]>
Commit | Line | Data |
---|---|---|
3ea94c60 | 1 | package PVE::QemuMigrate; |
1ef75254 | 2 | |
1e3baf05 | 3 | use strict; |
3ea94c60 | 4 | use warnings; |
16e903f2 | 5 | use PVE::AbstractMigrate; |
3ea94c60 | 6 | use IO::File; |
1e3baf05 | 7 | use IPC::Open2; |
61b04c6d | 8 | use POSIX qw( WNOHANG ); |
3ea94c60 | 9 | use PVE::INotify; |
f9a971e0 | 10 | use PVE::Tools; |
3ea94c60 | 11 | use PVE::Cluster; |
1e3baf05 | 12 | use PVE::Storage; |
3ea94c60 | 13 | use PVE::QemuServer; |
e52bd94c | 14 | use Time::HiRes qw( usleep ); |
95a4b4a9 | 15 | use PVE::RPCEnvironment; |
1e3baf05 | 16 | |
16e903f2 | 17 | use base qw(PVE::AbstractMigrate); |
1e3baf05 | 18 | |
1ef75254 | 19 | sub fork_command_pipe { |
46a84fd4 | 20 | my ($self, $cmd) = @_; |
19672434 | 21 | |
1ef75254 DM |
22 | my $reader = IO::File->new(); |
23 | my $writer = IO::File->new(); | |
24 | ||
25 | my $orig_pid = $$; | |
26 | ||
27 | my $cpid; | |
28 | ||
29 | eval { $cpid = open2($reader, $writer, @$cmd); }; | |
30 | ||
31 | my $err = $@; | |
32 | ||
33 | # catch exec errors | |
34 | if ($orig_pid != $$) { | |
46a84fd4 | 35 | $self->log('err', "can't fork command pipe\n"); |
19672434 DM |
36 | POSIX::_exit(1); |
37 | kill('KILL', $$); | |
1ef75254 DM |
38 | } |
39 | ||
40 | die $err if $err; | |
41 | ||
42 | return { writer => $writer, reader => $reader, pid => $cpid }; | |
43 | } | |
44 | ||
19672434 | 45 | sub finish_command_pipe { |
97439670 | 46 | my ($self, $cmdpipe, $timeout) = @_; |
1ef75254 | 47 | |
61b04c6d TL |
48 | my $cpid = $cmdpipe->{pid}; |
49 | return if !defined($cpid); | |
50 | ||
1ef75254 DM |
51 | my $writer = $cmdpipe->{writer}; |
52 | my $reader = $cmdpipe->{reader}; | |
53 | ||
54 | $writer->close(); | |
55 | $reader->close(); | |
56 | ||
61b04c6d TL |
57 | my $collect_child_process = sub { |
58 | my $res = waitpid($cpid, WNOHANG); | |
59 | if (defined($res) && ($res == $cpid)) { | |
60 | delete $cmdpipe->{cpid}; | |
61 | return 1; | |
62 | } else { | |
63 | return 0; | |
64 | } | |
65 | }; | |
1ef75254 | 66 | |
97439670 DM |
67 | if ($timeout) { |
68 | for (my $i = 0; $i < $timeout; $i++) { | |
61b04c6d | 69 | return if &$collect_child_process(); |
97439670 DM |
70 | sleep(1); |
71 | } | |
72 | } | |
73 | ||
74 | $self->log('info', "ssh tunnel still running - terminating now with SIGTERM\n"); | |
75 | kill(15, $cpid); | |
1ef75254 | 76 | |
97439670 DM |
77 | # wait again |
78 | for (my $i = 0; $i < 10; $i++) { | |
61b04c6d | 79 | return if &$collect_child_process(); |
97439670 DM |
80 | sleep(1); |
81 | } | |
82 | ||
83 | $self->log('info', "ssh tunnel still running - terminating now with SIGKILL\n"); | |
84 | kill 9, $cpid; | |
85 | sleep 1; | |
61b04c6d TL |
86 | |
87 | $self->log('err', "ssh tunnel child process (PID $cpid) couldn't be collected\n") | |
88 | if !&$collect_child_process(); | |
1ef75254 DM |
89 | } |
90 | ||
1e3baf05 | 91 | sub fork_tunnel { |
1c9d54bf | 92 | my ($self, $tunnel_addr) = @_; |
1e3baf05 | 93 | |
e858e9d2 | 94 | my @localtunnelinfo = defined($tunnel_addr) ? ('-L' , $tunnel_addr ) : (); |
5bc1e039 | 95 | |
1c9d54bf | 96 | my $cmd = [@{$self->{rem_ssh}}, '-o ExitOnForwardFailure=yes', @localtunnelinfo, 'qm', 'mtunnel' ]; |
19672434 | 97 | |
46a84fd4 | 98 | my $tunnel = $self->fork_command_pipe($cmd); |
1e3baf05 DM |
99 | |
100 | my $reader = $tunnel->{reader}; | |
101 | ||
102 | my $helo; | |
19672434 | 103 | eval { |
17eed025 | 104 | PVE::Tools::run_with_timeout(60, sub { $helo = <$reader>; }); |
1e3baf05 | 105 | die "no reply\n" if !$helo; |
1ef75254 | 106 | die "no quorum on target node\n" if $helo =~ m/^no quorum$/; |
19672434 | 107 | die "got strange reply from mtunnel ('$helo')\n" |
1e3baf05 DM |
108 | if $helo !~ m/^tunnel online$/; |
109 | }; | |
110 | my $err = $@; | |
111 | ||
112 | if ($err) { | |
46a84fd4 | 113 | $self->finish_command_pipe($tunnel); |
1e3baf05 DM |
114 | die "can't open migration tunnel - $err"; |
115 | } | |
116 | return $tunnel; | |
117 | } | |
118 | ||
19672434 | 119 | sub finish_tunnel { |
16e903f2 | 120 | my ($self, $tunnel) = @_; |
1e3baf05 DM |
121 | |
122 | my $writer = $tunnel->{writer}; | |
123 | ||
19672434 | 124 | eval { |
17eed025 | 125 | PVE::Tools::run_with_timeout(30, sub { |
1e3baf05 DM |
126 | print $writer "quit\n"; |
127 | $writer->flush(); | |
19672434 | 128 | }); |
1e3baf05 DM |
129 | }; |
130 | my $err = $@; | |
19672434 | 131 | |
97439670 | 132 | $self->finish_command_pipe($tunnel, 30); |
19672434 | 133 | |
1c9d54bf TL |
134 | if ($tunnel->{sock_addr}) { |
135 | # ssh does not clean up on local host | |
136 | my $cmd = ['rm', '-f', $tunnel->{sock_addr}]; # | |
137 | PVE::Tools::run_command($cmd); | |
138 | ||
139 | # .. and just to be sure check on remote side | |
140 | unshift @{$cmd}, @{$self->{rem_ssh}}; | |
141 | PVE::Tools::run_command($cmd); | |
142 | } | |
143 | ||
1e3baf05 DM |
144 | die $err if $err; |
145 | } | |
146 | ||
16e903f2 DM |
147 | sub lock_vm { |
148 | my ($self, $vmid, $code, @param) = @_; | |
f5eb281a | 149 | |
ffda963f | 150 | return PVE::QemuConfig->lock_config($vmid, $code, @param); |
16e903f2 | 151 | } |
ff1a2432 | 152 | |
16e903f2 DM |
153 | sub prepare { |
154 | my ($self, $vmid) = @_; | |
ff1a2432 | 155 | |
16e903f2 | 156 | my $online = $self->{opts}->{online}; |
3ea94c60 | 157 | |
16e903f2 | 158 | $self->{storecfg} = PVE::Storage::config(); |
3ea94c60 | 159 | |
e1fc368d | 160 | # test if VM exists |
ffda963f | 161 | my $conf = $self->{vmconf} = PVE::QemuConfig->load_config($vmid); |
3ea94c60 | 162 | |
ffda963f | 163 | PVE::QemuConfig->check_lock($conf); |
3ea94c60 | 164 | |
16e903f2 DM |
165 | my $running = 0; |
166 | if (my $pid = PVE::QemuServer::check_running($vmid)) { | |
b6adff33 | 167 | die "can't migrate running VM without --online\n" if !$online; |
16e903f2 | 168 | $running = $pid; |
42dbd2ee AD |
169 | |
170 | $self->{forcemachine} = PVE::QemuServer::qemu_machine_pxe($vmid, $conf); | |
7bac824e | 171 | |
3ea94c60 DM |
172 | } |
173 | ||
16e903f2 DM |
174 | if (my $loc_res = PVE::QemuServer::check_local_resources($conf, 1)) { |
175 | if ($self->{running} || !$self->{opts}->{force}) { | |
176 | die "can't migrate VM which uses local devices\n"; | |
177 | } else { | |
178 | $self->log('info', "migrating VM which uses local devices"); | |
179 | } | |
3ea94c60 DM |
180 | } |
181 | ||
ff1a2432 | 182 | my $vollist = PVE::QemuServer::get_vm_volumes($conf); |
16e903f2 | 183 | |
73f5ee92 | 184 | my $need_activate = []; |
29701766 FG |
185 | foreach my $volid (@$vollist) { |
186 | my ($sid, $volname) = PVE::Storage::parse_volume_id($volid, 1); | |
187 | ||
188 | # check if storage is available on both nodes | |
189 | my $scfg = PVE::Storage::storage_check_node($self->{storecfg}, $sid); | |
190 | PVE::Storage::storage_check_node($self->{storecfg}, $sid, $self->{node}); | |
73f5ee92 FG |
191 | |
192 | if ($scfg->{shared}) { | |
193 | # PVE::Storage::activate_storage checks this for non-shared storages | |
194 | my $plugin = PVE::Storage::Plugin->lookup($scfg->{type}); | |
195 | warn "Used shared storage '$sid' is not online on source node!\n" | |
196 | if !$plugin->check_connection($sid, $scfg); | |
197 | } else { | |
198 | # only activate if not shared | |
199 | push @$need_activate, $volid; | |
200 | } | |
29701766 | 201 | } |
3ea94c60 | 202 | |
73f5ee92 FG |
203 | # activate volumes |
204 | PVE::Storage::activate_volumes($self->{storecfg}, $need_activate); | |
205 | ||
3ea94c60 | 206 | # test ssh connection |
16e903f2 DM |
207 | my $cmd = [ @{$self->{rem_ssh}}, '/bin/true' ]; |
208 | eval { $self->cmd_quiet($cmd); }; | |
3ea94c60 | 209 | die "Can't connect to destination address using public key\n" if $@; |
ff1a2432 | 210 | |
16e903f2 | 211 | return $running; |
3ea94c60 DM |
212 | } |
213 | ||
214 | sub sync_disks { | |
16e903f2 DM |
215 | my ($self, $vmid) = @_; |
216 | ||
217 | $self->log('info', "copying disk images"); | |
3ea94c60 | 218 | |
16e903f2 DM |
219 | my $conf = $self->{vmconf}; |
220 | ||
221 | $self->{volumes} = []; | |
3ea94c60 DM |
222 | |
223 | my $res = []; | |
224 | ||
225 | eval { | |
226 | ||
227 | my $volhash = {}; | |
228 | my $cdromhash = {}; | |
229 | ||
a06c7f7e DM |
230 | my $sharedvm = 1; |
231 | ||
522c8f97 DM |
232 | my @sids = PVE::Storage::storage_ids($self->{storecfg}); |
233 | foreach my $storeid (@sids) { | |
234 | my $scfg = PVE::Storage::storage_config($self->{storecfg}, $storeid); | |
235 | next if $scfg->{shared}; | |
373ea579 DM |
236 | next if !PVE::Storage::storage_check_enabled($self->{storecfg}, $storeid, undef, 1); |
237 | ||
80b2cbd1 AD |
238 | # get list from PVE::Storage (for unused volumes) |
239 | my $dl = PVE::Storage::vdisk_list($self->{storecfg}, $storeid, $vmid); | |
89719f98 FG |
240 | |
241 | next if @{$dl->{$storeid}} == 0; | |
242 | ||
243 | # check if storage is available on target node | |
244 | PVE::Storage::storage_check_node($self->{storecfg}, $storeid, $self->{node}); | |
245 | $sharedvm = 0; # there is a non-shared disk | |
246 | ||
80b2cbd1 AD |
247 | PVE::Storage::foreach_volid($dl, sub { |
248 | my ($volid, $sid, $volname) = @_; | |
249 | ||
80b2cbd1 AD |
250 | $volhash->{$volid} = 1; |
251 | }); | |
252 | } | |
3ea94c60 | 253 | |
3629c19d | 254 | my $test_volid = sub { |
b6adff33 | 255 | my ($volid, $is_cdrom, $snapname) = @_; |
3ea94c60 | 256 | |
3ea94c60 DM |
257 | return if !$volid; |
258 | ||
674051dc | 259 | die "can't migrate local file/device '$volid'\n" if $volid =~ m|^/|; |
3ea94c60 | 260 | |
d5769dc2 | 261 | if ($is_cdrom) { |
b6adff33 | 262 | die "can't migrate local cdrom drive\n" if $volid eq 'cdrom'; |
3ea94c60 DM |
263 | return if $volid eq 'none'; |
264 | $cdromhash->{$volid} = 1; | |
265 | } | |
266 | ||
267 | my ($sid, $volname) = PVE::Storage::parse_volume_id($volid); | |
268 | ||
16e903f2 DM |
269 | # check if storage is available on both nodes |
270 | my $scfg = PVE::Storage::storage_check_node($self->{storecfg}, $sid); | |
271 | PVE::Storage::storage_check_node($self->{storecfg}, $sid, $self->{node}); | |
3ea94c60 DM |
272 | |
273 | return if $scfg->{shared}; | |
274 | ||
3ea94c60 DM |
275 | $sharedvm = 0; |
276 | ||
3629c19d DM |
277 | die "can't migrate local cdrom '$volid'\n" if $cdromhash->{$volid}; |
278 | ||
16e903f2 | 279 | my ($path, $owner) = PVE::Storage::path($self->{storecfg}, $volid); |
3ea94c60 DM |
280 | |
281 | die "can't migrate volume '$volid' - owned by other VM (owner = VM $owner)\n" | |
16e903f2 | 282 | if !$owner || ($owner != $self->{vmid}); |
3ea94c60 | 283 | |
3629c19d DM |
284 | if (defined($snapname)) { |
285 | # we cannot migrate shapshots on local storage | |
286 | # exceptions: 'zfspool' or 'qcow2' files (on directory storage) | |
287 | ||
288 | my $format = PVE::QemuServer::qemu_img_format($scfg, $volname); | |
289 | ||
290 | if (($scfg->{type} eq 'zfspool') || ($format eq 'qcow2')) { | |
291 | $volhash->{$volid} = 1; | |
292 | return; | |
293 | } | |
294 | ||
295 | die "can't migrate snapshot of local volume '$volid'\n"; | |
296 | ||
297 | } else { | |
298 | $volhash->{$volid} = 1; | |
299 | } | |
300 | }; | |
301 | ||
302 | PVE::QemuServer::foreach_volid($conf, $test_volid); | |
b6adff33 WL |
303 | foreach my $snapname (keys %{$conf->{snapshots}}) { |
304 | PVE::QemuServer::foreach_volid($conf->{snapshots}->{$snapname}, $test_volid, $snapname); | |
3629c19d | 305 | } |
3ea94c60 | 306 | |
16e903f2 | 307 | if ($self->{running} && !$sharedvm) { |
3ea94c60 DM |
308 | die "can't do online migration - VM uses local disks\n"; |
309 | } | |
310 | ||
c4d2d6c1 | 311 | # additional checks for local storage |
3ea94c60 DM |
312 | foreach my $volid (keys %$volhash) { |
313 | my ($sid, $volname) = PVE::Storage::parse_volume_id($volid); | |
16e903f2 | 314 | my $scfg = PVE::Storage::storage_config($self->{storecfg}, $sid); |
3ea94c60 | 315 | |
c4d2d6c1 WL |
316 | my $migratable = ($scfg->{type} eq 'dir') || ($scfg->{type} eq 'zfspool') || |
317 | ($scfg->{type} eq 'lvmthin') || ($scfg->{type} eq 'lvm'); | |
318 | ||
37a6dc78 | 319 | die "can't migrate '$volid' - storage type '$scfg->{type}' not supported\n" |
c4d2d6c1 | 320 | if !$migratable; |
d5604092 | 321 | |
c4d2d6c1 WL |
322 | # image is a linked clone on local storage, se we can't migrate. |
323 | if (my $basename = (PVE::Storage::parse_volname($self->{storecfg}, $volid))[3]) { | |
324 | die "can't migrate '$volid' as it's a clone of '$basename'"; | |
d5604092 | 325 | } |
3ea94c60 DM |
326 | } |
327 | ||
328 | foreach my $volid (keys %$volhash) { | |
329 | my ($sid, $volname) = PVE::Storage::parse_volume_id($volid); | |
16e903f2 DM |
330 | push @{$self->{volumes}}, $volid; |
331 | PVE::Storage::storage_migrate($self->{storecfg}, $volid, $self->{nodeip}, $sid); | |
3ea94c60 DM |
332 | } |
333 | }; | |
334 | die "Failed to sync data - $@" if $@; | |
335 | } | |
336 | ||
1e3baf05 | 337 | sub phase1 { |
16e903f2 | 338 | my ($self, $vmid) = @_; |
1e3baf05 | 339 | |
16e903f2 | 340 | $self->log('info', "starting migration of VM $vmid to node '$self->{node}' ($self->{nodeip})"); |
1e3baf05 | 341 | |
16e903f2 | 342 | my $conf = $self->{vmconf}; |
1e3baf05 DM |
343 | |
344 | # set migrate lock in config file | |
1858638f | 345 | $conf->{lock} = 'migrate'; |
ffda963f | 346 | PVE::QemuConfig->write_config($vmid, $conf); |
1e3baf05 | 347 | |
16e903f2 | 348 | sync_disks($self, $vmid); |
1ef75254 | 349 | |
1e3baf05 DM |
350 | }; |
351 | ||
16e903f2 DM |
352 | sub phase1_cleanup { |
353 | my ($self, $vmid, $err) = @_; | |
354 | ||
355 | $self->log('info', "aborting phase 1 - cleanup resources"); | |
356 | ||
1858638f DM |
357 | my $conf = $self->{vmconf}; |
358 | delete $conf->{lock}; | |
ffda963f | 359 | eval { PVE::QemuConfig->write_config($vmid, $conf) }; |
16e903f2 DM |
360 | if (my $err = $@) { |
361 | $self->log('err', $err); | |
362 | } | |
f5eb281a | 363 | |
16e903f2 DM |
364 | if ($self->{volumes}) { |
365 | foreach my $volid (@{$self->{volumes}}) { | |
366 | $self->log('err', "found stale volume copy '$volid' on node '$self->{node}'"); | |
367 | # fixme: try to remove ? | |
368 | } | |
369 | } | |
370 | } | |
371 | ||
1e3baf05 | 372 | sub phase2 { |
16e903f2 | 373 | my ($self, $vmid) = @_; |
1e3baf05 | 374 | |
16e903f2 DM |
375 | my $conf = $self->{vmconf}; |
376 | ||
46a84fd4 | 377 | $self->log('info', "starting VM $vmid on remote node '$self->{node}'"); |
1e3baf05 | 378 | |
5bc1e039 | 379 | my $raddr; |
1e3baf05 | 380 | my $rport; |
1c9d54bf | 381 | my $ruri; # the whole migration dst. URI (protocol:address[:port]) |
7e8dcf2c AD |
382 | my $nodename = PVE::INotify::nodename(); |
383 | ||
19672434 | 384 | ## start on remote node |
95a4b4a9 AD |
385 | my $cmd = [@{$self->{rem_ssh}}]; |
386 | ||
7c14dcae | 387 | my $spice_ticket; |
86b8228b | 388 | if (PVE::QemuServer::vga_conf_has_spice($conf->{vga})) { |
95a4b4a9 | 389 | my $res = PVE::QemuServer::vm_mon_cmd($vmid, 'query-spice'); |
7c14dcae | 390 | $spice_ticket = $res->{ticket}; |
95a4b4a9 AD |
391 | } |
392 | ||
1c9d54bf TL |
393 | push @$cmd , 'qm', 'start', $vmid, '--skiplock', '--migratedfrom', $nodename; |
394 | ||
395 | # we use TCP only for unsecure migrations as TCP ssh forward tunnels often | |
396 | # did appeared to late (they are hard, if not impossible, to check for) | |
397 | # secure migration use UNIX sockets now, this *breaks* compatibilty when trying | |
398 | # to migrate from new to old but *not* from old to new. | |
399 | my $datacenterconf = PVE::Cluster::cfs_read_file('datacenter.cfg'); | |
400 | my $secure_migration = ($datacenterconf->{migration_unsecure}) ? 0 : 1; | |
401 | ||
402 | if (!$secure_migration) { | |
403 | push @$cmd, '--stateuri', 'tcp'; | |
404 | } else { | |
405 | push @$cmd, '--stateuri', 'unix'; | |
406 | } | |
95a4b4a9 | 407 | |
42668529 DM |
408 | if ($self->{forcemachine}) { |
409 | push @$cmd, '--machine', $self->{forcemachine}; | |
410 | } | |
411 | ||
86b8228b DM |
412 | my $spice_port; |
413 | ||
7c14dcae DM |
414 | # Note: We try to keep $spice_ticket secret (do not pass via command line parameter) |
415 | # instead we pipe it through STDIN | |
416 | PVE::Tools::run_command($cmd, input => $spice_ticket, outfunc => sub { | |
1e3baf05 DM |
417 | my $line = shift; |
418 | ||
407e0b8b | 419 | if ($line =~ m/^migration listens on tcp:(localhost|[\d\.]+|\[[\d\.:a-fA-F]+\]):(\d+)$/) { |
5bc1e039 SP |
420 | $raddr = $1; |
421 | $rport = int($2); | |
1c9d54bf TL |
422 | $ruri = "tcp:$raddr:$rport"; |
423 | } | |
424 | elsif ($line =~ m!^migration listens on unix:(/run/qemu-server/(\d+)\.migrate)$!) { | |
425 | $raddr = $1; | |
426 | die "Destination UNIX sockets VMID does not match source VMID" if $vmid ne $2; | |
427 | $ruri = "unix:$raddr"; | |
5bc1e039 SP |
428 | } |
429 | elsif ($line =~ m/^migration listens on port (\d+)$/) { | |
430 | $raddr = "localhost"; | |
86b8228b | 431 | $rport = int($1); |
1c9d54bf | 432 | $ruri = "tcp:$raddr:$rport"; |
5bc1e039 SP |
433 | } |
434 | elsif ($line =~ m/^spice listens on port (\d+)$/) { | |
86b8228b | 435 | $spice_port = int($1); |
1e3baf05 | 436 | } |
ab399b7c AD |
437 | }, errfunc => sub { |
438 | my $line = shift; | |
439 | $self->log('info', $line); | |
440 | }); | |
1e3baf05 | 441 | |
5bc1e039 | 442 | die "unable to detect remote migration address\n" if !$raddr; |
1ef75254 | 443 | |
1c9d54bf TL |
444 | if ($secure_migration) { |
445 | $self->log('info', "start remote tunnel"); | |
446 | ||
447 | if ($ruri =~ /^unix:/) { | |
54323eed | 448 | unlink $raddr; |
1c9d54bf TL |
449 | $self->{tunnel} = $self->fork_tunnel("$raddr:$raddr"); |
450 | $self->{tunnel}->{sock_addr} = $raddr; | |
451 | ||
452 | my $unix_socket_try = 0; # wait for the socket to become ready | |
453 | while (! -S $raddr) { | |
454 | $unix_socket_try++; | |
455 | if ($unix_socket_try > 100) { | |
456 | $self->{errors} = 1; | |
457 | $self->finish_tunnel($self->{tunnel}); | |
458 | die "Timeout, migration socket $ruri did not get ready"; | |
459 | } | |
460 | ||
461 | usleep(50000); | |
462 | } | |
463 | ||
464 | } elsif ($ruri =~ /^tcp:/) { | |
e858e9d2 TL |
465 | my $tunnel_addr; |
466 | if ($raddr eq "localhost") { | |
467 | # for backwards compatibility with older qemu-server versions | |
468 | my $pfamily = PVE::Tools::get_host_address_family($nodename); | |
469 | my $lport = PVE::Tools::next_migrate_port($pfamily); | |
470 | $tunnel_addr = "$lport:localhost:$rport"; | |
471 | } | |
1c9d54bf | 472 | |
e858e9d2 | 473 | $self->{tunnel} = $self->fork_tunnel($tunnel_addr); |
1c9d54bf TL |
474 | |
475 | } else { | |
476 | die "unsupported protocol in migration URI: $ruri\n"; | |
477 | } | |
478 | } | |
1e3baf05 | 479 | |
1e3baf05 | 480 | my $start = time(); |
1c9d54bf | 481 | $self->log('info', "starting online/live migration on $ruri"); |
5bc1e039 | 482 | $self->{livemigration} = 1; |
e18b0b99 | 483 | |
3beb415b AD |
484 | # load_defaults |
485 | my $defaults = PVE::QemuServer::load_defaults(); | |
486 | ||
487 | # always set migrate speed (overwrite kvm default of 32m) | |
488 | # we set a very hight default of 8192m which is basically unlimited | |
489 | my $migrate_speed = $defaults->{migrate_speed} || 8192; | |
490 | $migrate_speed = $conf->{migrate_speed} || $migrate_speed; | |
491 | $migrate_speed = $migrate_speed * 1048576; | |
492 | $self->log('info', "migrate_set_speed: $migrate_speed"); | |
493 | eval { | |
494 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate_set_speed", value => int($migrate_speed)); | |
495 | }; | |
496 | $self->log('info', "migrate_set_speed error: $@") if $@; | |
497 | ||
498 | my $migrate_downtime = $defaults->{migrate_downtime}; | |
499 | $migrate_downtime = $conf->{migrate_downtime} if defined($conf->{migrate_downtime}); | |
500 | if (defined($migrate_downtime)) { | |
501 | $self->log('info', "migrate_set_downtime: $migrate_downtime"); | |
502 | eval { | |
865ef132 | 503 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate_set_downtime", value => int($migrate_downtime*100)/100); |
3beb415b AD |
504 | }; |
505 | $self->log('info', "migrate_set_downtime error: $@") if $@; | |
506 | } | |
507 | ||
f34d1466 | 508 | $self->log('info', "set migration_caps"); |
e18b0b99 | 509 | eval { |
a89fded1 | 510 | PVE::QemuServer::set_migration_caps($vmid); |
e18b0b99 | 511 | }; |
a89fded1 | 512 | warn $@ if $@; |
e18b0b99 AD |
513 | |
514 | #set cachesize 10% of the total memory | |
515 | my $cachesize = int($conf->{memory}*1048576/10); | |
f34d1466 | 516 | $self->log('info', "set cachesize: $cachesize"); |
e18b0b99 | 517 | eval { |
f34d1466 | 518 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate-set-cache-size", value => int($cachesize)); |
e18b0b99 | 519 | }; |
f34d1466 TL |
520 | $self->log('info', "migrate-set-cache-size error: $@") if $@; |
521 | ||
86b8228b | 522 | if (PVE::QemuServer::vga_conf_has_spice($conf->{vga})) { |
95a4b4a9 AD |
523 | my $rpcenv = PVE::RPCEnvironment::get(); |
524 | my $authuser = $rpcenv->get_user(); | |
525 | ||
86b8228b | 526 | my (undef, $proxyticket) = PVE::AccessControl::assemble_spice_ticket($authuser, $vmid, $self->{node}); |
95a4b4a9 | 527 | |
86b8228b | 528 | my $filename = "/etc/pve/nodes/$self->{node}/pve-ssl.pem"; |
dd25eecf | 529 | my $subject = PVE::AccessControl::read_x509_subject_spice($filename); |
95a4b4a9 AD |
530 | |
531 | $self->log('info', "spice client_migrate_info"); | |
532 | ||
533 | eval { | |
86b8228b DM |
534 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "client_migrate_info", protocol => 'spice', |
535 | hostname => $proxyticket, 'tls-port' => $spice_port, | |
536 | 'cert-subject' => $subject); | |
95a4b4a9 AD |
537 | }; |
538 | $self->log('info', "client_migrate_info error: $@") if $@; | |
539 | ||
540 | } | |
541 | ||
f34d1466 | 542 | $self->log('info', "start migrate command to $ruri"); |
5a7835f5 | 543 | eval { |
1c9d54bf | 544 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate", uri => $ruri); |
5a7835f5 AD |
545 | }; |
546 | my $merr = $@; | |
1c9d54bf | 547 | $self->log('info', "migrate uri => $ruri failed: $merr") if $merr; |
1e3baf05 | 548 | |
a05b47a8 | 549 | my $lstat = 0; |
e52bd94c AD |
550 | my $usleep = 2000000; |
551 | my $i = 0; | |
b0b756c1 | 552 | my $err_count = 0; |
865ef132 SP |
553 | my $lastrem = undef; |
554 | my $downtimecounter = 0; | |
1e3baf05 | 555 | while (1) { |
e52bd94c AD |
556 | $i++; |
557 | my $avglstat = $lstat/$i if $lstat; | |
558 | ||
b0b756c1 DM |
559 | usleep($usleep); |
560 | my $stat; | |
561 | eval { | |
562 | $stat = PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "query-migrate"); | |
563 | }; | |
564 | if (my $err = $@) { | |
565 | $err_count++; | |
566 | warn "query migrate failed: $err\n"; | |
f34d1466 | 567 | $self->log('info', "query migrate failed: $err"); |
b0b756c1 DM |
568 | if ($err_count <= 5) { |
569 | usleep(1000000); | |
570 | next; | |
571 | } | |
572 | die "too many query migrate failures - aborting\n"; | |
573 | } | |
985a5f48 | 574 | |
f34d1466 | 575 | if (defined($stat->{status}) && $stat->{status} =~ m/^(setup)$/im) { |
985a5f48 AD |
576 | sleep(1); |
577 | next; | |
578 | } | |
579 | ||
f34d1466 | 580 | if (defined($stat->{status}) && $stat->{status} =~ m/^(active|completed|failed|cancelled)$/im) { |
d68afb26 | 581 | $merr = undef; |
b0b756c1 | 582 | $err_count = 0; |
5a7835f5 | 583 | if ($stat->{status} eq 'completed') { |
1e3baf05 DM |
584 | my $delay = time() - $start; |
585 | if ($delay > 0) { | |
586 | my $mbps = sprintf "%.2f", $conf->{memory}/$delay; | |
135007c0 AD |
587 | my $downtime = $stat->{downtime} || 0; |
588 | $self->log('info', "migration speed: $mbps MB/s - downtime $downtime ms"); | |
1e3baf05 DM |
589 | } |
590 | } | |
f5eb281a | 591 | |
5a7835f5 | 592 | if ($stat->{status} eq 'failed' || $stat->{status} eq 'cancelled') { |
f34d1466 | 593 | $self->log('info', "migration status error: $stat->{status}"); |
1e3baf05 DM |
594 | die "aborting\n" |
595 | } | |
596 | ||
a05b47a8 DM |
597 | if ($stat->{status} ne 'active') { |
598 | $self->log('info', "migration status: $stat->{status}"); | |
599 | last; | |
600 | } | |
601 | ||
602 | if ($stat->{ram}->{transferred} ne $lstat) { | |
603 | my $trans = $stat->{ram}->{transferred} || 0; | |
604 | my $rem = $stat->{ram}->{remaining} || 0; | |
605 | my $total = $stat->{ram}->{total} || 0; | |
e18b0b99 AD |
606 | my $xbzrlecachesize = $stat->{"xbzrle-cache"}->{"cache-size"} || 0; |
607 | my $xbzrlebytes = $stat->{"xbzrle-cache"}->{"bytes"} || 0; | |
608 | my $xbzrlepages = $stat->{"xbzrle-cache"}->{"pages"} || 0; | |
609 | my $xbzrlecachemiss = $stat->{"xbzrle-cache"}->{"cache-miss"} || 0; | |
610 | my $xbzrleoverflow = $stat->{"xbzrle-cache"}->{"overflow"} || 0; | |
e52bd94c | 611 | #reduce sleep if remainig memory if lower than the everage transfert |
94235c59 | 612 | $usleep = 300000 if $avglstat && $rem < $avglstat; |
a05b47a8 DM |
613 | |
614 | $self->log('info', "migration status: $stat->{status} (transferred ${trans}, " . | |
0302101c | 615 | "remaining ${rem}), total ${total})"); |
e18b0b99 | 616 | |
2e787b18 SP |
617 | if (${xbzrlecachesize}) { |
618 | $self->log('info', "migration xbzrle cachesize: ${xbzrlecachesize} transferred ${xbzrlebytes} pages ${xbzrlepages} cachemiss ${xbzrlecachemiss} overflow ${xbzrleoverflow}"); | |
619 | } | |
620 | ||
865ef132 SP |
621 | if (($lastrem && $rem > $lastrem ) || ($rem == 0)) { |
622 | $downtimecounter++; | |
623 | } | |
624 | $lastrem = $rem; | |
625 | ||
626 | if ($downtimecounter > 5) { | |
627 | $downtimecounter = 0; | |
628 | $migrate_downtime *= 2; | |
629 | $self->log('info', "migrate_set_downtime: $migrate_downtime"); | |
630 | eval { | |
631 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate_set_downtime", value => int($migrate_downtime*100)/100); | |
632 | }; | |
633 | $self->log('info', "migrate_set_downtime error: $@") if $@; | |
634 | } | |
635 | ||
a05b47a8 DM |
636 | } |
637 | ||
865ef132 | 638 | |
a05b47a8 | 639 | $lstat = $stat->{ram}->{transferred}; |
e52bd94c | 640 | |
1e3baf05 | 641 | } else { |
d68afb26 | 642 | die $merr if $merr; |
5a7835f5 | 643 | die "unable to parse migration status '$stat->{status}' - aborting\n"; |
1e3baf05 | 644 | } |
a05b47a8 | 645 | } |
92437b8d TL |
646 | |
647 | # just to be sure that the tunnel gets closed on successful migration, on error | |
648 | # phase2_cleanup closes it *after* stopping the remote waiting VM | |
649 | if (!$self->{errors} && $self->{tunnel}) { | |
386c6ba7 WL |
650 | eval { finish_tunnel($self, $self->{tunnel}); }; |
651 | if (my $err = $@) { | |
652 | $self->log('err', $err); | |
653 | $self->{errors} = 1; | |
654 | } | |
655 | } | |
1e3baf05 | 656 | } |
16e903f2 | 657 | |
c04b5b04 AD |
658 | sub phase2_cleanup { |
659 | my ($self, $vmid, $err) = @_; | |
660 | ||
af30308f DM |
661 | return if !$self->{errors}; |
662 | $self->{phase2errors} = 1; | |
663 | ||
c04b5b04 AD |
664 | $self->log('info', "aborting phase 2 - cleanup resources"); |
665 | ||
19168b91 SP |
666 | $self->log('info', "migrate_cancel"); |
667 | eval { | |
668 | PVE::QemuServer::vm_mon_cmd_nocheck($vmid, "migrate_cancel"); | |
669 | }; | |
670 | $self->log('info', "migrate_cancel error: $@") if $@; | |
671 | ||
c04b5b04 AD |
672 | my $conf = $self->{vmconf}; |
673 | delete $conf->{lock}; | |
ffda963f | 674 | eval { PVE::QemuConfig->write_config($vmid, $conf) }; |
c04b5b04 AD |
675 | if (my $err = $@) { |
676 | $self->log('err', $err); | |
677 | } | |
678 | ||
af30308f DM |
679 | # cleanup ressources on target host |
680 | my $nodename = PVE::INotify::nodename(); | |
681 | ||
682 | my $cmd = [@{$self->{rem_ssh}}, 'qm', 'stop', $vmid, '--skiplock', '--migratedfrom', $nodename]; | |
683 | eval{ PVE::Tools::run_command($cmd, outfunc => sub {}, errfunc => sub {}) }; | |
684 | if (my $err = $@) { | |
685 | $self->log('err', $err); | |
686 | $self->{errors} = 1; | |
687 | } | |
386c6ba7 WL |
688 | |
689 | if ($self->{tunnel}) { | |
690 | eval { finish_tunnel($self, $self->{tunnel}); }; | |
691 | if (my $err = $@) { | |
692 | $self->log('err', $err); | |
693 | $self->{errors} = 1; | |
694 | } | |
695 | } | |
c04b5b04 AD |
696 | } |
697 | ||
16e903f2 DM |
698 | sub phase3 { |
699 | my ($self, $vmid) = @_; | |
f5eb281a | 700 | |
16e903f2 | 701 | my $volids = $self->{volumes}; |
af30308f | 702 | return if $self->{phase2errors}; |
16e903f2 DM |
703 | |
704 | # destroy local copies | |
705 | foreach my $volid (@$volids) { | |
706 | eval { PVE::Storage::vdisk_free($self->{storecfg}, $volid); }; | |
707 | if (my $err = $@) { | |
708 | $self->log('err', "removing local copy of '$volid' failed - $err"); | |
709 | $self->{errors} = 1; | |
710 | last if $err =~ /^interrupted by signal$/; | |
711 | } | |
712 | } | |
16e903f2 DM |
713 | } |
714 | ||
715 | sub phase3_cleanup { | |
716 | my ($self, $vmid, $err) = @_; | |
717 | ||
718 | my $conf = $self->{vmconf}; | |
af30308f | 719 | return if $self->{phase2errors}; |
16e903f2 | 720 | |
b8d20802 | 721 | # move config to remote node |
ffda963f FG |
722 | my $conffile = PVE::QemuConfig->config_file($vmid); |
723 | my $newconffile = PVE::QemuConfig->config_file($vmid, $self->{node}); | |
b8d20802 AD |
724 | |
725 | die "Failed to move config to node '$self->{node}' - rename failed: $!\n" | |
726 | if !rename($conffile, $newconffile); | |
727 | ||
5bc1e039 SP |
728 | if ($self->{livemigration}) { |
729 | # now that config file is move, we can resume vm on target if livemigrate | |
289e0b85 | 730 | my $cmd = [@{$self->{rem_ssh}}, 'qm', 'resume', $vmid, '--skiplock', '--nocheck']; |
d5f315fd AD |
731 | eval{ PVE::Tools::run_command($cmd, outfunc => sub {}, |
732 | errfunc => sub { | |
733 | my $line = shift; | |
734 | $self->log('err', $line); | |
735 | }); | |
736 | }; | |
f5eb281a | 737 | if (my $err = $@) { |
b67900f1 AD |
738 | $self->log('err', $err); |
739 | $self->{errors} = 1; | |
740 | } | |
741 | } | |
742 | ||
fd8469f7 AD |
743 | eval { |
744 | ||
745 | my $timer = 0; | |
746 | if (PVE::QemuServer::vga_conf_has_spice($conf->{vga}) && $self->{running}) { | |
747 | $self->log('info', "Waiting for spice server migration"); | |
748 | while (1) { | |
749 | my $res = PVE::QemuServer::vm_mon_cmd_nocheck($vmid, 'query-spice'); | |
750 | last if int($res->{'migrated'}) == 1; | |
751 | last if $timer > 50; | |
752 | $timer ++; | |
753 | usleep(200000); | |
754 | } | |
755 | } | |
756 | }; | |
95a4b4a9 | 757 | |
16e903f2 DM |
758 | # always stop local VM |
759 | eval { PVE::QemuServer::vm_stop($self->{storecfg}, $vmid, 1, 1); }; | |
760 | if (my $err = $@) { | |
761 | $self->log('err', "stopping vm failed - $err"); | |
762 | $self->{errors} = 1; | |
763 | } | |
764 | ||
765 | # always deactivate volumes - avoid lvm LVs to be active on several nodes | |
766 | eval { | |
767 | my $vollist = PVE::QemuServer::get_vm_volumes($conf); | |
768 | PVE::Storage::deactivate_volumes($self->{storecfg}, $vollist); | |
769 | }; | |
770 | if (my $err = $@) { | |
771 | $self->log('err', $err); | |
772 | $self->{errors} = 1; | |
773 | } | |
774 | ||
775 | # clear migrate lock | |
776 | my $cmd = [ @{$self->{rem_ssh}}, 'qm', 'unlock', $vmid ]; | |
777 | $self->cmd_logerr($cmd, errmsg => "failed to clear migrate lock"); | |
778 | } | |
779 | ||
780 | sub final_cleanup { | |
781 | my ($self, $vmid) = @_; | |
782 | ||
783 | # nothing to do | |
784 | } | |
785 | ||
786 | 1; |