]> git.proxmox.com Git - qemu-server.git/blame - PVE/VZDump/QemuServer.pm
bump version to 7.4-1
[qemu-server.git] / PVE / VZDump / QemuServer.pm
CommitLineData
1e3baf05
DM
1package PVE::VZDump::QemuServer;
2
1e3baf05
DM
3use strict;
4use warnings;
d610b145 5
1e3baf05 6use File::Basename;
d610b145
TL
7use File::Path;
8use IO::File;
9use IPC::Open3;
69e62894 10use JSON;
4ac842cb 11use POSIX qw(EINTR EAGAIN);
d610b145
TL
12
13use PVE::Cluster qw(cfs_read_file);
66ab1d91 14use PVE::INotify;
91bd6c90 15use PVE::IPCC;
d610b145 16use PVE::JSONSchema;
fbec3f89 17use PVE::PBSClient;
4de4eefc 18use PVE::RESTEnvironment qw(log_warn);
0a13e08e 19use PVE::QMPClient;
f5bdefa4 20use PVE::Storage::Plugin;
c5983223 21use PVE::Storage::PBSPlugin;
1e3baf05 22use PVE::Storage;
d610b145
TL
23use PVE::Tools;
24use PVE::VZDump;
f1aca33d 25use PVE::Format qw(render_duration render_bytes);
d610b145 26
912792e2 27use PVE::QemuConfig;
1e3baf05 28use PVE::QemuServer;
3392d6ca 29use PVE::QemuServer::Machine;
0a13e08e 30use PVE::QemuServer::Monitor qw(mon_cmd);
1e3baf05
DM
31
32use base qw (PVE::VZDump::Plugin);
33
34sub new {
35 my ($class, $vzdump) = @_;
874a096e 36
66ab1d91 37 PVE::VZDump::check_bin('qm');
1e3baf05 38
e2812738 39 my $self = bless { vzdump => $vzdump }, $class;
1e3baf05
DM
40
41 $self->{vmlist} = PVE::QemuServer::vzlist();
42 $self->{storecfg} = PVE::Storage::config();
43
44 return $self;
45};
46
1e3baf05
DM
47sub type {
48 return 'qemu';
49}
50
51sub vmlist {
52 my ($self) = @_;
1e3baf05
DM
53 return [ keys %{$self->{vmlist}} ];
54}
55
56sub prepare {
57 my ($self, $task, $vmid, $mode) = @_;
58
59 $task->{disks} = [];
60
ffda963f 61 my $conf = $self->{vmlist}->{$vmid} = PVE::QemuConfig->load_config($vmid);
1e3baf05 62
85b84b7b
WL
63 $self->loginfo("VM Name: $conf->{name}")
64 if defined($conf->{name});
65
91bd6c90 66 $self->{vm_was_running} = 1;
b08c37c3 67 $self->{vm_was_paused} = 0;
91bd6c90
DM
68 if (!PVE::QemuServer::check_running($vmid)) {
69 $self->{vm_was_running} = 0;
b08c37c3
DC
70 } elsif (PVE::QemuServer::vm_is_paused($vmid)) {
71 $self->{vm_was_paused} = 1;
585b6e28
DM
72 }
73
1e3baf05
DM
74 $task->{hostname} = $conf->{name};
75
874a096e 76 my $hostname = PVE::INotify::nodename();
1e3baf05 77
b969cc68
DM
78 my $vollist = [];
79 my $drivehash = {};
185df962 80 my $backup_volumes = PVE::QemuConfig->get_backup_volumes($conf);
1e3baf05 81
185df962
AL
82 foreach my $volume (@{$backup_volumes}) {
83 my $name = $volume->{key};
5a92276e 84 my $volume_config = $volume->{volume_config};
185df962 85 my $volid = $volume_config->{file};
1e3baf05 86
185df962
AL
87 if (!$volume->{included}) {
88 $self->loginfo("exclude disk '$name' '$volid' ($volume->{reason})");
89 next;
f9dde219
SR
90 } elsif ($self->{vm_was_running} && $volume_config->{iothread} &&
91 !PVE::QemuServer::Machine::runs_at_least_qemu_version($vmid, 4, 0, 1)) {
92 die "disk '$name' '$volid' (iothread=on) can't use backup feature with running QEMU " .
93 "version < 4.0.1! Either set backup=no for this drive or upgrade QEMU and restart VM\n";
b53b958b 94 } else {
185df962
AL
95 my $log = "include disk '$name' '$volid'";
96 if (defined(my $size = $volume_config->{size})) {
97 my $readable_size = PVE::JSONSchema::format_size($size);
0db93c2d 98 $log .= " $readable_size";
185df962 99 }
0db93c2d 100 $self->loginfo($log);
874a096e 101 }
b969cc68 102
f5bdefa4 103 my ($storeid, $volname) = PVE::Storage::parse_volume_id($volid, 1);
b969cc68 104 push @$vollist, $volid if $storeid;
185df962
AL
105 $drivehash->{$name} = $volume->{volume_config};
106 }
b969cc68
DM
107
108 PVE::Storage::activate_volumes($self->{storecfg}, $vollist);
109
075b417a
DM
110 foreach my $ds (sort keys %$drivehash) {
111 my $drive = $drivehash->{$ds};
874a096e 112
1e3baf05 113 my $volid = $drive->{file};
f5bdefa4 114 my ($storeid, $volname) = PVE::Storage::parse_volume_id($volid, 1);
a113a58a
TL
115
116 my $path = $volid;
1e3baf05 117 if ($storeid) {
b969cc68 118 $path = PVE::Storage::path($self->{storecfg}, $volid);
1e3baf05 119 }
b969cc68 120 next if !$path;
1e3baf05 121
a113a58a 122 my ($size, $format) = eval { PVE::Storage::volume_size_info($self->{storecfg}, $volid, 5) };
daca220d 123 die "no such volume '$volid'\n" if $@;
91bd6c90 124
a113a58a
TL
125 my $diskinfo = {
126 path => $path,
127 volid => $volid,
128 storeid => $storeid,
129 format => $format,
130 virtdev => $ds,
131 qmdevice => "drive-$ds",
132 };
1e3baf05 133
f9dde219
SR
134 if ($ds eq 'tpmstate0') {
135 # TPM drive only exists for backup, which is reflected in the name
136 $diskinfo->{qmdevice} = 'drive-tpmstate0-backup';
137 $task->{tpmpath} = $path;
138 }
139
1e3baf05 140 if (-b $path) {
1e3baf05 141 $diskinfo->{type} = 'block';
1e3baf05 142 } else {
1e3baf05 143 $diskinfo->{type} = 'file';
1e3baf05
DM
144 }
145
146 push @{$task->{disks}}, $diskinfo;
b969cc68 147 }
1e3baf05
DM
148}
149
150sub vm_status {
151 my ($self, $vmid) = @_;
152
66ab1d91 153 my $running = PVE::QemuServer::check_running($vmid) ? 1 : 0;
874a096e
DM
154
155 return wantarray ? ($running, $running ? 'running' : 'stopped') : $running;
1e3baf05
DM
156}
157
158sub lock_vm {
159 my ($self, $vmid) = @_;
160
f301bc0d 161 PVE::QemuConfig->set_lock($vmid, 'backup');
1e3baf05
DM
162}
163
164sub unlock_vm {
165 my ($self, $vmid) = @_;
166
f301bc0d 167 PVE::QemuConfig->remove_lock($vmid, 'backup');
1e3baf05
DM
168}
169
170sub stop_vm {
171 my ($self, $task, $vmid) = @_;
172
173 my $opts = $self->{vzdump}->{opts};
174
175 my $wait = $opts->{stopwait} * 60;
176 # send shutdown and wait
254575e9 177 $self->cmd ("qm shutdown $vmid --skiplock --keepActive --timeout $wait");
1e3baf05
DM
178}
179
180sub start_vm {
181 my ($self, $task, $vmid) = @_;
182
66ab1d91 183 $self->cmd ("qm start $vmid --skiplock");
1e3baf05
DM
184}
185
186sub suspend_vm {
187 my ($self, $task, $vmid) = @_;
188
b08c37c3
DC
189 return if $self->{vm_was_paused};
190
66ab1d91 191 $self->cmd ("qm suspend $vmid --skiplock");
1e3baf05
DM
192}
193
194sub resume_vm {
195 my ($self, $task, $vmid) = @_;
196
b08c37c3
DC
197 return if $self->{vm_was_paused};
198
66ab1d91 199 $self->cmd ("qm resume $vmid --skiplock");
1e3baf05
DM
200}
201
1e3baf05
DM
202sub assemble {
203 my ($self, $task, $vmid) = @_;
204
04096e7b 205 my $conffile = PVE::QemuConfig->config_file($vmid);
1e3baf05
DM
206
207 my $outfile = "$task->{tmpdir}/qemu-server.conf";
c05f7f3f
WL
208 my $firewall_src = "/etc/pve/firewall/$vmid.fw";
209 my $firewall_dest = "$task->{tmpdir}/qemu-server.fw";
210
211 my $outfd = IO::File->new (">$outfile") ||
212 die "unable to open '$outfile'";
213 my $conffd = IO::File->new ($conffile, 'r') ||
214 die "unable open '$conffile'";
215
216 my $found_snapshot;
391c2230 217 my $found_pending;
31280b4b 218 my $found_cloudinit;
c05f7f3f
WL
219 while (defined (my $line = <$conffd>)) {
220 next if $line =~ m/^\#vzdump\#/; # just to be sure
221 next if $line =~ m/^\#qmdump\#/; # just to be sure
391c2230
FG
222 if ($line =~ m/^\[(.*)\]\s*$/) {
223 if ($1 =~ m/PENDING/i) {
224 $found_pending = 1;
31280b4b
AD
225 } elsif ($1 =~ m/special:cloudinit/) {
226 $found_cloudinit = 1;
391c2230
FG
227 } else {
228 $found_snapshot = 1;
229 }
1e3baf05 230 }
31280b4b 231 next if $found_snapshot || $found_pending || $found_cloudinit; # skip all snapshots,pending changes and cloudinit config data
391c2230 232
c05f7f3f
WL
233 if ($line =~ m/^unused\d+:\s*(\S+)\s*/) {
234 $self->loginfo("skip unused drive '$1' (not included into backup)");
235 next;
1e3baf05 236 }
c05f7f3f 237 next if $line =~ m/^lock:/ || $line =~ m/^parent:/;
91bd6c90 238
c05f7f3f
WL
239 print $outfd $line;
240 }
241
242 foreach my $di (@{$task->{disks}}) {
243 if ($di->{type} eq 'block' || $di->{type} eq 'file') {
244 my $storeid = $di->{storeid} || '';
245 my $format = $di->{format} || '';
246 print $outfd "#qmdump#map:$di->{virtdev}:$di->{qmdevice}:$storeid:$format:\n";
247 } else {
248 die "internal error";
91bd6c90 249 }
c05f7f3f 250 }
1e3baf05 251
c05f7f3f
WL
252 if ($found_snapshot) {
253 $self->loginfo("snapshots found (not included into backup)");
254 }
391c2230
FG
255 if ($found_pending) {
256 $self->loginfo("pending configuration changes found (not included into backup)");
257 }
258
c05f7f3f 259 PVE::Tools::file_copy($firewall_src, $firewall_dest) if -f $firewall_src;
1e3baf05
DM
260}
261
262sub archive {
fad02a16 263 my ($self, $task, $vmid, $filename, $comp) = @_;
1e3baf05 264
c5983223 265 my $opts = $self->{vzdump}->{opts};
c5983223
DM
266 my $scfg = $opts->{scfg};
267
69074863 268 if ($self->{vzdump}->{opts}->{pbs}) {
c5983223
DM
269 $self->archive_pbs($task, $vmid);
270 } else {
271 $self->archive_vma($task, $vmid, $filename, $comp);
272 }
273}
274
3a44897f 275my $bitmap_action_to_human = sub {
13ddc7eb 276 my ($self, $info) = @_;
3a44897f
SR
277
278 my $action = $info->{action};
279
280 if ($action eq "not-used") {
962d4d64 281 return "disabled (no support)";
3a44897f
SR
282 } elsif ($action eq "not-used-removed") {
283 return "disabled (old bitmap cleared)";
284 } elsif ($action eq "new") {
13ddc7eb 285 return "created new";
3a44897f
SR
286 } elsif ($action eq "used") {
287 if ($info->{dirty} == 0) {
13ddc7eb 288 return "OK (drive clean)";
3a44897f 289 } else {
f1aca33d
SR
290 my $size = render_bytes($info->{size}, 1);
291 my $dirty = render_bytes($info->{dirty}, 1);
13ddc7eb 292 return "OK ($dirty of $size dirty)";
3a44897f
SR
293 }
294 } elsif ($action eq "invalid") {
295 return "existing bitmap was invalid and has been cleared";
296 } else {
297 return "unknown";
298 }
299};
300
c5983223 301my $query_backup_status_loop = sub {
f8566714 302 my ($self, $vmid, $job_uuid, $qemu_support) = @_;
c5983223 303
c5983223 304 my $starttime = time ();
09eb196b 305 my $last_time = $starttime;
8825248c 306 my ($last_percent, $last_total, $last_target, $last_zero, $last_transferred) = (-1, 0, 0, 0, 0);
4d159c24 307 my ($transferred, $reused);
c5983223 308
09eb196b
TL
309 my $get_mbps = sub {
310 my ($mb, $delta) = @_;
4d159c24
TL
311 return "0 B/s" if $mb <= 0;
312 my $bw = int(($mb / $delta));
f1aca33d 313 return render_bytes($bw, 1) . "/s";
09eb196b
TL
314 };
315
3a44897f 316 my $target = 0;
8825248c 317 my $last_reused = 0;
f8566714 318 my $has_query_bitmap = $qemu_support && $qemu_support->{'query-bitmap-info'};
5749c383 319 my $is_template = PVE::QemuConfig->is_template($self->{vmlist}->{$vmid});
f8566714 320 if ($has_query_bitmap) {
13ddc7eb 321 my $total = 0;
3a44897f 322 my $bitmap_info = mon_cmd($vmid, 'query-pbs-bitmap-info');
5749c383
TL
323 for my $info (sort { $a->{drive} cmp $b->{drive} } @$bitmap_info) {
324 if (!$is_template) {
325 my $text = $bitmap_action_to_human->($self, $info);
326 my $drive = $info->{drive};
327 $drive =~ s/^drive-//; # for consistency
328 $self->loginfo("$drive: dirty-bitmap status: $text");
329 }
3a44897f 330 $target += $info->{dirty};
13ddc7eb 331 $total += $info->{size};
8825248c 332 $last_reused += $info->{size} - $info->{dirty};
3a44897f 333 }
13ddc7eb 334 if ($target < $total) {
f1aca33d
SR
335 my $total_h = render_bytes($total, 1);
336 my $target_h = render_bytes($target, 1);
13ddc7eb
TL
337 $self->loginfo("using fast incremental mode (dirty-bitmap), $target_h dirty of $total_h total");
338 }
3a44897f
SR
339 }
340
1eb7e590 341 my $last_finishing = 0;
c5983223 342 while(1) {
09eb196b
TL
343 my $status = mon_cmd($vmid, 'query-backup');
344
c5983223 345 my $total = $status->{total} || 0;
f8566714
TL
346 my $dirty = $status->{dirty};
347 $target = (defined($dirty) && $dirty < $total) ? $dirty : $total if !$has_query_bitmap;
c5983223 348 $transferred = $status->{transferred} || 0;
4d159c24 349 $reused = $status->{reused};
0f6c6981 350 my $percent = $target ? int(($transferred * 100)/$target) : 100;
c5983223 351 my $zero = $status->{'zero-bytes'} || 0;
c5983223
DM
352
353 die "got unexpected uuid\n" if !$status->{uuid} || ($status->{uuid} ne $job_uuid);
354
355 my $ctime = time();
356 my $duration = $ctime - $starttime;
357
358 my $rbytes = $transferred - $last_transferred;
8825248c
SR
359 my $wbytes;
360 if ($reused) {
361 # reused includes zero bytes for PBS
362 $wbytes = $rbytes - ($reused - $last_reused);
363 } else {
364 $wbytes = $rbytes - ($zero - $last_zero);
365 }
c5983223
DM
366
367 my $timediff = ($ctime - $last_time) || 1; # fixme
09eb196b
TL
368 my $mbps_read = $get_mbps->($rbytes, $timediff);
369 my $mbps_write = $get_mbps->($wbytes, $timediff);
f1aca33d
SR
370 my $target_h = render_bytes($target, 1);
371 my $transferred_h = render_bytes($transferred, 1);
4d159c24 372
a40295b6 373 my $statusline = sprintf("%3d%% ($transferred_h of $target_h) in %s"
f1aca33d 374 .", read: $mbps_read, write: $mbps_write", $percent, render_duration($duration));
09eb196b 375
c5983223
DM
376 my $res = $status->{status} || 'unknown';
377 if ($res ne 'active') {
1eb7e590
SR
378 if ($last_percent < 100) {
379 $self->loginfo($statusline);
380 }
09eb196b
TL
381 if ($res ne 'done') {
382 die (($status->{errmsg} || "unknown error") . "\n") if $res eq 'error';
383 die "got unexpected status '$res'\n";
09eb196b 384 }
6cdb568c
TL
385 $last_target = $target if $target;
386 $last_total = $total if $total;
387 $last_zero = $zero if $zero;
388 $last_transferred = $transferred if $transferred;
c5983223
DM
389 last;
390 }
09eb196b 391 if ($percent != $last_percent && ($timediff > 2)) {
c5983223 392 $self->loginfo($statusline);
09eb196b 393 $last_percent = $percent;
4d159c24 394 $last_target = $target if $target;
c5983223
DM
395 $last_total = $total if $total;
396 $last_zero = $zero if $zero;
397 $last_transferred = $transferred if $transferred;
398 $last_time = $ctime;
8825248c 399 $last_reused = $reused;
1eb7e590
SR
400
401 if (!$last_finishing && $status->{finishing}) {
d5b0cfb1 402 $self->loginfo("Waiting for server to finish backup validation...");
1eb7e590
SR
403 }
404 $last_finishing = $status->{finishing};
c5983223
DM
405 }
406 sleep(1);
407 }
408
409 my $duration = time() - $starttime;
d35412a3
TL
410
411 if ($last_zero) {
412 my $zero_per = $last_target ? int(($last_zero * 100)/$last_target) : 0;
f1aca33d 413 my $zero_h = render_bytes($last_zero);
d35412a3
TL
414 $self->loginfo("backup is sparse: $zero_h (${zero_per}%) total zero data");
415 }
1ca43f1c 416 if ($reused) {
f1aca33d 417 my $reused_h = render_bytes($reused);
1ca43f1c
SR
418 my $reuse_per = int($reused * 100 / $last_total);
419 $self->loginfo("backup was done incrementally, reused $reused_h (${reuse_per}%)");
420 }
bafae3ec 421 if ($transferred) {
f1aca33d 422 my $transferred_h = render_bytes($transferred);
bafae3ec
TL
423 if ($duration) {
424 my $mbps = $get_mbps->($transferred, $duration);
425 $self->loginfo("transferred $transferred_h in $duration seconds ($mbps)");
426 } else {
427 $self->loginfo("transferred $transferred_h in <1 seconds");
428 }
4d159c24
TL
429 }
430
b4be9c02
TL
431 return {
432 total => $last_total,
433 reused => $reused,
434 };
c5983223
DM
435};
436
f9dde219
SR
437my $attach_tpmstate_drive = sub {
438 my ($self, $task, $vmid) = @_;
439
440 return if !$task->{tpmpath};
441
442 # unconditionally try to remove the tpmstate-named drive - it only exists
443 # for backing up, and avoids errors if left over from some previous event
444 eval { PVE::QemuServer::qemu_drivedel($vmid, "tpmstate0-backup"); };
445
446 $self->loginfo('attaching TPM drive to QEMU for backup');
447
448 my $drive = "file=$task->{tpmpath},if=none,read-only=on,id=drive-tpmstate0-backup";
93e3f756 449 $drive =~ s/\\/\\\\/g;
f9dde219 450 my $ret = PVE::QemuServer::Monitor::hmp_cmd($vmid, "drive_add auto \"$drive\"");
df28f8cc 451 die "attaching TPM drive failed - $ret\n" if $ret !~ m/OK/s;
f9dde219
SR
452};
453
454my $detach_tpmstate_drive = sub {
455 my ($task, $vmid) = @_;
456 return if !$task->{tpmpath} || !PVE::QemuServer::check_running($vmid);
457 eval { PVE::QemuServer::qemu_drivedel($vmid, "tpmstate0-backup"); };
458};
459
4de4eefc
FE
460my sub add_backup_performance_options {
461 my ($qmp_param, $perf, $qemu_support) = @_;
462
463 return if !$perf || scalar(keys $perf->%*) == 0;
464
465 if (!$qemu_support) {
466 my $settings_string = join(', ', sort keys $perf->%*);
467 log_warn("ignoring setting(s): $settings_string - issue checking if supported");
468 return;
469 }
470
471 if (defined($perf->{'max-workers'})) {
472 if ($qemu_support->{'backup-max-workers'}) {
473 $qmp_param->{'max-workers'} = int($perf->{'max-workers'});
474 } else {
475 log_warn("ignoring 'max-workers' setting - not supported by running QEMU");
476 }
477 }
478}
479
c5983223
DM
480sub archive_pbs {
481 my ($self, $task, $vmid) = @_;
482
1e3baf05 483 my $conffile = "$task->{tmpdir}/qemu-server.conf";
c05f7f3f 484 my $firewall = "$task->{tmpdir}/qemu-server.fw";
1e3baf05
DM
485
486 my $opts = $self->{vzdump}->{opts};
c5983223
DM
487 my $scfg = $opts->{scfg};
488
489 my $starttime = time();
490
c5983223 491 my $fingerprint = $scfg->{fingerprint};
fbec3f89 492 my $repo = PVE::PBSClient::get_repository($scfg);
c5983223 493 my $password = PVE::Storage::PBSPlugin::pbs_get_password($scfg, $opts->{storage});
ece74030 494 my $keyfile = PVE::Storage::PBSPlugin::pbs_encryption_key_file_name($scfg, $opts->{storage});
9bf522bc 495 my $master_keyfile = PVE::Storage::PBSPlugin::pbs_master_pubkey_file_name($scfg, $opts->{storage});
c5983223 496
d11e91d2 497 my $diskcount = scalar(@{$task->{disks}});
4ef13a7f
FG
498 # proxmox-backup-client can only handle raw files and block devs
499 # only use it (directly) for disk-less VMs
500 if (!$diskcount) {
c5983223 501 my @pathlist;
4ef13a7f 502 $self->loginfo("backup contains no disks");
c5983223
DM
503
504 local $ENV{PBS_PASSWORD} = $password;
77b24c62 505 local $ENV{PBS_FINGERPRINT} = $fingerprint if defined($fingerprint);
c5983223
DM
506 my $cmd = [
507 '/usr/bin/proxmox-backup-client',
508 'backup',
509 '--repository', $repo,
510 '--backup-type', 'vm',
511 '--backup-id', "$vmid",
512 '--backup-time', $task->{backup_time},
d11e91d2 513 ];
21a9ec2a
WB
514 if (defined(my $ns = $scfg->{namespace})) {
515 push @$cmd, '--ns', $ns;
516 }
c5983223
DM
517
518 push @$cmd, "qemu-server.conf:$conffile";
519 push @$cmd, "fw.conf:$firewall" if -e $firewall;
c5983223
DM
520
521 $self->loginfo("starting template backup");
522 $self->loginfo(join(' ', @$cmd));
523
524 $self->cmd($cmd);
525
526 return;
527 }
528
81dcd479
TL
529 # get list early so we die on unkown drive types before doing anything
530 my $devlist = _get_task_devlist($task);
c5983223 531
0b2f574b 532 $self->enforce_vm_running_for_backup($vmid);
65911545 533 $self->{qmeventd_fh} = PVE::QemuServer::register_qmeventd_handle($vmid);
c5983223 534
f6168f1a 535 my $backup_job_uuid;
c5983223
DM
536 eval {
537 $SIG{INT} = $SIG{TERM} = $SIG{QUIT} = $SIG{HUP} = $SIG{PIPE} = sub {
d11e91d2 538 die "interrupted by signal\n";
c5983223
DM
539 };
540
fb9f512c 541 my $qemu_support = eval { mon_cmd($vmid, "query-proxmox-support") };
2cfb0905
SR
542 my $err = $@;
543 if (!$qemu_support || $err) {
544 die "query-proxmox-support returned empty value\n" if !$err;
545 if ($err =~ m/The command query-proxmox-support has not been found/) {
546 die "PBS backups are not supported by the running QEMU version. Please make "
547 . "sure you've installed the latest version and the VM has been restarted.\n";
548 } else {
549 die "QMP command query-proxmox-support failed - $err\n";
550 }
fb9f512c
SR
551 }
552
9bf522bc
FG
553 if (!defined($qemu_support->{"pbs-masterkey"}) && -e $master_keyfile) {
554 $self->loginfo("WARNING: backup target is configured with master key, but running QEMU version does not support master keys.");
555 $self->loginfo("Please make sure you've installed the latest version and the VM has been restarted to use master key feature.");
556 $master_keyfile = undef; # skip rest of master key handling below
557 }
558
f9dde219
SR
559 $attach_tpmstate_drive->($self, $task, $vmid);
560
cb521f2d 561 my $fs_frozen = $self->qga_fs_freeze($task, $vmid);
c5983223 562
d11e91d2
TL
563 my $params = {
564 format => "pbs",
565 'backup-file' => $repo,
566 'backup-id' => "$vmid",
567 'backup-time' => $task->{backup_time},
568 password => $password,
569 devlist => $devlist,
570 'config-file' => $conffile,
c5983223 571 };
21a9ec2a 572 if (defined(my $ns = $scfg->{namespace})) {
0c9a94d2 573 $params->{'backup-ns'} = $ns;
21a9ec2a 574 }
4de4eefc 575
2790636a 576 $params->{speed} = $opts->{bwlimit}*1024 if $opts->{bwlimit};
4de4eefc
FE
577 add_backup_performance_options($params, $opts->{performance}, $qemu_support);
578
d11e91d2
TL
579 $params->{fingerprint} = $fingerprint if defined($fingerprint);
580 $params->{'firewall-file'} = $firewall if -e $firewall;
ece74030
WB
581 if (-e $keyfile) {
582 $self->loginfo("enabling encryption");
583 $params->{keyfile} = $keyfile;
584 $params->{encrypt} = JSON::true;
1629b483
FG
585 if (defined($master_keyfile)) {
586 if (-e $master_keyfile) {
587 $self->loginfo("enabling master key feature");
588 $params->{"master-keyfile"} = $master_keyfile;
589 } elsif ($scfg->{'master-pubkey'}) {
590 die "master public key configured but no key file found\n";
591 }
9bf522bc 592 }
ece74030 593 } else {
24e63281
FG
594 my $encryption_fp = $scfg->{'encryption-key'};
595 die "encryption configured ('$encryption_fp') but no encryption key file found!\n"
596 if $encryption_fp;
9bf522bc
FG
597 $self->loginfo("WARNING: backup target is configured with master key, but this backup is not encrypted - master key settings will be ignored!")
598 if defined($master_keyfile) && -e $master_keyfile;
ece74030
WB
599 $params->{encrypt} = JSON::false;
600 }
c5983223 601
4ef13a7f 602 my $is_template = PVE::QemuConfig->is_template($self->{vmlist}->{$vmid});
78179bda 603 $params->{'use-dirty-bitmap'} = JSON::true
962d4d64 604 if $qemu_support->{'pbs-dirty-bitmap'} && !$is_template;
fb9f512c 605
46b676c0 606 $params->{timeout} = 125; # give some time to connect to the backup server
f57666e9 607
d11e91d2 608 my $res = eval { mon_cmd($vmid, "backup", %$params) };
c5983223 609 my $qmperr = $@;
d11e91d2 610 $backup_job_uuid = $res->{UUID} if $res;
c5983223 611
1ece829a
TL
612 if ($fs_frozen) {
613 $self->qga_fs_thaw($vmid);
c5983223
DM
614 }
615
616 die $qmperr if $qmperr;
f6168f1a 617 die "got no uuid for backup task\n" if !defined($backup_job_uuid);
c5983223 618
f6168f1a 619 $self->loginfo("started backup task '$backup_job_uuid'");
c5983223 620
0b2f574b 621 $self->resume_vm_after_job_start($task, $vmid);
c5983223 622
3a44897f 623 my $stat = $query_backup_status_loop->($self, $vmid, $backup_job_uuid, $qemu_support);
2098f2ff 624 $task->{size} = $stat->{total};
c5983223
DM
625 };
626 my $err = $@;
c5983223
DM
627 if ($err) {
628 $self->logerr($err);
edae1718 629 $self->mon_backup_cancel($vmid);
ebce5239 630 $self->resume_vm_after_job_start($task, $vmid);
c5983223 631 }
0b2f574b 632 $self->restore_vm_power_state($vmid);
c5983223
DM
633
634 die $err if $err;
635}
636
02da0c65
TL
637my $fork_compressor_pipe = sub {
638 my ($self, $comp, $outfileno) = @_;
639
640 my @pipefd = POSIX::pipe();
641 my $cpid = fork();
642 die "unable to fork worker - $!" if !defined($cpid) || $cpid < 0;
643 if ($cpid == 0) {
644 eval {
645 POSIX::close($pipefd[1]);
646 # redirect STDIN
647 my $fd = fileno(STDIN);
648 close STDIN;
649 POSIX::close(0) if $fd != 0;
650 die "unable to redirect STDIN - $!"
651 if !open(STDIN, "<&", $pipefd[0]);
652
653 # redirect STDOUT
654 $fd = fileno(STDOUT);
655 close STDOUT;
656 POSIX::close (1) if $fd != 1;
657
658 die "unable to redirect STDOUT - $!"
659 if !open(STDOUT, ">&", $outfileno);
660
661 exec($comp);
662 die "fork compressor '$comp' failed\n";
663 };
664 if (my $err = $@) {
665 $self->logerr($err);
666 POSIX::_exit(1);
667 }
668 POSIX::_exit(0);
669 kill(-9, $$);
670 } else {
671 POSIX::close($pipefd[0]);
672 $outfileno = $pipefd[1];
673 }
674
675 return ($cpid, $outfileno);
676};
677
c5983223
DM
678sub archive_vma {
679 my ($self, $task, $vmid, $filename, $comp) = @_;
680
681 my $conffile = "$task->{tmpdir}/qemu-server.conf";
682 my $firewall = "$task->{tmpdir}/qemu-server.fw";
683
684 my $opts = $self->{vzdump}->{opts};
685
686 my $starttime = time();
1e3baf05 687
91bd6c90
DM
688 my $speed = 0;
689 if ($opts->{bwlimit}) {
874a096e 690 $speed = $opts->{bwlimit}*1024;
91bd6c90 691 }
1e3baf05 692
c82935e9 693 my $diskcount = scalar(@{$task->{disks}});
ffda963f 694 if (PVE::QemuConfig->is_template($self->{vmlist}->{$vmid}) || !$diskcount) {
23b4120b
DM
695 my @pathlist;
696 foreach my $di (@{$task->{disks}}) {
697 if ($di->{type} eq 'block' || $di->{type} eq 'file') {
698 push @pathlist, "$di->{qmdevice}=$di->{path}";
699 } else {
700 die "implement me";
701 }
702 }
703
c82935e9
DM
704 if (!$diskcount) {
705 $self->loginfo("backup contains no disks");
706 }
707
23b4120b
DM
708 my $outcmd;
709 if ($comp) {
874a096e 710 $outcmd = "exec:$comp";
23b4120b 711 } else {
874a096e 712 $outcmd = "exec:cat";
23b4120b
DM
713 }
714
a2fab11a 715 $outcmd .= " > $filename" if !$opts->{stdout};
23b4120b 716
c05f7f3f
WL
717 my $cmd = ['/usr/bin/vma', 'create', '-v', '-c', $conffile];
718 push @$cmd, '-c', $firewall if -e $firewall;
719 push @$cmd, $outcmd, @pathlist;
23b4120b
DM
720
721 $self->loginfo("starting template backup");
722 $self->loginfo(join(' ', @$cmd));
723
724 if ($opts->{stdout}) {
6bb12239 725 $self->cmd($cmd, output => ">&" . fileno($opts->{stdout}));
23b4120b
DM
726 } else {
727 $self->cmd($cmd);
728 }
729
730 return;
731 }
732
81dcd479 733 my $devlist = _get_task_devlist($task);
1e3baf05 734
0b2f574b 735 $self->enforce_vm_running_for_backup($vmid);
65911545 736 $self->{qmeventd_fh} = PVE::QemuServer::register_qmeventd_handle($vmid);
91bd6c90
DM
737
738 my $cpid;
d2cc2cbe
DM
739 my $backup_job_uuid;
740
91bd6c90
DM
741 eval {
742 $SIG{INT} = $SIG{TERM} = $SIG{QUIT} = $SIG{HUP} = $SIG{PIPE} = sub {
d11e91d2 743 die "interrupted by signal\n";
91bd6c90
DM
744 };
745
4de4eefc
FE
746 # Currently, failing to determine Proxmox support is not critical here, because it's only
747 # used for performance settings like 'max-workers'.
748 my $qemu_support = eval { mon_cmd($vmid, "query-proxmox-support") };
749 log_warn($@) if $@;
750
f9dde219
SR
751 $attach_tpmstate_drive->($self, $task, $vmid);
752
91bd6c90
DM
753 my $outfh;
754 if ($opts->{stdout}) {
755 $outfh = $opts->{stdout};
756 } else {
757 $outfh = IO::File->new($filename, "w") ||
758 die "unable to open file '$filename' - $!\n";
759 }
02da0c65 760 my $outfileno = fileno($outfh);
91bd6c90 761
91bd6c90 762 if ($comp) {
02da0c65 763 ($cpid, $outfileno) = $fork_compressor_pipe->($self, $comp, $outfileno);
91bd6c90
DM
764 }
765
e8705fc5
TL
766 my $qmpclient = PVE::QMPClient->new();
767 my $backup_cb = sub {
768 my ($vmid, $resp) = @_;
769 $backup_job_uuid = $resp->{return}->{UUID};
770 };
771 my $add_fd_cb = sub {
91bd6c90
DM
772 my ($vmid, $resp) = @_;
773
c05f7f3f
WL
774 my $params = {
775 'backup-file' => "/dev/fdname/backup",
776 speed => $speed,
777 'config-file' => $conffile,
778 devlist => $devlist
779 };
c05f7f3f 780 $params->{'firewall-file'} = $firewall if -e $firewall;
4de4eefc 781 add_backup_performance_options($params, $opts->{performance}, $qemu_support);
d11e91d2 782
c05f7f3f 783 $qmpclient->queue_cmd($vmid, $backup_cb, 'backup', %$params);
91bd6c90
DM
784 };
785
d11e91d2 786 $qmpclient->queue_cmd($vmid, $add_fd_cb, 'getfd', fd => $outfileno, fdname => "backup");
ab6a9a0c 787
cb521f2d 788 my $fs_frozen = $self->qga_fs_freeze($task, $vmid);
874a096e 789
c5983223 790 eval { $qmpclient->queue_execute(30) };
f0f30448 791 my $qmperr = $@;
91bd6c90 792
1ece829a
TL
793 if ($fs_frozen) {
794 $self->qga_fs_thaw($vmid);
ab6a9a0c 795 }
d11e91d2 796
f0f30448 797 die $qmperr if $qmperr;
874a096e 798 die $qmpclient->{errors}->{$vmid} if $qmpclient->{errors}->{$vmid};
91bd6c90
DM
799
800 if ($cpid) {
874a096e 801 POSIX::close($outfileno) == 0 ||
91bd6c90
DM
802 die "close output file handle failed\n";
803 }
804
d2cc2cbe 805 die "got no uuid for backup task\n" if !defined($backup_job_uuid);
91bd6c90 806
d2cc2cbe 807 $self->loginfo("started backup task '$backup_job_uuid'");
91bd6c90 808
0b2f574b 809 $self->resume_vm_after_job_start($task, $vmid);
91bd6c90 810
d2cc2cbe 811 $query_backup_status_loop->($self, $vmid, $backup_job_uuid);
91bd6c90
DM
812 };
813 my $err = $@;
19599cd9 814 if ($err) {
60635a57 815 $self->logerr($err);
edae1718 816 $self->mon_backup_cancel($vmid);
ebce5239 817 $self->resume_vm_after_job_start($task, $vmid);
19599cd9
DM
818 }
819
0b2f574b 820 $self->restore_vm_power_state($vmid);
91bd6c90
DM
821
822 if ($err) {
874a096e
DM
823 if ($cpid) {
824 kill(9, $cpid);
91bd6c90
DM
825 waitpid($cpid, 0);
826 }
827 die $err;
828 }
829
830 if ($cpid && (waitpid($cpid, 0) > 0)) {
831 my $stat = $?;
832 my $ec = $stat >> 8;
833 my $signal = $stat & 127;
834 if ($ec || $signal) {
874a096e 835 die "$comp failed - wrong exit status $ec" .
91bd6c90
DM
836 ($signal ? " (signal $signal)\n" : "\n");
837 }
838 }
839}
840
81dcd479
TL
841sub _get_task_devlist {
842 my ($task) = @_;
843
844 my $devlist = '';
845 foreach my $di (@{$task->{disks}}) {
846 if ($di->{type} eq 'block' || $di->{type} eq 'file') {
847 $devlist .= ',' if $devlist;
848 $devlist .= $di->{qmdevice};
849 } else {
850 die "implement me (type '$di->{type}')";
851 }
852 }
853 return $devlist;
854}
855
1ece829a 856sub qga_fs_freeze {
cb521f2d 857 my ($self, $task, $vmid) = @_;
b08c37c3 858 return if !$self->{vmlist}->{$vmid}->{agent} || $task->{mode} eq 'stop' || !$self->{vm_was_running} || $self->{vm_was_paused};
1ece829a
TL
859
860 if (!PVE::QemuServer::qga_check_running($vmid, 1)) {
861 $self->loginfo("skipping guest-agent 'fs-freeze', agent configured but not running?");
862 return;
863 }
864
93e21fd2
CH
865 my $freeze = PVE::QemuServer::get_qga_key($self->{vmlist}->{$vmid}, 'freeze-fs-on-backup') // 1;
866 if (!$freeze) {
867 $self->loginfo("skipping guest-agent 'fs-freeze', disabled in VM options");
868 return;
869 }
870
1ece829a
TL
871 $self->loginfo("issuing guest-agent 'fs-freeze' command");
872 eval { mon_cmd($vmid, "guest-fsfreeze-freeze") };
873 $self->logerr($@) if $@;
874
875 return 1; # even on mon command error, ensure we always thaw again
876}
877
878# only call if fs_freeze return 1
879sub qga_fs_thaw {
880 my ($self, $vmid) = @_;
881
882 $self->loginfo("issuing guest-agent 'fs-thaw' command");
883 eval { mon_cmd($vmid, "guest-fsfreeze-thaw") };
884 $self->logerr($@) if $@;
885}
886
0b2f574b
TL
887# we need a running QEMU/KVM process for backup, starts a paused (prelaunch)
888# one if VM isn't already running
889sub enforce_vm_running_for_backup {
890 my ($self, $vmid) = @_;
891
892 if (PVE::QemuServer::check_running($vmid)) {
893 $self->{vm_was_running} = 1;
894 return;
895 }
896
897 eval {
898 $self->loginfo("starting kvm to execute backup task");
899 # start with skiplock
0c498cca
FG
900 my $params = {
901 skiplock => 1,
4ef13a7f 902 skiptemplate => 1,
0c498cca
FG
903 paused => 1,
904 };
905 PVE::QemuServer::vm_start($self->{storecfg}, $vmid, $params);
0b2f574b
TL
906 };
907 die $@ if $@;
908}
909
ebce5239 910# resume VM again once in a clear state (stop mode backup of running VM)
0b2f574b
TL
911sub resume_vm_after_job_start {
912 my ($self, $task, $vmid) = @_;
913
b08c37c3 914 return if !$self->{vm_was_running} || $self->{vm_was_paused};
0b2f574b
TL
915
916 if (my $stoptime = $task->{vmstoptime}) {
917 my $delay = time() - $task->{vmstoptime};
918 $task->{vmstoptime} = undef; # avoid printing 'online after ..' twice
919 $self->loginfo("resuming VM again after $delay seconds");
920 } else {
921 $self->loginfo("resuming VM again");
922 }
6a558901 923 mon_cmd($vmid, 'cont', timeout => 45);
0b2f574b
TL
924}
925
926# stop again if VM was not running before
927sub restore_vm_power_state {
928 my ($self, $vmid) = @_;
929
930 # we always let VMs keep running
931 return if $self->{vm_was_running};
932
933 eval {
934 my $resp = mon_cmd($vmid, 'query-status');
935 my $status = $resp && $resp->{status} ? $resp->{status} : 'unknown';
936 if ($status eq 'prelaunch') {
937 $self->loginfo("stopping kvm after backup task");
938 PVE::QemuServer::vm_stop($self->{storecfg}, $vmid, 1);
939 } else {
940 $self->loginfo("kvm status changed after backup ('$status') - keep VM running");
941 }
942 };
943 warn $@ if $@;
944}
945
946sub mon_backup_cancel {
947 my ($self, $vmid) = @_;
948
949 $self->loginfo("aborting backup job");
950 eval { mon_cmd($vmid, 'backup-cancel') };
951 $self->logerr($@) if $@;
952}
953
91bd6c90
DM
954sub snapshot {
955 my ($self, $task, $vmid) = @_;
956
957 # nothing to do
1e3baf05
DM
958}
959
960sub cleanup {
961 my ($self, $task, $vmid) = @_;
962
f9dde219
SR
963 $detach_tpmstate_drive->($task, $vmid);
964
4ac842cb
SR
965 if ($self->{qmeventd_fh}) {
966 close($self->{qmeventd_fh});
967 }
1e3baf05
DM
968}
969
9701;