2014-04-17 21:43:01 +00:00
package daemon
2013-01-19 00:13:39 +00:00
import (
"fmt"
2014-04-28 21:36:04 +00:00
"io"
"io/ioutil"
2015-05-06 22:39:29 +00:00
"net"
2014-04-28 21:36:04 +00:00
"os"
"path"
2015-01-16 19:48:25 +00:00
"path/filepath"
2014-04-28 21:36:04 +00:00
"regexp"
2014-07-30 06:51:43 +00:00
"runtime"
2014-04-28 21:36:04 +00:00
"strings"
"sync"
"time"
2014-07-24 20:37:44 +00:00
"github.com/docker/libcontainer/label"
2015-05-06 22:39:29 +00:00
"github.com/docker/libnetwork"
"github.com/docker/libnetwork/netlabel"
"github.com/docker/libnetwork/options"
2014-07-24 20:37:44 +00:00
2015-03-26 22:22:04 +00:00
"github.com/Sirupsen/logrus"
2014-11-17 19:23:41 +00:00
"github.com/docker/docker/api"
2015-02-04 21:22:38 +00:00
"github.com/docker/docker/autogen/dockerversion"
2015-04-03 22:17:49 +00:00
"github.com/docker/docker/daemon/events"
2014-07-24 22:19:50 +00:00
"github.com/docker/docker/daemon/execdriver"
"github.com/docker/docker/daemon/execdriver/execdrivers"
"github.com/docker/docker/daemon/graphdriver"
_ "github.com/docker/docker/daemon/graphdriver/vfs"
2015-04-09 04:23:30 +00:00
"github.com/docker/docker/daemon/logger"
2015-04-04 04:06:48 +00:00
"github.com/docker/docker/daemon/network"
2014-07-24 22:19:50 +00:00
"github.com/docker/docker/graph"
"github.com/docker/docker/image"
2014-09-30 06:23:36 +00:00
"github.com/docker/docker/pkg/archive"
2014-07-30 15:16:10 +00:00
"github.com/docker/docker/pkg/broadcastwriter"
2015-03-29 21:17:23 +00:00
"github.com/docker/docker/pkg/fileutils"
2014-07-24 22:19:50 +00:00
"github.com/docker/docker/pkg/graphdb"
2014-08-12 16:10:43 +00:00
"github.com/docker/docker/pkg/ioutils"
2014-07-24 22:19:50 +00:00
"github.com/docker/docker/pkg/namesgenerator"
2014-07-29 00:23:38 +00:00
"github.com/docker/docker/pkg/parsers"
2014-07-30 06:51:43 +00:00
"github.com/docker/docker/pkg/parsers/kernel"
2015-03-24 11:25:26 +00:00
"github.com/docker/docker/pkg/stringid"
2014-07-24 22:19:50 +00:00
"github.com/docker/docker/pkg/sysinfo"
"github.com/docker/docker/pkg/truncindex"
2015-03-31 23:21:37 +00:00
"github.com/docker/docker/registry"
2014-07-24 22:19:50 +00:00
"github.com/docker/docker/runconfig"
2014-10-02 01:26:06 +00:00
"github.com/docker/docker/trust"
2014-07-24 22:19:50 +00:00
"github.com/docker/docker/utils"
2015-05-19 20:05:25 +00:00
volumedrivers "github.com/docker/docker/volume/drivers"
"github.com/docker/docker/volume/local"
2013-01-19 00:13:39 +00:00
)
2015-05-19 20:05:25 +00:00
const defaultVolumesPathName = "volumes"
2013-12-12 21:34:26 +00:00
var (
2014-09-12 17:45:07 +00:00
validContainerNameChars = ` [a-zA-Z0-9][a-zA-Z0-9_.-] `
2013-12-17 02:17:22 +00:00
validContainerNamePattern = regexp . MustCompile ( ` ^/? ` + validContainerNameChars + ` +$ ` )
2013-12-12 21:34:26 +00:00
)
2013-09-07 00:33:05 +00:00
2014-05-30 08:55:25 +00:00
type contStore struct {
s map [ string ] * Container
sync . Mutex
}
func ( c * contStore ) Add ( id string , cont * Container ) {
c . Lock ( )
c . s [ id ] = cont
c . Unlock ( )
}
func ( c * contStore ) Get ( id string ) * Container {
c . Lock ( )
res := c . s [ id ]
c . Unlock ( )
return res
}
func ( c * contStore ) Delete ( id string ) {
c . Lock ( )
delete ( c . s , id )
c . Unlock ( )
}
func ( c * contStore ) List ( ) [ ] * Container {
containers := new ( History )
2014-06-05 06:49:40 +00:00
c . Lock ( )
2014-05-30 08:55:25 +00:00
for _ , cont := range c . s {
containers . Add ( cont )
}
2014-06-05 06:49:40 +00:00
c . Unlock ( )
2014-05-30 08:55:25 +00:00
containers . Sort ( )
return * containers
}
2014-04-17 21:43:01 +00:00
type Daemon struct {
2015-02-04 19:04:58 +00:00
ID string
repository string
sysInitPath string
containers * contStore
execCommands * execStore
graph * graph . Graph
repositories * graph . TagStore
idIndex * truncindex . TruncIndex
sysInfo * sysinfo . SysInfo
config * Config
containerGraph * graphdb . Database
driver graphdriver . Driver
execDriver execdriver . Driver
statsCollector * statsCollector
defaultLogConfig runconfig . LogConfig
2015-03-31 23:21:37 +00:00
RegistryService * registry . Service
2015-04-03 22:17:49 +00:00
EventsService * events . Events
2015-05-06 22:39:29 +00:00
netController libnetwork . NetworkController
2015-05-19 20:05:25 +00:00
root string
2013-03-21 07:25:00 +00:00
}
2015-02-13 20:14:38 +00:00
// Get looks for a container using the provided information, which could be
// one of the following inputs from the caller:
// - A full container ID, which will exact match a container in daemon's list
// - A container name, which will only exact match via the GetByName() function
// - A partial container ID prefix (e.g. short ID) of any length that is
// unique enough to only return a single container object
// If none of these searches succeed, an error is returned
func ( daemon * Daemon ) Get ( prefixOrName string ) ( * Container , error ) {
if containerByID := daemon . containers . Get ( prefixOrName ) ; containerByID != nil {
2014-12-16 23:06:35 +00:00
// prefix is an exact match to a full container ID
return containerByID , nil
2014-08-06 15:54:13 +00:00
}
2014-11-03 00:25:44 +00:00
2015-02-13 20:14:38 +00:00
// GetByName will match only an exact name provided; we ignore errors
containerByName , _ := daemon . GetByName ( prefixOrName )
containerId , indexError := daemon . idIndex . Get ( prefixOrName )
2014-12-16 23:06:35 +00:00
if containerByName != nil {
// prefix is an exact match to a full container Name
return containerByName , nil
2013-10-05 02:25:15 +00:00
}
2014-11-03 00:25:44 +00:00
2014-12-16 23:06:35 +00:00
if containerId != "" {
// prefix is a fuzzy match to a container ID
return daemon . containers . Get ( containerId ) , nil
2014-11-03 00:25:44 +00:00
}
2014-12-16 23:06:35 +00:00
return nil , indexError
2013-01-19 00:13:39 +00:00
}
2013-09-07 00:43:34 +00:00
// Exists returns a true if a container of the specified ID or name exists,
// false otherwise.
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Exists ( id string ) bool {
2014-12-16 23:06:35 +00:00
c , _ := daemon . Get ( id )
return c != nil
2013-01-19 00:13:39 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) containerRoot ( id string ) string {
return path . Join ( daemon . repository , id )
2013-03-21 07:25:00 +00:00
}
2013-10-05 02:25:15 +00:00
// Load reads the contents of a container from disk
2013-09-07 00:43:34 +00:00
// This is typically done at startup.
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) load ( id string ) ( * Container , error ) {
2014-09-18 21:38:22 +00:00
container := & Container {
2015-04-29 22:53:35 +00:00
CommonContainer : CommonContainer {
State : NewState ( ) ,
root : daemon . containerRoot ( id ) ,
2015-05-26 02:34:49 +00:00
MountPoints : make ( map [ string ] * mountPoint ) ,
2015-04-29 22:53:35 +00:00
execCommands : newExecStore ( ) ,
} ,
2014-09-18 21:38:22 +00:00
}
2015-04-29 22:53:35 +00:00
2013-03-21 07:25:00 +00:00
if err := container . FromDisk ( ) ; err != nil {
return nil , err
}
2014-08-06 17:40:43 +00:00
2013-06-04 18:00:22 +00:00
if container . ID != id {
return container , fmt . Errorf ( "Container %s is stored at %s" , container . ID , id )
2013-03-21 07:25:00 +00:00
}
2014-08-06 17:40:43 +00:00
2013-01-19 00:13:39 +00:00
return container , nil
}
2014-04-17 21:43:01 +00:00
// Register makes a container object usable by the daemon as <container.ID>
2014-05-14 14:58:37 +00:00
// This is a wrapper for register
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Register ( container * Container ) error {
2014-08-06 17:40:43 +00:00
return daemon . register ( container , true )
2014-05-14 14:58:37 +00:00
}
// register makes a container object usable by the daemon as <container.ID>
2014-08-06 17:40:43 +00:00
func ( daemon * Daemon ) register ( container * Container , updateSuffixarray bool ) error {
2014-04-17 21:43:01 +00:00
if container . daemon != nil || daemon . Exists ( container . ID ) {
2013-03-21 07:25:00 +00:00
return fmt . Errorf ( "Container is already loaded" )
}
2013-06-04 18:00:22 +00:00
if err := validateID ( container . ID ) ; err != nil {
2013-03-21 07:25:00 +00:00
return err
}
2014-04-17 21:43:01 +00:00
if err := daemon . ensureName ( container ) ; err != nil {
2013-11-04 17:28:40 +00:00
return err
}
2013-04-01 00:40:39 +00:00
2014-04-17 21:43:01 +00:00
container . daemon = daemon
2013-04-09 14:57:59 +00:00
2013-03-21 07:25:00 +00:00
// Attach to stdout and stderr
2014-08-26 22:44:00 +00:00
container . stderr = broadcastwriter . New ( )
container . stdout = broadcastwriter . New ( )
2013-03-21 07:25:00 +00:00
// Attach to stdin
if container . Config . OpenStdin {
2014-08-26 22:44:00 +00:00
container . stdin , container . stdinPipe = io . Pipe ( )
2013-03-21 07:25:00 +00:00
} else {
2014-08-12 16:10:43 +00:00
container . stdinPipe = ioutils . NopWriteCloser ( ioutil . Discard ) // Silently drop stdin
2013-03-21 07:25:00 +00:00
}
// done
2014-05-30 08:55:25 +00:00
daemon . containers . Add ( container . ID , container )
2014-05-14 14:58:37 +00:00
// don't update the Suffixarray if we're starting up
// we'll waste time if we update it for every container
2014-06-24 22:24:02 +00:00
daemon . idIndex . Add ( container . ID )
2013-04-19 19:08:43 +00:00
2015-05-28 20:44:55 +00:00
if err := daemon . verifyVolumesInfo ( container ) ; err != nil {
2015-05-19 20:05:25 +00:00
return err
}
2015-05-20 21:53:53 +00:00
if err := container . prepareMountPoints ( ) ; err != nil {
2015-05-19 20:05:25 +00:00
return err
}
2015-01-16 19:48:25 +00:00
2014-08-31 15:20:35 +00:00
if container . IsRunning ( ) {
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "killing old running container %s" , container . ID )
2014-04-18 03:42:57 +00:00
2014-12-12 18:38:48 +00:00
container . SetStopped ( & execdriver . ExitStatus { ExitCode : 0 } )
2014-04-18 03:42:57 +00:00
2015-05-04 17:49:28 +00:00
// use the current driver and ensure that the container is dead x.x
cmd := & execdriver . Command {
ID : container . ID ,
2014-04-18 03:42:57 +00:00
}
2015-05-04 17:49:28 +00:00
daemon . execDriver . Terminate ( cmd )
2014-07-22 02:59:44 +00:00
2014-04-18 03:42:57 +00:00
if err := container . Unmount ( ) ; err != nil {
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "unmount error %s" , err )
2014-04-18 03:42:57 +00:00
}
if err := container . ToDisk ( ) ; err != nil {
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "saving stopped state to disk %s" , err )
2014-03-06 22:14:25 +00:00
}
2013-04-19 19:08:43 +00:00
}
2015-04-16 00:39:34 +00:00
2013-03-21 07:25:00 +00:00
return nil
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) ensureName ( container * Container ) error {
2013-11-04 17:28:40 +00:00
if container . Name == "" {
2014-05-24 00:51:16 +00:00
name , err := daemon . generateNewName ( container . ID )
2013-11-04 17:28:40 +00:00
if err != nil {
2014-05-24 00:51:16 +00:00
return err
2013-11-04 17:28:40 +00:00
}
container . Name = name
if err := container . ToDisk ( ) ; err != nil {
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "Error saving container name %s" , err )
2013-11-04 17:28:40 +00:00
}
}
return nil
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) restore ( ) error {
2015-05-19 20:05:25 +00:00
type cr struct {
container * Container
registered bool
}
2014-06-06 00:31:58 +00:00
var (
2014-08-06 17:40:43 +00:00
debug = ( os . Getenv ( "DEBUG" ) != "" || os . Getenv ( "TEST" ) != "" )
currentDriver = daemon . driver . String ( )
2015-05-19 20:05:25 +00:00
containers = make ( map [ string ] * cr )
2014-06-06 00:31:58 +00:00
)
2014-05-30 18:03:56 +00:00
if ! debug {
2015-03-26 22:22:04 +00:00
logrus . Info ( "Loading containers: start." )
2013-08-16 13:31:50 +00:00
}
2014-04-17 21:43:01 +00:00
dir , err := ioutil . ReadDir ( daemon . repository )
2013-01-19 00:13:39 +00:00
if err != nil {
return err
}
2013-10-24 23:49:28 +00:00
2013-12-18 18:43:42 +00:00
for _ , v := range dir {
2013-03-21 07:25:00 +00:00
id := v . Name ( )
2014-04-17 21:43:01 +00:00
container , err := daemon . load ( id )
2015-03-26 22:22:04 +00:00
if ! debug && logrus . GetLevel ( ) == logrus . InfoLevel {
2013-12-18 18:43:42 +00:00
fmt . Print ( "." )
2013-08-16 13:31:50 +00:00
}
2013-01-19 00:13:39 +00:00
if err != nil {
2015-03-26 22:22:04 +00:00
logrus . Errorf ( "Failed to load container %v: %v" , id , err )
2013-01-19 00:13:39 +00:00
continue
}
2013-11-15 06:52:08 +00:00
// Ignore the container if it does not support the current driver being used by the graph
2014-08-06 17:40:43 +00:00
if ( container . Driver == "" && currentDriver == "aufs" ) || container . Driver == currentDriver {
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "Loaded container %v" , container . ID )
2014-08-06 17:40:43 +00:00
2015-05-19 20:05:25 +00:00
containers [ container . ID ] = & cr { container : container }
2013-11-15 06:52:08 +00:00
} else {
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "Cannot load container %s because it was created with another graph driver." , container . ID )
2013-11-15 06:52:08 +00:00
}
2013-10-05 02:25:15 +00:00
}
2014-04-17 21:43:01 +00:00
if entities := daemon . containerGraph . List ( "/" , - 1 ) ; entities != nil {
2013-10-24 23:49:28 +00:00
for _ , p := range entities . Paths ( ) {
2015-03-26 22:22:04 +00:00
if ! debug && logrus . GetLevel ( ) == logrus . InfoLevel {
2013-12-18 18:43:42 +00:00
fmt . Print ( "." )
}
2014-08-06 17:40:43 +00:00
2013-10-24 23:49:28 +00:00
e := entities [ p ]
2014-08-06 17:40:43 +00:00
2015-05-19 20:05:25 +00:00
if c , ok := containers [ e . ID ( ) ] ; ok {
c . registered = true
2013-10-24 23:49:28 +00:00
}
2013-10-05 02:25:15 +00:00
}
2013-10-24 23:49:28 +00:00
}
2013-10-24 17:25:07 +00:00
2015-05-19 20:05:25 +00:00
group := sync . WaitGroup { }
for _ , c := range containers {
group . Add ( 1 )
2014-08-06 17:40:43 +00:00
2015-05-19 20:05:25 +00:00
go func ( container * Container , registered bool ) {
defer group . Done ( )
2014-08-06 17:40:43 +00:00
2015-05-19 20:05:25 +00:00
if ! registered {
// Try to set the default name for a container if it exists prior to links
container . Name , err = daemon . generateNewName ( container . ID )
if err != nil {
logrus . Debugf ( "Setting default id - %s" , err )
}
}
2013-10-24 23:49:28 +00:00
2015-05-19 20:05:25 +00:00
if err := daemon . register ( container , false ) ; err != nil {
logrus . Debugf ( "Failed to register container %s: %s" , container . ID , err )
}
2014-08-06 17:40:43 +00:00
2015-05-19 20:05:25 +00:00
// check the restart policy on the containers and restart any container with
// the restart policy of "always"
2015-05-20 21:53:53 +00:00
if daemon . config . AutoRestart && container . shouldRestart ( ) {
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "Starting container %s" , container . ID )
2014-08-06 17:40:43 +00:00
if err := container . Start ( ) ; err != nil {
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "Failed to start container %s: %s" , container . ID , err )
2014-08-06 17:40:43 +00:00
}
}
2015-05-19 20:05:25 +00:00
} ( c . container , c . registered )
2014-06-06 00:31:58 +00:00
}
2015-05-19 20:05:25 +00:00
group . Wait ( )
2014-06-06 00:31:58 +00:00
2014-05-30 18:03:56 +00:00
if ! debug {
2015-03-26 22:22:04 +00:00
if logrus . GetLevel ( ) == logrus . InfoLevel {
2015-03-18 00:27:53 +00:00
fmt . Println ( )
}
2015-03-26 22:22:04 +00:00
logrus . Info ( "Loading containers: done." )
2013-08-16 13:31:50 +00:00
}
2013-10-05 02:25:15 +00:00
2013-01-19 00:13:39 +00:00
return nil
}
2015-05-24 13:17:29 +00:00
func ( daemon * Daemon ) mergeAndVerifyConfig ( config * runconfig . Config , img * image . Image ) error {
2014-10-28 21:06:23 +00:00
if img != nil && img . Config != nil {
2014-02-12 04:04:39 +00:00
if err := runconfig . Merge ( config , img . Config ) ; err != nil {
2015-05-24 13:17:29 +00:00
return err
2013-10-30 18:13:10 +00:00
}
}
2015-04-11 00:05:21 +00:00
if config . Entrypoint . Len ( ) == 0 && config . Cmd . Len ( ) == 0 {
2015-05-24 13:17:29 +00:00
return fmt . Errorf ( "No command specified" )
2013-09-07 00:33:05 +00:00
}
2015-05-24 13:17:29 +00:00
return nil
2014-04-07 19:20:23 +00:00
}
2013-09-07 00:33:05 +00:00
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) generateIdAndName ( name string ) ( string , string , error ) {
2014-04-07 19:20:23 +00:00
var (
err error
2015-03-24 11:25:26 +00:00
id = stringid . GenerateRandomID ( )
2014-04-07 19:20:23 +00:00
)
2013-10-05 02:25:15 +00:00
2013-10-28 23:58:59 +00:00
if name == "" {
2014-05-24 00:51:16 +00:00
if name , err = daemon . generateNewName ( id ) ; err != nil {
return "" , "" , err
2013-12-12 21:34:26 +00:00
}
2014-05-24 00:51:16 +00:00
return id , name , nil
}
if name , err = daemon . reserveName ( id , name ) ; err != nil {
return "" , "" , err
}
return id , name , nil
}
func ( daemon * Daemon ) reserveName ( id , name string ) ( string , error ) {
if ! validContainerNamePattern . MatchString ( name ) {
return "" , fmt . Errorf ( "Invalid container name (%s), only %s are allowed" , name , validContainerNameChars )
2013-10-28 23:58:59 +00:00
}
2014-05-24 00:51:16 +00:00
2013-10-28 23:58:59 +00:00
if name [ 0 ] != '/' {
name = "/" + name
}
2014-05-24 00:51:16 +00:00
2014-04-17 21:43:01 +00:00
if _ , err := daemon . containerGraph . Set ( name , id ) ; err != nil {
2014-02-18 10:41:11 +00:00
if ! graphdb . IsNonUniqueNameError ( err ) {
2014-05-24 00:51:16 +00:00
return "" , err
2013-12-05 23:22:21 +00:00
}
2014-04-17 21:43:01 +00:00
conflictingContainer , err := daemon . GetByName ( name )
2013-12-05 23:22:21 +00:00
if err != nil {
if strings . Contains ( err . Error ( ) , "Could not find entity" ) {
2014-05-24 00:51:16 +00:00
return "" , err
2013-12-05 23:22:21 +00:00
}
// Remove name and continue starting the container
2014-04-17 21:43:01 +00:00
if err := daemon . containerGraph . Delete ( name ) ; err != nil {
2014-05-24 00:51:16 +00:00
return "" , err
2013-12-05 23:22:21 +00:00
}
} else {
2013-11-27 02:58:54 +00:00
nameAsKnownByUser := strings . TrimPrefix ( name , "/" )
2014-05-24 00:51:16 +00:00
return "" , fmt . Errorf (
2015-01-13 20:57:48 +00:00
"Conflict. The name %q is already in use by container %s. You have to delete (or rename) that container to be able to reuse that name." , nameAsKnownByUser ,
2015-03-24 11:25:26 +00:00
stringid . TruncateID ( conflictingContainer . ID ) )
2013-10-30 18:24:50 +00:00
}
2013-10-05 02:25:15 +00:00
}
2014-05-24 00:51:16 +00:00
return name , nil
}
func ( daemon * Daemon ) generateNewName ( id string ) ( string , error ) {
var name string
2014-05-30 19:08:21 +00:00
for i := 0 ; i < 6 ; i ++ {
2014-05-24 00:51:16 +00:00
name = namesgenerator . GetRandomName ( i )
if name [ 0 ] != '/' {
name = "/" + name
}
if _ , err := daemon . containerGraph . Set ( name , id ) ; err != nil {
if ! graphdb . IsNonUniqueNameError ( err ) {
return "" , err
}
continue
}
return name , nil
}
2015-03-24 11:25:26 +00:00
name = "/" + stringid . TruncateID ( id )
2014-05-24 00:51:16 +00:00
if _ , err := daemon . containerGraph . Set ( name , id ) ; err != nil {
return "" , err
}
return name , nil
2014-04-07 19:20:23 +00:00
}
2013-10-05 02:25:15 +00:00
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) generateHostname ( id string , config * runconfig . Config ) {
2013-09-07 00:33:05 +00:00
// Generate default hostname
// FIXME: the lxc template no longer needs to set a default hostname
if config . Hostname == "" {
config . Hostname = id [ : 12 ]
}
2014-04-07 19:20:23 +00:00
}
2013-09-07 00:33:05 +00:00
2015-04-11 00:05:21 +00:00
func ( daemon * Daemon ) getEntrypointAndArgs ( configEntrypoint * runconfig . Entrypoint , configCmd * runconfig . Command ) ( string , [ ] string ) {
2014-04-07 19:20:23 +00:00
var (
entrypoint string
args [ ] string
)
2015-04-11 00:05:21 +00:00
cmdSlice := configCmd . Slice ( )
if configEntrypoint . Len ( ) != 0 {
eSlice := configEntrypoint . Slice ( )
entrypoint = eSlice [ 0 ]
args = append ( eSlice [ 1 : ] , cmdSlice ... )
2013-09-07 00:33:05 +00:00
} else {
2015-04-11 00:05:21 +00:00
entrypoint = cmdSlice [ 0 ]
args = cmdSlice [ 1 : ]
2013-09-07 00:33:05 +00:00
}
2014-04-07 19:20:23 +00:00
return entrypoint , args
}
2014-11-03 22:57:18 +00:00
func parseSecurityOpt ( container * Container , config * runconfig . HostConfig ) error {
2014-04-07 19:20:23 +00:00
var (
2014-11-03 22:57:18 +00:00
labelOpts [ ] string
err error
2014-09-30 19:10:03 +00:00
)
for _ , opt := range config . SecurityOpt {
con := strings . SplitN ( opt , ":" , 2 )
if len ( con ) == 1 {
return fmt . Errorf ( "Invalid --security-opt: %q" , opt )
}
switch con [ 0 ] {
case "label" :
2014-11-03 22:57:18 +00:00
labelOpts = append ( labelOpts , con [ 1 ] )
2014-09-30 19:10:03 +00:00
case "apparmor" :
container . AppArmorProfile = con [ 1 ]
default :
return fmt . Errorf ( "Invalid --security-opt: %q" , opt )
}
}
2014-11-03 22:57:18 +00:00
container . ProcessLabel , container . MountLabel , err = label . InitLabels ( labelOpts )
2014-09-30 19:10:03 +00:00
return err
}
2014-10-28 21:06:23 +00:00
func ( daemon * Daemon ) newContainer ( name string , config * runconfig . Config , imgID string ) ( * Container , error ) {
2014-09-30 19:10:03 +00:00
var (
id string
err error
2014-04-07 19:20:23 +00:00
)
2014-04-17 21:43:01 +00:00
id , name , err = daemon . generateIdAndName ( name )
2014-04-07 19:20:23 +00:00
if err != nil {
return nil , err
}
2014-04-17 21:43:01 +00:00
daemon . generateHostname ( id , config )
2014-09-09 04:19:32 +00:00
entrypoint , args := daemon . getEntrypointAndArgs ( config . Entrypoint , config . Cmd )
2013-09-07 00:33:05 +00:00
container := & Container {
2015-04-29 22:53:35 +00:00
CommonContainer : CommonContainer {
ID : id , // FIXME: we should generate the ID here instead of receiving it as an argument
Created : time . Now ( ) . UTC ( ) ,
Path : entrypoint ,
Args : args , //FIXME: de-duplicate from config
Config : config ,
hostConfig : & runconfig . HostConfig { } ,
ImageID : imgID ,
NetworkSettings : & network . Settings { } ,
Name : name ,
Driver : daemon . driver . String ( ) ,
ExecDriver : daemon . execDriver . Name ( ) ,
State : NewState ( ) ,
execCommands : newExecStore ( ) ,
2015-05-19 20:05:25 +00:00
MountPoints : map [ string ] * mountPoint { } ,
2015-04-29 22:53:35 +00:00
} ,
2013-09-07 00:33:05 +00:00
}
2014-04-17 21:43:01 +00:00
container . root = daemon . containerRoot ( container . ID )
2015-04-29 22:53:35 +00:00
2014-09-30 19:10:03 +00:00
return container , err
2014-04-07 19:20:23 +00:00
}
2014-10-28 21:06:23 +00:00
func ( daemon * Daemon ) createRootfs ( container * Container ) error {
2013-09-07 00:33:05 +00:00
// Step 1: create the container directory.
// This doubles as a barrier to avoid race conditions.
if err := os . Mkdir ( container . root , 0700 ) ; err != nil {
2014-04-07 19:20:23 +00:00
return err
2013-09-07 00:33:05 +00:00
}
2013-11-07 20:34:01 +00:00
initID := fmt . Sprintf ( "%s-init" , container . ID )
2014-10-28 21:06:23 +00:00
if err := daemon . driver . Create ( initID , container . ImageID ) ; err != nil {
2014-04-07 19:20:23 +00:00
return err
2013-11-07 20:34:01 +00:00
}
2014-04-17 23:47:27 +00:00
initPath , err := daemon . driver . Get ( initID , "" )
2013-11-07 20:34:01 +00:00
if err != nil {
2014-04-07 19:20:23 +00:00
return err
2013-11-07 20:34:01 +00:00
}
2014-04-17 21:43:01 +00:00
defer daemon . driver . Put ( initID )
2013-12-05 21:18:02 +00:00
2014-03-08 02:04:38 +00:00
if err := graph . SetupInitLayer ( initPath ) ; err != nil {
2014-04-07 19:20:23 +00:00
return err
2013-11-07 20:34:01 +00:00
}
2014-04-17 23:47:27 +00:00
if err := daemon . driver . Create ( container . ID , initID ) ; err != nil {
2014-04-07 19:20:23 +00:00
return err
2013-11-07 20:34:01 +00:00
}
2014-04-07 19:20:23 +00:00
return nil
}
2014-03-08 02:42:29 +00:00
func GetFullContainerName ( name string ) ( string , error ) {
2013-11-04 17:28:40 +00:00
if name == "" {
return "" , fmt . Errorf ( "Container name cannot be empty" )
}
2013-10-24 23:49:28 +00:00
if name [ 0 ] != '/' {
name = "/" + name
}
2013-11-04 17:28:40 +00:00
return name , nil
2013-10-24 23:49:28 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) GetByName ( name string ) ( * Container , error ) {
2014-03-08 02:42:29 +00:00
fullName , err := GetFullContainerName ( name )
2013-11-04 17:28:40 +00:00
if err != nil {
return nil , err
}
2014-04-17 21:43:01 +00:00
entity := daemon . containerGraph . Get ( fullName )
2013-10-05 02:25:15 +00:00
if entity == nil {
return nil , fmt . Errorf ( "Could not find entity for %s" , name )
}
2014-05-30 08:55:25 +00:00
e := daemon . containers . Get ( entity . ID ( ) )
2013-10-05 02:25:15 +00:00
if e == nil {
return nil , fmt . Errorf ( "Could not find container for entity id %s" , entity . ID ( ) )
}
2014-05-30 08:55:25 +00:00
return e , nil
2013-10-05 02:25:15 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Children ( name string ) ( map [ string ] * Container , error ) {
2014-03-08 02:42:29 +00:00
name , err := GetFullContainerName ( name )
2013-11-04 17:28:40 +00:00
if err != nil {
return nil , err
}
2013-10-05 02:25:15 +00:00
children := make ( map [ string ] * Container )
2014-04-17 21:43:01 +00:00
err = daemon . containerGraph . Walk ( name , func ( p string , e * graphdb . Entity ) error {
2014-12-16 23:06:35 +00:00
c , err := daemon . Get ( e . ID ( ) )
if err != nil {
return err
2013-10-05 02:25:15 +00:00
}
children [ p ] = c
return nil
} , 0 )
if err != nil {
return nil , err
}
return children , nil
}
2014-07-14 23:19:37 +00:00
func ( daemon * Daemon ) Parents ( name string ) ( [ ] string , error ) {
name , err := GetFullContainerName ( name )
if err != nil {
return nil , err
}
return daemon . containerGraph . Parents ( name )
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) RegisterLink ( parent , child * Container , alias string ) error {
2013-10-28 23:58:59 +00:00
fullName := path . Join ( parent . Name , alias )
2014-04-17 21:43:01 +00:00
if ! daemon . containerGraph . Exists ( fullName ) {
_ , err := daemon . containerGraph . Set ( fullName , child . ID )
2013-10-05 02:25:15 +00:00
return err
}
2013-10-28 23:58:59 +00:00
return nil
2013-10-05 02:25:15 +00:00
}
2014-05-13 00:54:46 +00:00
func ( daemon * Daemon ) RegisterLinks ( container * Container , hostConfig * runconfig . HostConfig ) error {
if hostConfig != nil && hostConfig . Links != nil {
for _ , l := range hostConfig . Links {
2015-05-07 20:02:14 +00:00
name , alias , err := parsers . ParseLink ( l )
2014-05-13 00:54:46 +00:00
if err != nil {
return err
}
2015-05-07 20:02:14 +00:00
child , err := daemon . Get ( name )
2014-12-16 23:06:35 +00:00
if err != nil {
2015-02-13 20:14:38 +00:00
//An error from daemon.Get() means this name could not be found
2015-05-07 20:02:14 +00:00
return fmt . Errorf ( "Could not get container for %s" , name )
2014-05-13 00:54:46 +00:00
}
2015-03-17 14:50:12 +00:00
for child . hostConfig . NetworkMode . IsContainer ( ) {
parts := strings . SplitN ( string ( child . hostConfig . NetworkMode ) , ":" , 2 )
child , err = daemon . Get ( parts [ 1 ] )
if err != nil {
return fmt . Errorf ( "Could not get container for %s" , parts [ 1 ] )
}
}
2014-12-08 19:33:18 +00:00
if child . hostConfig . NetworkMode . IsHost ( ) {
return runconfig . ErrConflictHostNetworkAndLinks
}
2015-05-07 20:02:14 +00:00
if err := daemon . RegisterLink ( container , child , alias ) ; err != nil {
2014-05-13 00:54:46 +00:00
return err
}
}
// After we load all the links into the daemon
// set them to nil on the hostconfig
hostConfig . Links = nil
if err := container . WriteHostConfig ( ) ; err != nil {
return err
}
}
return nil
}
2015-04-27 21:11:29 +00:00
func NewDaemon ( config * Config , registryService * registry . Service ) ( daemon * Daemon , err error ) {
2014-08-10 03:58:19 +00:00
// Check for mutually incompatible config options
2015-04-04 04:06:48 +00:00
if config . Bridge . Iface != "" && config . Bridge . IP != "" {
2014-08-10 03:58:19 +00:00
return nil , fmt . Errorf ( "You specified -b & --bip, mutually exclusive options. Please specify only one." )
}
2015-05-06 22:39:29 +00:00
if ! config . Bridge . EnableIPTables && ! config . Bridge . InterContainerCommunication {
2014-08-10 03:58:19 +00:00
return nil , fmt . Errorf ( "You specified --iptables=false with --icc=false. ICC uses iptables to function. Please set --icc or --iptables to true." )
}
2015-05-06 22:39:29 +00:00
if ! config . Bridge . EnableIPTables && config . Bridge . EnableIPMasq {
config . Bridge . EnableIPMasq = false
2014-09-17 03:00:15 +00:00
}
2015-04-04 04:06:48 +00:00
config . DisableNetwork = config . Bridge . Iface == disableNetworkBridge
2014-08-10 01:18:32 +00:00
2014-08-06 08:12:22 +00:00
// Check that the system is supported and we have sufficient privileges
2014-07-30 06:37:12 +00:00
if runtime . GOOS != "linux" {
2014-09-16 17:42:59 +00:00
return nil , fmt . Errorf ( "The Docker daemon is only supported on linux" )
2014-07-30 06:37:12 +00:00
}
if os . Geteuid ( ) != 0 {
2014-09-16 17:42:59 +00:00
return nil , fmt . Errorf ( "The Docker daemon needs to be run as root" )
2014-07-30 06:37:12 +00:00
}
2015-01-29 18:36:56 +00:00
if err := checkKernel ( ) ; err != nil {
2014-09-16 17:42:59 +00:00
return nil , err
2014-07-30 06:51:43 +00:00
}
2015-04-21 04:24:24 +00:00
// set up SIGUSR1 handler to dump Go routine stacks
setupSigusr1Trap ( )
2015-03-29 18:51:17 +00:00
// set up the tmpDir to use a canonical path
tmp , err := tempDir ( config . Root )
2014-08-05 20:43:33 +00:00
if err != nil {
2014-09-16 17:42:59 +00:00
return nil , fmt . Errorf ( "Unable to get the TempDir under %s: %s" , config . Root , err )
2014-08-05 20:43:33 +00:00
}
2015-03-29 21:17:23 +00:00
realTmp , err := fileutils . ReadSymlinkedDirectory ( tmp )
2014-07-30 06:44:34 +00:00
if err != nil {
2014-09-16 17:42:59 +00:00
return nil , fmt . Errorf ( "Unable to get the full path to the TempDir (%s): %s" , tmp , err )
2014-07-30 06:44:34 +00:00
}
os . Setenv ( "TMPDIR" , realTmp )
2014-05-10 01:05:54 +00:00
2014-07-30 06:51:03 +00:00
// get the canonical path to the Docker root directory
var realRoot string
if _ , err := os . Stat ( config . Root ) ; err != nil && os . IsNotExist ( err ) {
realRoot = config . Root
} else {
2015-03-29 21:17:23 +00:00
realRoot , err = fileutils . ReadSymlinkedDirectory ( config . Root )
2014-07-30 06:51:03 +00:00
if err != nil {
2014-09-16 17:42:59 +00:00
return nil , fmt . Errorf ( "Unable to get the full path to root (%s): %s" , config . Root , err )
2014-07-30 06:51:03 +00:00
}
}
config . Root = realRoot
2014-05-10 01:05:54 +00:00
// Create the root directory if it doesn't exists
if err := os . MkdirAll ( config . Root , 0700 ) ; err != nil && ! os . IsExist ( err ) {
return nil , err
}
2013-11-15 07:02:09 +00:00
// Set the default driver
graphdriver . DefaultDriver = config . GraphDriver
2013-11-07 20:34:01 +00:00
// Load storage driver
2014-06-05 08:34:20 +00:00
driver , err := graphdriver . New ( config . Root , config . GraphOptions )
2013-11-07 20:34:01 +00:00
if err != nil {
2015-04-27 20:33:30 +00:00
return nil , fmt . Errorf ( "error initializing graphdriver: %v" , err )
2013-11-07 20:34:01 +00:00
}
2015-03-26 22:22:04 +00:00
logrus . Debugf ( "Using graph driver %s" , driver )
2015-04-27 21:11:29 +00:00
d := & Daemon { }
d . driver = driver
defer func ( ) {
if err != nil {
if err := d . Shutdown ( ) ; err != nil {
logrus . Error ( err )
}
2015-03-11 14:33:06 +00:00
}
2015-04-27 21:11:29 +00:00
} ( )
2013-11-07 20:34:01 +00:00
2015-04-09 04:23:30 +00:00
// Verify logging driver type
if config . LogConfig . Type != "none" {
if _ , err := logger . GetLogDriver ( config . LogConfig . Type ) ; err != nil {
return nil , fmt . Errorf ( "error finding the logging driver: %v" , err )
}
}
logrus . Debugf ( "Using default logging driver %s" , config . LogConfig . Type )
2015-03-10 02:00:07 +00:00
if config . EnableSelinuxSupport {
if selinuxEnabled ( ) {
// As Docker on btrfs and SELinux are incompatible at present, error on both being enabled
2015-04-27 21:11:29 +00:00
if d . driver . String ( ) == "btrfs" {
2015-03-10 02:00:07 +00:00
return nil , fmt . Errorf ( "SELinux is not supported with the BTRFS graph driver" )
}
2015-03-26 22:22:04 +00:00
logrus . Debug ( "SELinux enabled successfully" )
2015-03-10 02:00:07 +00:00
} else {
2015-03-26 22:22:04 +00:00
logrus . Warn ( "Docker could not enable SELinux on the host system" )
2015-03-10 02:00:07 +00:00
}
} else {
selinuxSetDisabled ( )
2014-06-04 20:38:06 +00:00
}
2014-04-17 21:43:01 +00:00
daemonRepo := path . Join ( config . Root , "containers" )
2013-03-14 01:48:50 +00:00
2014-04-17 21:43:01 +00:00
if err := os . MkdirAll ( daemonRepo , 0700 ) ; err != nil && ! os . IsExist ( err ) {
2013-03-14 01:48:50 +00:00
return nil , err
}
2014-03-14 18:23:54 +00:00
// Migrate the container if it is aufs and aufs is enabled
2015-04-27 21:11:29 +00:00
if err := migrateIfAufs ( d . driver , config . Root ) ; err != nil {
2014-03-14 18:23:54 +00:00
return nil , err
2013-11-16 01:16:30 +00:00
}
2015-03-26 22:22:04 +00:00
logrus . Debug ( "Creating images graph" )
2015-04-27 21:11:29 +00:00
g , err := graph . NewGraph ( path . Join ( config . Root , "graph" ) , d . driver )
2013-02-27 01:45:46 +00:00
if err != nil {
return nil , err
}
2013-11-15 10:30:28 +00:00
2015-05-19 20:05:25 +00:00
volumesDriver , err := local . New ( filepath . Join ( config . Root , defaultVolumesPathName ) )
2013-04-06 01:00:10 +00:00
if err != nil {
return nil , err
}
2015-05-19 20:05:25 +00:00
volumedrivers . Register ( volumesDriver , volumesDriver . Name ( ) )
2014-08-28 14:18:08 +00:00
2015-01-07 22:59:12 +00:00
trustKey , err := api . LoadOrCreateTrustKey ( config . TrustKeyPath )
if err != nil {
return nil , err
}
2014-10-02 01:26:06 +00:00
trustDir := path . Join ( config . Root , "trust" )
if err := os . MkdirAll ( trustDir , 0700 ) ; err != nil && ! os . IsExist ( err ) {
return nil , err
}
2015-04-20 19:48:33 +00:00
trustService , err := trust . NewTrustStore ( trustDir )
2014-10-02 01:26:06 +00:00
if err != nil {
return nil , fmt . Errorf ( "could not create trust store: %s" , err )
}
2015-04-20 19:48:33 +00:00
eventsService := events . New ( )
logrus . Debug ( "Creating repository list" )
tagCfg := & graph . TagStoreConfig {
Graph : g ,
Key : trustKey ,
Registry : registryService ,
Events : eventsService ,
Trust : trustService ,
}
2015-04-27 21:11:29 +00:00
repositories , err := graph . NewTagStore ( path . Join ( config . Root , "repositories-" + d . driver . String ( ) ) , tagCfg )
2015-04-20 19:48:33 +00:00
if err != nil {
return nil , fmt . Errorf ( "Couldn't create Tag store: %s" , err )
}
2014-01-30 02:34:43 +00:00
if ! config . DisableNetwork {
2015-05-06 22:39:29 +00:00
d . netController , err = initNetworkController ( config )
if err != nil {
return nil , fmt . Errorf ( "Error initializing network controller: %v" , err )
2014-01-30 02:34:43 +00:00
}
2013-04-04 12:33:28 +00:00
}
2013-10-05 02:25:15 +00:00
2013-11-15 23:55:45 +00:00
graphdbPath := path . Join ( config . Root , "linkgraph.db" )
2013-12-19 05:14:16 +00:00
graph , err := graphdb . NewSqliteConn ( graphdbPath )
2013-02-25 22:06:22 +00:00
if err != nil {
return nil , err
}
2015-04-27 21:11:29 +00:00
d . containerGraph = graph
2013-10-05 02:25:15 +00:00
2014-02-12 00:26:54 +00:00
localCopy := path . Join ( config . Root , "init" , fmt . Sprintf ( "dockerinit-%s" , dockerversion . VERSION ) )
2013-11-25 22:42:22 +00:00
sysInitPath := utils . DockerInitPath ( localCopy )
if sysInitPath == "" {
2015-04-11 17:31:34 +00:00
return nil , fmt . Errorf ( "Could not locate dockerinit: This usually means docker was built incorrectly. See https://docs.docker.com/contributing/devenvironment for official build instructions." )
2013-11-25 22:42:22 +00:00
}
2013-12-05 09:10:41 +00:00
if sysInitPath != localCopy {
// When we find a suitable dockerinit binary (even if it's our local binary), we copy it into config.Root at localCopy for future use (so that the original can go away without that being a problem, for example during a package upgrade).
if err := os . Mkdir ( path . Dir ( localCopy ) , 0700 ) ; err != nil && ! os . IsExist ( err ) {
2013-11-25 22:42:22 +00:00
return nil , err
}
2015-03-29 21:17:23 +00:00
if _ , err := fileutils . CopyFile ( sysInitPath , localCopy ) ; err != nil {
2013-11-25 22:42:22 +00:00
return nil , err
}
2013-12-05 09:10:41 +00:00
if err := os . Chmod ( localCopy , 0700 ) ; err != nil {
2013-11-25 22:42:22 +00:00
return nil , err
}
2013-12-05 09:10:41 +00:00
sysInitPath = localCopy
2013-11-25 22:42:22 +00:00
}
2014-03-05 09:40:55 +00:00
sysInfo := sysinfo . New ( false )
2015-05-15 02:59:11 +00:00
ed , err := execdrivers . NewDriver ( config . ExecDriver , config . ExecOptions , config . ExecRoot , config . Root , sysInitPath , sysInfo )
2014-01-10 00:03:22 +00:00
if err != nil {
return nil , err
}
2015-04-27 21:11:29 +00:00
d . ID = trustKey . PublicKey ( ) . KeyID ( )
d . repository = daemonRepo
d . containers = & contStore { s : make ( map [ string ] * Container ) }
d . execCommands = newExecStore ( )
d . graph = g
d . repositories = repositories
d . idIndex = truncindex . NewTruncIndex ( [ ] string { } )
d . sysInfo = sysInfo
d . config = config
d . sysInitPath = sysInitPath
d . execDriver = ed
d . statsCollector = newStatsCollector ( 1 * time . Second )
d . defaultLogConfig = config . LogConfig
d . RegistryService = registryService
d . EventsService = eventsService
2015-05-19 20:05:25 +00:00
d . root = config . Root
2015-04-27 21:11:29 +00:00
if err := d . restore ( ) ; err != nil {
2015-03-06 20:44:31 +00:00
return nil , err
}
2015-05-06 22:39:29 +00:00
return d , nil
}
func initNetworkController ( config * Config ) ( libnetwork . NetworkController , error ) {
controller , err := libnetwork . New ( )
if err != nil {
return nil , fmt . Errorf ( "error obtaining controller instance: %v" , err )
2015-03-06 20:44:31 +00:00
}
2015-05-06 22:39:29 +00:00
// Initialize default driver "null"
if err := controller . ConfigureNetworkDriver ( "null" , options . Generic { } ) ; err != nil {
return nil , fmt . Errorf ( "Error initializing null driver: %v" , err )
}
// Initialize default network on "null"
if _ , err := controller . NewNetwork ( "null" , "none" ) ; err != nil {
return nil , fmt . Errorf ( "Error creating default \"null\" network: %v" , err )
}
// Initialize default driver "host"
if err := controller . ConfigureNetworkDriver ( "host" , options . Generic { } ) ; err != nil {
return nil , fmt . Errorf ( "Error initializing host driver: %v" , err )
}
// Initialize default network on "host"
if _ , err := controller . NewNetwork ( "host" , "host" ) ; err != nil {
return nil , fmt . Errorf ( "Error creating default \"host\" network: %v" , err )
}
// Initialize default driver "bridge"
option := options . Generic {
"EnableIPForwarding" : config . Bridge . EnableIPForward }
if err := controller . ConfigureNetworkDriver ( "bridge" , options . Generic { netlabel . GenericData : option } ) ; err != nil {
return nil , fmt . Errorf ( "Error initializing bridge driver: %v" , err )
}
netOption := options . Generic {
"BridgeName" : config . Bridge . Iface ,
"Mtu" : config . Mtu ,
"EnableIPTables" : config . Bridge . EnableIPTables ,
"EnableIPMasquerade" : config . Bridge . EnableIPMasq ,
"EnableICC" : config . Bridge . InterContainerCommunication ,
"EnableUserlandProxy" : config . Bridge . EnableUserlandProxy ,
}
if config . Bridge . IP != "" {
ip , bipNet , err := net . ParseCIDR ( config . Bridge . IP )
if err != nil {
return nil , err
}
bipNet . IP = ip
netOption [ "AddressIPv4" ] = bipNet
}
if config . Bridge . FixedCIDR != "" {
_ , fCIDR , err := net . ParseCIDR ( config . Bridge . FixedCIDR )
if err != nil {
return nil , err
}
netOption [ "FixedCIDR" ] = fCIDR
}
if config . Bridge . FixedCIDRv6 != "" {
_ , fCIDRv6 , err := net . ParseCIDR ( config . Bridge . FixedCIDRv6 )
if err != nil {
return nil , err
}
netOption [ "FixedCIDRv6" ] = fCIDRv6
}
// --ip processing
if config . Bridge . DefaultIP != nil {
netOption [ "DefaultBindingIP" ] = config . Bridge . DefaultIP
}
// Initialize default network on "bridge" with the same name
_ , err = controller . NewNetwork ( "bridge" , "bridge" ,
libnetwork . NetworkOptionGeneric ( options . Generic {
netlabel . GenericData : netOption ,
netlabel . EnableIPv6 : config . Bridge . EnableIPv6 ,
} ) )
if err != nil {
return nil , fmt . Errorf ( "Error creating default \"bridge\" network: %v" , err )
}
return controller , nil
2013-01-19 00:13:39 +00:00
}
2013-01-29 20:15:39 +00:00
2015-04-27 21:11:29 +00:00
func ( daemon * Daemon ) Shutdown ( ) error {
if daemon . containerGraph != nil {
if err := daemon . containerGraph . Close ( ) ; err != nil {
logrus . Errorf ( "Error during container graph.Close(): %v" , err )
2014-03-25 23:21:07 +00:00
}
}
2015-04-27 21:11:29 +00:00
if daemon . driver != nil {
if err := daemon . driver . Cleanup ( ) ; err != nil {
logrus . Errorf ( "Error during graph storage driver.Cleanup(): %v" , err )
}
}
if daemon . containers != nil {
group := sync . WaitGroup { }
logrus . Debug ( "starting clean shutdown of all containers..." )
for _ , container := range daemon . List ( ) {
c := container
if c . IsRunning ( ) {
logrus . Debugf ( "stopping %s" , c . ID )
group . Add ( 1 )
go func ( ) {
defer group . Done ( )
2015-05-26 01:25:34 +00:00
// If container failed to exit in 10 seconds of SIGTERM, then using the force
if err := c . Stop ( 10 ) ; err != nil {
logrus . Errorf ( "Stop container %s with error: %v" , c . ID , err )
2015-04-27 21:11:29 +00:00
}
c . WaitStop ( - 1 * time . Second )
logrus . Debugf ( "container stopped %s" , c . ID )
} ( )
}
}
group . Wait ( )
}
2014-03-25 23:21:07 +00:00
return nil
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Mount ( container * Container ) error {
2014-04-29 08:08:19 +00:00
dir , err := daemon . driver . Get ( container . ID , container . GetMountLabel ( ) )
2013-11-01 01:07:54 +00:00
if err != nil {
2014-04-17 21:43:01 +00:00
return fmt . Errorf ( "Error getting container %s from driver %s: %s" , container . ID , daemon . driver , err )
2013-11-07 20:34:01 +00:00
}
2014-01-30 15:43:53 +00:00
if container . basefs == "" {
container . basefs = dir
} else if container . basefs != dir {
2014-10-30 05:31:19 +00:00
daemon . driver . Put ( container . ID )
2013-11-07 20:34:01 +00:00
return fmt . Errorf ( "Error: driver %s is returning inconsistent paths for container %s ('%s' then '%s')" ,
2014-04-17 21:43:01 +00:00
daemon . driver , container . ID , container . basefs , dir )
2013-11-01 01:07:54 +00:00
}
2013-11-07 20:34:01 +00:00
return nil
2013-11-01 01:07:54 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Unmount ( container * Container ) error {
daemon . driver . Put ( container . ID )
2013-11-07 20:34:01 +00:00
return nil
2013-11-01 01:07:54 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Changes ( container * Container ) ( [ ] archive . Change , error ) {
2014-09-11 03:30:52 +00:00
initID := fmt . Sprintf ( "%s-init" , container . ID )
return daemon . driver . Changes ( container . ID , initID )
2013-11-01 01:07:54 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Diff ( container * Container ) ( archive . Archive , error ) {
2014-09-11 03:30:52 +00:00
initID := fmt . Sprintf ( "%s-init" , container . ID )
return daemon . driver . Diff ( container . ID , initID )
2013-10-22 23:23:52 +00:00
}
2014-10-30 23:06:54 +00:00
func ( daemon * Daemon ) Run ( c * Container , pipes * execdriver . Pipes , startCallback execdriver . StartCallback ) ( execdriver . ExitStatus , error ) {
2014-04-17 21:43:01 +00:00
return daemon . execDriver . Run ( c . command , pipes , startCallback )
2014-01-10 22:26:29 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Kill ( c * Container , sig int ) error {
return daemon . execDriver . Kill ( c . command , sig )
2014-01-10 22:26:29 +00:00
}
2015-01-07 22:43:04 +00:00
func ( daemon * Daemon ) Stats ( c * Container ) ( * execdriver . ResourceStats , error ) {
return daemon . execDriver . Stats ( c . ID )
}
2015-01-19 23:29:42 +00:00
func ( daemon * Daemon ) SubscribeToContainerStats ( name string ) ( chan interface { } , error ) {
2014-12-16 23:06:35 +00:00
c , err := daemon . Get ( name )
if err != nil {
return nil , err
2015-01-07 22:43:04 +00:00
}
ch := daemon . statsCollector . collect ( c )
return ch , nil
}
2015-01-19 23:29:42 +00:00
func ( daemon * Daemon ) UnsubscribeToContainerStats ( name string , ch chan interface { } ) error {
2014-12-16 23:06:35 +00:00
c , err := daemon . Get ( name )
if err != nil {
return err
2015-01-08 02:02:08 +00:00
}
daemon . statsCollector . unsubscribe ( c , ch )
return nil
}
2013-11-14 06:08:08 +00:00
// FIXME: this is a convenience function for integration tests
2014-04-17 21:43:01 +00:00
// which need direct access to daemon.graph.
2013-11-14 06:08:08 +00:00
// Once the tests switch to using engine and jobs, this method
// can go away.
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Graph ( ) * graph . Graph {
return daemon . graph
2013-11-14 06:08:08 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) Repositories ( ) * graph . TagStore {
return daemon . repositories
2014-03-08 02:42:29 +00:00
}
2014-08-09 22:30:27 +00:00
func ( daemon * Daemon ) Config ( ) * Config {
2014-04-17 21:43:01 +00:00
return daemon . config
2014-03-08 02:42:29 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) SystemConfig ( ) * sysinfo . SysInfo {
return daemon . sysInfo
2014-03-08 02:42:29 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) SystemInitPath ( ) string {
return daemon . sysInitPath
2014-03-08 02:42:29 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) GraphDriver ( ) graphdriver . Driver {
return daemon . driver
2014-03-08 02:42:29 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) ExecutionDriver ( ) execdriver . Driver {
return daemon . execDriver
2014-03-08 02:42:29 +00:00
}
2014-04-17 21:43:01 +00:00
func ( daemon * Daemon ) ContainerGraph ( ) * graphdb . Database {
return daemon . containerGraph
2014-03-08 02:42:29 +00:00
}
2014-07-29 05:22:58 +00:00
func ( daemon * Daemon ) ImageGetCached ( imgID string , config * runconfig . Config ) ( * image . Image , error ) {
// Retrieve all images
images , err := daemon . Graph ( ) . Map ( )
if err != nil {
return nil , err
}
// Store the tree in a map of map (map[parentId][childId])
imageMap := make ( map [ string ] map [ string ] struct { } )
for _ , img := range images {
if _ , exists := imageMap [ img . Parent ] ; ! exists {
imageMap [ img . Parent ] = make ( map [ string ] struct { } )
}
imageMap [ img . Parent ] [ img . ID ] = struct { } { }
}
// Loop on the children of the given image and check the config
var match * image . Image
for elem := range imageMap [ imgID ] {
2014-11-11 20:15:00 +00:00
img , ok := images [ elem ]
if ! ok {
return nil , fmt . Errorf ( "unable to find image %q" , elem )
2014-07-29 05:22:58 +00:00
}
if runconfig . Compare ( & img . ContainerConfig , config ) {
if match == nil || match . Created . Before ( img . Created ) {
match = img
}
}
}
return match , nil
}
2014-07-30 06:51:43 +00:00
2015-03-29 18:51:17 +00:00
// tempDir returns the default directory to use for temporary files.
func tempDir ( rootDir string ) ( string , error ) {
var tmpDir string
if tmpDir = os . Getenv ( "DOCKER_TMPDIR" ) ; tmpDir == "" {
tmpDir = filepath . Join ( rootDir , "tmp" )
}
2015-04-26 16:50:25 +00:00
return tmpDir , os . MkdirAll ( tmpDir , 0700 )
2015-03-29 18:51:17 +00:00
}
2015-01-29 18:36:56 +00:00
func checkKernel ( ) error {
2014-07-30 06:51:43 +00:00
// Check for unsupported kernel versions
// FIXME: it would be cleaner to not test for specific versions, but rather
// test for specific functionalities.
// Unfortunately we can't test for the feature "does not cause a kernel panic"
// without actually causing a kernel panic, so we need this workaround until
2015-05-07 02:11:02 +00:00
// the circumstances of pre-3.10 crashes are clearer.
2015-04-11 17:31:34 +00:00
// For details see https://github.com/docker/docker/issues/407
2014-07-30 06:51:43 +00:00
if k , err := kernel . GetKernelVersion ( ) ; err != nil {
2015-03-26 22:22:04 +00:00
logrus . Warnf ( "%s" , err )
2014-07-30 06:51:43 +00:00
} else {
2015-05-07 02:11:02 +00:00
if kernel . CompareKernelVersion ( k , & kernel . KernelVersionInfo { Kernel : 3 , Major : 10 , Minor : 0 } ) < 0 {
2014-07-30 06:51:43 +00:00
if os . Getenv ( "DOCKER_NOWARN_KERNEL_VERSION" ) == "" {
2015-05-07 02:11:02 +00:00
logrus . Warnf ( "You are running linux kernel version %s, which might be unstable running docker. Please upgrade your kernel to 3.10.0." , k . String ( ) )
2014-07-30 06:51:43 +00:00
}
}
}
return nil
}
2015-04-16 06:31:52 +00:00
func ( daemon * Daemon ) verifyHostConfig ( hostConfig * runconfig . HostConfig ) ( [ ] string , error ) {
var warnings [ ] string
2015-04-15 22:43:18 +00:00
if hostConfig == nil {
return warnings , nil
}
2015-04-16 06:31:52 +00:00
if hostConfig . LxcConf . Len ( ) > 0 && ! strings . Contains ( daemon . ExecutionDriver ( ) . Name ( ) , "lxc" ) {
return warnings , fmt . Errorf ( "Cannot use --lxc-conf with execdriver: %s" , daemon . ExecutionDriver ( ) . Name ( ) )
}
if hostConfig . Memory != 0 && hostConfig . Memory < 4194304 {
return warnings , fmt . Errorf ( "Minimum memory limit allowed is 4MB" )
}
if hostConfig . Memory > 0 && ! daemon . SystemConfig ( ) . MemoryLimit {
2015-04-20 14:00:03 +00:00
warnings = append ( warnings , "Your kernel does not support memory limit capabilities. Limitation discarded." )
2015-04-16 06:31:52 +00:00
hostConfig . Memory = 0
}
if hostConfig . Memory > 0 && hostConfig . MemorySwap != - 1 && ! daemon . SystemConfig ( ) . SwapLimit {
2015-04-20 14:00:03 +00:00
warnings = append ( warnings , "Your kernel does not support swap limit capabilities, memory limited without swap." )
2015-04-16 06:31:52 +00:00
hostConfig . MemorySwap = - 1
}
if hostConfig . Memory > 0 && hostConfig . MemorySwap > 0 && hostConfig . MemorySwap < hostConfig . Memory {
2015-04-20 14:00:03 +00:00
return warnings , fmt . Errorf ( "Minimum memoryswap limit should be larger than memory limit, see usage." )
2015-04-16 06:31:52 +00:00
}
if hostConfig . Memory == 0 && hostConfig . MemorySwap > 0 {
2015-04-20 14:00:03 +00:00
return warnings , fmt . Errorf ( "You should always set the Memory limit when using Memoryswap limit, see usage." )
2015-04-16 06:31:52 +00:00
}
2015-04-08 08:58:59 +00:00
if hostConfig . CpuPeriod > 0 && ! daemon . SystemConfig ( ) . CpuCfsPeriod {
warnings = append ( warnings , "Your kernel does not support CPU cfs period. Period discarded." )
hostConfig . CpuPeriod = 0
}
2015-04-20 15:16:47 +00:00
if hostConfig . CpuQuota > 0 && ! daemon . SystemConfig ( ) . CpuCfsQuota {
warnings = append ( warnings , "Your kernel does not support CPU cfs quota. Quota discarded." )
hostConfig . CpuQuota = 0
}
2015-05-07 03:55:58 +00:00
if hostConfig . BlkioWeight > 0 && ( hostConfig . BlkioWeight < 10 || hostConfig . BlkioWeight > 1000 ) {
return warnings , fmt . Errorf ( "Range of blkio weight is from 10 to 1000." )
}
2015-05-10 06:55:00 +00:00
if hostConfig . OomKillDisable && ! daemon . SystemConfig ( ) . OomKillDisable {
hostConfig . OomKillDisable = false
return warnings , fmt . Errorf ( "Your kernel does not support oom kill disable." )
}
2015-04-16 06:31:52 +00:00
return warnings , nil
}
2015-04-23 02:23:02 +00:00
func ( daemon * Daemon ) setHostConfig ( container * Container , hostConfig * runconfig . HostConfig ) error {
2015-05-27 19:29:49 +00:00
container . Lock ( )
if err := parseSecurityOpt ( container , hostConfig ) ; err != nil {
container . Unlock ( )
2015-05-19 20:05:25 +00:00
return err
}
2015-05-27 19:29:49 +00:00
container . Unlock ( )
2015-05-19 20:05:25 +00:00
2015-05-27 19:29:49 +00:00
// Do not lock while creating volumes since this could be calling out to external plugins
// Don't want to block other actions, like `docker ps` because we're waiting on an external plugin
if err := daemon . registerMountPoints ( container , hostConfig ) ; err != nil {
2015-04-23 02:23:02 +00:00
return err
}
2015-05-27 19:29:49 +00:00
container . Lock ( )
defer container . Unlock ( )
2015-04-23 02:23:02 +00:00
// Register any links from the host config before starting the container
if err := daemon . RegisterLinks ( container , hostConfig ) ; err != nil {
return err
}
container . hostConfig = hostConfig
container . toDisk ( )
return nil
}