image.go 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595
  1. package docker
  2. import (
  3. "crypto/rand"
  4. "encoding/hex"
  5. "encoding/json"
  6. "fmt"
  7. "github.com/dotcloud/docker/utils"
  8. "io"
  9. "io/ioutil"
  10. "log"
  11. "os"
  12. "os/exec"
  13. "path"
  14. "path/filepath"
  15. "strconv"
  16. "strings"
  17. "syscall"
  18. "time"
  19. )
  20. type Image struct {
  21. ID string `json:"id"`
  22. Parent string `json:"parent,omitempty"`
  23. Comment string `json:"comment,omitempty"`
  24. Created time.Time `json:"created"`
  25. Container string `json:"container,omitempty"`
  26. ContainerConfig Config `json:"container_config,omitempty"`
  27. DockerVersion string `json:"docker_version,omitempty"`
  28. Author string `json:"author,omitempty"`
  29. Config *Config `json:"config,omitempty"`
  30. Architecture string `json:"architecture,omitempty"`
  31. graph *Graph
  32. Size int64
  33. }
  34. func LoadImage(root string) (*Image, error) {
  35. // Load the json data
  36. jsonData, err := ioutil.ReadFile(jsonPath(root))
  37. if err != nil {
  38. return nil, err
  39. }
  40. img := &Image{}
  41. if err := json.Unmarshal(jsonData, img); err != nil {
  42. return nil, err
  43. }
  44. if err := ValidateID(img.ID); err != nil {
  45. return nil, err
  46. }
  47. if buf, err := ioutil.ReadFile(path.Join(root, "layersize")); err != nil {
  48. if !os.IsNotExist(err) {
  49. return nil, err
  50. }
  51. } else {
  52. if size, err := strconv.Atoi(string(buf)); err != nil {
  53. return nil, err
  54. } else {
  55. img.Size = int64(size)
  56. }
  57. }
  58. // Check that the filesystem layer exists
  59. if stat, err := os.Stat(layerPath(root)); err != nil {
  60. if os.IsNotExist(err) {
  61. return nil, fmt.Errorf("Couldn't load image %s: no filesystem layer", img.ID)
  62. }
  63. return nil, err
  64. } else if !stat.IsDir() {
  65. return nil, fmt.Errorf("Couldn't load image %s: %s is not a directory", img.ID, layerPath(root))
  66. }
  67. return img, nil
  68. }
  69. func StoreImage(img *Image, jsonData []byte, layerData Archive, root string) error {
  70. // Check that root doesn't already exist
  71. if _, err := os.Stat(root); err == nil {
  72. return fmt.Errorf("Image %s already exists", img.ID)
  73. } else if !os.IsNotExist(err) {
  74. return err
  75. }
  76. // Store the layer
  77. layer := layerPath(root)
  78. if err := os.MkdirAll(layer, 0755); err != nil {
  79. return err
  80. }
  81. // If layerData is not nil, unpack it into the new layer
  82. if layerData != nil {
  83. start := time.Now()
  84. utils.Debugf("Start untar layer")
  85. if err := Untar(layerData, layer); err != nil {
  86. return err
  87. }
  88. utils.Debugf("Untar time: %vs\n", time.Now().Sub(start).Seconds())
  89. }
  90. // If raw json is provided, then use it
  91. if jsonData != nil {
  92. return ioutil.WriteFile(jsonPath(root), jsonData, 0600)
  93. } else { // Otherwise, unmarshal the image
  94. jsonData, err := json.Marshal(img)
  95. if err != nil {
  96. return err
  97. }
  98. if err := ioutil.WriteFile(jsonPath(root), jsonData, 0600); err != nil {
  99. return err
  100. }
  101. }
  102. return StoreSize(img, root)
  103. }
  104. func StoreSize(img *Image, root string) error {
  105. layer := layerPath(root)
  106. var totalSize int64 = 0
  107. filepath.Walk(layer, func(path string, fileInfo os.FileInfo, err error) error {
  108. totalSize += fileInfo.Size()
  109. return nil
  110. })
  111. img.Size = totalSize
  112. if err := ioutil.WriteFile(path.Join(root, "layersize"), []byte(strconv.Itoa(int(totalSize))), 0600); err != nil {
  113. return nil
  114. }
  115. return nil
  116. }
  117. func layerPath(root string) string {
  118. return path.Join(root, "layer")
  119. }
  120. func jsonPath(root string) string {
  121. return path.Join(root, "json")
  122. }
  123. func mountPath(root string) string {
  124. return path.Join(root, "mount")
  125. }
  126. func MountAUFS(ro []string, rw string, target string) error {
  127. // FIXME: Now mount the layers
  128. rwBranch := fmt.Sprintf("%v=rw", rw)
  129. roBranches := ""
  130. for _, layer := range ro {
  131. roBranches += fmt.Sprintf("%v=ro+wh:", layer)
  132. }
  133. branches := fmt.Sprintf("br:%v:%v", rwBranch, roBranches)
  134. branches += ",xino=/dev/shm/aufs.xino"
  135. //if error, try to load aufs kernel module
  136. if err := mount("none", target, "aufs", 0, branches); err != nil {
  137. log.Printf("Kernel does not support AUFS, trying to load the AUFS module with modprobe...")
  138. if err := exec.Command("modprobe", "aufs").Run(); err != nil {
  139. return fmt.Errorf("Unable to load the AUFS module")
  140. }
  141. log.Printf("...module loaded.")
  142. if err := mount("none", target, "aufs", 0, branches); err != nil {
  143. return fmt.Errorf("Unable to mount using aufs")
  144. }
  145. }
  146. return nil
  147. }
  148. // TarLayer returns a tar archive of the image's filesystem layer.
  149. func (image *Image) TarLayer(compression Compression) (Archive, error) {
  150. layerPath, err := image.layer()
  151. if err != nil {
  152. return nil, err
  153. }
  154. return Tar(layerPath, compression)
  155. }
  156. func (image *Image) applyLayer(layer, target string) error {
  157. oldmask := syscall.Umask(0)
  158. defer syscall.Umask(oldmask)
  159. err := filepath.Walk(layer, func(srcPath string, f os.FileInfo, err error) error {
  160. if err != nil {
  161. return err
  162. }
  163. // Skip root
  164. if srcPath == layer {
  165. return nil
  166. }
  167. var srcStat syscall.Stat_t
  168. err = syscall.Lstat(srcPath, &srcStat)
  169. if err != nil {
  170. return err
  171. }
  172. relPath, err := filepath.Rel(layer, srcPath)
  173. if err != nil {
  174. return err
  175. }
  176. targetPath := filepath.Join(target, relPath)
  177. // Skip AUFS metadata
  178. if matched, err := filepath.Match(".wh..wh.*", relPath); err != nil || matched {
  179. if err != nil || !f.IsDir() {
  180. return err
  181. }
  182. return filepath.SkipDir
  183. }
  184. // Find out what kind of modification happened
  185. file := filepath.Base(srcPath)
  186. // If there is a whiteout, then the file was removed
  187. if strings.HasPrefix(file, ".wh.") {
  188. originalFile := file[len(".wh."):]
  189. deletePath := filepath.Join(filepath.Dir(targetPath), originalFile)
  190. err = os.RemoveAll(deletePath)
  191. if err != nil {
  192. return err
  193. }
  194. } else {
  195. var targetStat = &syscall.Stat_t{}
  196. err := syscall.Lstat(targetPath, targetStat)
  197. if err != nil {
  198. if !os.IsNotExist(err) {
  199. return err
  200. }
  201. targetStat = nil
  202. }
  203. if targetStat != nil && !(targetStat.Mode&syscall.S_IFDIR == syscall.S_IFDIR && srcStat.Mode&syscall.S_IFDIR == syscall.S_IFDIR) {
  204. // Unless both src and dest are directories we remove the target and recreate it
  205. // This is a bit wasteful in the case of only a mode change, but that is unlikely
  206. // to matter much
  207. err = os.RemoveAll(targetPath)
  208. if err != nil {
  209. return err
  210. }
  211. targetStat = nil
  212. }
  213. if f.IsDir() {
  214. // Source is a directory
  215. if targetStat == nil {
  216. err = syscall.Mkdir(targetPath, srcStat.Mode&07777)
  217. if err != nil {
  218. return err
  219. }
  220. } else if srcStat.Mode&07777 != targetStat.Mode&07777 {
  221. err = syscall.Chmod(targetPath, srcStat.Mode&07777)
  222. if err != nil {
  223. return err
  224. }
  225. }
  226. } else if srcStat.Mode&syscall.S_IFLNK == syscall.S_IFLNK {
  227. // Source is symlink
  228. link, err := os.Readlink(srcPath)
  229. if err != nil {
  230. return err
  231. }
  232. err = os.Symlink(link, targetPath)
  233. if err != nil {
  234. return err
  235. }
  236. } else if srcStat.Mode&syscall.S_IFBLK == syscall.S_IFBLK ||
  237. srcStat.Mode&syscall.S_IFCHR == syscall.S_IFCHR ||
  238. srcStat.Mode&syscall.S_IFIFO == syscall.S_IFIFO ||
  239. srcStat.Mode&syscall.S_IFSOCK == syscall.S_IFSOCK {
  240. // Source is special file
  241. err = syscall.Mknod(targetPath, srcStat.Mode, int(srcStat.Rdev))
  242. if err != nil {
  243. return err
  244. }
  245. } else if srcStat.Mode&syscall.S_IFREG == syscall.S_IFREG {
  246. // Source is regular file
  247. fd, err := syscall.Open(targetPath, syscall.O_CREAT|syscall.O_WRONLY, srcStat.Mode&07777)
  248. if err != nil {
  249. return err
  250. }
  251. dstFile := os.NewFile(uintptr(fd), targetPath)
  252. srcFile, err := os.Open(srcPath)
  253. _, err = io.Copy(dstFile, srcFile)
  254. if err != nil {
  255. return err
  256. }
  257. _ = srcFile.Close()
  258. _ = dstFile.Close()
  259. } else {
  260. return fmt.Errorf("Unknown type for file %s", srcPath)
  261. }
  262. if srcStat.Mode&syscall.S_IFLNK != syscall.S_IFLNK {
  263. err = syscall.Chown(targetPath, int(srcStat.Uid), int(srcStat.Gid))
  264. if err != nil {
  265. return err
  266. }
  267. ts := []syscall.Timeval{
  268. syscall.NsecToTimeval(srcStat.Atim.Nano()),
  269. syscall.NsecToTimeval(srcStat.Mtim.Nano()),
  270. }
  271. syscall.Utimes(targetPath, ts)
  272. }
  273. }
  274. return nil
  275. })
  276. return err
  277. }
  278. func (image *Image) ensureImageDevice(devices DeviceSet) error {
  279. if devices.HasInitializedDevice(image.ID) {
  280. return nil
  281. }
  282. if image.Parent != "" && !devices.HasInitializedDevice(image.Parent) {
  283. parentImg, err := image.GetParent()
  284. if err != nil {
  285. return fmt.Errorf("Error while getting parent image: %v", err)
  286. }
  287. err = parentImg.ensureImageDevice(devices)
  288. if err != nil {
  289. return err
  290. }
  291. }
  292. root, err := image.root()
  293. if err != nil {
  294. return err
  295. }
  296. mountDir := mountPath(root)
  297. if err := os.Mkdir(mountDir, 0600); err != nil && !os.IsExist(err) {
  298. return err
  299. }
  300. mounted, err := Mounted(mountDir)
  301. if err == nil && mounted {
  302. log.Printf("Image %s is unexpectedly mounted, unmounting...", image.ID)
  303. err = syscall.Unmount(mountDir, 0)
  304. if err != nil {
  305. return err
  306. }
  307. }
  308. if devices.HasDevice(image.ID) {
  309. log.Printf("Found non-initialized demove-mapper device for image %s, removing", image.ID)
  310. err = devices.RemoveDevice(image.ID)
  311. if err != nil {
  312. return err
  313. }
  314. }
  315. log.Printf("Creating device-mapper device for image id %s", image.ID)
  316. err = devices.AddDevice(image.ID, image.Parent)
  317. if err != nil {
  318. return err
  319. }
  320. utils.Debugf("Mounting device %s at %s for image setup", image.ID, mountDir)
  321. err = devices.MountDevice(image.ID, mountDir)
  322. if err != nil {
  323. _ = devices.RemoveDevice(image.ID)
  324. return err
  325. }
  326. utils.Debugf("Applying layer %s at %s", image.ID, mountDir)
  327. err = image.applyLayer(layerPath(root), mountDir)
  328. if err != nil {
  329. _ = devices.RemoveDevice(image.ID)
  330. return err
  331. }
  332. utils.Debugf("Unmounting %s", mountDir)
  333. err = syscall.Unmount(mountDir, 0)
  334. if err != nil {
  335. _ = devices.RemoveDevice(image.ID)
  336. return err
  337. }
  338. devices.SetInitialized(image.ID)
  339. // No need to the device-mapper device to hang around once we've written
  340. // the image, it can be enabled on-demand when needed
  341. devices.DeactivateDevice(image.ID)
  342. return nil
  343. }
  344. func (image *Image) Mount(runtime *Runtime, root, rw string, id string) error {
  345. if mounted, err := Mounted(root); err != nil {
  346. return err
  347. } else if mounted {
  348. return fmt.Errorf("%s is already mounted", root)
  349. }
  350. // Create the target directories if they don't exist
  351. if err := os.Mkdir(root, 0755); err != nil && !os.IsExist(err) {
  352. return err
  353. }
  354. switch runtime.GetMountMethod() {
  355. case MountMethodNone:
  356. return fmt.Errorf("No supported Mount implementation")
  357. case MountMethodAUFS:
  358. if err := os.Mkdir(rw, 0755); err != nil && !os.IsExist(err) {
  359. return err
  360. }
  361. layers, err := image.layers()
  362. if err != nil {
  363. return err
  364. }
  365. if err := MountAUFS(layers, rw, root); err != nil {
  366. return err
  367. }
  368. case MountMethodDeviceMapper:
  369. devices, err := runtime.GetDeviceSet()
  370. if err != nil {
  371. return err
  372. }
  373. err = image.ensureImageDevice(devices)
  374. if err != nil {
  375. return err
  376. }
  377. if !devices.HasDevice(id) {
  378. utils.Debugf("Creating device %s for container based on image %s", id, image.ID)
  379. err = devices.AddDevice(id, image.ID)
  380. if err != nil {
  381. return err
  382. }
  383. }
  384. utils.Debugf("Mounting container %s at %s for container", id, root)
  385. err = devices.MountDevice(id, root)
  386. if err != nil {
  387. return err
  388. }
  389. }
  390. return nil
  391. }
  392. func (image *Image) Changes(rw string) ([]Change, error) {
  393. layers, err := image.layers()
  394. if err != nil {
  395. return nil, err
  396. }
  397. return Changes(layers, rw)
  398. }
  399. func (image *Image) ShortID() string {
  400. return utils.TruncateID(image.ID)
  401. }
  402. func ValidateID(id string) error {
  403. if id == "" {
  404. return fmt.Errorf("Image id can't be empty")
  405. }
  406. if strings.Contains(id, ":") {
  407. return fmt.Errorf("Invalid character in image id: ':'")
  408. }
  409. return nil
  410. }
  411. func GenerateID() string {
  412. id := make([]byte, 32)
  413. _, err := io.ReadFull(rand.Reader, id)
  414. if err != nil {
  415. panic(err) // This shouldn't happen
  416. }
  417. return hex.EncodeToString(id)
  418. }
  419. // Image includes convenience proxy functions to its graph
  420. // These functions will return an error if the image is not registered
  421. // (ie. if image.graph == nil)
  422. func (img *Image) History() ([]*Image, error) {
  423. var parents []*Image
  424. if err := img.WalkHistory(
  425. func(img *Image) error {
  426. parents = append(parents, img)
  427. return nil
  428. },
  429. ); err != nil {
  430. return nil, err
  431. }
  432. return parents, nil
  433. }
  434. // layers returns all the filesystem layers needed to mount an image
  435. // FIXME: @shykes refactor this function with the new error handling
  436. // (I'll do it if I have time tonight, I focus on the rest)
  437. func (img *Image) layers() ([]string, error) {
  438. var list []string
  439. var e error
  440. if err := img.WalkHistory(
  441. func(img *Image) (err error) {
  442. if layer, err := img.layer(); err != nil {
  443. e = err
  444. } else if layer != "" {
  445. list = append(list, layer)
  446. }
  447. return err
  448. },
  449. ); err != nil {
  450. return nil, err
  451. } else if e != nil { // Did an error occur inside the handler?
  452. return nil, e
  453. }
  454. if len(list) == 0 {
  455. return nil, fmt.Errorf("No layer found for image %s\n", img.ID)
  456. }
  457. // Inject the dockerinit layer (empty place-holder for mount-binding dockerinit)
  458. if dockerinitLayer, err := img.getDockerInitLayer(); err != nil {
  459. return nil, err
  460. } else {
  461. list = append([]string{dockerinitLayer}, list...)
  462. }
  463. return list, nil
  464. }
  465. func (img *Image) WalkHistory(handler func(*Image) error) (err error) {
  466. currentImg := img
  467. for currentImg != nil {
  468. if handler != nil {
  469. if err := handler(currentImg); err != nil {
  470. return err
  471. }
  472. }
  473. currentImg, err = currentImg.GetParent()
  474. if err != nil {
  475. return fmt.Errorf("Error while getting parent image: %v", err)
  476. }
  477. }
  478. return nil
  479. }
  480. func (img *Image) GetParent() (*Image, error) {
  481. if img.Parent == "" {
  482. return nil, nil
  483. }
  484. if img.graph == nil {
  485. return nil, fmt.Errorf("Can't lookup parent of unregistered image")
  486. }
  487. return img.graph.Get(img.Parent)
  488. }
  489. func (img *Image) getDockerInitLayer() (string, error) {
  490. if img.graph == nil {
  491. return "", fmt.Errorf("Can't lookup dockerinit layer of unregistered image")
  492. }
  493. return img.graph.getDockerInitLayer()
  494. }
  495. func (img *Image) root() (string, error) {
  496. if img.graph == nil {
  497. return "", fmt.Errorf("Can't lookup root of unregistered image")
  498. }
  499. return img.graph.imageRoot(img.ID), nil
  500. }
  501. // Return the path of an image's layer
  502. func (img *Image) layer() (string, error) {
  503. root, err := img.root()
  504. if err != nil {
  505. return "", err
  506. }
  507. return layerPath(root), nil
  508. }
  509. func (img *Image) getParentsSize(size int64) int64 {
  510. parentImage, err := img.GetParent()
  511. if err != nil || parentImage == nil {
  512. return size
  513. }
  514. size += parentImage.Size
  515. return parentImage.getParentsSize(size)
  516. }
  517. // Build an Image object from raw json data
  518. func NewImgJSON(src []byte) (*Image, error) {
  519. ret := &Image{}
  520. utils.Debugf("Json string: {%s}\n", src)
  521. // FIXME: Is there a cleaner way to "purify" the input json?
  522. if err := json.Unmarshal(src, ret); err != nil {
  523. return nil, err
  524. }
  525. return ret, nil
  526. }