apply.go 28 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005
  1. // Copyright 2016 The etcd Authors
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package etcdserver
  15. import (
  16. "bytes"
  17. "context"
  18. "fmt"
  19. "sort"
  20. "time"
  21. "github.com/coreos/etcd/auth"
  22. pb "github.com/coreos/etcd/etcdserver/etcdserverpb"
  23. "github.com/coreos/etcd/lease"
  24. "github.com/coreos/etcd/mvcc"
  25. "github.com/coreos/etcd/mvcc/mvccpb"
  26. "github.com/coreos/etcd/pkg/types"
  27. "github.com/gogo/protobuf/proto"
  28. "go.uber.org/zap"
  29. )
  30. const (
  31. warnApplyDuration = 100 * time.Millisecond
  32. )
  33. type applyResult struct {
  34. resp proto.Message
  35. err error
  36. // physc signals the physical effect of the request has completed in addition
  37. // to being logically reflected by the node. Currently only used for
  38. // Compaction requests.
  39. physc <-chan struct{}
  40. }
  41. // applierV3 is the interface for processing V3 raft messages
  42. type applierV3 interface {
  43. Apply(r *pb.InternalRaftRequest) *applyResult
  44. Put(txn mvcc.TxnWrite, p *pb.PutRequest) (*pb.PutResponse, error)
  45. Range(txn mvcc.TxnRead, r *pb.RangeRequest) (*pb.RangeResponse, error)
  46. DeleteRange(txn mvcc.TxnWrite, dr *pb.DeleteRangeRequest) (*pb.DeleteRangeResponse, error)
  47. Txn(rt *pb.TxnRequest) (*pb.TxnResponse, error)
  48. Compaction(compaction *pb.CompactionRequest) (*pb.CompactionResponse, <-chan struct{}, error)
  49. LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error)
  50. LeaseRevoke(lc *pb.LeaseRevokeRequest) (*pb.LeaseRevokeResponse, error)
  51. Alarm(*pb.AlarmRequest) (*pb.AlarmResponse, error)
  52. Authenticate(r *pb.InternalAuthenticateRequest) (*pb.AuthenticateResponse, error)
  53. AuthEnable() (*pb.AuthEnableResponse, error)
  54. AuthDisable() (*pb.AuthDisableResponse, error)
  55. UserAdd(ua *pb.AuthUserAddRequest) (*pb.AuthUserAddResponse, error)
  56. UserDelete(ua *pb.AuthUserDeleteRequest) (*pb.AuthUserDeleteResponse, error)
  57. UserChangePassword(ua *pb.AuthUserChangePasswordRequest) (*pb.AuthUserChangePasswordResponse, error)
  58. UserGrantRole(ua *pb.AuthUserGrantRoleRequest) (*pb.AuthUserGrantRoleResponse, error)
  59. UserGet(ua *pb.AuthUserGetRequest) (*pb.AuthUserGetResponse, error)
  60. UserRevokeRole(ua *pb.AuthUserRevokeRoleRequest) (*pb.AuthUserRevokeRoleResponse, error)
  61. RoleAdd(ua *pb.AuthRoleAddRequest) (*pb.AuthRoleAddResponse, error)
  62. RoleGrantPermission(ua *pb.AuthRoleGrantPermissionRequest) (*pb.AuthRoleGrantPermissionResponse, error)
  63. RoleGet(ua *pb.AuthRoleGetRequest) (*pb.AuthRoleGetResponse, error)
  64. RoleRevokePermission(ua *pb.AuthRoleRevokePermissionRequest) (*pb.AuthRoleRevokePermissionResponse, error)
  65. RoleDelete(ua *pb.AuthRoleDeleteRequest) (*pb.AuthRoleDeleteResponse, error)
  66. UserList(ua *pb.AuthUserListRequest) (*pb.AuthUserListResponse, error)
  67. RoleList(ua *pb.AuthRoleListRequest) (*pb.AuthRoleListResponse, error)
  68. }
  69. type checkReqFunc func(mvcc.ReadView, *pb.RequestOp) error
  70. type applierV3backend struct {
  71. s *EtcdServer
  72. checkPut checkReqFunc
  73. checkRange checkReqFunc
  74. }
  75. func (s *EtcdServer) newApplierV3Backend() applierV3 {
  76. base := &applierV3backend{s: s}
  77. base.checkPut = func(rv mvcc.ReadView, req *pb.RequestOp) error {
  78. return base.checkRequestPut(rv, req)
  79. }
  80. base.checkRange = func(rv mvcc.ReadView, req *pb.RequestOp) error {
  81. return base.checkRequestRange(rv, req)
  82. }
  83. return base
  84. }
  85. func (s *EtcdServer) newApplierV3() applierV3 {
  86. return newAuthApplierV3(
  87. s.AuthStore(),
  88. newQuotaApplierV3(s, s.newApplierV3Backend()),
  89. s.lessor,
  90. )
  91. }
  92. func (a *applierV3backend) Apply(r *pb.InternalRaftRequest) *applyResult {
  93. ar := &applyResult{}
  94. defer func(start time.Time) {
  95. warnOfExpensiveRequest(a.s.getLogger(), start, &pb.InternalRaftStringer{Request: r}, ar.resp, ar.err)
  96. }(time.Now())
  97. // call into a.s.applyV3.F instead of a.F so upper appliers can check individual calls
  98. switch {
  99. case r.Range != nil:
  100. ar.resp, ar.err = a.s.applyV3.Range(nil, r.Range)
  101. case r.Put != nil:
  102. ar.resp, ar.err = a.s.applyV3.Put(nil, r.Put)
  103. case r.DeleteRange != nil:
  104. ar.resp, ar.err = a.s.applyV3.DeleteRange(nil, r.DeleteRange)
  105. case r.Txn != nil:
  106. ar.resp, ar.err = a.s.applyV3.Txn(r.Txn)
  107. case r.Compaction != nil:
  108. ar.resp, ar.physc, ar.err = a.s.applyV3.Compaction(r.Compaction)
  109. case r.LeaseGrant != nil:
  110. ar.resp, ar.err = a.s.applyV3.LeaseGrant(r.LeaseGrant)
  111. case r.LeaseRevoke != nil:
  112. ar.resp, ar.err = a.s.applyV3.LeaseRevoke(r.LeaseRevoke)
  113. case r.Alarm != nil:
  114. ar.resp, ar.err = a.s.applyV3.Alarm(r.Alarm)
  115. case r.Authenticate != nil:
  116. ar.resp, ar.err = a.s.applyV3.Authenticate(r.Authenticate)
  117. case r.AuthEnable != nil:
  118. ar.resp, ar.err = a.s.applyV3.AuthEnable()
  119. case r.AuthDisable != nil:
  120. ar.resp, ar.err = a.s.applyV3.AuthDisable()
  121. case r.AuthUserAdd != nil:
  122. ar.resp, ar.err = a.s.applyV3.UserAdd(r.AuthUserAdd)
  123. case r.AuthUserDelete != nil:
  124. ar.resp, ar.err = a.s.applyV3.UserDelete(r.AuthUserDelete)
  125. case r.AuthUserChangePassword != nil:
  126. ar.resp, ar.err = a.s.applyV3.UserChangePassword(r.AuthUserChangePassword)
  127. case r.AuthUserGrantRole != nil:
  128. ar.resp, ar.err = a.s.applyV3.UserGrantRole(r.AuthUserGrantRole)
  129. case r.AuthUserGet != nil:
  130. ar.resp, ar.err = a.s.applyV3.UserGet(r.AuthUserGet)
  131. case r.AuthUserRevokeRole != nil:
  132. ar.resp, ar.err = a.s.applyV3.UserRevokeRole(r.AuthUserRevokeRole)
  133. case r.AuthRoleAdd != nil:
  134. ar.resp, ar.err = a.s.applyV3.RoleAdd(r.AuthRoleAdd)
  135. case r.AuthRoleGrantPermission != nil:
  136. ar.resp, ar.err = a.s.applyV3.RoleGrantPermission(r.AuthRoleGrantPermission)
  137. case r.AuthRoleGet != nil:
  138. ar.resp, ar.err = a.s.applyV3.RoleGet(r.AuthRoleGet)
  139. case r.AuthRoleRevokePermission != nil:
  140. ar.resp, ar.err = a.s.applyV3.RoleRevokePermission(r.AuthRoleRevokePermission)
  141. case r.AuthRoleDelete != nil:
  142. ar.resp, ar.err = a.s.applyV3.RoleDelete(r.AuthRoleDelete)
  143. case r.AuthUserList != nil:
  144. ar.resp, ar.err = a.s.applyV3.UserList(r.AuthUserList)
  145. case r.AuthRoleList != nil:
  146. ar.resp, ar.err = a.s.applyV3.RoleList(r.AuthRoleList)
  147. default:
  148. panic("not implemented")
  149. }
  150. return ar
  151. }
  152. func (a *applierV3backend) Put(txn mvcc.TxnWrite, p *pb.PutRequest) (resp *pb.PutResponse, err error) {
  153. resp = &pb.PutResponse{}
  154. resp.Header = &pb.ResponseHeader{}
  155. val, leaseID := p.Value, lease.LeaseID(p.Lease)
  156. if txn == nil {
  157. if leaseID != lease.NoLease {
  158. if l := a.s.lessor.Lookup(leaseID); l == nil {
  159. return nil, lease.ErrLeaseNotFound
  160. }
  161. }
  162. txn = a.s.KV().Write()
  163. defer txn.End()
  164. }
  165. var rr *mvcc.RangeResult
  166. if p.IgnoreValue || p.IgnoreLease || p.PrevKv {
  167. rr, err = txn.Range(p.Key, nil, mvcc.RangeOptions{})
  168. if err != nil {
  169. return nil, err
  170. }
  171. }
  172. if p.IgnoreValue || p.IgnoreLease {
  173. if rr == nil || len(rr.KVs) == 0 {
  174. // ignore_{lease,value} flag expects previous key-value pair
  175. return nil, ErrKeyNotFound
  176. }
  177. }
  178. if p.IgnoreValue {
  179. val = rr.KVs[0].Value
  180. }
  181. if p.IgnoreLease {
  182. leaseID = lease.LeaseID(rr.KVs[0].Lease)
  183. }
  184. if p.PrevKv {
  185. if rr != nil && len(rr.KVs) != 0 {
  186. resp.PrevKv = &rr.KVs[0]
  187. }
  188. }
  189. resp.Header.Revision = txn.Put(p.Key, val, leaseID)
  190. return resp, nil
  191. }
  192. func (a *applierV3backend) DeleteRange(txn mvcc.TxnWrite, dr *pb.DeleteRangeRequest) (*pb.DeleteRangeResponse, error) {
  193. resp := &pb.DeleteRangeResponse{}
  194. resp.Header = &pb.ResponseHeader{}
  195. end := mkGteRange(dr.RangeEnd)
  196. if txn == nil {
  197. txn = a.s.kv.Write()
  198. defer txn.End()
  199. }
  200. if dr.PrevKv {
  201. rr, err := txn.Range(dr.Key, end, mvcc.RangeOptions{})
  202. if err != nil {
  203. return nil, err
  204. }
  205. if rr != nil {
  206. resp.PrevKvs = make([]*mvccpb.KeyValue, len(rr.KVs))
  207. for i := range rr.KVs {
  208. resp.PrevKvs[i] = &rr.KVs[i]
  209. }
  210. }
  211. }
  212. resp.Deleted, resp.Header.Revision = txn.DeleteRange(dr.Key, end)
  213. return resp, nil
  214. }
  215. func (a *applierV3backend) Range(txn mvcc.TxnRead, r *pb.RangeRequest) (*pb.RangeResponse, error) {
  216. resp := &pb.RangeResponse{}
  217. resp.Header = &pb.ResponseHeader{}
  218. if txn == nil {
  219. txn = a.s.kv.Read()
  220. defer txn.End()
  221. }
  222. limit := r.Limit
  223. if r.SortOrder != pb.RangeRequest_NONE ||
  224. r.MinModRevision != 0 || r.MaxModRevision != 0 ||
  225. r.MinCreateRevision != 0 || r.MaxCreateRevision != 0 {
  226. // fetch everything; sort and truncate afterwards
  227. limit = 0
  228. }
  229. if limit > 0 {
  230. // fetch one extra for 'more' flag
  231. limit = limit + 1
  232. }
  233. ro := mvcc.RangeOptions{
  234. Limit: limit,
  235. Rev: r.Revision,
  236. Count: r.CountOnly,
  237. }
  238. rr, err := txn.Range(r.Key, mkGteRange(r.RangeEnd), ro)
  239. if err != nil {
  240. return nil, err
  241. }
  242. if r.MaxModRevision != 0 {
  243. f := func(kv *mvccpb.KeyValue) bool { return kv.ModRevision > r.MaxModRevision }
  244. pruneKVs(rr, f)
  245. }
  246. if r.MinModRevision != 0 {
  247. f := func(kv *mvccpb.KeyValue) bool { return kv.ModRevision < r.MinModRevision }
  248. pruneKVs(rr, f)
  249. }
  250. if r.MaxCreateRevision != 0 {
  251. f := func(kv *mvccpb.KeyValue) bool { return kv.CreateRevision > r.MaxCreateRevision }
  252. pruneKVs(rr, f)
  253. }
  254. if r.MinCreateRevision != 0 {
  255. f := func(kv *mvccpb.KeyValue) bool { return kv.CreateRevision < r.MinCreateRevision }
  256. pruneKVs(rr, f)
  257. }
  258. sortOrder := r.SortOrder
  259. if r.SortTarget != pb.RangeRequest_KEY && sortOrder == pb.RangeRequest_NONE {
  260. // Since current mvcc.Range implementation returns results
  261. // sorted by keys in lexiographically ascending order,
  262. // sort ASCEND by default only when target is not 'KEY'
  263. sortOrder = pb.RangeRequest_ASCEND
  264. }
  265. if sortOrder != pb.RangeRequest_NONE {
  266. var sorter sort.Interface
  267. switch {
  268. case r.SortTarget == pb.RangeRequest_KEY:
  269. sorter = &kvSortByKey{&kvSort{rr.KVs}}
  270. case r.SortTarget == pb.RangeRequest_VERSION:
  271. sorter = &kvSortByVersion{&kvSort{rr.KVs}}
  272. case r.SortTarget == pb.RangeRequest_CREATE:
  273. sorter = &kvSortByCreate{&kvSort{rr.KVs}}
  274. case r.SortTarget == pb.RangeRequest_MOD:
  275. sorter = &kvSortByMod{&kvSort{rr.KVs}}
  276. case r.SortTarget == pb.RangeRequest_VALUE:
  277. sorter = &kvSortByValue{&kvSort{rr.KVs}}
  278. }
  279. switch {
  280. case sortOrder == pb.RangeRequest_ASCEND:
  281. sort.Sort(sorter)
  282. case sortOrder == pb.RangeRequest_DESCEND:
  283. sort.Sort(sort.Reverse(sorter))
  284. }
  285. }
  286. if r.Limit > 0 && len(rr.KVs) > int(r.Limit) {
  287. rr.KVs = rr.KVs[:r.Limit]
  288. resp.More = true
  289. }
  290. resp.Header.Revision = rr.Rev
  291. resp.Count = int64(rr.Count)
  292. resp.Kvs = make([]*mvccpb.KeyValue, len(rr.KVs))
  293. for i := range rr.KVs {
  294. if r.KeysOnly {
  295. rr.KVs[i].Value = nil
  296. }
  297. resp.Kvs[i] = &rr.KVs[i]
  298. }
  299. return resp, nil
  300. }
  301. func (a *applierV3backend) Txn(rt *pb.TxnRequest) (*pb.TxnResponse, error) {
  302. isWrite := !isTxnReadonly(rt)
  303. txn := mvcc.NewReadOnlyTxnWrite(a.s.KV().Read())
  304. txnPath := compareToPath(txn, rt)
  305. if isWrite {
  306. if _, err := checkRequests(txn, rt, txnPath, a.checkPut); err != nil {
  307. txn.End()
  308. return nil, err
  309. }
  310. }
  311. if _, err := checkRequests(txn, rt, txnPath, a.checkRange); err != nil {
  312. txn.End()
  313. return nil, err
  314. }
  315. txnResp, _ := newTxnResp(rt, txnPath)
  316. // When executing mutable txn ops, etcd must hold the txn lock so
  317. // readers do not see any intermediate results. Since writes are
  318. // serialized on the raft loop, the revision in the read view will
  319. // be the revision of the write txn.
  320. if isWrite {
  321. txn.End()
  322. txn = a.s.KV().Write()
  323. }
  324. a.applyTxn(txn, rt, txnPath, txnResp)
  325. rev := txn.Rev()
  326. if len(txn.Changes()) != 0 {
  327. rev++
  328. }
  329. txn.End()
  330. txnResp.Header.Revision = rev
  331. return txnResp, nil
  332. }
  333. // newTxnResp allocates a txn response for a txn request given a path.
  334. func newTxnResp(rt *pb.TxnRequest, txnPath []bool) (txnResp *pb.TxnResponse, txnCount int) {
  335. reqs := rt.Success
  336. if !txnPath[0] {
  337. reqs = rt.Failure
  338. }
  339. resps := make([]*pb.ResponseOp, len(reqs))
  340. txnResp = &pb.TxnResponse{
  341. Responses: resps,
  342. Succeeded: txnPath[0],
  343. Header: &pb.ResponseHeader{},
  344. }
  345. for i, req := range reqs {
  346. switch tv := req.Request.(type) {
  347. case *pb.RequestOp_RequestRange:
  348. resps[i] = &pb.ResponseOp{Response: &pb.ResponseOp_ResponseRange{}}
  349. case *pb.RequestOp_RequestPut:
  350. resps[i] = &pb.ResponseOp{Response: &pb.ResponseOp_ResponsePut{}}
  351. case *pb.RequestOp_RequestDeleteRange:
  352. resps[i] = &pb.ResponseOp{Response: &pb.ResponseOp_ResponseDeleteRange{}}
  353. case *pb.RequestOp_RequestTxn:
  354. resp, txns := newTxnResp(tv.RequestTxn, txnPath[1:])
  355. resps[i] = &pb.ResponseOp{Response: &pb.ResponseOp_ResponseTxn{ResponseTxn: resp}}
  356. txnPath = txnPath[1+txns:]
  357. txnCount += txns + 1
  358. default:
  359. }
  360. }
  361. return txnResp, txnCount
  362. }
  363. func compareToPath(rv mvcc.ReadView, rt *pb.TxnRequest) []bool {
  364. txnPath := make([]bool, 1)
  365. ops := rt.Success
  366. if txnPath[0] = applyCompares(rv, rt.Compare); !txnPath[0] {
  367. ops = rt.Failure
  368. }
  369. for _, op := range ops {
  370. tv, ok := op.Request.(*pb.RequestOp_RequestTxn)
  371. if !ok || tv.RequestTxn == nil {
  372. continue
  373. }
  374. txnPath = append(txnPath, compareToPath(rv, tv.RequestTxn)...)
  375. }
  376. return txnPath
  377. }
  378. func applyCompares(rv mvcc.ReadView, cmps []*pb.Compare) bool {
  379. for _, c := range cmps {
  380. if !applyCompare(rv, c) {
  381. return false
  382. }
  383. }
  384. return true
  385. }
  386. // applyCompare applies the compare request.
  387. // If the comparison succeeds, it returns true. Otherwise, returns false.
  388. func applyCompare(rv mvcc.ReadView, c *pb.Compare) bool {
  389. // TODO: possible optimizations
  390. // * chunk reads for large ranges to conserve memory
  391. // * rewrite rules for common patterns:
  392. // ex. "[a, b) createrev > 0" => "limit 1 /\ kvs > 0"
  393. // * caching
  394. rr, err := rv.Range(c.Key, mkGteRange(c.RangeEnd), mvcc.RangeOptions{})
  395. if err != nil {
  396. return false
  397. }
  398. if len(rr.KVs) == 0 {
  399. if c.Target == pb.Compare_VALUE {
  400. // Always fail if comparing a value on a key/keys that doesn't exist;
  401. // nil == empty string in grpc; no way to represent missing value
  402. return false
  403. }
  404. return compareKV(c, mvccpb.KeyValue{})
  405. }
  406. for _, kv := range rr.KVs {
  407. if !compareKV(c, kv) {
  408. return false
  409. }
  410. }
  411. return true
  412. }
  413. func compareKV(c *pb.Compare, ckv mvccpb.KeyValue) bool {
  414. var result int
  415. rev := int64(0)
  416. switch c.Target {
  417. case pb.Compare_VALUE:
  418. v := []byte{}
  419. if tv, _ := c.TargetUnion.(*pb.Compare_Value); tv != nil {
  420. v = tv.Value
  421. }
  422. result = bytes.Compare(ckv.Value, v)
  423. case pb.Compare_CREATE:
  424. if tv, _ := c.TargetUnion.(*pb.Compare_CreateRevision); tv != nil {
  425. rev = tv.CreateRevision
  426. }
  427. result = compareInt64(ckv.CreateRevision, rev)
  428. case pb.Compare_MOD:
  429. if tv, _ := c.TargetUnion.(*pb.Compare_ModRevision); tv != nil {
  430. rev = tv.ModRevision
  431. }
  432. result = compareInt64(ckv.ModRevision, rev)
  433. case pb.Compare_VERSION:
  434. if tv, _ := c.TargetUnion.(*pb.Compare_Version); tv != nil {
  435. rev = tv.Version
  436. }
  437. result = compareInt64(ckv.Version, rev)
  438. case pb.Compare_LEASE:
  439. if tv, _ := c.TargetUnion.(*pb.Compare_Lease); tv != nil {
  440. rev = tv.Lease
  441. }
  442. result = compareInt64(ckv.Lease, rev)
  443. }
  444. switch c.Result {
  445. case pb.Compare_EQUAL:
  446. return result == 0
  447. case pb.Compare_NOT_EQUAL:
  448. return result != 0
  449. case pb.Compare_GREATER:
  450. return result > 0
  451. case pb.Compare_LESS:
  452. return result < 0
  453. }
  454. return true
  455. }
  456. func (a *applierV3backend) applyTxn(txn mvcc.TxnWrite, rt *pb.TxnRequest, txnPath []bool, tresp *pb.TxnResponse) (txns int) {
  457. reqs := rt.Success
  458. if !txnPath[0] {
  459. reqs = rt.Failure
  460. }
  461. lg := a.s.getLogger()
  462. for i, req := range reqs {
  463. respi := tresp.Responses[i].Response
  464. switch tv := req.Request.(type) {
  465. case *pb.RequestOp_RequestRange:
  466. resp, err := a.Range(txn, tv.RequestRange)
  467. if err != nil {
  468. if lg != nil {
  469. lg.Panic("unexpected error during txn", zap.Error(err))
  470. } else {
  471. plog.Panicf("unexpected error during txn: %v", err)
  472. }
  473. }
  474. respi.(*pb.ResponseOp_ResponseRange).ResponseRange = resp
  475. case *pb.RequestOp_RequestPut:
  476. resp, err := a.Put(txn, tv.RequestPut)
  477. if err != nil {
  478. if lg != nil {
  479. lg.Panic("unexpected error during txn", zap.Error(err))
  480. } else {
  481. plog.Panicf("unexpected error during txn: %v", err)
  482. }
  483. }
  484. respi.(*pb.ResponseOp_ResponsePut).ResponsePut = resp
  485. case *pb.RequestOp_RequestDeleteRange:
  486. resp, err := a.DeleteRange(txn, tv.RequestDeleteRange)
  487. if err != nil {
  488. if lg != nil {
  489. lg.Panic("unexpected error during txn", zap.Error(err))
  490. } else {
  491. plog.Panicf("unexpected error during txn: %v", err)
  492. }
  493. }
  494. respi.(*pb.ResponseOp_ResponseDeleteRange).ResponseDeleteRange = resp
  495. case *pb.RequestOp_RequestTxn:
  496. resp := respi.(*pb.ResponseOp_ResponseTxn).ResponseTxn
  497. applyTxns := a.applyTxn(txn, tv.RequestTxn, txnPath[1:], resp)
  498. txns += applyTxns + 1
  499. txnPath = txnPath[applyTxns+1:]
  500. default:
  501. // empty union
  502. }
  503. }
  504. return txns
  505. }
  506. func (a *applierV3backend) Compaction(compaction *pb.CompactionRequest) (*pb.CompactionResponse, <-chan struct{}, error) {
  507. resp := &pb.CompactionResponse{}
  508. resp.Header = &pb.ResponseHeader{}
  509. ch, err := a.s.KV().Compact(compaction.Revision)
  510. if err != nil {
  511. return nil, ch, err
  512. }
  513. // get the current revision. which key to get is not important.
  514. rr, _ := a.s.KV().Range([]byte("compaction"), nil, mvcc.RangeOptions{})
  515. resp.Header.Revision = rr.Rev
  516. return resp, ch, err
  517. }
  518. func (a *applierV3backend) LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error) {
  519. l, err := a.s.lessor.Grant(lease.LeaseID(lc.ID), lc.TTL)
  520. resp := &pb.LeaseGrantResponse{}
  521. if err == nil {
  522. resp.ID = int64(l.ID)
  523. resp.TTL = l.TTL()
  524. resp.Header = newHeader(a.s)
  525. }
  526. return resp, err
  527. }
  528. func (a *applierV3backend) LeaseRevoke(lc *pb.LeaseRevokeRequest) (*pb.LeaseRevokeResponse, error) {
  529. err := a.s.lessor.Revoke(lease.LeaseID(lc.ID))
  530. return &pb.LeaseRevokeResponse{Header: newHeader(a.s)}, err
  531. }
  532. func (a *applierV3backend) Alarm(ar *pb.AlarmRequest) (*pb.AlarmResponse, error) {
  533. resp := &pb.AlarmResponse{}
  534. oldCount := len(a.s.alarmStore.Get(ar.Alarm))
  535. lg := a.s.getLogger()
  536. switch ar.Action {
  537. case pb.AlarmRequest_GET:
  538. resp.Alarms = a.s.alarmStore.Get(ar.Alarm)
  539. case pb.AlarmRequest_ACTIVATE:
  540. m := a.s.alarmStore.Activate(types.ID(ar.MemberID), ar.Alarm)
  541. if m == nil {
  542. break
  543. }
  544. resp.Alarms = append(resp.Alarms, m)
  545. activated := oldCount == 0 && len(a.s.alarmStore.Get(m.Alarm)) == 1
  546. if !activated {
  547. break
  548. }
  549. if lg != nil {
  550. lg.Warn("alarm raised", zap.String("alarm", m.Alarm.String()), zap.String("from", types.ID(m.MemberID).String()))
  551. } else {
  552. plog.Warningf("alarm %v raised by peer %s", m.Alarm, types.ID(m.MemberID))
  553. }
  554. switch m.Alarm {
  555. case pb.AlarmType_CORRUPT:
  556. a.s.applyV3 = newApplierV3Corrupt(a)
  557. case pb.AlarmType_NOSPACE:
  558. a.s.applyV3 = newApplierV3Capped(a)
  559. default:
  560. if lg != nil {
  561. lg.Warn("unimplemented alarm activation", zap.String("alarm", fmt.Sprintf("%+v", m)))
  562. } else {
  563. plog.Errorf("unimplemented alarm activation (%+v)", m)
  564. }
  565. }
  566. case pb.AlarmRequest_DEACTIVATE:
  567. m := a.s.alarmStore.Deactivate(types.ID(ar.MemberID), ar.Alarm)
  568. if m == nil {
  569. break
  570. }
  571. resp.Alarms = append(resp.Alarms, m)
  572. deactivated := oldCount > 0 && len(a.s.alarmStore.Get(ar.Alarm)) == 0
  573. if !deactivated {
  574. break
  575. }
  576. switch m.Alarm {
  577. case pb.AlarmType_NOSPACE, pb.AlarmType_CORRUPT:
  578. // TODO: check kv hash before deactivating CORRUPT?
  579. if lg != nil {
  580. lg.Warn("alarm disarmed", zap.String("alarm", m.Alarm.String()), zap.String("from", types.ID(m.MemberID).String()))
  581. } else {
  582. plog.Infof("alarm disarmed %+v", ar)
  583. }
  584. a.s.applyV3 = a.s.newApplierV3()
  585. default:
  586. if lg != nil {
  587. lg.Warn("unimplemented alarm deactivation", zap.String("alarm", fmt.Sprintf("%+v", m)))
  588. } else {
  589. plog.Errorf("unimplemented alarm deactivation (%+v)", m)
  590. }
  591. }
  592. default:
  593. return nil, nil
  594. }
  595. return resp, nil
  596. }
  597. type applierV3Capped struct {
  598. applierV3
  599. q backendQuota
  600. }
  601. // newApplierV3Capped creates an applyV3 that will reject Puts and transactions
  602. // with Puts so that the number of keys in the store is capped.
  603. func newApplierV3Capped(base applierV3) applierV3 { return &applierV3Capped{applierV3: base} }
  604. func (a *applierV3Capped) Put(txn mvcc.TxnWrite, p *pb.PutRequest) (*pb.PutResponse, error) {
  605. return nil, ErrNoSpace
  606. }
  607. func (a *applierV3Capped) Txn(r *pb.TxnRequest) (*pb.TxnResponse, error) {
  608. if a.q.Cost(r) > 0 {
  609. return nil, ErrNoSpace
  610. }
  611. return a.applierV3.Txn(r)
  612. }
  613. func (a *applierV3Capped) LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error) {
  614. return nil, ErrNoSpace
  615. }
  616. func (a *applierV3backend) AuthEnable() (*pb.AuthEnableResponse, error) {
  617. err := a.s.AuthStore().AuthEnable()
  618. if err != nil {
  619. return nil, err
  620. }
  621. return &pb.AuthEnableResponse{Header: newHeader(a.s)}, nil
  622. }
  623. func (a *applierV3backend) AuthDisable() (*pb.AuthDisableResponse, error) {
  624. a.s.AuthStore().AuthDisable()
  625. return &pb.AuthDisableResponse{Header: newHeader(a.s)}, nil
  626. }
  627. func (a *applierV3backend) Authenticate(r *pb.InternalAuthenticateRequest) (*pb.AuthenticateResponse, error) {
  628. ctx := context.WithValue(context.WithValue(a.s.ctx, auth.AuthenticateParamIndex{}, a.s.consistIndex.ConsistentIndex()), auth.AuthenticateParamSimpleTokenPrefix{}, r.SimpleToken)
  629. resp, err := a.s.AuthStore().Authenticate(ctx, r.Name, r.Password)
  630. if resp != nil {
  631. resp.Header = newHeader(a.s)
  632. }
  633. return resp, err
  634. }
  635. func (a *applierV3backend) UserAdd(r *pb.AuthUserAddRequest) (*pb.AuthUserAddResponse, error) {
  636. resp, err := a.s.AuthStore().UserAdd(r)
  637. if resp != nil {
  638. resp.Header = newHeader(a.s)
  639. }
  640. return resp, err
  641. }
  642. func (a *applierV3backend) UserDelete(r *pb.AuthUserDeleteRequest) (*pb.AuthUserDeleteResponse, error) {
  643. resp, err := a.s.AuthStore().UserDelete(r)
  644. if resp != nil {
  645. resp.Header = newHeader(a.s)
  646. }
  647. return resp, err
  648. }
  649. func (a *applierV3backend) UserChangePassword(r *pb.AuthUserChangePasswordRequest) (*pb.AuthUserChangePasswordResponse, error) {
  650. resp, err := a.s.AuthStore().UserChangePassword(r)
  651. if resp != nil {
  652. resp.Header = newHeader(a.s)
  653. }
  654. return resp, err
  655. }
  656. func (a *applierV3backend) UserGrantRole(r *pb.AuthUserGrantRoleRequest) (*pb.AuthUserGrantRoleResponse, error) {
  657. resp, err := a.s.AuthStore().UserGrantRole(r)
  658. if resp != nil {
  659. resp.Header = newHeader(a.s)
  660. }
  661. return resp, err
  662. }
  663. func (a *applierV3backend) UserGet(r *pb.AuthUserGetRequest) (*pb.AuthUserGetResponse, error) {
  664. resp, err := a.s.AuthStore().UserGet(r)
  665. if resp != nil {
  666. resp.Header = newHeader(a.s)
  667. }
  668. return resp, err
  669. }
  670. func (a *applierV3backend) UserRevokeRole(r *pb.AuthUserRevokeRoleRequest) (*pb.AuthUserRevokeRoleResponse, error) {
  671. resp, err := a.s.AuthStore().UserRevokeRole(r)
  672. if resp != nil {
  673. resp.Header = newHeader(a.s)
  674. }
  675. return resp, err
  676. }
  677. func (a *applierV3backend) RoleAdd(r *pb.AuthRoleAddRequest) (*pb.AuthRoleAddResponse, error) {
  678. resp, err := a.s.AuthStore().RoleAdd(r)
  679. if resp != nil {
  680. resp.Header = newHeader(a.s)
  681. }
  682. return resp, err
  683. }
  684. func (a *applierV3backend) RoleGrantPermission(r *pb.AuthRoleGrantPermissionRequest) (*pb.AuthRoleGrantPermissionResponse, error) {
  685. resp, err := a.s.AuthStore().RoleGrantPermission(r)
  686. if resp != nil {
  687. resp.Header = newHeader(a.s)
  688. }
  689. return resp, err
  690. }
  691. func (a *applierV3backend) RoleGet(r *pb.AuthRoleGetRequest) (*pb.AuthRoleGetResponse, error) {
  692. resp, err := a.s.AuthStore().RoleGet(r)
  693. if resp != nil {
  694. resp.Header = newHeader(a.s)
  695. }
  696. return resp, err
  697. }
  698. func (a *applierV3backend) RoleRevokePermission(r *pb.AuthRoleRevokePermissionRequest) (*pb.AuthRoleRevokePermissionResponse, error) {
  699. resp, err := a.s.AuthStore().RoleRevokePermission(r)
  700. if resp != nil {
  701. resp.Header = newHeader(a.s)
  702. }
  703. return resp, err
  704. }
  705. func (a *applierV3backend) RoleDelete(r *pb.AuthRoleDeleteRequest) (*pb.AuthRoleDeleteResponse, error) {
  706. resp, err := a.s.AuthStore().RoleDelete(r)
  707. if resp != nil {
  708. resp.Header = newHeader(a.s)
  709. }
  710. return resp, err
  711. }
  712. func (a *applierV3backend) UserList(r *pb.AuthUserListRequest) (*pb.AuthUserListResponse, error) {
  713. resp, err := a.s.AuthStore().UserList(r)
  714. if resp != nil {
  715. resp.Header = newHeader(a.s)
  716. }
  717. return resp, err
  718. }
  719. func (a *applierV3backend) RoleList(r *pb.AuthRoleListRequest) (*pb.AuthRoleListResponse, error) {
  720. resp, err := a.s.AuthStore().RoleList(r)
  721. if resp != nil {
  722. resp.Header = newHeader(a.s)
  723. }
  724. return resp, err
  725. }
  726. type quotaApplierV3 struct {
  727. applierV3
  728. q Quota
  729. }
  730. func newQuotaApplierV3(s *EtcdServer, app applierV3) applierV3 {
  731. return &quotaApplierV3{app, NewBackendQuota(s, "v3-applier")}
  732. }
  733. func (a *quotaApplierV3) Put(txn mvcc.TxnWrite, p *pb.PutRequest) (*pb.PutResponse, error) {
  734. ok := a.q.Available(p)
  735. resp, err := a.applierV3.Put(txn, p)
  736. if err == nil && !ok {
  737. err = ErrNoSpace
  738. }
  739. return resp, err
  740. }
  741. func (a *quotaApplierV3) Txn(rt *pb.TxnRequest) (*pb.TxnResponse, error) {
  742. ok := a.q.Available(rt)
  743. resp, err := a.applierV3.Txn(rt)
  744. if err == nil && !ok {
  745. err = ErrNoSpace
  746. }
  747. return resp, err
  748. }
  749. func (a *quotaApplierV3) LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error) {
  750. ok := a.q.Available(lc)
  751. resp, err := a.applierV3.LeaseGrant(lc)
  752. if err == nil && !ok {
  753. err = ErrNoSpace
  754. }
  755. return resp, err
  756. }
  757. type kvSort struct{ kvs []mvccpb.KeyValue }
  758. func (s *kvSort) Swap(i, j int) {
  759. t := s.kvs[i]
  760. s.kvs[i] = s.kvs[j]
  761. s.kvs[j] = t
  762. }
  763. func (s *kvSort) Len() int { return len(s.kvs) }
  764. type kvSortByKey struct{ *kvSort }
  765. func (s *kvSortByKey) Less(i, j int) bool {
  766. return bytes.Compare(s.kvs[i].Key, s.kvs[j].Key) < 0
  767. }
  768. type kvSortByVersion struct{ *kvSort }
  769. func (s *kvSortByVersion) Less(i, j int) bool {
  770. return (s.kvs[i].Version - s.kvs[j].Version) < 0
  771. }
  772. type kvSortByCreate struct{ *kvSort }
  773. func (s *kvSortByCreate) Less(i, j int) bool {
  774. return (s.kvs[i].CreateRevision - s.kvs[j].CreateRevision) < 0
  775. }
  776. type kvSortByMod struct{ *kvSort }
  777. func (s *kvSortByMod) Less(i, j int) bool {
  778. return (s.kvs[i].ModRevision - s.kvs[j].ModRevision) < 0
  779. }
  780. type kvSortByValue struct{ *kvSort }
  781. func (s *kvSortByValue) Less(i, j int) bool {
  782. return bytes.Compare(s.kvs[i].Value, s.kvs[j].Value) < 0
  783. }
  784. func checkRequests(rv mvcc.ReadView, rt *pb.TxnRequest, txnPath []bool, f checkReqFunc) (int, error) {
  785. txnCount := 0
  786. reqs := rt.Success
  787. if !txnPath[0] {
  788. reqs = rt.Failure
  789. }
  790. for _, req := range reqs {
  791. if tv, ok := req.Request.(*pb.RequestOp_RequestTxn); ok && tv.RequestTxn != nil {
  792. txns, err := checkRequests(rv, tv.RequestTxn, txnPath[1:], f)
  793. if err != nil {
  794. return 0, err
  795. }
  796. txnCount += txns + 1
  797. txnPath = txnPath[txns+1:]
  798. continue
  799. }
  800. if err := f(rv, req); err != nil {
  801. return 0, err
  802. }
  803. }
  804. return txnCount, nil
  805. }
  806. func (a *applierV3backend) checkRequestPut(rv mvcc.ReadView, reqOp *pb.RequestOp) error {
  807. tv, ok := reqOp.Request.(*pb.RequestOp_RequestPut)
  808. if !ok || tv.RequestPut == nil {
  809. return nil
  810. }
  811. req := tv.RequestPut
  812. if req.IgnoreValue || req.IgnoreLease {
  813. // expects previous key-value, error if not exist
  814. rr, err := rv.Range(req.Key, nil, mvcc.RangeOptions{})
  815. if err != nil {
  816. return err
  817. }
  818. if rr == nil || len(rr.KVs) == 0 {
  819. return ErrKeyNotFound
  820. }
  821. }
  822. if lease.LeaseID(req.Lease) != lease.NoLease {
  823. if l := a.s.lessor.Lookup(lease.LeaseID(req.Lease)); l == nil {
  824. return lease.ErrLeaseNotFound
  825. }
  826. }
  827. return nil
  828. }
  829. func (a *applierV3backend) checkRequestRange(rv mvcc.ReadView, reqOp *pb.RequestOp) error {
  830. tv, ok := reqOp.Request.(*pb.RequestOp_RequestRange)
  831. if !ok || tv.RequestRange == nil {
  832. return nil
  833. }
  834. req := tv.RequestRange
  835. switch {
  836. case req.Revision == 0:
  837. return nil
  838. case req.Revision > rv.Rev():
  839. return mvcc.ErrFutureRev
  840. case req.Revision < rv.FirstRev():
  841. return mvcc.ErrCompacted
  842. }
  843. return nil
  844. }
  845. func compareInt64(a, b int64) int {
  846. switch {
  847. case a < b:
  848. return -1
  849. case a > b:
  850. return 1
  851. default:
  852. return 0
  853. }
  854. }
  855. // mkGteRange determines if the range end is a >= range. This works around grpc
  856. // sending empty byte strings as nil; >= is encoded in the range end as '\0'.
  857. // If it is a GTE range, then []byte{} is returned to indicate the empty byte
  858. // string (vs nil being no byte string).
  859. func mkGteRange(rangeEnd []byte) []byte {
  860. if len(rangeEnd) == 1 && rangeEnd[0] == 0 {
  861. return []byte{}
  862. }
  863. return rangeEnd
  864. }
  865. func noSideEffect(r *pb.InternalRaftRequest) bool {
  866. return r.Range != nil || r.AuthUserGet != nil || r.AuthRoleGet != nil
  867. }
  868. func removeNeedlessRangeReqs(txn *pb.TxnRequest) {
  869. f := func(ops []*pb.RequestOp) []*pb.RequestOp {
  870. j := 0
  871. for i := 0; i < len(ops); i++ {
  872. if _, ok := ops[i].Request.(*pb.RequestOp_RequestRange); ok {
  873. continue
  874. }
  875. ops[j] = ops[i]
  876. j++
  877. }
  878. return ops[:j]
  879. }
  880. txn.Success = f(txn.Success)
  881. txn.Failure = f(txn.Failure)
  882. }
  883. func pruneKVs(rr *mvcc.RangeResult, isPrunable func(*mvccpb.KeyValue) bool) {
  884. j := 0
  885. for i := range rr.KVs {
  886. rr.KVs[j] = rr.KVs[i]
  887. if !isPrunable(&rr.KVs[i]) {
  888. j++
  889. }
  890. }
  891. rr.KVs = rr.KVs[:j]
  892. }
  893. func newHeader(s *EtcdServer) *pb.ResponseHeader {
  894. return &pb.ResponseHeader{
  895. ClusterId: uint64(s.Cluster().ID()),
  896. MemberId: uint64(s.ID()),
  897. Revision: s.KV().Rev(),
  898. RaftTerm: s.Term(),
  899. }
  900. }