blob: cfca03774994c95bf3f5eb294371ee26b7b4b3cf [file] [log] [blame]
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001#!/usr/bin/env python
maruelea586f32016-04-05 11:11:33 -07002# Copyright 2012 The LUCI Authors. All rights reserved.
maruelf1f5e2a2016-05-25 17:10:39 -07003# Use of this source code is governed under the Apache License, Version 2.0
4# that can be found in the LICENSE file.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00005
nodir55be77b2016-05-03 09:39:57 -07006"""Runs a command with optional isolated input/output.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00007
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +00008run_isolated takes cares of setting up a temporary environment, running a
9command, and tearing it down.
nodir55be77b2016-05-03 09:39:57 -070010
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +000011It handles downloading and uploading isolated files, mapping CIPD packages and
12reusing stateful named caches.
13
14The isolated files, CIPD packages and named caches are kept as a global LRU
15cache.
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -050016
Roberto Carrillo71ade6d2018-10-08 22:30:24 +000017Any ${EXECUTABLE_SUFFIX} on the command line or the environment variables passed
18with the --env option will be replaced with ".exe" string on Windows and "" on
19other platforms.
nodirbe642ff2016-06-09 15:51:51 -070020
Roberto Carrillo71ade6d2018-10-08 22:30:24 +000021Any ${ISOLATED_OUTDIR} on the command line or the environment variables passed
22with the --env option will be replaced by the location of a temporary directory
23upon execution of the command specified in the .isolated file. All content
24written to this directory will be uploaded upon termination and the .isolated
25file describing this directory will be printed to stdout.
bpastene447c1992016-06-20 15:21:47 -070026
Marc-Antoine Rueleed2f3a2019-03-14 00:00:40 +000027Any ${SWARMING_BOT_FILE} on the command line or the environment variables passed
28with the --env option will be replaced by the value of the --bot-file parameter.
29This file is used by a swarming bot to communicate state of the host to tasks.
30It is written to by the swarming bot's on_before_task() hook in the swarming
31server's custom bot_config.py.
32
33See
34https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/doc/Magic-Values.md
35for all the variables.
36
37See
38https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/swarming_bot/config/bot_config.py
39for more information about bot_config.py.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000040"""
41
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +000042from __future__ import print_function
43
44__version__ = '1.0.1'
maruel@chromium.orgdedbf492013-09-12 20:42:11 +000045
aludwin7556e0c2016-10-26 08:46:10 -070046import argparse
maruel064c0a32016-04-05 11:47:15 -070047import base64
iannucci96fcccc2016-08-30 15:52:22 -070048import collections
vadimsh232f5a82017-01-20 19:23:44 -080049import contextlib
Ye Kuangfff1e502020-07-13 13:21:57 +000050import distutils
Sadaf Matinkhoo10743a62018-03-29 16:28:58 -040051import errno
aludwin7556e0c2016-10-26 08:46:10 -070052import json
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000053import logging
54import optparse
55import os
Takuto Ikuta5c59a842020-01-24 03:05:24 +000056import platform
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -040057import re
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000058import sys
59import tempfile
maruel064c0a32016-04-05 11:47:15 -070060import time
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +000061
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000062from utils import tools
63tools.force_local_third_party()
vadimsh@chromium.orga4326472013-08-24 02:05:41 +000064
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000065# third_party/
66from depot_tools import fix_encoding
Takuto Ikuta6e2ff962019-10-29 12:35:27 +000067import six
Marc-Antoine Ruel016c7602019-04-02 18:31:13 +000068
69# pylint: disable=ungrouped-imports
70import auth
71import cipd
72import isolate_storage
73import isolateserver
74import local_caching
75from libs import luci_context
Vadim Shtayura6b555c12014-07-23 16:22:18 -070076from utils import file_path
maruel12e30012015-10-09 11:55:35 -070077from utils import fs
maruel064c0a32016-04-05 11:47:15 -070078from utils import large
Marc-Antoine Ruelf74cffe2015-07-15 15:21:34 -040079from utils import logging_utils
Ye Kuang2dd17442020-04-22 08:45:52 +000080from utils import net
Marc-Antoine Ruelcfb60852014-07-02 15:22:00 -040081from utils import on_error
Marc-Antoine Ruelc44f5722015-01-08 16:10:01 -050082from utils import subprocess42
maruel@chromium.orgdedbf492013-09-12 20:42:11 +000083
vadimsh@chromium.orga4326472013-08-24 02:05:41 +000084
maruele2f2cb82016-07-13 14:41:03 -070085# Magic variables that can be found in the isolate task command line.
86ISOLATED_OUTDIR_PARAMETER = '${ISOLATED_OUTDIR}'
87EXECUTABLE_SUFFIX_PARAMETER = '${EXECUTABLE_SUFFIX}'
88SWARMING_BOT_FILE_PARAMETER = '${SWARMING_BOT_FILE}'
89
90
csharp@chromium.orgff2a4662012-11-21 20:49:32 +000091# The name of the log file to use.
92RUN_ISOLATED_LOG_FILE = 'run_isolated.log'
93
maruele2f2cb82016-07-13 14:41:03 -070094
csharp@chromium.orge217f302012-11-22 16:51:53 +000095# The name of the log to use for the run_test_cases.py command
vadimsh@chromium.org8b9d56b2013-08-21 22:24:35 +000096RUN_TEST_CASES_LOG = 'run_test_cases.log'
csharp@chromium.orge217f302012-11-22 16:51:53 +000097
vadimsh@chromium.org87d63262013-04-04 19:34:21 +000098
maruele2f2cb82016-07-13 14:41:03 -070099# Use short names for temporary directories. This is driven by Windows, which
100# imposes a relatively short maximum path length of 260 characters, often
101# referred to as MAX_PATH. It is relatively easy to create files with longer
Marc-Antoine Ruel793bff32019-04-18 17:50:48 +0000102# path length. A use case is with recursive dependency trees like npm packages.
maruele2f2cb82016-07-13 14:41:03 -0700103#
104# It is recommended to start the script with a `root_dir` as short as
105# possible.
106# - ir stands for isolated_run
107# - io stands for isolated_out
108# - it stands for isolated_tmp
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000109# - ic stands for isolated_client
maruele2f2cb82016-07-13 14:41:03 -0700110ISOLATED_RUN_DIR = u'ir'
111ISOLATED_OUT_DIR = u'io'
112ISOLATED_TMP_DIR = u'it'
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000113ISOLATED_CLIENT_DIR = u'ic'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000114_CAS_CLIENT_DIR = u'cc'
maruele2f2cb82016-07-13 14:41:03 -0700115
Takuto Ikuta02edca22019-11-29 10:04:51 +0000116# TODO(tikuta): take these parameter from luci-config?
Takuto Ikutac8c92e62020-04-01 07:07:29 +0000117# Update tag by `./client/update_isolated.sh`.
118# Or take revision from
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000119# https://ci.chromium.org/p/infra-internal/g/infra-packagers/console
Takuto Ikuta02edca22019-11-29 10:04:51 +0000120ISOLATED_PACKAGE = 'infra/tools/luci/isolated/${platform}'
Takuto Ikuta3d3dcf52020-08-24 08:24:16 +0000121ISOLATED_REVISION = 'git_revision:3ccf4cc0119188dbc4befff330348d972b15711d'
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000122_CAS_PACKAGE = 'infra/tools/luci/cas/${platform}'
123# TODO(jwata): pin a stable version.
124_CAS_REVISION = 'latest'
maruele2f2cb82016-07-13 14:41:03 -0700125
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400126# Keep synced with task_request.py
Lei Leife202df2019-06-11 17:33:34 +0000127CACHE_NAME_RE = re.compile(r'^[a-z0-9_]{1,4096}$')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -0400128
129
marueld928c862017-06-08 08:20:04 -0700130OUTLIVING_ZOMBIE_MSG = """\
131*** Swarming tried multiple times to delete the %s directory and failed ***
132*** Hard failing the task ***
133
134Swarming detected that your testing script ran an executable, which may have
135started a child executable, and the main script returned early, leaving the
136children executables playing around unguided.
137
138You don't want to leave children processes outliving the task on the Swarming
139bot, do you? The Swarming bot doesn't.
140
141How to fix?
142- For any process that starts children processes, make sure all children
143 processes terminated properly before each parent process exits. This is
144 especially important in very deep process trees.
145 - This must be done properly both in normal successful task and in case of
146 task failure. Cleanup is very important.
147- The Swarming bot sends a SIGTERM in case of timeout.
148 - You have %s seconds to comply after the signal was sent to the process
149 before the process is forcibly killed.
150- To achieve not leaking children processes in case of signals on timeout, you
151 MUST handle signals in each executable / python script and propagate them to
152 children processes.
153 - When your test script (python or binary) receives a signal like SIGTERM or
154 CTRL_BREAK_EVENT on Windows), send it to all children processes and wait for
155 them to terminate before quitting.
156
157See
Marc-Antoine Ruelc7243592018-05-24 17:04:04 -0400158https://chromium.googlesource.com/infra/luci/luci-py.git/+/master/appengine/swarming/doc/Bot.md#Graceful-termination_aka-the-SIGTERM-and-SIGKILL-dance
marueld928c862017-06-08 08:20:04 -0700159for more information.
160
161*** May the SIGKILL force be with you ***
162"""
163
164
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000165# Currently hardcoded. Eventually could be exposed as a flag once there's value.
166# 3 weeks
167MAX_AGE_SECS = 21*24*60*60
168
Ye Kuang72e6fe82020-08-05 06:30:04 +0000169# TODO(1099655): Enable this once all prod issues are gone.
170_USE_GO_ISOLATED_TO_UPLOAD = False
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000171
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500172TaskData = collections.namedtuple(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000173 'TaskData',
174 [
Takuto Ikuta9a319502019-11-26 07:40:14 +0000175 # List of strings; the command line to use, independent of what was
176 # specified in the isolated file.
177 'command',
178 # Relative directory to start command into.
179 'relative_cwd',
180 # List of strings; the arguments to add to the command specified in the
181 # isolated file.
182 'extra_args',
183 # Hash of the .isolated file that must be retrieved to recreate the tree
184 # of files to run the target executable. The command specified in the
185 # .isolated is executed. Mutually exclusive with command argument.
186 'isolated_hash',
187 # isolateserver.Storage instance to retrieve remote objects. This object
188 # has a reference to an isolateserver.StorageApi, which does the actual
189 # I/O.
190 'storage',
191 # isolateserver.LocalCache instance to keep from retrieving the same
192 # objects constantly by caching the objects retrieved. Can be on-disk or
193 # in-memory.
194 'isolate_cache',
Junji Watanabe54925c32020-09-08 00:56:18 +0000195 # Digest of the input root on RBE-CAS.
196 'cas_digest',
197 # Full CAS instance name.
198 'cas_instance',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000199 # List of paths relative to root_dir to put into the output isolated
200 # bundle upon task completion (see link_outputs_to_outdir).
201 'outputs',
202 # Function (run_dir) => context manager that installs named caches into
203 # |run_dir|.
204 'install_named_caches',
205 # If True, the temporary directory will be deliberately leaked for later
206 # examination.
207 'leak_temp_dir',
208 # Path to the directory to use to create the temporary directory. If not
209 # specified, a random temporary directory is created.
210 'root_dir',
211 # Kills the process if it lasts more than this amount of seconds.
212 'hard_timeout',
213 # Number of seconds to wait between SIGTERM and SIGKILL.
214 'grace_period',
215 # Path to a file with bot state, used in place of ${SWARMING_BOT_FILE}
216 # task command line argument.
217 'bot_file',
218 # Logical account to switch LUCI_CONTEXT into.
219 'switch_to_account',
220 # Context manager dir => CipdInfo, see install_client_and_packages.
221 'install_packages_fn',
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000222 # Use go isolated client.
223 'use_go_isolated',
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000224 # Cache directory for go `isolated` or `cas` client.
Takuto Ikuta057c5342019-12-03 04:05:05 +0000225 'go_cache_dir',
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000226 # Parameters passed to go `isolated` or `cas` client.
Takuto Ikuta879788c2020-01-10 08:00:26 +0000227 'go_cache_policies',
Takuto Ikuta9a319502019-11-26 07:40:14 +0000228 # Environment variables to set.
229 'env',
230 # Environment variables to mutate with relative directories.
231 # Example: {"ENV_KEY": ['relative', 'paths', 'to', 'prepend']}
232 'env_prefix',
233 # Lowers the task process priority.
234 'lower_priority',
235 # subprocess42.Containment instance. Can be None.
236 'containment',
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000237 ])
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500238
239
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500240def _to_str(s):
241 """Downgrades a unicode instance to str. Pass str through as-is."""
242 if isinstance(s, str):
243 return s
244 # This is technically incorrect, especially on Windows. In theory
245 # sys.getfilesystemencoding() should be used to use the right 'ANSI code
246 # page' on Windows, but that causes other problems, as the character set
247 # is very limited.
248 return s.encode('utf-8')
249
250
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -0500251def _to_unicode(s):
252 """Upgrades a str instance to unicode. Pass unicode through as-is."""
Takuto Ikuta95459dd2019-10-29 12:39:47 +0000253 if isinstance(s, six.text_type) or s is None:
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -0500254 return s
255 return s.decode('utf-8')
256
257
maruel03e11842016-07-14 10:50:16 -0700258def make_temp_dir(prefix, root_dir):
259 """Returns a new unique temporary directory."""
Takuto Ikuta6e2ff962019-10-29 12:35:27 +0000260 return six.text_type(tempfile.mkdtemp(prefix=prefix, dir=root_dir))
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +0000261
262
vadimsh9c54b2c2017-07-25 14:08:29 -0700263@contextlib.contextmanager
264def set_luci_context_account(account, tmp_dir):
265 """Sets LUCI_CONTEXT account to be used by the task.
266
267 If 'account' is None or '', does nothing at all. This happens when
268 run_isolated.py is called without '--switch-to-account' flag. In this case,
269 if run_isolated.py is running in some LUCI_CONTEXT environment, the task will
Takuto Ikuta33e2ff32019-09-30 12:44:03 +0000270 just inherit whatever account is already set. This may happen if users invoke
vadimsh9c54b2c2017-07-25 14:08:29 -0700271 run_isolated.py explicitly from their code.
272
273 If the requested account is not defined in the context, switches to
274 non-authenticated access. This happens for Swarming tasks that don't use
275 'task' service accounts.
276
277 If not using LUCI_CONTEXT-based auth, does nothing.
278 If already running as requested account, does nothing.
279 """
280 if not account:
281 # Not actually switching.
282 yield
283 return
284
285 local_auth = luci_context.read('local_auth')
286 if not local_auth:
287 # Not using LUCI_CONTEXT auth at all.
288 yield
289 return
290
291 # See LUCI_CONTEXT.md for the format of 'local_auth'.
292 if local_auth.get('default_account_id') == account:
293 # Already set, no need to switch.
294 yield
295 return
296
297 available = {a['id'] for a in local_auth.get('accounts') or []}
298 if account in available:
299 logging.info('Switching default LUCI_CONTEXT account to %r', account)
300 local_auth['default_account_id'] = account
301 else:
302 logging.warning(
303 'Requested LUCI_CONTEXT account %r is not available (have only %r), '
304 'disabling authentication', account, sorted(available))
305 local_auth.pop('default_account_id', None)
306
307 with luci_context.write(_tmpdir=tmp_dir, local_auth=local_auth):
308 yield
309
310
nodir90bc8dc2016-06-15 13:35:21 -0700311def process_command(command, out_dir, bot_file):
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000312 """Replaces parameters in a command line.
nodirbe642ff2016-06-09 15:51:51 -0700313
314 Raises:
315 ValueError if a parameter is requested in |command| but its value is not
316 provided.
317 """
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000318 return [replace_parameters(arg, out_dir, bot_file) for arg in command]
319
320
321def replace_parameters(arg, out_dir, bot_file):
322 """Replaces parameter tokens with appropriate values in a string.
323
324 Raises:
325 ValueError if a parameter is requested in |arg| but its value is not
326 provided.
327 """
328 arg = arg.replace(EXECUTABLE_SUFFIX_PARAMETER, cipd.EXECUTABLE_SUFFIX)
329 replace_slash = False
330 if ISOLATED_OUTDIR_PARAMETER in arg:
331 if not out_dir:
332 raise ValueError(
333 'output directory is requested in command or env var, but not '
334 'provided; please specify one')
335 arg = arg.replace(ISOLATED_OUTDIR_PARAMETER, out_dir)
336 replace_slash = True
337 if SWARMING_BOT_FILE_PARAMETER in arg:
338 if bot_file:
339 arg = arg.replace(SWARMING_BOT_FILE_PARAMETER, bot_file)
nodirbe642ff2016-06-09 15:51:51 -0700340 replace_slash = True
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000341 else:
342 logging.warning('SWARMING_BOT_FILE_PARAMETER found in command or env '
343 'var, but no bot_file specified. Leaving parameter '
344 'unchanged.')
345 if replace_slash:
346 # Replace slashes only if parameters are present
347 # because of arguments like '${ISOLATED_OUTDIR}/foo/bar'
348 arg = arg.replace('/', os.sep)
349 return arg
maruela9cfd6f2015-09-15 11:03:15 -0700350
351
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000352
353def get_command_env(tmp_dir, cipd_info, run_dir, env, env_prefixes, out_dir,
354 bot_file):
vadimsh232f5a82017-01-20 19:23:44 -0800355 """Returns full OS environment to run a command in.
356
Robert Iannuccibf5f84c2017-11-22 12:56:50 -0800357 Sets up TEMP, puts directory with cipd binary in front of PATH, exposes
358 CIPD_CACHE_DIR env var, and installs all env_prefixes.
vadimsh232f5a82017-01-20 19:23:44 -0800359
360 Args:
361 tmp_dir: temp directory.
362 cipd_info: CipdInfo object is cipd client is used, None if not.
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500363 run_dir: The root directory the isolated tree is mapped in.
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500364 env: environment variables to use
Robert Iannuccibf5f84c2017-11-22 12:56:50 -0800365 env_prefixes: {"ENV_KEY": ['cwd', 'relative', 'paths', 'to', 'prepend']}
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000366 out_dir: Isolated output directory. Required to be != None if any of the
367 env vars contain ISOLATED_OUTDIR_PARAMETER.
368 bot_file: Required to be != None if any of the env vars contain
369 SWARMING_BOT_FILE_PARAMETER.
vadimsh232f5a82017-01-20 19:23:44 -0800370 """
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500371 out = os.environ.copy()
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +0000372 for k, v in env.items():
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500373 if not v:
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500374 out.pop(k, None)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500375 else:
Roberto Carrillo71ade6d2018-10-08 22:30:24 +0000376 out[k] = replace_parameters(v, out_dir, bot_file)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500377
378 if cipd_info:
379 bin_dir = os.path.dirname(cipd_info.client.binary_path)
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500380 out['PATH'] = '%s%s%s' % (_to_str(bin_dir), os.pathsep, out['PATH'])
381 out['CIPD_CACHE_DIR'] = _to_str(cipd_info.cache_dir)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500382
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +0000383 for key, paths in env_prefixes.items():
Marc-Antoine Ruel9ec1e9f2017-12-20 16:36:54 -0500384 assert isinstance(paths, list), paths
385 paths = [os.path.normpath(os.path.join(run_dir, p)) for p in paths]
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500386 cur = out.get(key)
387 if cur:
388 paths.append(cur)
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -0500389 out[key] = _to_str(os.path.pathsep.join(paths))
vadimsh232f5a82017-01-20 19:23:44 -0800390
Marc-Antoine Ruelefb30b12018-07-25 18:34:36 +0000391 tmp_dir = _to_str(tmp_dir)
392 # pylint: disable=line-too-long
393 # * python respects $TMPDIR, $TEMP, and $TMP in this order, regardless of
394 # platform. So $TMPDIR must be set on all platforms.
395 # https://github.com/python/cpython/blob/2.7/Lib/tempfile.py#L155
396 out['TMPDIR'] = tmp_dir
397 if sys.platform == 'win32':
398 # * chromium's base utils uses GetTempPath().
399 # https://cs.chromium.org/chromium/src/base/files/file_util_win.cc?q=GetTempPath
400 # * Go uses GetTempPath().
401 # * GetTempDir() uses %TMP%, then %TEMP%, then other stuff. So %TMP% must be
402 # set.
403 # https://docs.microsoft.com/en-us/windows/desktop/api/fileapi/nf-fileapi-gettemppathw
404 out['TMP'] = tmp_dir
405 # https://blogs.msdn.microsoft.com/oldnewthing/20150417-00/?p=44213
406 out['TEMP'] = tmp_dir
407 elif sys.platform == 'darwin':
408 # * Chromium uses an hack on macOS before calling into
409 # NSTemporaryDirectory().
410 # https://cs.chromium.org/chromium/src/base/files/file_util_mac.mm?q=GetTempDir
411 # https://developer.apple.com/documentation/foundation/1409211-nstemporarydirectory
412 out['MAC_CHROMIUM_TMPDIR'] = tmp_dir
413 else:
414 # TMPDIR is specified as the POSIX standard envvar for the temp directory.
415 # http://pubs.opengroup.org/onlinepubs/9699919799/basedefs/V1_chap08.html
416 # * mktemp on linux respects $TMPDIR.
417 # * Chromium respects $TMPDIR on linux.
418 # https://cs.chromium.org/chromium/src/base/files/file_util_posix.cc?q=GetTempDir
419 # * Go uses $TMPDIR.
420 # https://go.googlesource.com/go/+/go1.10.3/src/os/file_unix.go#307
421 pass
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -0500422 return out
vadimsh232f5a82017-01-20 19:23:44 -0800423
424
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000425def run_command(
426 command, cwd, env, hard_timeout, grace_period, lower_priority, containment):
maruel6be7f9e2015-10-01 12:25:30 -0700427 """Runs the command.
428
429 Returns:
430 tuple(process exit code, bool if had a hard timeout)
431 """
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000432 logging.info(
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000433 'run_command(%s, %s, %s, %s, %s, %s)',
434 command, cwd, hard_timeout, grace_period, lower_priority, containment)
marueleb5fbee2015-09-17 13:01:36 -0700435
maruel6be7f9e2015-10-01 12:25:30 -0700436 exit_code = None
437 had_hard_timeout = False
maruela9cfd6f2015-09-15 11:03:15 -0700438 with tools.Profiler('RunTest'):
maruel6be7f9e2015-10-01 12:25:30 -0700439 proc = None
440 had_signal = []
maruela9cfd6f2015-09-15 11:03:15 -0700441 try:
maruel6be7f9e2015-10-01 12:25:30 -0700442 # TODO(maruel): This code is imperfect. It doesn't handle well signals
443 # during the download phase and there's short windows were things can go
444 # wrong.
445 def handler(signum, _frame):
446 if proc and not had_signal:
447 logging.info('Received signal %d', signum)
448 had_signal.append(True)
maruel556d9052015-10-05 11:12:44 -0700449 raise subprocess42.TimeoutExpired(command, None)
maruel6be7f9e2015-10-01 12:25:30 -0700450
Marc-Antoine Ruel30b80fe2019-02-08 13:51:31 +0000451 proc = subprocess42.Popen(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +0000452 command, cwd=cwd, env=env, detached=True, close_fds=True,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +0000453 lower_priority=lower_priority, containment=containment)
maruel6be7f9e2015-10-01 12:25:30 -0700454 with subprocess42.set_signal_handler(subprocess42.STOP_SIGNALS, handler):
455 try:
John Budorickc398f092019-06-10 22:49:44 +0000456 exit_code = proc.wait(hard_timeout or None)
maruel6be7f9e2015-10-01 12:25:30 -0700457 except subprocess42.TimeoutExpired:
458 if not had_signal:
459 logging.warning('Hard timeout')
460 had_hard_timeout = True
461 logging.warning('Sending SIGTERM')
462 proc.terminate()
463
464 # Ignore signals in grace period. Forcibly give the grace period to the
465 # child process.
466 if exit_code is None:
467 ignore = lambda *_: None
468 with subprocess42.set_signal_handler(subprocess42.STOP_SIGNALS, ignore):
469 try:
470 exit_code = proc.wait(grace_period or None)
471 except subprocess42.TimeoutExpired:
472 # Now kill for real. The user can distinguish between the
473 # following states:
474 # - signal but process exited within grace period,
475 # hard_timed_out will be set but the process exit code will be
476 # script provided.
477 # - processed exited late, exit code will be -9 on posix.
478 logging.warning('Grace exhausted; sending SIGKILL')
479 proc.kill()
martiniss5c8043e2017-08-01 17:09:43 -0700480 logging.info('Waiting for process exit')
maruel6be7f9e2015-10-01 12:25:30 -0700481 exit_code = proc.wait()
Takuto Ikutaeccf0862020-03-19 03:05:55 +0000482 except OSError as e:
maruela9cfd6f2015-09-15 11:03:15 -0700483 # This is not considered to be an internal error. The executable simply
484 # does not exit.
maruela72f46e2016-02-24 11:05:45 -0800485 sys.stderr.write(
tikuta2d678212019-09-23 23:12:08 +0000486 '<The executable does not exist, a dependent library is missing or '
487 'the command line is too long>\n'
488 '<Check for missing .so/.dll in the .isolate or GN file or length of '
489 'command line args>\n'
Takuto Ikutaeccf0862020-03-19 03:05:55 +0000490 '<Command: %s, Exception: %s>\n' % (command, e))
maruela72f46e2016-02-24 11:05:45 -0800491 if os.environ.get('SWARMING_TASK_ID'):
492 # Give an additional hint when running as a swarming task.
493 sys.stderr.write(
494 '<See the task\'s page for commands to help diagnose this issue '
495 'by reproducing the task locally>\n')
maruela9cfd6f2015-09-15 11:03:15 -0700496 exit_code = 1
497 logging.info(
498 'Command finished with exit code %d (%s)',
499 exit_code, hex(0xffffffff & exit_code))
maruel6be7f9e2015-10-01 12:25:30 -0700500 return exit_code, had_hard_timeout
maruela9cfd6f2015-09-15 11:03:15 -0700501
502
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000503def _run_go_cmd_and_wait(cmd):
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000504 """
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000505 Runs an external Go command, `isolated` or `cas`, and wait for its completion.
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000506
507 While this is a generic function to launch a subprocess, it has logic that
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000508 is specific to Go `isolated` and `cas` for waiting and logging.
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000509
510 Returns:
511 The subprocess object
512 """
Ye Kuang3c40e9f2020-07-28 13:15:25 +0000513 cmd_str = ' '.join(cmd)
Ye Kuangc1d800f2020-07-28 10:14:55 +0000514 try:
515 proc = subprocess42.Popen(cmd)
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000516
Ye Kuangc1d800f2020-07-28 10:14:55 +0000517 exceeded_max_timeout = True
518 check_period_sec = 30
519 max_checks = 100
520 # max timeout = max_checks * check_period_sec = 50 minutes
521 for i in range(max_checks):
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000522 # This is to prevent I/O timeout error during setup.
Ye Kuangc1d800f2020-07-28 10:14:55 +0000523 try:
524 retcode = proc.wait(check_period_sec)
525 if retcode != 0:
526 raise ValueError("retcode is not 0: %s (cmd=%s)" % (retcode, cmd_str))
527 exceeded_max_timeout = False
528 break
529 except subprocess42.TimeoutExpired:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000530 print('still running (after %d seconds)' % ((i + 1) * check_period_sec))
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000531
Ye Kuangc1d800f2020-07-28 10:14:55 +0000532 if exceeded_max_timeout:
533 proc.terminate()
534 try:
535 proc.wait(check_period_sec)
536 except subprocess42.TimeoutExpired:
537 logging.exception(
538 "failed to terminate? timeout happened after %d seconds",
539 check_period_sec)
540 proc.kill()
541 proc.wait()
542 # Raise unconditionally, because |proc| was forcefully terminated.
543 raise ValueError("timedout after %d seconds (cmd=%s)" %
544 (check_period_sec * max_checks, cmd_str))
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000545
Ye Kuangc1d800f2020-07-28 10:14:55 +0000546 return proc
547 except Exception:
548 logging.exception('Failed to run Go cmd %s', cmd_str)
549 raise
Ye Kuangc0cf9ca2020-07-16 08:56:51 +0000550
551
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000552def _fetch_and_map_with_cas(cas_client, digest, instance, output_dir, cache_dir,
553 policies):
554 """
555 Fetches a CAS tree using cas client, create the tree and returns download
556 stats.
557 """
558
559 start = time.time()
560 result_json_handle, result_json_path = tempfile.mkstemp(
561 prefix=u'fetch-and-map-result-', suffix=u'.json')
562 os.close(result_json_handle)
563 try:
564 cmd = [
565 cas_client,
566 'download',
567 '-digest',
568 digest,
569 '-cas-instance',
570 instance,
571 # flags for cache.
572 '-cache-dir',
573 cache_dir,
574 '-cache-max-items',
575 str(policies.max_items),
576 '-cache-max-size',
577 str(policies.max_cache_size),
578 '-cache-min-free-space',
579 str(policies.min_free_space),
580 # flags for output.
581 '-dir',
582 output_dir,
583 '-dump-stats-json',
584 result_json_path,
585 ]
586 _run_go_cmd_and_wait(cmd)
587
588 with open(result_json_path) as json_file:
589 result_json = json.load(json_file)
590
591 return {
592 'duration': time.time() - start,
593 'items_cold': result_json['items_cold'],
594 'items_hot': result_json['items_hot'],
595 }
596 finally:
597 fs.remove(result_json_path)
598
599
600def _fetch_and_map_with_go_isolated(isolated_hash, storage, outdir,
601 go_cache_dir, policies, isolated_client):
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000602 """
603 Fetches an isolated tree using go client, create the tree and returns
604 (bundle, stats).
605 """
606 start = time.time()
607 server_ref = storage.server_ref
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000608 result_json_handle, result_json_path = tempfile.mkstemp(
609 prefix=u'fetch-and-map-result-', suffix=u'.json')
610 os.close(result_json_handle)
611 try:
Ye Kuanga98764c2020-04-09 03:17:37 +0000612 cmd = [
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000613 isolated_client,
614 'download',
615 '-isolate-server',
616 server_ref.url,
617 '-namespace',
618 server_ref.namespace,
619 '-isolated',
620 isolated_hash,
621
622 # flags for cache
623 '-cache-dir',
Takuto Ikuta057c5342019-12-03 04:05:05 +0000624 go_cache_dir,
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000625 '-cache-max-items',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000626 str(policies.max_items),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000627 '-cache-max-size',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000628 str(policies.max_cache_size),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000629 '-cache-min-free-space',
Takuto Ikuta50bc0552019-12-03 03:26:46 +0000630 str(policies.min_free_space),
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000631
632 # flags for output
633 '-output-dir',
634 outdir,
635 '-fetch-and-map-result-json',
636 result_json_path,
Ye Kuanga98764c2020-04-09 03:17:37 +0000637 ]
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000638 _run_go_cmd_and_wait(cmd)
Takuto Ikuta3153e3b2020-02-18 06:11:47 +0000639
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000640 with open(result_json_path) as json_file:
641 result_json = json.load(json_file)
642
643 isolated = result_json['isolated']
644 bundle = isolateserver.IsolatedBundle(filter_cb=None)
645 # Only following properties are used in caller.
646 bundle.command = isolated.get('command')
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000647 bundle.relative_cwd = isolated.get('relative_cwd')
648
649 return bundle, {
650 'duration': time.time() - start,
651 'items_cold': result_json['items_cold'],
652 'items_hot': result_json['items_hot'],
653 }
654 finally:
655 fs.remove(result_json_path)
656
657
658# TODO(crbug.com/932396): remove this function.
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000659def fetch_and_map(isolated_hash, storage, cache, outdir):
maruel4409e302016-07-19 14:25:51 -0700660 """Fetches an isolated tree, create the tree and returns (bundle, stats)."""
nodir6f801882016-04-29 14:41:50 -0700661 start = time.time()
662 bundle = isolateserver.fetch_isolated(
663 isolated_hash=isolated_hash,
664 storage=storage,
665 cache=cache,
maruel4409e302016-07-19 14:25:51 -0700666 outdir=outdir,
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000667 use_symlinks=False)
Takuto Ikuta2b9640e2019-06-19 00:53:23 +0000668 hot = (collections.Counter(cache.used) -
669 collections.Counter(cache.added)).elements()
nodir6f801882016-04-29 14:41:50 -0700670 return bundle, {
Takuto Ikuta630f99d2020-07-02 12:59:35 +0000671 'duration': time.time() - start,
672 'items_cold': base64.b64encode(large.pack(sorted(cache.added))).decode(),
673 'items_hot': base64.b64encode(large.pack(sorted(hot))).decode(),
nodir6f801882016-04-29 14:41:50 -0700674 }
675
676
aludwin0a8e17d2016-10-27 15:57:39 -0700677def link_outputs_to_outdir(run_dir, out_dir, outputs):
678 """Links any named outputs to out_dir so they can be uploaded.
679
680 Raises an error if the file already exists in that directory.
681 """
682 if not outputs:
683 return
684 isolateserver.create_directories(out_dir, outputs)
685 for o in outputs:
Sadaf Matinkhoo10743a62018-03-29 16:28:58 -0400686 copy_recursively(os.path.join(run_dir, o), os.path.join(out_dir, o))
687
688
689def copy_recursively(src, dst):
690 """Efficiently copies a file or directory from src_dir to dst_dir.
691
692 `item` may be a file, directory, or a symlink to a file or directory.
693 All symlinks are replaced with their targets, so the resulting
694 directory structure in dst_dir will never have any symlinks.
695
696 To increase speed, copy_recursively hardlinks individual files into the
697 (newly created) directory structure if possible, unlike Python's
698 shutil.copytree().
699 """
700 orig_src = src
701 try:
702 # Replace symlinks with their final target.
703 while fs.islink(src):
704 res = fs.readlink(src)
705 src = os.path.join(os.path.dirname(src), res)
706 # TODO(sadafm): Explicitly handle cyclic symlinks.
707
708 # Note that fs.isfile (which is a wrapper around os.path.isfile) throws
709 # an exception if src does not exist. A warning will be logged in that case.
710 if fs.isfile(src):
711 file_path.link_file(dst, src, file_path.HARDLINK_WITH_FALLBACK)
712 return
713
714 if not fs.exists(dst):
715 os.makedirs(dst)
716
717 for child in fs.listdir(src):
718 copy_recursively(os.path.join(src, child), os.path.join(dst, child))
719
720 except OSError as e:
721 if e.errno == errno.ENOENT:
722 logging.warning('Path %s does not exist or %s is a broken symlink',
723 src, orig_src)
724 else:
725 logging.info("Couldn't collect output file %s: %s", src, e)
aludwin0a8e17d2016-10-27 15:57:39 -0700726
727
Ye Kuangfb0bad62020-07-28 08:07:25 +0000728def _upload_with_py(storage, out_dir):
729
730 def process_stats(f_st):
731 st = sorted(i.size for i in f_st)
732 return base64.b64encode(large.pack(st)).decode()
733
734 try:
735 results, f_cold, f_hot = isolateserver.archive_files_to_storage(
736 storage, [out_dir], None, verify_push=True)
737
738 isolated = list(results.values())[0]
739 cold = process_stats(f_cold)
740 hot = process_stats(f_hot)
741 return isolated, cold, hot
742
743 except isolateserver.Aborted:
744 # This happens when a signal SIGTERM was received while uploading data.
745 # There is 2 causes:
746 # - The task was too slow and was about to be killed anyway due to
747 # exceeding the hard timeout.
748 # - The amount of data uploaded back is very large and took too much
749 # time to archive.
750 sys.stderr.write('Received SIGTERM while uploading')
751 # Re-raise, so it will be treated as an internal failure.
752 raise
753
754
755def _upload_with_go(storage, outdir, isolated_client):
756 """
757 Uploads results back using the Go `isolated` CLI.
758 """
759 server_ref = storage.server_ref
760 isolated_handle, isolated_path = tempfile.mkstemp(
761 prefix=u'isolated-hash-', suffix=u'.txt')
762 stats_json_handle, stats_json_path = tempfile.mkstemp(
763 prefix=u'dump-stats-', suffix=u'.json')
764 os.close(isolated_handle)
765 os.close(stats_json_handle)
766 try:
767 cmd = [
768 isolated_client,
769 'archive',
770 '-isolate-server',
771 server_ref.url,
772 '-namespace',
773 server_ref.namespace,
774 '-dirs',
775 # Format: <working directory>:<relative path to dir>
776 outdir + ':',
777
778 # output
779 '-dump-hash',
780 isolated_path,
781 '-dump-stats-json',
782 stats_json_path,
Ye Kuangbc4e8402020-07-29 09:54:30 +0000783 '-quiet',
Ye Kuangfb0bad62020-07-28 08:07:25 +0000784 ]
Ye Kuang0023dc52020-08-04 05:28:41 +0000785 # Will do exponential backoff, e.g. 10, 20, 40...
786 # This mitigates https://crbug.com/1094369, where there is a data race on
787 # the uploaded files.
788 backoff = 10
Takuto Ikutae0bfec72020-08-28 02:52:52 +0000789 started = time.time()
Ye Kuang0023dc52020-08-04 05:28:41 +0000790 while True:
791 try:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000792 _run_go_cmd_and_wait(cmd)
Ye Kuang0023dc52020-08-04 05:28:41 +0000793 break
794 except Exception:
Takuto Ikutae0bfec72020-08-28 02:52:52 +0000795 if time.time() > started + 60 * 2:
796 # This is to not wait task having leaked process long time.
Ye Kuang0023dc52020-08-04 05:28:41 +0000797 raise
798
799 on_error.report('error before %d second backoff' % backoff)
800 logging.exception(
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000801 '_run_go_cmd_and_wait() failed, will retry after %d seconds',
Ye Kuang0023dc52020-08-04 05:28:41 +0000802 backoff)
803 time.sleep(backoff)
804 backoff *= 2
Ye Kuangfb0bad62020-07-28 08:07:25 +0000805
806 with open(isolated_path) as isol_file:
807 isolated = isol_file.read()
808 with open(stats_json_path) as json_file:
809 stats_json = json.load(json_file)
810
811 return isolated, stats_json['items_cold'], stats_json['items_hot']
812 finally:
813 fs.remove(isolated_path)
814 fs.remove(stats_json_path)
815
816
Ye Kuangbc4e8402020-07-29 09:54:30 +0000817def upload_out_dir(storage, out_dir, go_isolated_client):
818 """Uploads the results in |out_dir| back, if there is any.
maruela9cfd6f2015-09-15 11:03:15 -0700819
820 Returns:
Ye Kuangbc4e8402020-07-29 09:54:30 +0000821 tuple(outputs_ref, stats)
maruel064c0a32016-04-05 11:47:15 -0700822 - outputs_ref: a dict referring to the results archived back to the isolated
823 server, if applicable.
nodir6f801882016-04-29 14:41:50 -0700824 - stats: uploading stats.
maruela9cfd6f2015-09-15 11:03:15 -0700825 """
maruela9cfd6f2015-09-15 11:03:15 -0700826 # Upload out_dir and generate a .isolated file out of this directory. It is
827 # only done if files were written in the directory.
828 outputs_ref = None
Ye Kuangfb0bad62020-07-28 08:07:25 +0000829 cold = ''
830 hot = ''
nodir6f801882016-04-29 14:41:50 -0700831 start = time.time()
832
maruel12e30012015-10-09 11:55:35 -0700833 if fs.isdir(out_dir) and fs.listdir(out_dir):
maruela9cfd6f2015-09-15 11:03:15 -0700834 with tools.Profiler('ArchiveOutput'):
Ye Kuangfb0bad62020-07-28 08:07:25 +0000835 isolated = None
Ye Kuang72e6fe82020-08-05 06:30:04 +0000836 if _USE_GO_ISOLATED_TO_UPLOAD and go_isolated_client is not None:
Ye Kuangfb0bad62020-07-28 08:07:25 +0000837 isolated, cold, hot = _upload_with_go(storage, out_dir,
838 go_isolated_client)
Ye Kuang72e6fe82020-08-05 06:30:04 +0000839 else:
840 isolated, cold, hot = _upload_with_py(storage, out_dir)
Ye Kuangfb0bad62020-07-28 08:07:25 +0000841 outputs_ref = {
842 'isolated': isolated,
843 'isolatedserver': storage.server_ref.url,
844 'namespace': storage.server_ref.namespace,
845 }
nodir6f801882016-04-29 14:41:50 -0700846
nodir6f801882016-04-29 14:41:50 -0700847 stats = {
Takuto Ikuta630f99d2020-07-02 12:59:35 +0000848 'duration': time.time() - start,
Ye Kuangfb0bad62020-07-28 08:07:25 +0000849 'items_cold': cold,
850 'items_hot': hot,
nodir6f801882016-04-29 14:41:50 -0700851 }
Ye Kuangbc4e8402020-07-29 09:54:30 +0000852 return outputs_ref, stats
maruela9cfd6f2015-09-15 11:03:15 -0700853
854
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500855def map_and_run(data, constant_run_path):
nodir55be77b2016-05-03 09:39:57 -0700856 """Runs a command with optional isolated input/output.
857
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500858 Arguments:
859 - data: TaskData instance.
860 - constant_run_path: TODO
nodir55be77b2016-05-03 09:39:57 -0700861
862 Returns metadata about the result.
863 """
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000864
865 if data.isolate_cache:
866 download_stats = {
867 #'duration': 0.,
868 'initial_number_items': len(data.isolate_cache),
869 'initial_size': data.isolate_cache.total_size,
870 #'items_cold': '<large.pack()>',
871 #'items_hot': '<large.pack()>',
872 }
873 else:
874 # TODO(tikuta): take stats from state.json in this case too.
875 download_stats = {}
876
maruela9cfd6f2015-09-15 11:03:15 -0700877 result = {
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000878 'duration': None,
879 'exit_code': None,
880 'had_hard_timeout': False,
881 'internal_failure': 'run_isolated did not complete properly',
882 'stats': {
883 #'cipd': {
884 # 'duration': 0.,
885 # 'get_client_duration': 0.,
886 #},
887 'isolated': {
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000888 'download': download_stats,
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000889 #'upload': {
890 # 'duration': 0.,
891 # 'items_cold': '<large.pack()>',
892 # 'items_hot': '<large.pack()>',
893 #},
894 },
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000895 },
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000896 #'cipd_pins': {
897 # 'packages': [
898 # {'package_name': ..., 'version': ..., 'path': ...},
899 # ...
900 # ],
901 # 'client_package': {'package_name': ..., 'version': ...},
902 #},
903 'outputs_ref': None,
Junji Watanabe54925c32020-09-08 00:56:18 +0000904 'cas_output_root': None,
Takuto Ikuta5ed62ad2019-09-26 09:16:00 +0000905 'version': 5,
maruela9cfd6f2015-09-15 11:03:15 -0700906 }
nodirbe642ff2016-06-09 15:51:51 -0700907
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500908 if data.root_dir:
Lei Leife202df2019-06-11 17:33:34 +0000909 file_path.ensure_tree(data.root_dir, 0o700)
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +0000910 elif data.use_go_isolated:
911 data = data._replace(root_dir=os.path.dirname(data.go_cache_dir))
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500912 elif data.isolate_cache.cache_dir:
913 data = data._replace(
914 root_dir=os.path.dirname(data.isolate_cache.cache_dir))
maruele2f2cb82016-07-13 14:41:03 -0700915 # See comment for these constants.
maruelcffa0542017-04-07 08:39:20 -0700916 # If root_dir is not specified, it is not constant.
917 # TODO(maruel): This is not obvious. Change this to become an error once we
918 # make the constant_run_path an exposed flag.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500919 if constant_run_path and data.root_dir:
920 run_dir = os.path.join(data.root_dir, ISOLATED_RUN_DIR)
maruel5c4eed82017-05-26 05:33:40 -0700921 if os.path.isdir(run_dir):
922 file_path.rmtree(run_dir)
Lei Leife202df2019-06-11 17:33:34 +0000923 os.mkdir(run_dir, 0o700)
maruelcffa0542017-04-07 08:39:20 -0700924 else:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500925 run_dir = make_temp_dir(ISOLATED_RUN_DIR, data.root_dir)
maruel03e11842016-07-14 10:50:16 -0700926 # storage should be normally set but don't crash if it is not. This can happen
927 # as Swarming task can run without an isolate server.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500928 out_dir = make_temp_dir(
929 ISOLATED_OUT_DIR, data.root_dir) if data.storage else None
930 tmp_dir = make_temp_dir(ISOLATED_TMP_DIR, data.root_dir)
Takuto Ikutab7ce0e32019-11-27 23:26:18 +0000931 isolated_client_dir = make_temp_dir(ISOLATED_CLIENT_DIR, data.root_dir)
nodir55be77b2016-05-03 09:39:57 -0700932 cwd = run_dir
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -0500933 if data.relative_cwd:
934 cwd = os.path.normpath(os.path.join(cwd, data.relative_cwd))
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500935 command = data.command
Ye Kuangfb0bad62020-07-28 08:07:25 +0000936 go_isolated_client = None
937 if data.use_go_isolated:
938 go_isolated_client = os.path.join(isolated_client_dir,
939 'isolated' + cipd.EXECUTABLE_SUFFIX)
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000940 cas_client = None
941 cas_client_dir = make_temp_dir(_CAS_CLIENT_DIR, data.root_dir)
942 if data.cas_digest:
943 cas_client = os.path.join(cas_client_dir, 'cas' + cipd.EXECUTABLE_SUFFIX)
944
nodir55be77b2016-05-03 09:39:57 -0700945 try:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000946 with data.install_packages_fn(run_dir, isolated_client_dir,
947 cas_client_dir) as cipd_info:
vadimsh232f5a82017-01-20 19:23:44 -0800948 if cipd_info:
949 result['stats']['cipd'] = cipd_info.stats
950 result['cipd_pins'] = cipd_info.pins
nodir90bc8dc2016-06-15 13:35:21 -0700951
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000952 isolated_stats = result['stats'].setdefault('isolated', {})
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500953 if data.isolated_hash:
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000954 if data.use_go_isolated:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000955 bundle, stats = _fetch_and_map_with_go_isolated(
Takuto Ikuta90397ca2020-01-08 10:07:55 +0000956 isolated_hash=data.isolated_hash,
957 storage=data.storage,
Takuto Ikuta90397ca2020-01-08 10:07:55 +0000958 outdir=run_dir,
959 go_cache_dir=data.go_cache_dir,
Takuto Ikuta879788c2020-01-10 08:00:26 +0000960 policies=data.go_cache_policies,
Ye Kuangfb0bad62020-07-28 08:07:25 +0000961 isolated_client=go_isolated_client)
Takuto Ikuta90397ca2020-01-08 10:07:55 +0000962 else:
Takuto Ikutad03ffcc2019-12-02 01:04:23 +0000963 bundle, stats = fetch_and_map(
964 isolated_hash=data.isolated_hash,
965 storage=data.storage,
966 cache=data.isolate_cache,
Takuto Ikuta16fac4b2019-12-09 04:57:18 +0000967 outdir=run_dir)
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +0000968 isolated_stats['download'].update(stats)
Takuto Ikutab58dbd12020-06-05 09:29:14 +0000969
maruelabec63c2017-04-26 11:53:24 -0700970 # Inject the command
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -0500971 if not command and bundle.command:
972 command = bundle.command + data.extra_args
Marc-Antoine Rueld704a1f2017-10-31 10:51:23 -0400973 # Only set the relative directory if the isolated file specified a
974 # command, and no raw command was specified.
975 if bundle.relative_cwd:
976 cwd = os.path.normpath(os.path.join(cwd, bundle.relative_cwd))
maruelabec63c2017-04-26 11:53:24 -0700977
Junji Watanabe54925c32020-09-08 00:56:18 +0000978 elif data.cas_digest:
Junji Watanabe4b890ef2020-09-16 01:43:27 +0000979 stats = _fetch_and_map_with_cas(
980 cas_client=cas_client,
981 digest=data.cas_digest,
982 instance=data.cas_instance,
983 output_dir=run_dir,
984 cache_dir=data.go_cache_dir,
985 policies=data.go_cache_policies)
986 isolated_stats['download'].update(stats)
Junji Watanabe54925c32020-09-08 00:56:18 +0000987
maruelabec63c2017-04-26 11:53:24 -0700988 if not command:
989 # Handle this as a task failure, not an internal failure.
990 sys.stderr.write(
991 '<No command was specified!>\n'
992 '<Please secify a command when triggering your Swarming task>\n')
993 result['exit_code'] = 1
994 return result
nodirbe642ff2016-06-09 15:51:51 -0700995
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -0500996 if not cwd.startswith(run_dir):
997 # Handle this as a task failure, not an internal failure. This is a
998 # 'last chance' way to gate against directory escape.
999 sys.stderr.write('<Relative CWD is outside of run directory!>\n')
1000 result['exit_code'] = 1
1001 return result
1002
1003 if not os.path.isdir(cwd):
1004 # Accepts relative_cwd that does not exist.
Lei Leife202df2019-06-11 17:33:34 +00001005 os.makedirs(cwd, 0o700)
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001006
vadimsh232f5a82017-01-20 19:23:44 -08001007 # If we have an explicit list of files to return, make sure their
1008 # directories exist now.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001009 if data.storage and data.outputs:
1010 isolateserver.create_directories(run_dir, data.outputs)
aludwin0a8e17d2016-10-27 15:57:39 -07001011
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001012 with data.install_named_caches(run_dir):
nodird6160682017-02-02 13:03:35 -08001013 sys.stdout.flush()
1014 start = time.time()
1015 try:
vadimsh9c54b2c2017-07-25 14:08:29 -07001016 # Need to switch the default account before 'get_command_env' call,
1017 # so it can grab correct value of LUCI_CONTEXT env var.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001018 with set_luci_context_account(data.switch_to_account, tmp_dir):
1019 env = get_command_env(
Roberto Carrillo71ade6d2018-10-08 22:30:24 +00001020 tmp_dir, cipd_info, run_dir, data.env, data.env_prefix, out_dir,
1021 data.bot_file)
Brian Sheedy7a761172019-08-30 22:55:14 +00001022 command = tools.find_executable(command, env)
Robert Iannucci24ae76a2018-02-26 12:51:18 -08001023 command = process_command(command, out_dir, data.bot_file)
1024 file_path.ensure_command_has_abs_path(command, cwd)
1025
vadimsh9c54b2c2017-07-25 14:08:29 -07001026 result['exit_code'], result['had_hard_timeout'] = run_command(
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +00001027 command, cwd, env, data.hard_timeout, data.grace_period,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001028 data.lower_priority, data.containment)
nodird6160682017-02-02 13:03:35 -08001029 finally:
1030 result['duration'] = max(time.time() - start, 0)
Seth Koehler49139812017-12-19 13:59:33 -05001031
Ye Kuangbc4e8402020-07-29 09:54:30 +00001032 if out_dir:
1033 # Try to link files to the output directory, if specified.
1034 link_outputs_to_outdir(run_dir, out_dir, data.outputs)
1035 isolated_stats = result['stats'].setdefault('isolated', {})
1036 # This could use |go_isolated_client|, so make sure it runs when the
1037 # CIPD package still exists.
1038 result['outputs_ref'], isolated_stats['upload'] = (
1039 upload_out_dir(data.storage, out_dir, go_isolated_client))
Junji Watanabe54925c32020-09-08 00:56:18 +00001040 # TODO(crbug.com/1117004): upload to CAS if the inputs are on CAS.
1041 # The `cas_output_root` will be updated instead of `outputs_ref`.
1042 result['cas_output_root'] = None
Seth Koehler49139812017-12-19 13:59:33 -05001043 # We successfully ran the command, set internal_failure back to
1044 # None (even if the command failed, it's not an internal error).
1045 result['internal_failure'] = None
maruela9cfd6f2015-09-15 11:03:15 -07001046 except Exception as e:
nodir90bc8dc2016-06-15 13:35:21 -07001047 # An internal error occurred. Report accordingly so the swarming task will
1048 # be retried automatically.
maruel12e30012015-10-09 11:55:35 -07001049 logging.exception('internal failure: %s', e)
maruela9cfd6f2015-09-15 11:03:15 -07001050 result['internal_failure'] = str(e)
1051 on_error.report(None)
aludwin0a8e17d2016-10-27 15:57:39 -07001052
1053 # Clean up
maruela9cfd6f2015-09-15 11:03:15 -07001054 finally:
1055 try:
Ye Kuangbc4e8402020-07-29 09:54:30 +00001056 success = True
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001057 if data.leak_temp_dir:
nodir32a1ec12016-10-26 18:34:07 -07001058 success = True
maruela9cfd6f2015-09-15 11:03:15 -07001059 logging.warning(
1060 'Deliberately leaking %s for later examination', run_dir)
marueleb5fbee2015-09-17 13:01:36 -07001061 else:
maruel84537cb2015-10-16 14:21:28 -07001062 # On Windows rmtree(run_dir) call above has a synchronization effect: it
1063 # finishes only when all task child processes terminate (since a running
1064 # process locks *.exe file). Examine out_dir only after that call
1065 # completes (since child processes may write to out_dir too and we need
1066 # to wait for them to finish).
Ye Kuangbc4e8402020-07-29 09:54:30 +00001067 dirs_to_remove = [run_dir, tmp_dir, isolated_client_dir]
1068 if out_dir:
1069 dirs_to_remove.append(out_dir)
1070 for directory in dirs_to_remove:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001071 if not fs.isdir(directory):
1072 continue
maruel84537cb2015-10-16 14:21:28 -07001073 try:
Ye Kuangbc4e8402020-07-29 09:54:30 +00001074 success = success and file_path.rmtree(directory)
maruel84537cb2015-10-16 14:21:28 -07001075 except OSError as e:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001076 logging.error('rmtree(%r) failed: %s', directory, e)
maruel84537cb2015-10-16 14:21:28 -07001077 success = False
1078 if not success:
Takuto Ikuta69c0d662019-11-27 01:18:08 +00001079 sys.stderr.write(
1080 OUTLIVING_ZOMBIE_MSG % (directory, data.grace_period))
Takuto Ikutad7d64e12020-07-31 06:18:45 +00001081 subprocess42.check_call(['tasklist.exe', '/V'], stdout=sys.stderr)
maruel84537cb2015-10-16 14:21:28 -07001082 if result['exit_code'] == 0:
1083 result['exit_code'] = 1
maruela9cfd6f2015-09-15 11:03:15 -07001084
maruela9cfd6f2015-09-15 11:03:15 -07001085 if not success and result['exit_code'] == 0:
1086 result['exit_code'] = 1
1087 except Exception as e:
1088 # Swallow any exception in the main finally clause.
nodir9130f072016-05-27 13:59:08 -07001089 if out_dir:
1090 logging.exception('Leaking out_dir %s: %s', out_dir, e)
maruela9cfd6f2015-09-15 11:03:15 -07001091 result['internal_failure'] = str(e)
Takuto Ikutaa9a907b2020-04-17 08:50:50 +00001092 on_error.report(None)
maruela9cfd6f2015-09-15 11:03:15 -07001093 return result
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -05001094
1095
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001096def run_tha_test(data, result_json):
nodir55be77b2016-05-03 09:39:57 -07001097 """Runs an executable and records execution metadata.
1098
nodir55be77b2016-05-03 09:39:57 -07001099 If isolated_hash is specified, downloads the dependencies in the cache,
1100 hardlinks them into a temporary directory and runs the command specified in
1101 the .isolated.
Marc-Antoine Ruel2283ad12014-02-09 11:14:57 -05001102
1103 A temporary directory is created to hold the output files. The content inside
1104 this directory will be uploaded back to |storage| packaged as a .isolated
1105 file.
1106
1107 Arguments:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001108 - data: TaskData instance.
1109 - result_json: File path to dump result metadata into. If set, the process
1110 exit code is always 0 unless an internal error occurred.
maruela9cfd6f2015-09-15 11:03:15 -07001111
1112 Returns:
1113 Process exit code that should be used.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001114 """
maruela76b9ee2015-12-15 06:18:08 -08001115 if result_json:
1116 # Write a json output file right away in case we get killed.
1117 result = {
Junji Watanabe54925c32020-09-08 00:56:18 +00001118 'exit_code': None,
1119 'had_hard_timeout': False,
1120 'internal_failure': 'Was terminated before completion',
1121 'outputs_ref': None,
1122 'cas_output_root': None,
1123 'version': 5,
maruela76b9ee2015-12-15 06:18:08 -08001124 }
1125 tools.write_json(result_json, result, dense=True)
1126
maruela9cfd6f2015-09-15 11:03:15 -07001127 # run_isolated exit code. Depends on if result_json is used or not.
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001128 result = map_and_run(data, True)
maruela9cfd6f2015-09-15 11:03:15 -07001129 logging.info('Result:\n%s', tools.format_json(result, dense=True))
bpastene3ae09522016-06-10 17:12:59 -07001130
maruela9cfd6f2015-09-15 11:03:15 -07001131 if result_json:
maruel05d5a882015-09-21 13:59:02 -07001132 # We've found tests to delete 'work' when quitting, causing an exception
1133 # here. Try to recreate the directory if necessary.
nodire5028a92016-04-29 14:38:21 -07001134 file_path.ensure_tree(os.path.dirname(result_json))
maruela9cfd6f2015-09-15 11:03:15 -07001135 tools.write_json(result_json, result, dense=True)
1136 # Only return 1 if there was an internal error.
1137 return int(bool(result['internal_failure']))
maruel@chromium.org781ccf62013-09-17 19:39:47 +00001138
maruela9cfd6f2015-09-15 11:03:15 -07001139 # Marshall into old-style inline output.
1140 if result['outputs_ref']:
Marc-Antoine Ruel793bff32019-04-18 17:50:48 +00001141 # pylint: disable=unsubscriptable-object
maruela9cfd6f2015-09-15 11:03:15 -07001142 data = {
Junji Watanabe38b28b02020-04-23 10:23:30 +00001143 'hash': result['outputs_ref']['isolated'],
1144 'namespace': result['outputs_ref']['namespace'],
1145 'storage': result['outputs_ref']['isolatedserver'],
maruela9cfd6f2015-09-15 11:03:15 -07001146 }
Marc-Antoine Ruelc44f5722015-01-08 16:10:01 -05001147 sys.stdout.flush()
Junji Watanabe38b28b02020-04-23 10:23:30 +00001148 print('[run_isolated_out_hack]%s[/run_isolated_out_hack]' %
1149 tools.format_json(data, dense=True))
maruelb76604c2015-11-11 11:53:44 -08001150 sys.stdout.flush()
maruela9cfd6f2015-09-15 11:03:15 -07001151 return result['exit_code'] or int(bool(result['internal_failure']))
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001152
1153
iannuccib58d10d2017-03-18 02:00:25 -07001154# Yielded by 'install_client_and_packages'.
vadimsh232f5a82017-01-20 19:23:44 -08001155CipdInfo = collections.namedtuple('CipdInfo', [
1156 'client', # cipd.CipdClient object
1157 'cache_dir', # absolute path to bot-global cipd tag and instance cache
1158 'stats', # dict with stats to return to the server
1159 'pins', # dict with installed cipd pins to return to the server
1160])
1161
1162
1163@contextlib.contextmanager
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001164def noop_install_packages(_run_dir, _isolated_dir, _cas_dir):
iannuccib58d10d2017-03-18 02:00:25 -07001165 """Placeholder for 'install_client_and_packages' if cipd is disabled."""
vadimsh232f5a82017-01-20 19:23:44 -08001166 yield None
1167
1168
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001169def _install_packages(run_dir, cipd_cache_dir, client, packages):
iannuccib58d10d2017-03-18 02:00:25 -07001170 """Calls 'cipd ensure' for packages.
1171
1172 Args:
1173 run_dir (str): root of installation.
1174 cipd_cache_dir (str): the directory to use for the cipd package cache.
1175 client (CipdClient): the cipd client to use
1176 packages: packages to install, list [(path, package_name, version), ...].
iannuccib58d10d2017-03-18 02:00:25 -07001177
1178 Returns: list of pinned packages. Looks like [
1179 {
1180 'path': 'subdirectory',
1181 'package_name': 'resolved/package/name',
1182 'version': 'deadbeef...',
1183 },
1184 ...
1185 ]
1186 """
1187 package_pins = [None]*len(packages)
1188 def insert_pin(path, name, version, idx):
1189 package_pins[idx] = {
1190 'package_name': name,
1191 # swarming deals with 'root' as '.'
1192 'path': path or '.',
1193 'version': version,
1194 }
1195
1196 by_path = collections.defaultdict(list)
1197 for i, (path, name, version) in enumerate(packages):
1198 # cipd deals with 'root' as ''
1199 if path == '.':
1200 path = ''
1201 by_path[path].append((name, version, i))
1202
1203 pins = client.ensure(
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001204 run_dir,
1205 {
1206 subdir: [(name, vers) for name, vers, _ in pkgs
1207 ] for subdir, pkgs in by_path.items()
1208 },
1209 cache_dir=cipd_cache_dir,
iannuccib58d10d2017-03-18 02:00:25 -07001210 )
1211
Marc-Antoine Ruel04903a32019-10-09 21:09:25 +00001212 for subdir, pin_list in sorted(pins.items()):
iannuccib58d10d2017-03-18 02:00:25 -07001213 this_subdir = by_path[subdir]
1214 for i, (name, version) in enumerate(pin_list):
1215 insert_pin(subdir, name, version, this_subdir[i][2])
1216
Robert Iannucci461b30d2017-12-13 11:34:03 -08001217 assert None not in package_pins, (packages, pins, package_pins)
iannuccib58d10d2017-03-18 02:00:25 -07001218
1219 return package_pins
1220
1221
vadimsh232f5a82017-01-20 19:23:44 -08001222@contextlib.contextmanager
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001223def install_client_and_packages(run_dir, packages, service_url,
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001224 client_package_name, client_version, cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001225 isolated_dir, cas_dir):
vadimsh902948e2017-01-20 15:57:32 -08001226 """Bootstraps CIPD client and installs CIPD packages.
iannucci96fcccc2016-08-30 15:52:22 -07001227
vadimsh232f5a82017-01-20 19:23:44 -08001228 Yields CipdClient, stats, client info and pins (as single CipdInfo object).
1229
1230 Pins and the CIPD client info are in the form of:
iannucci96fcccc2016-08-30 15:52:22 -07001231 [
1232 {
1233 "path": path, "package_name": package_name, "version": version,
1234 },
1235 ...
1236 ]
vadimsh902948e2017-01-20 15:57:32 -08001237 (the CIPD client info is a single dictionary instead of a list)
iannucci96fcccc2016-08-30 15:52:22 -07001238
1239 such that they correspond 1:1 to all input package arguments from the command
1240 line. These dictionaries make their all the way back to swarming, where they
1241 become the arguments of CipdPackage.
nodirbe642ff2016-06-09 15:51:51 -07001242
vadimsh902948e2017-01-20 15:57:32 -08001243 If 'packages' list is empty, will bootstrap CIPD client, but won't install
1244 any packages.
1245
1246 The bootstrapped client (regardless whether 'packages' list is empty or not),
vadimsh232f5a82017-01-20 19:23:44 -08001247 will be made available to the task via $PATH.
vadimsh902948e2017-01-20 15:57:32 -08001248
nodirbe642ff2016-06-09 15:51:51 -07001249 Args:
nodir90bc8dc2016-06-15 13:35:21 -07001250 run_dir (str): root of installation.
vadimsh902948e2017-01-20 15:57:32 -08001251 packages: packages to install, list [(path, package_name, version), ...].
nodirbe642ff2016-06-09 15:51:51 -07001252 service_url (str): CIPD server url, e.g.
1253 "https://chrome-infra-packages.appspot.com."
nodir90bc8dc2016-06-15 13:35:21 -07001254 client_package_name (str): CIPD package name of CIPD client.
1255 client_version (str): Version of CIPD client.
nodirbe642ff2016-06-09 15:51:51 -07001256 cache_dir (str): where to keep cache of cipd clients, packages and tags.
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001257 isolated_dir (str): where to download isolated client.
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001258 cas_dir (str): where to download cas client.
nodirbe642ff2016-06-09 15:51:51 -07001259 """
1260 assert cache_dir
nodir90bc8dc2016-06-15 13:35:21 -07001261
nodirbe642ff2016-06-09 15:51:51 -07001262 start = time.time()
nodirbe642ff2016-06-09 15:51:51 -07001263
vadimsh902948e2017-01-20 15:57:32 -08001264 cache_dir = os.path.abspath(cache_dir)
vadimsh232f5a82017-01-20 19:23:44 -08001265 cipd_cache_dir = os.path.join(cache_dir, 'cache') # tag and instance caches
nodir90bc8dc2016-06-15 13:35:21 -07001266 run_dir = os.path.abspath(run_dir)
vadimsh902948e2017-01-20 15:57:32 -08001267 packages = packages or []
nodir90bc8dc2016-06-15 13:35:21 -07001268
nodirbe642ff2016-06-09 15:51:51 -07001269 get_client_start = time.time()
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001270 client_manager = cipd.get_client(cache_dir, service_url, client_package_name,
1271 client_version)
iannucci96fcccc2016-08-30 15:52:22 -07001272
nodirbe642ff2016-06-09 15:51:51 -07001273 with client_manager as client:
1274 get_client_duration = time.time() - get_client_start
nodir90bc8dc2016-06-15 13:35:21 -07001275
iannuccib58d10d2017-03-18 02:00:25 -07001276 package_pins = []
1277 if packages:
Takuto Ikuta2efc7792019-11-27 14:33:34 +00001278 package_pins = _install_packages(run_dir, cipd_cache_dir, client,
1279 packages)
iannuccib58d10d2017-03-18 02:00:25 -07001280
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001281 # Install isolated client to |isolated_dir|.
Takuto Ikuta02edca22019-11-29 10:04:51 +00001282 _install_packages(isolated_dir, cipd_cache_dir, client,
1283 [('', ISOLATED_PACKAGE, ISOLATED_REVISION)])
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001284
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001285 # Install cas client to |cas_dir|.
1286 _install_packages(cas_dir, cipd_cache_dir, client,
1287 [('', _CAS_PACKAGE, _CAS_REVISION)])
1288
iannuccib58d10d2017-03-18 02:00:25 -07001289 file_path.make_tree_files_read_only(run_dir)
nodir90bc8dc2016-06-15 13:35:21 -07001290
vadimsh232f5a82017-01-20 19:23:44 -08001291 total_duration = time.time() - start
Junji Watanabe38b28b02020-04-23 10:23:30 +00001292 logging.info('Installing CIPD client and packages took %d seconds',
1293 total_duration)
nodir90bc8dc2016-06-15 13:35:21 -07001294
vadimsh232f5a82017-01-20 19:23:44 -08001295 yield CipdInfo(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001296 client=client,
1297 cache_dir=cipd_cache_dir,
1298 stats={
1299 'duration': total_duration,
1300 'get_client_duration': get_client_duration,
iannuccib58d10d2017-03-18 02:00:25 -07001301 },
Junji Watanabe38b28b02020-04-23 10:23:30 +00001302 pins={
1303 'client_package': {
1304 'package_name': client.package_name,
1305 'version': client.instance_id,
1306 },
1307 'packages': package_pins,
1308 })
nodirbe642ff2016-06-09 15:51:51 -07001309
1310
1311def create_option_parser():
Marc-Antoine Ruelf74cffe2015-07-15 15:21:34 -04001312 parser = logging_utils.OptionParserWithLogging(
nodir55be77b2016-05-03 09:39:57 -07001313 usage='%prog <options> [command to run or extra args]',
maruel@chromium.orgdedbf492013-09-12 20:42:11 +00001314 version=__version__,
1315 log_file=RUN_ISOLATED_LOG_FILE)
maruela9cfd6f2015-09-15 11:03:15 -07001316 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001317 '--clean',
1318 action='store_true',
maruel36a963d2016-04-08 17:15:49 -07001319 help='Cleans the cache, trimming it necessary and remove corrupted items '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001320 'and returns without executing anything; use with -v to know what '
1321 'was done')
maruel36a963d2016-04-08 17:15:49 -07001322 parser.add_option(
maruela9cfd6f2015-09-15 11:03:15 -07001323 '--json',
1324 help='dump output metadata to json file. When used, run_isolated returns '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001325 'non-zero only on internal failure')
maruel6be7f9e2015-10-01 12:25:30 -07001326 parser.add_option(
maruel5c9e47b2015-12-18 13:02:30 -08001327 '--hard-timeout', type='float', help='Enforce hard timeout in execution')
maruel6be7f9e2015-10-01 12:25:30 -07001328 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001329 '--grace-period',
1330 type='float',
maruel6be7f9e2015-10-01 12:25:30 -07001331 help='Grace period between SIGTERM and SIGKILL')
bpastene3ae09522016-06-10 17:12:59 -07001332 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001333 '--raw-cmd',
1334 action='store_true',
Marc-Antoine Ruel49e347d2017-10-24 16:52:02 -07001335 help='Ignore the isolated command, use the one supplied at the command '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001336 'line')
Marc-Antoine Ruel49e347d2017-10-24 16:52:02 -07001337 parser.add_option(
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001338 '--relative-cwd',
1339 help='Ignore the isolated \'relative_cwd\' and use this one instead; '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001340 'requires --raw-cmd')
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001341 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001342 '--env',
1343 default=[],
1344 action='append',
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001345 help='Environment variables to set for the child process')
1346 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001347 '--env-prefix',
1348 default=[],
1349 action='append',
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001350 help='Specify a VAR=./path/fragment to put in the environment variable '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001351 'before executing the command. The path fragment must be relative '
1352 'to the isolated run directory, and must not contain a `..` token. '
1353 'The path will be made absolute and prepended to the indicated '
1354 '$VAR using the OS\'s path separator. Multiple items for the same '
1355 '$VAR will be prepended in order.')
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001356 parser.add_option(
bpastene3ae09522016-06-10 17:12:59 -07001357 '--bot-file',
1358 help='Path to a file describing the state of the host. The content is '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001359 'defined by on_before_task() in bot_config.')
aludwin7556e0c2016-10-26 08:46:10 -07001360 parser.add_option(
vadimsh9c54b2c2017-07-25 14:08:29 -07001361 '--switch-to-account',
1362 help='If given, switches LUCI_CONTEXT to given logical service account '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001363 '(e.g. "task" or "system") before launching the isolated process.')
vadimsh9c54b2c2017-07-25 14:08:29 -07001364 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001365 '--output',
1366 action='append',
aludwin0a8e17d2016-10-27 15:57:39 -07001367 help='Specifies an output to return. If no outputs are specified, all '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001368 'files located in $(ISOLATED_OUTDIR) will be returned; '
1369 'otherwise, outputs in both $(ISOLATED_OUTDIR) and those '
1370 'specified by --output option (there can be multiple) will be '
1371 'returned. Note that if a file in OUT_DIR has the same path '
1372 'as an --output option, the --output version will be returned.')
aludwin0a8e17d2016-10-27 15:57:39 -07001373 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001374 '-a',
1375 '--argsfile',
aludwin7556e0c2016-10-26 08:46:10 -07001376 # This is actually handled in parse_args; it's included here purely so it
1377 # can make it into the help text.
1378 help='Specify a file containing a JSON array of arguments to this '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001379 'script. If --argsfile is provided, no other argument may be '
1380 'provided on the command line.')
Takuto Ikutad4be2f12020-05-12 02:15:25 +00001381 parser.add_option(
1382 '--report-on-exception',
1383 action='store_true',
1384 help='Whether report exception during execution to isolate server. '
1385 'This flag should only be used in swarming bot.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001386
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001387 group = optparse.OptionGroup(parser, 'Data source - Isolate server')
Junji Watanabe54925c32020-09-08 00:56:18 +00001388 # Deprecated. Isoate server is being migrated to RBE-CAS.
1389 # Remove --isolated and isolate server options after migration.
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001390 group.add_option(
Marc-Antoine Ruel185ded42015-01-28 20:49:18 -05001391 '-s', '--isolated',
nodir55be77b2016-05-03 09:39:57 -07001392 help='Hash of the .isolated to grab from the isolate server.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001393 isolateserver.add_isolate_server_options(group)
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001394 parser.add_option_group(group)
1395
1396 group = optparse.OptionGroup(parser,
1397 'Data source - Content Addressed Storage')
Junji Watanabe54925c32020-09-08 00:56:18 +00001398 group.add_option(
1399 '--cas-instance', help='Full CAS instance name for input/output files.')
1400 group.add_option(
1401 '--cas-digest',
1402 help='Digest of the input root on RBE-CAS. The format is '
1403 '`{hash}/{size_bytes}`.')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001404 parser.add_option_group(group)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001405
Marc-Antoine Ruela57d7db2014-10-15 20:31:19 -04001406 isolateserver.add_cache_options(parser)
nodirbe642ff2016-06-09 15:51:51 -07001407
1408 cipd.add_cipd_options(parser)
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001409
1410 group = optparse.OptionGroup(parser, 'Named caches')
1411 group.add_option(
1412 '--named-cache',
1413 dest='named_caches',
1414 action='append',
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001415 nargs=3,
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001416 default=[],
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001417 help='A named cache to request. Accepts 3 arguments: name, path, hint. '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001418 'name identifies the cache, must match regex [a-z0-9_]{1,4096}. '
1419 'path is a path relative to the run dir where the cache directory '
1420 'must be put to. '
1421 'This option can be specified more than once.')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001422 group.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001423 '--named-cache-root',
1424 default='named_caches',
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001425 help='Cache root directory. Default=%default')
1426 parser.add_option_group(group)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001427
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001428 group = optparse.OptionGroup(parser, 'Process containment')
1429 parser.add_option(
1430 '--lower-priority', action='store_true',
1431 help='Lowers the child process priority')
1432 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001433 '--containment-type',
1434 choices=('NONE', 'AUTO', 'JOB_OBJECT'),
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001435 default='NONE',
1436 help='Type of container to use')
1437 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001438 '--limit-processes',
1439 type='int',
1440 default=0,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001441 help='Maximum number of active processes in the containment')
1442 parser.add_option(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001443 '--limit-total-committed-memory',
1444 type='int',
1445 default=0,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001446 help='Maximum sum of committed memory in the containment')
1447 parser.add_option_group(group)
1448
1449 group = optparse.OptionGroup(parser, 'Debugging')
1450 group.add_option(
Kenneth Russell61d42352014-09-15 11:41:16 -07001451 '--leak-temp-dir',
1452 action='store_true',
nodirbe642ff2016-06-09 15:51:51 -07001453 help='Deliberately leak isolate\'s temp dir for later examination. '
Junji Watanabe38b28b02020-04-23 10:23:30 +00001454 'Default: %default')
1455 group.add_option('--root-dir', help='Use a directory instead of a random one')
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001456 parser.add_option_group(group)
Kenneth Russell61d42352014-09-15 11:41:16 -07001457
Vadim Shtayurae34e13a2014-02-02 11:23:26 -08001458 auth.add_auth_options(parser)
nodirbe642ff2016-06-09 15:51:51 -07001459
Ye Kuang1d096cb2020-06-26 08:38:21 +00001460 parser.set_defaults(cache='cache')
nodirbe642ff2016-06-09 15:51:51 -07001461 return parser
1462
1463
Marc-Antoine Ruel49f9f8d2018-05-24 15:57:06 -04001464def process_named_cache_options(parser, options, time_fn=None):
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001465 """Validates named cache options and returns a CacheManager."""
1466 if options.named_caches and not options.named_cache_root:
1467 parser.error('--named-cache is specified, but --named-cache-root is empty')
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001468 for name, path, hint in options.named_caches:
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001469 if not CACHE_NAME_RE.match(name):
1470 parser.error(
1471 'cache name %r does not match %r' % (name, CACHE_NAME_RE.pattern))
1472 if not path:
1473 parser.error('cache path cannot be empty')
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001474 try:
Takuto Ikuta630f99d2020-07-02 12:59:35 +00001475 int(hint)
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001476 except ValueError:
1477 parser.error('cache hint must be a number')
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001478 if options.named_cache_root:
1479 # Make these configurable later if there is use case but for now it's fairly
1480 # safe values.
1481 # In practice, a fair chunk of bots are already recycled on a daily schedule
1482 # so this code doesn't have any effect to them, unless they are preloaded
1483 # with a really old cache.
1484 policies = local_caching.CachePolicies(
1485 # 1TiB.
1486 max_cache_size=1024*1024*1024*1024,
1487 min_free_space=options.min_free_space,
1488 max_items=50,
Marc-Antoine Ruel5d7606b2018-06-15 19:06:12 +00001489 max_age_secs=MAX_AGE_SECS)
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001490 root_dir = six.text_type(os.path.abspath(options.named_cache_root))
John Budorickc6186972020-02-26 00:58:14 +00001491 cache = local_caching.NamedCache(root_dir, policies, time_fn=time_fn)
1492 # Touch any named caches we're going to use to minimize thrashing
1493 # between tasks that request some (but not all) of the same named caches.
John Budorick0a4dab62020-03-02 22:23:35 +00001494 cache.touch(*[name for name, _, _ in options.named_caches])
John Budorickc6186972020-02-26 00:58:14 +00001495 return cache
Marc-Antoine Ruel8b11dbd2018-05-18 14:31:22 -04001496 return None
1497
1498
aludwin7556e0c2016-10-26 08:46:10 -07001499def parse_args(args):
1500 # Create a fake mini-parser just to get out the "-a" command. Note that
1501 # it's not documented here; instead, it's documented in create_option_parser
1502 # even though that parser will never actually get to parse it. This is
1503 # because --argsfile is exclusive with all other options and arguments.
1504 file_argparse = argparse.ArgumentParser(add_help=False)
1505 file_argparse.add_argument('-a', '--argsfile')
1506 (file_args, nonfile_args) = file_argparse.parse_known_args(args)
1507 if file_args.argsfile:
1508 if nonfile_args:
1509 file_argparse.error('Can\'t specify --argsfile with'
1510 'any other arguments (%s)' % nonfile_args)
1511 try:
1512 with open(file_args.argsfile, 'r') as f:
1513 args = json.load(f)
1514 except (IOError, OSError, ValueError) as e:
1515 # We don't need to error out here - "args" is now empty,
1516 # so the call below to parser.parse_args(args) will fail
1517 # and print the full help text.
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +00001518 print('Couldn\'t read arguments: %s' % e, file=sys.stderr)
aludwin7556e0c2016-10-26 08:46:10 -07001519
1520 # Even if we failed to read the args, just call the normal parser now since it
1521 # will print the correct help message.
nodirbe642ff2016-06-09 15:51:51 -07001522 parser = create_option_parser()
Marc-Antoine Ruel90c98162013-12-18 15:11:57 -05001523 options, args = parser.parse_args(args)
Ye Kuangfff1e502020-07-13 13:21:57 +00001524 if not isinstance(options.cipd_enabled, (bool, int)):
1525 options.cipd_enabled = distutils.util.strtobool(options.cipd_enabled)
aludwin7556e0c2016-10-26 08:46:10 -07001526 return (parser, options, args)
1527
1528
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001529def _calc_named_cache_hint(named_cache, named_caches):
1530 """Returns the expected size of the missing named caches."""
1531 present = named_cache.available
1532 size = 0
1533 for name, _, hint in named_caches:
1534 if name not in present:
Takuto Ikuta630f99d2020-07-02 12:59:35 +00001535 hint = int(hint)
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001536 if hint > 0:
1537 size += hint
1538 return size
1539
1540
aludwin7556e0c2016-10-26 08:46:10 -07001541def main(args):
Marc-Antoine Ruelee6ca622017-11-29 11:19:16 -05001542 # Warning: when --argsfile is used, the strings are unicode instances, when
1543 # parsed normally, the strings are str instances.
aludwin7556e0c2016-10-26 08:46:10 -07001544 (parser, options, args) = parse_args(args)
maruel36a963d2016-04-08 17:15:49 -07001545
Takuto Ikutad4be2f12020-05-12 02:15:25 +00001546 if options.report_on_exception and options.isolate_server:
1547 on_error.report_on_exception_exit(options.isolate_server)
1548
Marc-Antoine Ruel5028ba22017-08-25 17:37:51 -04001549 if not file_path.enable_symlink():
Marc-Antoine Ruel5a024272019-01-15 20:11:16 +00001550 logging.warning('Symlink support is not enabled')
Marc-Antoine Ruel5028ba22017-08-25 17:37:51 -04001551
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001552 named_cache = process_named_cache_options(parser, options)
Marc-Antoine Ruel0d8b0f62018-09-10 14:40:35 +00001553 # hint is 0 if there's no named cache.
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001554 hint = _calc_named_cache_hint(named_cache, options.named_caches)
1555 if hint:
1556 # Increase the --min-free-space value by the hint, and recreate the
1557 # NamedCache instance so it gets the updated CachePolicy.
1558 options.min_free_space += hint
1559 named_cache = process_named_cache_options(parser, options)
1560
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001561 # TODO(crbug.com/932396): Remove this.
Takuto Ikuta4a22c2c2020-06-05 02:02:23 +00001562 use_go_isolated = options.cipd_enabled
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001563
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001564 # TODO(maruel): CIPD caches should be defined at an higher level here too, so
1565 # they can be cleaned the same way.
Ye Kuang97849802020-06-29 13:17:09 +00001566 if use_go_isolated and not options.clean:
Takuto Ikuta00cf8fc2020-01-14 01:36:00 +00001567 isolate_cache = None
1568 else:
1569 isolate_cache = isolateserver.process_cache_options(options, trim=False)
1570
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001571 caches = []
1572 if isolate_cache:
1573 caches.append(isolate_cache)
1574 if named_cache:
1575 caches.append(named_cache)
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001576 root = caches[0].cache_dir if caches else six.text_type(os.getcwd())
maruel36a963d2016-04-08 17:15:49 -07001577 if options.clean:
1578 if options.isolated:
1579 parser.error('Can\'t use --isolated with --clean.')
1580 if options.isolate_server:
1581 parser.error('Can\'t use --isolate-server with --clean.')
1582 if options.json:
1583 parser.error('Can\'t use --json with --clean.')
nodirf33b8d62016-10-26 22:34:58 -07001584 if options.named_caches:
1585 parser.error('Can\t use --named-cache with --clean.')
Takuto Ikuta9ab28552020-07-31 08:15:45 +00001586
1587 logging.info("initial free space: %d", file_path.get_free_space(root))
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001588 # Trim first, then clean.
1589 local_caching.trim_caches(
1590 caches,
1591 root,
Takuto Ikuta616ce262020-09-07 08:43:48 +00001592 min_free_space=options.min_free_space,
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001593 max_age_secs=MAX_AGE_SECS)
Takuto Ikuta9ab28552020-07-31 08:15:45 +00001594 logging.info("free space after trim: %d", file_path.get_free_space(root))
Marc-Antoine Ruel7139d912018-06-15 20:04:42 +00001595 for c in caches:
Marc-Antoine Ruel87fc2222018-06-18 13:09:24 +00001596 c.cleanup()
Takuto Ikuta9ab28552020-07-31 08:15:45 +00001597 logging.info("free space after cleanup: %d", file_path.get_free_space(root))
maruel36a963d2016-04-08 17:15:49 -07001598 return 0
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001599
1600 # Trim must still be done for the following case:
1601 # - named-cache was used
1602 # - some entries, with a large hint, where missing
1603 # - --min-free-space was increased accordingly, thus trimming is needed
1604 # Otherwise, this will have no effect, as bot_main calls run_isolated with
1605 # --clean after each task.
1606 if hint:
1607 logging.info('Additional trimming of %d bytes', hint)
Marc-Antoine Ruel0d8b0f62018-09-10 14:40:35 +00001608 local_caching.trim_caches(
1609 caches,
1610 root,
Takuto Ikuta616ce262020-09-07 08:43:48 +00001611 min_free_space=options.min_free_space,
Marc-Antoine Ruel0d8b0f62018-09-10 14:40:35 +00001612 max_age_secs=MAX_AGE_SECS)
maruel36a963d2016-04-08 17:15:49 -07001613
nodir55be77b2016-05-03 09:39:57 -07001614 if not options.isolated and not args:
1615 parser.error('--isolated or command to run is required.')
1616
Vadim Shtayura5d1efce2014-02-04 10:55:43 -08001617 auth.process_auth_options(parser, options)
nodir55be77b2016-05-03 09:39:57 -07001618
Takuto Ikutaae767b32020-05-11 01:22:19 +00001619 isolateserver.process_isolate_server_options(parser, options, False)
nodir55be77b2016-05-03 09:39:57 -07001620 if not options.isolate_server:
1621 if options.isolated:
1622 parser.error('--isolated requires --isolate-server')
1623 if ISOLATED_OUTDIR_PARAMETER in args:
1624 parser.error(
1625 '%s in args requires --isolate-server' % ISOLATED_OUTDIR_PARAMETER)
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001626
nodir90bc8dc2016-06-15 13:35:21 -07001627 if options.root_dir:
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001628 options.root_dir = six.text_type(os.path.abspath(options.root_dir))
maruel12e30012015-10-09 11:55:35 -07001629 if options.json:
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001630 options.json = six.text_type(os.path.abspath(options.json))
nodir55be77b2016-05-03 09:39:57 -07001631
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001632 if any('=' not in i for i in options.env):
1633 parser.error(
1634 '--env required key=value form. value can be skipped to delete '
1635 'the variable')
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -05001636 options.env = dict(i.split('=', 1) for i in options.env)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001637
1638 prefixes = {}
1639 cwd = os.path.realpath(os.getcwd())
1640 for item in options.env_prefix:
1641 if '=' not in item:
1642 parser.error(
1643 '--env-prefix %r is malformed, must be in the form `VAR=./path`'
1644 % item)
Marc-Antoine Ruel7a68f712017-12-01 18:45:18 -05001645 key, opath = item.split('=', 1)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001646 if os.path.isabs(opath):
1647 parser.error('--env-prefix %r path is bad, must be relative.' % opath)
1648 opath = os.path.normpath(opath)
1649 if not os.path.realpath(os.path.join(cwd, opath)).startswith(cwd):
1650 parser.error(
Junji Watanabe38b28b02020-04-23 10:23:30 +00001651 '--env-prefix %r path is bad, must be relative and not contain `..`.'
1652 % opath)
Marc-Antoine Ruel19dd8872017-11-28 18:33:39 -05001653 prefixes.setdefault(key, []).append(opath)
1654 options.env_prefix = prefixes
Robert Iannuccibf5f84c2017-11-22 12:56:50 -08001655
nodirbe642ff2016-06-09 15:51:51 -07001656 cipd.validate_cipd_options(parser, options)
1657
vadimsh232f5a82017-01-20 19:23:44 -08001658 install_packages_fn = noop_install_packages
Ye Kuang1d096cb2020-06-26 08:38:21 +00001659 tmp_cipd_cache_dir = None
vadimsh902948e2017-01-20 15:57:32 -08001660 if options.cipd_enabled:
Ye Kuang1d096cb2020-06-26 08:38:21 +00001661 cache_dir = options.cipd_cache
1662 if not cache_dir:
1663 tmp_cipd_cache_dir = six.text_type(tempfile.mkdtemp())
1664 cache_dir = tmp_cipd_cache_dir
Takuto Ikutab7ce0e32019-11-27 23:26:18 +00001665 install_packages_fn = (
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001666 lambda run_dir, isolated_dir, cas_dir: install_client_and_packages(
Ye Kuang1d096cb2020-06-26 08:38:21 +00001667 run_dir,
1668 cipd.parse_package_args(options.cipd_packages),
1669 options.cipd_server,
1670 options.cipd_client_package,
1671 options.cipd_client_version,
1672 cache_dir=cache_dir,
Junji Watanabe4b890ef2020-09-16 01:43:27 +00001673 isolated_dir=isolated_dir,
1674 cas_dir=cas_dir,
1675 ))
nodirbe642ff2016-06-09 15:51:51 -07001676
nodird6160682017-02-02 13:03:35 -08001677 @contextlib.contextmanager
nodir0ae98b32017-05-11 13:21:53 -07001678 def install_named_caches(run_dir):
nodird6160682017-02-02 13:03:35 -08001679 # WARNING: this function depends on "options" variable defined in the outer
1680 # function.
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001681 assert six.text_type(run_dir), repr(run_dir)
Marc-Antoine Ruel49f9f8d2018-05-24 15:57:06 -04001682 assert os.path.isabs(run_dir), run_dir
Takuto Ikuta6e2ff962019-10-29 12:35:27 +00001683 named_caches = [(os.path.join(run_dir, six.text_type(relpath)), name)
1684 for name, relpath, _ in options.named_caches]
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001685 for path, name in named_caches:
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001686 named_cache.install(path, name)
nodird6160682017-02-02 13:03:35 -08001687 try:
1688 yield
1689 finally:
dnje289d132017-07-07 11:16:44 -07001690 # Uninstall each named cache, returning it to the cache pool. If an
1691 # uninstall fails for a given cache, it will remain in the task's
1692 # temporary space, get cleaned up by the Swarming bot, and be lost.
1693 #
1694 # If the Swarming bot cannot clean up the cache, it will handle it like
1695 # any other bot file that could not be removed.
Marc-Antoine Ruelc7a704b2018-08-29 19:02:23 +00001696 for path, name in reversed(named_caches):
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001697 try:
Marc-Antoine Ruele9558372018-08-03 03:41:22 +00001698 # uninstall() doesn't trim but does call save() implicitly. Trimming
1699 # *must* be done manually via periodic 'run_isolated.py --clean'.
Marc-Antoine Ruele79ddbf2018-06-13 18:33:07 +00001700 named_cache.uninstall(path, name)
1701 except local_caching.NamedCacheError:
1702 logging.exception('Error while removing named cache %r at %r. '
1703 'The cache will be lost.', path, name)
nodirf33b8d62016-10-26 22:34:58 -07001704
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001705 extra_args = []
1706 command = []
1707 if options.raw_cmd:
1708 command = args
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001709 if options.relative_cwd:
1710 a = os.path.normpath(os.path.abspath(options.relative_cwd))
1711 if not a.startswith(os.getcwd()):
1712 parser.error(
1713 '--relative-cwd must not try to escape the working directory')
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001714 else:
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001715 if options.relative_cwd:
1716 parser.error('--relative-cwd requires --raw-cmd')
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001717 extra_args = args
1718
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001719 containment_type = subprocess42.Containment.NONE
1720 if options.containment_type == 'AUTO':
1721 containment_type = subprocess42.Containment.AUTO
1722 if options.containment_type == 'JOB_OBJECT':
1723 containment_type = subprocess42.Containment.JOB_OBJECT
1724 containment = subprocess42.Containment(
1725 containment_type=containment_type,
1726 limit_processes=options.limit_processes,
1727 limit_total_committed_memory=options.limit_total_committed_memory)
1728
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001729 data = TaskData(
1730 command=command,
Marc-Antoine Ruel95068cf2017-12-07 21:35:05 -05001731 relative_cwd=options.relative_cwd,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001732 extra_args=extra_args,
1733 isolated_hash=options.isolated,
1734 storage=None,
1735 isolate_cache=isolate_cache,
Junji Watanabe54925c32020-09-08 00:56:18 +00001736 cas_instance=options.cas_instance,
1737 cas_digest=options.cas_digest,
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001738 outputs=options.output,
1739 install_named_caches=install_named_caches,
1740 leak_temp_dir=options.leak_temp_dir,
1741 root_dir=_to_unicode(options.root_dir),
1742 hard_timeout=options.hard_timeout,
1743 grace_period=options.grace_period,
1744 bot_file=options.bot_file,
1745 switch_to_account=options.switch_to_account,
1746 install_packages_fn=install_packages_fn,
Takuto Ikuta5c59a842020-01-24 03:05:24 +00001747 use_go_isolated=use_go_isolated,
Takuto Ikuta10cae642020-01-08 08:12:07 +00001748 go_cache_dir=options.cache,
Takuto Ikuta879788c2020-01-10 08:00:26 +00001749 go_cache_policies=local_caching.CachePolicies(
1750 max_cache_size=options.max_cache_size,
1751 min_free_space=options.min_free_space,
1752 max_items=options.max_items,
1753 max_age_secs=None,
1754 ),
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001755 env=options.env,
Marc-Antoine Ruel03c6fd12019-04-30 12:12:55 +00001756 env_prefix=options.env_prefix,
Marc-Antoine Ruel1b65f4e2019-05-02 21:56:58 +00001757 lower_priority=bool(options.lower_priority),
1758 containment=containment)
nodirbe642ff2016-06-09 15:51:51 -07001759 try:
nodir90bc8dc2016-06-15 13:35:21 -07001760 if options.isolate_server:
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001761 server_ref = isolate_storage.ServerRef(
nodir90bc8dc2016-06-15 13:35:21 -07001762 options.isolate_server, options.namespace)
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001763 storage = isolateserver.get_storage(server_ref)
nodir90bc8dc2016-06-15 13:35:21 -07001764 with storage:
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001765 data = data._replace(storage=storage)
nodirf33b8d62016-10-26 22:34:58 -07001766 # Hashing schemes used by |storage| and |isolate_cache| MUST match.
Marc-Antoine Ruelb8513132018-11-20 19:48:53 +00001767 assert storage.server_ref.hash_algo == server_ref.hash_algo
Marc-Antoine Ruel7de52592017-12-07 10:41:12 -05001768 return run_tha_test(data, options.json)
1769 return run_tha_test(data, options.json)
Junji Watanabe38b28b02020-04-23 10:23:30 +00001770 except (cipd.Error, local_caching.NamedCacheError,
1771 local_caching.NoMoreSpace) as ex:
Marc-Antoine Ruelf899c482019-10-10 23:32:06 +00001772 print(ex.message, file=sys.stderr)
nodirbe642ff2016-06-09 15:51:51 -07001773 return 1
Ye Kuang1d096cb2020-06-26 08:38:21 +00001774 finally:
1775 if tmp_cipd_cache_dir is not None:
1776 try:
1777 file_path.rmtree(tmp_cipd_cache_dir)
1778 except OSError:
1779 logging.exception('Remove tmp_cipd_cache_dir=%s failed',
1780 tmp_cipd_cache_dir)
1781 # Best effort clean up. Failed to do so doesn't affect the outcome.
maruel@chromium.org9c72d4e2012-09-28 19:20:25 +00001782
1783
1784if __name__ == '__main__':
maruel8e4e40c2016-05-30 06:21:07 -07001785 subprocess42.inhibit_os_error_reporting()
csharp@chromium.orgbfb98742013-03-26 20:28:36 +00001786 # Ensure that we are always running with the correct encoding.
vadimsh@chromium.orga4326472013-08-24 02:05:41 +00001787 fix_encoding.fix_encoding()
Ye Kuang2dd17442020-04-22 08:45:52 +00001788 net.set_user_agent('run_isolated.py/' + __version__)
Marc-Antoine Ruel90c98162013-12-18 15:11:57 -05001789 sys.exit(main(sys.argv[1:]))