50dc83
From 546f412c155dd5aca2b3cd4202f80c9977b215dc Mon Sep 17 00:00:00 2001
50dc83
From: Pranith Kumar K <pkarampu@redhat.com>
50dc83
Date: Wed, 4 Sep 2019 12:06:34 +0530
50dc83
Subject: [PATCH 287/297] cluster/ec: Fail fsync/flush for files on update
50dc83
 size/version failure
50dc83
50dc83
Problem:
50dc83
If update size/version is not successful on the file, updates on the
50dc83
same stripe could lead to data corruptions if the earlier un-aligned
50dc83
write is not successful on all the bricks. Application won't have
50dc83
any knowledge of this because update size/version happens in the
50dc83
background.
50dc83
50dc83
Fix:
50dc83
Fail fsync/flush on fds that are opened before update-size-version
50dc83
went bad.
50dc83
50dc83
Upstream-patch: https://review.gluster.org/c/glusterfs/+/23355
50dc83
fixes: bz#1745107
50dc83
Change-Id: I9d323eddcda703bd27d55f340c4079d76e06e492
50dc83
Signed-off-by: Pranith Kumar K <pkarampu@redhat.com>
50dc83
Reviewed-on: https://code.engineering.redhat.com/gerrit/180672
50dc83
Tested-by: RHGS Build Bot <nigelb@redhat.com>
50dc83
Reviewed-by: Ashish Pandey <aspandey@redhat.com>
50dc83
Reviewed-by: Sunil Kumar Heggodu Gopala Acharya <sheggodu@redhat.com>
50dc83
---
50dc83
 tests/basic/ec/ec-badfd.c            | 124 +++++++++++++++++++++++++++++++++++
50dc83
 tests/basic/ec/ec-badfd.t            |  26 ++++++++
50dc83
 xlators/cluster/ec/src/ec-common.c   |  23 +++++++
50dc83
 xlators/cluster/ec/src/ec-generic.c  |  47 +++++++++++++
50dc83
 xlators/cluster/ec/src/ec-helpers.c  |   7 ++
50dc83
 xlators/cluster/ec/src/ec-messages.h |   2 +-
50dc83
 xlators/cluster/ec/src/ec-types.h    |   2 +
50dc83
 7 files changed, 230 insertions(+), 1 deletion(-)
50dc83
 create mode 100644 tests/basic/ec/ec-badfd.c
50dc83
 create mode 100755 tests/basic/ec/ec-badfd.t
50dc83
50dc83
diff --git a/tests/basic/ec/ec-badfd.c b/tests/basic/ec/ec-badfd.c
50dc83
new file mode 100644
50dc83
index 0000000..8be23c1
50dc83
--- /dev/null
50dc83
+++ b/tests/basic/ec/ec-badfd.c
50dc83
@@ -0,0 +1,124 @@
50dc83
+#include <stdio.h>
50dc83
+#include <fcntl.h>
50dc83
+#include <unistd.h>
50dc83
+#include <time.h>
50dc83
+#include <limits.h>
50dc83
+#include <string.h>
50dc83
+#include <stdlib.h>
50dc83
+#include <errno.h>
50dc83
+#include <glusterfs/api/glfs.h>
50dc83
+#include <glusterfs/api/glfs-handles.h>
50dc83
+
50dc83
+int
50dc83
+fill_iov(struct iovec *iov, char fillchar, int count)
50dc83
+{
50dc83
+    int ret = -1;
50dc83
+
50dc83
+    iov->iov_base = malloc(count + 1);
50dc83
+    if (iov->iov_base == NULL) {
50dc83
+        return ret;
50dc83
+    } else {
50dc83
+        iov->iov_len = count;
50dc83
+        ret = 0;
50dc83
+    }
50dc83
+    memset(iov->iov_base, fillchar, count);
50dc83
+    memset(iov->iov_base + count, '\0', 1);
50dc83
+
50dc83
+    return ret;
50dc83
+}
50dc83
+
50dc83
+int
50dc83
+write_sync(glfs_t *fs, glfs_fd_t *glfd, int char_count)
50dc83
+{
50dc83
+    ssize_t ret = -1;
50dc83
+    int flags = O_RDWR;
50dc83
+    struct iovec iov = {0};
50dc83
+
50dc83
+    ret = fill_iov(&iov, 'a', char_count);
50dc83
+    if (ret) {
50dc83
+        fprintf(stderr, "failed to create iov");
50dc83
+        goto out;
50dc83
+    }
50dc83
+
50dc83
+    ret = glfs_pwritev(glfd, &iov, 1, 0, flags);
50dc83
+out:
50dc83
+    if (ret < 0) {
50dc83
+        fprintf(stderr, "glfs_pwritev failed, %d", errno);
50dc83
+    }
50dc83
+    return ret;
50dc83
+}
50dc83
+
50dc83
+int
50dc83
+main(int argc, char *argv[])
50dc83
+{
50dc83
+    glfs_t *fs = NULL;
50dc83
+    glfs_fd_t *fd = NULL;
50dc83
+    int ret = 1;
50dc83
+    char volume_cmd[4096] = {0};
50dc83
+
50dc83
+    if (argc != 4) {
50dc83
+        fprintf(stderr, "Syntax: %s <host> <volname> <file>\n", argv[0]);
50dc83
+        return 1;
50dc83
+    }
50dc83
+
50dc83
+    fs = glfs_new(argv[2]);
50dc83
+    if (!fs) {
50dc83
+        fprintf(stderr, "glfs_new: returned NULL\n");
50dc83
+        return 1;
50dc83
+    }
50dc83
+
50dc83
+    ret = glfs_set_volfile_server(fs, "tcp", argv[1], 24007);
50dc83
+    if (ret != 0) {
50dc83
+        fprintf(stderr, "glfs_set_volfile_server: returned %d\n", ret);
50dc83
+        goto out;
50dc83
+    }
50dc83
+    ret = glfs_set_logging(fs, "/tmp/ec-badfd.log", 7);
50dc83
+    if (ret != 0) {
50dc83
+        fprintf(stderr, "glfs_set_logging: returned %d\n", ret);
50dc83
+        goto out;
50dc83
+    }
50dc83
+    ret = glfs_init(fs);
50dc83
+    if (ret != 0) {
50dc83
+        fprintf(stderr, "glfs_init: returned %d\n", ret);
50dc83
+        goto out;
50dc83
+    }
50dc83
+
50dc83
+    fd = glfs_open(fs, argv[3], O_RDWR);
50dc83
+    if (fd == NULL) {
50dc83
+        fprintf(stderr, "glfs_open: returned NULL\n");
50dc83
+        goto out;
50dc83
+    }
50dc83
+
50dc83
+    ret = write_sync(fs, fd, 16);
50dc83
+    if (ret < 0) {
50dc83
+        fprintf(stderr, "write_sync failed\n");
50dc83
+    }
50dc83
+
50dc83
+    snprintf(volume_cmd, sizeof(volume_cmd),
50dc83
+             "gluster --mode=script volume stop %s", argv[2]);
50dc83
+    /*Stop the volume so that update-size-version fails*/
50dc83
+    system(volume_cmd);
50dc83
+    sleep(8); /* 3 seconds more than eager-lock-timeout*/
50dc83
+    snprintf(volume_cmd, sizeof(volume_cmd),
50dc83
+             "gluster --mode=script volume start %s", argv[2]);
50dc83
+    system(volume_cmd);
50dc83
+    sleep(8); /*wait for bricks to come up*/
50dc83
+    ret = glfs_fsync(fd, NULL, NULL);
50dc83
+    if (ret == 0) {
50dc83
+        fprintf(stderr, "fsync succeeded on a BADFD\n");
50dc83
+        exit(1);
50dc83
+    }
50dc83
+
50dc83
+    ret = glfs_close(fd);
50dc83
+    if (ret == 0) {
50dc83
+        fprintf(stderr, "flush succeeded on a BADFD\n");
50dc83
+        exit(1);
50dc83
+    }
50dc83
+    ret = 0;
50dc83
+
50dc83
+out:
50dc83
+    unlink("/tmp/ec-badfd.log");
50dc83
+    glfs_fini(fs);
50dc83
+
50dc83
+    return ret;
50dc83
+}
50dc83
diff --git a/tests/basic/ec/ec-badfd.t b/tests/basic/ec/ec-badfd.t
50dc83
new file mode 100755
50dc83
index 0000000..56feb47
50dc83
--- /dev/null
50dc83
+++ b/tests/basic/ec/ec-badfd.t
50dc83
@@ -0,0 +1,26 @@
50dc83
+#!/bin/bash
50dc83
+
50dc83
+. $(dirname $0)/../../include.rc
50dc83
+. $(dirname $0)/../../volume.rc
50dc83
+
50dc83
+cleanup;
50dc83
+
50dc83
+TEST glusterd
50dc83
+TEST pidof glusterd
50dc83
+
50dc83
+TEST $CLI volume create $V0 disperse 6 redundancy 2 $H0:$B0/${V0}{1..6}
50dc83
+TEST $CLI volume set $V0 performance.write-behind off
50dc83
+TEST $CLI volume set $V0 disperse.eager-lock-timeout 5
50dc83
+
50dc83
+TEST $CLI volume start $V0
50dc83
+EXPECT 'Started' volinfo_field $V0 'Status'
50dc83
+
50dc83
+TEST $GFS -s $H0 --volfile-id $V0 $M0
50dc83
+EXPECT_WITHIN $CHILD_UP_TIMEOUT "6" ec_child_up_count $V0 0
50dc83
+TEST touch $M0/file
50dc83
+
50dc83
+TEST build_tester $(dirname $0)/ec-badfd.c -lgfapi -Wall -O2
50dc83
+TEST $(dirname $0)/ec-badfd $H0 $V0 /file
50dc83
+cleanup_tester $(dirname ${0})/ec-badfd
50dc83
+
50dc83
+cleanup;
50dc83
diff --git a/xlators/cluster/ec/src/ec-common.c b/xlators/cluster/ec/src/ec-common.c
50dc83
index 5fb4610..92d4e5d 100644
50dc83
--- a/xlators/cluster/ec/src/ec-common.c
50dc83
+++ b/xlators/cluster/ec/src/ec-common.c
50dc83
@@ -2255,6 +2255,23 @@ ec_unlock_lock(ec_lock_link_t *link)
50dc83
     }
50dc83
 }
50dc83
 
50dc83
+void
50dc83
+ec_inode_bad_inc(inode_t *inode, xlator_t *xl)
50dc83
+{
50dc83
+    ec_inode_t *ctx = NULL;
50dc83
+
50dc83
+    LOCK(&inode->lock);
50dc83
+    {
50dc83
+        ctx = __ec_inode_get(inode, xl);
50dc83
+        if (ctx == NULL) {
50dc83
+            goto unlock;
50dc83
+        }
50dc83
+        ctx->bad_version++;
50dc83
+    }
50dc83
+unlock:
50dc83
+    UNLOCK(&inode->lock);
50dc83
+}
50dc83
+
50dc83
 int32_t
50dc83
 ec_update_size_version_done(call_frame_t *frame, void *cookie, xlator_t *this,
50dc83
                             int32_t op_ret, int32_t op_errno, dict_t *xattr,
50dc83
@@ -2270,6 +2287,12 @@ ec_update_size_version_done(call_frame_t *frame, void *cookie, xlator_t *this,
50dc83
     ctx = lock->ctx;
50dc83
 
50dc83
     if (op_ret < 0) {
50dc83
+        if (link->lock->fd == NULL) {
50dc83
+            ec_inode_bad_inc(link->lock->loc.inode, this);
50dc83
+        } else {
50dc83
+            ec_inode_bad_inc(link->lock->fd->inode, this);
50dc83
+        }
50dc83
+
50dc83
         gf_msg(fop->xl->name, fop_log_level(fop->id, op_errno), op_errno,
50dc83
                EC_MSG_SIZE_VERS_UPDATE_FAIL,
50dc83
                "Failed to update version and size. %s", ec_msg_str(fop));
50dc83
diff --git a/xlators/cluster/ec/src/ec-generic.c b/xlators/cluster/ec/src/ec-generic.c
50dc83
index acc16b5..b019050 100644
50dc83
--- a/xlators/cluster/ec/src/ec-generic.c
50dc83
+++ b/xlators/cluster/ec/src/ec-generic.c
50dc83
@@ -150,6 +150,37 @@ ec_manager_flush(ec_fop_data_t *fop, int32_t state)
50dc83
     }
50dc83
 }
50dc83
 
50dc83
+static int32_t
50dc83
+ec_validate_fd(fd_t *fd, xlator_t *xl)
50dc83
+{
50dc83
+    uint64_t iversion = 0;
50dc83
+    uint64_t fversion = 0;
50dc83
+    ec_inode_t *inode_ctx = NULL;
50dc83
+    ec_fd_t *fd_ctx = NULL;
50dc83
+
50dc83
+    LOCK(&fd->lock);
50dc83
+    {
50dc83
+        fd_ctx = __ec_fd_get(fd, xl);
50dc83
+        if (fd_ctx) {
50dc83
+            fversion = fd_ctx->bad_version;
50dc83
+        }
50dc83
+    }
50dc83
+    UNLOCK(&fd->lock);
50dc83
+
50dc83
+    LOCK(&fd->inode->lock);
50dc83
+    {
50dc83
+        inode_ctx = __ec_inode_get(fd->inode, xl);
50dc83
+        if (inode_ctx) {
50dc83
+            iversion = inode_ctx->bad_version;
50dc83
+        }
50dc83
+    }
50dc83
+    UNLOCK(&fd->inode->lock);
50dc83
+    if (fversion < iversion) {
50dc83
+        return EBADF;
50dc83
+    }
50dc83
+    return 0;
50dc83
+}
50dc83
+
50dc83
 void
50dc83
 ec_flush(call_frame_t *frame, xlator_t *this, uintptr_t target,
50dc83
          uint32_t fop_flags, fop_flush_cbk_t func, void *data, fd_t *fd,
50dc83
@@ -165,6 +196,14 @@ ec_flush(call_frame_t *frame, xlator_t *this, uintptr_t target,
50dc83
     GF_VALIDATE_OR_GOTO(this->name, frame, out);
50dc83
     GF_VALIDATE_OR_GOTO(this->name, this->private, out);
50dc83
 
50dc83
+    error = ec_validate_fd(fd, this);
50dc83
+    if (error) {
50dc83
+        gf_msg(this->name, GF_LOG_ERROR, EBADF, EC_MSG_FD_BAD,
50dc83
+               "Failing %s on %s", gf_fop_list[GF_FOP_FLUSH],
50dc83
+               fd->inode ? uuid_utoa(fd->inode->gfid) : "");
50dc83
+        goto out;
50dc83
+    }
50dc83
+
50dc83
     fop = ec_fop_data_allocate(frame, this, GF_FOP_FLUSH, 0, target, fop_flags,
50dc83
                                ec_wind_flush, ec_manager_flush, callback, data);
50dc83
     if (fop == NULL) {
50dc83
@@ -381,6 +420,14 @@ ec_fsync(call_frame_t *frame, xlator_t *this, uintptr_t target,
50dc83
     GF_VALIDATE_OR_GOTO(this->name, frame, out);
50dc83
     GF_VALIDATE_OR_GOTO(this->name, this->private, out);
50dc83
 
50dc83
+    error = ec_validate_fd(fd, this);
50dc83
+    if (error) {
50dc83
+        gf_msg(this->name, GF_LOG_ERROR, EBADF, EC_MSG_FD_BAD,
50dc83
+               "Failing %s on %s", gf_fop_list[GF_FOP_FSYNC],
50dc83
+               fd->inode ? uuid_utoa(fd->inode->gfid) : "");
50dc83
+        goto out;
50dc83
+    }
50dc83
+
50dc83
     fop = ec_fop_data_allocate(frame, this, GF_FOP_FSYNC, 0, target, fop_flags,
50dc83
                                ec_wind_fsync, ec_manager_fsync, callback, data);
50dc83
     if (fop == NULL) {
50dc83
diff --git a/xlators/cluster/ec/src/ec-helpers.c b/xlators/cluster/ec/src/ec-helpers.c
50dc83
index 43f6e3b..baac001 100644
50dc83
--- a/xlators/cluster/ec/src/ec-helpers.c
50dc83
+++ b/xlators/cluster/ec/src/ec-helpers.c
50dc83
@@ -753,6 +753,7 @@ __ec_fd_get(fd_t *fd, xlator_t *xl)
50dc83
 {
50dc83
     int i = 0;
50dc83
     ec_fd_t *ctx = NULL;
50dc83
+    ec_inode_t *ictx = NULL;
50dc83
     uint64_t value = 0;
50dc83
     ec_t *ec = xl->private;
50dc83
 
50dc83
@@ -775,6 +776,12 @@ __ec_fd_get(fd_t *fd, xlator_t *xl)
50dc83
                 GF_FREE(ctx);
50dc83
                 return NULL;
50dc83
             }
50dc83
+            /* Only refering bad-version so no need for lock
50dc83
+             * */
50dc83
+            ictx = __ec_inode_get(fd->inode, xl);
50dc83
+            if (ictx) {
50dc83
+                ctx->bad_version = ictx->bad_version;
50dc83
+            }
50dc83
         }
50dc83
     } else {
50dc83
         ctx = (ec_fd_t *)(uintptr_t)value;
50dc83
diff --git a/xlators/cluster/ec/src/ec-messages.h b/xlators/cluster/ec/src/ec-messages.h
50dc83
index 7c28808..be86b37 100644
50dc83
--- a/xlators/cluster/ec/src/ec-messages.h
50dc83
+++ b/xlators/cluster/ec/src/ec-messages.h
50dc83
@@ -55,6 +55,6 @@ GLFS_MSGID(EC, EC_MSG_INVALID_CONFIG, EC_MSG_HEAL_FAIL,
50dc83
            EC_MSG_CONFIG_XATTR_INVALID, EC_MSG_EXTENSION, EC_MSG_EXTENSION_NONE,
50dc83
            EC_MSG_EXTENSION_UNKNOWN, EC_MSG_EXTENSION_UNSUPPORTED,
50dc83
            EC_MSG_EXTENSION_FAILED, EC_MSG_NO_GF, EC_MSG_MATRIX_FAILED,
50dc83
-           EC_MSG_DYN_CREATE_FAILED, EC_MSG_DYN_CODEGEN_FAILED);
50dc83
+           EC_MSG_DYN_CREATE_FAILED, EC_MSG_DYN_CODEGEN_FAILED, EC_MSG_FD_BAD);
50dc83
 
50dc83
 #endif /* !_EC_MESSAGES_H_ */
50dc83
diff --git a/xlators/cluster/ec/src/ec-types.h b/xlators/cluster/ec/src/ec-types.h
50dc83
index 1c295c0..f27f2ec 100644
50dc83
--- a/xlators/cluster/ec/src/ec-types.h
50dc83
+++ b/xlators/cluster/ec/src/ec-types.h
50dc83
@@ -150,6 +150,7 @@ struct _ec_fd {
50dc83
     loc_t loc;
50dc83
     uintptr_t open;
50dc83
     int32_t flags;
50dc83
+    uint64_t bad_version;
50dc83
     ec_fd_status_t fd_status[0];
50dc83
 };
50dc83
 
50dc83
@@ -180,6 +181,7 @@ struct _ec_inode {
50dc83
     uint64_t dirty[2];
50dc83
     struct list_head heal;
50dc83
     ec_stripe_list_t stripe_cache;
50dc83
+    uint64_t bad_version;
50dc83
 };
50dc83
 
50dc83
 typedef int32_t (*fop_heal_cbk_t)(call_frame_t *, void *, xlator_t *, int32_t,
50dc83
-- 
50dc83
1.8.3.1
50dc83