]>
Commit | Line | Data |
---|---|---|
3ea94c60 | 1 | package PVE::QemuMigrate; |
1ef75254 | 2 | |
1e3baf05 | 3 | use strict; |
3ea94c60 | 4 | use warnings; |
16e903f2 | 5 | use PVE::AbstractMigrate; |
3ea94c60 | 6 | use IO::File; |
1e3baf05 | 7 | use IPC::Open2; |
61b04c6d | 8 | use POSIX qw( WNOHANG ); |
3ea94c60 | 9 | use PVE::INotify; |
f9a971e0 | 10 | use PVE::Tools; |
3ea94c60 | 11 | use PVE::Cluster; |
1e3baf05 | 12 | use PVE::Storage; |
3ea94c60 | 13 | use PVE::QemuServer; |
e52bd94c | 14 | use Time::HiRes qw( usleep ); |
95a4b4a9 | 15 | use PVE::RPCEnvironment; |
1e3baf05 | 16 | |
16e903f2 | 17 | use base qw(PVE::AbstractMigrate); |
1e3baf05 | 18 | |
1ef75254 | 19 | sub fork_command_pipe { |
46a84fd4 | 20 | my ($self, $cmd) = @_; |
19672434 | 21 | |
1ef75254 DM |
22 | my $reader = IO::File->new(); |
23 | my $writer = IO::File->new(); | |
24 | ||
25 | my $orig_pid = $$; | |
26 | ||
27 | my $cpid; | |
28 | ||
29 | eval { $cpid = open2($reader, $writer, @$cmd); }; | |
30 | ||
31 | my $err = $@; | |
32 | ||
33 | # catch exec errors | |
34 | if ($orig_pid != $$) { | |
46a84fd4 | 35 | $self->log('err', "can't fork command pipe\n"); |
19672434 DM |
36 | POSIX::_exit(1); |
37 | kill('KILL', $$); | |
1ef75254 DM |
38 | } |
39 | ||
40 | die $err if $err; | |
41 | ||
42 | return { writer => $writer, reader => $reader, pid => $cpid }; | |
43 | } | |
44 | ||
19672434 | 45 | sub finish_command_pipe { |
97439670 | 46 | my ($self, $cmdpipe, $timeout) = @_; |
1ef75254 | 47 | |
61b04c6d TL |
48 | my $cpid = $cmdpipe->{pid}; |
49 | return if !defined($cpid); | |
50 | ||
1ef75254 DM |
51 | my $writer = $cmdpipe->{writer}; |
52 | my $reader = $cmdpipe->{reader}; | |
53 | ||
54 | $writer->close(); | |
55 | $reader->close(); | |
56 | ||
61b04c6d TL |
57 | my $collect_child_process = sub { |
58 | my $res = waitpid($cpid, WNOHANG); | |
59 | if (defined($res) && ($res == $cpid)) { | |
60 | delete $cmdpipe->{cpid}; | |
61 | return 1; | |
62 | } else { | |
63 | return 0; | |
64 | } | |
65 | }; | |
1ef75254 | 66 | |
97439670 DM |
67 | if ($timeout) { |
68 | for (my $i = 0; $i < $timeout; $i++) { | |
61b04c6d | 69 | return if &$collect_child_process(); |
97439670 DM |
70 | sleep(1); |
71 | } | |
72 | } | |
73 | ||
74 | $self->log('info', "ssh tunnel still running - terminating now with SIGTERM\n"); | |
75 | kill(15, $cpid); | |
1ef75254 | 76 | |
97439670 DM |
77 | # wait again |
78 | for (my $i = 0; $i < 10; $i++) { | |
61b04c6d | 79 | return if &$collect_child_process(); |
97439670 DM |
80 | sleep(1); |
81 | } | |
82 | ||
83 | $self->log('info', "ssh tunnel still running - terminating now with SIGKILL\n"); | |
84 | kill 9, $cpid; | |
85 | sleep 1; | |
61b04c6d TL |
86 | |
87 | $self->log('err', "ssh tunnel child process (PID $cpid) couldn't be collected\n") | |
88 | if !&$collect_child_process(); | |
1ef75254 DM |
89 | } |
90 | ||
1e3baf05 | 91 | sub fork_tunnel { |
1c9d54bf | 92 | my ($self, $tunnel_addr) = @_; |
1e3baf05 | 93 | |
e858e9d2 | 94 | my @localtunnelinfo = defined($tunnel_addr) ? ('-L' , $tunnel_addr ) : (); |
5bc1e039 | 95 | |
1c9d54bf | 96 | my $cmd = [@{$self->{rem_ssh}}, '-o ExitOnForwardFailure=yes', @localtunnelinfo, 'qm', 'mtunnel' ]; |
19672434 | 97 | |
46a84fd4 | 98 | my $tunnel = $self->fork_command_pipe($cmd); |
1e3baf05 DM |
99 | |
100 | my $reader = $tunnel->{reader}; | |
101 | ||
102 | my $helo; | |
19672434 | 103 | eval { |
17eed025 | 104 | PVE::Tools::run_with_timeout(60, sub { $helo = <$reader>; }); |
1e3baf05 | 105 | die "no reply\n" if !$helo; |
1ef75254 | 106 | die "no quorum on target node\n" if $helo =~ m/^no quorum$/; |
19672434 | 107 | die "got strange reply from mtunnel ('$helo')\n" |
1e3baf05 DM |
108 | if $helo !~ m/^tunnel online$/; |
109 | }; | |
110 | my $err = $@; | |
111 | ||
112 | if ($err) { | |
46a84fd4 | 113 | $self->finish_command_pipe($tunnel); |
1e3baf05 DM |
114 | die "can't open migration tunnel - $err"; |
115 | } | |
116 | return $tunnel; | |
117 | } | |
118 | ||
19672434 | 119 | sub finish_tunnel { |
16e903f2 | 120 | my ($self, $tunnel) = @_; |
1e3baf05 DM |
121 | |
122 | my $writer = $tunnel->{writer}; | |
123 | ||
19672434 | 124 | eval { |
17eed025 | 125 | PVE::Tools::run_with_timeout(30, sub { |
1e3baf05 DM |
126 | print $writer "quit\n"; |
127 | $writer->flush(); | |
19672434 | 128 | }); |
1e3baf05 DM |
129 | }; |
130 | my $err = $@; | |
19672434 | 131 | |
97439670 | 132 | $self->finish_command_pipe($tunnel, 30); |
19672434 | 133 | |
1c9d54bf TL |
134 | if ($tunnel->{sock_addr}) { |
135 | # ssh does not clean up on local host | |
136 | my $cmd = ['rm', '-f', $tunnel->{sock_addr}]; # | |
137 | PVE::Tools::run_command($cmd); | |
138 | ||
139 | # .. and just to be sure check on remote side | |
140 | unshift @{$cmd}, @{$self->{rem_ssh}}; | |
141 | PVE::Tools::run_command($cmd); | |
142 | } | |
143 | ||
1e3baf05 DM |
144 | die $err if $err; |
145 | } | |
146 | ||
16e903f2 DM |
147 | sub lock_vm { |
148 | my ($self, $vmid, $code, @param) = @_; | |
f5eb281a | 149 | |
ffda963f | 150 | return PVE::QemuConfig->lock_config($vmid, $code, @param); |
16e903f2 | 151 | } |
ff1a2432 | 152 | |
16e903f2 DM |
153 | sub prepare { |
154 | my ($self, $vmid) = @_; | |
ff1a2432 | 155 | |
16e903f2 | 156 | my $online = $self->{opts}->{online}; |
3ea94c60 | 157 | |
16e903f2 | 158 | $self->{storecfg} = PVE::Storage::config(); |
3ea94c60 | 159 | |
e1fc368d | 160 | # test if VM exists |
ffda963f | 161 | my $conf = $self->{vmconf} = PVE::QemuConfig->load_config($vmid); |
3ea94c60 | 162 | |
ffda963f | 163 | PVE::QemuConfig->check_lock($conf); |
3ea94c60 | 164 | |
16e903f2 DM |
165 | my $running = 0; |
166 | if (my $pid = PVE::QemuServer::check_running($vmid)) { | |
b6adff33 | 167 | die "can't migrate running VM without --online\n" if !$online; |
16e903f2 | 168 | $running = $pid; |
42dbd2ee AD |
169 | |
170 | $self->{forcemachine} = PVE::QemuServer::qemu_machine_pxe($vmid, $conf); | |
7bac824e | 171 | |
3ea94c60 DM |
172 | } |
173 | ||
16e903f2 DM |
174 | if (my $loc_res = PVE::QemuServer::check_local_resources($conf, 1)) { |
175 | if ($self->{running} || !$self->{opts}->{force}) { | |
176 | die "can't migrate VM which uses local devices\n"; | |
177 | } else { | |
178 | $self->log('info', "migrating VM which uses local devices"); | |
179 | } | |
3ea94c60 DM |
180 | } |
181 | ||
ff1a2432 | 182 | my $vollist = PVE::QemuServer::get_vm_volumes($conf); |
16e903f2 | 183 | |
73f5ee92 | 184 | my $need_activate = []; |
29701766 FG |
185 | foreach my $volid (@$vollist) { |
186 | my ($sid, $volname) = PVE::Storage::parse_volume_id($volid, 1); | |
187 | ||
188 | # check if storage is available on both nodes | |
189 | my $scfg = PVE::Storage::storage_check_node($self->{storecfg}, $sid); | |
190 | PVE::Storage::storage_check_node($self->{storecfg}, $sid, $self->{node}); | |
73f5ee92 FG |
191 | |
192 | if ($scfg->{shared}) { | |
193 | # PVE::Storage::activate_storage checks this for non-shared storages | |
194 | my $plugin = PVE::Storage::Plugin->lookup($scfg->{type}); | |
195 | warn "Used shared storage '$sid' is not online on source node!\n" | |
196 | if !$plugin->check_connection($sid, $scfg); | |
197 | } else { | |
198 | # only activate if not shared | |
199 | push @$need_activate, $volid; | |
200 | } | |
29701766 | 201 | } |
3ea94c60 | 202 | |
73f5ee92 FG |
203 | # activate volumes |
204 | PVE::Storage::activate_volumes($self->{storecfg}, $need_activate); | |
205 | ||
3ea94c60 | 206 | # test ssh connection |
16e903f2 DM |
207 | my $cmd = [ @{$self->{rem_ssh}}, '/bin/true' ]; |
208 | eval { $self->cmd_quiet($cmd); }; | |
3ea94c60 | 209 | die "Can't connect to destination address using public key\n" if $@; |
ff1a2432 | 210 | |
16e903f2 | 211 | return $running; |
3ea94c60 DM |
212 | } |
213 | ||
214 | sub sync_disks { | |
16e903f2 DM |
215 | my ($self, $vmid) = @_; |
216 | ||
217 | $self->log('info', "copying disk images"); | |
3ea94c60 | 218 | |
16e903f2 DM |
219 | my $conf = $self->{vmconf}; |
220 | ||
221 | $self->{volumes} = []; | |
3ea94c60 DM |
222 | |
223 | my $res = []; | |
224 | ||
225 | eval { | |
226 | ||
227 | my $volhash = {}; | |
3ea94c60 | 228 | |
a06c7f7e DM |
229 | my $sharedvm = 1; |
230 | ||
522c8f97 | 231 | my @sids = PVE::Storage::storage_ids($self->{storecfg}); |
86638cc2 | 232 | foreach my $storeid (@sids) { |
522c8f97 | 233 | my $scfg = PVE::Storage::storage_config($self->{storecfg}, $storeid); |
86638cc2 | 234 | next if $scfg->{shared}; |
373ea579 DM |
235 | next if !PVE::Storage::storage_check_enabled($self->{storecfg}, $storeid, undef, 1); |
236 | ||
86638cc2 FG |
237 | # get list from PVE::Storage (for unused volumes) |
238 | my $dl = PVE::Storage::vdisk_list($self->{storecfg}, $storeid, $vmid); | |
89719f98 FG |
239 | |
240 | next if @{$dl->{$storeid}} == 0; | |
241 | ||
86638cc2 FG |
242 | # check if storage is available on target node |
243 | PVE::Storage::storage_check_node($self->{storecfg}, $storeid, $self->{node}); | |
89719f98 FG |
244 | $sharedvm = 0; # there is a non-shared disk |
245 | ||
86638cc2 FG |
246 | PVE::Storage::foreach_volid($dl, sub { |
247 | my ($volid, $sid, $volname) = @_; | |
80b2cbd1 | 248 | |
86638cc2 FG |
249 | $volhash->{$volid} = 1; |
250 | }); | |
251 | } | |
3ea94c60 | 252 | |
3629c19d | 253 | my $test_volid = sub { |
b6adff33 | 254 | my ($volid, $is_cdrom, $snapname) = @_; |
3ea94c60 | 255 | |
3ea94c60 DM |
256 | return if !$volid; |
257 | ||
674051dc | 258 | die "can't migrate local file/device '$volid'\n" if $volid =~ m|^/|; |
3ea94c60 | 259 | |
d5769dc2 | 260 | if ($is_cdrom) { |
b6adff33 | 261 | die "can't migrate local cdrom drive\n" if $volid eq 'cdrom'; |
3ea94c60 | 262 | return if $volid eq 'none'; |
3ea94c60 DM |
263 | } |
264 | ||
265 | my ($sid, $volname) = PVE::Storage::parse_volume_id($volid); | |
266 | ||
16e903f2 DM |
267 | # check if storage is available on both nodes |
268 | my $scfg = PVE::Storage::storage_check_node($self->{storecfg}, $sid); | |
269 | PVE::Storage::storage_check_node($self->{storecfg}, $sid, $self->{node}); | |
3ea94c60 DM |
270 | |
271 | return if $scfg->{shared}; | |
272 | ||
3ea94c60 DM |
273 | $sharedvm = 0; |
274 | ||
2a2127bd | 275 | die "can't migrate local cdrom '$volid'\n" if $is_cdrom; |
3629c19d | 276 | |
16e903f2 | 277 | my ($path, $owner) = PVE::Storage::path($self->{storecfg}, $volid); |
3ea94c60 DM |
278 | |
279 | die "can't migrate volume '$volid' - owned by other VM (owner = VM $owner)\n" | |
16e903f2 | 280 | if !$owner || ($owner != $self->{vmid}); |
3ea94c60 | 281 | |
3629c19d DM |
282 | if (defined($snapname)) { |
283 | # we cannot migrate shapshots on local storage | |
284 | # exceptions: 'zfspool' or 'qcow2' files (on directory storage) | |
285 | ||
286 | my $format = PVE::QemuServer::qemu_img_format($scfg, $volname); | |
287 | ||
288 | if (($scfg->{type} eq 'zfspool') || ($format eq 'qcow2')) { | |
289 | $volhash->{$volid} = 1; | |
290 | return; | |
291 | } | |
292 | ||
293 | die "can't migrate snapshot of local volume '$volid'\n"; | |
294 | ||
295 | } else { | |
296 | $volhash->{$volid} = 1; | |
297 | } | |
298 | }; | |
299 | ||
98d80cb6 FG |
300 | my $test_drive = sub { |
301 | my ($ds, $drive, $snapname) = @_; | |
302 | ||
303 | &$test_volid($drive->{file}, PVE::QemuServer::drive_is_cdrom($drive), $snapname); | |
304 | }; | |
305 | ||
306 | PVE::QemuServer::foreach_drive($conf, $test_drive); | |
b6adff33 | 307 | foreach my $snapname (keys %{$conf->{snapshots}}) { |
98d80cb6 FG |
308 | &$test_volid($conf->{snapshots}->{$snapname}->{'vmstate'}, 0, undef) |
309 | if defined($conf->{snapshots}->{$snapname}->{'vmstate'}); | |
310 | PVE::QemuServer::foreach_drive($conf->{snapshots}->{$snapname}, $test_drive, $snapname); | |
3629c19d | 311 | } |
3ea94c60 | 312 | |
16e903f2 | 313 | if ($self->{running} && !$sharedvm) { |
3ea94c60 DM |
314 | die "can't do online migration - VM uses local disks\n"; |
315 | } | |
316 | ||
c4d2d6c1 | 317 | # additional checks for local storage |
3ea94c60 DM |
318 | foreach my $volid (keys %$volhash) { |
319 | my ($sid, $volname) = PVE::Storage::parse_volume_id($volid); | |
16e903f2 | 320 | my $scfg = PVE::Storage::storage_config($self->{storecfg}, $sid); |
3ea94c60 | 321 | |
c4d2d6c1 WL |
322 | my $migratable = ($scfg->{type} eq 'dir') || ($scfg->{type} eq 'zfspool') || |
323 | ($scfg->{type} eq 'lvmthin') || ($scfg->{type} eq 'lvm'); | |
324 | ||
37a6dc78 | 325 | die "can't migrate '$volid' - storage type '$scfg->{type}' not supported\n" |
c4d2d6c1 | 326 | if !$migratable; |
d5604092 | 327 | |
c4d2d6c1 WL |
328 | # image is a linked clone on local storage, se we can't migrate. |
329 | if (my $basename = (PVE::Storage::parse_volname($self->{storecfg}, $volid))[3]) { | |
330 | die "can't migrate '$volid' as it's a clone of '$basename'"; | |
d5604092 | 331 | } |
3ea94c60 DM |
332 | } |
333 | ||
334 | foreach my $volid (keys %$volhash) { | |
335 | my ($sid, $volname) = PVE::Storage::parse_volume_id($volid); | |
16e903f2 DM |
336 | push @{$self->{volumes}}, $volid; |
337 | PVE::Storage::storage_migrate($self->{storecfg}, $volid, $self->{nodeip}, $sid); | |
3ea94c60 DM |
338 | } |
339 | }; | |
340 | die "Failed to sync data - $@" if $@; | |
341 | } | |
342 | ||
1e3baf05 | 343 | sub phase1 { |
16e903f2 | 344 | my ($self, $vmid) = @_; |
1e3baf05 | 345 | |
16e903f2 | 346 | $self->log('info', "starting migration of VM $vmid to node '$self->{node}' ($self->{nodeip})"); |
1e3baf05 | 347 | |
16e903f2 | 348 | my $conf = $self->{vmconf}; |
1e3baf05 DM |
349 | |
350 | # set migrate lock in config file | |
1858638f | 351 | $conf->{lock} = 'migrate'; |
ffda963f | 352 | PVE::QemuConfig->write_config($vmid, $conf); |
1e3baf05 | 353 | |
16e903f2 | 354 | sync_disks($self, $vmid); |
1ef75254 | 355 | |
1e3baf05 DM |
356 | }; |
357 | ||
16e903f2 DM |
358 | sub phase1_cleanup { |
359 | my ($self, $vmid, $err) = @_; | |
360 | ||
361 | $self->log('info', "aborting phase 1 - cleanup resources"); | |
362 | ||
1858638f DM |
363 | my $conf = $self->{vmconf}; |
364 | delete $conf->{lock}; | |
ffda963f | 365 | eval { PVE::QemuConfig->write_config($vmid, $conf) }; |
16e903f2 DM |
366 | if (my $err = $@) { |
367 | $self->log('err', $err); | |
368 | } | |
f5eb281a | 369 | |
16e903f2 DM |
370 | if ($self->{volumes}) { |
371 | foreach my $volid (@{$self->{volumes}}) { | |
372 | $self->log('err', "found stale volume copy '$volid' on node '$self->{node}'"); | |
373 | # fixme: try to remove ? | |
374 | } | |
375 | } | |
376 | } | |
377 | ||
1e3baf05 | 378 | sub phase2 { |
16e903f2 | 379 | my ($self, $vmid) = @_; |
1e3baf05 | 380 | |
16e903f2 DM |
381 | my $conf = $self->{vmconf}; |
382 | ||
46a84fd4 | 383 | $self->log('info', "starting VM $vmid on remote node '$self->{node}'"); |
1e3baf05 | 384 | |
5bc1e039 | 385 | my $raddr; |
1e3baf05 | 386 | my $rport; |
1c9d54bf | 387 | my $ruri; # the whole migration dst. URI (protocol:address[:port]) |
7e8dcf2c AD |
388 | my $nodename = PVE::INotify::nodename(); |
389 | ||
19672434 | 390 | ## start on remote node |
95a4b4a9 AD |
391 | my $cmd = [@{$self->{rem_ssh}}]; |
392 | ||
7c14dcae | 393 | my $spice_ticket; |
86b8228b | 394 | if (PVE::QemuServer::vga_conf_has_spice($conf->{vga})) { |
95a4b4a9 | 395 | my $res = PVE::QemuServer::vm_mon_cmd($vmid, 'query-spice'); |
7c14dcae | 396 | $spice_ticket = $res->{ticket}; |
95a4b4a9 AD |
397 | } |
398 | ||
1c9d54bf TL |
399 | push @$cmd , 'qm', 'start', $vmid, '--skiplock', '--migratedfrom', $nodename; |
400 | ||
401 | # we use TCP only for unsecure migrations as TCP ssh forward tunnels often | |
402 | # did appeared to late (they are hard, if not impossible, to check for) | |
403 | # secure migration use UNIX sockets now, this *breaks* compatibilty when trying | |
404 | # to migrate from new to old but *not* from old to new. | |
405 | my $datacenterconf = PVE::Cluster::cfs_read_file('datacenter.cfg'); | |
406 | my $secure_migration = ($datacenterconf->{migration_unsecure}) ? 0 : 1; | |
407 | ||
408 | if (!$secure_migration) { | |
409 | push @$cmd, '--stateuri', 'tcp'; | |
410 | } else { | |
411 | push @$cmd, '--stateuri', 'unix'; | |
412 | } | |
95a4b4a9 | 413 | |
42668529 DM |
414 | if ($self->{forcemachine}) { |
415 | push @$cmd, '--machine', $self->{forcemachine}; | |
416 | } | |
417 | ||
86b8228b DM |
418 | my $spice_port; |
419 | ||
7c14dcae DM |
420 | # Note: We try to keep $spice_ticket secret (do not pass via command line parameter) |
421 | # instead we pipe it through STDIN | |
422 | PVE::Tools::run_command($cmd, input => $spice_ticket, outfunc => sub { | |
1e3baf05 DM |
423 | my $line = shift; |
424 | ||
407e0b8b | 425 | if ($line =~ m/^migration listens on tcp:(localhost|[\d\.]+|\[[\d\.:a-fA-F]+\]):(\d+)$/) { |
5bc1e039 SP |
426 | $raddr = $1; |
427 | $rport = int($2); | |
1c9d54bf TL |
428 | $ruri = "tcp:$raddr:$rport"; |
429 | } | |
430 | elsif ($line =~ m!^migration listens on unix:(/run/qemu-server/(\d+)\.migrate)$!) { | |
431 | $raddr = $1; | |
432 | die "Destination UNIX sockets VMID does not match source VMID" if $vmid ne $2; | |
433 | $ruri = "unix:$raddr"; | |
5bc1e039 SP |
434 | } |
435 | elsif ($line =~ m/^migration listens on port (\d+)$/) { | |
436 | $raddr = "localhost"; | |
86b8228b | 437 | $rport = int($1); |
1c9d54bf | 438 | $ruri = "tcp:$raddr:$rport"; |
5bc1e039 SP |
439 | } |
440 | elsif ($line =~ m/^spice listens on port (\d+)$/) { | |
86b8228b | 441 | $spice_port = int($1); |
1e3baf05 | 442 | } |
ab399b7c AD |
443 | }, errfunc => sub { |
444 | my $line = shift; | |
445 | $self->log('info', $line); | |
446 | }); | |
1e3baf05 | 447 | |
5bc1e039 | 448 | die "unable to detect remote migration address\n" if !$raddr; |
1ef75254 | 449 | |
1c9d54bf TL |
450 | if ($secure_migration) { |
451 | $self->log('info', "start remote tunnel"); | |
452 | ||
453 | if ($ruri =~ /^unix:/) { | |
54323eed | 454 | unlink $raddr; |
1c9d54bf TL |
455 | $self->{tunnel} = $self->fork_tunnel("$raddr:$raddr"); |
456 | $self->{tunnel}->{sock_addr} = $raddr; | |
457 | ||
458 | my $unix_socket_try = 0; # wait for the socket to become ready | |
459 | while (! -S $raddr) { | |
460 | $unix_socket_try++; | |
461 | if ($unix_socket_try > 100) { | |
462 | $self->{errors} = 1; | |
463 | $self->finish_tunnel($self->{tunnel}); | |
464 | die "Timeout, migration socket $ruri did not get ready"; | |
465 | } | |
466 | ||
467 | usleep(50000); | |
468 | } | |
469 | ||
470 | } elsif ($ruri =~ /^tcp:/) { | |
e858e9d2 TL |
471 | my $tunnel_addr; |
472 | if ($raddr eq "localhost") { | |
473 | # for backwards compatibility with older qemu-server versions | |
474 | my $pfamily = PVE::Tools::get_host_address_family($nodename); | |
475 | my $lport = PVE::Tools::next_migrate_port($pfamily); | |
476 | $tunnel_addr = "$lport:localhost:$rport"; | |
477 | } | |
1c9d54bf | 478 | |
e858e9d2 | 479 | $self->{tunnel} = $self->fork_tunnel($tunnel_addr); |
1c9d54bf TL |
480 | |
481 | } else { | |
482 | die "unsupported protocol in migration URI: $ruri\n"; | |
483 | } | |
484 | } | |
1e3baf05 | 485 | |
1e3baf05 | 486 | my $start = time(); |
1c9d54bf | 487 | $self->log('info', "starting online/live migration on $ruri"); |
5bc1e039 | 488 | $self->{livemigration} = 1; |
e18b0b99 | 489 | |
3beb415b AD |
490 | # load_defaults |
491 | my $defaults = PVE::QemuServer::load_defaults(); | |
492 | ||
493 | # always set migrate speed (overwrite kvm default of 32m) | |
494 | # we set a very hight default of 8192m which is basically unlimited | |
495 | my $migrate_speed = $defaults->{migrate_speed} || 8192; | |
496 | $migrate_speed = $conf->{migrate_speed} || $migrate_speed; | |
497 | $migrate_speed = $migrate_speed * 1048576; | |
498 | $self->log('info', "migrate_set_speed: $migrate_speed"); | |
499 | eval { | |
500 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate_set_speed", value => int($migrate_speed)); | |
501 | }; | |
502 | $self->log('info', "migrate_set_speed error: $@") if $@; | |
503 | ||
504 | my $migrate_downtime = $defaults->{migrate_downtime}; | |
505 | $migrate_downtime = $conf->{migrate_downtime} if defined($conf->{migrate_downtime}); | |
506 | if (defined($migrate_downtime)) { | |
507 | $self->log('info', "migrate_set_downtime: $migrate_downtime"); | |
508 | eval { | |
865ef132 | 509 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate_set_downtime", value => int($migrate_downtime*100)/100); |
3beb415b AD |
510 | }; |
511 | $self->log('info', "migrate_set_downtime error: $@") if $@; | |
512 | } | |
513 | ||
f34d1466 | 514 | $self->log('info', "set migration_caps"); |
e18b0b99 | 515 | eval { |
a89fded1 | 516 | PVE::QemuServer::set_migration_caps($vmid); |
e18b0b99 | 517 | }; |
a89fded1 | 518 | warn $@ if $@; |
e18b0b99 AD |
519 | |
520 | #set cachesize 10% of the total memory | |
521 | my $cachesize = int($conf->{memory}*1048576/10); | |
f34d1466 | 522 | $self->log('info', "set cachesize: $cachesize"); |
e18b0b99 | 523 | eval { |
f34d1466 | 524 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate-set-cache-size", value => int($cachesize)); |
e18b0b99 | 525 | }; |
f34d1466 TL |
526 | $self->log('info', "migrate-set-cache-size error: $@") if $@; |
527 | ||
86b8228b | 528 | if (PVE::QemuServer::vga_conf_has_spice($conf->{vga})) { |
95a4b4a9 AD |
529 | my $rpcenv = PVE::RPCEnvironment::get(); |
530 | my $authuser = $rpcenv->get_user(); | |
531 | ||
86b8228b | 532 | my (undef, $proxyticket) = PVE::AccessControl::assemble_spice_ticket($authuser, $vmid, $self->{node}); |
95a4b4a9 | 533 | |
86b8228b | 534 | my $filename = "/etc/pve/nodes/$self->{node}/pve-ssl.pem"; |
dd25eecf | 535 | my $subject = PVE::AccessControl::read_x509_subject_spice($filename); |
95a4b4a9 AD |
536 | |
537 | $self->log('info', "spice client_migrate_info"); | |
538 | ||
539 | eval { | |
86b8228b DM |
540 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "client_migrate_info", protocol => 'spice', |
541 | hostname => $proxyticket, 'tls-port' => $spice_port, | |
542 | 'cert-subject' => $subject); | |
95a4b4a9 AD |
543 | }; |
544 | $self->log('info', "client_migrate_info error: $@") if $@; | |
545 | ||
546 | } | |
547 | ||
f34d1466 | 548 | $self->log('info', "start migrate command to $ruri"); |
5a7835f5 | 549 | eval { |
1c9d54bf | 550 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate", uri => $ruri); |
5a7835f5 AD |
551 | }; |
552 | my $merr = $@; | |
1c9d54bf | 553 | $self->log('info', "migrate uri => $ruri failed: $merr") if $merr; |
1e3baf05 | 554 | |
a05b47a8 | 555 | my $lstat = 0; |
e52bd94c AD |
556 | my $usleep = 2000000; |
557 | my $i = 0; | |
b0b756c1 | 558 | my $err_count = 0; |
865ef132 SP |
559 | my $lastrem = undef; |
560 | my $downtimecounter = 0; | |
1e3baf05 | 561 | while (1) { |
e52bd94c AD |
562 | $i++; |
563 | my $avglstat = $lstat/$i if $lstat; | |
564 | ||
b0b756c1 DM |
565 | usleep($usleep); |
566 | my $stat; | |
567 | eval { | |
568 | $stat = PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "query-migrate"); | |
569 | }; | |
570 | if (my $err = $@) { | |
571 | $err_count++; | |
572 | warn "query migrate failed: $err\n"; | |
f34d1466 | 573 | $self->log('info', "query migrate failed: $err"); |
b0b756c1 DM |
574 | if ($err_count <= 5) { |
575 | usleep(1000000); | |
576 | next; | |
577 | } | |
578 | die "too many query migrate failures - aborting\n"; | |
579 | } | |
985a5f48 | 580 | |
f34d1466 | 581 | if (defined($stat->{status}) && $stat->{status} =~ m/^(setup)$/im) { |
985a5f48 AD |
582 | sleep(1); |
583 | next; | |
584 | } | |
585 | ||
f34d1466 | 586 | if (defined($stat->{status}) && $stat->{status} =~ m/^(active|completed|failed|cancelled)$/im) { |
d68afb26 | 587 | $merr = undef; |
b0b756c1 | 588 | $err_count = 0; |
5a7835f5 | 589 | if ($stat->{status} eq 'completed') { |
1e3baf05 DM |
590 | my $delay = time() - $start; |
591 | if ($delay > 0) { | |
592 | my $mbps = sprintf "%.2f", $conf->{memory}/$delay; | |
135007c0 AD |
593 | my $downtime = $stat->{downtime} || 0; |
594 | $self->log('info', "migration speed: $mbps MB/s - downtime $downtime ms"); | |
1e3baf05 DM |
595 | } |
596 | } | |
f5eb281a | 597 | |
5a7835f5 | 598 | if ($stat->{status} eq 'failed' || $stat->{status} eq 'cancelled') { |
f34d1466 | 599 | $self->log('info', "migration status error: $stat->{status}"); |
1e3baf05 DM |
600 | die "aborting\n" |
601 | } | |
602 | ||
a05b47a8 DM |
603 | if ($stat->{status} ne 'active') { |
604 | $self->log('info', "migration status: $stat->{status}"); | |
605 | last; | |
606 | } | |
607 | ||
608 | if ($stat->{ram}->{transferred} ne $lstat) { | |
609 | my $trans = $stat->{ram}->{transferred} || 0; | |
610 | my $rem = $stat->{ram}->{remaining} || 0; | |
611 | my $total = $stat->{ram}->{total} || 0; | |
e18b0b99 AD |
612 | my $xbzrlecachesize = $stat->{"xbzrle-cache"}->{"cache-size"} || 0; |
613 | my $xbzrlebytes = $stat->{"xbzrle-cache"}->{"bytes"} || 0; | |
614 | my $xbzrlepages = $stat->{"xbzrle-cache"}->{"pages"} || 0; | |
615 | my $xbzrlecachemiss = $stat->{"xbzrle-cache"}->{"cache-miss"} || 0; | |
616 | my $xbzrleoverflow = $stat->{"xbzrle-cache"}->{"overflow"} || 0; | |
e52bd94c | 617 | #reduce sleep if remainig memory if lower than the everage transfert |
94235c59 | 618 | $usleep = 300000 if $avglstat && $rem < $avglstat; |
a05b47a8 DM |
619 | |
620 | $self->log('info', "migration status: $stat->{status} (transferred ${trans}, " . | |
0302101c | 621 | "remaining ${rem}), total ${total})"); |
e18b0b99 | 622 | |
2e787b18 SP |
623 | if (${xbzrlecachesize}) { |
624 | $self->log('info', "migration xbzrle cachesize: ${xbzrlecachesize} transferred ${xbzrlebytes} pages ${xbzrlepages} cachemiss ${xbzrlecachemiss} overflow ${xbzrleoverflow}"); | |
625 | } | |
626 | ||
865ef132 SP |
627 | if (($lastrem && $rem > $lastrem ) || ($rem == 0)) { |
628 | $downtimecounter++; | |
629 | } | |
630 | $lastrem = $rem; | |
631 | ||
632 | if ($downtimecounter > 5) { | |
633 | $downtimecounter = 0; | |
634 | $migrate_downtime *= 2; | |
635 | $self->log('info', "migrate_set_downtime: $migrate_downtime"); | |
636 | eval { | |
637 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate_set_downtime", value => int($migrate_downtime*100)/100); | |
638 | }; | |
639 | $self->log('info', "migrate_set_downtime error: $@") if $@; | |
640 | } | |
641 | ||
a05b47a8 DM |
642 | } |
643 | ||
865ef132 | 644 | |
a05b47a8 | 645 | $lstat = $stat->{ram}->{transferred}; |
e52bd94c | 646 | |
1e3baf05 | 647 | } else { |
d68afb26 | 648 | die $merr if $merr; |
5a7835f5 | 649 | die "unable to parse migration status '$stat->{status}' - aborting\n"; |
1e3baf05 | 650 | } |
a05b47a8 | 651 | } |
92437b8d TL |
652 | |
653 | # just to be sure that the tunnel gets closed on successful migration, on error | |
654 | # phase2_cleanup closes it *after* stopping the remote waiting VM | |
655 | if (!$self->{errors} && $self->{tunnel}) { | |
386c6ba7 WL |
656 | eval { finish_tunnel($self, $self->{tunnel}); }; |
657 | if (my $err = $@) { | |
658 | $self->log('err', $err); | |
659 | $self->{errors} = 1; | |
660 | } | |
661 | } | |
1e3baf05 | 662 | } |
16e903f2 | 663 | |
c04b5b04 AD |
664 | sub phase2_cleanup { |
665 | my ($self, $vmid, $err) = @_; | |
666 | ||
af30308f DM |
667 | return if !$self->{errors}; |
668 | $self->{phase2errors} = 1; | |
669 | ||
c04b5b04 AD |
670 | $self->log('info', "aborting phase 2 - cleanup resources"); |
671 | ||
19168b91 SP |
672 | $self->log('info', "migrate_cancel"); |
673 | eval { | |
674 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate_cancel"); | |
675 | }; | |
676 | $self->log('info', "migrate_cancel error: $@") if $@; | |
677 | ||
c04b5b04 AD |
678 | my $conf = $self->{vmconf}; |
679 | delete $conf->{lock}; | |
ffda963f | 680 | eval { PVE::QemuConfig->write_config($vmid, $conf) }; |
c04b5b04 AD |
681 | if (my $err = $@) { |
682 | $self->log('err', $err); | |
683 | } | |
684 | ||
af30308f DM |
685 | # cleanup ressources on target host |
686 | my $nodename = PVE::INotify::nodename(); | |
687 | ||
688 | my $cmd = [@{$self->{rem_ssh}}, 'qm', 'stop', $vmid, '--skiplock', '--migratedfrom', $nodename]; | |
689 | eval{ PVE::Tools::run_command($cmd, outfunc => sub {}, errfunc => sub {}) }; | |
690 | if (my $err = $@) { | |
691 | $self->log('err', $err); | |
692 | $self->{errors} = 1; | |
693 | } | |
386c6ba7 WL |
694 | |
695 | if ($self->{tunnel}) { | |
696 | eval { finish_tunnel($self, $self->{tunnel}); }; | |
697 | if (my $err = $@) { | |
698 | $self->log('err', $err); | |
699 | $self->{errors} = 1; | |
700 | } | |
701 | } | |
c04b5b04 AD |
702 | } |
703 | ||
16e903f2 DM |
704 | sub phase3 { |
705 | my ($self, $vmid) = @_; | |
f5eb281a | 706 | |
16e903f2 | 707 | my $volids = $self->{volumes}; |
af30308f | 708 | return if $self->{phase2errors}; |
16e903f2 DM |
709 | |
710 | # destroy local copies | |
711 | foreach my $volid (@$volids) { | |
712 | eval { PVE::Storage::vdisk_free($self->{storecfg}, $volid); }; | |
713 | if (my $err = $@) { | |
714 | $self->log('err', "removing local copy of '$volid' failed - $err"); | |
715 | $self->{errors} = 1; | |
716 | last if $err =~ /^interrupted by signal$/; | |
717 | } | |
718 | } | |
16e903f2 DM |
719 | } |
720 | ||
721 | sub phase3_cleanup { | |
722 | my ($self, $vmid, $err) = @_; | |
723 | ||
724 | my $conf = $self->{vmconf}; | |
af30308f | 725 | return if $self->{phase2errors}; |
16e903f2 | 726 | |
b8d20802 | 727 | # move config to remote node |
ffda963f FG |
728 | my $conffile = PVE::QemuConfig->config_file($vmid); |
729 | my $newconffile = PVE::QemuConfig->config_file($vmid, $self->{node}); | |
b8d20802 AD |
730 | |
731 | die "Failed to move config to node '$self->{node}' - rename failed: $!\n" | |
732 | if !rename($conffile, $newconffile); | |
733 | ||
5bc1e039 SP |
734 | if ($self->{livemigration}) { |
735 | # now that config file is move, we can resume vm on target if livemigrate | |
289e0b85 | 736 | my $cmd = [@{$self->{rem_ssh}}, 'qm', 'resume', $vmid, '--skiplock', '--nocheck']; |
d5f315fd AD |
737 | eval{ PVE::Tools::run_command($cmd, outfunc => sub {}, |
738 | errfunc => sub { | |
739 | my $line = shift; | |
740 | $self->log('err', $line); | |
741 | }); | |
742 | }; | |
f5eb281a | 743 | if (my $err = $@) { |
b67900f1 AD |
744 | $self->log('err', $err); |
745 | $self->{errors} = 1; | |
746 | } | |
747 | } | |
748 | ||
fd8469f7 AD |
749 | eval { |
750 | ||
751 | my $timer = 0; | |
752 | if (PVE::QemuServer::vga_conf_has_spice($conf->{vga}) && $self->{running}) { | |
753 | $self->log('info', "Waiting for spice server migration"); | |
754 | while (1) { | |
755 | my $res = PVE::QemuServer::vm_mon_cmd_nocheck($vmid, 'query-spice'); | |
756 | last if int($res->{'migrated'}) == 1; | |
757 | last if $timer > 50; | |
758 | $timer ++; | |
759 | usleep(200000); | |
760 | } | |
761 | } | |
762 | }; | |
95a4b4a9 | 763 | |
16e903f2 DM |
764 | # always stop local VM |
765 | eval { PVE::QemuServer::vm_stop($self->{storecfg}, $vmid, 1, 1); }; | |
766 | if (my $err = $@) { | |
767 | $self->log('err', "stopping vm failed - $err"); | |
768 | $self->{errors} = 1; | |
769 | } | |
770 | ||
771 | # always deactivate volumes - avoid lvm LVs to be active on several nodes | |
772 | eval { | |
773 | my $vollist = PVE::QemuServer::get_vm_volumes($conf); | |
774 | PVE::Storage::deactivate_volumes($self->{storecfg}, $vollist); | |
775 | }; | |
776 | if (my $err = $@) { | |
777 | $self->log('err', $err); | |
778 | $self->{errors} = 1; | |
779 | } | |
780 | ||
781 | # clear migrate lock | |
782 | my $cmd = [ @{$self->{rem_ssh}}, 'qm', 'unlock', $vmid ]; | |
783 | $self->cmd_logerr($cmd, errmsg => "failed to clear migrate lock"); | |
784 | } | |
785 | ||
786 | sub final_cleanup { | |
787 | my ($self, $vmid) = @_; | |
788 | ||
789 | # nothing to do | |
790 | } | |
791 | ||
792 | 1; |