2014-04-17 17:43:01 -04:00
package daemon
2013-01-18 19:13:39 -05:00
import (
2015-05-15 19:34:26 -04:00
"errors"
2013-01-18 19:13:39 -05:00
"fmt"
2014-04-28 17:36:04 -04:00
"io"
"io/ioutil"
"os"
2015-01-16 14:48:25 -05:00
"path/filepath"
2014-04-28 17:36:04 -04:00
"regexp"
2014-07-30 02:51:43 -04:00
"runtime"
2014-04-28 17:36:04 -04:00
"strings"
"sync"
"time"
2015-03-26 18:22:04 -04:00
"github.com/Sirupsen/logrus"
2014-11-17 14:23:41 -05:00
"github.com/docker/docker/api"
2015-04-03 18:17:49 -04:00
"github.com/docker/docker/daemon/events"
2014-07-24 18:19:50 -04:00
"github.com/docker/docker/daemon/execdriver"
"github.com/docker/docker/daemon/execdriver/execdrivers"
"github.com/docker/docker/daemon/graphdriver"
2015-06-16 09:08:10 -04:00
_ "github.com/docker/docker/daemon/graphdriver/vfs"
2015-04-09 00:23:30 -04:00
"github.com/docker/docker/daemon/logger"
2015-04-04 00:06:48 -04:00
"github.com/docker/docker/daemon/network"
2014-07-24 18:19:50 -04:00
"github.com/docker/docker/graph"
2014-07-30 11:16:10 -04:00
"github.com/docker/docker/pkg/broadcastwriter"
2015-03-29 17:17:23 -04:00
"github.com/docker/docker/pkg/fileutils"
2014-07-24 18:19:50 -04:00
"github.com/docker/docker/pkg/graphdb"
2014-08-12 12:10:43 -04:00
"github.com/docker/docker/pkg/ioutils"
2014-07-24 18:19:50 -04:00
"github.com/docker/docker/pkg/namesgenerator"
2015-03-24 07:25:26 -04:00
"github.com/docker/docker/pkg/stringid"
2014-07-24 18:19:50 -04:00
"github.com/docker/docker/pkg/sysinfo"
2015-05-15 19:34:26 -04:00
"github.com/docker/docker/pkg/system"
2014-07-24 18:19:50 -04:00
"github.com/docker/docker/pkg/truncindex"
2015-03-31 19:21:37 -04:00
"github.com/docker/docker/registry"
2014-07-24 18:19:50 -04:00
"github.com/docker/docker/runconfig"
2014-10-01 21:26:06 -04:00
"github.com/docker/docker/trust"
2015-06-15 19:33:02 -04:00
"github.com/docker/libcontainer/netlink"
2015-05-15 19:34:26 -04:00
"github.com/docker/libnetwork"
2013-01-18 19:13:39 -05:00
)
2013-12-12 16:34:26 -05:00
var (
2014-09-12 13:45:07 -04:00
validContainerNameChars = ` [a-zA-Z0-9][a-zA-Z0-9_.-] `
2013-12-16 21:17:22 -05:00
validContainerNamePattern = regexp . MustCompile ( ` ^/? ` + validContainerNameChars + ` +$ ` )
2015-05-15 19:34:26 -04:00
// TODO Windows. Change this once daemon is up and running.
ErrSystemNotSupported = errors . New ( "The Docker daemon is only supported on linux" )
2013-12-12 16:34:26 -05:00
)
2013-09-06 20:33:05 -04:00
2014-05-30 04:55:25 -04:00
type contStore struct {
s map [ string ] * Container
sync . Mutex
}
func ( c * contStore ) Add ( id string , cont * Container ) {
c . Lock ( )
c . s [ id ] = cont
c . Unlock ( )
}
func ( c * contStore ) Get ( id string ) * Container {
c . Lock ( )
res := c . s [ id ]
c . Unlock ( )
return res
}
func ( c * contStore ) Delete ( id string ) {
c . Lock ( )
delete ( c . s , id )
c . Unlock ( )
}
func ( c * contStore ) List ( ) [ ] * Container {
containers := new ( History )
2014-06-05 02:49:40 -04:00
c . Lock ( )
2014-05-30 04:55:25 -04:00
for _ , cont := range c . s {
containers . Add ( cont )
}
2014-06-05 02:49:40 -04:00
c . Unlock ( )
2014-05-30 04:55:25 -04:00
containers . Sort ( )
return * containers
}
2014-04-17 17:43:01 -04:00
type Daemon struct {
2015-02-04 14:04:58 -05:00
ID string
repository string
sysInitPath string
containers * contStore
execCommands * execStore
graph * graph . Graph
repositories * graph . TagStore
idIndex * truncindex . TruncIndex
sysInfo * sysinfo . SysInfo
config * Config
containerGraph * graphdb . Database
driver graphdriver . Driver
execDriver execdriver . Driver
statsCollector * statsCollector
defaultLogConfig runconfig . LogConfig
2015-03-31 19:21:37 -04:00
RegistryService * registry . Service
2015-04-03 18:17:49 -04:00
EventsService * events . Events
2015-05-06 18:39:29 -04:00
netController libnetwork . NetworkController
2015-05-19 16:05:25 -04:00
root string
2013-03-21 03:25:00 -04:00
}
2015-02-13 15:14:38 -05:00
// Get looks for a container using the provided information, which could be
// one of the following inputs from the caller:
// - A full container ID, which will exact match a container in daemon's list
// - A container name, which will only exact match via the GetByName() function
// - A partial container ID prefix (e.g. short ID) of any length that is
// unique enough to only return a single container object
// If none of these searches succeed, an error is returned
func ( daemon * Daemon ) Get ( prefixOrName string ) ( * Container , error ) {
if containerByID := daemon . containers . Get ( prefixOrName ) ; containerByID != nil {
2014-12-16 18:06:35 -05:00
// prefix is an exact match to a full container ID
return containerByID , nil
2014-08-06 11:54:13 -04:00
}
2014-11-02 19:25:44 -05:00
2015-02-13 15:14:38 -05:00
// GetByName will match only an exact name provided; we ignore errors
2015-06-09 01:47:31 -04:00
if containerByName , _ := daemon . GetByName ( prefixOrName ) ; containerByName != nil {
2014-12-16 18:06:35 -05:00
// prefix is an exact match to a full container Name
return containerByName , nil
2013-10-04 22:25:15 -04:00
}
2014-11-02 19:25:44 -05:00
2015-06-09 01:47:31 -04:00
containerId , indexError := daemon . idIndex . Get ( prefixOrName )
if indexError != nil {
return nil , indexError
2014-11-02 19:25:44 -05:00
}
2015-06-09 01:47:31 -04:00
return daemon . containers . Get ( containerId ) , nil
2013-01-18 19:13:39 -05:00
}
2013-09-06 20:43:34 -04:00
// Exists returns a true if a container of the specified ID or name exists,
// false otherwise.
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) Exists ( id string ) bool {
2014-12-16 18:06:35 -05:00
c , _ := daemon . Get ( id )
return c != nil
2013-01-18 19:13:39 -05:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) containerRoot ( id string ) string {
2015-05-15 19:34:26 -04:00
return filepath . Join ( daemon . repository , id )
2013-03-21 03:25:00 -04:00
}
2013-10-04 22:25:15 -04:00
// Load reads the contents of a container from disk
2013-09-06 20:43:34 -04:00
// This is typically done at startup.
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) load ( id string ) ( * Container , error ) {
2014-09-18 17:38:22 -04:00
container := & Container {
2015-06-03 12:26:41 -04:00
CommonContainer : daemon . newBaseContainer ( id ) ,
2014-09-18 17:38:22 -04:00
}
2015-04-29 18:53:35 -04:00
2013-03-21 03:25:00 -04:00
if err := container . FromDisk ( ) ; err != nil {
return nil , err
}
2014-08-06 13:40:43 -04:00
2013-06-04 14:00:22 -04:00
if container . ID != id {
return container , fmt . Errorf ( "Container %s is stored at %s" , container . ID , id )
2013-03-21 03:25:00 -04:00
}
2014-08-06 13:40:43 -04:00
2013-01-18 19:13:39 -05:00
return container , nil
}
2014-04-17 17:43:01 -04:00
// Register makes a container object usable by the daemon as <container.ID>
2014-05-14 10:58:37 -04:00
// This is a wrapper for register
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) Register ( container * Container ) error {
2014-08-06 13:40:43 -04:00
return daemon . register ( container , true )
2014-05-14 10:58:37 -04:00
}
// register makes a container object usable by the daemon as <container.ID>
2014-08-06 13:40:43 -04:00
func ( daemon * Daemon ) register ( container * Container , updateSuffixarray bool ) error {
2014-04-17 17:43:01 -04:00
if container . daemon != nil || daemon . Exists ( container . ID ) {
2013-03-21 03:25:00 -04:00
return fmt . Errorf ( "Container is already loaded" )
}
2013-06-04 14:00:22 -04:00
if err := validateID ( container . ID ) ; err != nil {
2013-03-21 03:25:00 -04:00
return err
}
2014-04-17 17:43:01 -04:00
if err := daemon . ensureName ( container ) ; err != nil {
2013-11-04 12:28:40 -05:00
return err
}
2013-03-31 20:40:39 -04:00
2014-04-17 17:43:01 -04:00
container . daemon = daemon
2013-04-09 10:57:59 -04:00
2013-03-21 03:25:00 -04:00
// Attach to stdout and stderr
2014-08-26 18:44:00 -04:00
container . stderr = broadcastwriter . New ( )
container . stdout = broadcastwriter . New ( )
2013-03-21 03:25:00 -04:00
// Attach to stdin
if container . Config . OpenStdin {
2014-08-26 18:44:00 -04:00
container . stdin , container . stdinPipe = io . Pipe ( )
2013-03-21 03:25:00 -04:00
} else {
2014-08-12 12:10:43 -04:00
container . stdinPipe = ioutils . NopWriteCloser ( ioutil . Discard ) // Silently drop stdin
2013-03-21 03:25:00 -04:00
}
// done
2014-05-30 04:55:25 -04:00
daemon . containers . Add ( container . ID , container )
2014-05-14 10:58:37 -04:00
// don't update the Suffixarray if we're starting up
// we'll waste time if we update it for every container
2014-06-24 18:24:02 -04:00
daemon . idIndex . Add ( container . ID )
2013-04-19 15:08:43 -04:00
2015-05-28 16:44:55 -04:00
if err := daemon . verifyVolumesInfo ( container ) ; err != nil {
2015-05-19 16:05:25 -04:00
return err
}
2015-05-20 17:53:53 -04:00
if err := container . prepareMountPoints ( ) ; err != nil {
2015-05-19 16:05:25 -04:00
return err
}
2015-01-16 14:48:25 -05:00
2014-08-31 11:20:35 -04:00
if container . IsRunning ( ) {
2015-03-26 18:22:04 -04:00
logrus . Debugf ( "killing old running container %s" , container . ID )
2015-06-12 04:20:23 -04:00
// Set exit code to 128 + SIGKILL (9) to properly represent unsuccessful exit
container . SetStopped ( & execdriver . ExitStatus { ExitCode : 137 } )
2014-04-17 23:42:57 -04:00
2015-05-04 13:49:28 -04:00
// use the current driver and ensure that the container is dead x.x
cmd := & execdriver . Command {
ID : container . ID ,
2014-04-17 23:42:57 -04:00
}
2015-05-04 13:49:28 -04:00
daemon . execDriver . Terminate ( cmd )
2014-07-21 22:59:44 -04:00
2014-04-17 23:42:57 -04:00
if err := container . Unmount ( ) ; err != nil {
2015-03-26 18:22:04 -04:00
logrus . Debugf ( "unmount error %s" , err )
2014-04-17 23:42:57 -04:00
}
if err := container . ToDisk ( ) ; err != nil {
2015-07-02 06:24:35 -04:00
logrus . Errorf ( "Error saving stopped state to disk: %v" , err )
2014-03-06 17:14:25 -05:00
}
2013-04-19 15:08:43 -04:00
}
2015-04-15 20:39:34 -04:00
2013-03-21 03:25:00 -04:00
return nil
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) ensureName ( container * Container ) error {
2013-11-04 12:28:40 -05:00
if container . Name == "" {
2014-05-23 20:51:16 -04:00
name , err := daemon . generateNewName ( container . ID )
2013-11-04 12:28:40 -05:00
if err != nil {
2014-05-23 20:51:16 -04:00
return err
2013-11-04 12:28:40 -05:00
}
container . Name = name
if err := container . ToDisk ( ) ; err != nil {
2015-07-02 06:24:35 -04:00
logrus . Errorf ( "Error saving container name to disk: %v" , err )
2013-11-04 12:28:40 -05:00
}
}
return nil
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) restore ( ) error {
2015-05-19 16:05:25 -04:00
type cr struct {
container * Container
registered bool
}
2014-06-05 20:31:58 -04:00
var (
2014-08-06 13:40:43 -04:00
debug = ( os . Getenv ( "DEBUG" ) != "" || os . Getenv ( "TEST" ) != "" )
currentDriver = daemon . driver . String ( )
2015-05-19 16:05:25 -04:00
containers = make ( map [ string ] * cr )
2014-06-05 20:31:58 -04:00
)
2014-05-30 14:03:56 -04:00
if ! debug {
2015-03-26 18:22:04 -04:00
logrus . Info ( "Loading containers: start." )
2013-08-16 09:31:50 -04:00
}
2014-04-17 17:43:01 -04:00
dir , err := ioutil . ReadDir ( daemon . repository )
2013-01-18 19:13:39 -05:00
if err != nil {
return err
}
2013-10-24 19:49:28 -04:00
2013-12-18 13:43:42 -05:00
for _ , v := range dir {
2013-03-21 03:25:00 -04:00
id := v . Name ( )
2014-04-17 17:43:01 -04:00
container , err := daemon . load ( id )
2015-03-26 18:22:04 -04:00
if ! debug && logrus . GetLevel ( ) == logrus . InfoLevel {
2013-12-18 13:43:42 -05:00
fmt . Print ( "." )
2013-08-16 09:31:50 -04:00
}
2013-01-18 19:13:39 -05:00
if err != nil {
2015-03-26 18:22:04 -04:00
logrus . Errorf ( "Failed to load container %v: %v" , id , err )
2013-01-18 19:13:39 -05:00
continue
}
2013-11-15 01:52:08 -05:00
// Ignore the container if it does not support the current driver being used by the graph
2014-08-06 13:40:43 -04:00
if ( container . Driver == "" && currentDriver == "aufs" ) || container . Driver == currentDriver {
2015-03-26 18:22:04 -04:00
logrus . Debugf ( "Loaded container %v" , container . ID )
2014-08-06 13:40:43 -04:00
2015-05-19 16:05:25 -04:00
containers [ container . ID ] = & cr { container : container }
2013-11-15 01:52:08 -05:00
} else {
2015-03-26 18:22:04 -04:00
logrus . Debugf ( "Cannot load container %s because it was created with another graph driver." , container . ID )
2013-11-15 01:52:08 -05:00
}
2013-10-04 22:25:15 -04:00
}
2014-04-17 17:43:01 -04:00
if entities := daemon . containerGraph . List ( "/" , - 1 ) ; entities != nil {
2013-10-24 19:49:28 -04:00
for _ , p := range entities . Paths ( ) {
2015-03-26 18:22:04 -04:00
if ! debug && logrus . GetLevel ( ) == logrus . InfoLevel {
2013-12-18 13:43:42 -05:00
fmt . Print ( "." )
}
2014-08-06 13:40:43 -04:00
2013-10-24 19:49:28 -04:00
e := entities [ p ]
2014-08-06 13:40:43 -04:00
2015-05-19 16:05:25 -04:00
if c , ok := containers [ e . ID ( ) ] ; ok {
c . registered = true
2013-10-24 19:49:28 -04:00
}
2013-10-04 22:25:15 -04:00
}
2013-10-24 19:49:28 -04:00
}
2013-10-24 13:25:07 -04:00
2015-05-19 16:05:25 -04:00
group := sync . WaitGroup { }
for _ , c := range containers {
group . Add ( 1 )
2014-08-06 13:40:43 -04:00
2015-05-19 16:05:25 -04:00
go func ( container * Container , registered bool ) {
defer group . Done ( )
2014-08-06 13:40:43 -04:00
2015-05-19 16:05:25 -04:00
if ! registered {
// Try to set the default name for a container if it exists prior to links
container . Name , err = daemon . generateNewName ( container . ID )
if err != nil {
logrus . Debugf ( "Setting default id - %s" , err )
}
}
2013-10-24 19:49:28 -04:00
2015-05-19 16:05:25 -04:00
if err := daemon . register ( container , false ) ; err != nil {
logrus . Debugf ( "Failed to register container %s: %s" , container . ID , err )
}
2014-08-06 13:40:43 -04:00
2015-05-19 16:05:25 -04:00
// check the restart policy on the containers and restart any container with
// the restart policy of "always"
2015-05-20 17:53:53 -04:00
if daemon . config . AutoRestart && container . shouldRestart ( ) {
2015-03-26 18:22:04 -04:00
logrus . Debugf ( "Starting container %s" , container . ID )
2014-08-06 13:40:43 -04:00
if err := container . Start ( ) ; err != nil {
2015-03-26 18:22:04 -04:00
logrus . Debugf ( "Failed to start container %s: %s" , container . ID , err )
2014-08-06 13:40:43 -04:00
}
}
2015-05-19 16:05:25 -04:00
} ( c . container , c . registered )
2014-06-05 20:31:58 -04:00
}
2015-05-19 16:05:25 -04:00
group . Wait ( )
2014-06-05 20:31:58 -04:00
2014-05-30 14:03:56 -04:00
if ! debug {
2015-03-26 18:22:04 -04:00
if logrus . GetLevel ( ) == logrus . InfoLevel {
2015-03-17 20:27:53 -04:00
fmt . Println ( )
}
2015-03-26 18:22:04 -04:00
logrus . Info ( "Loading containers: done." )
2013-08-16 09:31:50 -04:00
}
2013-10-04 22:25:15 -04:00
2013-01-18 19:13:39 -05:00
return nil
}
2015-06-11 14:29:29 -04:00
func ( daemon * Daemon ) mergeAndVerifyConfig ( config * runconfig . Config , img * graph . Image ) error {
2014-10-28 17:06:23 -04:00
if img != nil && img . Config != nil {
2014-02-11 23:04:39 -05:00
if err := runconfig . Merge ( config , img . Config ) ; err != nil {
2015-05-24 09:17:29 -04:00
return err
2013-10-30 14:13:10 -04:00
}
}
2015-04-10 20:05:21 -04:00
if config . Entrypoint . Len ( ) == 0 && config . Cmd . Len ( ) == 0 {
2015-05-24 09:17:29 -04:00
return fmt . Errorf ( "No command specified" )
2013-09-06 20:33:05 -04:00
}
2015-05-24 09:17:29 -04:00
return nil
2014-04-07 15:20:23 -04:00
}
2013-09-06 20:33:05 -04:00
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) generateIdAndName ( name string ) ( string , string , error ) {
2014-04-07 15:20:23 -04:00
var (
err error
2015-03-24 07:25:26 -04:00
id = stringid . GenerateRandomID ( )
2014-04-07 15:20:23 -04:00
)
2013-10-04 22:25:15 -04:00
2013-10-28 19:58:59 -04:00
if name == "" {
2014-05-23 20:51:16 -04:00
if name , err = daemon . generateNewName ( id ) ; err != nil {
return "" , "" , err
2013-12-12 16:34:26 -05:00
}
2014-05-23 20:51:16 -04:00
return id , name , nil
}
if name , err = daemon . reserveName ( id , name ) ; err != nil {
return "" , "" , err
}
return id , name , nil
}
func ( daemon * Daemon ) reserveName ( id , name string ) ( string , error ) {
if ! validContainerNamePattern . MatchString ( name ) {
return "" , fmt . Errorf ( "Invalid container name (%s), only %s are allowed" , name , validContainerNameChars )
2013-10-28 19:58:59 -04:00
}
2014-05-23 20:51:16 -04:00
2013-10-28 19:58:59 -04:00
if name [ 0 ] != '/' {
name = "/" + name
}
2014-05-23 20:51:16 -04:00
2014-04-17 17:43:01 -04:00
if _ , err := daemon . containerGraph . Set ( name , id ) ; err != nil {
2014-02-18 05:41:11 -05:00
if ! graphdb . IsNonUniqueNameError ( err ) {
2014-05-23 20:51:16 -04:00
return "" , err
2013-12-05 18:22:21 -05:00
}
2014-04-17 17:43:01 -04:00
conflictingContainer , err := daemon . GetByName ( name )
2013-12-05 18:22:21 -05:00
if err != nil {
if strings . Contains ( err . Error ( ) , "Could not find entity" ) {
2014-05-23 20:51:16 -04:00
return "" , err
2013-12-05 18:22:21 -05:00
}
// Remove name and continue starting the container
2014-04-17 17:43:01 -04:00
if err := daemon . containerGraph . Delete ( name ) ; err != nil {
2014-05-23 20:51:16 -04:00
return "" , err
2013-12-05 18:22:21 -05:00
}
} else {
2013-11-26 21:58:54 -05:00
nameAsKnownByUser := strings . TrimPrefix ( name , "/" )
2014-05-23 20:51:16 -04:00
return "" , fmt . Errorf (
2015-01-13 15:57:48 -05:00
"Conflict. The name %q is already in use by container %s. You have to delete (or rename) that container to be able to reuse that name." , nameAsKnownByUser ,
2015-03-24 07:25:26 -04:00
stringid . TruncateID ( conflictingContainer . ID ) )
2013-10-30 14:24:50 -04:00
}
2013-10-04 22:25:15 -04:00
}
2014-05-23 20:51:16 -04:00
return name , nil
}
func ( daemon * Daemon ) generateNewName ( id string ) ( string , error ) {
var name string
2014-05-30 15:08:21 -04:00
for i := 0 ; i < 6 ; i ++ {
2014-05-23 20:51:16 -04:00
name = namesgenerator . GetRandomName ( i )
if name [ 0 ] != '/' {
name = "/" + name
}
if _ , err := daemon . containerGraph . Set ( name , id ) ; err != nil {
if ! graphdb . IsNonUniqueNameError ( err ) {
return "" , err
}
continue
}
return name , nil
}
2015-03-24 07:25:26 -04:00
name = "/" + stringid . TruncateID ( id )
2014-05-23 20:51:16 -04:00
if _ , err := daemon . containerGraph . Set ( name , id ) ; err != nil {
return "" , err
}
return name , nil
2014-04-07 15:20:23 -04:00
}
2013-10-04 22:25:15 -04:00
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) generateHostname ( id string , config * runconfig . Config ) {
2013-09-06 20:33:05 -04:00
// Generate default hostname
// FIXME: the lxc template no longer needs to set a default hostname
if config . Hostname == "" {
config . Hostname = id [ : 12 ]
}
2014-04-07 15:20:23 -04:00
}
2013-09-06 20:33:05 -04:00
2015-04-10 20:05:21 -04:00
func ( daemon * Daemon ) getEntrypointAndArgs ( configEntrypoint * runconfig . Entrypoint , configCmd * runconfig . Command ) ( string , [ ] string ) {
2014-04-07 15:20:23 -04:00
var (
entrypoint string
args [ ] string
)
2015-04-10 20:05:21 -04:00
cmdSlice := configCmd . Slice ( )
if configEntrypoint . Len ( ) != 0 {
eSlice := configEntrypoint . Slice ( )
entrypoint = eSlice [ 0 ]
args = append ( eSlice [ 1 : ] , cmdSlice ... )
2013-09-06 20:33:05 -04:00
} else {
2015-04-10 20:05:21 -04:00
entrypoint = cmdSlice [ 0 ]
args = cmdSlice [ 1 : ]
2013-09-06 20:33:05 -04:00
}
2014-04-07 15:20:23 -04:00
return entrypoint , args
}
2014-10-28 17:06:23 -04:00
func ( daemon * Daemon ) newContainer ( name string , config * runconfig . Config , imgID string ) ( * Container , error ) {
2014-09-30 15:10:03 -04:00
var (
id string
err error
2014-04-07 15:20:23 -04:00
)
2014-04-17 17:43:01 -04:00
id , name , err = daemon . generateIdAndName ( name )
2014-04-07 15:20:23 -04:00
if err != nil {
return nil , err
}
2014-04-17 17:43:01 -04:00
daemon . generateHostname ( id , config )
2014-09-09 00:19:32 -04:00
entrypoint , args := daemon . getEntrypointAndArgs ( config . Entrypoint , config . Cmd )
2013-09-06 20:33:05 -04:00
2015-06-03 12:26:41 -04:00
base := daemon . newBaseContainer ( id )
base . Created = time . Now ( ) . UTC ( )
base . Path = entrypoint
base . Args = args //FIXME: de-duplicate from config
base . Config = config
base . hostConfig = & runconfig . HostConfig { }
base . ImageID = imgID
base . NetworkSettings = & network . Settings { }
base . Name = name
base . Driver = daemon . driver . String ( )
base . ExecDriver = daemon . execDriver . Name ( )
2013-09-06 20:33:05 -04:00
container := & Container {
2015-06-03 12:26:41 -04:00
CommonContainer : base ,
}
2015-04-29 18:53:35 -04:00
2014-09-30 15:10:03 -04:00
return container , err
2014-04-07 15:20:23 -04:00
}
2014-03-07 21:42:29 -05:00
func GetFullContainerName ( name string ) ( string , error ) {
2013-11-04 12:28:40 -05:00
if name == "" {
return "" , fmt . Errorf ( "Container name cannot be empty" )
}
2013-10-24 19:49:28 -04:00
if name [ 0 ] != '/' {
name = "/" + name
}
2013-11-04 12:28:40 -05:00
return name , nil
2013-10-24 19:49:28 -04:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) GetByName ( name string ) ( * Container , error ) {
2014-03-07 21:42:29 -05:00
fullName , err := GetFullContainerName ( name )
2013-11-04 12:28:40 -05:00
if err != nil {
return nil , err
}
2014-04-17 17:43:01 -04:00
entity := daemon . containerGraph . Get ( fullName )
2013-10-04 22:25:15 -04:00
if entity == nil {
return nil , fmt . Errorf ( "Could not find entity for %s" , name )
}
2014-05-30 04:55:25 -04:00
e := daemon . containers . Get ( entity . ID ( ) )
2013-10-04 22:25:15 -04:00
if e == nil {
return nil , fmt . Errorf ( "Could not find container for entity id %s" , entity . ID ( ) )
}
2014-05-30 04:55:25 -04:00
return e , nil
2013-10-04 22:25:15 -04:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) Children ( name string ) ( map [ string ] * Container , error ) {
2014-03-07 21:42:29 -05:00
name , err := GetFullContainerName ( name )
2013-11-04 12:28:40 -05:00
if err != nil {
return nil , err
}
2013-10-04 22:25:15 -04:00
children := make ( map [ string ] * Container )
2014-04-17 17:43:01 -04:00
err = daemon . containerGraph . Walk ( name , func ( p string , e * graphdb . Entity ) error {
2014-12-16 18:06:35 -05:00
c , err := daemon . Get ( e . ID ( ) )
if err != nil {
return err
2013-10-04 22:25:15 -04:00
}
children [ p ] = c
return nil
} , 0 )
if err != nil {
return nil , err
}
return children , nil
}
2014-07-14 19:19:37 -04:00
func ( daemon * Daemon ) Parents ( name string ) ( [ ] string , error ) {
name , err := GetFullContainerName ( name )
if err != nil {
return nil , err
}
return daemon . containerGraph . Parents ( name )
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) RegisterLink ( parent , child * Container , alias string ) error {
2015-05-15 19:34:26 -04:00
fullName := filepath . Join ( parent . Name , alias )
2014-04-17 17:43:01 -04:00
if ! daemon . containerGraph . Exists ( fullName ) {
_ , err := daemon . containerGraph . Set ( fullName , child . ID )
2013-10-04 22:25:15 -04:00
return err
}
2013-10-28 19:58:59 -04:00
return nil
2013-10-04 22:25:15 -04:00
}
2015-04-27 17:11:29 -04:00
func NewDaemon ( config * Config , registryService * registry . Service ) ( daemon * Daemon , err error ) {
2015-06-15 19:33:02 -04:00
setDefaultMtu ( config )
2015-05-15 19:34:26 -04:00
// Ensure we have compatible configuration options
if err := checkConfigOptions ( config ) ; err != nil {
return nil , err
2014-09-16 23:00:15 -04:00
}
2015-05-15 19:34:26 -04:00
// Do we have a disabled network?
2015-06-30 13:34:15 -04:00
config . DisableBridge = isBridgeNetworkDisabled ( config )
2014-08-09 21:18:32 -04:00
2014-08-06 04:12:22 -04:00
// Check that the system is supported and we have sufficient privileges
2015-05-15 19:34:26 -04:00
if err := checkSystem ( ) ; err != nil {
2014-09-16 13:42:59 -04:00
return nil , err
2014-07-30 02:51:43 -04:00
}
2015-07-06 21:58:53 -04:00
// set up SIGUSR1 handler on Unix-like systems, or a Win32 global event
// on Windows to dump Go routine stacks
setupDumpStackTrap ( )
2015-04-21 00:24:24 -04:00
2014-07-30 02:51:03 -04:00
// get the canonical path to the Docker root directory
var realRoot string
if _ , err := os . Stat ( config . Root ) ; err != nil && os . IsNotExist ( err ) {
realRoot = config . Root
} else {
2015-03-29 17:17:23 -04:00
realRoot , err = fileutils . ReadSymlinkedDirectory ( config . Root )
2014-07-30 02:51:03 -04:00
if err != nil {
2014-09-16 13:42:59 -04:00
return nil , fmt . Errorf ( "Unable to get the full path to root (%s): %s" , config . Root , err )
2014-07-30 02:51:03 -04:00
}
}
config . Root = realRoot
2014-05-09 21:05:54 -04:00
// Create the root directory if it doesn't exists
2015-05-15 19:34:26 -04:00
if err := system . MkdirAll ( config . Root , 0700 ) ; err != nil && ! os . IsExist ( err ) {
2014-05-09 21:05:54 -04:00
return nil , err
}
2015-06-23 08:53:18 -04:00
// set up the tmpDir to use a canonical path
tmp , err := tempDir ( config . Root )
if err != nil {
return nil , fmt . Errorf ( "Unable to get the TempDir under %s: %s" , config . Root , err )
}
realTmp , err := fileutils . ReadSymlinkedDirectory ( tmp )
if err != nil {
return nil , fmt . Errorf ( "Unable to get the full path to the TempDir (%s): %s" , tmp , err )
}
os . Setenv ( "TMPDIR" , realTmp )
2013-11-15 02:02:09 -05:00
// Set the default driver
graphdriver . DefaultDriver = config . GraphDriver
2013-11-07 15:34:01 -05:00
// Load storage driver
2014-06-05 04:34:20 -04:00
driver , err := graphdriver . New ( config . Root , config . GraphOptions )
2013-11-07 15:34:01 -05:00
if err != nil {
2015-04-27 16:33:30 -04:00
return nil , fmt . Errorf ( "error initializing graphdriver: %v" , err )
2013-11-07 15:34:01 -05:00
}
2015-03-26 18:22:04 -04:00
logrus . Debugf ( "Using graph driver %s" , driver )
2015-04-27 17:11:29 -04:00
d := & Daemon { }
d . driver = driver
2015-05-15 19:34:26 -04:00
// Ensure the graph driver is shutdown at a later point
2015-04-27 17:11:29 -04:00
defer func ( ) {
if err != nil {
if err := d . Shutdown ( ) ; err != nil {
logrus . Error ( err )
}
2015-03-11 10:33:06 -04:00
}
2015-04-27 17:11:29 -04:00
} ( )
2013-11-07 15:34:01 -05:00
2015-04-09 00:23:30 -04:00
// Verify logging driver type
if config . LogConfig . Type != "none" {
if _ , err := logger . GetLogDriver ( config . LogConfig . Type ) ; err != nil {
return nil , fmt . Errorf ( "error finding the logging driver: %v" , err )
}
}
logrus . Debugf ( "Using default logging driver %s" , config . LogConfig . Type )
2015-05-15 19:34:26 -04:00
// Configure and validate the kernels security support
if err := configureKernelSecuritySupport ( config , d . driver . String ( ) ) ; err != nil {
return nil , err
2014-06-04 16:38:06 -04:00
}
2015-05-15 19:34:26 -04:00
daemonRepo := filepath . Join ( config . Root , "containers" )
2013-03-13 21:48:50 -04:00
2015-05-15 19:34:26 -04:00
if err := system . MkdirAll ( daemonRepo , 0700 ) ; err != nil && ! os . IsExist ( err ) {
2013-03-13 21:48:50 -04:00
return nil , err
}
2014-03-14 14:23:54 -04:00
// Migrate the container if it is aufs and aufs is enabled
2015-05-15 19:34:26 -04:00
if err := migrateIfDownlevel ( d . driver , config . Root ) ; err != nil {
2014-03-14 14:23:54 -04:00
return nil , err
2013-11-15 20:16:30 -05:00
}
2015-03-26 18:22:04 -04:00
logrus . Debug ( "Creating images graph" )
2015-05-15 19:34:26 -04:00
g , err := graph . NewGraph ( filepath . Join ( config . Root , "graph" ) , d . driver )
2013-02-26 20:45:46 -05:00
if err != nil {
return nil , err
}
2013-11-15 05:30:28 -05:00
2015-05-15 19:34:26 -04:00
// Configure the volumes driver
if err := configureVolumes ( config ) ; err != nil {
2013-04-05 21:00:10 -04:00
return nil , err
}
2014-08-28 10:18:08 -04:00
2015-01-07 17:59:12 -05:00
trustKey , err := api . LoadOrCreateTrustKey ( config . TrustKeyPath )
if err != nil {
return nil , err
}
2015-05-15 19:34:26 -04:00
trustDir := filepath . Join ( config . Root , "trust" )
if err := system . MkdirAll ( trustDir , 0700 ) ; err != nil && ! os . IsExist ( err ) {
2014-10-01 21:26:06 -04:00
return nil , err
}
2015-04-20 15:48:33 -04:00
trustService , err := trust . NewTrustStore ( trustDir )
2014-10-01 21:26:06 -04:00
if err != nil {
return nil , fmt . Errorf ( "could not create trust store: %s" , err )
}
2015-04-20 15:48:33 -04:00
eventsService := events . New ( )
logrus . Debug ( "Creating repository list" )
tagCfg := & graph . TagStoreConfig {
Graph : g ,
Key : trustKey ,
Registry : registryService ,
Events : eventsService ,
Trust : trustService ,
}
2015-05-15 19:34:26 -04:00
repositories , err := graph . NewTagStore ( filepath . Join ( config . Root , "repositories-" + d . driver . String ( ) ) , tagCfg )
2015-04-20 15:48:33 -04:00
if err != nil {
return nil , fmt . Errorf ( "Couldn't create Tag store: %s" , err )
}
2015-06-30 13:34:15 -04:00
d . netController , err = initNetworkController ( config )
if err != nil {
return nil , fmt . Errorf ( "Error initializing network controller: %v" , err )
2013-04-04 08:33:28 -04:00
}
2013-10-04 22:25:15 -04:00
2015-05-15 19:34:26 -04:00
graphdbPath := filepath . Join ( config . Root , "linkgraph.db" )
2013-12-19 00:14:16 -05:00
graph , err := graphdb . NewSqliteConn ( graphdbPath )
2013-02-25 17:06:22 -05:00
if err != nil {
return nil , err
}
2015-04-27 17:11:29 -04:00
d . containerGraph = graph
2013-10-04 22:25:15 -04:00
2015-07-08 17:12:49 -04:00
var sysInitPath string
if config . ExecDriver == "lxc" {
initPath , err := configureSysInit ( config )
if err != nil {
return nil , err
}
sysInitPath = initPath
2013-11-25 17:42:22 -05:00
}
2014-03-05 04:40:55 -05:00
sysInfo := sysinfo . New ( false )
2015-06-19 18:29:47 -04:00
// Check if Devices cgroup is mounted, it is hard requirement for container security,
// on Linux/FreeBSD.
if runtime . GOOS != "windows" && ! sysInfo . CgroupDevicesEnabled {
2015-06-16 22:36:20 -04:00
return nil , fmt . Errorf ( "Devices cgroup isn't mounted" )
}
2015-05-14 22:59:11 -04:00
ed , err := execdrivers . NewDriver ( config . ExecDriver , config . ExecOptions , config . ExecRoot , config . Root , sysInitPath , sysInfo )
2014-01-09 19:03:22 -05:00
if err != nil {
return nil , err
}
2015-04-27 17:11:29 -04:00
d . ID = trustKey . PublicKey ( ) . KeyID ( )
d . repository = daemonRepo
d . containers = & contStore { s : make ( map [ string ] * Container ) }
d . execCommands = newExecStore ( )
d . graph = g
d . repositories = repositories
d . idIndex = truncindex . NewTruncIndex ( [ ] string { } )
d . sysInfo = sysInfo
d . config = config
d . sysInitPath = sysInitPath
d . execDriver = ed
d . statsCollector = newStatsCollector ( 1 * time . Second )
d . defaultLogConfig = config . LogConfig
d . RegistryService = registryService
d . EventsService = eventsService
2015-05-19 16:05:25 -04:00
d . root = config . Root
2015-07-08 14:13:47 -04:00
go d . execCommandGC ( )
2015-04-27 17:11:29 -04:00
if err := d . restore ( ) ; err != nil {
2015-03-06 15:44:31 -05:00
return nil , err
}
2015-05-06 18:39:29 -04:00
return d , nil
}
2015-04-27 17:11:29 -04:00
func ( daemon * Daemon ) Shutdown ( ) error {
if daemon . containers != nil {
group := sync . WaitGroup { }
logrus . Debug ( "starting clean shutdown of all containers..." )
for _ , container := range daemon . List ( ) {
c := container
if c . IsRunning ( ) {
logrus . Debugf ( "stopping %s" , c . ID )
group . Add ( 1 )
go func ( ) {
defer group . Done ( )
2015-05-25 21:25:34 -04:00
// If container failed to exit in 10 seconds of SIGTERM, then using the force
if err := c . Stop ( 10 ) ; err != nil {
logrus . Errorf ( "Stop container %s with error: %v" , c . ID , err )
2015-04-27 17:11:29 -04:00
}
c . WaitStop ( - 1 * time . Second )
logrus . Debugf ( "container stopped %s" , c . ID )
} ( )
}
}
group . Wait ( )
2015-06-05 18:02:56 -04:00
// trigger libnetwork GC only if it's initialized
if daemon . netController != nil {
daemon . netController . GC ( )
}
2015-04-27 17:11:29 -04:00
}
2014-03-25 19:21:07 -04:00
2015-06-10 19:07:53 -04:00
if daemon . containerGraph != nil {
if err := daemon . containerGraph . Close ( ) ; err != nil {
logrus . Errorf ( "Error during container graph.Close(): %v" , err )
}
}
if daemon . driver != nil {
if err := daemon . driver . Cleanup ( ) ; err != nil {
logrus . Errorf ( "Error during graph storage driver.Cleanup(): %v" , err )
}
}
2014-03-25 19:21:07 -04:00
return nil
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) Mount ( container * Container ) error {
2014-04-29 04:08:19 -04:00
dir , err := daemon . driver . Get ( container . ID , container . GetMountLabel ( ) )
2013-10-31 21:07:54 -04:00
if err != nil {
2014-04-17 17:43:01 -04:00
return fmt . Errorf ( "Error getting container %s from driver %s: %s" , container . ID , daemon . driver , err )
2013-11-07 15:34:01 -05:00
}
2015-05-15 19:34:26 -04:00
if container . basefs != dir {
// The mount path reported by the graph driver should always be trusted on Windows, since the
// volume path for a given mounted layer may change over time. This should only be an error
// on non-Windows operating systems.
if container . basefs != "" && runtime . GOOS != "windows" {
daemon . driver . Put ( container . ID )
return fmt . Errorf ( "Error: driver %s is returning inconsistent paths for container %s ('%s' then '%s')" ,
daemon . driver , container . ID , container . basefs , dir )
}
2013-10-31 21:07:54 -04:00
}
2015-05-15 19:34:26 -04:00
container . basefs = dir
2013-11-07 15:34:01 -05:00
return nil
2013-10-31 21:07:54 -04:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) Unmount ( container * Container ) error {
daemon . driver . Put ( container . ID )
2013-11-07 15:34:01 -05:00
return nil
2013-10-31 21:07:54 -04:00
}
2014-10-30 19:06:54 -04:00
func ( daemon * Daemon ) Run ( c * Container , pipes * execdriver . Pipes , startCallback execdriver . StartCallback ) ( execdriver . ExitStatus , error ) {
2014-04-17 17:43:01 -04:00
return daemon . execDriver . Run ( c . command , pipes , startCallback )
2014-01-10 17:26:29 -05:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) Kill ( c * Container , sig int ) error {
return daemon . execDriver . Kill ( c . command , sig )
2014-01-10 17:26:29 -05:00
}
2015-01-07 17:43:04 -05:00
func ( daemon * Daemon ) Stats ( c * Container ) ( * execdriver . ResourceStats , error ) {
return daemon . execDriver . Stats ( c . ID )
}
2015-01-19 18:29:42 -05:00
func ( daemon * Daemon ) SubscribeToContainerStats ( name string ) ( chan interface { } , error ) {
2014-12-16 18:06:35 -05:00
c , err := daemon . Get ( name )
if err != nil {
return nil , err
2015-01-07 17:43:04 -05:00
}
ch := daemon . statsCollector . collect ( c )
return ch , nil
}
2015-01-19 18:29:42 -05:00
func ( daemon * Daemon ) UnsubscribeToContainerStats ( name string , ch chan interface { } ) error {
2014-12-16 18:06:35 -05:00
c , err := daemon . Get ( name )
if err != nil {
return err
2015-01-07 21:02:08 -05:00
}
daemon . statsCollector . unsubscribe ( c , ch )
return nil
}
2013-11-14 01:08:08 -05:00
// FIXME: this is a convenience function for integration tests
2014-04-17 17:43:01 -04:00
// which need direct access to daemon.graph.
2013-11-14 01:08:08 -05:00
// Once the tests switch to using engine and jobs, this method
// can go away.
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) Graph ( ) * graph . Graph {
return daemon . graph
2013-11-14 01:08:08 -05:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) Repositories ( ) * graph . TagStore {
return daemon . repositories
2014-03-07 21:42:29 -05:00
}
2014-08-09 18:30:27 -04:00
func ( daemon * Daemon ) Config ( ) * Config {
2014-04-17 17:43:01 -04:00
return daemon . config
2014-03-07 21:42:29 -05:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) SystemConfig ( ) * sysinfo . SysInfo {
return daemon . sysInfo
2014-03-07 21:42:29 -05:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) SystemInitPath ( ) string {
return daemon . sysInitPath
2014-03-07 21:42:29 -05:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) GraphDriver ( ) graphdriver . Driver {
return daemon . driver
2014-03-07 21:42:29 -05:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) ExecutionDriver ( ) execdriver . Driver {
return daemon . execDriver
2014-03-07 21:42:29 -05:00
}
2014-04-17 17:43:01 -04:00
func ( daemon * Daemon ) ContainerGraph ( ) * graphdb . Database {
return daemon . containerGraph
2014-03-07 21:42:29 -05:00
}
2015-06-11 14:29:29 -04:00
func ( daemon * Daemon ) ImageGetCached ( imgID string , config * runconfig . Config ) ( * graph . Image , error ) {
2014-07-29 01:22:58 -04:00
// Retrieve all images
images , err := daemon . Graph ( ) . Map ( )
if err != nil {
return nil , err
}
// Store the tree in a map of map (map[parentId][childId])
imageMap := make ( map [ string ] map [ string ] struct { } )
for _ , img := range images {
if _ , exists := imageMap [ img . Parent ] ; ! exists {
imageMap [ img . Parent ] = make ( map [ string ] struct { } )
}
imageMap [ img . Parent ] [ img . ID ] = struct { } { }
}
// Loop on the children of the given image and check the config
2015-06-11 14:29:29 -04:00
var match * graph . Image
2014-07-29 01:22:58 -04:00
for elem := range imageMap [ imgID ] {
2014-11-11 15:15:00 -05:00
img , ok := images [ elem ]
if ! ok {
return nil , fmt . Errorf ( "unable to find image %q" , elem )
2014-07-29 01:22:58 -04:00
}
if runconfig . Compare ( & img . ContainerConfig , config ) {
if match == nil || match . Created . Before ( img . Created ) {
match = img
}
}
}
return match , nil
}
2014-07-30 02:51:43 -04:00
2015-03-29 14:51:17 -04:00
// tempDir returns the default directory to use for temporary files.
func tempDir ( rootDir string ) ( string , error ) {
var tmpDir string
if tmpDir = os . Getenv ( "DOCKER_TMPDIR" ) ; tmpDir == "" {
tmpDir = filepath . Join ( rootDir , "tmp" )
}
2015-05-15 19:34:26 -04:00
return tmpDir , system . MkdirAll ( tmpDir , 0700 )
2015-04-16 02:31:52 -04:00
}
2015-04-22 22:23:02 -04:00
func ( daemon * Daemon ) setHostConfig ( container * Container , hostConfig * runconfig . HostConfig ) error {
2015-05-27 15:29:49 -04:00
container . Lock ( )
if err := parseSecurityOpt ( container , hostConfig ) ; err != nil {
container . Unlock ( )
2015-05-19 16:05:25 -04:00
return err
}
2015-05-27 15:29:49 -04:00
container . Unlock ( )
2015-05-19 16:05:25 -04:00
2015-05-27 15:29:49 -04:00
// Do not lock while creating volumes since this could be calling out to external plugins
// Don't want to block other actions, like `docker ps` because we're waiting on an external plugin
if err := daemon . registerMountPoints ( container , hostConfig ) ; err != nil {
2015-04-22 22:23:02 -04:00
return err
}
2015-05-27 15:29:49 -04:00
container . Lock ( )
defer container . Unlock ( )
2015-04-22 22:23:02 -04:00
// Register any links from the host config before starting the container
if err := daemon . RegisterLinks ( container , hostConfig ) ; err != nil {
return err
}
container . hostConfig = hostConfig
container . toDisk ( )
return nil
}
2015-06-03 12:26:41 -04:00
func ( daemon * Daemon ) newBaseContainer ( id string ) CommonContainer {
return CommonContainer {
ID : id ,
State : NewState ( ) ,
MountPoints : make ( map [ string ] * mountPoint ) ,
Volumes : make ( map [ string ] string ) ,
VolumesRW : make ( map [ string ] bool ) ,
execCommands : newExecStore ( ) ,
root : daemon . containerRoot ( id ) ,
}
}
2015-06-15 19:33:02 -04:00
func setDefaultMtu ( config * Config ) {
// do nothing if the config does not have the default 0 value.
if config . Mtu != 0 {
return
}
config . Mtu = defaultNetworkMtu
if routeMtu , err := getDefaultRouteMtu ( ) ; err == nil {
config . Mtu = routeMtu
}
}
var errNoDefaultRoute = errors . New ( "no default route was found" )
// getDefaultRouteMtu returns the MTU for the default route's interface.
func getDefaultRouteMtu ( ) ( int , error ) {
routes , err := netlink . NetworkGetRoutes ( )
if err != nil {
return 0 , err
}
for _ , r := range routes {
if r . Default {
return r . Iface . MTU , nil
}
}
return 0 , errNoDefaultRoute
}