mirror of
https://github.com/moby/moby.git
synced 2022-11-09 12:21:53 -05:00
386b06eacd
Relevant changes: - containerd/containerd#51 Fix empty device type - containerd/containerd#52 Remove call to unitName - Calling unitName incorrectly appends -slice onto the end of the slice cgroup we are looking for - addresses containerd/containerd#47 cgroups: cgroup deleted - containerd/containerd#53 systemd-239+ no longer allows delegate slice - containerd/containerd#54 Bugfix: can't write to cpuset cgroup - containerd/containerd#63 Makes Load function more lenient on subsystems' checking - addresses containerd/containerd#58 Very strict checking of subsystems' existence while loading cgroup - containerd/containerd#67 Add functionality for retrieving all tasks of a cgroup - containerd/containerd#68 Fix net_prio typo - containerd/containerd#69 Blkio weight/leafWeight pointer value - containerd/containerd#77 Check for non-active/supported cgroups - addresses containerd/containerd#76 unable to find * in controller set: unknown - addresses docker/for-linux#545 Raspbian: Error response from daemon: unable to find "net_prio" in controller set: unknown - addresses docker/for-linux#552 Error response from daemon: unable to find "cpuacct" in controller set: unknown - addresses docker/for-linux#545 Raspbian: Error response from daemon: unable to find "net_prio" in controller set: unknown Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
107 lines
2.7 KiB
Go
107 lines
2.7 KiB
Go
/*
|
|
Copyright The containerd Authors.
|
|
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
you may not use this file except in compliance with the License.
|
|
You may obtain a copy of the License at
|
|
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
Unless required by applicable law or agreed to in writing, software
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
See the License for the specific language governing permissions and
|
|
limitations under the License.
|
|
*/
|
|
|
|
package cgroups
|
|
|
|
import (
|
|
"fmt"
|
|
"path/filepath"
|
|
|
|
"github.com/pkg/errors"
|
|
)
|
|
|
|
type Path func(subsystem Name) (string, error)
|
|
|
|
func RootPath(subsysem Name) (string, error) {
|
|
return "/", nil
|
|
}
|
|
|
|
// StaticPath returns a static path to use for all cgroups
|
|
func StaticPath(path string) Path {
|
|
return func(_ Name) (string, error) {
|
|
return path, nil
|
|
}
|
|
}
|
|
|
|
// NestedPath will nest the cgroups based on the calling processes cgroup
|
|
// placing its child processes inside its own path
|
|
func NestedPath(suffix string) Path {
|
|
paths, err := parseCgroupFile("/proc/self/cgroup")
|
|
if err != nil {
|
|
return errorPath(err)
|
|
}
|
|
return existingPath(paths, suffix)
|
|
}
|
|
|
|
// PidPath will return the correct cgroup paths for an existing process running inside a cgroup
|
|
// This is commonly used for the Load function to restore an existing container
|
|
func PidPath(pid int) Path {
|
|
p := fmt.Sprintf("/proc/%d/cgroup", pid)
|
|
paths, err := parseCgroupFile(p)
|
|
if err != nil {
|
|
return errorPath(errors.Wrapf(err, "parse cgroup file %s", p))
|
|
}
|
|
return existingPath(paths, "")
|
|
}
|
|
|
|
// ErrControllerNotActive is returned when a controller is not supported or enabled
|
|
var ErrControllerNotActive = errors.New("controller is not supported")
|
|
|
|
func existingPath(paths map[string]string, suffix string) Path {
|
|
// localize the paths based on the root mount dest for nested cgroups
|
|
for n, p := range paths {
|
|
dest, err := getCgroupDestination(string(n))
|
|
if err != nil {
|
|
return errorPath(err)
|
|
}
|
|
rel, err := filepath.Rel(dest, p)
|
|
if err != nil {
|
|
return errorPath(err)
|
|
}
|
|
if rel == "." {
|
|
rel = dest
|
|
}
|
|
paths[n] = filepath.Join("/", rel)
|
|
}
|
|
return func(name Name) (string, error) {
|
|
root, ok := paths[string(name)]
|
|
if !ok {
|
|
if root, ok = paths[fmt.Sprintf("name=%s", name)]; !ok {
|
|
return "", ErrControllerNotActive
|
|
}
|
|
}
|
|
if suffix != "" {
|
|
return filepath.Join(root, suffix), nil
|
|
}
|
|
return root, nil
|
|
}
|
|
}
|
|
|
|
func subPath(path Path, subName string) Path {
|
|
return func(name Name) (string, error) {
|
|
p, err := path(name)
|
|
if err != nil {
|
|
return "", err
|
|
}
|
|
return filepath.Join(p, subName), nil
|
|
}
|
|
}
|
|
|
|
func errorPath(err error) Path {
|
|
return func(_ Name) (string, error) {
|
|
return "", err
|
|
}
|
|
}
|