apply.go 27 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971
  1. // Copyright 2016 The etcd Authors
  2. //
  3. // Licensed under the Apache License, Version 2.0 (the "License");
  4. // you may not use this file except in compliance with the License.
  5. // You may obtain a copy of the License at
  6. //
  7. // http://www.apache.org/licenses/LICENSE-2.0
  8. //
  9. // Unless required by applicable law or agreed to in writing, software
  10. // distributed under the License is distributed on an "AS IS" BASIS,
  11. // WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  12. // See the License for the specific language governing permissions and
  13. // limitations under the License.
  14. package etcdserver
  15. import (
  16. "bytes"
  17. "context"
  18. "sort"
  19. "time"
  20. "github.com/coreos/etcd/auth"
  21. pb "github.com/coreos/etcd/etcdserver/etcdserverpb"
  22. "github.com/coreos/etcd/internal/mvcc"
  23. "github.com/coreos/etcd/internal/mvcc/mvccpb"
  24. "github.com/coreos/etcd/lease"
  25. "github.com/coreos/etcd/pkg/types"
  26. "github.com/gogo/protobuf/proto"
  27. )
  28. const (
  29. warnApplyDuration = 100 * time.Millisecond
  30. )
  31. type applyResult struct {
  32. resp proto.Message
  33. err error
  34. // physc signals the physical effect of the request has completed in addition
  35. // to being logically reflected by the node. Currently only used for
  36. // Compaction requests.
  37. physc <-chan struct{}
  38. }
  39. // applierV3 is the interface for processing V3 raft messages
  40. type applierV3 interface {
  41. Apply(r *pb.InternalRaftRequest) *applyResult
  42. Put(txn mvcc.TxnWrite, p *pb.PutRequest) (*pb.PutResponse, error)
  43. Range(txn mvcc.TxnRead, r *pb.RangeRequest) (*pb.RangeResponse, error)
  44. DeleteRange(txn mvcc.TxnWrite, dr *pb.DeleteRangeRequest) (*pb.DeleteRangeResponse, error)
  45. Txn(rt *pb.TxnRequest) (*pb.TxnResponse, error)
  46. Compaction(compaction *pb.CompactionRequest) (*pb.CompactionResponse, <-chan struct{}, error)
  47. LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error)
  48. LeaseRevoke(lc *pb.LeaseRevokeRequest) (*pb.LeaseRevokeResponse, error)
  49. Alarm(*pb.AlarmRequest) (*pb.AlarmResponse, error)
  50. Authenticate(r *pb.InternalAuthenticateRequest) (*pb.AuthenticateResponse, error)
  51. AuthEnable() (*pb.AuthEnableResponse, error)
  52. AuthDisable() (*pb.AuthDisableResponse, error)
  53. UserAdd(ua *pb.AuthUserAddRequest) (*pb.AuthUserAddResponse, error)
  54. UserDelete(ua *pb.AuthUserDeleteRequest) (*pb.AuthUserDeleteResponse, error)
  55. UserChangePassword(ua *pb.AuthUserChangePasswordRequest) (*pb.AuthUserChangePasswordResponse, error)
  56. UserGrantRole(ua *pb.AuthUserGrantRoleRequest) (*pb.AuthUserGrantRoleResponse, error)
  57. UserGet(ua *pb.AuthUserGetRequest) (*pb.AuthUserGetResponse, error)
  58. UserRevokeRole(ua *pb.AuthUserRevokeRoleRequest) (*pb.AuthUserRevokeRoleResponse, error)
  59. RoleAdd(ua *pb.AuthRoleAddRequest) (*pb.AuthRoleAddResponse, error)
  60. RoleGrantPermission(ua *pb.AuthRoleGrantPermissionRequest) (*pb.AuthRoleGrantPermissionResponse, error)
  61. RoleGet(ua *pb.AuthRoleGetRequest) (*pb.AuthRoleGetResponse, error)
  62. RoleRevokePermission(ua *pb.AuthRoleRevokePermissionRequest) (*pb.AuthRoleRevokePermissionResponse, error)
  63. RoleDelete(ua *pb.AuthRoleDeleteRequest) (*pb.AuthRoleDeleteResponse, error)
  64. UserList(ua *pb.AuthUserListRequest) (*pb.AuthUserListResponse, error)
  65. RoleList(ua *pb.AuthRoleListRequest) (*pb.AuthRoleListResponse, error)
  66. }
  67. type checkReqFunc func(mvcc.ReadView, *pb.RequestOp) error
  68. type applierV3backend struct {
  69. s *EtcdServer
  70. checkPut checkReqFunc
  71. checkRange checkReqFunc
  72. }
  73. func (s *EtcdServer) newApplierV3Backend() applierV3 {
  74. base := &applierV3backend{s: s}
  75. base.checkPut = func(rv mvcc.ReadView, req *pb.RequestOp) error {
  76. return base.checkRequestPut(rv, req)
  77. }
  78. base.checkRange = func(rv mvcc.ReadView, req *pb.RequestOp) error {
  79. return base.checkRequestRange(rv, req)
  80. }
  81. return base
  82. }
  83. func (s *EtcdServer) newApplierV3() applierV3 {
  84. return newAuthApplierV3(
  85. s.AuthStore(),
  86. newQuotaApplierV3(s, s.newApplierV3Backend()),
  87. s.lessor,
  88. )
  89. }
  90. func (a *applierV3backend) Apply(r *pb.InternalRaftRequest) *applyResult {
  91. defer warnOfExpensiveRequest(time.Now(), r)
  92. ar := &applyResult{}
  93. // call into a.s.applyV3.F instead of a.F so upper appliers can check individual calls
  94. switch {
  95. case r.Range != nil:
  96. ar.resp, ar.err = a.s.applyV3.Range(nil, r.Range)
  97. case r.Put != nil:
  98. ar.resp, ar.err = a.s.applyV3.Put(nil, r.Put)
  99. case r.DeleteRange != nil:
  100. ar.resp, ar.err = a.s.applyV3.DeleteRange(nil, r.DeleteRange)
  101. case r.Txn != nil:
  102. ar.resp, ar.err = a.s.applyV3.Txn(r.Txn)
  103. case r.Compaction != nil:
  104. ar.resp, ar.physc, ar.err = a.s.applyV3.Compaction(r.Compaction)
  105. case r.LeaseGrant != nil:
  106. ar.resp, ar.err = a.s.applyV3.LeaseGrant(r.LeaseGrant)
  107. case r.LeaseRevoke != nil:
  108. ar.resp, ar.err = a.s.applyV3.LeaseRevoke(r.LeaseRevoke)
  109. case r.Alarm != nil:
  110. ar.resp, ar.err = a.s.applyV3.Alarm(r.Alarm)
  111. case r.Authenticate != nil:
  112. ar.resp, ar.err = a.s.applyV3.Authenticate(r.Authenticate)
  113. case r.AuthEnable != nil:
  114. ar.resp, ar.err = a.s.applyV3.AuthEnable()
  115. case r.AuthDisable != nil:
  116. ar.resp, ar.err = a.s.applyV3.AuthDisable()
  117. case r.AuthUserAdd != nil:
  118. ar.resp, ar.err = a.s.applyV3.UserAdd(r.AuthUserAdd)
  119. case r.AuthUserDelete != nil:
  120. ar.resp, ar.err = a.s.applyV3.UserDelete(r.AuthUserDelete)
  121. case r.AuthUserChangePassword != nil:
  122. ar.resp, ar.err = a.s.applyV3.UserChangePassword(r.AuthUserChangePassword)
  123. case r.AuthUserGrantRole != nil:
  124. ar.resp, ar.err = a.s.applyV3.UserGrantRole(r.AuthUserGrantRole)
  125. case r.AuthUserGet != nil:
  126. ar.resp, ar.err = a.s.applyV3.UserGet(r.AuthUserGet)
  127. case r.AuthUserRevokeRole != nil:
  128. ar.resp, ar.err = a.s.applyV3.UserRevokeRole(r.AuthUserRevokeRole)
  129. case r.AuthRoleAdd != nil:
  130. ar.resp, ar.err = a.s.applyV3.RoleAdd(r.AuthRoleAdd)
  131. case r.AuthRoleGrantPermission != nil:
  132. ar.resp, ar.err = a.s.applyV3.RoleGrantPermission(r.AuthRoleGrantPermission)
  133. case r.AuthRoleGet != nil:
  134. ar.resp, ar.err = a.s.applyV3.RoleGet(r.AuthRoleGet)
  135. case r.AuthRoleRevokePermission != nil:
  136. ar.resp, ar.err = a.s.applyV3.RoleRevokePermission(r.AuthRoleRevokePermission)
  137. case r.AuthRoleDelete != nil:
  138. ar.resp, ar.err = a.s.applyV3.RoleDelete(r.AuthRoleDelete)
  139. case r.AuthUserList != nil:
  140. ar.resp, ar.err = a.s.applyV3.UserList(r.AuthUserList)
  141. case r.AuthRoleList != nil:
  142. ar.resp, ar.err = a.s.applyV3.RoleList(r.AuthRoleList)
  143. default:
  144. panic("not implemented")
  145. }
  146. return ar
  147. }
  148. func (a *applierV3backend) Put(txn mvcc.TxnWrite, p *pb.PutRequest) (resp *pb.PutResponse, err error) {
  149. resp = &pb.PutResponse{}
  150. resp.Header = &pb.ResponseHeader{}
  151. val, leaseID := p.Value, lease.LeaseID(p.Lease)
  152. if txn == nil {
  153. if leaseID != lease.NoLease {
  154. if l := a.s.lessor.Lookup(leaseID); l == nil {
  155. return nil, lease.ErrLeaseNotFound
  156. }
  157. }
  158. txn = a.s.KV().Write()
  159. defer txn.End()
  160. }
  161. var rr *mvcc.RangeResult
  162. if p.IgnoreValue || p.IgnoreLease || p.PrevKv {
  163. rr, err = txn.Range(p.Key, nil, mvcc.RangeOptions{})
  164. if err != nil {
  165. return nil, err
  166. }
  167. }
  168. if p.IgnoreValue || p.IgnoreLease {
  169. if rr == nil || len(rr.KVs) == 0 {
  170. // ignore_{lease,value} flag expects previous key-value pair
  171. return nil, ErrKeyNotFound
  172. }
  173. }
  174. if p.IgnoreValue {
  175. val = rr.KVs[0].Value
  176. }
  177. if p.IgnoreLease {
  178. leaseID = lease.LeaseID(rr.KVs[0].Lease)
  179. }
  180. if p.PrevKv {
  181. if rr != nil && len(rr.KVs) != 0 {
  182. resp.PrevKv = &rr.KVs[0]
  183. }
  184. }
  185. resp.Header.Revision = txn.Put(p.Key, val, leaseID)
  186. return resp, nil
  187. }
  188. func (a *applierV3backend) DeleteRange(txn mvcc.TxnWrite, dr *pb.DeleteRangeRequest) (*pb.DeleteRangeResponse, error) {
  189. resp := &pb.DeleteRangeResponse{}
  190. resp.Header = &pb.ResponseHeader{}
  191. end := mkGteRange(dr.RangeEnd)
  192. if txn == nil {
  193. txn = a.s.kv.Write()
  194. defer txn.End()
  195. }
  196. if dr.PrevKv {
  197. rr, err := txn.Range(dr.Key, end, mvcc.RangeOptions{})
  198. if err != nil {
  199. return nil, err
  200. }
  201. if rr != nil {
  202. resp.PrevKvs = make([]*mvccpb.KeyValue, len(rr.KVs))
  203. for i := range rr.KVs {
  204. resp.PrevKvs[i] = &rr.KVs[i]
  205. }
  206. }
  207. }
  208. resp.Deleted, resp.Header.Revision = txn.DeleteRange(dr.Key, end)
  209. return resp, nil
  210. }
  211. func (a *applierV3backend) Range(txn mvcc.TxnRead, r *pb.RangeRequest) (*pb.RangeResponse, error) {
  212. resp := &pb.RangeResponse{}
  213. resp.Header = &pb.ResponseHeader{}
  214. if txn == nil {
  215. txn = a.s.kv.Read()
  216. defer txn.End()
  217. }
  218. limit := r.Limit
  219. if r.SortOrder != pb.RangeRequest_NONE ||
  220. r.MinModRevision != 0 || r.MaxModRevision != 0 ||
  221. r.MinCreateRevision != 0 || r.MaxCreateRevision != 0 {
  222. // fetch everything; sort and truncate afterwards
  223. limit = 0
  224. }
  225. if limit > 0 {
  226. // fetch one extra for 'more' flag
  227. limit = limit + 1
  228. }
  229. ro := mvcc.RangeOptions{
  230. Limit: limit,
  231. Rev: r.Revision,
  232. Count: r.CountOnly,
  233. }
  234. rr, err := txn.Range(r.Key, mkGteRange(r.RangeEnd), ro)
  235. if err != nil {
  236. return nil, err
  237. }
  238. if r.MaxModRevision != 0 {
  239. f := func(kv *mvccpb.KeyValue) bool { return kv.ModRevision > r.MaxModRevision }
  240. pruneKVs(rr, f)
  241. }
  242. if r.MinModRevision != 0 {
  243. f := func(kv *mvccpb.KeyValue) bool { return kv.ModRevision < r.MinModRevision }
  244. pruneKVs(rr, f)
  245. }
  246. if r.MaxCreateRevision != 0 {
  247. f := func(kv *mvccpb.KeyValue) bool { return kv.CreateRevision > r.MaxCreateRevision }
  248. pruneKVs(rr, f)
  249. }
  250. if r.MinCreateRevision != 0 {
  251. f := func(kv *mvccpb.KeyValue) bool { return kv.CreateRevision < r.MinCreateRevision }
  252. pruneKVs(rr, f)
  253. }
  254. sortOrder := r.SortOrder
  255. if r.SortTarget != pb.RangeRequest_KEY && sortOrder == pb.RangeRequest_NONE {
  256. // Since current mvcc.Range implementation returns results
  257. // sorted by keys in lexiographically ascending order,
  258. // sort ASCEND by default only when target is not 'KEY'
  259. sortOrder = pb.RangeRequest_ASCEND
  260. }
  261. if sortOrder != pb.RangeRequest_NONE {
  262. var sorter sort.Interface
  263. switch {
  264. case r.SortTarget == pb.RangeRequest_KEY:
  265. sorter = &kvSortByKey{&kvSort{rr.KVs}}
  266. case r.SortTarget == pb.RangeRequest_VERSION:
  267. sorter = &kvSortByVersion{&kvSort{rr.KVs}}
  268. case r.SortTarget == pb.RangeRequest_CREATE:
  269. sorter = &kvSortByCreate{&kvSort{rr.KVs}}
  270. case r.SortTarget == pb.RangeRequest_MOD:
  271. sorter = &kvSortByMod{&kvSort{rr.KVs}}
  272. case r.SortTarget == pb.RangeRequest_VALUE:
  273. sorter = &kvSortByValue{&kvSort{rr.KVs}}
  274. }
  275. switch {
  276. case sortOrder == pb.RangeRequest_ASCEND:
  277. sort.Sort(sorter)
  278. case sortOrder == pb.RangeRequest_DESCEND:
  279. sort.Sort(sort.Reverse(sorter))
  280. }
  281. }
  282. if r.Limit > 0 && len(rr.KVs) > int(r.Limit) {
  283. rr.KVs = rr.KVs[:r.Limit]
  284. resp.More = true
  285. }
  286. resp.Header.Revision = rr.Rev
  287. resp.Count = int64(rr.Count)
  288. resp.Kvs = make([]*mvccpb.KeyValue, len(rr.KVs))
  289. for i := range rr.KVs {
  290. if r.KeysOnly {
  291. rr.KVs[i].Value = nil
  292. }
  293. resp.Kvs[i] = &rr.KVs[i]
  294. }
  295. return resp, nil
  296. }
  297. func (a *applierV3backend) Txn(rt *pb.TxnRequest) (*pb.TxnResponse, error) {
  298. isWrite := !isTxnReadonly(rt)
  299. txn := mvcc.NewReadOnlyTxnWrite(a.s.KV().Read())
  300. txnPath := compareToPath(txn, rt)
  301. if isWrite {
  302. if _, err := checkRequests(txn, rt, txnPath, a.checkPut); err != nil {
  303. txn.End()
  304. return nil, err
  305. }
  306. }
  307. if _, err := checkRequests(txn, rt, txnPath, a.checkRange); err != nil {
  308. txn.End()
  309. return nil, err
  310. }
  311. txnResp, _ := newTxnResp(rt, txnPath)
  312. // When executing mutable txn ops, etcd must hold the txn lock so
  313. // readers do not see any intermediate results. Since writes are
  314. // serialized on the raft loop, the revision in the read view will
  315. // be the revision of the write txn.
  316. if isWrite {
  317. txn.End()
  318. txn = a.s.KV().Write()
  319. }
  320. a.applyTxn(txn, rt, txnPath, txnResp)
  321. rev := txn.Rev()
  322. if len(txn.Changes()) != 0 {
  323. rev++
  324. }
  325. txn.End()
  326. txnResp.Header.Revision = rev
  327. return txnResp, nil
  328. }
  329. // newTxnResp allocates a txn response for a txn request given a path.
  330. func newTxnResp(rt *pb.TxnRequest, txnPath []bool) (txnResp *pb.TxnResponse, txnCount int) {
  331. reqs := rt.Success
  332. if !txnPath[0] {
  333. reqs = rt.Failure
  334. }
  335. resps := make([]*pb.ResponseOp, len(reqs))
  336. txnResp = &pb.TxnResponse{
  337. Responses: resps,
  338. Succeeded: txnPath[0],
  339. Header: &pb.ResponseHeader{},
  340. }
  341. for i, req := range reqs {
  342. switch tv := req.Request.(type) {
  343. case *pb.RequestOp_RequestRange:
  344. resps[i] = &pb.ResponseOp{Response: &pb.ResponseOp_ResponseRange{}}
  345. case *pb.RequestOp_RequestPut:
  346. resps[i] = &pb.ResponseOp{Response: &pb.ResponseOp_ResponsePut{}}
  347. case *pb.RequestOp_RequestDeleteRange:
  348. resps[i] = &pb.ResponseOp{Response: &pb.ResponseOp_ResponseDeleteRange{}}
  349. case *pb.RequestOp_RequestTxn:
  350. resp, txns := newTxnResp(tv.RequestTxn, txnPath[1:])
  351. resps[i] = &pb.ResponseOp{Response: &pb.ResponseOp_ResponseTxn{ResponseTxn: resp}}
  352. txnPath = txnPath[1+txns:]
  353. txnCount += txns + 1
  354. default:
  355. }
  356. }
  357. return txnResp, txnCount
  358. }
  359. func compareToPath(rv mvcc.ReadView, rt *pb.TxnRequest) []bool {
  360. txnPath := make([]bool, 1)
  361. ops := rt.Success
  362. if txnPath[0] = applyCompares(rv, rt.Compare); !txnPath[0] {
  363. ops = rt.Failure
  364. }
  365. for _, op := range ops {
  366. tv, ok := op.Request.(*pb.RequestOp_RequestTxn)
  367. if !ok || tv.RequestTxn == nil {
  368. continue
  369. }
  370. txnPath = append(txnPath, compareToPath(rv, tv.RequestTxn)...)
  371. }
  372. return txnPath
  373. }
  374. func applyCompares(rv mvcc.ReadView, cmps []*pb.Compare) bool {
  375. for _, c := range cmps {
  376. if !applyCompare(rv, c) {
  377. return false
  378. }
  379. }
  380. return true
  381. }
  382. // applyCompare applies the compare request.
  383. // If the comparison succeeds, it returns true. Otherwise, returns false.
  384. func applyCompare(rv mvcc.ReadView, c *pb.Compare) bool {
  385. // TODO: possible optimizations
  386. // * chunk reads for large ranges to conserve memory
  387. // * rewrite rules for common patterns:
  388. // ex. "[a, b) createrev > 0" => "limit 1 /\ kvs > 0"
  389. // * caching
  390. rr, err := rv.Range(c.Key, mkGteRange(c.RangeEnd), mvcc.RangeOptions{})
  391. if err != nil {
  392. return false
  393. }
  394. if len(rr.KVs) == 0 {
  395. if c.Target == pb.Compare_VALUE {
  396. // Always fail if comparing a value on a key/keys that doesn't exist;
  397. // nil == empty string in grpc; no way to represent missing value
  398. return false
  399. }
  400. return compareKV(c, mvccpb.KeyValue{})
  401. }
  402. for _, kv := range rr.KVs {
  403. if !compareKV(c, kv) {
  404. return false
  405. }
  406. }
  407. return true
  408. }
  409. func compareKV(c *pb.Compare, ckv mvccpb.KeyValue) bool {
  410. var result int
  411. rev := int64(0)
  412. switch c.Target {
  413. case pb.Compare_VALUE:
  414. v := []byte{}
  415. if tv, _ := c.TargetUnion.(*pb.Compare_Value); tv != nil {
  416. v = tv.Value
  417. }
  418. result = bytes.Compare(ckv.Value, v)
  419. case pb.Compare_CREATE:
  420. if tv, _ := c.TargetUnion.(*pb.Compare_CreateRevision); tv != nil {
  421. rev = tv.CreateRevision
  422. }
  423. result = compareInt64(ckv.CreateRevision, rev)
  424. case pb.Compare_MOD:
  425. if tv, _ := c.TargetUnion.(*pb.Compare_ModRevision); tv != nil {
  426. rev = tv.ModRevision
  427. }
  428. result = compareInt64(ckv.ModRevision, rev)
  429. case pb.Compare_VERSION:
  430. if tv, _ := c.TargetUnion.(*pb.Compare_Version); tv != nil {
  431. rev = tv.Version
  432. }
  433. result = compareInt64(ckv.Version, rev)
  434. case pb.Compare_LEASE:
  435. if tv, _ := c.TargetUnion.(*pb.Compare_Lease); tv != nil {
  436. rev = tv.Lease
  437. }
  438. result = compareInt64(ckv.Lease, rev)
  439. }
  440. switch c.Result {
  441. case pb.Compare_EQUAL:
  442. return result == 0
  443. case pb.Compare_NOT_EQUAL:
  444. return result != 0
  445. case pb.Compare_GREATER:
  446. return result > 0
  447. case pb.Compare_LESS:
  448. return result < 0
  449. }
  450. return true
  451. }
  452. func (a *applierV3backend) applyTxn(txn mvcc.TxnWrite, rt *pb.TxnRequest, txnPath []bool, tresp *pb.TxnResponse) (txns int) {
  453. reqs := rt.Success
  454. if !txnPath[0] {
  455. reqs = rt.Failure
  456. }
  457. for i, req := range reqs {
  458. respi := tresp.Responses[i].Response
  459. switch tv := req.Request.(type) {
  460. case *pb.RequestOp_RequestRange:
  461. resp, err := a.Range(txn, tv.RequestRange)
  462. if err != nil {
  463. plog.Panicf("unexpected error during txn: %v", err)
  464. }
  465. respi.(*pb.ResponseOp_ResponseRange).ResponseRange = resp
  466. case *pb.RequestOp_RequestPut:
  467. resp, err := a.Put(txn, tv.RequestPut)
  468. if err != nil {
  469. plog.Panicf("unexpected error during txn: %v", err)
  470. }
  471. respi.(*pb.ResponseOp_ResponsePut).ResponsePut = resp
  472. case *pb.RequestOp_RequestDeleteRange:
  473. resp, err := a.DeleteRange(txn, tv.RequestDeleteRange)
  474. if err != nil {
  475. plog.Panicf("unexpected error during txn: %v", err)
  476. }
  477. respi.(*pb.ResponseOp_ResponseDeleteRange).ResponseDeleteRange = resp
  478. case *pb.RequestOp_RequestTxn:
  479. resp := respi.(*pb.ResponseOp_ResponseTxn).ResponseTxn
  480. applyTxns := a.applyTxn(txn, tv.RequestTxn, txnPath[1:], resp)
  481. txns += applyTxns + 1
  482. txnPath = txnPath[applyTxns+1:]
  483. default:
  484. // empty union
  485. }
  486. }
  487. return txns
  488. }
  489. func (a *applierV3backend) Compaction(compaction *pb.CompactionRequest) (*pb.CompactionResponse, <-chan struct{}, error) {
  490. resp := &pb.CompactionResponse{}
  491. resp.Header = &pb.ResponseHeader{}
  492. ch, err := a.s.KV().Compact(compaction.Revision)
  493. if err != nil {
  494. return nil, ch, err
  495. }
  496. // get the current revision. which key to get is not important.
  497. rr, _ := a.s.KV().Range([]byte("compaction"), nil, mvcc.RangeOptions{})
  498. resp.Header.Revision = rr.Rev
  499. return resp, ch, err
  500. }
  501. func (a *applierV3backend) LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error) {
  502. l, err := a.s.lessor.Grant(lease.LeaseID(lc.ID), lc.TTL)
  503. resp := &pb.LeaseGrantResponse{}
  504. if err == nil {
  505. resp.ID = int64(l.ID)
  506. resp.TTL = l.TTL()
  507. resp.Header = newHeader(a.s)
  508. }
  509. return resp, err
  510. }
  511. func (a *applierV3backend) LeaseRevoke(lc *pb.LeaseRevokeRequest) (*pb.LeaseRevokeResponse, error) {
  512. err := a.s.lessor.Revoke(lease.LeaseID(lc.ID))
  513. return &pb.LeaseRevokeResponse{Header: newHeader(a.s)}, err
  514. }
  515. func (a *applierV3backend) Alarm(ar *pb.AlarmRequest) (*pb.AlarmResponse, error) {
  516. resp := &pb.AlarmResponse{}
  517. oldCount := len(a.s.alarmStore.Get(ar.Alarm))
  518. switch ar.Action {
  519. case pb.AlarmRequest_GET:
  520. resp.Alarms = a.s.alarmStore.Get(ar.Alarm)
  521. case pb.AlarmRequest_ACTIVATE:
  522. m := a.s.alarmStore.Activate(types.ID(ar.MemberID), ar.Alarm)
  523. if m == nil {
  524. break
  525. }
  526. resp.Alarms = append(resp.Alarms, m)
  527. activated := oldCount == 0 && len(a.s.alarmStore.Get(m.Alarm)) == 1
  528. if !activated {
  529. break
  530. }
  531. plog.Warningf("alarm %v raised by peer %s", m.Alarm, types.ID(m.MemberID))
  532. switch m.Alarm {
  533. case pb.AlarmType_CORRUPT:
  534. a.s.applyV3 = newApplierV3Corrupt(a)
  535. case pb.AlarmType_NOSPACE:
  536. a.s.applyV3 = newApplierV3Capped(a)
  537. default:
  538. plog.Errorf("unimplemented alarm activation (%+v)", m)
  539. }
  540. case pb.AlarmRequest_DEACTIVATE:
  541. m := a.s.alarmStore.Deactivate(types.ID(ar.MemberID), ar.Alarm)
  542. if m == nil {
  543. break
  544. }
  545. resp.Alarms = append(resp.Alarms, m)
  546. deactivated := oldCount > 0 && len(a.s.alarmStore.Get(ar.Alarm)) == 0
  547. if !deactivated {
  548. break
  549. }
  550. switch m.Alarm {
  551. case pb.AlarmType_NOSPACE, pb.AlarmType_CORRUPT:
  552. // TODO: check kv hash before deactivating CORRUPT?
  553. plog.Infof("alarm disarmed %+v", ar)
  554. a.s.applyV3 = a.s.newApplierV3()
  555. default:
  556. plog.Errorf("unimplemented alarm deactivation (%+v)", m)
  557. }
  558. default:
  559. return nil, nil
  560. }
  561. return resp, nil
  562. }
  563. type applierV3Capped struct {
  564. applierV3
  565. q backendQuota
  566. }
  567. // newApplierV3Capped creates an applyV3 that will reject Puts and transactions
  568. // with Puts so that the number of keys in the store is capped.
  569. func newApplierV3Capped(base applierV3) applierV3 { return &applierV3Capped{applierV3: base} }
  570. func (a *applierV3Capped) Put(txn mvcc.TxnWrite, p *pb.PutRequest) (*pb.PutResponse, error) {
  571. return nil, ErrNoSpace
  572. }
  573. func (a *applierV3Capped) Txn(r *pb.TxnRequest) (*pb.TxnResponse, error) {
  574. if a.q.Cost(r) > 0 {
  575. return nil, ErrNoSpace
  576. }
  577. return a.applierV3.Txn(r)
  578. }
  579. func (a *applierV3Capped) LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error) {
  580. return nil, ErrNoSpace
  581. }
  582. func (a *applierV3backend) AuthEnable() (*pb.AuthEnableResponse, error) {
  583. err := a.s.AuthStore().AuthEnable()
  584. if err != nil {
  585. return nil, err
  586. }
  587. return &pb.AuthEnableResponse{Header: newHeader(a.s)}, nil
  588. }
  589. func (a *applierV3backend) AuthDisable() (*pb.AuthDisableResponse, error) {
  590. a.s.AuthStore().AuthDisable()
  591. return &pb.AuthDisableResponse{Header: newHeader(a.s)}, nil
  592. }
  593. func (a *applierV3backend) Authenticate(r *pb.InternalAuthenticateRequest) (*pb.AuthenticateResponse, error) {
  594. ctx := context.WithValue(context.WithValue(a.s.ctx, auth.AuthenticateParamIndex{}, a.s.consistIndex.ConsistentIndex()), auth.AuthenticateParamSimpleTokenPrefix{}, r.SimpleToken)
  595. resp, err := a.s.AuthStore().Authenticate(ctx, r.Name, r.Password)
  596. if resp != nil {
  597. resp.Header = newHeader(a.s)
  598. }
  599. return resp, err
  600. }
  601. func (a *applierV3backend) UserAdd(r *pb.AuthUserAddRequest) (*pb.AuthUserAddResponse, error) {
  602. resp, err := a.s.AuthStore().UserAdd(r)
  603. if resp != nil {
  604. resp.Header = newHeader(a.s)
  605. }
  606. return resp, err
  607. }
  608. func (a *applierV3backend) UserDelete(r *pb.AuthUserDeleteRequest) (*pb.AuthUserDeleteResponse, error) {
  609. resp, err := a.s.AuthStore().UserDelete(r)
  610. if resp != nil {
  611. resp.Header = newHeader(a.s)
  612. }
  613. return resp, err
  614. }
  615. func (a *applierV3backend) UserChangePassword(r *pb.AuthUserChangePasswordRequest) (*pb.AuthUserChangePasswordResponse, error) {
  616. resp, err := a.s.AuthStore().UserChangePassword(r)
  617. if resp != nil {
  618. resp.Header = newHeader(a.s)
  619. }
  620. return resp, err
  621. }
  622. func (a *applierV3backend) UserGrantRole(r *pb.AuthUserGrantRoleRequest) (*pb.AuthUserGrantRoleResponse, error) {
  623. resp, err := a.s.AuthStore().UserGrantRole(r)
  624. if resp != nil {
  625. resp.Header = newHeader(a.s)
  626. }
  627. return resp, err
  628. }
  629. func (a *applierV3backend) UserGet(r *pb.AuthUserGetRequest) (*pb.AuthUserGetResponse, error) {
  630. resp, err := a.s.AuthStore().UserGet(r)
  631. if resp != nil {
  632. resp.Header = newHeader(a.s)
  633. }
  634. return resp, err
  635. }
  636. func (a *applierV3backend) UserRevokeRole(r *pb.AuthUserRevokeRoleRequest) (*pb.AuthUserRevokeRoleResponse, error) {
  637. resp, err := a.s.AuthStore().UserRevokeRole(r)
  638. if resp != nil {
  639. resp.Header = newHeader(a.s)
  640. }
  641. return resp, err
  642. }
  643. func (a *applierV3backend) RoleAdd(r *pb.AuthRoleAddRequest) (*pb.AuthRoleAddResponse, error) {
  644. resp, err := a.s.AuthStore().RoleAdd(r)
  645. if resp != nil {
  646. resp.Header = newHeader(a.s)
  647. }
  648. return resp, err
  649. }
  650. func (a *applierV3backend) RoleGrantPermission(r *pb.AuthRoleGrantPermissionRequest) (*pb.AuthRoleGrantPermissionResponse, error) {
  651. resp, err := a.s.AuthStore().RoleGrantPermission(r)
  652. if resp != nil {
  653. resp.Header = newHeader(a.s)
  654. }
  655. return resp, err
  656. }
  657. func (a *applierV3backend) RoleGet(r *pb.AuthRoleGetRequest) (*pb.AuthRoleGetResponse, error) {
  658. resp, err := a.s.AuthStore().RoleGet(r)
  659. if resp != nil {
  660. resp.Header = newHeader(a.s)
  661. }
  662. return resp, err
  663. }
  664. func (a *applierV3backend) RoleRevokePermission(r *pb.AuthRoleRevokePermissionRequest) (*pb.AuthRoleRevokePermissionResponse, error) {
  665. resp, err := a.s.AuthStore().RoleRevokePermission(r)
  666. if resp != nil {
  667. resp.Header = newHeader(a.s)
  668. }
  669. return resp, err
  670. }
  671. func (a *applierV3backend) RoleDelete(r *pb.AuthRoleDeleteRequest) (*pb.AuthRoleDeleteResponse, error) {
  672. resp, err := a.s.AuthStore().RoleDelete(r)
  673. if resp != nil {
  674. resp.Header = newHeader(a.s)
  675. }
  676. return resp, err
  677. }
  678. func (a *applierV3backend) UserList(r *pb.AuthUserListRequest) (*pb.AuthUserListResponse, error) {
  679. resp, err := a.s.AuthStore().UserList(r)
  680. if resp != nil {
  681. resp.Header = newHeader(a.s)
  682. }
  683. return resp, err
  684. }
  685. func (a *applierV3backend) RoleList(r *pb.AuthRoleListRequest) (*pb.AuthRoleListResponse, error) {
  686. resp, err := a.s.AuthStore().RoleList(r)
  687. if resp != nil {
  688. resp.Header = newHeader(a.s)
  689. }
  690. return resp, err
  691. }
  692. type quotaApplierV3 struct {
  693. applierV3
  694. q Quota
  695. }
  696. func newQuotaApplierV3(s *EtcdServer, app applierV3) applierV3 {
  697. return &quotaApplierV3{app, NewBackendQuota(s)}
  698. }
  699. func (a *quotaApplierV3) Put(txn mvcc.TxnWrite, p *pb.PutRequest) (*pb.PutResponse, error) {
  700. ok := a.q.Available(p)
  701. resp, err := a.applierV3.Put(txn, p)
  702. if err == nil && !ok {
  703. err = ErrNoSpace
  704. }
  705. return resp, err
  706. }
  707. func (a *quotaApplierV3) Txn(rt *pb.TxnRequest) (*pb.TxnResponse, error) {
  708. ok := a.q.Available(rt)
  709. resp, err := a.applierV3.Txn(rt)
  710. if err == nil && !ok {
  711. err = ErrNoSpace
  712. }
  713. return resp, err
  714. }
  715. func (a *quotaApplierV3) LeaseGrant(lc *pb.LeaseGrantRequest) (*pb.LeaseGrantResponse, error) {
  716. ok := a.q.Available(lc)
  717. resp, err := a.applierV3.LeaseGrant(lc)
  718. if err == nil && !ok {
  719. err = ErrNoSpace
  720. }
  721. return resp, err
  722. }
  723. type kvSort struct{ kvs []mvccpb.KeyValue }
  724. func (s *kvSort) Swap(i, j int) {
  725. t := s.kvs[i]
  726. s.kvs[i] = s.kvs[j]
  727. s.kvs[j] = t
  728. }
  729. func (s *kvSort) Len() int { return len(s.kvs) }
  730. type kvSortByKey struct{ *kvSort }
  731. func (s *kvSortByKey) Less(i, j int) bool {
  732. return bytes.Compare(s.kvs[i].Key, s.kvs[j].Key) < 0
  733. }
  734. type kvSortByVersion struct{ *kvSort }
  735. func (s *kvSortByVersion) Less(i, j int) bool {
  736. return (s.kvs[i].Version - s.kvs[j].Version) < 0
  737. }
  738. type kvSortByCreate struct{ *kvSort }
  739. func (s *kvSortByCreate) Less(i, j int) bool {
  740. return (s.kvs[i].CreateRevision - s.kvs[j].CreateRevision) < 0
  741. }
  742. type kvSortByMod struct{ *kvSort }
  743. func (s *kvSortByMod) Less(i, j int) bool {
  744. return (s.kvs[i].ModRevision - s.kvs[j].ModRevision) < 0
  745. }
  746. type kvSortByValue struct{ *kvSort }
  747. func (s *kvSortByValue) Less(i, j int) bool {
  748. return bytes.Compare(s.kvs[i].Value, s.kvs[j].Value) < 0
  749. }
  750. func checkRequests(rv mvcc.ReadView, rt *pb.TxnRequest, txnPath []bool, f checkReqFunc) (int, error) {
  751. txnCount := 0
  752. reqs := rt.Success
  753. if !txnPath[0] {
  754. reqs = rt.Failure
  755. }
  756. for _, req := range reqs {
  757. if tv, ok := req.Request.(*pb.RequestOp_RequestTxn); ok && tv.RequestTxn != nil {
  758. txns, err := checkRequests(rv, tv.RequestTxn, txnPath[1:], f)
  759. if err != nil {
  760. return 0, err
  761. }
  762. txnCount += txns + 1
  763. txnPath = txnPath[txns+1:]
  764. continue
  765. }
  766. if err := f(rv, req); err != nil {
  767. return 0, err
  768. }
  769. }
  770. return txnCount, nil
  771. }
  772. func (a *applierV3backend) checkRequestPut(rv mvcc.ReadView, reqOp *pb.RequestOp) error {
  773. tv, ok := reqOp.Request.(*pb.RequestOp_RequestPut)
  774. if !ok || tv.RequestPut == nil {
  775. return nil
  776. }
  777. req := tv.RequestPut
  778. if req.IgnoreValue || req.IgnoreLease {
  779. // expects previous key-value, error if not exist
  780. rr, err := rv.Range(req.Key, nil, mvcc.RangeOptions{})
  781. if err != nil {
  782. return err
  783. }
  784. if rr == nil || len(rr.KVs) == 0 {
  785. return ErrKeyNotFound
  786. }
  787. }
  788. if lease.LeaseID(req.Lease) != lease.NoLease {
  789. if l := a.s.lessor.Lookup(lease.LeaseID(req.Lease)); l == nil {
  790. return lease.ErrLeaseNotFound
  791. }
  792. }
  793. return nil
  794. }
  795. func (a *applierV3backend) checkRequestRange(rv mvcc.ReadView, reqOp *pb.RequestOp) error {
  796. tv, ok := reqOp.Request.(*pb.RequestOp_RequestRange)
  797. if !ok || tv.RequestRange == nil {
  798. return nil
  799. }
  800. req := tv.RequestRange
  801. switch {
  802. case req.Revision == 0:
  803. return nil
  804. case req.Revision > rv.Rev():
  805. return mvcc.ErrFutureRev
  806. case req.Revision < rv.FirstRev():
  807. return mvcc.ErrCompacted
  808. }
  809. return nil
  810. }
  811. func compareInt64(a, b int64) int {
  812. switch {
  813. case a < b:
  814. return -1
  815. case a > b:
  816. return 1
  817. default:
  818. return 0
  819. }
  820. }
  821. // mkGteRange determines if the range end is a >= range. This works around grpc
  822. // sending empty byte strings as nil; >= is encoded in the range end as '\0'.
  823. // If it is a GTE range, then []byte{} is returned to indicate the empty byte
  824. // string (vs nil being no byte string).
  825. func mkGteRange(rangeEnd []byte) []byte {
  826. if len(rangeEnd) == 1 && rangeEnd[0] == 0 {
  827. return []byte{}
  828. }
  829. return rangeEnd
  830. }
  831. func noSideEffect(r *pb.InternalRaftRequest) bool {
  832. return r.Range != nil || r.AuthUserGet != nil || r.AuthRoleGet != nil
  833. }
  834. func removeNeedlessRangeReqs(txn *pb.TxnRequest) {
  835. f := func(ops []*pb.RequestOp) []*pb.RequestOp {
  836. j := 0
  837. for i := 0; i < len(ops); i++ {
  838. if _, ok := ops[i].Request.(*pb.RequestOp_RequestRange); ok {
  839. continue
  840. }
  841. ops[j] = ops[i]
  842. j++
  843. }
  844. return ops[:j]
  845. }
  846. txn.Success = f(txn.Success)
  847. txn.Failure = f(txn.Failure)
  848. }
  849. func pruneKVs(rr *mvcc.RangeResult, isPrunable func(*mvccpb.KeyValue) bool) {
  850. j := 0
  851. for i := range rr.KVs {
  852. rr.KVs[j] = rr.KVs[i]
  853. if !isPrunable(&rr.KVs[i]) {
  854. j++
  855. }
  856. }
  857. rr.KVs = rr.KVs[:j]
  858. }
  859. func newHeader(s *EtcdServer) *pb.ResponseHeader {
  860. return &pb.ResponseHeader{
  861. ClusterId: uint64(s.Cluster().ID()),
  862. MemberId: uint64(s.ID()),
  863. Revision: s.KV().Rev(),
  864. RaftTerm: s.Term(),
  865. }
  866. }