exception('Remove tmp_cipd_cache_dir=%s failed',
1904 tmp_cipd_cache_dir)
1905 # Best effort clean up. Failed to do so doesn't affect the outcome.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001906
1907
1908if __name__ == '__main__':
maruel8e4e40c2016-05-30 06:21:07 -07001909 subprocess42.inhibit_os_error_reporting()
csharp@chromium.orgbfb98742013-03-26 20:28:36 +00001910 # Ensure that we are always running with the correct encoding.
vadimsh@chromium.orga4326472013-08-24 02:05:41 +00001911 fix_encoding.fix_encoding()
Ye Kuang2dd17442020-04-22 08:45:52 +00001912 net.set_user_agent('run_isolated.py/' + __version__)
Marc-Antoine Ruel90c98162013-12-18 15:11:57 -05001913 sys.exit(main(sys.argv[1:]))