| Tim Windelschmidt | 6d33a43 | 2025-02-04 14:34:25 +0100 | [diff] [blame] | 1 | // Copyright The Monogon Project Authors. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 2 | // SPDX-License-Identifier: Apache-2.0 |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 3 | |
| 4 | package supervisor |
| 5 | |
| 6 | import ( |
| 7 | "context" |
| 8 | "errors" |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 9 | "fmt" |
| 10 | "runtime/debug" |
| Serge Bazanski | ec19b60 | 2022-03-09 20:41:31 +0100 | [diff] [blame] | 11 | "sort" |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 12 | "time" |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 13 | ) |
| 14 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 15 | // The processor maintains runnable goroutines - ie., when requested will start |
| Jan Schär | aa6b42a | 2024-12-18 18:03:26 +0100 | [diff] [blame] | 16 | // one, and then once it exits, it will record the result and act accordingly. |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 17 | // It is also responsible for detecting and acting upon supervision subtrees |
| 18 | // that need to be restarted after death (via a 'GC' process) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 19 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 20 | // processorRequest is a request for the processor. Only one of the fields can |
| 21 | // be set. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 22 | type processorRequest struct { |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 23 | schedule *processorRequestSchedule |
| 24 | died *processorRequestDied |
| 25 | waitSettled *processorRequestWaitSettled |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 26 | } |
| 27 | |
| 28 | // processorRequestSchedule requests that a given node's runnable be started. |
| 29 | type processorRequestSchedule struct { |
| 30 | dn string |
| 31 | } |
| 32 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 33 | // processorRequestDied is a signal from a runnable goroutine that the runnable |
| 34 | // has died. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 35 | type processorRequestDied struct { |
| 36 | dn string |
| 37 | err error |
| 38 | } |
| 39 | |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 40 | type processorRequestWaitSettled struct { |
| 41 | waiter chan struct{} |
| 42 | } |
| 43 | |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 44 | // processor is the main processing loop. |
| 45 | func (s *supervisor) processor(ctx context.Context) { |
| 46 | s.ilogger.Info("supervisor processor started") |
| 47 | |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 48 | // Waiters waiting for the GC to be settled. |
| 49 | var waiters []chan struct{} |
| 50 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 51 | // The GC will run every millisecond if needed. Any time the processor |
| 52 | // requests a change in the supervision tree (ie a death or a new runnable) |
| 53 | // it will mark the state as dirty and run the GC on the next millisecond |
| 54 | // cycle. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 55 | gc := time.NewTicker(1 * time.Millisecond) |
| 56 | defer gc.Stop() |
| 57 | clean := true |
| 58 | |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 59 | // How long has the GC been clean. This is used to notify 'settled' waiters. |
| 60 | cleanCycles := 0 |
| 61 | |
| 62 | markDirty := func() { |
| 63 | clean = false |
| 64 | cleanCycles = 0 |
| 65 | } |
| 66 | |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 67 | for { |
| 68 | select { |
| 69 | case <-ctx.Done(): |
| Serge Bazanski | c735967 | 2020-10-30 16:38:57 +0100 | [diff] [blame] | 70 | s.ilogger.Infof("supervisor processor exiting: %v", ctx.Err()) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 71 | s.processKill() |
| Serge Bazanski | ec19b60 | 2022-03-09 20:41:31 +0100 | [diff] [blame] | 72 | s.ilogger.Info("supervisor exited, starting liquidator to clean up remaining runnables...") |
| 73 | go s.liquidator() |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 74 | return |
| 75 | case <-gc.C: |
| 76 | if !clean { |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 77 | s.processGC() |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 78 | } |
| 79 | clean = true |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 80 | cleanCycles += 1 |
| 81 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 82 | // This threshold is somewhat arbitrary. It's a balance between |
| 83 | // test speed and test reliability. |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 84 | if cleanCycles > 50 { |
| 85 | for _, w := range waiters { |
| 86 | close(w) |
| 87 | } |
| 88 | waiters = nil |
| 89 | } |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 90 | case r := <-s.pReq: |
| 91 | switch { |
| 92 | case r.schedule != nil: |
| 93 | s.processSchedule(r.schedule) |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 94 | markDirty() |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 95 | case r.died != nil: |
| 96 | s.processDied(r.died) |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 97 | markDirty() |
| 98 | case r.waitSettled != nil: |
| 99 | waiters = append(waiters, r.waitSettled.waiter) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 100 | default: |
| 101 | panic(fmt.Errorf("unhandled request %+v", r)) |
| 102 | } |
| 103 | } |
| 104 | } |
| 105 | } |
| 106 | |
| Serge Bazanski | ec19b60 | 2022-03-09 20:41:31 +0100 | [diff] [blame] | 107 | // The liquidator is a context-free goroutine which the supervisor starts after |
| 108 | // its context has been canceled. Its job is to take over listening on the |
| 109 | // processing channels that the supervisor processor would usually listen on, |
| 110 | // and implement the minimum amount of logic required to mark existing runnables |
| 111 | // as DEAD. |
| 112 | // |
| 113 | // It exits when all runnables have exited one way or another, and the |
| 114 | // supervision tree is well and truly dead. This will also be reflected by |
| 115 | // liveRunnables returning an empty list. |
| 116 | func (s *supervisor) liquidator() { |
| 117 | for { |
| Tim Windelschmidt | 931b3a3 | 2024-04-18 23:39:20 +0200 | [diff] [blame] | 118 | r := <-s.pReq |
| 119 | switch { |
| 120 | case r.schedule != nil: |
| 121 | s.ilogger.Infof("liquidator: refusing to schedule %s", r.schedule.dn) |
| 122 | s.mu.Lock() |
| 123 | n := s.nodeByDN(r.schedule.dn) |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 124 | n.state = NodeStateDead |
| Tim Windelschmidt | 931b3a3 | 2024-04-18 23:39:20 +0200 | [diff] [blame] | 125 | s.mu.Unlock() |
| 126 | case r.died != nil: |
| 127 | s.ilogger.Infof("liquidator: %s exited", r.died.dn) |
| 128 | s.mu.Lock() |
| 129 | n := s.nodeByDN(r.died.dn) |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 130 | n.state = NodeStateDead |
| Tim Windelschmidt | 931b3a3 | 2024-04-18 23:39:20 +0200 | [diff] [blame] | 131 | s.mu.Unlock() |
| Serge Bazanski | ec19b60 | 2022-03-09 20:41:31 +0100 | [diff] [blame] | 132 | } |
| 133 | live := s.liveRunnables() |
| 134 | if len(live) == 0 { |
| 135 | s.ilogger.Infof("liquidator: complete, all runnables dead or done") |
| 136 | return |
| 137 | } |
| 138 | } |
| 139 | } |
| 140 | |
| Jan Schär | aa6b42a | 2024-12-18 18:03:26 +0100 | [diff] [blame] | 141 | // liveRunnables returns a list of runnable DNs that aren't DONE/DEAD/CANCELED. |
| 142 | // This is used by the liquidator to figure out when its job is done, and by the |
| Serge Bazanski | ec19b60 | 2022-03-09 20:41:31 +0100 | [diff] [blame] | 143 | // TestHarness to know when to unblock the test cleanup function. |
| 144 | func (s *supervisor) liveRunnables() []string { |
| 145 | s.mu.RLock() |
| 146 | defer s.mu.RUnlock() |
| 147 | |
| Jan Schär | aa6b42a | 2024-12-18 18:03:26 +0100 | [diff] [blame] | 148 | // DFS through supervision tree, making note of live (non-DONE/DEAD/CANCELED |
| 149 | // runnables). |
| Serge Bazanski | ec19b60 | 2022-03-09 20:41:31 +0100 | [diff] [blame] | 150 | var live []string |
| 151 | seen := make(map[string]bool) |
| 152 | q := []*node{s.root} |
| 153 | for { |
| 154 | if len(q) == 0 { |
| 155 | break |
| 156 | } |
| 157 | |
| 158 | // Pop from DFS queue. |
| 159 | el := q[0] |
| 160 | q = q[1:] |
| 161 | |
| 162 | // Skip already visited runnables (this shouldn't happen because the supervision |
| 163 | // tree is, well, a tree - but better stay safe than get stuck in a loop). |
| 164 | eldn := el.dn() |
| 165 | if seen[eldn] { |
| 166 | continue |
| 167 | } |
| 168 | seen[eldn] = true |
| 169 | |
| Jan Schär | aa6b42a | 2024-12-18 18:03:26 +0100 | [diff] [blame] | 170 | if el.state != NodeStateDead && el.state != NodeStateDone && el.state != NodeStateCanceled { |
| Serge Bazanski | ec19b60 | 2022-03-09 20:41:31 +0100 | [diff] [blame] | 171 | live = append(live, eldn) |
| 172 | } |
| 173 | |
| 174 | // Recurse. |
| 175 | for _, child := range el.children { |
| 176 | q = append(q, child) |
| 177 | } |
| 178 | } |
| 179 | |
| 180 | sort.Strings(live) |
| 181 | return live |
| 182 | } |
| 183 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 184 | // processKill cancels all nodes in the supervision tree. This is only called |
| 185 | // right before exiting the processor, so they do not get automatically |
| 186 | // restarted. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 187 | func (s *supervisor) processKill() { |
| 188 | s.mu.Lock() |
| 189 | defer s.mu.Unlock() |
| 190 | |
| 191 | // Gather all context cancel functions. |
| 192 | var cancels []func() |
| 193 | queue := []*node{s.root} |
| 194 | for { |
| 195 | if len(queue) == 0 { |
| 196 | break |
| 197 | } |
| 198 | |
| 199 | cur := queue[0] |
| 200 | queue = queue[1:] |
| 201 | |
| 202 | cancels = append(cancels, cur.ctxC) |
| 203 | for _, c := range cur.children { |
| 204 | queue = append(queue, c) |
| 205 | } |
| 206 | } |
| 207 | |
| 208 | // Call all context cancels. |
| 209 | for _, c := range cancels { |
| 210 | c() |
| 211 | } |
| 212 | } |
| 213 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 214 | // processSchedule starts a node's runnable in a goroutine and records its |
| 215 | // output once it's done. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 216 | func (s *supervisor) processSchedule(r *processorRequestSchedule) { |
| 217 | s.mu.Lock() |
| 218 | defer s.mu.Unlock() |
| 219 | |
| 220 | n := s.nodeByDN(r.dn) |
| Serge Bazanski | cf864da | 2024-07-31 11:23:34 +0000 | [diff] [blame] | 221 | if n.state != NodeStateNew { |
| 222 | panic("programming error: scheduled node not new") |
| 223 | } |
| 224 | s.metrics.NotifyNodeState(r.dn, n.state) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 225 | go func() { |
| Serge Bazanski | 19bb412 | 2020-05-04 17:57:50 +0200 | [diff] [blame] | 226 | if !s.propagatePanic { |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 227 | defer func() { |
| 228 | if rec := recover(); rec != nil { |
| 229 | s.pReq <- &processorRequest{ |
| 230 | died: &processorRequestDied{ |
| 231 | dn: r.dn, |
| 232 | err: fmt.Errorf("panic: %v, stacktrace: %s", rec, string(debug.Stack())), |
| 233 | }, |
| 234 | } |
| 235 | } |
| 236 | }() |
| 237 | } |
| 238 | |
| 239 | res := n.runnable(n.ctx) |
| 240 | |
| 241 | s.pReq <- &processorRequest{ |
| 242 | died: &processorRequestDied{ |
| 243 | dn: r.dn, |
| 244 | err: res, |
| 245 | }, |
| 246 | } |
| 247 | }() |
| 248 | } |
| 249 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 250 | // processDied records the result from a runnable goroutine, and updates its |
| 251 | // node state accordingly. If the result is a death and not an expected exit, |
| 252 | // related nodes (ie. children and group siblings) are canceled accordingly. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 253 | func (s *supervisor) processDied(r *processorRequestDied) { |
| 254 | s.mu.Lock() |
| 255 | defer s.mu.Unlock() |
| 256 | |
| 257 | // Okay, so a Runnable has quit. What now? |
| 258 | n := s.nodeByDN(r.dn) |
| 259 | ctx := n.ctx |
| 260 | |
| Jan Schär | 08c1c72 | 2024-12-19 12:03:17 +0100 | [diff] [blame] | 261 | // Simple case: it has signaled Done and quit with no error. |
| 262 | if n.signaledDone && r.err == nil { |
| 263 | // Mark the node as DONE. |
| 264 | n.state = NodeStateDone |
| Serge Bazanski | cf864da | 2024-07-31 11:23:34 +0000 | [diff] [blame] | 265 | s.metrics.NotifyNodeState(r.dn, n.state) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 266 | return |
| 267 | } |
| 268 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 269 | // Simple case: the context was canceled and the returned error is the |
| 270 | // context error. |
| Tim Windelschmidt | 47d0344 | 2024-04-23 15:08:44 +0200 | [diff] [blame] | 271 | if r.err != nil && ctx.Err() != nil && errors.Is(r.err, ctx.Err()) { |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 272 | // Mark the node as canceled successfully. |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 273 | n.state = NodeStateCanceled |
| Serge Bazanski | cf864da | 2024-07-31 11:23:34 +0000 | [diff] [blame] | 274 | s.metrics.NotifyNodeState(r.dn, n.state) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 275 | return |
| 276 | } |
| 277 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 278 | // Otherwise, the Runnable should not have died or quit. Handle |
| 279 | // accordingly. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 280 | err := r.err |
| 281 | // A lack of returned error is also an error. |
| 282 | if err == nil { |
| Serge Bazanski | 0164c71 | 2023-03-16 17:54:07 +0100 | [diff] [blame] | 283 | err = fmt.Errorf("returned nil when %s", n.state) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 284 | } |
| 285 | |
| Serge Bazanski | 0164c71 | 2023-03-16 17:54:07 +0100 | [diff] [blame] | 286 | s.ilogger.Errorf("%s: %v", n.dn(), err) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 287 | // Mark as dead. |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 288 | n.state = NodeStateDead |
| Serge Bazanski | cf864da | 2024-07-31 11:23:34 +0000 | [diff] [blame] | 289 | s.metrics.NotifyNodeState(r.dn, n.state) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 290 | |
| 291 | // Cancel that node's context, just in case something still depends on it. |
| 292 | n.ctxC() |
| 293 | |
| 294 | // Cancel all siblings. |
| 295 | if n.parent != nil { |
| Tim Windelschmidt | 6b6428d | 2024-04-11 01:35:41 +0200 | [diff] [blame] | 296 | for name := range n.parent.groupSiblings(n.name) { |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 297 | if name == n.name { |
| 298 | continue |
| 299 | } |
| 300 | sibling := n.parent.children[name] |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 301 | // TODO(q3k): does this need to run in a goroutine, ie. can a |
| 302 | // context cancel block? |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 303 | sibling.ctxC() |
| 304 | } |
| 305 | } |
| 306 | } |
| 307 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 308 | // processGC runs the GC process. It's not really Garbage Collection, as in, it |
| 309 | // doesn't remove unnecessary tree nodes - but it does find nodes that need to |
| 310 | // be restarted, find the subset that can and then schedules them for running. |
| 311 | // As such, it's less of a Garbage Collector and more of a Necromancer. |
| 312 | // However, GC is a friendlier name. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 313 | func (s *supervisor) processGC() { |
| 314 | s.mu.Lock() |
| 315 | defer s.mu.Unlock() |
| 316 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 317 | // The 'GC' serves is the main business logic of the supervision tree. It |
| 318 | // traverses a locked tree and tries to find subtrees that must be |
| 319 | // restarted (because of a DEAD/CANCELED runnable). It then finds which of |
| 320 | // these subtrees that should be restarted can be restarted, ie. which ones |
| 321 | // are fully recursively DEAD/CANCELED. It also finds the smallest set of |
| 322 | // largest subtrees that can be restarted, ie. if there's multiple DEAD |
| 323 | // runnables that can be restarted at once, it will do so. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 324 | |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 325 | // Phase one: Find all leaves. |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 326 | // This is a simple DFS that finds all the leaves of the tree, ie all nodes |
| 327 | // that do not have children nodes. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 328 | leaves := make(map[string]bool) |
| 329 | queue := []*node{s.root} |
| 330 | for { |
| 331 | if len(queue) == 0 { |
| 332 | break |
| 333 | } |
| 334 | cur := queue[0] |
| 335 | queue = queue[1:] |
| 336 | |
| 337 | for _, c := range cur.children { |
| 338 | queue = append([]*node{c}, queue...) |
| 339 | } |
| 340 | |
| 341 | if len(cur.children) == 0 { |
| 342 | leaves[cur.dn()] = true |
| 343 | } |
| 344 | } |
| 345 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 346 | // Phase two: traverse tree from node to root and make note of all subtrees |
| 347 | // that can be restarted. |
| 348 | // A subtree is restartable/ready iff every node in that subtree is either |
| 349 | // CANCELED, DEAD or DONE. Such a 'ready' subtree can be restarted by the |
| 350 | // supervisor if needed. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 351 | |
| 352 | // DNs that we already visited. |
| 353 | visited := make(map[string]bool) |
| 354 | // DNs whose subtrees are ready to be restarted. |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 355 | // These are all subtrees recursively - ie., root.a.a and root.a will both |
| 356 | // be marked here. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 357 | ready := make(map[string]bool) |
| 358 | |
| 359 | // We build a queue of nodes to visit, starting from the leaves. |
| 360 | queue = []*node{} |
| Tim Windelschmidt | 6b6428d | 2024-04-11 01:35:41 +0200 | [diff] [blame] | 361 | for l := range leaves { |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 362 | queue = append(queue, s.nodeByDN(l)) |
| 363 | } |
| 364 | |
| 365 | for { |
| 366 | if len(queue) == 0 { |
| 367 | break |
| 368 | } |
| 369 | |
| 370 | cur := queue[0] |
| 371 | curDn := cur.dn() |
| 372 | |
| 373 | queue = queue[1:] |
| 374 | |
| 375 | // Do we have a decision about our children? |
| 376 | allVisited := true |
| 377 | for _, c := range cur.children { |
| 378 | if !visited[c.dn()] { |
| 379 | allVisited = false |
| 380 | break |
| 381 | } |
| 382 | } |
| 383 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 384 | // If no decision about children is available, it means we ended up in |
| 385 | // this subtree through some shorter path of a shorter/lower-order |
| 386 | // leaf. There is a path to a leaf that's longer than the one that |
| 387 | // caused this node to be enqueued. Easy solution: just push back the |
| 388 | // current element and retry later. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 389 | if !allVisited { |
| 390 | // Push back to queue and wait for a decision later. |
| 391 | queue = append(queue, cur) |
| 392 | continue |
| 393 | } |
| 394 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 395 | // All children have been visited and we have an idea about whether |
| 396 | // they're ready/restartable. All of the node's children must be |
| 397 | // restartable in order for this node to be restartable. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 398 | childrenReady := true |
| Serge Bazanski | ba7bf7d | 2021-10-29 16:59:00 +0200 | [diff] [blame] | 399 | var childrenNotReady []string |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 400 | for _, c := range cur.children { |
| 401 | if !ready[c.dn()] { |
| Serge Bazanski | ba7bf7d | 2021-10-29 16:59:00 +0200 | [diff] [blame] | 402 | childrenNotReady = append(childrenNotReady, c.dn()) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 403 | childrenReady = false |
| 404 | break |
| 405 | } |
| 406 | } |
| 407 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 408 | // In addition to children, the node itself must be restartable (ie. |
| 409 | // DONE, DEAD or CANCELED). |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 410 | curReady := false |
| 411 | switch cur.state { |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 412 | case NodeStateDone: |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 413 | curReady = true |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 414 | case NodeStateCanceled: |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 415 | curReady = true |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 416 | case NodeStateDead: |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 417 | curReady = true |
| Tim Windelschmidt | 9b2c156 | 2024-04-11 01:39:25 +0200 | [diff] [blame] | 418 | default: |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 419 | } |
| 420 | |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 421 | if cur.state == NodeStateDead && !childrenReady { |
| Serge Bazanski | ba7bf7d | 2021-10-29 16:59:00 +0200 | [diff] [blame] | 422 | s.ilogger.Warningf("Not restarting %s: children not ready to be restarted: %v", curDn, childrenNotReady) |
| 423 | } |
| 424 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 425 | // Note down that we have an opinion on this node, and note that |
| 426 | // opinion down. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 427 | visited[curDn] = true |
| 428 | ready[curDn] = childrenReady && curReady |
| 429 | |
| 430 | // Now we can also enqueue the parent of this node for processing. |
| 431 | if cur.parent != nil && !visited[cur.parent.dn()] { |
| 432 | queue = append(queue, cur.parent) |
| 433 | } |
| 434 | } |
| 435 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 436 | // Phase 3: traverse tree from root to find largest subtrees that need to |
| 437 | // be restarted and are ready to be restarted. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 438 | |
| 439 | // All DNs that need to be restarted by the GC process. |
| 440 | want := make(map[string]bool) |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 441 | // All DNs that need to be restarted and can be restarted by the GC process |
| 442 | // - a subset of 'want' DNs. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 443 | can := make(map[string]bool) |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 444 | // The set difference between 'want' and 'can' are all nodes that should be |
| 445 | // restarted but can't yet (ie. because a child is still in the process of |
| 446 | // being canceled). |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 447 | |
| 448 | // DFS from root. |
| 449 | queue = []*node{s.root} |
| 450 | for { |
| 451 | if len(queue) == 0 { |
| 452 | break |
| 453 | } |
| 454 | |
| 455 | cur := queue[0] |
| 456 | queue = queue[1:] |
| 457 | |
| Jan Schär | fce7c76 | 2024-12-19 14:07:24 +0100 | [diff] [blame] | 458 | // If this node's context is canceled and it has exited, it should be |
| 459 | // restarted. |
| 460 | exited := cur.state == NodeStateDead || cur.state == NodeStateCanceled || cur.state == NodeStateDone |
| 461 | if cur.ctx.Err() != nil && exited { |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 462 | want[cur.dn()] = true |
| 463 | } |
| 464 | |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 465 | // If it should be restarted and is ready to be restarted... |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 466 | if want[cur.dn()] && ready[cur.dn()] { |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 467 | // And its parent context is valid (ie hasn't been canceled), mark |
| 468 | // it as restartable. |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 469 | if cur.parent == nil || cur.parent.ctx.Err() == nil { |
| 470 | can[cur.dn()] = true |
| 471 | continue |
| 472 | } |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 473 | } |
| 474 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 475 | // Otherwise, traverse further down the tree to see if something else |
| 476 | // needs to be done. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 477 | for _, c := range cur.children { |
| 478 | queue = append(queue, c) |
| 479 | } |
| 480 | } |
| 481 | |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 482 | // Reinitialize and reschedule all subtrees |
| Tim Windelschmidt | 6b6428d | 2024-04-11 01:35:41 +0200 | [diff] [blame] | 483 | for dn := range can { |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 484 | n := s.nodeByDN(dn) |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 485 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 486 | // Only back off when the node unexpectedly died - not when it got |
| 487 | // canceled. |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 488 | bo := time.Duration(0) |
| Serge Bazanski | eca8ee3 | 2024-07-30 14:32:19 +0000 | [diff] [blame] | 489 | if n.state == NodeStateDead { |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 490 | bo = n.bo.NextBackOff() |
| 491 | } |
| Serge Bazanski | ac6b644 | 2020-05-06 19:13:43 +0200 | [diff] [blame] | 492 | |
| Serge Bazanski | 216fe7b | 2021-05-21 18:36:16 +0200 | [diff] [blame] | 493 | // Prepare node for rescheduling - remove its children, reset its state |
| 494 | // to new. |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 495 | n.reset() |
| Serge Bazanski | c735967 | 2020-10-30 16:38:57 +0100 | [diff] [blame] | 496 | s.ilogger.Infof("rescheduling supervised node %s with backoff %s", dn, bo.String()) |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 497 | |
| 498 | // Reschedule node runnable to run after backoff. |
| 499 | go func(n *node, bo time.Duration) { |
| Jan Schär | 6560209 | 2024-12-19 10:37:34 +0100 | [diff] [blame] | 500 | select { |
| 501 | case <-time.After(bo): |
| 502 | s.pReq <- &processorRequest{ |
| 503 | schedule: &processorRequestSchedule{dn: n.dn()}, |
| 504 | } |
| 505 | case <-n.ctx.Done(): |
| 506 | s.pReq <- &processorRequest{ |
| 507 | died: &processorRequestDied{ |
| 508 | dn: n.dn(), |
| 509 | err: n.ctx.Err(), |
| 510 | }, |
| 511 | } |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 512 | } |
| 513 | }(n, bo) |
| 514 | } |
| Serge Bazanski | 9c09c4e | 2020-03-24 13:58:01 +0100 | [diff] [blame] | 515 | } |