master
11127 Commits
| Author | SHA1 | Message | Date | |
|---|---|---|---|---|
|
Alistair Coles
|
ffdf962598 |
object-expirer: fix unused _make_internal_client arg
The RelatedChange introduced a _make_internal_client() method with an unused argument 'is_legacy_conf'. This patch completes the original intention i.e. for the selection of internal client config path to also be moved to the new method and use the 'is_legacy_conf' arg. Change-Id: I5075cb446a15edc7f47e83f6aa038c626bd1dd82 RelatedChange: Ia6e1e6a8b58a8476fa16a3c7d45e620c6d7f88e4 |
||
|
Zuul
|
6f7687b23c | Merge "trivial: Use already-parsed a/c/o" | ||
|
Zuul
|
8efb333872 | Merge "diskfile: Treat EUCLEAN like ENODATA" | ||
|
Zuul
|
98eb28d510 | Merge "utils: paths with empty components are invalid" | ||
|
Zuul
|
5726778ab6 | Merge "functest: add checks for quota count API" | ||
|
Tim Burke
|
f7db1ec3cf |
CI: use private IPs for multinode tests
If the nodepool provider uses NAT'd floating IPs, the public IP won't actually be available locally for binding. This has caused a bunch of failures on raxflex lately. Change-Id: I5669a814377242e9939a09a42bb36642358b85b3 |
||
|
Zuul
|
146bfeb643 | Merge "proxy-logging: Clean up some timing assertions" | ||
|
Chris Smart
|
112423f59c |
functest: add checks for quota count API
The account quota middleware was missing tests for the new quota count API and it was also only testing the legacy API for quota bytes. This adds the new APIs quota bytes and quota count to the functional tests. Change-Id: I6ebb19c90dfb1cfbe0535ed3860f2319e5153c05 |
||
|
Tim Burke
|
d405465b32 |
trivial: Use already-parsed a/c/o
We don't need to go counting slashes or catching IndexErrors; we've already done all the path-parsing we need to do. This also makes it clear that stat_type can never be None. Change-Id: I25f91b1943b91c7429219c3b5a4280abe9bef5b3 |
||
|
Tim Burke
|
015cbaac86 |
utils: paths with empty components are invalid
Note that you can still have a "//" in the path with rest_with_last, though. Change-Id: I171afcd67b162634189b752ff92a4f43484bc12a |
||
|
Tim Burke
|
7be25604db |
proxy-logging: Clean up some timing assertions
Related-Change: I526bbcc59c9eb5923c3784d5d06bc38998cb48db Change-Id: I820339934f895557ebcde4bb32168b0cfc494948 |
||
|
Daanish Khan
|
4eefae2482 |
account_quota: migrate quota_bytes and quota_count to the sysmeta namespace
Account quota metadata such as quota_bytes and quota_count are stored in the `meta` namespace which users have access to. However, this should be only available to reseller admins. This patch adds support for writing the quota metadata to `sysmeta` namespace, so that it is not accessible by users. The account policy quota is already using `sysmeta` and has the namespace `X-Account-Quota-*`, so we are following this pattern. If present, `X-Account-Quota-Bytes` is always preferred. However, in order to maintain backwards compatibility, `X-Account-Meta-Quota-Bytes` will still be honoured if it exists and `X-Account-Quota-Bytes` is not present. This also adds some new "legacy" tests to validate backwards compatibility. Co-authored-by: Azmain Adib <adib1905@gmail.com> Co-authored-by: Daanish Khan <daanish1337@gmail.com> Co-authored-by: Mohammed Al-Jawaheri <mjawaheri02@gmail.com> Co-authored-by: Nada El-Mestkawy <nadamaged05@gmail.com> Co-authored-by: Tra Bui <trabui.0517@gmail.com> Co-authored-by: Chris Smart <distroguy@gmail.com> Change-Id: Icf7b26023ab5b84136ceaa103fa2797534320f1a |
||
|
Tim Burke
|
cd0fe25da1 |
account_quotas: Fix X-Remove-Account-Quota-Bytes-Policy-<name>
Previously, this would reduce the account's quota to zero, which seems like the opposite of what the operator intended. Now, remove the quota, similar to sending an empty quota header. Change-Id: Ic28752d835e0b970f2baa4e68cbfcde4f500b3d4 |
||
|
Tim Burke
|
cd288b183d |
tests: Functionally test account quotas
Change-Id: Ied0ff6bea7e054fad3fe9579c85d9ae5c9c0b255 |
||
|
Zuul
|
99e1c019b5 | Merge "common: Stop translating a bunch of printed messages and exceptions" | ||
|
Zuul
|
349d225085 | Merge "common: Stop translating log messages" | ||
|
Zuul
|
48e087b1cc | Merge "object-expirer: refactor creating InternalClient" | ||
|
Zuul
|
27103f04ec | Merge "Remove legacy bin/ scripts" | ||
|
Zuul
|
e9557f3d4b | Merge "Fix proxy logging api version" | ||
|
Zuul
|
dd19613cc2 | Merge "s3api: Clean up some errors" | ||
|
Zuul
|
aa04c3eb9c | Merge "Ignore 404s from handoffs when choosing response code" | ||
|
Tim Burke
|
7bf2797799 |
s3api: Clean up some errors
- SHA256 mismatches should trip XAmzContentSHA256Mismatch errors, not BadDigest. This should include ClientComputedContentSHA256 and S3ComputedContentSHA256 elements. - BadDigest responses should include ExpectedDigest elements. - Fix a typo in InvalidDigest error message. - Requests with a v4 authorization header require a sha256 header, rejecting with InvalidRequest on failure (and pretty darn early!). - Requests with a v4 authorization header perform a looks-like-a-valid-sha256 check, rejecting with InvalidArgument on failure. - Invalid SHA256 should take precedence over invalid MD5. - v2-signed requests can still raise XAmzContentSHA256Mismatch errors (though they *don't* do the looks-like-a-valid-sha256 check). - If provided, SHA256 should be used in calculating canonical request for v4 pre-signed URLs. Change-Id: I06c2a16126886bab8807d704294b9809844be086 |
||
|
Chinemerem
|
f277b2e9b1 |
Add Chinemerem to AUTHORS
Change-Id: I45113d38c9f3d523fb6f3a02adc0f3856da6aaaf |
||
|
Zuul
|
ec8166be33 | Merge "tests: Attempt to use configured tmp in xprofile tests" | ||
|
Tim Burke
|
5e07963548 |
diskfile: Treat EUCLEAN like ENODATA
Found a new way filesystems can break in prod: object-auditor: ERROR Trying to audit .../7a7c4af06d2616f23eda274e2ad9c948: Traceback (most recent call last): File ".../swift/obj/diskfile.py", line 2630, in open files = os.listdir(self._datadir) OSError: [Errno 117] Structure needs cleaning: .../7a7c4af06d2616f23eda274e2ad9c948 During handling of the above exception, another exception occurred: Traceback (most recent call last): File ".../swift/obj/auditor.py", line 238, in failsafe_object_audit self.object_audit(location) File ".../swift/obj/auditor.py", line 261, in object_audit with df.open(modernize=True): File ".../swift/obj/diskfile.py", line 2657, in open "Error listing directory %s: %s" % (self._datadir, err)) swift.common.exceptions.DiskFileError: Error listing directory .../7a7c4af06d2616f23eda274e2ad9c948: [Errno 117] Structure needs cleaning: '.../7a7c4af06d2616f23eda274e2ad9c948' Change-Id: If6731a6b6b16fbc4eebb61254ed10b53e1767a0f |
||
|
Matthew Oliver
|
becb3ffc1a |
tests: Attempt to use configured tmp in xprofile tests
My home server has more strict controls on /tmp as it run selinux etc. When running unittests and the default log_filename_prefix deep under /tmp gets permission denied. It would be better to override this setting in the tests with a good known tmp location Change-Id: I6c95ca3a0045a8f268802c6abb633bdfb0e56b73 |
||
|
Zuul
|
6a0153f545 | Merge "docs: Simplify reload-process-tree SVGs" | ||
|
Tim Burke
|
6ac294b626 |
common: Stop translating a bunch of printed messages and exceptions
Change-Id: I666758fd153cf36a4a2314b5bd50f6cbdb8d7f07 |
||
|
Tim Burke
|
4d888fb13a |
common: Stop translating log messages
Change-Id: I128a64c6126014774bf6218502e6bfdea63b783f Partial-Bug: #1674543 |
||
|
Tim Burke
|
2e11ac32da |
docs: Simplify reload-process-tree SVGs
Those were so unwieldy as to be uneditable before. Change-Id: Ic9f4a0ea6b8e18e1624c516890ab69884a299773 |
||
|
Zuul
|
769baae36e | Merge "account info: Add --sync/-s option" | ||
|
Zuul
|
7cbbee49c9 | Merge "sharder: rename state to db_state when it's the DB state" | ||
|
Yan Xiao
|
26de169ad3 |
Fix proxy logging api version
Change-Id: If5793d1b18cf8f35b8f98206f029f6cc6ca0cf1e |
||
|
Alistair Coles
|
d0f6a0ce56 |
Ignore 404s from handoffs when choosing response code
Previously, when handling an object POST, if the proxy got a 202 and two connection timeouts from the 3 primary backend object servers, it then went to two handoffs which return 404. The proxy would consider this to be a quorum of 404s and return the client a 404 response. This is alarming for the client. With this patch, the proxy will only treat a 404 response from a handoff as authoritative if it has an x-backend-timestamp header (i.e. there's a tombstone on the handoff). POST responses never have an x-backend-timestamp header so in the scenario described above the proxy will return a 503. The Related-Change previously made a similar fix such that 404s from handoffs are already non-authoritative for object GETs and HEADs unless they have an x-backend-timestamp header. Related-Change: Ia832e9bab13167948f01bc50aa8a61974ce189fb Cloeses-Bug: #2077743 Change-Id: I96f28ab0b2b5f9374c399e8905ee240e7b093f8b |
||
|
Alistair Coles
|
92eebe24c6 |
Improve test coverage for proxy object DELETE and POST
Add unit tests for the proxy object controller to cover object DELETE and POST scenarios. Change-Id: I625a4cf03ee9d4a270d60fa2dc9795b36bb36bf1 |
||
|
Alistair Coles
|
87bf4bf5da |
sharder: rename state to db_state when it's the DB state
Sharding involves both container DB state transitions and ShardRange state transitions. To avoid confusion, always use db_state as the var name when referring to the container DB state value. Change-Id: Iaaf494fd4e02017005cb3811b673f967bd6b5e1d |
||
|
Alistair Coles
|
d830703a32 |
Setup proxy object GET and HEAD tests correctly
Some unit tests for the proxy object GET and HEAD path were setup with insufficient mock responses. The mock connection would raise StopIteration exceptions once the mock responses were exhausted, which the object controller would handle as if they were error responses, potentially distorting the test scenario. This patch makes the set_http_connect context manager check for unexpected requests and raise an AssertionError if any are found. Change-Id: I47774396d9d0a78ebceea6c628c9412b3ad67a11 |
||
|
Matthew Oliver
|
e6b73612d1 |
FakeStatsdClient: Stop issuing DNS calls for host.
Running unittests on my home server, even though is a beast, would be painfully slow. Running them on my laptop ran much faster. I tried everything and couldn't figure it out. Chris, co-author, dug in and after we ran out of options he fired up his packet capture and realised most tests were issuing DNS queries for `host.`. On my home server, it runs ipv6 dual stack, so these calls would need to timeout before a test can continue. On finding this `host.` Ben, another co-author, dug into the code and found the only reference we have to `host` is in FakeStatsdClient. Sure enough as I dug a little further it turns out our FakeStatsdClient used to override a StatsdClient function `_determine_sock_family(self, host, port)` to stop actually creating a real socket. However, at some point the StatsdClient was refactored and that method was renamed and changed. Which leads to a DNS lookup every time we create a debug_logger as it brings up the socket. As you can imagine, this happens alot! This patch overrides the new function that handles to socket creation `_set_sock_family_and_target(self, host, port)`. Which eliminates the DNS call all together. Co-Authored-By: Ben Formosa <bformosa@nvidia.com> Co-Authored-By: Chris Smart <csmart@nvidia.com> Change-Id: Ie393075f79447627714692e3f01bb53e967a71e8 |
||
|
Zuul
|
1d5e65ce6a | Merge "Move utils/logs.py related tests out of test_utils" | ||
|
Shreeya Deshpande
|
f5a8851dae |
Move utils/logs.py related tests out of test_utils
Change-Id: Ie73988edf6be0e38d9004bee04ff46c906a759ff |
||
|
Alistair Coles
|
6a5a681227 |
tests: don't mutate and re-use Response headers
Some tests in test_account_quotas.py registered a response with FakeSwift during setUp and then subsequently mutated the response's headers dict. Worse, some tests then mutate the headers again and re-use the same response. This relies on the FakeSwift implementation not copying the original headers when the response is registered, which may not remain the case (as the author discovered with the Related-Change). It's also an unnecessary shortcut. Change-Id: I3217c17936d0c11b03de4a4a172bb2fb0a2be734 Related-Change: I84604a7ea049850ad4d0f0cea2096ab8a98dfb4a |
||
|
Tim Burke
|
a3f4959767 |
Remove legacy bin/ scripts
Change-Id: Ibd111773a496e8e3b1fc1577f40aa69f4328139b |
||
|
Alistair Coles
|
9d14c7c830 |
expirer stats: add test coverage for 'errors' stat
Drive-by: simplify patching of test expirer instance. Drive-by: fix comment spelling. Related-Change: Ib151c498ba325f39570e963e5b7948080ffcd3d6 Change-Id: Ia0041c4eedc33a2675890d52cbbc33b9190f1665 |
||
|
Jianjian Huo
|
b400a1fdb3 |
Expirer: add delete task iteration related metrics
Four new metrics have been added into task iteration process: 'tasks.parse_errors': count of errors when parsing the task object 'tasks.skipped': count of task objects skipped because it doesn't belong to this expirer. 'tasks.delayed': count of objects is still within the delay 'tasks.assigned': count of assigned objects to this expirer Co-Authored-By: Alistair Coles <alistairncoles@gmail.com> Co-Authored-By: Clay Gerrard <clay.gerrard@gmail.com> Change-Id: Ib151c498ba325f39570e963e5b7948080ffcd3d6 |
||
|
Zuul
|
682c71afe4 | Merge "Implement context manager protocol for logging mutexes" | ||
|
Zuul
|
c581f85b7f | Merge "Pass timeout as kwarg" | ||
|
Zuul
|
dd75cc72dc | Merge "Move remaining bin scripts to cli modules" | ||
|
Zuul
|
44c70caba3 | Merge "Pull swift-*-info scripts into swift.cli.info" | ||
|
Tim Burke
|
fd7861313f |
Pass timeout as kwarg
Cleans up a deprecation warning: DeprecationWarning: Passing more than 1 positional argument to _sqlite3.Connection() is deprecated. Parameters 'timeout', 'detect_types', 'isolation_level', 'check_same_thread', 'factory', 'cached_statements' and 'uri' will become keyword-only parameters in Python 3.15. Change-Id: I2b11487f8174e36b024c503d7e78de1904e0a281 |
||
|
Tim Burke
|
7c7ab03e2d |
Implement context manager protocol for logging mutexes
Newer versions of python expect to be able to say `with self.lock:` down in logging. See https://github.com/python/cpython/commit/74723e11 Change-Id: I30305566d12a1b8be4c8bde4b416b798322a1385 |