blob: c897191e4ecb9099589685c146dead6694eac5f5 [file] [log] [blame]
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001#!/usr/bin/env python
maruelea586f32016-04-05 11:11:33 -07002# Copyright 2012 The LUCI Authors. All rights reserved.
maruelf1f5e2a2016-05-25 17:10:39 -07003# Use of this source code is governed under the Apache License, Version 2.0
4# that can be found in the LICENSE file.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00005
nodir55be77b2016-05-03 09:39:57 -07006"""Runs a command with optional isolated input/output.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00007
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +00008run_isolated takes cares of setting up a temporary environment, running a
9command, and tearing it down.
nodir55be77b2016-05-03 09:39:57 -070010
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +000011It handles downloading and uploading isolated files, mapping CIPD packages and
12reusing stateful named caches.
13
14The isolated files, CIPD packages and named caches are kept as a global LRU
15cache.
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -050016
Roberto Carrillo71ade6d2018-10-08 22:30:24 +000017Any ${EXECUTABLE_SUFFIX} on the command line or the environment variables passed
18with the --env option will be replaced with ".exe" string on Windows and "" on
19other platforms.
nodirbe642ff2016-06-09 15:51:51 -070020
Roberto Carrillo71ade6d2018-10-08 22:30:24 +000021Any ${ISOLATED_OUTDIR} on the command line or the environment variables passed
22with the --env option will be replaced by the location of a temporary directory
23upon execution of the command specified in the .isolated file. All content
24written to this directory will be uploaded upon termination and the .isolated
25file describing this directory will be printed to stdout.
bpastene447c1992016-06-20 15:21:47 -070026
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +000027Any ${SWARMING_BOT_FILE} on the command line or the environment variables passed
28with the --env option will be replaced by the value of the --bot-file parameter.
29This file is used by a swarming bot to communicate state of the host to tasks.
30It is written to by the swarming bot's on_before_task() hook in the swarming
31server's custom bot_config.py.
32
33See
34https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/doc/Magic-Values.md
35for all the variables.
36
37See
38https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/swarming_bot/config/bot_config.py
39for more information about bot_config.py.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000040"""
41
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +000042from __future__ import print_function
43
44__version__ = '1.0.1'
maruel@chromium.orgdedbf492013-09-12 20:42:11 +000045
aludwin7556e0c2016-10-26 08:46:10 -070046import argparse
maruel064c0a32016-04-05 11:47:15 -070047import base64
iannucci96fcccc2016-08-30 15:52:22 -070048import collections
vadimsh232f5a82017-01-20 19:23:44 -080049import contextlib
Ye Kuangfff1e502020-07-13 13:21:57 +000050import distutils
Sadaf Matinkhoo10743a62018-03-29 16:28:58 -040051import errno
aludwin7556e0c2016-10-26 08:46:10 -070052import json
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000053import logging
54import optparse
55import os
Takuto Ikuta5c59a842020-01-24 03:05:24 +000056import platform
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -040057import re
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000058import sys
59import tempfile
maruel064c0a32016-04-05 11:47:15 -070060import time
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000061
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000062from utils import tools
63tools.force_local_third_party()
vadimsh@chromium.orga4326472013-08-24 02:05:41 +000064
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000065# third_party/
66from depot_tools import fix_encoding
Takuto Ikuta6e2ff962019-10-29 12:35:27 +000067import six
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000068
69# pylint: disable=ungrouped-imports
70import auth
71import cipd
72import isolate_storage
73import isolateserver
74import local_caching
75from libs import luci_context
Vadim Shtayura6b555c12014-07-23 16:22:18 -070076from utils import file_path
maruel12e30012015-10-09 11:55:35 -070077from utils import fs
maruel064c0a32016-04-05 11:47:15 -070078from utils import large
Marc-Antoine Ruelf74cffe2015-07-15 15:21:34 -040079from utils import logging_utils
Ye Kuang2dd17442020-04-22 08:45:52 +000080from utils import net
Marc-Antoine Ruelcfb60852014-07-02 15:22:00 -040081from utils import on_error
Marc-Antoine Ruelc44f5722015-01-08 16:10:01 -050082from utils import subprocess42
maruel@chromium.orgdedbf492013-09-12 20:42:11 +000083
vadimsh@chromium.orga4326472013-08-24 02:05:41 +000084
maruele2f2cb82016-07-13 14:41:03 -070085# Magic variables that can be found in the isolate task command line.
86ISOLATED_OUTDIR_PARAMETER = '${ISOLATED_OUTDIR}'
87EXECUTABLE_SUFFIX_PARAMETER = '${EXECUTABLE_SUFFIX}'
88SWARMING_BOT_FILE_PARAMETER = '${SWARMING_BOT_FILE}'
89
90
csharp@chromium.orgff2a4662012-11-21 20:49:32 +000091# The name of the log file to use.
92RUN_ISOLATED_LOG_FILE = 'run_isolated.log'
93
maruele2f2cb82016-07-13 14:41:03 -070094
maruele2f2cb82016-07-13 14:41:03 -070095# Use short names for temporary directories. This is driven by Windows, which
96# imposes a relatively short maximum path length of 260 characters, often
97# referred to as MAX_PATH. It is relatively easy to create files with longer
Marc-Antoine Ruel793bff32019-04-18 17:50:48 +000098# path length. A use case is with recursive dependency trees like npm packages.
maruele2f2cb82016-07-13 14:41:03 -070099#
100# It is recommended to start the script with a `root_dir` as short as
101# possible.
102# - ir stands for isolated_run
103# - io stands for isolated_out
104# - it stands for isolated_tmp
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000105# - ic stands for isolated_client
maruele2f2cb82016-07-13 14:41:03 -0700106ISOLATED_RUN_DIR = u'ir'
107ISOLATED_OUT_DIR = u'io'
108ISOLATED_TMP_DIR = u'it'
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000109ISOLATED_CLIENT_DIR = u'ic'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000110_CAS_CLIENT_DIR = u'cc'
maruele2f2cb82016-07-13 14:41:03 -0700111
Takuto Ikuta02edca22019-11-29 10:04:51 +0000112# TODO(tikuta): take these parameter from luci-config?
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +0000113# Update tag by `./client/update_go_clients.sh`.
Takuto Ikutac8c92e62020-04-01 07:07:29 +0000114# Or take revision from
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000115# https://ci.chromium.org/p/infra-internal/g/infra-packagers/console
Takuto Ikuta02edca22019-11-29 10:04:51 +0000116ISOLATED_PACKAGE = 'infra/tools/luci/isolated/${platform}'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000117_CAS_PACKAGE = 'infra/tools/luci/cas/${platform}'
Takuto Ikuta8eb60e02021-03-30 10:27:07 +0000118_LUCI_GO_REVISION = 'git_revision:f5b3e81de1f3e82e32c35d3ac85beff85614340c'
maruele2f2cb82016-07-13 14:41:03 -0700119
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400120# Keep synced with task_request.py
Lei Leife202df2019-06-11 17:33:34 +0000121CACHE_NAME_RE = re.compile(r'^[a-z0-9_]{1,4096}$')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400122
Takuto Ikutac9ddff22021-02-18 07:58:39 +0000123_FREE_SPACE_BUFFER_FOR_CIPD_PACKAGES = 2 * 1024 * 1024 * 1024
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400124
marueld928c862017-06-08 08:20:04 -0700125OUTLIVING_ZOMBIE_MSG = """\
126*** Swarming tried multiple times to delete the %s directory and failed ***
127*** Hard failing the task ***
128
129Swarming detected that your testing script ran an executable, which may have
130started a child executable, and the main script returned early, leaving the
131children executables playing around unguided.
132
133You don't want to leave children processes outliving the task on the Swarming
134bot, do you? The Swarming bot doesn't.
135
136How to fix?
137- For any process that starts children processes, make sure all children
138 processes terminated properly before each parent process exits. This is
139 especially important in very deep process trees.
140 - This must be done properly both in normal successful task and in case of
141 task failure. Cleanup is very important.
142- The Swarming bot sends a SIGTERM in case of timeout.
143 - You have %s seconds to comply after the signal was sent to the process
144 before the process is forcibly killed.
145- To achieve not leaking children processes in case of signals on timeout, you
146 MUST handle signals in each executable / python script and propagate them to
147 children processes.
148 - When your test script (python or binary) receives a signal like SIGTERM or
149 CTRL_BREAK_EVENT on Windows), send it to all children processes and wait for
150 them to terminate before quitting.
151
152See
Marc-Antoine Ruelc7243592018-05-24 17:04:04 -0400153https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/doc/Bot.md#Graceful-termination_aka-the-SIGTERM-and-SIGKILL-dance
marueld928c862017-06-08 08:20:04 -0700154for more information.
155
156*** May the SIGKILL force be with you ***
157"""
158
159
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000160# Currently hardcoded. Eventually could be exposed as a flag once there's value.
161# 3 weeks
162MAX_AGE_SECS = 21*24*60*60
163
Ye Kuang72e6fe82020-08-05 06:30:04 +0000164# TODO(1099655): Enable this once all prod issues are gone.
165_USE_GO_ISOLATED_TO_UPLOAD = False
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000166
Takuto Ikuta7ff4b242020-12-03 08:07:06 +0000167_CAS_KVS_CACHE_THRESHOLD = 5 * 1024 * 1024 * 1024 # 5 GiB
168
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500169TaskData = collections.namedtuple(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000170 'TaskData',
171 [
Takuto Ikuta9a319502019-11-26 07:40:14 +0000172 # List of strings; the command line to use, independent of what was
173 # specified in the isolated file.
174 'command',
175 # Relative directory to start command into.
176 'relative_cwd',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000177 # Hash of the .isolated file that must be retrieved to recreate the tree
178 # of files to run the target executable. The command specified in the
179 # .isolated is executed. Mutually exclusive with command argument.
180 'isolated_hash',
181 # isolateserver.Storage instance to retrieve remote objects. This object
182 # has a reference to an isolateserver.StorageApi, which does the actual
183 # I/O.
184 'storage',
185 # isolateserver.LocalCache instance to keep from retrieving the same
186 # objects constantly by caching the objects retrieved. Can be on-disk or
187 # in-memory.
188 'isolate_cache',
Junji Watanabe54925c32020-09-08 00:56:18 +0000189 # Digest of the input root on RBE-CAS.
190 'cas_digest',
191 # Full CAS instance name.
192 'cas_instance',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000193 # List of paths relative to root_dir to put into the output isolated
194 # bundle upon task completion (see link_outputs_to_outdir).
195 'outputs',
196 # Function (run_dir) => context manager that installs named caches into
197 # |run_dir|.
198 'install_named_caches',
199 # If True, the temporary directory will be deliberately leaked for later
200 # examination.
201 'leak_temp_dir',
202 # Path to the directory to use to create the temporary directory. If not
203 # specified, a random temporary directory is created.
204 'root_dir',
205 # Kills the process if it lasts more than this amount of seconds.
206 'hard_timeout',
207 # Number of seconds to wait between SIGTERM and SIGKILL.
208 'grace_period',
209 # Path to a file with bot state, used in place of ${SWARMING_BOT_FILE}
210 # task command line argument.
211 'bot_file',
212 # Logical account to switch LUCI_CONTEXT into.
213 'switch_to_account',
214 # Context manager dir => CipdInfo, see install_client_and_packages.
215 'install_packages_fn',
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000216 # Use go isolated client.
217 'use_go_isolated',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000218 # Cache directory for go `isolated` client.
Takuto Ikuta057c5342019-12-03 04:05:05 +0000219 'go_cache_dir',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000220 # Parameters passed to go `isolated` client.
Takuto Ikuta879788c2020-01-10 08:00:26 +0000221 'go_cache_policies',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000222 # Cache directory for `cas` client.
223 'cas_cache_dir',
224 # Parameters passed to `cas` client.
225 'cas_cache_policies',
Takuto Ikutaae391c52020-12-03 08:43:45 +0000226 # Parameters for kvs file used by `cas` client.
227 'cas_kvs',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000228 # Environment variables to set.
229 'env',
230 # Environment variables to mutate with relative directories.
231 # Example: {"ENV_KEY": ['relative', 'paths', 'to', 'prepend']}
232 'env_prefix',
233 # Lowers the task process priority.
234 'lower_priority',
235 # subprocess42.Containment instance. Can be None.
236 'containment',
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000237 ])
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500238
239
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500240def _to_str(s):
241 """Downgrades a unicode instance to str. Pass str through as-is."""
242 if isinstance(s, str):
243 return s
244 # This is technically incorrect, especially on Windows. In theory
245 # sys.getfilesystemencoding() should be used to use the right 'ANSI code
246 # page' on Windows, but that causes other problems, as the character set
247 # is very limited.
248 return s.encode('utf-8')
249
250
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -0500251def _to_unicode(s):
252 """Upgrades a str instance to unicode. Pass unicode through as-is."""
Takuto Ikuta95459dd2019-10-29 12:39:47 +0000253 if isinstance(s, six.text_type) or s is None:
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -0500254 return s
255 return s.decode('utf-8')
256
257
maruel03e11842016-07-14 10:50:16 -0700258def make_temp_dir(prefix, root_dir):
259 """Returns a new unique temporary directory."""
Takuto Ikuta6e2ff962019-10-29 12:35:27 +0000260 return six.text_type(tempfile.mkdtemp(prefix=prefix, dir=root_dir))
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +0000261
262
vadimsh9c54b2c2017-07-25 14:08:29 -0700263@contextlib.contextmanager
264def set_luci_context_account(account, tmp_dir):
265 """Sets LUCI_CONTEXT account to be used by the task.
266
267 If 'account' is None or '', does nothing at all. This happens when
268 run_isolated.py is called without '--switch-to-account' flag. In this case,
269 if run_isolated.py is running in some LUCI_CONTEXT environment, the task will
Takuto Ikuta33e2ff32019-09-30 12:44:03 +0000270 just inherit whatever account is already set. This may happen if users invoke
vadimsh9c54b2c2017-07-25 14:08:29 -0700271 run_isolated.py explicitly from their code.
272
273 If the requested account is not defined in the context, switches to
274 non-authenticated access. This happens for Swarming tasks that don't use
275 'task' service accounts.
276
277 If not using LUCI_CONTEXT-based auth, does nothing.
278 If already running as requested account, does nothing.
279 """
280 if not account:
281 # Not actually switching.
282 yield
283 return
284
285 local_auth = luci_context.read('local_auth')
286 if not local_auth:
287 # Not using LUCI_CONTEXT auth at all.
288 yield
289 return
290
291 # See LUCI_CONTEXT.md for the format of 'local_auth'.
292 if local_auth.get('default_account_id') == account:
293 # Already set, no need to switch.
294 yield
295 return
296
297 available = {a['id'] for a in local_auth.get('accounts') or []}
298 if account in available:
299 logging.info('Switching default LUCI_CONTEXT account to %r', account)
300 local_auth['default_account_id'] = account
301 else:
302 logging.warning(
303 'Requested LUCI_CONTEXT account %r is not available (have only %r), '
304 'disabling authentication', account, sorted(available))
305 local_auth.pop('default_account_id', None)
306
307 with luci_context.write(_tmpdir=tmp_dir, local_auth=local_auth):
308 yield
309
310
nodir90bc8dc2016-06-15 13:35:21 -0700311def process_command(command, out_dir, bot_file):
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000312 """Replaces parameters in a command line.
nodirbe642ff2016-06-09 15:51:51 -0700313
314 Raises:
315 ValueError if a parameter is requested in |command| but its value is not
316 provided.
317 """
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000318 return [replace_parameters(arg, out_dir, bot_file) for arg in command]
319
320
321def replace_parameters(arg, out_dir, bot_file):
322 """Replaces parameter tokens with appropriate values in a string.
323
324 Raises:
325 ValueError if a parameter is requested in |arg| but its value is not
326 provided.
327 """
328 arg = arg.replace(EXECUTABLE_SUFFIX_PARAMETER, cipd.EXECUTABLE_SUFFIX)
329 replace_slash = False
330 if ISOLATED_OUTDIR_PARAMETER in arg:
331 if not out_dir:
332 raise ValueError(
333 'output directory is requested in command or env var, but not '
334 'provided; please specify one')
335 arg = arg.replace(ISOLATED_OUTDIR_PARAMETER, out_dir)
336 replace_slash = True
337 if SWARMING_BOT_FILE_PARAMETER in arg:
338 if bot_file:
339 arg = arg.replace(SWARMING_BOT_FILE_PARAMETER, bot_file)
nodirbe642ff2016-06-09 15:51:51 -0700340 replace_slash = True
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000341 else:
342 logging.warning('SWARMING_BOT_FILE_PARAMETER found in command or env '
343 'var, but no bot_file specified. Leaving parameter '
344 'unchanged.')
345 if replace_slash:
346 # Replace slashes only if parameters are present
347 # because of arguments like '${ISOLATED_OUTDIR}/foo/bar'
348 arg = arg.replace('/', os.sep)
349 return arg
maruela9cfd6f2015-09-15 11:03:15 -0700350
351
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000352def set_temp_dir(env, tmp_dir):
353 """Set temp dir to given env var dictionary"""
354 tmp_dir = _to_str(tmp_dir)
355 # pylint: disable=line-too-long
356 # * python respects $TMPDIR, $TEMP, and $TMP in this order, regardless of
357 # platform. So $TMPDIR must be set on all platforms.
358 # https://github.com/python/cpython/blob/2.7/Lib/tempfile.py#L155
359 env['TMPDIR'] = tmp_dir
360 if sys.platform == 'win32':
361 # * chromium's base utils uses GetTempPath().
362 # https://cs.chromium.org/chromium/src/base/files/file_util_win.cc?q=GetTempPath
363 # * Go uses GetTempPath().
364 # * GetTempDir() uses %TMP%, then %TEMP%, then other stuff. So %TMP% must be
365 # set.
366 # https://docs.microsoft.com/en-us/windows/desktop/api/fileapi/nf-fileapi-gettemppathw
367 env['TMP'] = tmp_dir
368 # https://blogs.msdn.microsoft.com/oldnewthing/20150417-00/?p=44213
369 env['TEMP'] = tmp_dir
370 elif sys.platform == 'darwin':
371 # * Chromium uses an hack on macOS before calling into
372 # NSTemporaryDirectory().
373 # https://cs.chromium.org/chromium/src/base/files/file_util_mac.mm?q=GetTempDir
374 # https://developer.apple.com/documentation/foundation/1409211-nstemporarydirectory
375 env['MAC_CHROMIUM_TMPDIR'] = tmp_dir
376 else:
377 # TMPDIR is specified as the POSIX standard envvar for the temp directory.
378 # http://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap08.html
379 # * mktemp on linux respects $TMPDIR.
380 # * Chromium respects $TMPDIR on linux.
381 # https://cs.chromium.org/chromium/src/base/files/file_util_posix.cc?q=GetTempDir
382 # * Go uses $TMPDIR.
383 # https://go.googlesource.com/go/+/go1.10.3/src/os/file_unix.go#307
384 pass
385
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000386
387def get_command_env(tmp_dir, cipd_info, run_dir, env, env_prefixes, out_dir,
388 bot_file):
vadimsh232f5a82017-01-20 19:23:44 -0800389 """Returns full OS environment to run a command in.
390
Robert Iannuccibf5f84c2017-11-22 12:56:50 -0800391 Sets up TEMP, puts directory with cipd binary in front of PATH, exposes
392 CIPD_CACHE_DIR env var, and installs all env_prefixes.
vadimsh232f5a82017-01-20 19:23:44 -0800393
394 Args:
395 tmp_dir: temp directory.
396 cipd_info: CipdInfo object is cipd client is used, None if not.
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500397 run_dir: The root directory the isolated tree is mapped in.
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500398 env: environment variables to use
Robert Iannuccibf5f84c2017-11-22 12:56:50 -0800399 env_prefixes: {"ENV_KEY": ['cwd', 'relative', 'paths', 'to', 'prepend']}
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000400 out_dir: Isolated output directory. Required to be != None if any of the
401 env vars contain ISOLATED_OUTDIR_PARAMETER.
402 bot_file: Required to be != None if any of the env vars contain
403 SWARMING_BOT_FILE_PARAMETER.
vadimsh232f5a82017-01-20 19:23:44 -0800404 """
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500405 out = os.environ.copy()
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +0000406 for k, v in env.items():
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500407 if not v:
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500408 out.pop(k, None)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500409 else:
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000410 out[k] = replace_parameters(v, out_dir, bot_file)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500411
412 if cipd_info:
413 bin_dir = os.path.dirname(cipd_info.client.binary_path)
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500414 out['PATH'] = '%s%s%s' % (_to_str(bin_dir), os.pathsep, out['PATH'])
415 out['CIPD_CACHE_DIR'] = _to_str(cipd_info.cache_dir)
Takuto Ikuta4ec3e8f2021-04-05 10:21:29 +0000416 cipd_info_path = os.path.join(tmp_dir, 'cipd_info.json')
417 with open(cipd_info_path, 'w') as f:
418 json.dump(cipd_info.pins, f)
419 out['ISOLATED_RESOLVED_PACKAGE_VERSIONS_FILE'] = cipd_info_path
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500420
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +0000421 for key, paths in env_prefixes.items():
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500422 assert isinstance(paths, list), paths
423 paths = [os.path.normpath(os.path.join(run_dir, p)) for p in paths]
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500424 cur = out.get(key)
425 if cur:
426 paths.append(cur)
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500427 out[key] = _to_str(os.path.pathsep.join(paths))
vadimsh232f5a82017-01-20 19:23:44 -0800428
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000429 set_temp_dir(out, tmp_dir)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500430 return out
vadimsh232f5a82017-01-20 19:23:44 -0800431
432
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000433def run_command(
434 command, cwd, env, hard_timeout, grace_period, lower_priority, containment):
maruel6be7f9e2015-10-01 12:25:30 -0700435 """Runs the command.
436
437 Returns:
438 tuple(process exit code, bool if had a hard timeout)
439 """
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000440 logging.info(
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000441 'run_command(%s, %s, %s, %s, %s, %s)',
442 command, cwd, hard_timeout, grace_period, lower_priority, containment)
marueleb5fbee2015-09-17 13:01:36 -0700443
maruel6be7f9e2015-10-01 12:25:30 -0700444 exit_code = None
445 had_hard_timeout = False
maruela9cfd6f2015-09-15 11:03:15 -0700446 with tools.Profiler('RunTest'):
maruel6be7f9e2015-10-01 12:25:30 -0700447 proc = None
448 had_signal = []
maruela9cfd6f2015-09-15 11:03:15 -0700449 try:
maruel6be7f9e2015-10-01 12:25:30 -0700450 # TODO(maruel): This code is imperfect. It doesn't handle well signals
451 # during the download phase and there's short windows were things can go
452 # wrong.
453 def handler(signum, _frame):
454 if proc and not had_signal:
455 logging.info('Received signal %d', signum)
456 had_signal.append(True)
maruel556d9052015-10-05 11:12:44 -0700457 raise subprocess42.TimeoutExpired(command, None)
maruel6be7f9e2015-10-01 12:25:30 -0700458
Marc-Antoine Ruel30b80fe2019-02-08 13:51:31 +0000459 proc = subprocess42.Popen(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000460 command, cwd=cwd, env=env, detached=True, close_fds=True,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000461 lower_priority=lower_priority, containment=containment)
maruel6be7f9e2015-10-01 12:25:30 -0700462 with subprocess42.set_signal_handler(subprocess42.STOP_SIGNALS, handler):
463 try:
John Budorickc398f092019-06-10 22:49:44 +0000464 exit_code = proc.wait(hard_timeout or None)
maruel6be7f9e2015-10-01 12:25:30 -0700465 except subprocess42.TimeoutExpired:
466 if not had_signal:
467 logging.warning('Hard timeout')
468 had_hard_timeout = True
469 logging.warning('Sending SIGTERM')
470 proc.terminate()
471
Takuto Ikuta684f7912020-09-29 07:49:49 +0000472 kill_sent = False
maruel6be7f9e2015-10-01 12:25:30 -0700473 # Ignore signals in grace period. Forcibly give the grace period to the
474 # child process.
475 if exit_code is None:
476 ignore = lambda *_: None
477 with subprocess42.set_signal_handler(subprocess42.STOP_SIGNALS, ignore):
478 try:
479 exit_code = proc.wait(grace_period or None)
480 except subprocess42.TimeoutExpired:
481 # Now kill for real. The user can distinguish between the
482 # following states:
483 # - signal but process exited within grace period,
484 # hard_timed_out will be set but the process exit code will be
485 # script provided.
486 # - processed exited late, exit code will be -9 on posix.
487 logging.warning('Grace exhausted; sending SIGKILL')
488 proc.kill()
Takuto Ikuta684f7912020-09-29 07:49:49 +0000489 kill_sent = True
martiniss5c8043e2017-08-01 17:09:43 -0700490 logging.info('Waiting for process exit')
maruel6be7f9e2015-10-01 12:25:30 -0700491 exit_code = proc.wait()
Takuto Ikuta684f7912020-09-29 07:49:49 +0000492
493 # the process group / job object may be dangling so if we didn't kill
494 # it already, give it a poke now.
495 if not kill_sent:
496 proc.kill()
Takuto Ikutaeccf0862020-03-19 03:05:55 +0000497 except OSError as e:
maruela9cfd6f2015-09-15 11:03:15 -0700498 # This is not considered to be an internal error. The executable simply
499 # does not exit.
maruela72f46e2016-02-24 11:05:45 -0800500 sys.stderr.write(
tikuta2d678212019-09-23 23:12:08 +0000501 '<The executable does not exist, a dependent library is missing or '
502 'the command line is too long>\n'
503 '<Check for missing .so/.dll in the .isolate or GN file or length of '
504 'command line args>\n'
Takuto Ikutaeccf0862020-03-19 03:05:55 +0000505 '<Command: %s, Exception: %s>\n' % (command, e))
maruela72f46e2016-02-24 11:05:45 -0800506 if os.environ.get('SWARMING_TASK_ID'):
507 # Give an additional hint when running as a swarming task.
508 sys.stderr.write(
509 '<See the task\'s page for commands to help diagnose this issue '
510 'by reproducing the task locally>\n')
maruela9cfd6f2015-09-15 11:03:15 -0700511 exit_code = 1
512 logging.info(
513 'Command finished with exit code %d (%s)',
514 exit_code, hex(0xffffffff & exit_code))
maruel6be7f9e2015-10-01 12:25:30 -0700515 return exit_code, had_hard_timeout
maruela9cfd6f2015-09-15 11:03:15 -0700516
517
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000518def _run_go_cmd_and_wait(cmd, tmp_dir):
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000519 """
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000520 Runs an external Go command, `isolated` or `cas`, and wait for its completion.
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000521
522 While this is a generic function to launch a subprocess, it has logic that
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000523 is specific to Go `isolated` and `cas` for waiting and logging.
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000524
525 Returns:
526 The subprocess object
527 """
Ye Kuang3c40e9f2020-07-28 13:15:25 +0000528 cmd_str = ' '.join(cmd)
Ye Kuangc1d800f2020-07-28 10:14:55 +0000529 try:
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000530 env = os.environ.copy()
531 set_temp_dir(env, tmp_dir)
532 proc = subprocess42.Popen(cmd, env=env)
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000533
Ye Kuangc1d800f2020-07-28 10:14:55 +0000534 exceeded_max_timeout = True
535 check_period_sec = 30
536 max_checks = 100
537 # max timeout = max_checks * check_period_sec = 50 minutes
538 for i in range(max_checks):
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000539 # This is to prevent I/O timeout error during setup.
Ye Kuangc1d800f2020-07-28 10:14:55 +0000540 try:
541 retcode = proc.wait(check_period_sec)
542 if retcode != 0:
543 raise ValueError("retcode is not 0: %s (cmd=%s)" % (retcode, cmd_str))
544 exceeded_max_timeout = False
545 break
546 except subprocess42.TimeoutExpired:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000547 print('still running (after %d seconds)' % ((i + 1) * check_period_sec))
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000548
Ye Kuangc1d800f2020-07-28 10:14:55 +0000549 if exceeded_max_timeout:
550 proc.terminate()
551 try:
552 proc.wait(check_period_sec)
553 except subprocess42.TimeoutExpired:
554 logging.exception(
555 "failed to terminate? timeout happened after %d seconds",
556 check_period_sec)
557 proc.kill()
558 proc.wait()
559 # Raise unconditionally, because |proc| was forcefully terminated.
560 raise ValueError("timedout after %d seconds (cmd=%s)" %
561 (check_period_sec * max_checks, cmd_str))
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000562
Ye Kuangc1d800f2020-07-28 10:14:55 +0000563 return proc
564 except Exception:
565 logging.exception('Failed to run Go cmd %s', cmd_str)
566 raise
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000567
568
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000569def _fetch_and_map_with_cas(cas_client, digest, instance, output_dir, cache_dir,
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +0000570 policies, kvs_dir, tmp_dir):
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000571 """
572 Fetches a CAS tree using cas client, create the tree and returns download
573 stats.
574 """
575
576 start = time.time()
577 result_json_handle, result_json_path = tempfile.mkstemp(
578 prefix=u'fetch-and-map-result-', suffix=u'.json')
579 os.close(result_json_handle)
580 try:
581 cmd = [
582 cas_client,
583 'download',
584 '-digest',
585 digest,
586 '-cas-instance',
587 instance,
588 # flags for cache.
589 '-cache-dir',
590 cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000591 '-cache-max-size',
592 str(policies.max_cache_size),
593 '-cache-min-free-space',
594 str(policies.min_free_space),
595 # flags for output.
596 '-dir',
597 output_dir,
598 '-dump-stats-json',
599 result_json_path,
Takuto Ikuta557025b2021-02-01 08:37:40 +0000600 '-log-level',
601 'info'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000602 ]
Takuto Ikutaae391c52020-12-03 08:43:45 +0000603
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +0000604 if kvs_dir:
605 cmd.extend(['-kvs-dir', kvs_dir])
Takuto Ikutaae391c52020-12-03 08:43:45 +0000606
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000607 _run_go_cmd_and_wait(cmd, tmp_dir)
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000608
609 with open(result_json_path) as json_file:
610 result_json = json.load(json_file)
611
612 return {
613 'duration': time.time() - start,
614 'items_cold': result_json['items_cold'],
615 'items_hot': result_json['items_hot'],
616 }
617 finally:
618 fs.remove(result_json_path)
619
620
621def _fetch_and_map_with_go_isolated(isolated_hash, storage, outdir,
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000622 go_cache_dir, policies, isolated_client,
623 tmp_dir):
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000624 """
625 Fetches an isolated tree using go client, create the tree and returns
Takuto Ikuta57219f42020-11-02 07:35:36 +0000626 stats.
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000627 """
628 start = time.time()
629 server_ref = storage.server_ref
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000630 result_json_handle, result_json_path = tempfile.mkstemp(
631 prefix=u'fetch-and-map-result-', suffix=u'.json')
632 os.close(result_json_handle)
633 try:
Ye Kuanga98764c2020-04-09 03:17:37 +0000634 cmd = [
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000635 isolated_client,
636 'download',
637 '-isolate-server',
638 server_ref.url,
639 '-namespace',
640 server_ref.namespace,
641 '-isolated',
642 isolated_hash,
643
644 # flags for cache
645 '-cache-dir',
Takuto Ikuta057c5342019-12-03 04:05:05 +0000646 go_cache_dir,
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000647 '-cache-max-items',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000648 str(policies.max_items),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000649 '-cache-max-size',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000650 str(policies.max_cache_size),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000651 '-cache-min-free-space',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000652 str(policies.min_free_space),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000653
654 # flags for output
655 '-output-dir',
656 outdir,
657 '-fetch-and-map-result-json',
658 result_json_path,
Ye Kuanga98764c2020-04-09 03:17:37 +0000659 ]
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000660 _run_go_cmd_and_wait(cmd, tmp_dir)
Takuto Ikuta3153e3b2020-02-18 06:11:47 +0000661
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000662 with open(result_json_path) as json_file:
663 result_json = json.load(json_file)
664
Takuto Ikuta57219f42020-11-02 07:35:36 +0000665 return {
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000666 'duration': time.time() - start,
667 'items_cold': result_json['items_cold'],
668 'items_hot': result_json['items_hot'],
Ye Kuang65a1de52020-10-16 08:31:16 +0000669 'initial_number_items': result_json['initial_number_items'],
670 'initial_size': result_json['initial_size'],
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000671 }
672 finally:
673 fs.remove(result_json_path)
674
675
676# TODO(crbug.com/932396): remove this function.
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000677def fetch_and_map(isolated_hash, storage, cache, outdir):
Takuto Ikuta57219f42020-11-02 07:35:36 +0000678 """Fetches an isolated tree, create the tree and returns stats."""
nodir6f801882016-04-29 14:41:50 -0700679 start = time.time()
Takuto Ikuta57219f42020-11-02 07:35:36 +0000680 isolateserver.fetch_isolated(
nodir6f801882016-04-29 14:41:50 -0700681 isolated_hash=isolated_hash,
682 storage=storage,
683 cache=cache,
maruel4409e302016-07-19 14:25:51 -0700684 outdir=outdir,
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000685 use_symlinks=False)
Takuto Ikuta2b9640e2019-06-19 00:53:23 +0000686 hot = (collections.Counter(cache.used) -
687 collections.Counter(cache.added)).elements()
Takuto Ikuta57219f42020-11-02 07:35:36 +0000688 return {
Takuto Ikuta630f99d2020-07-02 12:59:35 +0000689 'duration': time.time() - start,
690 'items_cold': base64.b64encode(large.pack(sorted(cache.added))).decode(),
691 'items_hot': base64.b64encode(large.pack(sorted(hot))).decode(),
nodir6f801882016-04-29 14:41:50 -0700692 }
693
694
aludwin0a8e17d2016-10-27 15:57:39 -0700695def link_outputs_to_outdir(run_dir, out_dir, outputs):
696 """Links any named outputs to out_dir so they can be uploaded.
697
698 Raises an error if the file already exists in that directory.
699 """
700 if not outputs:
701 return
702 isolateserver.create_directories(out_dir, outputs)
703 for o in outputs:
Sadaf Matinkhoo10743a62018-03-29 16:28:58 -0400704 copy_recursively(os.path.join(run_dir, o), os.path.join(out_dir, o))
705
706
707def copy_recursively(src, dst):
708 """Efficiently copies a file or directory from src_dir to dst_dir.
709
710 `item` may be a file, directory, or a symlink to a file or directory.
711 All symlinks are replaced with their targets, so the resulting
712 directory structure in dst_dir will never have any symlinks.
713
714 To increase speed, copy_recursively hardlinks individual files into the
715 (newly created) directory structure if possible, unlike Python's
716 shutil.copytree().
717 """
718 orig_src = src
719 try:
720 # Replace symlinks with their final target.
721 while fs.islink(src):
722 res = fs.readlink(src)
723 src = os.path.join(os.path.dirname(src), res)
724 # TODO(sadafm): Explicitly handle cyclic symlinks.
725
726 # Note that fs.isfile (which is a wrapper around os.path.isfile) throws
727 # an exception if src does not exist. A warning will be logged in that case.
728 if fs.isfile(src):
729 file_path.link_file(dst, src, file_path.HARDLINK_WITH_FALLBACK)
730 return
731
732 if not fs.exists(dst):
733 os.makedirs(dst)
734
735 for child in fs.listdir(src):
736 copy_recursively(os.path.join(src, child), os.path.join(dst, child))
737
738 except OSError as e:
739 if e.errno == errno.ENOENT:
740 logging.warning('Path %s does not exist or %s is a broken symlink',
741 src, orig_src)
742 else:
743 logging.info("Couldn't collect output file %s: %s", src, e)
aludwin0a8e17d2016-10-27 15:57:39 -0700744
745
Ye Kuangfb0bad62020-07-28 08:07:25 +0000746def _upload_with_py(storage, out_dir):
747
748 def process_stats(f_st):
749 st = sorted(i.size for i in f_st)
750 return base64.b64encode(large.pack(st)).decode()
751
752 try:
753 results, f_cold, f_hot = isolateserver.archive_files_to_storage(
754 storage, [out_dir], None, verify_push=True)
755
756 isolated = list(results.values())[0]
757 cold = process_stats(f_cold)
758 hot = process_stats(f_hot)
759 return isolated, cold, hot
760
761 except isolateserver.Aborted:
762 # This happens when a signal SIGTERM was received while uploading data.
763 # There is 2 causes:
764 # - The task was too slow and was about to be killed anyway due to
765 # exceeding the hard timeout.
766 # - The amount of data uploaded back is very large and took too much
767 # time to archive.
768 sys.stderr.write('Received SIGTERM while uploading')
769 # Re-raise, so it will be treated as an internal failure.
770 raise
771
772
773def _upload_with_go(storage, outdir, isolated_client):
774 """
775 Uploads results back using the Go `isolated` CLI.
776 """
777 server_ref = storage.server_ref
778 isolated_handle, isolated_path = tempfile.mkstemp(
779 prefix=u'isolated-hash-', suffix=u'.txt')
780 stats_json_handle, stats_json_path = tempfile.mkstemp(
781 prefix=u'dump-stats-', suffix=u'.json')
782 os.close(isolated_handle)
783 os.close(stats_json_handle)
784 try:
785 cmd = [
786 isolated_client,
787 'archive',
788 '-isolate-server',
789 server_ref.url,
790 '-namespace',
791 server_ref.namespace,
792 '-dirs',
793 # Format: <working directory>:<relative path to dir>
794 outdir + ':',
795
796 # output
797 '-dump-hash',
798 isolated_path,
799 '-dump-stats-json',
800 stats_json_path,
Ye Kuangbc4e8402020-07-29 09:54:30 +0000801 '-quiet',
Ye Kuangfb0bad62020-07-28 08:07:25 +0000802 ]
Ye Kuang0023dc52020-08-04 05:28:41 +0000803 # Will do exponential backoff, e.g. 10, 20, 40...
804 # This mitigates https://crbug.com/1094369, where there is a data race on
805 # the uploaded files.
806 backoff = 10
Takuto Ikutae0bfec72020-08-28 02:52:52 +0000807 started = time.time()
Ye Kuang0023dc52020-08-04 05:28:41 +0000808 while True:
809 try:
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000810 _run_go_cmd_and_wait(cmd, tmp_dir)
Ye Kuang0023dc52020-08-04 05:28:41 +0000811 break
812 except Exception:
Takuto Ikutae0bfec72020-08-28 02:52:52 +0000813 if time.time() > started + 60 * 2:
814 # This is to not wait task having leaked process long time.
Ye Kuang0023dc52020-08-04 05:28:41 +0000815 raise
816
817 on_error.report('error before %d second backoff' % backoff)
818 logging.exception(
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000819 '_run_go_cmd_and_wait() failed, will retry after %d seconds',
Ye Kuang0023dc52020-08-04 05:28:41 +0000820 backoff)
821 time.sleep(backoff)
822 backoff *= 2
Ye Kuangfb0bad62020-07-28 08:07:25 +0000823
824 with open(isolated_path) as isol_file:
825 isolated = isol_file.read()
826 with open(stats_json_path) as json_file:
827 stats_json = json.load(json_file)
828
829 return isolated, stats_json['items_cold'], stats_json['items_hot']
830 finally:
831 fs.remove(isolated_path)
832 fs.remove(stats_json_path)
833
834
Ye Kuangbc4e8402020-07-29 09:54:30 +0000835def upload_out_dir(storage, out_dir, go_isolated_client):
836 """Uploads the results in |out_dir| back, if there is any.
maruela9cfd6f2015-09-15 11:03:15 -0700837
838 Returns:
Ye Kuangbc4e8402020-07-29 09:54:30 +0000839 tuple(outputs_ref, stats)
maruel064c0a32016-04-05 11:47:15 -0700840 - outputs_ref: a dict referring to the results archived back to the isolated
841 server, if applicable.
nodir6f801882016-04-29 14:41:50 -0700842 - stats: uploading stats.
maruela9cfd6f2015-09-15 11:03:15 -0700843 """
maruela9cfd6f2015-09-15 11:03:15 -0700844 # Upload out_dir and generate a .isolated file out of this directory. It is
845 # only done if files were written in the directory.
846 outputs_ref = None
Ye Kuangfb0bad62020-07-28 08:07:25 +0000847 cold = ''
848 hot = ''
nodir6f801882016-04-29 14:41:50 -0700849 start = time.time()
850
maruel12e30012015-10-09 11:55:35 -0700851 if fs.isdir(out_dir) and fs.listdir(out_dir):
maruela9cfd6f2015-09-15 11:03:15 -0700852 with tools.Profiler('ArchiveOutput'):
Ye Kuangfb0bad62020-07-28 08:07:25 +0000853 isolated = None
Ye Kuang72e6fe82020-08-05 06:30:04 +0000854 if _USE_GO_ISOLATED_TO_UPLOAD and go_isolated_client is not None:
Ye Kuangfb0bad62020-07-28 08:07:25 +0000855 isolated, cold, hot = _upload_with_go(storage, out_dir,
856 go_isolated_client)
Ye Kuang72e6fe82020-08-05 06:30:04 +0000857 else:
858 isolated, cold, hot = _upload_with_py(storage, out_dir)
Ye Kuangfb0bad62020-07-28 08:07:25 +0000859 outputs_ref = {
860 'isolated': isolated,
861 'isolatedserver': storage.server_ref.url,
862 'namespace': storage.server_ref.namespace,
863 }
nodir6f801882016-04-29 14:41:50 -0700864
nodir6f801882016-04-29 14:41:50 -0700865 stats = {
Takuto Ikuta630f99d2020-07-02 12:59:35 +0000866 'duration': time.time() - start,
Ye Kuangfb0bad62020-07-28 08:07:25 +0000867 'items_cold': cold,
868 'items_hot': hot,
nodir6f801882016-04-29 14:41:50 -0700869 }
Ye Kuangbc4e8402020-07-29 09:54:30 +0000870 return outputs_ref, stats
maruela9cfd6f2015-09-15 11:03:15 -0700871
872
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000873def upload_outdir_with_cas(cas_client, cas_instance, outdir, tmp_dir):
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000874 """Uploads the results in |outdir|, if there is any.
875
876 Returns:
877 tuple(root_digest, stats)
878 - root_digest: a digest of the output directory.
879 - stats: uploading stats.
880 """
881 digest_file_handle, digest_path = tempfile.mkstemp(
882 prefix=u'cas-digest', suffix=u'.txt')
883 os.close(digest_file_handle)
884 stats_json_handle, stats_json_path = tempfile.mkstemp(
885 prefix=u'upload-stats', suffix=u'.json')
886 os.close(stats_json_handle)
887
888 try:
889 cmd = [
890 cas_client,
891 'archive',
892 '-cas-instance',
893 cas_instance,
894 '-paths',
895 # Format: <working directory>:<relative path to dir>
896 outdir + ':',
897 # output
898 '-dump-digest',
899 digest_path,
900 '-dump-stats-json',
901 stats_json_path,
902 ]
903
904 start = time.time()
905
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +0000906 _run_go_cmd_and_wait(cmd, tmp_dir)
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000907
908 with open(digest_path) as digest_file:
909 digest = digest_file.read()
Junji Watanabec208b302020-09-25 09:18:27 +0000910 h, s = digest.split('/')
911 cas_output_root = {
912 'cas_instance': cas_instance,
913 'digest': {
914 'hash': h,
915 'size_bytes': int(s)
916 }
917 }
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000918 with open(stats_json_path) as stats_file:
919 stats = json.load(stats_file)
920
921 stats['duration'] = time.time() - start
922
Junji Watanabec208b302020-09-25 09:18:27 +0000923 return cas_output_root, stats
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000924 finally:
925 fs.remove(digest_path)
926 fs.remove(stats_json_path)
927
928
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500929def map_and_run(data, constant_run_path):
nodir55be77b2016-05-03 09:39:57 -0700930 """Runs a command with optional isolated input/output.
931
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500932 Arguments:
933 - data: TaskData instance.
934 - constant_run_path: TODO
nodir55be77b2016-05-03 09:39:57 -0700935
936 Returns metadata about the result.
937 """
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000938
939 if data.isolate_cache:
940 download_stats = {
941 #'duration': 0.,
942 'initial_number_items': len(data.isolate_cache),
943 'initial_size': data.isolate_cache.total_size,
944 #'items_cold': '<large.pack()>',
945 #'items_hot': '<large.pack()>',
946 }
947 else:
948 # TODO(tikuta): take stats from state.json in this case too.
949 download_stats = {}
950
maruela9cfd6f2015-09-15 11:03:15 -0700951 result = {
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000952 'duration': None,
953 'exit_code': None,
954 'had_hard_timeout': False,
955 'internal_failure': 'run_isolated did not complete properly',
956 'stats': {
957 #'cipd': {
958 # 'duration': 0.,
959 # 'get_client_duration': 0.,
960 #},
961 'isolated': {
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000962 'download': download_stats,
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000963 #'upload': {
964 # 'duration': 0.,
965 # 'items_cold': '<large.pack()>',
966 # 'items_hot': '<large.pack()>',
967 #},
968 },
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000969 },
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000970 #'cipd_pins': {
971 # 'packages': [
972 # {'package_name': ..., 'version': ..., 'path': ...},
973 # ...
974 # ],
975 # 'client_package': {'package_name': ..., 'version': ...},
976 #},
977 'outputs_ref': None,
Junji Watanabe54925c32020-09-08 00:56:18 +0000978 'cas_output_root': None,
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000979 'version': 5,
maruela9cfd6f2015-09-15 11:03:15 -0700980 }
nodirbe642ff2016-06-09 15:51:51 -0700981
Takuto Ikutad46ea762020-10-07 05:43:22 +0000982 assert os.path.isabs(data.root_dir), ("data.root_dir is not abs path: %s" %
983 data.root_dir)
984 file_path.ensure_tree(data.root_dir, 0o700)
985
maruele2f2cb82016-07-13 14:41:03 -0700986 # See comment for these constants.
maruelcffa0542017-04-07 08:39:20 -0700987 # TODO(maruel): This is not obvious. Change this to become an error once we
988 # make the constant_run_path an exposed flag.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500989 if constant_run_path and data.root_dir:
990 run_dir = os.path.join(data.root_dir, ISOLATED_RUN_DIR)
maruel5c4eed82017-05-26 05:33:40 -0700991 if os.path.isdir(run_dir):
992 file_path.rmtree(run_dir)
Lei Leife202df2019-06-11 17:33:34 +0000993 os.mkdir(run_dir, 0o700)
maruelcffa0542017-04-07 08:39:20 -0700994 else:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500995 run_dir = make_temp_dir(ISOLATED_RUN_DIR, data.root_dir)
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000996
997 # True if CAS is used for download/upload files.
998 use_cas = bool(data.cas_digest)
999
maruel03e11842016-07-14 10:50:16 -07001000 # storage should be normally set but don't crash if it is not. This can happen
1001 # as Swarming task can run without an isolate server.
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001002 out_dir = None
1003 if data.storage or use_cas:
1004 out_dir = make_temp_dir(ISOLATED_OUT_DIR, data.root_dir)
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001005 tmp_dir = make_temp_dir(ISOLATED_TMP_DIR, data.root_dir)
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001006 isolated_client_dir = make_temp_dir(ISOLATED_CLIENT_DIR, data.root_dir)
nodir55be77b2016-05-03 09:39:57 -07001007 cwd = run_dir
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001008 if data.relative_cwd:
1009 cwd = os.path.normpath(os.path.join(cwd, data.relative_cwd))
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001010 command = data.command
Ye Kuangfb0bad62020-07-28 08:07:25 +00001011 go_isolated_client = None
1012 if data.use_go_isolated:
1013 go_isolated_client = os.path.join(isolated_client_dir,
1014 'isolated' + cipd.EXECUTABLE_SUFFIX)
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001015
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001016 cas_client = None
1017 cas_client_dir = make_temp_dir(_CAS_CLIENT_DIR, data.root_dir)
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001018 if use_cas:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001019 cas_client = os.path.join(cas_client_dir, 'cas' + cipd.EXECUTABLE_SUFFIX)
1020
nodir55be77b2016-05-03 09:39:57 -07001021 try:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001022 with data.install_packages_fn(run_dir, isolated_client_dir,
1023 cas_client_dir) as cipd_info:
vadimsh232f5a82017-01-20 19:23:44 -08001024 if cipd_info:
1025 result['stats']['cipd'] = cipd_info.stats
1026 result['cipd_pins'] = cipd_info.pins
nodir90bc8dc2016-06-15 13:35:21 -07001027
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001028 isolated_stats = result['stats'].setdefault('isolated', {})
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001029 if data.isolated_hash:
Takuto Ikutad03ffcc2019-12-02 01:04:23 +00001030 if data.use_go_isolated:
Takuto Ikuta57219f42020-11-02 07:35:36 +00001031 stats = _fetch_and_map_with_go_isolated(
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001032 isolated_hash=data.isolated_hash,
1033 storage=data.storage,
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001034 outdir=run_dir,
1035 go_cache_dir=data.go_cache_dir,
Takuto Ikuta879788c2020-01-10 08:00:26 +00001036 policies=data.go_cache_policies,
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +00001037 isolated_client=go_isolated_client,
1038 tmp_dir=tmp_dir)
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001039 else:
Takuto Ikuta57219f42020-11-02 07:35:36 +00001040 stats = fetch_and_map(
Takuto Ikutad03ffcc2019-12-02 01:04:23 +00001041 isolated_hash=data.isolated_hash,
1042 storage=data.storage,
1043 cache=data.isolate_cache,
Takuto Ikuta16fac4b2019-12-09 04:57:18 +00001044 outdir=run_dir)
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +00001045 isolated_stats['download'].update(stats)
Takuto Ikutab58dbd12020-06-05 09:29:14 +00001046
Junji Watanabe54925c32020-09-08 00:56:18 +00001047 elif data.cas_digest:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001048 stats = _fetch_and_map_with_cas(
1049 cas_client=cas_client,
1050 digest=data.cas_digest,
1051 instance=data.cas_instance,
1052 output_dir=run_dir,
Junji Watanabeb03450b2020-09-25 05:09:27 +00001053 cache_dir=data.cas_cache_dir,
Takuto Ikutaae391c52020-12-03 08:43:45 +00001054 policies=data.cas_cache_policies,
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +00001055 kvs_dir=data.cas_kvs,
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +00001056 tmp_dir=tmp_dir)
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001057 isolated_stats['download'].update(stats)
Junji Watanabe54925c32020-09-08 00:56:18 +00001058
maruelabec63c2017-04-26 11:53:24 -07001059 if not command:
1060 # Handle this as a task failure, not an internal failure.
1061 sys.stderr.write(
1062 '<No command was specified!>\n'
1063 '<Please secify a command when triggering your Swarming task>\n')
1064 result['exit_code'] = 1
1065 return result
nodirbe642ff2016-06-09 15:51:51 -07001066
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001067 if not cwd.startswith(run_dir):
1068 # Handle this as a task failure, not an internal failure. This is a
1069 # 'last chance' way to gate against directory escape.
1070 sys.stderr.write('<Relative CWD is outside of run directory!>\n')
1071 result['exit_code'] = 1
1072 return result
1073
1074 if not os.path.isdir(cwd):
1075 # Accepts relative_cwd that does not exist.
Lei Leife202df2019-06-11 17:33:34 +00001076 os.makedirs(cwd, 0o700)
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001077
vadimsh232f5a82017-01-20 19:23:44 -08001078 # If we have an explicit list of files to return, make sure their
1079 # directories exist now.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001080 if data.storage and data.outputs:
1081 isolateserver.create_directories(run_dir, data.outputs)
aludwin0a8e17d2016-10-27 15:57:39 -07001082
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001083 with data.install_named_caches(run_dir):
nodird6160682017-02-02 13:03:35 -08001084 sys.stdout.flush()
1085 start = time.time()
1086 try:
vadimsh9c54b2c2017-07-25 14:08:29 -07001087 # Need to switch the default account before 'get_command_env' call,
1088 # so it can grab correct value of LUCI_CONTEXT env var.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001089 with set_luci_context_account(data.switch_to_account, tmp_dir):
1090 env = get_command_env(
Roberto Carrillo71ade6d2018-10-08 22:30:24 +00001091 tmp_dir, cipd_info, run_dir, data.env, data.env_prefix, out_dir,
1092 data.bot_file)
Brian Sheedy7a761172019-08-30 22:55:14 +00001093 command = tools.find_executable(command, env)
Robert Iannucci24ae76a2018-02-26 12:51:18 -08001094 command = process_command(command, out_dir, data.bot_file)
1095 file_path.ensure_command_has_abs_path(command, cwd)
1096
vadimsh9c54b2c2017-07-25 14:08:29 -07001097 result['exit_code'], result['had_hard_timeout'] = run_command(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +00001098 command, cwd, env, data.hard_timeout, data.grace_period,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001099 data.lower_priority, data.containment)
nodird6160682017-02-02 13:03:35 -08001100 finally:
1101 result['duration'] = max(time.time() - start, 0)
Seth Koehler49139812017-12-19 13:59:33 -05001102
Ye Kuangbc4e8402020-07-29 09:54:30 +00001103 if out_dir:
1104 # Try to link files to the output directory, if specified.
1105 link_outputs_to_outdir(run_dir, out_dir, data.outputs)
1106 isolated_stats = result['stats'].setdefault('isolated', {})
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001107 if use_cas:
1108 result['cas_output_root'], isolated_stats['upload'] = (
Takuto Ikuta0f8a19c2021-03-02 00:50:38 +00001109 upload_outdir_with_cas(cas_client, data.cas_instance, out_dir,
1110 tmp_dir))
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001111 else:
1112 # This could use |go_isolated_client|, so make sure it runs when the
1113 # CIPD package still exists.
1114 result['outputs_ref'], isolated_stats['upload'] = (
1115 upload_out_dir(data.storage, out_dir, go_isolated_client))
Seth Koehler49139812017-12-19 13:59:33 -05001116 # We successfully ran the command, set internal_failure back to
1117 # None (even if the command failed, it's not an internal error).
1118 result['internal_failure'] = None
maruela9cfd6f2015-09-15 11:03:15 -07001119 except Exception as e:
nodir90bc8dc2016-06-15 13:35:21 -07001120 # An internal error occurred. Report accordingly so the swarming task will
1121 # be retried automatically.
maruel12e30012015-10-09 11:55:35 -07001122 logging.exception('internal failure: %s', e)
maruela9cfd6f2015-09-15 11:03:15 -07001123 result['internal_failure'] = str(e)
1124 on_error.report(None)
aludwin0a8e17d2016-10-27 15:57:39 -07001125
1126 # Clean up
maruela9cfd6f2015-09-15 11:03:15 -07001127 finally:
1128 try:
Ye Kuangbc4e8402020-07-29 09:54:30 +00001129 success = True
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001130 if data.leak_temp_dir:
nodir32a1ec12016-10-26 18:34:07 -07001131 success = True
maruela9cfd6f2015-09-15 11:03:15 -07001132 logging.warning(
1133 'Deliberately leaking %s for later examination', run_dir)
marueleb5fbee2015-09-17 13:01:36 -07001134 else:
maruel84537cb2015-10-16 14:21:28 -07001135 # On Windows rmtree(run_dir) call above has a synchronization effect: it
1136 # finishes only when all task child processes terminate (since a running
1137 # process locks *.exe file). Examine out_dir only after that call
1138 # completes (since child processes may write to out_dir too and we need
1139 # to wait for them to finish).
Junji Watanabeb03450b2020-09-25 05:09:27 +00001140 dirs_to_remove = [run_dir, tmp_dir, isolated_client_dir, cas_client_dir]
Ye Kuangbc4e8402020-07-29 09:54:30 +00001141 if out_dir:
1142 dirs_to_remove.append(out_dir)
1143 for directory in dirs_to_remove:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001144 if not fs.isdir(directory):
1145 continue
Junji Watanabe9cdfff52021-01-08 07:20:35 +00001146 start = time.time()
maruel84537cb2015-10-16 14:21:28 -07001147 try:
Junji Watanabecc4eefd2021-01-19 01:46:10 +00001148 file_path.rmtree(directory)
maruel84537cb2015-10-16 14:21:28 -07001149 except OSError as e:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001150 logging.error('rmtree(%r) failed: %s', directory, e)
maruel84537cb2015-10-16 14:21:28 -07001151 success = False
Junji Watanabe9cdfff52021-01-08 07:20:35 +00001152 finally:
1153 logging.info('Cleanup: rmtree(%r) took %d seconds', directory,
1154 time.time() - start)
maruel84537cb2015-10-16 14:21:28 -07001155 if not success:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001156 sys.stderr.write(
1157 OUTLIVING_ZOMBIE_MSG % (directory, data.grace_period))
Takuto Ikutad7d64e12020-07-31 06:18:45 +00001158 subprocess42.check_call(['tasklist.exe', '/V'], stdout=sys.stderr)
maruel84537cb2015-10-16 14:21:28 -07001159 if result['exit_code'] == 0:
1160 result['exit_code'] = 1
maruela9cfd6f2015-09-15 11:03:15 -07001161
maruela9cfd6f2015-09-15 11:03:15 -07001162 if not success and result['exit_code'] == 0:
1163 result['exit_code'] = 1
1164 except Exception as e:
1165 # Swallow any exception in the main finally clause.
nodir9130f072016-05-27 13:59:08 -07001166 if out_dir:
1167 logging.exception('Leaking out_dir %s: %s', out_dir, e)
maruela9cfd6f2015-09-15 11:03:15 -07001168 result['internal_failure'] = str(e)
Takuto Ikutaa9a907b2020-04-17 08:50:50 +00001169 on_error.report(None)
maruela9cfd6f2015-09-15 11:03:15 -07001170 return result
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -05001171
1172
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001173def run_tha_test(data, result_json):
nodir55be77b2016-05-03 09:39:57 -07001174 """Runs an executable and records execution metadata.
1175
nodir55be77b2016-05-03 09:39:57 -07001176 If isolated_hash is specified, downloads the dependencies in the cache,
1177 hardlinks them into a temporary directory and runs the command specified in
1178 the .isolated.
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -05001179
1180 A temporary directory is created to hold the output files. The content inside
1181 this directory will be uploaded back to |storage| packaged as a .isolated
1182 file.
1183
1184 Arguments:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001185 - data: TaskData instance.
1186 - result_json: File path to dump result metadata into. If set, the process
1187 exit code is always 0 unless an internal error occurred.
maruela9cfd6f2015-09-15 11:03:15 -07001188
1189 Returns:
1190 Process exit code that should be used.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001191 """
maruela76b9ee2015-12-15 06:18:08 -08001192 if result_json:
1193 # Write a json output file right away in case we get killed.
1194 result = {
Junji Watanabe54925c32020-09-08 00:56:18 +00001195 'exit_code': None,
1196 'had_hard_timeout': False,
1197 'internal_failure': 'Was terminated before completion',
1198 'outputs_ref': None,
1199 'cas_output_root': None,
1200 'version': 5,
maruela76b9ee2015-12-15 06:18:08 -08001201 }
1202 tools.write_json(result_json, result, dense=True)
1203
maruela9cfd6f2015-09-15 11:03:15 -07001204 # run_isolated exit code. Depends on if result_json is used or not.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001205 result = map_and_run(data, True)
maruela9cfd6f2015-09-15 11:03:15 -07001206 logging.info('Result:\n%s', tools.format_json(result, dense=True))
bpastene3ae09522016-06-10 17:12:59 -07001207
maruela9cfd6f2015-09-15 11:03:15 -07001208 if result_json:
maruel05d5a882015-09-21 13:59:02 -07001209 # We've found tests to delete 'work' when quitting, causing an exception
1210 # here. Try to recreate the directory if necessary.
nodire5028a92016-04-29 14:38:21 -07001211 file_path.ensure_tree(os.path.dirname(result_json))
maruela9cfd6f2015-09-15 11:03:15 -07001212 tools.write_json(result_json, result, dense=True)
1213 # Only return 1 if there was an internal error.
1214 return int(bool(result['internal_failure']))
maruel@chromium.org781ccf62013-09-17 19:39:47 +00001215
maruela9cfd6f2015-09-15 11:03:15 -07001216 # Marshall into old-style inline output.
1217 if result['outputs_ref']:
Marc-Antoine Ruel793bff32019-04-18 17:50:48 +00001218 # pylint: disable=unsubscriptable-object
maruela9cfd6f2015-09-15 11:03:15 -07001219 data = {
Junji Watanabe38b28b02020-04-23 10:23:30 +00001220 'hash': result['outputs_ref']['isolated'],
1221 'namespace': result['outputs_ref']['namespace'],
1222 'storage': result['outputs_ref']['isolatedserver'],
maruela9cfd6f2015-09-15 11:03:15 -07001223 }
Marc-Antoine Ruelc44f5722015-01-08 16:10:01 -05001224 sys.stdout.flush()
Junji Watanabe38b28b02020-04-23 10:23:30 +00001225 print('[run_isolated_out_hack]%s[/run_isolated_out_hack]' %
1226 tools.format_json(data, dense=True))
maruelb76604c2015-11-11 11:53:44 -08001227 sys.stdout.flush()
maruela9cfd6f2015-09-15 11:03:15 -07001228 return result['exit_code'] or int(bool(result['internal_failure']))
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001229
1230
iannuccib58d10d2017-03-18 02:00:25 -07001231# Yielded by 'install_client_and_packages'.
vadimsh232f5a82017-01-20 19:23:44 -08001232CipdInfo = collections.namedtuple('CipdInfo', [
1233 'client', # cipd.CipdClient object
1234 'cache_dir', # absolute path to bot-global cipd tag and instance cache
1235 'stats', # dict with stats to return to the server
1236 'pins', # dict with installed cipd pins to return to the server
1237])
1238
1239
1240@contextlib.contextmanager
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001241def noop_install_packages(_run_dir, _isolated_dir, _cas_dir):
iannuccib58d10d2017-03-18 02:00:25 -07001242 """Placeholder for 'install_client_and_packages' if cipd is disabled."""
vadimsh232f5a82017-01-20 19:23:44 -08001243 yield None
1244
1245
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001246def _install_packages(run_dir, cipd_cache_dir, client, packages):
iannuccib58d10d2017-03-18 02:00:25 -07001247 """Calls 'cipd ensure' for packages.
1248
1249 Args:
1250 run_dir (str): root of installation.
1251 cipd_cache_dir (str): the directory to use for the cipd package cache.
1252 client (CipdClient): the cipd client to use
1253 packages: packages to install, list [(path, package_name, version), ...].
iannuccib58d10d2017-03-18 02:00:25 -07001254
1255 Returns: list of pinned packages. Looks like [
1256 {
1257 'path': 'subdirectory',
1258 'package_name': 'resolved/package/name',
1259 'version': 'deadbeef...',
1260 },
1261 ...
1262 ]
1263 """
1264 package_pins = [None]*len(packages)
1265 def insert_pin(path, name, version, idx):
1266 package_pins[idx] = {
1267 'package_name': name,
1268 # swarming deals with 'root' as '.'
1269 'path': path or '.',
1270 'version': version,
1271 }
1272
1273 by_path = collections.defaultdict(list)
1274 for i, (path, name, version) in enumerate(packages):
1275 # cipd deals with 'root' as ''
1276 if path == '.':
1277 path = ''
1278 by_path[path].append((name, version, i))
1279
1280 pins = client.ensure(
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001281 run_dir,
1282 {
1283 subdir: [(name, vers) for name, vers, _ in pkgs
1284 ] for subdir, pkgs in by_path.items()
1285 },
1286 cache_dir=cipd_cache_dir,
iannuccib58d10d2017-03-18 02:00:25 -07001287 )
1288
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +00001289 for subdir, pin_list in sorted(pins.items()):
iannuccib58d10d2017-03-18 02:00:25 -07001290 this_subdir = by_path[subdir]
1291 for i, (name, version) in enumerate(pin_list):
1292 insert_pin(subdir, name, version, this_subdir[i][2])
1293
Robert Iannucci461b30d2017-12-13 11:34:03 -08001294 assert None not in package_pins, (packages, pins, package_pins)
iannuccib58d10d2017-03-18 02:00:25 -07001295
1296 return package_pins
1297
1298
vadimsh232f5a82017-01-20 19:23:44 -08001299@contextlib.contextmanager
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001300def install_client_and_packages(run_dir, packages, service_url,
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001301 client_package_name, client_version, cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001302 isolated_dir, cas_dir):
vadimsh902948e2017-01-20 15:57:32 -08001303 """Bootstraps CIPD client and installs CIPD packages.
iannucci96fcccc2016-08-30 15:52:22 -07001304
vadimsh232f5a82017-01-20 19:23:44 -08001305 Yields CipdClient, stats, client info and pins (as single CipdInfo object).
1306
1307 Pins and the CIPD client info are in the form of:
iannucci96fcccc2016-08-30 15:52:22 -07001308 [
1309 {
1310 "path": path, "package_name": package_name, "version": version,
1311 },
1312 ...
1313 ]
vadimsh902948e2017-01-20 15:57:32 -08001314 (the CIPD client info is a single dictionary instead of a list)
iannucci96fcccc2016-08-30 15:52:22 -07001315
1316 such that they correspond 1:1 to all input package arguments from the command
1317 line. These dictionaries make their all the way back to swarming, where they
1318 become the arguments of CipdPackage.
nodirbe642ff2016-06-09 15:51:51 -07001319
vadimsh902948e2017-01-20 15:57:32 -08001320 If 'packages' list is empty, will bootstrap CIPD client, but won't install
1321 any packages.
1322
1323 The bootstrapped client (regardless whether 'packages' list is empty or not),
vadimsh232f5a82017-01-20 19:23:44 -08001324 will be made available to the task via $PATH.
vadimsh902948e2017-01-20 15:57:32 -08001325
nodirbe642ff2016-06-09 15:51:51 -07001326 Args:
nodir90bc8dc2016-06-15 13:35:21 -07001327 run_dir (str): root of installation.
vadimsh902948e2017-01-20 15:57:32 -08001328 packages: packages to install, list [(path, package_name, version), ...].
nodirbe642ff2016-06-09 15:51:51 -07001329 service_url (str): CIPD server url, e.g.
1330 "https://chrome-infra-packages.appspot.com."
nodir90bc8dc2016-06-15 13:35:21 -07001331 client_package_name (str): CIPD package name of CIPD client.
1332 client_version (str): Version of CIPD client.
nodirbe642ff2016-06-09 15:51:51 -07001333 cache_dir (str): where to keep cache of cipd clients, packages and tags.
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001334 isolated_dir (str): where to download isolated client.
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001335 cas_dir (str): where to download cas client.
nodirbe642ff2016-06-09 15:51:51 -07001336 """
1337 assert cache_dir
nodir90bc8dc2016-06-15 13:35:21 -07001338
nodirbe642ff2016-06-09 15:51:51 -07001339 start = time.time()
nodirbe642ff2016-06-09 15:51:51 -07001340
vadimsh902948e2017-01-20 15:57:32 -08001341 cache_dir = os.path.abspath(cache_dir)
vadimsh232f5a82017-01-20 19:23:44 -08001342 cipd_cache_dir = os.path.join(cache_dir, 'cache') # tag and instance caches
nodir90bc8dc2016-06-15 13:35:21 -07001343 run_dir = os.path.abspath(run_dir)
vadimsh902948e2017-01-20 15:57:32 -08001344 packages = packages or []
nodir90bc8dc2016-06-15 13:35:21 -07001345
nodirbe642ff2016-06-09 15:51:51 -07001346 get_client_start = time.time()
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001347 client_manager = cipd.get_client(cache_dir, service_url, client_package_name,
1348 client_version)
iannucci96fcccc2016-08-30 15:52:22 -07001349
nodirbe642ff2016-06-09 15:51:51 -07001350 with client_manager as client:
1351 get_client_duration = time.time() - get_client_start
nodir90bc8dc2016-06-15 13:35:21 -07001352
iannuccib58d10d2017-03-18 02:00:25 -07001353 package_pins = []
1354 if packages:
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001355 package_pins = _install_packages(run_dir, cipd_cache_dir, client,
1356 packages)
iannuccib58d10d2017-03-18 02:00:25 -07001357
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001358 # Install isolated client to |isolated_dir|.
Takuto Ikuta02edca22019-11-29 10:04:51 +00001359 _install_packages(isolated_dir, cipd_cache_dir, client,
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +00001360 [('', ISOLATED_PACKAGE, _LUCI_GO_REVISION)])
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001361
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001362 # Install cas client to |cas_dir|.
1363 _install_packages(cas_dir, cipd_cache_dir, client,
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +00001364 [('', _CAS_PACKAGE, _LUCI_GO_REVISION)])
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001365
iannuccib58d10d2017-03-18 02:00:25 -07001366 file_path.make_tree_files_read_only(run_dir)
nodir90bc8dc2016-06-15 13:35:21 -07001367
vadimsh232f5a82017-01-20 19:23:44 -08001368 total_duration = time.time() - start
Junji Watanabe38b28b02020-04-23 10:23:30 +00001369 logging.info('Installing CIPD client and packages took %d seconds',
1370 total_duration)
nodir90bc8dc2016-06-15 13:35:21 -07001371
vadimsh232f5a82017-01-20 19:23:44 -08001372 yield CipdInfo(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001373 client=client,
1374 cache_dir=cipd_cache_dir,
1375 stats={
1376 'duration': total_duration,
1377 'get_client_duration': get_client_duration,
iannuccib58d10d2017-03-18 02:00:25 -07001378 },
Junji Watanabe38b28b02020-04-23 10:23:30 +00001379 pins={
1380 'client_package': {
1381 'package_name': client.package_name,
1382 'version': client.instance_id,
1383 },
1384 'packages': package_pins,
1385 })
nodirbe642ff2016-06-09 15:51:51 -07001386
1387
1388def create_option_parser():
Marc-Antoine Ruelf74cffe2015-07-15 15:21:34 -04001389 parser = logging_utils.OptionParserWithLogging(
nodir55be77b2016-05-03 09:39:57 -07001390 usage='%prog <options> [command to run or extra args]',
maruel@chromium.orgdedbf492013-09-12 20:42:11 +00001391 version=__version__,
1392 log_file=RUN_ISOLATED_LOG_FILE)
maruela9cfd6f2015-09-15 11:03:15 -07001393 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001394 '--clean',
1395 action='store_true',
maruel36a963d2016-04-08 17:15:49 -07001396 help='Cleans the cache, trimming it necessary and remove corrupted items '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001397 'and returns without executing anything; use with -v to know what '
1398 'was done')
maruel36a963d2016-04-08 17:15:49 -07001399 parser.add_option(
maruela9cfd6f2015-09-15 11:03:15 -07001400 '--json',
1401 help='dump output metadata to json file. When used, run_isolated returns '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001402 'non-zero only on internal failure')
maruel6be7f9e2015-10-01 12:25:30 -07001403 parser.add_option(
maruel5c9e47b2015-12-18 13:02:30 -08001404 '--hard-timeout', type='float', help='Enforce hard timeout in execution')
maruel6be7f9e2015-10-01 12:25:30 -07001405 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001406 '--grace-period',
1407 type='float',
maruel6be7f9e2015-10-01 12:25:30 -07001408 help='Grace period between SIGTERM and SIGKILL')
bpastene3ae09522016-06-10 17:12:59 -07001409 parser.add_option(
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001410 '--relative-cwd',
Takuto Ikuta18ca29a2020-12-04 07:34:20 +00001411 help='Ignore the isolated \'relative_cwd\' and use this one instead')
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001412 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001413 '--env',
1414 default=[],
1415 action='append',
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001416 help='Environment variables to set for the child process')
1417 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001418 '--env-prefix',
1419 default=[],
1420 action='append',
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001421 help='Specify a VAR=./path/fragment to put in the environment variable '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001422 'before executing the command. The path fragment must be relative '
1423 'to the isolated run directory, and must not contain a `..` token. '
1424 'The path will be made absolute and prepended to the indicated '
1425 '$VAR using the OS\'s path separator. Multiple items for the same '
1426 '$VAR will be prepended in order.')
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001427 parser.add_option(
bpastene3ae09522016-06-10 17:12:59 -07001428 '--bot-file',
1429 help='Path to a file describing the state of the host. The content is '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001430 'defined by on_before_task() in bot_config.')
aludwin7556e0c2016-10-26 08:46:10 -07001431 parser.add_option(
vadimsh9c54b2c2017-07-25 14:08:29 -07001432 '--switch-to-account',
1433 help='If given, switches LUCI_CONTEXT to given logical service account '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001434 '(e.g. "task" or "system") before launching the isolated process.')
vadimsh9c54b2c2017-07-25 14:08:29 -07001435 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001436 '--output',
1437 action='append',
aludwin0a8e17d2016-10-27 15:57:39 -07001438 help='Specifies an output to return. If no outputs are specified, all '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001439 'files located in $(ISOLATED_OUTDIR) will be returned; '
1440 'otherwise, outputs in both $(ISOLATED_OUTDIR) and those '
1441 'specified by --output option (there can be multiple) will be '
1442 'returned. Note that if a file in OUT_DIR has the same path '
1443 'as an --output option, the --output version will be returned.')
aludwin0a8e17d2016-10-27 15:57:39 -07001444 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001445 '-a',
1446 '--argsfile',
aludwin7556e0c2016-10-26 08:46:10 -07001447 # This is actually handled in parse_args; it's included here purely so it
1448 # can make it into the help text.
1449 help='Specify a file containing a JSON array of arguments to this '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001450 'script. If --argsfile is provided, no other argument may be '
1451 'provided on the command line.')
Takuto Ikutad4be2f12020-05-12 02:15:25 +00001452 parser.add_option(
1453 '--report-on-exception',
1454 action='store_true',
1455 help='Whether report exception during execution to isolate server. '
1456 'This flag should only be used in swarming bot.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001457
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001458 group = optparse.OptionGroup(parser, 'Data source - Isolate server')
Junji Watanabe54925c32020-09-08 00:56:18 +00001459 # Deprecated. Isoate server is being migrated to RBE-CAS.
1460 # Remove --isolated and isolate server options after migration.
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001461 group.add_option(
Marc-Antoine Ruel185ded42015-01-28 20:49:18 -05001462 '-s', '--isolated',
nodir55be77b2016-05-03 09:39:57 -07001463 help='Hash of the .isolated to grab from the isolate server.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001464 isolateserver.add_isolate_server_options(group)
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001465 parser.add_option_group(group)
1466
1467 group = optparse.OptionGroup(parser,
1468 'Data source - Content Addressed Storage')
Junji Watanabe54925c32020-09-08 00:56:18 +00001469 group.add_option(
1470 '--cas-instance', help='Full CAS instance name for input/output files.')
1471 group.add_option(
1472 '--cas-digest',
1473 help='Digest of the input root on RBE-CAS. The format is '
1474 '`{hash}/{size_bytes}`.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001475 parser.add_option_group(group)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001476
Junji Watanabeb03450b2020-09-25 05:09:27 +00001477 # Cache options.
Marc-Antoine Ruela57d7db2014-10-15 20:31:19 -04001478 isolateserver.add_cache_options(parser)
Junji Watanabeb03450b2020-09-25 05:09:27 +00001479 add_cas_cache_options(parser)
nodirbe642ff2016-06-09 15:51:51 -07001480
1481 cipd.add_cipd_options(parser)
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001482
1483 group = optparse.OptionGroup(parser, 'Named caches')
1484 group.add_option(
1485 '--named-cache',
1486 dest='named_caches',
1487 action='append',
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001488 nargs=3,
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001489 default=[],
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001490 help='A named cache to request. Accepts 3 arguments: name, path, hint. '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001491 'name identifies the cache, must match regex [a-z0-9_]{1,4096}. '
1492 'path is a path relative to the run dir where the cache directory '
1493 'must be put to. '
1494 'This option can be specified more than once.')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001495 group.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001496 '--named-cache-root',
1497 default='named_caches',
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001498 help='Cache root directory. Default=%default')
1499 parser.add_option_group(group)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001500
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001501 group = optparse.OptionGroup(parser, 'Process containment')
1502 parser.add_option(
1503 '--lower-priority', action='store_true',
1504 help='Lowers the child process priority')
1505 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001506 '--containment-type',
1507 choices=('NONE', 'AUTO', 'JOB_OBJECT'),
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001508 default='NONE',
1509 help='Type of container to use')
1510 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001511 '--limit-processes',
1512 type='int',
1513 default=0,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001514 help='Maximum number of active processes in the containment')
1515 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001516 '--limit-total-committed-memory',
1517 type='int',
1518 default=0,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001519 help='Maximum sum of committed memory in the containment')
1520 parser.add_option_group(group)
1521
1522 group = optparse.OptionGroup(parser, 'Debugging')
1523 group.add_option(
Kenneth Russell61d42352014-09-15 11:41:16 -07001524 '--leak-temp-dir',
1525 action='store_true',
nodirbe642ff2016-06-09 15:51:51 -07001526 help='Deliberately leak isolate\'s temp dir for later examination. '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001527 'Default: %default')
1528 group.add_option('--root-dir', help='Use a directory instead of a random one')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001529 parser.add_option_group(group)
Kenneth Russell61d42352014-09-15 11:41:16 -07001530
Vadim Shtayurae34e13a2014-02-02 11:23:26 -08001531 auth.add_auth_options(parser)
nodirbe642ff2016-06-09 15:51:51 -07001532
Ye Kuang1d096cb2020-06-26 08:38:21 +00001533 parser.set_defaults(cache='cache')
nodirbe642ff2016-06-09 15:51:51 -07001534 return parser
1535
1536
Junji Watanabeb03450b2020-09-25 05:09:27 +00001537def add_cas_cache_options(parser):
1538 group = optparse.OptionGroup(parser, 'CAS cache management')
1539 group.add_option(
1540 '--cas-cache',
1541 metavar='DIR',
1542 default='cas-cache',
1543 help='Directory to keep a local cache of the files. Accelerates download '
1544 'by reusing already downloaded files. Default=%default')
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001545 group.add_option(
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +00001546 '--kvs-dir',
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001547 default='',
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +00001548 help='CAS cache dir using kvs for small files. Default=%default')
Junji Watanabeb03450b2020-09-25 05:09:27 +00001549 parser.add_option_group(group)
1550
1551
1552def process_cas_cache_options(options):
1553 if options.cas_cache:
1554 policies = local_caching.CachePolicies(
1555 max_cache_size=options.max_cache_size,
1556 min_free_space=options.min_free_space,
1557 # max_items isn't used for CAS cache for now.
1558 max_items=None,
1559 max_age_secs=MAX_AGE_SECS)
1560
1561 return local_caching.DiskContentAddressedCache(
1562 six.text_type(os.path.abspath(options.cas_cache)), policies, trim=False)
1563 return local_caching.MemoryContentAddressedCache()
1564
1565
Marc-Antoine Ruel49f9f8d2018-05-24 15:57:06 -04001566def process_named_cache_options(parser, options, time_fn=None):
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001567 """Validates named cache options and returns a CacheManager."""
1568 if options.named_caches and not options.named_cache_root:
1569 parser.error('--named-cache is specified, but --named-cache-root is empty')
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001570 for name, path, hint in options.named_caches:
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001571 if not CACHE_NAME_RE.match(name):
1572 parser.error(
1573 'cache name %r does not match %r' % (name, CACHE_NAME_RE.pattern))
1574 if not path:
1575 parser.error('cache path cannot be empty')
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001576 try:
Takuto Ikuta630f99d2020-07-02 12:59:35 +00001577 int(hint)
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001578 except ValueError:
1579 parser.error('cache hint must be a number')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001580 if options.named_cache_root:
1581 # Make these configurable later if there is use case but for now it's fairly
1582 # safe values.
1583 # In practice, a fair chunk of bots are already recycled on a daily schedule
1584 # so this code doesn't have any effect to them, unless they are preloaded
1585 # with a really old cache.
1586 policies = local_caching.CachePolicies(
1587 # 1TiB.
1588 max_cache_size=1024*1024*1024*1024,
1589 min_free_space=options.min_free_space,
1590 max_items=50,
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +00001591 max_age_secs=MAX_AGE_SECS)
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001592 root_dir = six.text_type(os.path.abspath(options.named_cache_root))
John Budorickc6186972020-02-26 00:58:14 +00001593 cache = local_caching.NamedCache(root_dir, policies, time_fn=time_fn)
1594 # Touch any named caches we're going to use to minimize thrashing
1595 # between tasks that request some (but not all) of the same named caches.
John Budorick0a4dab62020-03-02 22:23:35 +00001596 cache.touch(*[name for name, _, _ in options.named_caches])
John Budorickc6186972020-02-26 00:58:14 +00001597 return cache
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001598 return None
1599
1600
aludwin7556e0c2016-10-26 08:46:10 -07001601def parse_args(args):
1602 # Create a fake mini-parser just to get out the "-a" command. Note that
1603 # it's not documented here; instead, it's documented in create_option_parser
1604 # even though that parser will never actually get to parse it. This is
1605 # because --argsfile is exclusive with all other options and arguments.
1606 file_argparse = argparse.ArgumentParser(add_help=False)
1607 file_argparse.add_argument('-a', '--argsfile')
1608 (file_args, nonfile_args) = file_argparse.parse_known_args(args)
1609 if file_args.argsfile:
1610 if nonfile_args:
1611 file_argparse.error('Can\'t specify --argsfile with'
1612 'any other arguments (%s)' % nonfile_args)
1613 try:
1614 with open(file_args.argsfile, 'r') as f:
1615 args = json.load(f)
1616 except (IOError, OSError, ValueError) as e:
1617 # We don't need to error out here - "args" is now empty,
1618 # so the call below to parser.parse_args(args) will fail
1619 # and print the full help text.
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +00001620 print('Couldn\'t read arguments: %s' % e, file=sys.stderr)
aludwin7556e0c2016-10-26 08:46:10 -07001621
1622 # Even if we failed to read the args, just call the normal parser now since it
1623 # will print the correct help message.
nodirbe642ff2016-06-09 15:51:51 -07001624 parser = create_option_parser()
Marc-Antoine Ruel90c98162013-12-18 15:11:57 -05001625 options, args = parser.parse_args(args)
Ye Kuangfff1e502020-07-13 13:21:57 +00001626 if not isinstance(options.cipd_enabled, (bool, int)):
1627 options.cipd_enabled = distutils.util.strtobool(options.cipd_enabled)
aludwin7556e0c2016-10-26 08:46:10 -07001628 return (parser, options, args)
1629
1630
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001631def _calc_named_cache_hint(named_cache, named_caches):
1632 """Returns the expected size of the missing named caches."""
1633 present = named_cache.available
1634 size = 0
1635 for name, _, hint in named_caches:
1636 if name not in present:
Takuto Ikuta630f99d2020-07-02 12:59:35 +00001637 hint = int(hint)
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001638 if hint > 0:
1639 size += hint
1640 return size
1641
1642
Takuto Ikutaae391c52020-12-03 08:43:45 +00001643def _clean_cmd(parser, options, caches, root):
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001644 """Cleanup cache dirs/files."""
1645 if options.isolated:
1646 parser.error('Can\'t use --isolated with --clean.')
1647 if options.isolate_server:
1648 parser.error('Can\'t use --isolate-server with --clean.')
1649 if options.json:
1650 parser.error('Can\'t use --json with --clean.')
1651 if options.named_caches:
1652 parser.error('Can\t use --named-cache with --clean.')
1653 if options.cas_instance or options.cas_digest:
1654 parser.error('Can\t use --cas-instance, --cas-digest with --clean.')
1655
1656 logging.info("initial free space: %d", file_path.get_free_space(root))
1657
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +00001658 if options.kvs_dir and fs.isdir(six.text_type(options.kvs_dir)):
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001659 # Remove kvs file if its size exceeds fixed threshold.
Takuto Ikutab1b70062021-03-22 01:02:41 +00001660 kvs_dir = six.text_type(options.kvs_dir)
1661 size = file_path.get_recursive_size(kvs_dir)
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +00001662 if size >= _CAS_KVS_CACHE_THRESHOLD:
1663 logging.info("remove kvs dir with size: %d", size)
Takuto Ikutab1b70062021-03-22 01:02:41 +00001664 file_path.rmtree(kvs_dir)
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001665
1666 # Trim first, then clean.
1667 local_caching.trim_caches(
1668 caches,
1669 root,
1670 min_free_space=options.min_free_space,
1671 max_age_secs=MAX_AGE_SECS)
1672 logging.info("free space after trim: %d", file_path.get_free_space(root))
1673 for c in caches:
1674 c.cleanup()
1675 logging.info("free space after cleanup: %d", file_path.get_free_space(root))
1676
1677
aludwin7556e0c2016-10-26 08:46:10 -07001678def main(args):
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -05001679 # Warning: when --argsfile is used, the strings are unicode instances, when
1680 # parsed normally, the strings are str instances.
aludwin7556e0c2016-10-26 08:46:10 -07001681 (parser, options, args) = parse_args(args)
maruel36a963d2016-04-08 17:15:49 -07001682
Takuto Ikuta74682862021-02-03 04:49:12 +00001683 SWARMING_SERVER = 'SWARMING_SERVER'
1684 if options.report_on_exception and SWARMING_SERVER in os.environ:
1685 on_error.report_on_exception_exit(os.environ[SWARMING_SERVER])
Takuto Ikutad4be2f12020-05-12 02:15:25 +00001686
Marc-Antoine Ruel5028ba22017-08-25 17:37:51 -04001687 if not file_path.enable_symlink():
Marc-Antoine Ruel5a024272019-01-15 20:11:16 +00001688 logging.warning('Symlink support is not enabled')
Marc-Antoine Ruel5028ba22017-08-25 17:37:51 -04001689
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001690 named_cache = process_named_cache_options(parser, options)
Marc-Antoine Ruel0d8b0f62018-09-10 14:40:35 +00001691 # hint is 0 if there's no named cache.
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001692 hint = _calc_named_cache_hint(named_cache, options.named_caches)
1693 if hint:
1694 # Increase the --min-free-space value by the hint, and recreate the
1695 # NamedCache instance so it gets the updated CachePolicy.
1696 options.min_free_space += hint
1697 named_cache = process_named_cache_options(parser, options)
1698
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001699 # TODO(crbug.com/932396): Remove this.
Takuto Ikuta4a22c2c2020-06-05 02:02:23 +00001700 use_go_isolated = options.cipd_enabled
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001701
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001702 # TODO(maruel): CIPD caches should be defined at an higher level here too, so
1703 # they can be cleaned the same way.
Takuto Ikutaf1c58442020-10-20 09:03:27 +00001704
1705 isolate_cache = isolateserver.process_cache_options(options, trim=False)
1706 cas_cache = process_cas_cache_options(options)
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +00001707
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001708 caches = []
1709 if isolate_cache:
1710 caches.append(isolate_cache)
Junji Watanabeb03450b2020-09-25 05:09:27 +00001711 if cas_cache:
1712 caches.append(cas_cache)
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001713 if named_cache:
1714 caches.append(named_cache)
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001715 root = caches[0].cache_dir if caches else six.text_type(os.getcwd())
maruel36a963d2016-04-08 17:15:49 -07001716 if options.clean:
Takuto Ikutaae391c52020-12-03 08:43:45 +00001717 _clean_cmd(parser, options, caches, root)
maruel36a963d2016-04-08 17:15:49 -07001718 return 0
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001719
1720 # Trim must still be done for the following case:
1721 # - named-cache was used
1722 # - some entries, with a large hint, where missing
1723 # - --min-free-space was increased accordingly, thus trimming is needed
1724 # Otherwise, this will have no effect, as bot_main calls run_isolated with
1725 # --clean after each task.
Takuto Ikutac9ddff22021-02-18 07:58:39 +00001726 additional_buffer = _FREE_SPACE_BUFFER_FOR_CIPD_PACKAGES
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +00001727 if options.kvs_dir:
Takuto Ikuta7f45c592021-02-09 05:57:05 +00001728 additional_buffer += _CAS_KVS_CACHE_THRESHOLD
Takuto Ikutaa010c532020-10-21 05:42:29 +00001729 local_caching.trim_caches(
1730 caches,
1731 root,
Takuto Ikutac9ddff22021-02-18 07:58:39 +00001732 # Add some buffer for Go CLI.
Takuto Ikuta7f45c592021-02-09 05:57:05 +00001733 min_free_space=options.min_free_space + additional_buffer,
Takuto Ikutaa010c532020-10-21 05:42:29 +00001734 max_age_secs=MAX_AGE_SECS)
maruel36a963d2016-04-08 17:15:49 -07001735
Takuto Ikutaf1c58442020-10-20 09:03:27 +00001736 # Save state of isolate/cas cache not to overwrite state from go client.
1737 if use_go_isolated:
1738 isolate_cache.save()
1739 isolate_cache = None
1740 if cas_cache:
1741 cas_cache.save()
1742 cas_cache = None
1743
nodir55be77b2016-05-03 09:39:57 -07001744 if not options.isolated and not args:
1745 parser.error('--isolated or command to run is required.')
1746
Vadim Shtayura5d1efce2014-02-04 10:55:43 -08001747 auth.process_auth_options(parser, options)
nodir55be77b2016-05-03 09:39:57 -07001748
Takuto Ikutaae767b32020-05-11 01:22:19 +00001749 isolateserver.process_isolate_server_options(parser, options, False)
Junji Watanabeed9ce352020-09-25 12:32:07 +00001750 if ISOLATED_OUTDIR_PARAMETER in args and (not options.isolate_server and
1751 not options.cas_instance):
1752 parser.error('%s in args requires --isolate-server or --cas-instance' %
1753 ISOLATED_OUTDIR_PARAMETER)
1754
1755 if options.isolated and not options.isolate_server:
1756 parser.error('--isolated requires --isolate-server')
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001757
nodir90bc8dc2016-06-15 13:35:21 -07001758 if options.root_dir:
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001759 options.root_dir = six.text_type(os.path.abspath(options.root_dir))
Takuto Ikutad46ea762020-10-07 05:43:22 +00001760 else:
1761 options.root_dir = six.text_type(tempfile.mkdtemp(prefix='root'))
maruel12e30012015-10-09 11:55:35 -07001762 if options.json:
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001763 options.json = six.text_type(os.path.abspath(options.json))
nodir55be77b2016-05-03 09:39:57 -07001764
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001765 if any('=' not in i for i in options.env):
1766 parser.error(
1767 '--env required key=value form. value can be skipped to delete '
1768 'the variable')
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -05001769 options.env = dict(i.split('=', 1) for i in options.env)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001770
1771 prefixes = {}
1772 cwd = os.path.realpath(os.getcwd())
1773 for item in options.env_prefix:
1774 if '=' not in item:
1775 parser.error(
1776 '--env-prefix %r is malformed, must be in the form `VAR=./path`'
1777 % item)
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -05001778 key, opath = item.split('=', 1)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001779 if os.path.isabs(opath):
1780 parser.error('--env-prefix %r path is bad, must be relative.' % opath)
1781 opath = os.path.normpath(opath)
1782 if not os.path.realpath(os.path.join(cwd, opath)).startswith(cwd):
1783 parser.error(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001784 '--env-prefix %r path is bad, must be relative and not contain `..`.'
1785 % opath)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001786 prefixes.setdefault(key, []).append(opath)
1787 options.env_prefix = prefixes
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001788
nodirbe642ff2016-06-09 15:51:51 -07001789 cipd.validate_cipd_options(parser, options)
1790
vadimsh232f5a82017-01-20 19:23:44 -08001791 install_packages_fn = noop_install_packages
Ye Kuang1d096cb2020-06-26 08:38:21 +00001792 tmp_cipd_cache_dir = None
vadimsh902948e2017-01-20 15:57:32 -08001793 if options.cipd_enabled:
Ye Kuang1d096cb2020-06-26 08:38:21 +00001794 cache_dir = options.cipd_cache
1795 if not cache_dir:
1796 tmp_cipd_cache_dir = six.text_type(tempfile.mkdtemp())
1797 cache_dir = tmp_cipd_cache_dir
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001798 install_packages_fn = (
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001799 lambda run_dir, isolated_dir, cas_dir: install_client_and_packages(
Ye Kuang1d096cb2020-06-26 08:38:21 +00001800 run_dir,
1801 cipd.parse_package_args(options.cipd_packages),
1802 options.cipd_server,
1803 options.cipd_client_package,
1804 options.cipd_client_version,
1805 cache_dir=cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001806 isolated_dir=isolated_dir,
1807 cas_dir=cas_dir,
1808 ))
nodirbe642ff2016-06-09 15:51:51 -07001809
nodird6160682017-02-02 13:03:35 -08001810 @contextlib.contextmanager
nodir0ae98b32017-05-11 13:21:53 -07001811 def install_named_caches(run_dir):
nodird6160682017-02-02 13:03:35 -08001812 # WARNING: this function depends on "options" variable defined in the outer
1813 # function.
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001814 assert six.text_type(run_dir), repr(run_dir)
Marc-Antoine Ruel49f9f8d2018-05-24 15:57:06 -04001815 assert os.path.isabs(run_dir), run_dir
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001816 named_caches = [(os.path.join(run_dir, six.text_type(relpath)), name)
1817 for name, relpath, _ in options.named_caches]
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001818 for path, name in named_caches:
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001819 named_cache.install(path, name)
nodird6160682017-02-02 13:03:35 -08001820 try:
1821 yield
1822 finally:
dnje289d132017-07-07 11:16:44 -07001823 # Uninstall each named cache, returning it to the cache pool. If an
1824 # uninstall fails for a given cache, it will remain in the task's
1825 # temporary space, get cleaned up by the Swarming bot, and be lost.
1826 #
1827 # If the Swarming bot cannot clean up the cache, it will handle it like
1828 # any other bot file that could not be removed.
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001829 for path, name in reversed(named_caches):
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001830 try:
Marc-Antoine Ruele9558372018-08-03 03:41:22 +00001831 # uninstall() doesn't trim but does call save() implicitly. Trimming
1832 # *must* be done manually via periodic 'run_isolated.py --clean'.
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001833 named_cache.uninstall(path, name)
1834 except local_caching.NamedCacheError:
Takuto Ikuta463ecdd2021-03-05 09:35:38 +00001835 if sys.platform == 'win32':
1836 # Show running processes.
1837 sys.stderr.write("running process\n")
1838 subprocess42.check_call(['tasklist.exe', '/V'], stdout=sys.stderr)
1839
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001840 logging.exception('Error while removing named cache %r at %r. '
1841 'The cache will be lost.', path, name)
nodirf33b8d62016-10-26 22:34:58 -07001842
Takuto Ikutaf3caa9b2020-11-02 05:38:26 +00001843 command = args
1844 if options.relative_cwd:
1845 a = os.path.normpath(os.path.abspath(options.relative_cwd))
1846 if not a.startswith(os.getcwd()):
1847 parser.error(
1848 '--relative-cwd must not try to escape the working directory')
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001849
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001850 containment_type = subprocess42.Containment.NONE
1851 if options.containment_type == 'AUTO':
1852 containment_type = subprocess42.Containment.AUTO
1853 if options.containment_type == 'JOB_OBJECT':
1854 containment_type = subprocess42.Containment.JOB_OBJECT
1855 containment = subprocess42.Containment(
1856 containment_type=containment_type,
1857 limit_processes=options.limit_processes,
1858 limit_total_committed_memory=options.limit_total_committed_memory)
1859
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001860 data = TaskData(
1861 command=command,
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001862 relative_cwd=options.relative_cwd,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001863 isolated_hash=options.isolated,
1864 storage=None,
1865 isolate_cache=isolate_cache,
Junji Watanabe54925c32020-09-08 00:56:18 +00001866 cas_instance=options.cas_instance,
1867 cas_digest=options.cas_digest,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001868 outputs=options.output,
1869 install_named_caches=install_named_caches,
1870 leak_temp_dir=options.leak_temp_dir,
1871 root_dir=_to_unicode(options.root_dir),
1872 hard_timeout=options.hard_timeout,
1873 grace_period=options.grace_period,
1874 bot_file=options.bot_file,
1875 switch_to_account=options.switch_to_account,
1876 install_packages_fn=install_packages_fn,
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001877 use_go_isolated=use_go_isolated,
Takuto Ikuta10cae642020-01-08 08:12:07 +00001878 go_cache_dir=options.cache,
Takuto Ikuta879788c2020-01-10 08:00:26 +00001879 go_cache_policies=local_caching.CachePolicies(
1880 max_cache_size=options.max_cache_size,
1881 min_free_space=options.min_free_space,
1882 max_items=options.max_items,
1883 max_age_secs=None,
1884 ),
Junji Watanabeb03450b2020-09-25 05:09:27 +00001885 cas_cache_dir=options.cas_cache,
1886 cas_cache_policies=local_caching.CachePolicies(
1887 max_cache_size=options.max_cache_size,
1888 min_free_space=options.min_free_space,
1889 max_items=None,
1890 max_age_secs=None,
1891 ),
Takuto Ikuta91cb5ca2021-03-17 07:19:30 +00001892 cas_kvs=options.kvs_dir,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001893 env=options.env,
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +00001894 env_prefix=options.env_prefix,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001895 lower_priority=bool(options.lower_priority),
1896 containment=containment)
nodirbe642ff2016-06-09 15:51:51 -07001897 try:
nodir90bc8dc2016-06-15 13:35:21 -07001898 if options.isolate_server:
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001899 server_ref = isolate_storage.ServerRef(
nodir90bc8dc2016-06-15 13:35:21 -07001900 options.isolate_server, options.namespace)
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001901 storage = isolateserver.get_storage(server_ref)
nodir90bc8dc2016-06-15 13:35:21 -07001902 with storage:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001903 data = data._replace(storage=storage)
nodirf33b8d62016-10-26 22:34:58 -07001904 # Hashing schemes used by |storage| and |isolate_cache| MUST match.
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001905 assert storage.server_ref.hash_algo == server_ref.hash_algo
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001906 return run_tha_test(data, options.json)
1907 return run_tha_test(data, options.json)
Junji Watanabe38b28b02020-04-23 10:23:30 +00001908 except (cipd.Error, local_caching.NamedCacheError,
1909 local_caching.NoMoreSpace) as ex:
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +00001910 print(ex.message, file=sys.stderr)
nodirbe642ff2016-06-09 15:51:51 -07001911 return 1
Ye Kuang1d096cb2020-06-26 08:38:21 +00001912 finally:
1913 if tmp_cipd_cache_dir is not None:
1914 try:
1915 file_path.rmtree(tmp_cipd_cache_dir)
1916 except OSError:
1917 logging.exception('Remove tmp_cipd_cache_dir=%s failed',
1918 tmp_cipd_cache_dir)
1919 # Best effort clean up. Failed to do so doesn't affect the outcome.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001920
1921
1922if __name__ == '__main__':
maruel8e4e40c2016-05-30 06:21:07 -07001923 subprocess42.inhibit_os_error_reporting()
csharp@chromium.orgbfb98742013-03-26 20:28:36 +00001924 # Ensure that we are always running with the correct encoding.
vadimsh@chromium.orga4326472013-08-24 02:05:41 +00001925 fix_encoding.fix_encoding()
Ye Kuang2dd17442020-04-22 08:45:52 +00001926 net.set_user_agent('run_isolated.py/' + __version__)
Marc-Antoine Ruel90c98162013-12-18 15:11:57 -05001927 sys.exit(main(sys.argv[1:]))