repository.py 23 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595
  1. from configparser import RawConfigParser
  2. from binascii import hexlify
  3. from itertools import islice
  4. import errno
  5. import os
  6. import shutil
  7. import struct
  8. import sys
  9. from zlib import crc32
  10. from .hashindex import NSIndex
  11. from .helpers import Error, IntegrityError, read_msgpack, write_msgpack, unhexlify, UpgradableLock
  12. from .lrucache import LRUCache
  13. MAX_OBJECT_SIZE = 20 * 1024 * 1024
  14. MAGIC = b'ATTICSEG'
  15. TAG_PUT = 0
  16. TAG_DELETE = 1
  17. TAG_COMMIT = 2
  18. class Repository:
  19. """Filesystem based transactional key value store
  20. On disk layout:
  21. dir/README
  22. dir/config
  23. dir/data/<X / SEGMENTS_PER_DIR>/<X>
  24. dir/index.X
  25. dir/hints.X
  26. """
  27. DEFAULT_MAX_SEGMENT_SIZE = 5 * 1024 * 1024
  28. DEFAULT_SEGMENTS_PER_DIR = 10000
  29. class DoesNotExist(Error):
  30. """Repository {} does not exist."""
  31. class AlreadyExists(Error):
  32. """Repository {} already exists."""
  33. class InvalidRepository(Error):
  34. """{} is not a valid repository."""
  35. class CheckNeeded(Error):
  36. """Inconsistency detected. Please run "borg check {}"."""
  37. class ObjectNotFound(Error):
  38. """Object with key {} not found in repository {}."""
  39. def __init__(self, path, create=False, exclusive=False):
  40. self.path = path
  41. self.io = None
  42. self.lock = None
  43. self.index = None
  44. self._active_txn = False
  45. if create:
  46. self.create(path)
  47. self.open(path, exclusive)
  48. def __del__(self):
  49. self.close()
  50. def create(self, path):
  51. """Create a new empty repository at `path`
  52. """
  53. if os.path.exists(path) and (not os.path.isdir(path) or os.listdir(path)):
  54. raise self.AlreadyExists(path)
  55. if not os.path.exists(path):
  56. os.mkdir(path)
  57. with open(os.path.join(path, 'README'), 'w') as fd:
  58. fd.write('This is a Borg repository\n')
  59. os.mkdir(os.path.join(path, 'data'))
  60. config = RawConfigParser()
  61. config.add_section('repository')
  62. config.set('repository', 'version', '1')
  63. config.set('repository', 'segments_per_dir', self.DEFAULT_SEGMENTS_PER_DIR)
  64. config.set('repository', 'max_segment_size', self.DEFAULT_MAX_SEGMENT_SIZE)
  65. config.set('repository', 'id', hexlify(os.urandom(32)).decode('ascii'))
  66. with open(os.path.join(path, 'config'), 'w') as fd:
  67. config.write(fd)
  68. def destroy(self):
  69. """Destroy the repository at `self.path`
  70. """
  71. self.close()
  72. os.remove(os.path.join(self.path, 'config')) # kill config first
  73. shutil.rmtree(self.path)
  74. def get_index_transaction_id(self):
  75. indices = sorted((int(name[6:]) for name in os.listdir(self.path) if name.startswith('index.') and name[6:].isdigit()))
  76. if indices:
  77. return indices[-1]
  78. else:
  79. return None
  80. def get_transaction_id(self):
  81. index_transaction_id = self.get_index_transaction_id()
  82. segments_transaction_id = self.io.get_segments_transaction_id()
  83. if index_transaction_id is not None and segments_transaction_id is None:
  84. raise self.CheckNeeded(self.path)
  85. # Attempt to automatically rebuild index if we crashed between commit
  86. # tag write and index save
  87. if index_transaction_id != segments_transaction_id:
  88. if index_transaction_id is not None and index_transaction_id > segments_transaction_id:
  89. replay_from = None
  90. else:
  91. replay_from = index_transaction_id
  92. self.replay_segments(replay_from, segments_transaction_id)
  93. return self.get_index_transaction_id()
  94. def open(self, path, exclusive):
  95. self.path = path
  96. if not os.path.isdir(path):
  97. raise self.DoesNotExist(path)
  98. self.config = RawConfigParser()
  99. self.config.read(os.path.join(self.path, 'config'))
  100. if 'repository' not in self.config.sections() or self.config.getint('repository', 'version') != 1:
  101. raise self.InvalidRepository(path)
  102. self.lock = UpgradableLock(os.path.join(path, 'config'), exclusive)
  103. self.max_segment_size = self.config.getint('repository', 'max_segment_size')
  104. self.segments_per_dir = self.config.getint('repository', 'segments_per_dir')
  105. self.id = unhexlify(self.config.get('repository', 'id').strip())
  106. self.io = LoggedIO(self.path, self.max_segment_size, self.segments_per_dir)
  107. def close(self):
  108. if self.lock:
  109. if self.io:
  110. self.io.close()
  111. self.io = None
  112. self.lock.release()
  113. self.lock = None
  114. def commit(self):
  115. """Commit transaction
  116. """
  117. self.io.write_commit()
  118. self.compact_segments()
  119. self.write_index()
  120. self.rollback()
  121. def open_index(self, transaction_id):
  122. if transaction_id is None:
  123. return NSIndex()
  124. return NSIndex.read((os.path.join(self.path, 'index.%d') % transaction_id).encode('utf-8'))
  125. def prepare_txn(self, transaction_id, do_cleanup=True):
  126. self._active_txn = True
  127. self.lock.upgrade()
  128. if not self.index:
  129. self.index = self.open_index(transaction_id)
  130. if transaction_id is None:
  131. self.segments = {}
  132. self.compact = set()
  133. else:
  134. if do_cleanup:
  135. self.io.cleanup(transaction_id)
  136. hints = read_msgpack(os.path.join(self.path, 'hints.%d' % transaction_id))
  137. if hints[b'version'] != 1:
  138. raise ValueError('Unknown hints file version: %d' % hints['version'])
  139. self.segments = hints[b'segments']
  140. self.compact = set(hints[b'compact'])
  141. def write_index(self):
  142. hints = {b'version': 1,
  143. b'segments': self.segments,
  144. b'compact': list(self.compact)}
  145. transaction_id = self.io.get_segments_transaction_id()
  146. write_msgpack(os.path.join(self.path, 'hints.%d' % transaction_id), hints)
  147. self.index.write(os.path.join(self.path, 'index.tmp'))
  148. os.rename(os.path.join(self.path, 'index.tmp'),
  149. os.path.join(self.path, 'index.%d' % transaction_id))
  150. # Remove old indices
  151. current = '.%d' % transaction_id
  152. for name in os.listdir(self.path):
  153. if not name.startswith('index.') and not name.startswith('hints.'):
  154. continue
  155. if name.endswith(current):
  156. continue
  157. os.unlink(os.path.join(self.path, name))
  158. self.index = None
  159. def compact_segments(self):
  160. """Compact sparse segments by copying data into new segments
  161. """
  162. if not self.compact:
  163. return
  164. index_transaction_id = self.get_index_transaction_id()
  165. segments = self.segments
  166. for segment in sorted(self.compact):
  167. if self.io.segment_exists(segment):
  168. for tag, key, offset, data in self.io.iter_objects(segment, include_data=True):
  169. if tag == TAG_PUT and self.index.get(key, (-1, -1)) == (segment, offset):
  170. new_segment, offset = self.io.write_put(key, data)
  171. self.index[key] = new_segment, offset
  172. segments.setdefault(new_segment, 0)
  173. segments[new_segment] += 1
  174. segments[segment] -= 1
  175. elif tag == TAG_DELETE:
  176. if index_transaction_id is None or segment > index_transaction_id:
  177. self.io.write_delete(key)
  178. assert segments[segment] == 0
  179. self.io.write_commit()
  180. for segment in sorted(self.compact):
  181. assert self.segments.pop(segment) == 0
  182. self.io.delete_segment(segment)
  183. self.compact = set()
  184. def replay_segments(self, index_transaction_id, segments_transaction_id):
  185. self.prepare_txn(index_transaction_id, do_cleanup=False)
  186. for segment, filename in self.io.segment_iterator():
  187. if index_transaction_id is not None and segment <= index_transaction_id:
  188. continue
  189. if segment > segments_transaction_id:
  190. break
  191. self.segments[segment] = 0
  192. for tag, key, offset in self.io.iter_objects(segment):
  193. if tag == TAG_PUT:
  194. try:
  195. s, _ = self.index[key]
  196. self.compact.add(s)
  197. self.segments[s] -= 1
  198. except KeyError:
  199. pass
  200. self.index[key] = segment, offset
  201. self.segments[segment] += 1
  202. elif tag == TAG_DELETE:
  203. try:
  204. s, _ = self.index.pop(key)
  205. self.segments[s] -= 1
  206. self.compact.add(s)
  207. except KeyError:
  208. pass
  209. self.compact.add(segment)
  210. elif tag == TAG_COMMIT:
  211. continue
  212. else:
  213. raise self.CheckNeeded(self.path)
  214. if self.segments[segment] == 0:
  215. self.compact.add(segment)
  216. self.write_index()
  217. self.rollback()
  218. def check(self, repair=False):
  219. """Check repository consistency
  220. This method verifies all segment checksums and makes sure
  221. the index is consistent with the data stored in the segments.
  222. """
  223. error_found = False
  224. def report_error(msg):
  225. nonlocal error_found
  226. error_found = True
  227. print(msg, file=sys.stderr)
  228. assert not self._active_txn
  229. try:
  230. transaction_id = self.get_transaction_id()
  231. current_index = self.open_index(transaction_id)
  232. except Exception:
  233. transaction_id = self.io.get_segments_transaction_id()
  234. current_index = None
  235. if transaction_id is None:
  236. transaction_id = self.get_index_transaction_id()
  237. if transaction_id is None:
  238. transaction_id = self.io.get_latest_segment()
  239. if repair:
  240. self.io.cleanup(transaction_id)
  241. segments_transaction_id = self.io.get_segments_transaction_id()
  242. self.prepare_txn(None)
  243. for segment, filename in self.io.segment_iterator():
  244. if segment > transaction_id:
  245. continue
  246. try:
  247. objects = list(self.io.iter_objects(segment))
  248. except (IntegrityError, struct.error):
  249. report_error('Error reading segment {}'.format(segment))
  250. objects = []
  251. if repair:
  252. self.io.recover_segment(segment, filename)
  253. objects = list(self.io.iter_objects(segment))
  254. self.segments[segment] = 0
  255. for tag, key, offset in objects:
  256. if tag == TAG_PUT:
  257. try:
  258. s, _ = self.index[key]
  259. self.compact.add(s)
  260. self.segments[s] -= 1
  261. except KeyError:
  262. pass
  263. self.index[key] = segment, offset
  264. self.segments[segment] += 1
  265. elif tag == TAG_DELETE:
  266. try:
  267. s, _ = self.index.pop(key)
  268. self.segments[s] -= 1
  269. self.compact.add(s)
  270. except KeyError:
  271. pass
  272. self.compact.add(segment)
  273. elif tag == TAG_COMMIT:
  274. continue
  275. else:
  276. report_error('Unexpected tag {} in segment {}'.format(tag, segment))
  277. # We might need to add a commit tag if no committed segment is found
  278. if repair and segments_transaction_id is None:
  279. report_error('Adding commit tag to segment {}'.format(transaction_id))
  280. self.io.segment = transaction_id + 1
  281. self.io.write_commit()
  282. self.io.close_segment()
  283. if current_index and not repair:
  284. if len(current_index) != len(self.index):
  285. report_error('Index object count mismatch. {} != {}'.format(len(current_index), len(self.index)))
  286. elif current_index:
  287. for key, value in self.index.iteritems():
  288. if current_index.get(key, (-1, -1)) != value:
  289. report_error('Index mismatch for key {}. {} != {}'.format(key, value, current_index.get(key, (-1, -1))))
  290. if repair:
  291. self.compact_segments()
  292. self.write_index()
  293. self.rollback()
  294. return not error_found or repair
  295. def rollback(self):
  296. """
  297. """
  298. self.index = None
  299. self._active_txn = False
  300. def __len__(self):
  301. if not self.index:
  302. self.index = self.open_index(self.get_transaction_id())
  303. return len(self.index)
  304. def list(self, limit=None, marker=None):
  305. if not self.index:
  306. self.index = self.open_index(self.get_transaction_id())
  307. return [id_ for id_, _ in islice(self.index.iteritems(marker=marker), limit)]
  308. def get(self, id_):
  309. if not self.index:
  310. self.index = self.open_index(self.get_transaction_id())
  311. try:
  312. segment, offset = self.index[id_]
  313. return self.io.read(segment, offset, id_)
  314. except KeyError:
  315. raise self.ObjectNotFound(id_, self.path)
  316. def get_many(self, ids, is_preloaded=False):
  317. for id_ in ids:
  318. yield self.get(id_)
  319. def put(self, id, data, wait=True):
  320. if not self._active_txn:
  321. self.prepare_txn(self.get_transaction_id())
  322. try:
  323. segment, _ = self.index[id]
  324. self.segments[segment] -= 1
  325. self.compact.add(segment)
  326. segment = self.io.write_delete(id)
  327. self.segments.setdefault(segment, 0)
  328. self.compact.add(segment)
  329. except KeyError:
  330. pass
  331. segment, offset = self.io.write_put(id, data)
  332. self.segments.setdefault(segment, 0)
  333. self.segments[segment] += 1
  334. self.index[id] = segment, offset
  335. def delete(self, id, wait=True):
  336. if not self._active_txn:
  337. self.prepare_txn(self.get_transaction_id())
  338. try:
  339. segment, offset = self.index.pop(id)
  340. except KeyError:
  341. raise self.ObjectNotFound(id, self.path)
  342. self.segments[segment] -= 1
  343. self.compact.add(segment)
  344. segment = self.io.write_delete(id)
  345. self.compact.add(segment)
  346. self.segments.setdefault(segment, 0)
  347. def preload(self, ids):
  348. """Preload objects (only applies to remote repositories
  349. """
  350. class LoggedIO:
  351. header_fmt = struct.Struct('<IIB')
  352. assert header_fmt.size == 9
  353. put_header_fmt = struct.Struct('<IIB32s')
  354. assert put_header_fmt.size == 41
  355. header_no_crc_fmt = struct.Struct('<IB')
  356. assert header_no_crc_fmt.size == 5
  357. crc_fmt = struct.Struct('<I')
  358. assert crc_fmt.size == 4
  359. _commit = header_no_crc_fmt.pack(9, TAG_COMMIT)
  360. COMMIT = crc_fmt.pack(crc32(_commit)) + _commit
  361. def __init__(self, path, limit, segments_per_dir, capacity=90):
  362. self.path = path
  363. self.fds = LRUCache(capacity)
  364. self.segment = 0
  365. self.limit = limit
  366. self.segments_per_dir = segments_per_dir
  367. self.offset = 0
  368. self._write_fd = None
  369. def close(self):
  370. for segment in list(self.fds.keys()):
  371. self.fds.pop(segment).close()
  372. self.close_segment()
  373. self.fds = None # Just to make sure we're disabled
  374. def segment_iterator(self, reverse=False):
  375. data_path = os.path.join(self.path, 'data')
  376. dirs = sorted((dir for dir in os.listdir(data_path) if dir.isdigit()), key=int, reverse=reverse)
  377. for dir in dirs:
  378. filenames = os.listdir(os.path.join(data_path, dir))
  379. sorted_filenames = sorted((filename for filename in filenames
  380. if filename.isdigit()), key=int, reverse=reverse)
  381. for filename in sorted_filenames:
  382. yield int(filename), os.path.join(data_path, dir, filename)
  383. def get_latest_segment(self):
  384. for segment, filename in self.segment_iterator(reverse=True):
  385. return segment
  386. return None
  387. def get_segments_transaction_id(self):
  388. """Verify that the transaction id is consistent with the index transaction id
  389. """
  390. for segment, filename in self.segment_iterator(reverse=True):
  391. if self.is_committed_segment(filename):
  392. return segment
  393. return None
  394. def cleanup(self, transaction_id):
  395. """Delete segment files left by aborted transactions
  396. """
  397. self.segment = transaction_id + 1
  398. for segment, filename in self.segment_iterator(reverse=True):
  399. if segment > transaction_id:
  400. os.unlink(filename)
  401. else:
  402. break
  403. def is_committed_segment(self, filename):
  404. """Check if segment ends with a COMMIT_TAG tag
  405. """
  406. with open(filename, 'rb') as fd:
  407. try:
  408. fd.seek(-self.header_fmt.size, os.SEEK_END)
  409. except OSError as e:
  410. # return False if segment file is empty or too small
  411. if e.errno == errno.EINVAL:
  412. return False
  413. raise e
  414. return fd.read(self.header_fmt.size) == self.COMMIT
  415. def segment_filename(self, segment):
  416. return os.path.join(self.path, 'data', str(segment // self.segments_per_dir), str(segment))
  417. def get_write_fd(self, no_new=False):
  418. if not no_new and self.offset and self.offset > self.limit:
  419. self.close_segment()
  420. if not self._write_fd:
  421. if self.segment % self.segments_per_dir == 0:
  422. dirname = os.path.join(self.path, 'data', str(self.segment // self.segments_per_dir))
  423. if not os.path.exists(dirname):
  424. os.mkdir(dirname)
  425. self._write_fd = open(self.segment_filename(self.segment), 'ab')
  426. self._write_fd.write(MAGIC)
  427. self.offset = 8
  428. return self._write_fd
  429. def get_fd(self, segment):
  430. try:
  431. return self.fds[segment]
  432. except KeyError:
  433. fd = open(self.segment_filename(segment), 'rb')
  434. self.fds[segment] = fd
  435. return fd
  436. def delete_segment(self, segment):
  437. try:
  438. os.unlink(self.segment_filename(segment))
  439. except OSError:
  440. pass
  441. def segment_exists(self, segment):
  442. return os.path.exists(self.segment_filename(segment))
  443. def iter_objects(self, segment, include_data=False):
  444. fd = self.get_fd(segment)
  445. fd.seek(0)
  446. if fd.read(8) != MAGIC:
  447. raise IntegrityError('Invalid segment header')
  448. offset = 8
  449. header = fd.read(self.header_fmt.size)
  450. while header:
  451. crc, size, tag = self.header_fmt.unpack(header)
  452. if size > MAX_OBJECT_SIZE:
  453. raise IntegrityError('Invalid segment object size')
  454. rest = fd.read(size - self.header_fmt.size)
  455. if crc32(rest, crc32(memoryview(header)[4:])) & 0xffffffff != crc:
  456. raise IntegrityError('Segment checksum mismatch')
  457. if tag not in (TAG_PUT, TAG_DELETE, TAG_COMMIT):
  458. raise IntegrityError('Invalid segment entry header')
  459. key = None
  460. if tag in (TAG_PUT, TAG_DELETE):
  461. key = rest[:32]
  462. if include_data:
  463. yield tag, key, offset, rest[32:]
  464. else:
  465. yield tag, key, offset
  466. offset += size
  467. header = fd.read(self.header_fmt.size)
  468. def recover_segment(self, segment, filename):
  469. self.fds.pop(segment).close()
  470. # FIXME: save a copy of the original file
  471. with open(filename, 'rb') as fd:
  472. data = memoryview(fd.read())
  473. os.rename(filename, filename + '.beforerecover')
  474. print('attempting to recover ' + filename, file=sys.stderr)
  475. with open(filename, 'wb') as fd:
  476. fd.write(MAGIC)
  477. while len(data) >= self.header_fmt.size:
  478. crc, size, tag = self.header_fmt.unpack(data[:self.header_fmt.size])
  479. if size < self.header_fmt.size or size > len(data):
  480. data = data[1:]
  481. continue
  482. if crc32(data[4:size]) & 0xffffffff != crc:
  483. data = data[1:]
  484. continue
  485. fd.write(data[:size])
  486. data = data[size:]
  487. def read(self, segment, offset, id):
  488. if segment == self.segment and self._write_fd:
  489. self._write_fd.flush()
  490. fd = self.get_fd(segment)
  491. fd.seek(offset)
  492. header = fd.read(self.put_header_fmt.size)
  493. crc, size, tag, key = self.put_header_fmt.unpack(header)
  494. if size > MAX_OBJECT_SIZE:
  495. raise IntegrityError('Invalid segment object size')
  496. data = fd.read(size - self.put_header_fmt.size)
  497. if crc32(data, crc32(memoryview(header)[4:])) & 0xffffffff != crc:
  498. raise IntegrityError('Segment checksum mismatch')
  499. if tag != TAG_PUT or id != key:
  500. raise IntegrityError('Invalid segment entry header')
  501. return data
  502. def write_put(self, id, data):
  503. size = len(data) + self.put_header_fmt.size
  504. fd = self.get_write_fd()
  505. offset = self.offset
  506. header = self.header_no_crc_fmt.pack(size, TAG_PUT)
  507. crc = self.crc_fmt.pack(crc32(data, crc32(id, crc32(header))) & 0xffffffff)
  508. fd.write(b''.join((crc, header, id, data)))
  509. self.offset += size
  510. return self.segment, offset
  511. def write_delete(self, id):
  512. fd = self.get_write_fd()
  513. header = self.header_no_crc_fmt.pack(self.put_header_fmt.size, TAG_DELETE)
  514. crc = self.crc_fmt.pack(crc32(id, crc32(header)) & 0xffffffff)
  515. fd.write(b''.join((crc, header, id)))
  516. self.offset += self.put_header_fmt.size
  517. return self.segment
  518. def write_commit(self):
  519. fd = self.get_write_fd(no_new=True)
  520. header = self.header_no_crc_fmt.pack(self.header_fmt.size, TAG_COMMIT)
  521. crc = self.crc_fmt.pack(crc32(header) & 0xffffffff)
  522. fd.write(b''.join((crc, header)))
  523. self.close_segment()
  524. def close_segment(self):
  525. if self._write_fd:
  526. self.segment += 1
  527. self.offset = 0
  528. self._write_fd.flush()
  529. os.fsync(self._write_fd.fileno())
  530. if hasattr(os, 'posix_fadvise'): # python >= 3.3, only on UNIX
  531. # tell the OS that it does not need to cache what we just wrote,
  532. # avoids spoiling the cache for the OS and other processes.
  533. os.posix_fadvise(self._write_fd.fileno(), 0, 0, os.POSIX_FADV_DONTNEED)
  534. self._write_fd.close()
  535. self._write_fd = None