blob: b710bbd6171111995d2dd91b1d1393d43581e86e [file] [log] [blame]
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001#!/usr/bin/env python
maruelea586f32016-04-05 11:11:33 -07002# Copyright 2012 The LUCI Authors. All rights reserved.
maruelf1f5e2a2016-05-25 17:10:39 -07003# Use of this source code is governed under the Apache License, Version 2.0
4# that can be found in the LICENSE file.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00005
nodir55be77b2016-05-03 09:39:57 -07006"""Runs a command with optional isolated input/output.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00007
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +00008run_isolated takes cares of setting up a temporary environment, running a
9command, and tearing it down.
nodir55be77b2016-05-03 09:39:57 -070010
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +000011It handles downloading and uploading isolated files, mapping CIPD packages and
12reusing stateful named caches.
13
14The isolated files, CIPD packages and named caches are kept as a global LRU
15cache.
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -050016
Roberto Carrillo71ade6d2018-10-08 22:30:24 +000017Any ${EXECUTABLE_SUFFIX} on the command line or the environment variables passed
18with the --env option will be replaced with ".exe" string on Windows and "" on
19other platforms.
nodirbe642ff2016-06-09 15:51:51 -070020
Roberto Carrillo71ade6d2018-10-08 22:30:24 +000021Any ${ISOLATED_OUTDIR} on the command line or the environment variables passed
22with the --env option will be replaced by the location of a temporary directory
23upon execution of the command specified in the .isolated file. All content
24written to this directory will be uploaded upon termination and the .isolated
25file describing this directory will be printed to stdout.
bpastene447c1992016-06-20 15:21:47 -070026
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +000027Any ${SWARMING_BOT_FILE} on the command line or the environment variables passed
28with the --env option will be replaced by the value of the --bot-file parameter.
29This file is used by a swarming bot to communicate state of the host to tasks.
30It is written to by the swarming bot's on_before_task() hook in the swarming
31server's custom bot_config.py.
32
33See
34https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/doc/Magic-Values.md
35for all the variables.
36
37See
38https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/swarming_bot/config/bot_config.py
39for more information about bot_config.py.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000040"""
41
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +000042from __future__ import print_function
43
44__version__ = '1.0.1'
maruel@chromium.orgdedbf492013-09-12 20:42:11 +000045
aludwin7556e0c2016-10-26 08:46:10 -070046import argparse
maruel064c0a32016-04-05 11:47:15 -070047import base64
iannucci96fcccc2016-08-30 15:52:22 -070048import collections
vadimsh232f5a82017-01-20 19:23:44 -080049import contextlib
Ye Kuangfff1e502020-07-13 13:21:57 +000050import distutils
Sadaf Matinkhoo10743a62018-03-29 16:28:58 -040051import errno
aludwin7556e0c2016-10-26 08:46:10 -070052import json
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000053import logging
54import optparse
55import os
Takuto Ikuta5c59a842020-01-24 03:05:24 +000056import platform
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -040057import re
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000058import sys
59import tempfile
maruel064c0a32016-04-05 11:47:15 -070060import time
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000061
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000062from utils import tools
63tools.force_local_third_party()
vadimsh@chromium.orga4326472013-08-24 02:05:41 +000064
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000065# third_party/
66from depot_tools import fix_encoding
Takuto Ikuta6e2ff962019-10-29 12:35:27 +000067import six
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000068
69# pylint: disable=ungrouped-imports
70import auth
71import cipd
72import isolate_storage
73import isolateserver
74import local_caching
75from libs import luci_context
Vadim Shtayura6b555c12014-07-23 16:22:18 -070076from utils import file_path
maruel12e30012015-10-09 11:55:35 -070077from utils import fs
maruel064c0a32016-04-05 11:47:15 -070078from utils import large
Marc-Antoine Ruelf74cffe2015-07-15 15:21:34 -040079from utils import logging_utils
Ye Kuang2dd17442020-04-22 08:45:52 +000080from utils import net
Marc-Antoine Ruelcfb60852014-07-02 15:22:00 -040081from utils import on_error
Marc-Antoine Ruelc44f5722015-01-08 16:10:01 -050082from utils import subprocess42
maruel@chromium.orgdedbf492013-09-12 20:42:11 +000083
vadimsh@chromium.orga4326472013-08-24 02:05:41 +000084
maruele2f2cb82016-07-13 14:41:03 -070085# Magic variables that can be found in the isolate task command line.
86ISOLATED_OUTDIR_PARAMETER = '${ISOLATED_OUTDIR}'
87EXECUTABLE_SUFFIX_PARAMETER = '${EXECUTABLE_SUFFIX}'
88SWARMING_BOT_FILE_PARAMETER = '${SWARMING_BOT_FILE}'
89
90
csharp@chromium.orgff2a4662012-11-21 20:49:32 +000091# The name of the log file to use.
92RUN_ISOLATED_LOG_FILE = 'run_isolated.log'
93
maruele2f2cb82016-07-13 14:41:03 -070094
maruele2f2cb82016-07-13 14:41:03 -070095# Use short names for temporary directories. This is driven by Windows, which
96# imposes a relatively short maximum path length of 260 characters, often
97# referred to as MAX_PATH. It is relatively easy to create files with longer
Marc-Antoine Ruel793bff32019-04-18 17:50:48 +000098# path length. A use case is with recursive dependency trees like npm packages.
maruele2f2cb82016-07-13 14:41:03 -070099#
100# It is recommended to start the script with a `root_dir` as short as
101# possible.
102# - ir stands for isolated_run
103# - io stands for isolated_out
104# - it stands for isolated_tmp
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000105# - ic stands for isolated_client
maruele2f2cb82016-07-13 14:41:03 -0700106ISOLATED_RUN_DIR = u'ir'
107ISOLATED_OUT_DIR = u'io'
108ISOLATED_TMP_DIR = u'it'
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000109ISOLATED_CLIENT_DIR = u'ic'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000110_CAS_CLIENT_DIR = u'cc'
maruele2f2cb82016-07-13 14:41:03 -0700111
Takuto Ikuta02edca22019-11-29 10:04:51 +0000112# TODO(tikuta): take these parameter from luci-config?
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +0000113# Update tag by `./client/update_go_clients.sh`.
Takuto Ikutac8c92e62020-04-01 07:07:29 +0000114# Or take revision from
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000115# https://ci.chromium.org/p/infra-internal/g/infra-packagers/console
Takuto Ikuta02edca22019-11-29 10:04:51 +0000116ISOLATED_PACKAGE = 'infra/tools/luci/isolated/${platform}'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000117_CAS_PACKAGE = 'infra/tools/luci/cas/${platform}'
Takuto Ikuta9cde9b72021-02-19 06:32:03 +0000118_LUCI_GO_REVISION = 'git_revision:4a7aac4e8f17bee1f995442ee032775855ce251e'
maruele2f2cb82016-07-13 14:41:03 -0700119
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400120# Keep synced with task_request.py
Lei Leife202df2019-06-11 17:33:34 +0000121CACHE_NAME_RE = re.compile(r'^[a-z0-9_]{1,4096}$')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400122
Takuto Ikutac9ddff22021-02-18 07:58:39 +0000123_FREE_SPACE_BUFFER_FOR_CIPD_PACKAGES = 2 * 1024 * 1024 * 1024
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400124
marueld928c862017-06-08 08:20:04 -0700125OUTLIVING_ZOMBIE_MSG = """\
126*** Swarming tried multiple times to delete the %s directory and failed ***
127*** Hard failing the task ***
128
129Swarming detected that your testing script ran an executable, which may have
130started a child executable, and the main script returned early, leaving the
131children executables playing around unguided.
132
133You don't want to leave children processes outliving the task on the Swarming
134bot, do you? The Swarming bot doesn't.
135
136How to fix?
137- For any process that starts children processes, make sure all children
138 processes terminated properly before each parent process exits. This is
139 especially important in very deep process trees.
140 - This must be done properly both in normal successful task and in case of
141 task failure. Cleanup is very important.
142- The Swarming bot sends a SIGTERM in case of timeout.
143 - You have %s seconds to comply after the signal was sent to the process
144 before the process is forcibly killed.
145- To achieve not leaking children processes in case of signals on timeout, you
146 MUST handle signals in each executable / python script and propagate them to
147 children processes.
148 - When your test script (python or binary) receives a signal like SIGTERM or
149 CTRL_BREAK_EVENT on Windows), send it to all children processes and wait for
150 them to terminate before quitting.
151
152See
Marc-Antoine Ruelc7243592018-05-24 17:04:04 -0400153https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/doc/Bot.md#Graceful-termination_aka-the-SIGTERM-and-SIGKILL-dance
marueld928c862017-06-08 08:20:04 -0700154for more information.
155
156*** May the SIGKILL force be with you ***
157"""
158
159
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000160# Currently hardcoded. Eventually could be exposed as a flag once there's value.
161# 3 weeks
162MAX_AGE_SECS = 21*24*60*60
163
Ye Kuang72e6fe82020-08-05 06:30:04 +0000164# TODO(1099655): Enable this once all prod issues are gone.
165_USE_GO_ISOLATED_TO_UPLOAD = False
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000166
Takuto Ikuta7ff4b242020-12-03 08:07:06 +0000167_CAS_KVS_CACHE_THRESHOLD = 5 * 1024 * 1024 * 1024 # 5 GiB
168
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500169TaskData = collections.namedtuple(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000170 'TaskData',
171 [
Takuto Ikuta9a319502019-11-26 07:40:14 +0000172 # List of strings; the command line to use, independent of what was
173 # specified in the isolated file.
174 'command',
175 # Relative directory to start command into.
176 'relative_cwd',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000177 # Hash of the .isolated file that must be retrieved to recreate the tree
178 # of files to run the target executable. The command specified in the
179 # .isolated is executed. Mutually exclusive with command argument.
180 'isolated_hash',
181 # isolateserver.Storage instance to retrieve remote objects. This object
182 # has a reference to an isolateserver.StorageApi, which does the actual
183 # I/O.
184 'storage',
185 # isolateserver.LocalCache instance to keep from retrieving the same
186 # objects constantly by caching the objects retrieved. Can be on-disk or
187 # in-memory.
188 'isolate_cache',
Junji Watanabe54925c32020-09-08 00:56:18 +0000189 # Digest of the input root on RBE-CAS.
190 'cas_digest',
191 # Full CAS instance name.
192 'cas_instance',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000193 # List of paths relative to root_dir to put into the output isolated
194 # bundle upon task completion (see link_outputs_to_outdir).
195 'outputs',
196 # Function (run_dir) => context manager that installs named caches into
197 # |run_dir|.
198 'install_named_caches',
199 # If True, the temporary directory will be deliberately leaked for later
200 # examination.
201 'leak_temp_dir',
202 # Path to the directory to use to create the temporary directory. If not
203 # specified, a random temporary directory is created.
204 'root_dir',
205 # Kills the process if it lasts more than this amount of seconds.
206 'hard_timeout',
207 # Number of seconds to wait between SIGTERM and SIGKILL.
208 'grace_period',
209 # Path to a file with bot state, used in place of ${SWARMING_BOT_FILE}
210 # task command line argument.
211 'bot_file',
212 # Logical account to switch LUCI_CONTEXT into.
213 'switch_to_account',
214 # Context manager dir => CipdInfo, see install_client_and_packages.
215 'install_packages_fn',
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000216 # Use go isolated client.
217 'use_go_isolated',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000218 # Cache directory for go `isolated` client.
Takuto Ikuta057c5342019-12-03 04:05:05 +0000219 'go_cache_dir',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000220 # Parameters passed to go `isolated` client.
Takuto Ikuta879788c2020-01-10 08:00:26 +0000221 'go_cache_policies',
Junji Watanabeb03450b2020-09-25 05:09:27 +0000222 # Cache directory for `cas` client.
223 'cas_cache_dir',
224 # Parameters passed to `cas` client.
225 'cas_cache_policies',
Takuto Ikutaae391c52020-12-03 08:43:45 +0000226 # Parameters for kvs file used by `cas` client.
227 'cas_kvs',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000228 # Environment variables to set.
229 'env',
230 # Environment variables to mutate with relative directories.
231 # Example: {"ENV_KEY": ['relative', 'paths', 'to', 'prepend']}
232 'env_prefix',
233 # Lowers the task process priority.
234 'lower_priority',
235 # subprocess42.Containment instance. Can be None.
236 'containment',
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000237 ])
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500238
239
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500240def _to_str(s):
241 """Downgrades a unicode instance to str. Pass str through as-is."""
242 if isinstance(s, str):
243 return s
244 # This is technically incorrect, especially on Windows. In theory
245 # sys.getfilesystemencoding() should be used to use the right 'ANSI code
246 # page' on Windows, but that causes other problems, as the character set
247 # is very limited.
248 return s.encode('utf-8')
249
250
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -0500251def _to_unicode(s):
252 """Upgrades a str instance to unicode. Pass unicode through as-is."""
Takuto Ikuta95459dd2019-10-29 12:39:47 +0000253 if isinstance(s, six.text_type) or s is None:
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -0500254 return s
255 return s.decode('utf-8')
256
257
maruel03e11842016-07-14 10:50:16 -0700258def make_temp_dir(prefix, root_dir):
259 """Returns a new unique temporary directory."""
Takuto Ikuta6e2ff962019-10-29 12:35:27 +0000260 return six.text_type(tempfile.mkdtemp(prefix=prefix, dir=root_dir))
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +0000261
262
vadimsh9c54b2c2017-07-25 14:08:29 -0700263@contextlib.contextmanager
264def set_luci_context_account(account, tmp_dir):
265 """Sets LUCI_CONTEXT account to be used by the task.
266
267 If 'account' is None or '', does nothing at all. This happens when
268 run_isolated.py is called without '--switch-to-account' flag. In this case,
269 if run_isolated.py is running in some LUCI_CONTEXT environment, the task will
Takuto Ikuta33e2ff32019-09-30 12:44:03 +0000270 just inherit whatever account is already set. This may happen if users invoke
vadimsh9c54b2c2017-07-25 14:08:29 -0700271 run_isolated.py explicitly from their code.
272
273 If the requested account is not defined in the context, switches to
274 non-authenticated access. This happens for Swarming tasks that don't use
275 'task' service accounts.
276
277 If not using LUCI_CONTEXT-based auth, does nothing.
278 If already running as requested account, does nothing.
279 """
280 if not account:
281 # Not actually switching.
282 yield
283 return
284
285 local_auth = luci_context.read('local_auth')
286 if not local_auth:
287 # Not using LUCI_CONTEXT auth at all.
288 yield
289 return
290
291 # See LUCI_CONTEXT.md for the format of 'local_auth'.
292 if local_auth.get('default_account_id') == account:
293 # Already set, no need to switch.
294 yield
295 return
296
297 available = {a['id'] for a in local_auth.get('accounts') or []}
298 if account in available:
299 logging.info('Switching default LUCI_CONTEXT account to %r', account)
300 local_auth['default_account_id'] = account
301 else:
302 logging.warning(
303 'Requested LUCI_CONTEXT account %r is not available (have only %r), '
304 'disabling authentication', account, sorted(available))
305 local_auth.pop('default_account_id', None)
306
307 with luci_context.write(_tmpdir=tmp_dir, local_auth=local_auth):
308 yield
309
310
nodir90bc8dc2016-06-15 13:35:21 -0700311def process_command(command, out_dir, bot_file):
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000312 """Replaces parameters in a command line.
nodirbe642ff2016-06-09 15:51:51 -0700313
314 Raises:
315 ValueError if a parameter is requested in |command| but its value is not
316 provided.
317 """
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000318 return [replace_parameters(arg, out_dir, bot_file) for arg in command]
319
320
321def replace_parameters(arg, out_dir, bot_file):
322 """Replaces parameter tokens with appropriate values in a string.
323
324 Raises:
325 ValueError if a parameter is requested in |arg| but its value is not
326 provided.
327 """
328 arg = arg.replace(EXECUTABLE_SUFFIX_PARAMETER, cipd.EXECUTABLE_SUFFIX)
329 replace_slash = False
330 if ISOLATED_OUTDIR_PARAMETER in arg:
331 if not out_dir:
332 raise ValueError(
333 'output directory is requested in command or env var, but not '
334 'provided; please specify one')
335 arg = arg.replace(ISOLATED_OUTDIR_PARAMETER, out_dir)
336 replace_slash = True
337 if SWARMING_BOT_FILE_PARAMETER in arg:
338 if bot_file:
339 arg = arg.replace(SWARMING_BOT_FILE_PARAMETER, bot_file)
nodirbe642ff2016-06-09 15:51:51 -0700340 replace_slash = True
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000341 else:
342 logging.warning('SWARMING_BOT_FILE_PARAMETER found in command or env '
343 'var, but no bot_file specified. Leaving parameter '
344 'unchanged.')
345 if replace_slash:
346 # Replace slashes only if parameters are present
347 # because of arguments like '${ISOLATED_OUTDIR}/foo/bar'
348 arg = arg.replace('/', os.sep)
349 return arg
maruela9cfd6f2015-09-15 11:03:15 -0700350
351
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000352
353def get_command_env(tmp_dir, cipd_info, run_dir, env, env_prefixes, out_dir,
354 bot_file):
vadimsh232f5a82017-01-20 19:23:44 -0800355 """Returns full OS environment to run a command in.
356
Robert Iannuccibf5f84c2017-11-22 12:56:50 -0800357 Sets up TEMP, puts directory with cipd binary in front of PATH, exposes
358 CIPD_CACHE_DIR env var, and installs all env_prefixes.
vadimsh232f5a82017-01-20 19:23:44 -0800359
360 Args:
361 tmp_dir: temp directory.
362 cipd_info: CipdInfo object is cipd client is used, None if not.
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500363 run_dir: The root directory the isolated tree is mapped in.
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500364 env: environment variables to use
Robert Iannuccibf5f84c2017-11-22 12:56:50 -0800365 env_prefixes: {"ENV_KEY": ['cwd', 'relative', 'paths', 'to', 'prepend']}
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000366 out_dir: Isolated output directory. Required to be != None if any of the
367 env vars contain ISOLATED_OUTDIR_PARAMETER.
368 bot_file: Required to be != None if any of the env vars contain
369 SWARMING_BOT_FILE_PARAMETER.
vadimsh232f5a82017-01-20 19:23:44 -0800370 """
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500371 out = os.environ.copy()
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +0000372 for k, v in env.items():
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500373 if not v:
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500374 out.pop(k, None)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500375 else:
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000376 out[k] = replace_parameters(v, out_dir, bot_file)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500377
378 if cipd_info:
379 bin_dir = os.path.dirname(cipd_info.client.binary_path)
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500380 out['PATH'] = '%s%s%s' % (_to_str(bin_dir), os.pathsep, out['PATH'])
381 out['CIPD_CACHE_DIR'] = _to_str(cipd_info.cache_dir)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500382
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +0000383 for key, paths in env_prefixes.items():
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500384 assert isinstance(paths, list), paths
385 paths = [os.path.normpath(os.path.join(run_dir, p)) for p in paths]
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500386 cur = out.get(key)
387 if cur:
388 paths.append(cur)
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500389 out[key] = _to_str(os.path.pathsep.join(paths))
vadimsh232f5a82017-01-20 19:23:44 -0800390
Marc-Antoine Ruelefb30b12018-07-25 18:34:36 +0000391 tmp_dir = _to_str(tmp_dir)
392 # pylint: disable=line-too-long
393 # * python respects $TMPDIR, $TEMP, and $TMP in this order, regardless of
394 # platform. So $TMPDIR must be set on all platforms.
395 # https://github.com/python/cpython/blob/2.7/Lib/tempfile.py#L155
396 out['TMPDIR'] = tmp_dir
397 if sys.platform == 'win32':
398 # * chromium's base utils uses GetTempPath().
399 # https://cs.chromium.org/chromium/src/base/files/file_util_win.cc?q=GetTempPath
400 # * Go uses GetTempPath().
401 # * GetTempDir() uses %TMP%, then %TEMP%, then other stuff. So %TMP% must be
402 # set.
403 # https://docs.microsoft.com/en-us/windows/desktop/api/fileapi/nf-fileapi-gettemppathw
404 out['TMP'] = tmp_dir
405 # https://blogs.msdn.microsoft.com/oldnewthing/20150417-00/?p=44213
406 out['TEMP'] = tmp_dir
407 elif sys.platform == 'darwin':
408 # * Chromium uses an hack on macOS before calling into
409 # NSTemporaryDirectory().
410 # https://cs.chromium.org/chromium/src/base/files/file_util_mac.mm?q=GetTempDir
411 # https://developer.apple.com/documentation/foundation/1409211-nstemporarydirectory
412 out['MAC_CHROMIUM_TMPDIR'] = tmp_dir
413 else:
414 # TMPDIR is specified as the POSIX standard envvar for the temp directory.
415 # http://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap08.html
416 # * mktemp on linux respects $TMPDIR.
417 # * Chromium respects $TMPDIR on linux.
418 # https://cs.chromium.org/chromium/src/base/files/file_util_posix.cc?q=GetTempDir
419 # * Go uses $TMPDIR.
420 # https://go.googlesource.com/go/+/go1.10.3/src/os/file_unix.go#307
421 pass
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500422 return out
vadimsh232f5a82017-01-20 19:23:44 -0800423
424
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000425def run_command(
426 command, cwd, env, hard_timeout, grace_period, lower_priority, containment):
maruel6be7f9e2015-10-01 12:25:30 -0700427 """Runs the command.
428
429 Returns:
430 tuple(process exit code, bool if had a hard timeout)
431 """
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000432 logging.info(
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000433 'run_command(%s, %s, %s, %s, %s, %s)',
434 command, cwd, hard_timeout, grace_period, lower_priority, containment)
marueleb5fbee2015-09-17 13:01:36 -0700435
maruel6be7f9e2015-10-01 12:25:30 -0700436 exit_code = None
437 had_hard_timeout = False
maruela9cfd6f2015-09-15 11:03:15 -0700438 with tools.Profiler('RunTest'):
maruel6be7f9e2015-10-01 12:25:30 -0700439 proc = None
440 had_signal = []
maruela9cfd6f2015-09-15 11:03:15 -0700441 try:
maruel6be7f9e2015-10-01 12:25:30 -0700442 # TODO(maruel): This code is imperfect. It doesn't handle well signals
443 # during the download phase and there's short windows were things can go
444 # wrong.
445 def handler(signum, _frame):
446 if proc and not had_signal:
447 logging.info('Received signal %d', signum)
448 had_signal.append(True)
maruel556d9052015-10-05 11:12:44 -0700449 raise subprocess42.TimeoutExpired(command, None)
maruel6be7f9e2015-10-01 12:25:30 -0700450
Marc-Antoine Ruel30b80fe2019-02-08 13:51:31 +0000451 proc = subprocess42.Popen(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000452 command, cwd=cwd, env=env, detached=True, close_fds=True,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000453 lower_priority=lower_priority, containment=containment)
maruel6be7f9e2015-10-01 12:25:30 -0700454 with subprocess42.set_signal_handler(subprocess42.STOP_SIGNALS, handler):
455 try:
John Budorickc398f092019-06-10 22:49:44 +0000456 exit_code = proc.wait(hard_timeout or None)
maruel6be7f9e2015-10-01 12:25:30 -0700457 except subprocess42.TimeoutExpired:
458 if not had_signal:
459 logging.warning('Hard timeout')
460 had_hard_timeout = True
461 logging.warning('Sending SIGTERM')
462 proc.terminate()
463
Takuto Ikuta684f7912020-09-29 07:49:49 +0000464 kill_sent = False
maruel6be7f9e2015-10-01 12:25:30 -0700465 # Ignore signals in grace period. Forcibly give the grace period to the
466 # child process.
467 if exit_code is None:
468 ignore = lambda *_: None
469 with subprocess42.set_signal_handler(subprocess42.STOP_SIGNALS, ignore):
470 try:
471 exit_code = proc.wait(grace_period or None)
472 except subprocess42.TimeoutExpired:
473 # Now kill for real. The user can distinguish between the
474 # following states:
475 # - signal but process exited within grace period,
476 # hard_timed_out will be set but the process exit code will be
477 # script provided.
478 # - processed exited late, exit code will be -9 on posix.
479 logging.warning('Grace exhausted; sending SIGKILL')
480 proc.kill()
Takuto Ikuta684f7912020-09-29 07:49:49 +0000481 kill_sent = True
martiniss5c8043e2017-08-01 17:09:43 -0700482 logging.info('Waiting for process exit')
maruel6be7f9e2015-10-01 12:25:30 -0700483 exit_code = proc.wait()
Takuto Ikuta684f7912020-09-29 07:49:49 +0000484
485 # the process group / job object may be dangling so if we didn't kill
486 # it already, give it a poke now.
487 if not kill_sent:
488 proc.kill()
Takuto Ikutaeccf0862020-03-19 03:05:55 +0000489 except OSError as e:
maruela9cfd6f2015-09-15 11:03:15 -0700490 # This is not considered to be an internal error. The executable simply
491 # does not exit.
maruela72f46e2016-02-24 11:05:45 -0800492 sys.stderr.write(
tikuta2d678212019-09-23 23:12:08 +0000493 '<The executable does not exist, a dependent library is missing or '
494 'the command line is too long>\n'
495 '<Check for missing .so/.dll in the .isolate or GN file or length of '
496 'command line args>\n'
Takuto Ikutaeccf0862020-03-19 03:05:55 +0000497 '<Command: %s, Exception: %s>\n' % (command, e))
maruela72f46e2016-02-24 11:05:45 -0800498 if os.environ.get('SWARMING_TASK_ID'):
499 # Give an additional hint when running as a swarming task.
500 sys.stderr.write(
501 '<See the task\'s page for commands to help diagnose this issue '
502 'by reproducing the task locally>\n')
maruela9cfd6f2015-09-15 11:03:15 -0700503 exit_code = 1
504 logging.info(
505 'Command finished with exit code %d (%s)',
506 exit_code, hex(0xffffffff & exit_code))
maruel6be7f9e2015-10-01 12:25:30 -0700507 return exit_code, had_hard_timeout
maruela9cfd6f2015-09-15 11:03:15 -0700508
509
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000510def _run_go_cmd_and_wait(cmd):
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000511 """
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000512 Runs an external Go command, `isolated` or `cas`, and wait for its completion.
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000513
514 While this is a generic function to launch a subprocess, it has logic that
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000515 is specific to Go `isolated` and `cas` for waiting and logging.
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000516
517 Returns:
518 The subprocess object
519 """
Ye Kuang3c40e9f2020-07-28 13:15:25 +0000520 cmd_str = ' '.join(cmd)
Ye Kuangc1d800f2020-07-28 10:14:55 +0000521 try:
522 proc = subprocess42.Popen(cmd)
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000523
Ye Kuangc1d800f2020-07-28 10:14:55 +0000524 exceeded_max_timeout = True
525 check_period_sec = 30
526 max_checks = 100
527 # max timeout = max_checks * check_period_sec = 50 minutes
528 for i in range(max_checks):
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000529 # This is to prevent I/O timeout error during setup.
Ye Kuangc1d800f2020-07-28 10:14:55 +0000530 try:
531 retcode = proc.wait(check_period_sec)
532 if retcode != 0:
533 raise ValueError("retcode is not 0: %s (cmd=%s)" % (retcode, cmd_str))
534 exceeded_max_timeout = False
535 break
536 except subprocess42.TimeoutExpired:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000537 print('still running (after %d seconds)' % ((i + 1) * check_period_sec))
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000538
Ye Kuangc1d800f2020-07-28 10:14:55 +0000539 if exceeded_max_timeout:
540 proc.terminate()
541 try:
542 proc.wait(check_period_sec)
543 except subprocess42.TimeoutExpired:
544 logging.exception(
545 "failed to terminate? timeout happened after %d seconds",
546 check_period_sec)
547 proc.kill()
548 proc.wait()
549 # Raise unconditionally, because |proc| was forcefully terminated.
550 raise ValueError("timedout after %d seconds (cmd=%s)" %
551 (check_period_sec * max_checks, cmd_str))
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000552
Ye Kuangc1d800f2020-07-28 10:14:55 +0000553 return proc
554 except Exception:
555 logging.exception('Failed to run Go cmd %s', cmd_str)
556 raise
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000557
558
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000559def _fetch_and_map_with_cas(cas_client, digest, instance, output_dir, cache_dir,
Takuto Ikutaae391c52020-12-03 08:43:45 +0000560 policies, kvs_file):
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000561 """
562 Fetches a CAS tree using cas client, create the tree and returns download
563 stats.
564 """
565
Takuto Ikuta34a86c52020-10-13 05:30:57 +0000566 # TODO(crbug.com/chrome-operations/49):
567 # remove this after isolate to RBE-CAS migration.
568 _CAS_EMPTY_DIR_DIGEST = (
569 'e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855/0')
570 if digest == _CAS_EMPTY_DIR_DIGEST:
571 return {
572 'duration': 0.0,
573 'items_cold': '',
574 'items_hot': '',
575 }
576
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000577 start = time.time()
578 result_json_handle, result_json_path = tempfile.mkstemp(
579 prefix=u'fetch-and-map-result-', suffix=u'.json')
580 os.close(result_json_handle)
581 try:
582 cmd = [
583 cas_client,
584 'download',
585 '-digest',
586 digest,
587 '-cas-instance',
588 instance,
589 # flags for cache.
590 '-cache-dir',
591 cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000592 '-cache-max-size',
593 str(policies.max_cache_size),
594 '-cache-min-free-space',
595 str(policies.min_free_space),
596 # flags for output.
597 '-dir',
598 output_dir,
599 '-dump-stats-json',
600 result_json_path,
Takuto Ikuta557025b2021-02-01 08:37:40 +0000601 '-log-level',
602 'info'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000603 ]
Takuto Ikutaae391c52020-12-03 08:43:45 +0000604
605 if kvs_file:
606 cmd.extend(['-kvs-file', kvs_file])
607
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000608 _run_go_cmd_and_wait(cmd)
609
610 with open(result_json_path) as json_file:
611 result_json = json.load(json_file)
612
613 return {
614 'duration': time.time() - start,
615 'items_cold': result_json['items_cold'],
616 'items_hot': result_json['items_hot'],
617 }
618 finally:
619 fs.remove(result_json_path)
620
621
622def _fetch_and_map_with_go_isolated(isolated_hash, storage, outdir,
623 go_cache_dir, policies, isolated_client):
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000624 """
625 Fetches an isolated tree using go client, create the tree and returns
Takuto Ikuta57219f42020-11-02 07:35:36 +0000626 stats.
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000627 """
628 start = time.time()
629 server_ref = storage.server_ref
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000630 result_json_handle, result_json_path = tempfile.mkstemp(
631 prefix=u'fetch-and-map-result-', suffix=u'.json')
632 os.close(result_json_handle)
633 try:
Ye Kuanga98764c2020-04-09 03:17:37 +0000634 cmd = [
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000635 isolated_client,
636 'download',
637 '-isolate-server',
638 server_ref.url,
639 '-namespace',
640 server_ref.namespace,
641 '-isolated',
642 isolated_hash,
643
644 # flags for cache
645 '-cache-dir',
Takuto Ikuta057c5342019-12-03 04:05:05 +0000646 go_cache_dir,
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000647 '-cache-max-items',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000648 str(policies.max_items),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000649 '-cache-max-size',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000650 str(policies.max_cache_size),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000651 '-cache-min-free-space',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000652 str(policies.min_free_space),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000653
654 # flags for output
655 '-output-dir',
656 outdir,
657 '-fetch-and-map-result-json',
658 result_json_path,
Ye Kuanga98764c2020-04-09 03:17:37 +0000659 ]
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000660 _run_go_cmd_and_wait(cmd)
Takuto Ikuta3153e3b2020-02-18 06:11:47 +0000661
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000662 with open(result_json_path) as json_file:
663 result_json = json.load(json_file)
664
Takuto Ikuta57219f42020-11-02 07:35:36 +0000665 return {
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000666 'duration': time.time() - start,
667 'items_cold': result_json['items_cold'],
668 'items_hot': result_json['items_hot'],
Ye Kuang65a1de52020-10-16 08:31:16 +0000669 'initial_number_items': result_json['initial_number_items'],
670 'initial_size': result_json['initial_size'],
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000671 }
672 finally:
673 fs.remove(result_json_path)
674
675
676# TODO(crbug.com/932396): remove this function.
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000677def fetch_and_map(isolated_hash, storage, cache, outdir):
Takuto Ikuta57219f42020-11-02 07:35:36 +0000678 """Fetches an isolated tree, create the tree and returns stats."""
nodir6f801882016-04-29 14:41:50 -0700679 start = time.time()
Takuto Ikuta57219f42020-11-02 07:35:36 +0000680 isolateserver.fetch_isolated(
nodir6f801882016-04-29 14:41:50 -0700681 isolated_hash=isolated_hash,
682 storage=storage,
683 cache=cache,
maruel4409e302016-07-19 14:25:51 -0700684 outdir=outdir,
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000685 use_symlinks=False)
Takuto Ikuta2b9640e2019-06-19 00:53:23 +0000686 hot = (collections.Counter(cache.used) -
687 collections.Counter(cache.added)).elements()
Takuto Ikuta57219f42020-11-02 07:35:36 +0000688 return {
Takuto Ikuta630f99d2020-07-02 12:59:35 +0000689 'duration': time.time() - start,
690 'items_cold': base64.b64encode(large.pack(sorted(cache.added))).decode(),
691 'items_hot': base64.b64encode(large.pack(sorted(hot))).decode(),
nodir6f801882016-04-29 14:41:50 -0700692 }
693
694
aludwin0a8e17d2016-10-27 15:57:39 -0700695def link_outputs_to_outdir(run_dir, out_dir, outputs):
696 """Links any named outputs to out_dir so they can be uploaded.
697
698 Raises an error if the file already exists in that directory.
699 """
700 if not outputs:
701 return
702 isolateserver.create_directories(out_dir, outputs)
703 for o in outputs:
Sadaf Matinkhoo10743a62018-03-29 16:28:58 -0400704 copy_recursively(os.path.join(run_dir, o), os.path.join(out_dir, o))
705
706
707def copy_recursively(src, dst):
708 """Efficiently copies a file or directory from src_dir to dst_dir.
709
710 `item` may be a file, directory, or a symlink to a file or directory.
711 All symlinks are replaced with their targets, so the resulting
712 directory structure in dst_dir will never have any symlinks.
713
714 To increase speed, copy_recursively hardlinks individual files into the
715 (newly created) directory structure if possible, unlike Python's
716 shutil.copytree().
717 """
718 orig_src = src
719 try:
720 # Replace symlinks with their final target.
721 while fs.islink(src):
722 res = fs.readlink(src)
723 src = os.path.join(os.path.dirname(src), res)
724 # TODO(sadafm): Explicitly handle cyclic symlinks.
725
726 # Note that fs.isfile (which is a wrapper around os.path.isfile) throws
727 # an exception if src does not exist. A warning will be logged in that case.
728 if fs.isfile(src):
729 file_path.link_file(dst, src, file_path.HARDLINK_WITH_FALLBACK)
730 return
731
732 if not fs.exists(dst):
733 os.makedirs(dst)
734
735 for child in fs.listdir(src):
736 copy_recursively(os.path.join(src, child), os.path.join(dst, child))
737
738 except OSError as e:
739 if e.errno == errno.ENOENT:
740 logging.warning('Path %s does not exist or %s is a broken symlink',
741 src, orig_src)
742 else:
743 logging.info("Couldn't collect output file %s: %s", src, e)
aludwin0a8e17d2016-10-27 15:57:39 -0700744
745
Ye Kuangfb0bad62020-07-28 08:07:25 +0000746def _upload_with_py(storage, out_dir):
747
748 def process_stats(f_st):
749 st = sorted(i.size for i in f_st)
750 return base64.b64encode(large.pack(st)).decode()
751
752 try:
753 results, f_cold, f_hot = isolateserver.archive_files_to_storage(
754 storage, [out_dir], None, verify_push=True)
755
756 isolated = list(results.values())[0]
757 cold = process_stats(f_cold)
758 hot = process_stats(f_hot)
759 return isolated, cold, hot
760
761 except isolateserver.Aborted:
762 # This happens when a signal SIGTERM was received while uploading data.
763 # There is 2 causes:
764 # - The task was too slow and was about to be killed anyway due to
765 # exceeding the hard timeout.
766 # - The amount of data uploaded back is very large and took too much
767 # time to archive.
768 sys.stderr.write('Received SIGTERM while uploading')
769 # Re-raise, so it will be treated as an internal failure.
770 raise
771
772
773def _upload_with_go(storage, outdir, isolated_client):
774 """
775 Uploads results back using the Go `isolated` CLI.
776 """
777 server_ref = storage.server_ref
778 isolated_handle, isolated_path = tempfile.mkstemp(
779 prefix=u'isolated-hash-', suffix=u'.txt')
780 stats_json_handle, stats_json_path = tempfile.mkstemp(
781 prefix=u'dump-stats-', suffix=u'.json')
782 os.close(isolated_handle)
783 os.close(stats_json_handle)
784 try:
785 cmd = [
786 isolated_client,
787 'archive',
788 '-isolate-server',
789 server_ref.url,
790 '-namespace',
791 server_ref.namespace,
792 '-dirs',
793 # Format: <working directory>:<relative path to dir>
794 outdir + ':',
795
796 # output
797 '-dump-hash',
798 isolated_path,
799 '-dump-stats-json',
800 stats_json_path,
Ye Kuangbc4e8402020-07-29 09:54:30 +0000801 '-quiet',
Ye Kuangfb0bad62020-07-28 08:07:25 +0000802 ]
Ye Kuang0023dc52020-08-04 05:28:41 +0000803 # Will do exponential backoff, e.g. 10, 20, 40...
804 # This mitigates https://crbug.com/1094369, where there is a data race on
805 # the uploaded files.
806 backoff = 10
Takuto Ikutae0bfec72020-08-28 02:52:52 +0000807 started = time.time()
Ye Kuang0023dc52020-08-04 05:28:41 +0000808 while True:
809 try:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000810 _run_go_cmd_and_wait(cmd)
Ye Kuang0023dc52020-08-04 05:28:41 +0000811 break
812 except Exception:
Takuto Ikutae0bfec72020-08-28 02:52:52 +0000813 if time.time() > started + 60 * 2:
814 # This is to not wait task having leaked process long time.
Ye Kuang0023dc52020-08-04 05:28:41 +0000815 raise
816
817 on_error.report('error before %d second backoff' % backoff)
818 logging.exception(
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000819 '_run_go_cmd_and_wait() failed, will retry after %d seconds',
Ye Kuang0023dc52020-08-04 05:28:41 +0000820 backoff)
821 time.sleep(backoff)
822 backoff *= 2
Ye Kuangfb0bad62020-07-28 08:07:25 +0000823
824 with open(isolated_path) as isol_file:
825 isolated = isol_file.read()
826 with open(stats_json_path) as json_file:
827 stats_json = json.load(json_file)
828
829 return isolated, stats_json['items_cold'], stats_json['items_hot']
830 finally:
831 fs.remove(isolated_path)
832 fs.remove(stats_json_path)
833
834
Ye Kuangbc4e8402020-07-29 09:54:30 +0000835def upload_out_dir(storage, out_dir, go_isolated_client):
836 """Uploads the results in |out_dir| back, if there is any.
maruela9cfd6f2015-09-15 11:03:15 -0700837
838 Returns:
Ye Kuangbc4e8402020-07-29 09:54:30 +0000839 tuple(outputs_ref, stats)
maruel064c0a32016-04-05 11:47:15 -0700840 - outputs_ref: a dict referring to the results archived back to the isolated
841 server, if applicable.
nodir6f801882016-04-29 14:41:50 -0700842 - stats: uploading stats.
maruela9cfd6f2015-09-15 11:03:15 -0700843 """
maruela9cfd6f2015-09-15 11:03:15 -0700844 # Upload out_dir and generate a .isolated file out of this directory. It is
845 # only done if files were written in the directory.
846 outputs_ref = None
Ye Kuangfb0bad62020-07-28 08:07:25 +0000847 cold = ''
848 hot = ''
nodir6f801882016-04-29 14:41:50 -0700849 start = time.time()
850
maruel12e30012015-10-09 11:55:35 -0700851 if fs.isdir(out_dir) and fs.listdir(out_dir):
maruela9cfd6f2015-09-15 11:03:15 -0700852 with tools.Profiler('ArchiveOutput'):
Ye Kuangfb0bad62020-07-28 08:07:25 +0000853 isolated = None
Ye Kuang72e6fe82020-08-05 06:30:04 +0000854 if _USE_GO_ISOLATED_TO_UPLOAD and go_isolated_client is not None:
Ye Kuangfb0bad62020-07-28 08:07:25 +0000855 isolated, cold, hot = _upload_with_go(storage, out_dir,
856 go_isolated_client)
Ye Kuang72e6fe82020-08-05 06:30:04 +0000857 else:
858 isolated, cold, hot = _upload_with_py(storage, out_dir)
Ye Kuangfb0bad62020-07-28 08:07:25 +0000859 outputs_ref = {
860 'isolated': isolated,
861 'isolatedserver': storage.server_ref.url,
862 'namespace': storage.server_ref.namespace,
863 }
nodir6f801882016-04-29 14:41:50 -0700864
nodir6f801882016-04-29 14:41:50 -0700865 stats = {
Takuto Ikuta630f99d2020-07-02 12:59:35 +0000866 'duration': time.time() - start,
Ye Kuangfb0bad62020-07-28 08:07:25 +0000867 'items_cold': cold,
868 'items_hot': hot,
nodir6f801882016-04-29 14:41:50 -0700869 }
Ye Kuangbc4e8402020-07-29 09:54:30 +0000870 return outputs_ref, stats
maruela9cfd6f2015-09-15 11:03:15 -0700871
872
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000873def upload_outdir_with_cas(cas_client, cas_instance, outdir):
874 """Uploads the results in |outdir|, if there is any.
875
876 Returns:
877 tuple(root_digest, stats)
878 - root_digest: a digest of the output directory.
879 - stats: uploading stats.
880 """
881 digest_file_handle, digest_path = tempfile.mkstemp(
882 prefix=u'cas-digest', suffix=u'.txt')
883 os.close(digest_file_handle)
884 stats_json_handle, stats_json_path = tempfile.mkstemp(
885 prefix=u'upload-stats', suffix=u'.json')
886 os.close(stats_json_handle)
887
888 try:
889 cmd = [
890 cas_client,
891 'archive',
892 '-cas-instance',
893 cas_instance,
894 '-paths',
895 # Format: <working directory>:<relative path to dir>
896 outdir + ':',
897 # output
898 '-dump-digest',
899 digest_path,
900 '-dump-stats-json',
901 stats_json_path,
902 ]
903
904 start = time.time()
905
906 _run_go_cmd_and_wait(cmd)
907
908 with open(digest_path) as digest_file:
909 digest = digest_file.read()
Junji Watanabec208b302020-09-25 09:18:27 +0000910 h, s = digest.split('/')
911 cas_output_root = {
912 'cas_instance': cas_instance,
913 'digest': {
914 'hash': h,
915 'size_bytes': int(s)
916 }
917 }
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000918 with open(stats_json_path) as stats_file:
919 stats = json.load(stats_file)
920
921 stats['duration'] = time.time() - start
922
Junji Watanabec208b302020-09-25 09:18:27 +0000923 return cas_output_root, stats
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000924 finally:
925 fs.remove(digest_path)
926 fs.remove(stats_json_path)
927
928
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500929def map_and_run(data, constant_run_path):
nodir55be77b2016-05-03 09:39:57 -0700930 """Runs a command with optional isolated input/output.
931
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500932 Arguments:
933 - data: TaskData instance.
934 - constant_run_path: TODO
nodir55be77b2016-05-03 09:39:57 -0700935
936 Returns metadata about the result.
937 """
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000938
939 if data.isolate_cache:
940 download_stats = {
941 #'duration': 0.,
942 'initial_number_items': len(data.isolate_cache),
943 'initial_size': data.isolate_cache.total_size,
944 #'items_cold': '<large.pack()>',
945 #'items_hot': '<large.pack()>',
946 }
947 else:
948 # TODO(tikuta): take stats from state.json in this case too.
949 download_stats = {}
950
maruela9cfd6f2015-09-15 11:03:15 -0700951 result = {
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000952 'duration': None,
953 'exit_code': None,
954 'had_hard_timeout': False,
955 'internal_failure': 'run_isolated did not complete properly',
956 'stats': {
957 #'cipd': {
958 # 'duration': 0.,
959 # 'get_client_duration': 0.,
960 #},
961 'isolated': {
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000962 'download': download_stats,
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000963 #'upload': {
964 # 'duration': 0.,
965 # 'items_cold': '<large.pack()>',
966 # 'items_hot': '<large.pack()>',
967 #},
968 },
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000969 },
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000970 #'cipd_pins': {
971 # 'packages': [
972 # {'package_name': ..., 'version': ..., 'path': ...},
973 # ...
974 # ],
975 # 'client_package': {'package_name': ..., 'version': ...},
976 #},
977 'outputs_ref': None,
Junji Watanabe54925c32020-09-08 00:56:18 +0000978 'cas_output_root': None,
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000979 'version': 5,
maruela9cfd6f2015-09-15 11:03:15 -0700980 }
nodirbe642ff2016-06-09 15:51:51 -0700981
Takuto Ikutad46ea762020-10-07 05:43:22 +0000982 assert os.path.isabs(data.root_dir), ("data.root_dir is not abs path: %s" %
983 data.root_dir)
984 file_path.ensure_tree(data.root_dir, 0o700)
985
maruele2f2cb82016-07-13 14:41:03 -0700986 # See comment for these constants.
maruelcffa0542017-04-07 08:39:20 -0700987 # TODO(maruel): This is not obvious. Change this to become an error once we
988 # make the constant_run_path an exposed flag.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500989 if constant_run_path and data.root_dir:
990 run_dir = os.path.join(data.root_dir, ISOLATED_RUN_DIR)
maruel5c4eed82017-05-26 05:33:40 -0700991 if os.path.isdir(run_dir):
992 file_path.rmtree(run_dir)
Lei Leife202df2019-06-11 17:33:34 +0000993 os.mkdir(run_dir, 0o700)
maruelcffa0542017-04-07 08:39:20 -0700994 else:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500995 run_dir = make_temp_dir(ISOLATED_RUN_DIR, data.root_dir)
Junji Watanabe1adba7b2020-09-18 07:03:58 +0000996
997 # True if CAS is used for download/upload files.
998 use_cas = bool(data.cas_digest)
999
maruel03e11842016-07-14 10:50:16 -07001000 # storage should be normally set but don't crash if it is not. This can happen
1001 # as Swarming task can run without an isolate server.
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001002 out_dir = None
1003 if data.storage or use_cas:
1004 out_dir = make_temp_dir(ISOLATED_OUT_DIR, data.root_dir)
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001005 tmp_dir = make_temp_dir(ISOLATED_TMP_DIR, data.root_dir)
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001006 isolated_client_dir = make_temp_dir(ISOLATED_CLIENT_DIR, data.root_dir)
nodir55be77b2016-05-03 09:39:57 -07001007 cwd = run_dir
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001008 if data.relative_cwd:
1009 cwd = os.path.normpath(os.path.join(cwd, data.relative_cwd))
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001010 command = data.command
Ye Kuangfb0bad62020-07-28 08:07:25 +00001011 go_isolated_client = None
1012 if data.use_go_isolated:
1013 go_isolated_client = os.path.join(isolated_client_dir,
1014 'isolated' + cipd.EXECUTABLE_SUFFIX)
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001015
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001016 cas_client = None
1017 cas_client_dir = make_temp_dir(_CAS_CLIENT_DIR, data.root_dir)
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001018 if use_cas:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001019 cas_client = os.path.join(cas_client_dir, 'cas' + cipd.EXECUTABLE_SUFFIX)
1020
nodir55be77b2016-05-03 09:39:57 -07001021 try:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001022 with data.install_packages_fn(run_dir, isolated_client_dir,
1023 cas_client_dir) as cipd_info:
vadimsh232f5a82017-01-20 19:23:44 -08001024 if cipd_info:
1025 result['stats']['cipd'] = cipd_info.stats
1026 result['cipd_pins'] = cipd_info.pins
nodir90bc8dc2016-06-15 13:35:21 -07001027
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001028 isolated_stats = result['stats'].setdefault('isolated', {})
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001029 if data.isolated_hash:
Takuto Ikutad03ffcc2019-12-02 01:04:23 +00001030 if data.use_go_isolated:
Takuto Ikuta57219f42020-11-02 07:35:36 +00001031 stats = _fetch_and_map_with_go_isolated(
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001032 isolated_hash=data.isolated_hash,
1033 storage=data.storage,
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001034 outdir=run_dir,
1035 go_cache_dir=data.go_cache_dir,
Takuto Ikuta879788c2020-01-10 08:00:26 +00001036 policies=data.go_cache_policies,
Ye Kuangfb0bad62020-07-28 08:07:25 +00001037 isolated_client=go_isolated_client)
Takuto Ikuta90397ca2020-01-08 10:07:55 +00001038 else:
Takuto Ikuta57219f42020-11-02 07:35:36 +00001039 stats = fetch_and_map(
Takuto Ikutad03ffcc2019-12-02 01:04:23 +00001040 isolated_hash=data.isolated_hash,
1041 storage=data.storage,
1042 cache=data.isolate_cache,
Takuto Ikuta16fac4b2019-12-09 04:57:18 +00001043 outdir=run_dir)
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +00001044 isolated_stats['download'].update(stats)
Takuto Ikutab58dbd12020-06-05 09:29:14 +00001045
Junji Watanabe54925c32020-09-08 00:56:18 +00001046 elif data.cas_digest:
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001047 stats = _fetch_and_map_with_cas(
1048 cas_client=cas_client,
1049 digest=data.cas_digest,
1050 instance=data.cas_instance,
1051 output_dir=run_dir,
Junji Watanabeb03450b2020-09-25 05:09:27 +00001052 cache_dir=data.cas_cache_dir,
Takuto Ikutaae391c52020-12-03 08:43:45 +00001053 policies=data.cas_cache_policies,
1054 kvs_file=data.cas_kvs)
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001055 isolated_stats['download'].update(stats)
Junji Watanabe54925c32020-09-08 00:56:18 +00001056
maruelabec63c2017-04-26 11:53:24 -07001057 if not command:
1058 # Handle this as a task failure, not an internal failure.
1059 sys.stderr.write(
1060 '<No command was specified!>\n'
1061 '<Please secify a command when triggering your Swarming task>\n')
1062 result['exit_code'] = 1
1063 return result
nodirbe642ff2016-06-09 15:51:51 -07001064
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001065 if not cwd.startswith(run_dir):
1066 # Handle this as a task failure, not an internal failure. This is a
1067 # 'last chance' way to gate against directory escape.
1068 sys.stderr.write('<Relative CWD is outside of run directory!>\n')
1069 result['exit_code'] = 1
1070 return result
1071
1072 if not os.path.isdir(cwd):
1073 # Accepts relative_cwd that does not exist.
Lei Leife202df2019-06-11 17:33:34 +00001074 os.makedirs(cwd, 0o700)
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001075
vadimsh232f5a82017-01-20 19:23:44 -08001076 # If we have an explicit list of files to return, make sure their
1077 # directories exist now.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001078 if data.storage and data.outputs:
1079 isolateserver.create_directories(run_dir, data.outputs)
aludwin0a8e17d2016-10-27 15:57:39 -07001080
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001081 with data.install_named_caches(run_dir):
nodird6160682017-02-02 13:03:35 -08001082 sys.stdout.flush()
1083 start = time.time()
1084 try:
vadimsh9c54b2c2017-07-25 14:08:29 -07001085 # Need to switch the default account before 'get_command_env' call,
1086 # so it can grab correct value of LUCI_CONTEXT env var.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001087 with set_luci_context_account(data.switch_to_account, tmp_dir):
1088 env = get_command_env(
Roberto Carrillo71ade6d2018-10-08 22:30:24 +00001089 tmp_dir, cipd_info, run_dir, data.env, data.env_prefix, out_dir,
1090 data.bot_file)
Brian Sheedy7a761172019-08-30 22:55:14 +00001091 command = tools.find_executable(command, env)
Robert Iannucci24ae76a2018-02-26 12:51:18 -08001092 command = process_command(command, out_dir, data.bot_file)
1093 file_path.ensure_command_has_abs_path(command, cwd)
1094
vadimsh9c54b2c2017-07-25 14:08:29 -07001095 result['exit_code'], result['had_hard_timeout'] = run_command(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +00001096 command, cwd, env, data.hard_timeout, data.grace_period,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001097 data.lower_priority, data.containment)
nodird6160682017-02-02 13:03:35 -08001098 finally:
1099 result['duration'] = max(time.time() - start, 0)
Seth Koehler49139812017-12-19 13:59:33 -05001100
Ye Kuangbc4e8402020-07-29 09:54:30 +00001101 if out_dir:
1102 # Try to link files to the output directory, if specified.
1103 link_outputs_to_outdir(run_dir, out_dir, data.outputs)
1104 isolated_stats = result['stats'].setdefault('isolated', {})
Junji Watanabe1adba7b2020-09-18 07:03:58 +00001105 if use_cas:
1106 result['cas_output_root'], isolated_stats['upload'] = (
1107 upload_outdir_with_cas(cas_client, data.cas_instance, out_dir))
1108 else:
1109 # This could use |go_isolated_client|, so make sure it runs when the
1110 # CIPD package still exists.
1111 result['outputs_ref'], isolated_stats['upload'] = (
1112 upload_out_dir(data.storage, out_dir, go_isolated_client))
Seth Koehler49139812017-12-19 13:59:33 -05001113 # We successfully ran the command, set internal_failure back to
1114 # None (even if the command failed, it's not an internal error).
1115 result['internal_failure'] = None
maruela9cfd6f2015-09-15 11:03:15 -07001116 except Exception as e:
nodir90bc8dc2016-06-15 13:35:21 -07001117 # An internal error occurred. Report accordingly so the swarming task will
1118 # be retried automatically.
maruel12e30012015-10-09 11:55:35 -07001119 logging.exception('internal failure: %s', e)
maruela9cfd6f2015-09-15 11:03:15 -07001120 result['internal_failure'] = str(e)
1121 on_error.report(None)
aludwin0a8e17d2016-10-27 15:57:39 -07001122
1123 # Clean up
maruela9cfd6f2015-09-15 11:03:15 -07001124 finally:
1125 try:
Ye Kuangbc4e8402020-07-29 09:54:30 +00001126 success = True
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001127 if data.leak_temp_dir:
nodir32a1ec12016-10-26 18:34:07 -07001128 success = True
maruela9cfd6f2015-09-15 11:03:15 -07001129 logging.warning(
1130 'Deliberately leaking %s for later examination', run_dir)
marueleb5fbee2015-09-17 13:01:36 -07001131 else:
maruel84537cb2015-10-16 14:21:28 -07001132 # On Windows rmtree(run_dir) call above has a synchronization effect: it
1133 # finishes only when all task child processes terminate (since a running
1134 # process locks *.exe file). Examine out_dir only after that call
1135 # completes (since child processes may write to out_dir too and we need
1136 # to wait for them to finish).
Junji Watanabeb03450b2020-09-25 05:09:27 +00001137 dirs_to_remove = [run_dir, tmp_dir, isolated_client_dir, cas_client_dir]
Ye Kuangbc4e8402020-07-29 09:54:30 +00001138 if out_dir:
1139 dirs_to_remove.append(out_dir)
1140 for directory in dirs_to_remove:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001141 if not fs.isdir(directory):
1142 continue
Junji Watanabe9cdfff52021-01-08 07:20:35 +00001143 start = time.time()
maruel84537cb2015-10-16 14:21:28 -07001144 try:
Junji Watanabecc4eefd2021-01-19 01:46:10 +00001145 file_path.rmtree(directory)
maruel84537cb2015-10-16 14:21:28 -07001146 except OSError as e:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001147 logging.error('rmtree(%r) failed: %s', directory, e)
maruel84537cb2015-10-16 14:21:28 -07001148 success = False
Junji Watanabe9cdfff52021-01-08 07:20:35 +00001149 finally:
1150 logging.info('Cleanup: rmtree(%r) took %d seconds', directory,
1151 time.time() - start)
maruel84537cb2015-10-16 14:21:28 -07001152 if not success:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001153 sys.stderr.write(
1154 OUTLIVING_ZOMBIE_MSG % (directory, data.grace_period))
Takuto Ikutad7d64e12020-07-31 06:18:45 +00001155 subprocess42.check_call(['tasklist.exe', '/V'], stdout=sys.stderr)
maruel84537cb2015-10-16 14:21:28 -07001156 if result['exit_code'] == 0:
1157 result['exit_code'] = 1
maruela9cfd6f2015-09-15 11:03:15 -07001158
maruela9cfd6f2015-09-15 11:03:15 -07001159 if not success and result['exit_code'] == 0:
1160 result['exit_code'] = 1
1161 except Exception as e:
1162 # Swallow any exception in the main finally clause.
nodir9130f072016-05-27 13:59:08 -07001163 if out_dir:
1164 logging.exception('Leaking out_dir %s: %s', out_dir, e)
maruela9cfd6f2015-09-15 11:03:15 -07001165 result['internal_failure'] = str(e)
Takuto Ikutaa9a907b2020-04-17 08:50:50 +00001166 on_error.report(None)
maruela9cfd6f2015-09-15 11:03:15 -07001167 return result
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -05001168
1169
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001170def run_tha_test(data, result_json):
nodir55be77b2016-05-03 09:39:57 -07001171 """Runs an executable and records execution metadata.
1172
nodir55be77b2016-05-03 09:39:57 -07001173 If isolated_hash is specified, downloads the dependencies in the cache,
1174 hardlinks them into a temporary directory and runs the command specified in
1175 the .isolated.
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -05001176
1177 A temporary directory is created to hold the output files. The content inside
1178 this directory will be uploaded back to |storage| packaged as a .isolated
1179 file.
1180
1181 Arguments:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001182 - data: TaskData instance.
1183 - result_json: File path to dump result metadata into. If set, the process
1184 exit code is always 0 unless an internal error occurred.
maruela9cfd6f2015-09-15 11:03:15 -07001185
1186 Returns:
1187 Process exit code that should be used.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001188 """
maruela76b9ee2015-12-15 06:18:08 -08001189 if result_json:
1190 # Write a json output file right away in case we get killed.
1191 result = {
Junji Watanabe54925c32020-09-08 00:56:18 +00001192 'exit_code': None,
1193 'had_hard_timeout': False,
1194 'internal_failure': 'Was terminated before completion',
1195 'outputs_ref': None,
1196 'cas_output_root': None,
1197 'version': 5,
maruela76b9ee2015-12-15 06:18:08 -08001198 }
1199 tools.write_json(result_json, result, dense=True)
1200
maruela9cfd6f2015-09-15 11:03:15 -07001201 # run_isolated exit code. Depends on if result_json is used or not.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001202 result = map_and_run(data, True)
maruela9cfd6f2015-09-15 11:03:15 -07001203 logging.info('Result:\n%s', tools.format_json(result, dense=True))
bpastene3ae09522016-06-10 17:12:59 -07001204
maruela9cfd6f2015-09-15 11:03:15 -07001205 if result_json:
maruel05d5a882015-09-21 13:59:02 -07001206 # We've found tests to delete 'work' when quitting, causing an exception
1207 # here. Try to recreate the directory if necessary.
nodire5028a92016-04-29 14:38:21 -07001208 file_path.ensure_tree(os.path.dirname(result_json))
maruela9cfd6f2015-09-15 11:03:15 -07001209 tools.write_json(result_json, result, dense=True)
1210 # Only return 1 if there was an internal error.
1211 return int(bool(result['internal_failure']))
maruel@chromium.org781ccf62013-09-17 19:39:47 +00001212
maruela9cfd6f2015-09-15 11:03:15 -07001213 # Marshall into old-style inline output.
1214 if result['outputs_ref']:
Marc-Antoine Ruel793bff32019-04-18 17:50:48 +00001215 # pylint: disable=unsubscriptable-object
maruela9cfd6f2015-09-15 11:03:15 -07001216 data = {
Junji Watanabe38b28b02020-04-23 10:23:30 +00001217 'hash': result['outputs_ref']['isolated'],
1218 'namespace': result['outputs_ref']['namespace'],
1219 'storage': result['outputs_ref']['isolatedserver'],
maruela9cfd6f2015-09-15 11:03:15 -07001220 }
Marc-Antoine Ruelc44f5722015-01-08 16:10:01 -05001221 sys.stdout.flush()
Junji Watanabe38b28b02020-04-23 10:23:30 +00001222 print('[run_isolated_out_hack]%s[/run_isolated_out_hack]' %
1223 tools.format_json(data, dense=True))
maruelb76604c2015-11-11 11:53:44 -08001224 sys.stdout.flush()
maruela9cfd6f2015-09-15 11:03:15 -07001225 return result['exit_code'] or int(bool(result['internal_failure']))
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001226
1227
iannuccib58d10d2017-03-18 02:00:25 -07001228# Yielded by 'install_client_and_packages'.
vadimsh232f5a82017-01-20 19:23:44 -08001229CipdInfo = collections.namedtuple('CipdInfo', [
1230 'client', # cipd.CipdClient object
1231 'cache_dir', # absolute path to bot-global cipd tag and instance cache
1232 'stats', # dict with stats to return to the server
1233 'pins', # dict with installed cipd pins to return to the server
1234])
1235
1236
1237@contextlib.contextmanager
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001238def noop_install_packages(_run_dir, _isolated_dir, _cas_dir):
iannuccib58d10d2017-03-18 02:00:25 -07001239 """Placeholder for 'install_client_and_packages' if cipd is disabled."""
vadimsh232f5a82017-01-20 19:23:44 -08001240 yield None
1241
1242
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001243def _install_packages(run_dir, cipd_cache_dir, client, packages):
iannuccib58d10d2017-03-18 02:00:25 -07001244 """Calls 'cipd ensure' for packages.
1245
1246 Args:
1247 run_dir (str): root of installation.
1248 cipd_cache_dir (str): the directory to use for the cipd package cache.
1249 client (CipdClient): the cipd client to use
1250 packages: packages to install, list [(path, package_name, version), ...].
iannuccib58d10d2017-03-18 02:00:25 -07001251
1252 Returns: list of pinned packages. Looks like [
1253 {
1254 'path': 'subdirectory',
1255 'package_name': 'resolved/package/name',
1256 'version': 'deadbeef...',
1257 },
1258 ...
1259 ]
1260 """
1261 package_pins = [None]*len(packages)
1262 def insert_pin(path, name, version, idx):
1263 package_pins[idx] = {
1264 'package_name': name,
1265 # swarming deals with 'root' as '.'
1266 'path': path or '.',
1267 'version': version,
1268 }
1269
1270 by_path = collections.defaultdict(list)
1271 for i, (path, name, version) in enumerate(packages):
1272 # cipd deals with 'root' as ''
1273 if path == '.':
1274 path = ''
1275 by_path[path].append((name, version, i))
1276
1277 pins = client.ensure(
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001278 run_dir,
1279 {
1280 subdir: [(name, vers) for name, vers, _ in pkgs
1281 ] for subdir, pkgs in by_path.items()
1282 },
1283 cache_dir=cipd_cache_dir,
iannuccib58d10d2017-03-18 02:00:25 -07001284 )
1285
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +00001286 for subdir, pin_list in sorted(pins.items()):
iannuccib58d10d2017-03-18 02:00:25 -07001287 this_subdir = by_path[subdir]
1288 for i, (name, version) in enumerate(pin_list):
1289 insert_pin(subdir, name, version, this_subdir[i][2])
1290
Robert Iannucci461b30d2017-12-13 11:34:03 -08001291 assert None not in package_pins, (packages, pins, package_pins)
iannuccib58d10d2017-03-18 02:00:25 -07001292
1293 return package_pins
1294
1295
vadimsh232f5a82017-01-20 19:23:44 -08001296@contextlib.contextmanager
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001297def install_client_and_packages(run_dir, packages, service_url,
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001298 client_package_name, client_version, cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001299 isolated_dir, cas_dir):
vadimsh902948e2017-01-20 15:57:32 -08001300 """Bootstraps CIPD client and installs CIPD packages.
iannucci96fcccc2016-08-30 15:52:22 -07001301
vadimsh232f5a82017-01-20 19:23:44 -08001302 Yields CipdClient, stats, client info and pins (as single CipdInfo object).
1303
1304 Pins and the CIPD client info are in the form of:
iannucci96fcccc2016-08-30 15:52:22 -07001305 [
1306 {
1307 "path": path, "package_name": package_name, "version": version,
1308 },
1309 ...
1310 ]
vadimsh902948e2017-01-20 15:57:32 -08001311 (the CIPD client info is a single dictionary instead of a list)
iannucci96fcccc2016-08-30 15:52:22 -07001312
1313 such that they correspond 1:1 to all input package arguments from the command
1314 line. These dictionaries make their all the way back to swarming, where they
1315 become the arguments of CipdPackage.
nodirbe642ff2016-06-09 15:51:51 -07001316
vadimsh902948e2017-01-20 15:57:32 -08001317 If 'packages' list is empty, will bootstrap CIPD client, but won't install
1318 any packages.
1319
1320 The bootstrapped client (regardless whether 'packages' list is empty or not),
vadimsh232f5a82017-01-20 19:23:44 -08001321 will be made available to the task via $PATH.
vadimsh902948e2017-01-20 15:57:32 -08001322
nodirbe642ff2016-06-09 15:51:51 -07001323 Args:
nodir90bc8dc2016-06-15 13:35:21 -07001324 run_dir (str): root of installation.
vadimsh902948e2017-01-20 15:57:32 -08001325 packages: packages to install, list [(path, package_name, version), ...].
nodirbe642ff2016-06-09 15:51:51 -07001326 service_url (str): CIPD server url, e.g.
1327 "https://chrome-infra-packages.appspot.com."
nodir90bc8dc2016-06-15 13:35:21 -07001328 client_package_name (str): CIPD package name of CIPD client.
1329 client_version (str): Version of CIPD client.
nodirbe642ff2016-06-09 15:51:51 -07001330 cache_dir (str): where to keep cache of cipd clients, packages and tags.
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001331 isolated_dir (str): where to download isolated client.
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001332 cas_dir (str): where to download cas client.
nodirbe642ff2016-06-09 15:51:51 -07001333 """
1334 assert cache_dir
nodir90bc8dc2016-06-15 13:35:21 -07001335
nodirbe642ff2016-06-09 15:51:51 -07001336 start = time.time()
nodirbe642ff2016-06-09 15:51:51 -07001337
vadimsh902948e2017-01-20 15:57:32 -08001338 cache_dir = os.path.abspath(cache_dir)
vadimsh232f5a82017-01-20 19:23:44 -08001339 cipd_cache_dir = os.path.join(cache_dir, 'cache') # tag and instance caches
nodir90bc8dc2016-06-15 13:35:21 -07001340 run_dir = os.path.abspath(run_dir)
vadimsh902948e2017-01-20 15:57:32 -08001341 packages = packages or []
nodir90bc8dc2016-06-15 13:35:21 -07001342
nodirbe642ff2016-06-09 15:51:51 -07001343 get_client_start = time.time()
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001344 client_manager = cipd.get_client(cache_dir, service_url, client_package_name,
1345 client_version)
iannucci96fcccc2016-08-30 15:52:22 -07001346
nodirbe642ff2016-06-09 15:51:51 -07001347 with client_manager as client:
1348 get_client_duration = time.time() - get_client_start
nodir90bc8dc2016-06-15 13:35:21 -07001349
iannuccib58d10d2017-03-18 02:00:25 -07001350 package_pins = []
1351 if packages:
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001352 package_pins = _install_packages(run_dir, cipd_cache_dir, client,
1353 packages)
iannuccib58d10d2017-03-18 02:00:25 -07001354
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001355 # Install isolated client to |isolated_dir|.
Takuto Ikuta02edca22019-11-29 10:04:51 +00001356 _install_packages(isolated_dir, cipd_cache_dir, client,
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +00001357 [('', ISOLATED_PACKAGE, _LUCI_GO_REVISION)])
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001358
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001359 # Install cas client to |cas_dir|.
1360 _install_packages(cas_dir, cipd_cache_dir, client,
Takuto Ikuta9c4eb1d2020-10-05 03:40:14 +00001361 [('', _CAS_PACKAGE, _LUCI_GO_REVISION)])
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001362
iannuccib58d10d2017-03-18 02:00:25 -07001363 file_path.make_tree_files_read_only(run_dir)
nodir90bc8dc2016-06-15 13:35:21 -07001364
vadimsh232f5a82017-01-20 19:23:44 -08001365 total_duration = time.time() - start
Junji Watanabe38b28b02020-04-23 10:23:30 +00001366 logging.info('Installing CIPD client and packages took %d seconds',
1367 total_duration)
nodir90bc8dc2016-06-15 13:35:21 -07001368
vadimsh232f5a82017-01-20 19:23:44 -08001369 yield CipdInfo(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001370 client=client,
1371 cache_dir=cipd_cache_dir,
1372 stats={
1373 'duration': total_duration,
1374 'get_client_duration': get_client_duration,
iannuccib58d10d2017-03-18 02:00:25 -07001375 },
Junji Watanabe38b28b02020-04-23 10:23:30 +00001376 pins={
1377 'client_package': {
1378 'package_name': client.package_name,
1379 'version': client.instance_id,
1380 },
1381 'packages': package_pins,
1382 })
nodirbe642ff2016-06-09 15:51:51 -07001383
1384
1385def create_option_parser():
Marc-Antoine Ruelf74cffe2015-07-15 15:21:34 -04001386 parser = logging_utils.OptionParserWithLogging(
nodir55be77b2016-05-03 09:39:57 -07001387 usage='%prog <options> [command to run or extra args]',
maruel@chromium.orgdedbf492013-09-12 20:42:11 +00001388 version=__version__,
1389 log_file=RUN_ISOLATED_LOG_FILE)
maruela9cfd6f2015-09-15 11:03:15 -07001390 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001391 '--clean',
1392 action='store_true',
maruel36a963d2016-04-08 17:15:49 -07001393 help='Cleans the cache, trimming it necessary and remove corrupted items '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001394 'and returns without executing anything; use with -v to know what '
1395 'was done')
maruel36a963d2016-04-08 17:15:49 -07001396 parser.add_option(
maruela9cfd6f2015-09-15 11:03:15 -07001397 '--json',
1398 help='dump output metadata to json file. When used, run_isolated returns '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001399 'non-zero only on internal failure')
maruel6be7f9e2015-10-01 12:25:30 -07001400 parser.add_option(
maruel5c9e47b2015-12-18 13:02:30 -08001401 '--hard-timeout', type='float', help='Enforce hard timeout in execution')
maruel6be7f9e2015-10-01 12:25:30 -07001402 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001403 '--grace-period',
1404 type='float',
maruel6be7f9e2015-10-01 12:25:30 -07001405 help='Grace period between SIGTERM and SIGKILL')
bpastene3ae09522016-06-10 17:12:59 -07001406 parser.add_option(
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001407 '--relative-cwd',
Takuto Ikuta18ca29a2020-12-04 07:34:20 +00001408 help='Ignore the isolated \'relative_cwd\' and use this one instead')
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001409 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001410 '--env',
1411 default=[],
1412 action='append',
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001413 help='Environment variables to set for the child process')
1414 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001415 '--env-prefix',
1416 default=[],
1417 action='append',
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001418 help='Specify a VAR=./path/fragment to put in the environment variable '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001419 'before executing the command. The path fragment must be relative '
1420 'to the isolated run directory, and must not contain a `..` token. '
1421 'The path will be made absolute and prepended to the indicated '
1422 '$VAR using the OS\'s path separator. Multiple items for the same '
1423 '$VAR will be prepended in order.')
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001424 parser.add_option(
bpastene3ae09522016-06-10 17:12:59 -07001425 '--bot-file',
1426 help='Path to a file describing the state of the host. The content is '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001427 'defined by on_before_task() in bot_config.')
aludwin7556e0c2016-10-26 08:46:10 -07001428 parser.add_option(
vadimsh9c54b2c2017-07-25 14:08:29 -07001429 '--switch-to-account',
1430 help='If given, switches LUCI_CONTEXT to given logical service account '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001431 '(e.g. "task" or "system") before launching the isolated process.')
vadimsh9c54b2c2017-07-25 14:08:29 -07001432 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001433 '--output',
1434 action='append',
aludwin0a8e17d2016-10-27 15:57:39 -07001435 help='Specifies an output to return. If no outputs are specified, all '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001436 'files located in $(ISOLATED_OUTDIR) will be returned; '
1437 'otherwise, outputs in both $(ISOLATED_OUTDIR) and those '
1438 'specified by --output option (there can be multiple) will be '
1439 'returned. Note that if a file in OUT_DIR has the same path '
1440 'as an --output option, the --output version will be returned.')
aludwin0a8e17d2016-10-27 15:57:39 -07001441 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001442 '-a',
1443 '--argsfile',
aludwin7556e0c2016-10-26 08:46:10 -07001444 # This is actually handled in parse_args; it's included here purely so it
1445 # can make it into the help text.
1446 help='Specify a file containing a JSON array of arguments to this '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001447 'script. If --argsfile is provided, no other argument may be '
1448 'provided on the command line.')
Takuto Ikutad4be2f12020-05-12 02:15:25 +00001449 parser.add_option(
1450 '--report-on-exception',
1451 action='store_true',
1452 help='Whether report exception during execution to isolate server. '
1453 'This flag should only be used in swarming bot.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001454
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001455 group = optparse.OptionGroup(parser, 'Data source - Isolate server')
Junji Watanabe54925c32020-09-08 00:56:18 +00001456 # Deprecated. Isoate server is being migrated to RBE-CAS.
1457 # Remove --isolated and isolate server options after migration.
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001458 group.add_option(
Marc-Antoine Ruel185ded42015-01-28 20:49:18 -05001459 '-s', '--isolated',
nodir55be77b2016-05-03 09:39:57 -07001460 help='Hash of the .isolated to grab from the isolate server.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001461 isolateserver.add_isolate_server_options(group)
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001462 parser.add_option_group(group)
1463
1464 group = optparse.OptionGroup(parser,
1465 'Data source - Content Addressed Storage')
Junji Watanabe54925c32020-09-08 00:56:18 +00001466 group.add_option(
1467 '--cas-instance', help='Full CAS instance name for input/output files.')
1468 group.add_option(
1469 '--cas-digest',
1470 help='Digest of the input root on RBE-CAS. The format is '
1471 '`{hash}/{size_bytes}`.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001472 parser.add_option_group(group)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001473
Junji Watanabeb03450b2020-09-25 05:09:27 +00001474 # Cache options.
Marc-Antoine Ruela57d7db2014-10-15 20:31:19 -04001475 isolateserver.add_cache_options(parser)
Junji Watanabeb03450b2020-09-25 05:09:27 +00001476 add_cas_cache_options(parser)
nodirbe642ff2016-06-09 15:51:51 -07001477
1478 cipd.add_cipd_options(parser)
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001479
1480 group = optparse.OptionGroup(parser, 'Named caches')
1481 group.add_option(
1482 '--named-cache',
1483 dest='named_caches',
1484 action='append',
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001485 nargs=3,
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001486 default=[],
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001487 help='A named cache to request. Accepts 3 arguments: name, path, hint. '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001488 'name identifies the cache, must match regex [a-z0-9_]{1,4096}. '
1489 'path is a path relative to the run dir where the cache directory '
1490 'must be put to. '
1491 'This option can be specified more than once.')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001492 group.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001493 '--named-cache-root',
1494 default='named_caches',
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001495 help='Cache root directory. Default=%default')
1496 parser.add_option_group(group)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001497
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001498 group = optparse.OptionGroup(parser, 'Process containment')
1499 parser.add_option(
1500 '--lower-priority', action='store_true',
1501 help='Lowers the child process priority')
1502 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001503 '--containment-type',
1504 choices=('NONE', 'AUTO', 'JOB_OBJECT'),
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001505 default='NONE',
1506 help='Type of container to use')
1507 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001508 '--limit-processes',
1509 type='int',
1510 default=0,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001511 help='Maximum number of active processes in the containment')
1512 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001513 '--limit-total-committed-memory',
1514 type='int',
1515 default=0,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001516 help='Maximum sum of committed memory in the containment')
1517 parser.add_option_group(group)
1518
1519 group = optparse.OptionGroup(parser, 'Debugging')
1520 group.add_option(
Kenneth Russell61d42352014-09-15 11:41:16 -07001521 '--leak-temp-dir',
1522 action='store_true',
nodirbe642ff2016-06-09 15:51:51 -07001523 help='Deliberately leak isolate\'s temp dir for later examination. '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001524 'Default: %default')
1525 group.add_option('--root-dir', help='Use a directory instead of a random one')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001526 parser.add_option_group(group)
Kenneth Russell61d42352014-09-15 11:41:16 -07001527
Vadim Shtayurae34e13a2014-02-02 11:23:26 -08001528 auth.add_auth_options(parser)
nodirbe642ff2016-06-09 15:51:51 -07001529
Ye Kuang1d096cb2020-06-26 08:38:21 +00001530 parser.set_defaults(cache='cache')
nodirbe642ff2016-06-09 15:51:51 -07001531 return parser
1532
1533
Junji Watanabeb03450b2020-09-25 05:09:27 +00001534def add_cas_cache_options(parser):
1535 group = optparse.OptionGroup(parser, 'CAS cache management')
1536 group.add_option(
1537 '--cas-cache',
1538 metavar='DIR',
1539 default='cas-cache',
1540 help='Directory to keep a local cache of the files. Accelerates download '
1541 'by reusing already downloaded files. Default=%default')
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001542 group.add_option(
1543 '--kvs-file',
1544 default='',
1545 help='CAS cache using kvs for small files. Default=%default')
Junji Watanabeb03450b2020-09-25 05:09:27 +00001546 parser.add_option_group(group)
1547
1548
1549def process_cas_cache_options(options):
1550 if options.cas_cache:
1551 policies = local_caching.CachePolicies(
1552 max_cache_size=options.max_cache_size,
1553 min_free_space=options.min_free_space,
1554 # max_items isn't used for CAS cache for now.
1555 max_items=None,
1556 max_age_secs=MAX_AGE_SECS)
1557
1558 return local_caching.DiskContentAddressedCache(
1559 six.text_type(os.path.abspath(options.cas_cache)), policies, trim=False)
1560 return local_caching.MemoryContentAddressedCache()
1561
1562
Marc-Antoine Ruel49f9f8d2018-05-24 15:57:06 -04001563def process_named_cache_options(parser, options, time_fn=None):
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001564 """Validates named cache options and returns a CacheManager."""
1565 if options.named_caches and not options.named_cache_root:
1566 parser.error('--named-cache is specified, but --named-cache-root is empty')
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001567 for name, path, hint in options.named_caches:
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001568 if not CACHE_NAME_RE.match(name):
1569 parser.error(
1570 'cache name %r does not match %r' % (name, CACHE_NAME_RE.pattern))
1571 if not path:
1572 parser.error('cache path cannot be empty')
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001573 try:
Takuto Ikuta630f99d2020-07-02 12:59:35 +00001574 int(hint)
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001575 except ValueError:
1576 parser.error('cache hint must be a number')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001577 if options.named_cache_root:
1578 # Make these configurable later if there is use case but for now it's fairly
1579 # safe values.
1580 # In practice, a fair chunk of bots are already recycled on a daily schedule
1581 # so this code doesn't have any effect to them, unless they are preloaded
1582 # with a really old cache.
1583 policies = local_caching.CachePolicies(
1584 # 1TiB.
1585 max_cache_size=1024*1024*1024*1024,
1586 min_free_space=options.min_free_space,
1587 max_items=50,
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +00001588 max_age_secs=MAX_AGE_SECS)
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001589 root_dir = six.text_type(os.path.abspath(options.named_cache_root))
John Budorickc6186972020-02-26 00:58:14 +00001590 cache = local_caching.NamedCache(root_dir, policies, time_fn=time_fn)
1591 # Touch any named caches we're going to use to minimize thrashing
1592 # between tasks that request some (but not all) of the same named caches.
John Budorick0a4dab62020-03-02 22:23:35 +00001593 cache.touch(*[name for name, _, _ in options.named_caches])
John Budorickc6186972020-02-26 00:58:14 +00001594 return cache
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001595 return None
1596
1597
aludwin7556e0c2016-10-26 08:46:10 -07001598def parse_args(args):
1599 # Create a fake mini-parser just to get out the "-a" command. Note that
1600 # it's not documented here; instead, it's documented in create_option_parser
1601 # even though that parser will never actually get to parse it. This is
1602 # because --argsfile is exclusive with all other options and arguments.
1603 file_argparse = argparse.ArgumentParser(add_help=False)
1604 file_argparse.add_argument('-a', '--argsfile')
1605 (file_args, nonfile_args) = file_argparse.parse_known_args(args)
1606 if file_args.argsfile:
1607 if nonfile_args:
1608 file_argparse.error('Can\'t specify --argsfile with'
1609 'any other arguments (%s)' % nonfile_args)
1610 try:
1611 with open(file_args.argsfile, 'r') as f:
1612 args = json.load(f)
1613 except (IOError, OSError, ValueError) as e:
1614 # We don't need to error out here - "args" is now empty,
1615 # so the call below to parser.parse_args(args) will fail
1616 # and print the full help text.
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +00001617 print('Couldn\'t read arguments: %s' % e, file=sys.stderr)
aludwin7556e0c2016-10-26 08:46:10 -07001618
1619 # Even if we failed to read the args, just call the normal parser now since it
1620 # will print the correct help message.
nodirbe642ff2016-06-09 15:51:51 -07001621 parser = create_option_parser()
Marc-Antoine Ruel90c98162013-12-18 15:11:57 -05001622 options, args = parser.parse_args(args)
Ye Kuangfff1e502020-07-13 13:21:57 +00001623 if not isinstance(options.cipd_enabled, (bool, int)):
1624 options.cipd_enabled = distutils.util.strtobool(options.cipd_enabled)
aludwin7556e0c2016-10-26 08:46:10 -07001625 return (parser, options, args)
1626
1627
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001628def _calc_named_cache_hint(named_cache, named_caches):
1629 """Returns the expected size of the missing named caches."""
1630 present = named_cache.available
1631 size = 0
1632 for name, _, hint in named_caches:
1633 if name not in present:
Takuto Ikuta630f99d2020-07-02 12:59:35 +00001634 hint = int(hint)
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001635 if hint > 0:
1636 size += hint
1637 return size
1638
1639
Takuto Ikutaae391c52020-12-03 08:43:45 +00001640def _clean_cmd(parser, options, caches, root):
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001641 """Cleanup cache dirs/files."""
1642 if options.isolated:
1643 parser.error('Can\'t use --isolated with --clean.')
1644 if options.isolate_server:
1645 parser.error('Can\'t use --isolate-server with --clean.')
1646 if options.json:
1647 parser.error('Can\'t use --json with --clean.')
1648 if options.named_caches:
1649 parser.error('Can\t use --named-cache with --clean.')
1650 if options.cas_instance or options.cas_digest:
1651 parser.error('Can\t use --cas-instance, --cas-digest with --clean.')
1652
1653 logging.info("initial free space: %d", file_path.get_free_space(root))
1654
Takuto Ikutaae391c52020-12-03 08:43:45 +00001655 if options.kvs_file and fs.isfile(six.text_type(options.kvs_file)):
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001656 # Remove kvs file if its size exceeds fixed threshold.
Takuto Ikuta80bee362020-12-03 10:51:37 +00001657 st = fs.stat(six.text_type(options.kvs_file))
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001658 if st.st_size >= _CAS_KVS_CACHE_THRESHOLD:
1659 logging.info("remove kvs file with size: %d", st.st_size)
Takuto Ikuta80bee362020-12-03 10:51:37 +00001660 fs.remove(six.text_type(options.kvs_file))
Takuto Ikuta7ff4b242020-12-03 08:07:06 +00001661
1662 # Trim first, then clean.
1663 local_caching.trim_caches(
1664 caches,
1665 root,
1666 min_free_space=options.min_free_space,
1667 max_age_secs=MAX_AGE_SECS)
1668 logging.info("free space after trim: %d", file_path.get_free_space(root))
1669 for c in caches:
1670 c.cleanup()
1671 logging.info("free space after cleanup: %d", file_path.get_free_space(root))
1672
1673
aludwin7556e0c2016-10-26 08:46:10 -07001674def main(args):
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -05001675 # Warning: when --argsfile is used, the strings are unicode instances, when
1676 # parsed normally, the strings are str instances.
aludwin7556e0c2016-10-26 08:46:10 -07001677 (parser, options, args) = parse_args(args)
maruel36a963d2016-04-08 17:15:49 -07001678
Takuto Ikuta74682862021-02-03 04:49:12 +00001679 SWARMING_SERVER = 'SWARMING_SERVER'
1680 if options.report_on_exception and SWARMING_SERVER in os.environ:
1681 on_error.report_on_exception_exit(os.environ[SWARMING_SERVER])
Takuto Ikutad4be2f12020-05-12 02:15:25 +00001682
Marc-Antoine Ruel5028ba22017-08-25 17:37:51 -04001683 if not file_path.enable_symlink():
Marc-Antoine Ruel5a024272019-01-15 20:11:16 +00001684 logging.warning('Symlink support is not enabled')
Marc-Antoine Ruel5028ba22017-08-25 17:37:51 -04001685
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001686 named_cache = process_named_cache_options(parser, options)
Marc-Antoine Ruel0d8b0f62018-09-10 14:40:35 +00001687 # hint is 0 if there's no named cache.
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001688 hint = _calc_named_cache_hint(named_cache, options.named_caches)
1689 if hint:
1690 # Increase the --min-free-space value by the hint, and recreate the
1691 # NamedCache instance so it gets the updated CachePolicy.
1692 options.min_free_space += hint
1693 named_cache = process_named_cache_options(parser, options)
1694
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001695 # TODO(crbug.com/932396): Remove this.
Takuto Ikuta4a22c2c2020-06-05 02:02:23 +00001696 use_go_isolated = options.cipd_enabled
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001697
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001698 # TODO(maruel): CIPD caches should be defined at an higher level here too, so
1699 # they can be cleaned the same way.
Takuto Ikutaf1c58442020-10-20 09:03:27 +00001700
1701 isolate_cache = isolateserver.process_cache_options(options, trim=False)
1702 cas_cache = process_cas_cache_options(options)
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +00001703
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001704 caches = []
1705 if isolate_cache:
1706 caches.append(isolate_cache)
Junji Watanabeb03450b2020-09-25 05:09:27 +00001707 if cas_cache:
1708 caches.append(cas_cache)
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001709 if named_cache:
1710 caches.append(named_cache)
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001711 root = caches[0].cache_dir if caches else six.text_type(os.getcwd())
maruel36a963d2016-04-08 17:15:49 -07001712 if options.clean:
Takuto Ikutaae391c52020-12-03 08:43:45 +00001713 _clean_cmd(parser, options, caches, root)
maruel36a963d2016-04-08 17:15:49 -07001714 return 0
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001715
1716 # Trim must still be done for the following case:
1717 # - named-cache was used
1718 # - some entries, with a large hint, where missing
1719 # - --min-free-space was increased accordingly, thus trimming is needed
1720 # Otherwise, this will have no effect, as bot_main calls run_isolated with
1721 # --clean after each task.
Takuto Ikutac9ddff22021-02-18 07:58:39 +00001722 additional_buffer = _FREE_SPACE_BUFFER_FOR_CIPD_PACKAGES
Takuto Ikuta7f45c592021-02-09 05:57:05 +00001723 if options.kvs_file:
1724 additional_buffer += _CAS_KVS_CACHE_THRESHOLD
Takuto Ikutaa010c532020-10-21 05:42:29 +00001725 local_caching.trim_caches(
1726 caches,
1727 root,
Takuto Ikutac9ddff22021-02-18 07:58:39 +00001728 # Add some buffer for Go CLI.
Takuto Ikuta7f45c592021-02-09 05:57:05 +00001729 min_free_space=options.min_free_space + additional_buffer,
Takuto Ikutaa010c532020-10-21 05:42:29 +00001730 max_age_secs=MAX_AGE_SECS)
maruel36a963d2016-04-08 17:15:49 -07001731
Takuto Ikutaf1c58442020-10-20 09:03:27 +00001732 # Save state of isolate/cas cache not to overwrite state from go client.
1733 if use_go_isolated:
1734 isolate_cache.save()
1735 isolate_cache = None
1736 if cas_cache:
1737 cas_cache.save()
1738 cas_cache = None
1739
nodir55be77b2016-05-03 09:39:57 -07001740 if not options.isolated and not args:
1741 parser.error('--isolated or command to run is required.')
1742
Vadim Shtayura5d1efce2014-02-04 10:55:43 -08001743 auth.process_auth_options(parser, options)
nodir55be77b2016-05-03 09:39:57 -07001744
Takuto Ikutaae767b32020-05-11 01:22:19 +00001745 isolateserver.process_isolate_server_options(parser, options, False)
Junji Watanabeed9ce352020-09-25 12:32:07 +00001746 if ISOLATED_OUTDIR_PARAMETER in args and (not options.isolate_server and
1747 not options.cas_instance):
1748 parser.error('%s in args requires --isolate-server or --cas-instance' %
1749 ISOLATED_OUTDIR_PARAMETER)
1750
1751 if options.isolated and not options.isolate_server:
1752 parser.error('--isolated requires --isolate-server')
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001753
nodir90bc8dc2016-06-15 13:35:21 -07001754 if options.root_dir:
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001755 options.root_dir = six.text_type(os.path.abspath(options.root_dir))
Takuto Ikutad46ea762020-10-07 05:43:22 +00001756 else:
1757 options.root_dir = six.text_type(tempfile.mkdtemp(prefix='root'))
maruel12e30012015-10-09 11:55:35 -07001758 if options.json:
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001759 options.json = six.text_type(os.path.abspath(options.json))
nodir55be77b2016-05-03 09:39:57 -07001760
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001761 if any('=' not in i for i in options.env):
1762 parser.error(
1763 '--env required key=value form. value can be skipped to delete '
1764 'the variable')
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -05001765 options.env = dict(i.split('=', 1) for i in options.env)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001766
1767 prefixes = {}
1768 cwd = os.path.realpath(os.getcwd())
1769 for item in options.env_prefix:
1770 if '=' not in item:
1771 parser.error(
1772 '--env-prefix %r is malformed, must be in the form `VAR=./path`'
1773 % item)
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -05001774 key, opath = item.split('=', 1)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001775 if os.path.isabs(opath):
1776 parser.error('--env-prefix %r path is bad, must be relative.' % opath)
1777 opath = os.path.normpath(opath)
1778 if not os.path.realpath(os.path.join(cwd, opath)).startswith(cwd):
1779 parser.error(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001780 '--env-prefix %r path is bad, must be relative and not contain `..`.'
1781 % opath)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001782 prefixes.setdefault(key, []).append(opath)
1783 options.env_prefix = prefixes
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001784
nodirbe642ff2016-06-09 15:51:51 -07001785 cipd.validate_cipd_options(parser, options)
1786
vadimsh232f5a82017-01-20 19:23:44 -08001787 install_packages_fn = noop_install_packages
Ye Kuang1d096cb2020-06-26 08:38:21 +00001788 tmp_cipd_cache_dir = None
vadimsh902948e2017-01-20 15:57:32 -08001789 if options.cipd_enabled:
Ye Kuang1d096cb2020-06-26 08:38:21 +00001790 cache_dir = options.cipd_cache
1791 if not cache_dir:
1792 tmp_cipd_cache_dir = six.text_type(tempfile.mkdtemp())
1793 cache_dir = tmp_cipd_cache_dir
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001794 install_packages_fn = (
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001795 lambda run_dir, isolated_dir, cas_dir: install_client_and_packages(
Ye Kuang1d096cb2020-06-26 08:38:21 +00001796 run_dir,
1797 cipd.parse_package_args(options.cipd_packages),
1798 options.cipd_server,
1799 options.cipd_client_package,
1800 options.cipd_client_version,
1801 cache_dir=cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001802 isolated_dir=isolated_dir,
1803 cas_dir=cas_dir,
1804 ))
nodirbe642ff2016-06-09 15:51:51 -07001805
nodird6160682017-02-02 13:03:35 -08001806 @contextlib.contextmanager
nodir0ae98b32017-05-11 13:21:53 -07001807 def install_named_caches(run_dir):
nodird6160682017-02-02 13:03:35 -08001808 # WARNING: this function depends on "options" variable defined in the outer
1809 # function.
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001810 assert six.text_type(run_dir), repr(run_dir)
Marc-Antoine Ruel49f9f8d2018-05-24 15:57:06 -04001811 assert os.path.isabs(run_dir), run_dir
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001812 named_caches = [(os.path.join(run_dir, six.text_type(relpath)), name)
1813 for name, relpath, _ in options.named_caches]
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001814 for path, name in named_caches:
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001815 named_cache.install(path, name)
nodird6160682017-02-02 13:03:35 -08001816 try:
1817 yield
1818 finally:
dnje289d132017-07-07 11:16:44 -07001819 # Uninstall each named cache, returning it to the cache pool. If an
1820 # uninstall fails for a given cache, it will remain in the task's
1821 # temporary space, get cleaned up by the Swarming bot, and be lost.
1822 #
1823 # If the Swarming bot cannot clean up the cache, it will handle it like
1824 # any other bot file that could not be removed.
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001825 for path, name in reversed(named_caches):
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001826 try:
Marc-Antoine Ruele9558372018-08-03 03:41:22 +00001827 # uninstall() doesn't trim but does call save() implicitly. Trimming
1828 # *must* be done manually via periodic 'run_isolated.py --clean'.
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001829 named_cache.uninstall(path, name)
1830 except local_caching.NamedCacheError:
1831 logging.exception('Error while removing named cache %r at %r. '
1832 'The cache will be lost.', path, name)
nodirf33b8d62016-10-26 22:34:58 -07001833
Takuto Ikutaf3caa9b2020-11-02 05:38:26 +00001834 command = args
1835 if options.relative_cwd:
1836 a = os.path.normpath(os.path.abspath(options.relative_cwd))
1837 if not a.startswith(os.getcwd()):
1838 parser.error(
1839 '--relative-cwd must not try to escape the working directory')
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001840
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001841 containment_type = subprocess42.Containment.NONE
1842 if options.containment_type == 'AUTO':
1843 containment_type = subprocess42.Containment.AUTO
1844 if options.containment_type == 'JOB_OBJECT':
1845 containment_type = subprocess42.Containment.JOB_OBJECT
1846 containment = subprocess42.Containment(
1847 containment_type=containment_type,
1848 limit_processes=options.limit_processes,
1849 limit_total_committed_memory=options.limit_total_committed_memory)
1850
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001851 data = TaskData(
1852 command=command,
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001853 relative_cwd=options.relative_cwd,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001854 isolated_hash=options.isolated,
1855 storage=None,
1856 isolate_cache=isolate_cache,
Junji Watanabe54925c32020-09-08 00:56:18 +00001857 cas_instance=options.cas_instance,
1858 cas_digest=options.cas_digest,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001859 outputs=options.output,
1860 install_named_caches=install_named_caches,
1861 leak_temp_dir=options.leak_temp_dir,
1862 root_dir=_to_unicode(options.root_dir),
1863 hard_timeout=options.hard_timeout,
1864 grace_period=options.grace_period,
1865 bot_file=options.bot_file,
1866 switch_to_account=options.switch_to_account,
1867 install_packages_fn=install_packages_fn,
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001868 use_go_isolated=use_go_isolated,
Takuto Ikuta10cae642020-01-08 08:12:07 +00001869 go_cache_dir=options.cache,
Takuto Ikuta879788c2020-01-10 08:00:26 +00001870 go_cache_policies=local_caching.CachePolicies(
1871 max_cache_size=options.max_cache_size,
1872 min_free_space=options.min_free_space,
1873 max_items=options.max_items,
1874 max_age_secs=None,
1875 ),
Junji Watanabeb03450b2020-09-25 05:09:27 +00001876 cas_cache_dir=options.cas_cache,
1877 cas_cache_policies=local_caching.CachePolicies(
1878 max_cache_size=options.max_cache_size,
1879 min_free_space=options.min_free_space,
1880 max_items=None,
1881 max_age_secs=None,
1882 ),
Takuto Ikutaae391c52020-12-03 08:43:45 +00001883 cas_kvs=options.kvs_file,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001884 env=options.env,
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +00001885 env_prefix=options.env_prefix,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001886 lower_priority=bool(options.lower_priority),
1887 containment=containment)
nodirbe642ff2016-06-09 15:51:51 -07001888 try:
nodir90bc8dc2016-06-15 13:35:21 -07001889 if options.isolate_server:
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001890 server_ref = isolate_storage.ServerRef(
nodir90bc8dc2016-06-15 13:35:21 -07001891 options.isolate_server, options.namespace)
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001892 storage = isolateserver.get_storage(server_ref)
nodir90bc8dc2016-06-15 13:35:21 -07001893 with storage:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001894 data = data._replace(storage=storage)
nodirf33b8d62016-10-26 22:34:58 -07001895 # Hashing schemes used by |storage| and |isolate_cache| MUST match.
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001896 assert storage.server_ref.hash_algo == server_ref.hash_algo
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001897 return run_tha_test(data, options.json)
1898 return run_tha_test(data, options.json)
Junji Watanabe38b28b02020-04-23 10:23:30 +00001899 except (cipd.Error, local_caching.NamedCacheError,
1900 local_caching.NoMoreSpace) as ex:
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +00001901 print(ex.message, file=sys.stderr)
nodirbe642ff2016-06-09 15:51:51 -07001902 return 1
Ye Kuang1d096cb2020-06-26 08:38:21 +00001903 finally:
1904 if tmp_cipd_cache_dir is not None:
1905 try:
1906 file_path.rmtree(tmp_cipd_cache_dir)
1907 except OSError:
1908 logging.exception('Remove tmp_cipd_cache_dir=%s failed',
1909 tmp_cipd_cache_dir)
1910 # Best effort clean up. Failed to do so doesn't affect the outcome.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001911
1912
1913if __name__ == '__main__':
maruel8e4e40c2016-05-30 06:21:07 -07001914 subprocess42.inhibit_os_error_reporting()
csharp@chromium.orgbfb98742013-03-26 20:28:36 +00001915 # Ensure that we are always running with the correct encoding.
vadimsh@chromium.orga4326472013-08-24 02:05:41 +00001916 fix_encoding.fix_encoding()
Ye Kuang2dd17442020-04-22 08:45:52 +00001917 net.set_user_agent('run_isolated.py/' + __version__)
Marc-Antoine Ruel90c98162013-12-18 15:11:57 -05001918 sys.exit(main(sys.argv[1:]))