corrupt.go 4.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181
  1. // Copyright 2017 The etcd Authors
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package etcdserver
  15. import (
  16. "context"
  17. "time"
  18. "github.com/coreos/etcd/clientv3"
  19. pb "github.com/coreos/etcd/etcdserver/etcdserverpb"
  20. "github.com/coreos/etcd/mvcc"
  21. "github.com/coreos/etcd/pkg/types"
  22. )
  23. func (s *EtcdServer) monitorKVHash() {
  24. t := s.Cfg.CorruptCheckTime
  25. if t == 0 {
  26. return
  27. }
  28. plog.Infof("enabled corruption checking with %s interval", t)
  29. for {
  30. select {
  31. case <-s.stopping:
  32. return
  33. case <-time.After(t):
  34. }
  35. if !s.isLeader() {
  36. continue
  37. }
  38. if err := s.checkHashKV(); err != nil {
  39. plog.Debugf("check hash kv failed %v", err)
  40. }
  41. }
  42. }
  43. func (s *EtcdServer) checkHashKV() error {
  44. h, rev, crev, err := s.kv.HashByRev(0)
  45. if err != nil {
  46. plog.Fatalf("failed to hash kv store (%v)", err)
  47. }
  48. resps := []*clientv3.HashKVResponse{}
  49. for _, m := range s.cluster.Members() {
  50. if m.ID == s.ID() {
  51. continue
  52. }
  53. cli, cerr := clientv3.New(clientv3.Config{Endpoints: m.PeerURLs})
  54. if cerr != nil {
  55. continue
  56. }
  57. respsLen := len(resps)
  58. for _, c := range cli.Endpoints() {
  59. ctx, cancel := context.WithTimeout(context.Background(), s.Cfg.ReqTimeout())
  60. resp, herr := cli.HashKV(ctx, c, rev)
  61. cancel()
  62. if herr == nil {
  63. cerr = herr
  64. resps = append(resps, resp)
  65. break
  66. }
  67. }
  68. cli.Close()
  69. if respsLen == len(resps) {
  70. plog.Warningf("failed to hash kv for peer %s (%v)", types.ID(m.ID), cerr)
  71. }
  72. }
  73. ctx, cancel := context.WithTimeout(context.Background(), s.Cfg.ReqTimeout())
  74. err = s.linearizableReadNotify(ctx)
  75. cancel()
  76. if err != nil {
  77. return err
  78. }
  79. h2, rev2, crev2, err := s.kv.HashByRev(0)
  80. if err != nil {
  81. plog.Warningf("failed to hash kv store (%v)", err)
  82. return err
  83. }
  84. alarmed := false
  85. mismatch := func(id uint64) {
  86. if alarmed {
  87. return
  88. }
  89. alarmed = true
  90. a := &pb.AlarmRequest{
  91. MemberID: uint64(id),
  92. Action: pb.AlarmRequest_ACTIVATE,
  93. Alarm: pb.AlarmType_CORRUPT,
  94. }
  95. s.goAttach(func() {
  96. s.raftRequest(s.ctx, pb.InternalRaftRequest{Alarm: a})
  97. })
  98. }
  99. if h2 != h && rev2 == rev && crev == crev2 {
  100. plog.Warningf("mismatched hashes %d and %d for revision %d", h, h2, rev)
  101. mismatch(uint64(s.ID()))
  102. }
  103. for _, resp := range resps {
  104. id := resp.Header.MemberId
  105. if resp.Header.Revision > rev2 {
  106. plog.Warningf(
  107. "revision %d from member %v, expected at most %d",
  108. resp.Header.Revision,
  109. types.ID(id),
  110. rev2)
  111. mismatch(id)
  112. }
  113. if resp.CompactRevision > crev2 {
  114. plog.Warningf(
  115. "compact revision %d from member %v, expected at most %d",
  116. resp.CompactRevision,
  117. types.ID(id),
  118. crev2,
  119. )
  120. mismatch(id)
  121. }
  122. if resp.CompactRevision == crev && resp.Hash != h {
  123. plog.Warningf(
  124. "hash %d at revision %d from member %v, expected hash %d",
  125. resp.Hash,
  126. rev,
  127. types.ID(id),
  128. h,
  129. )
  130. mismatch(id)
  131. }
  132. }
  133. return nil
  134. }
  135. type applierV3Corrupt struct {
  136. applierV3
  137. }
  138. func newApplierV3Corrupt(a applierV3) *applierV3Corrupt { return &applierV3Corrupt{a} }
  139. func (a *applierV3Corrupt) Put(txn mvcc.TxnWrite, p *pb.PutRequest) (*pb.PutResponse, error) {
  140. return nil, ErrCorrupt
  141. }
  142. func (a *applierV3Corrupt) Range(txn mvcc.TxnRead, p *pb.RangeRequest) (*pb.RangeResponse, error) {
  143. return nil, ErrCorrupt
  144. }
  145. func (a *applierV3Corrupt) DeleteRange(txn mvcc.TxnWrite, p *pb.DeleteRangeRequest) (*pb.DeleteRangeResponse, error) {
  146. return nil, ErrCorrupt
  147. }
  148. func (a *applierV3Corrupt) Txn(rt *pb.TxnRequest) (*pb.TxnResponse, error) {
  149. return nil, ErrCorrupt
  150. }
  151. func (a *applierV3Corrupt) Compaction(compaction *pb.CompactionRequest) (*pb.CompactionResponse, <-chan struct{}, error) {
  152. return nil, nil, ErrCorrupt
  153. }
  154. func (a *applierV3Corrupt) LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error) {
  155. return nil, ErrCorrupt
  156. }
  157. func (a *applierV3Corrupt) LeaseRevoke(lc *pb.LeaseRevokeRequest) (*pb.LeaseRevokeResponse, error) {
  158. return nil, ErrCorrupt
  159. }