1 use anyhow
::{bail, format_err, Error}
;
3 use hyper
::header
::{HeaderValue, UPGRADE}
;
4 use hyper
::http
::request
::Parts
;
5 use hyper
::{Body, Response, StatusCode}
;
6 use serde_json
::{json, Value}
;
8 use proxmox
::{sortable, identity, list_subdirs_api_method}
;
9 use proxmox
::api
::{ApiResponseFuture, ApiHandler, ApiMethod, Router, RpcEnvironment, Permission}
;
10 use proxmox
::api
::router
::SubdirMap
;
11 use proxmox
::api
::schema
::*;
14 use crate::server
::{WorkerTask, H2Service}
;
16 use crate::api2
::types
::*;
17 use crate::config
::acl
::PRIV_DATASTORE_BACKUP
;
18 use crate::config
::cached_user_info
::CachedUserInfo
;
19 use crate::tools
::fs
::lock_dir_noblock_shared
;
27 pub const ROUTER
: Router
= Router
::new()
28 .upgrade(&API_METHOD_UPGRADE_BACKUP
);
31 pub const API_METHOD_UPGRADE_BACKUP
: ApiMethod
= ApiMethod
::new(
32 &ApiHandler
::AsyncHttp(&upgrade_to_backup_protocol
),
34 concat
!("Upgraded to backup protocol ('", PROXMOX_BACKUP_PROTOCOL_ID_V1
!(), "')."),
36 ("store", false, &DATASTORE_SCHEMA
),
37 ("backup-type", false, &BACKUP_TYPE_SCHEMA
),
38 ("backup-id", false, &BACKUP_ID_SCHEMA
),
39 ("backup-time", false, &BACKUP_TIME_SCHEMA
),
40 ("debug", true, &BooleanSchema
::new("Enable verbose debug logging.").schema()),
41 ("benchmark", true, &BooleanSchema
::new("Job is a benchmark (do not keep data).").schema()),
45 // Note: parameter 'store' is no uri parameter, so we need to test inside function body
46 Some("The user needs Datastore.Backup privilege on /datastore/{store} and needs to own the backup group."),
50 fn upgrade_to_backup_protocol(
55 rpcenv
: Box
<dyn RpcEnvironment
>,
56 ) -> ApiResponseFuture
{
59 let debug
= param
["debug"].as_bool().unwrap_or(false);
60 let benchmark
= param
["benchmark"].as_bool().unwrap_or(false);
62 let userid
: Userid
= rpcenv
.get_user().unwrap().parse()?
;
64 let store
= tools
::required_string_param(¶m
, "store")?
.to_owned();
66 let user_info
= CachedUserInfo
::new()?
;
67 user_info
.check_privs(&userid
, &["datastore", &store
], PRIV_DATASTORE_BACKUP
, false)?
;
69 let datastore
= DataStore
::lookup_datastore(&store
)?
;
71 let backup_type
= tools
::required_string_param(¶m
, "backup-type")?
;
72 let backup_id
= tools
::required_string_param(¶m
, "backup-id")?
;
73 let backup_time
= tools
::required_integer_param(¶m
, "backup-time")?
;
78 .ok_or_else(|| format_err
!("missing Upgrade header"))?
81 if protocols
!= PROXMOX_BACKUP_PROTOCOL_ID_V1
!() {
82 bail
!("invalid protocol name");
85 if parts
.version
>= http
::version
::Version
::HTTP_2
{
86 bail
!("unexpected http version '{:?}' (expected version < 2)", parts
.version
);
89 let worker_id
= format
!("{}_{}_{}", store
, backup_type
, backup_id
);
91 let env_type
= rpcenv
.env_type();
93 let backup_group
= BackupGroup
::new(backup_type
, backup_id
);
95 let worker_type
= if backup_type
== "host" && backup_id
== "benchmark" {
97 bail
!("unable to run benchmark without --benchmark flags");
102 bail
!("benchmark flags is only allowed on 'host/benchmark'");
107 // lock backup group to only allow one backup per group at a time
108 let (owner
, _group_guard
) = datastore
.create_locked_backup_group(&backup_group
, &userid
)?
;
111 if owner
!= userid
&& worker_type
!= "benchmark" {
112 // only the owner is allowed to create additional snapshots
113 bail
!("backup owner check failed ({} != {})", userid
, owner
);
117 let info
= BackupInfo
::last_backup(&datastore
.base_path(), &backup_group
, true).unwrap_or(None
);
118 if let Some(info
) = info
{
119 let (manifest
, _
) = datastore
.load_manifest(&info
.backup_dir
)?
;
120 let verify
= manifest
.unprotected
["verify_state"].clone();
121 match serde_json
::from_value
::<SnapshotVerifyState
>(verify
) {
124 VerifyState
::Ok
=> Some(info
),
125 VerifyState
::Failed
=> None
,
129 // no verify state found, treat as valid
138 let backup_dir
= BackupDir
::with_group(backup_group
.clone(), backup_time
)?
;
140 let _last_guard
= if let Some(last
) = &last_backup
{
141 if backup_dir
.backup_time() <= last
.backup_dir
.backup_time() {
142 bail
!("backup timestamp is older than last backup.");
145 // lock last snapshot to prevent forgetting/pruning it during backup
146 let full_path
= datastore
.snapshot_path(&last
.backup_dir
);
147 Some(lock_dir_noblock_shared(&full_path
, "snapshot", "base snapshot is already locked by another operation")?
)
152 let (path
, is_new
, _snap_guard
) = datastore
.create_locked_backup_dir(&backup_dir
)?
;
153 if !is_new { bail!("backup directory already exists."); }
156 WorkerTask
::spawn(worker_type
, Some(worker_id
), userid
.clone(), true, move |worker
| {
157 let mut env
= BackupEnvironment
::new(
158 env_type
, userid
, worker
.clone(), datastore
, backup_dir
);
161 env
.last_backup
= last_backup
;
163 env
.log(format
!("starting new {} on datastore '{}': {:?}", worker_type
, store
, path
));
165 let service
= H2Service
::new(env
.clone(), worker
.clone(), &BACKUP_API_ROUTER
, debug
);
167 let abort_future
= worker
.abort_future();
169 let env2
= env
.clone();
171 let mut req_fut
= req_body
173 .map_err(Error
::from
)
174 .and_then(move |conn
| {
175 env2
.debug("protocol upgrade done");
177 let mut http
= hyper
::server
::conn
::Http
::new();
178 http
.http2_only(true);
179 // increase window size: todo - find optiomal size
180 let window_size
= 32*1024*1024; // max = (1 << 31) - 2
181 http
.http2_initial_stream_window_size(window_size
);
182 http
.http2_initial_connection_window_size(window_size
);
183 http
.http2_max_frame_size(4*1024*1024);
185 http
.serve_connection(conn
, service
)
186 .map_err(Error
::from
)
188 let mut abort_future
= abort_future
189 .map(|_
| Err(format_err
!("task aborted")));
192 // keep flock until task ends
193 let _group_guard
= _group_guard
;
194 let _snap_guard
= _snap_guard
;
195 let _last_guard
= _last_guard
;
198 req
= req_fut
=> req
,
199 abrt
= abort_future
=> abrt
,
202 env
.log("benchmark finished successfully");
203 tools
::runtime
::block_in_place(|| env
.remove_backup())?
;
206 match (res
, env
.ensure_finished()) {
208 env
.log("backup finished successfully");
211 (Err(err
), Ok(())) => {
212 // ignore errors after finish
213 env
.log(format
!("backup had errors but finished: {}", err
));
216 (Ok(_
), Err(err
)) => {
217 env
.log(format
!("backup ended and finish failed: {}", err
));
218 env
.log("removing unfinished backup");
219 env
.remove_backup()?
;
222 (Err(err
), Err(_
)) => {
223 env
.log(format
!("backup failed: {}", err
));
224 env
.log("removing failed backup");
225 tools
::runtime
::block_in_place(|| env
.remove_backup())?
;
232 let response
= Response
::builder()
233 .status(StatusCode
::SWITCHING_PROTOCOLS
)
234 .header(UPGRADE
, HeaderValue
::from_static(PROXMOX_BACKUP_PROTOCOL_ID_V1
!()))
235 .body(Body
::empty())?
;
241 pub const BACKUP_API_SUBDIRS
: SubdirMap
= &[
243 "blob", &Router
::new()
244 .upload(&API_METHOD_UPLOAD_BLOB
)
247 "dynamic_chunk", &Router
::new()
248 .upload(&API_METHOD_UPLOAD_DYNAMIC_CHUNK
)
251 "dynamic_close", &Router
::new()
252 .post(&API_METHOD_CLOSE_DYNAMIC_INDEX
)
255 "dynamic_index", &Router
::new()
256 .post(&API_METHOD_CREATE_DYNAMIC_INDEX
)
257 .put(&API_METHOD_DYNAMIC_APPEND
)
260 "finish", &Router
::new()
263 &ApiHandler
::Sync(&finish_backup
),
264 &ObjectSchema
::new("Mark backup as finished.", &[])
269 "fixed_chunk", &Router
::new()
270 .upload(&API_METHOD_UPLOAD_FIXED_CHUNK
)
273 "fixed_close", &Router
::new()
274 .post(&API_METHOD_CLOSE_FIXED_INDEX
)
277 "fixed_index", &Router
::new()
278 .post(&API_METHOD_CREATE_FIXED_INDEX
)
279 .put(&API_METHOD_FIXED_APPEND
)
282 "previous", &Router
::new()
283 .download(&API_METHOD_DOWNLOAD_PREVIOUS
)
286 "speedtest", &Router
::new()
287 .upload(&API_METHOD_UPLOAD_SPEEDTEST
)
291 pub const BACKUP_API_ROUTER
: Router
= Router
::new()
292 .get(&list_subdirs_api_method
!(BACKUP_API_SUBDIRS
))
293 .subdirs(BACKUP_API_SUBDIRS
);
296 pub const API_METHOD_CREATE_DYNAMIC_INDEX
: ApiMethod
= ApiMethod
::new(
297 &ApiHandler
::Sync(&create_dynamic_index
),
299 "Create dynamic chunk index file.",
301 ("archive-name", false, &crate::api2
::types
::BACKUP_ARCHIVE_NAME_SCHEMA
),
306 fn create_dynamic_index(
309 rpcenv
: &mut dyn RpcEnvironment
,
310 ) -> Result
<Value
, Error
> {
312 let env
: &BackupEnvironment
= rpcenv
.as_ref();
314 let name
= tools
::required_string_param(¶m
, "archive-name")?
.to_owned();
316 let archive_name
= name
.clone();
317 if !archive_name
.ends_with(".didx") {
318 bail
!("wrong archive extension: '{}'", archive_name
);
321 let mut path
= env
.backup_dir
.relative_path();
322 path
.push(archive_name
);
324 let index
= env
.datastore
.create_dynamic_writer(&path
)?
;
325 let wid
= env
.register_dynamic_writer(index
, name
)?
;
327 env
.log(format
!("created new dynamic index {} ({:?})", wid
, path
));
333 pub const API_METHOD_CREATE_FIXED_INDEX
: ApiMethod
= ApiMethod
::new(
334 &ApiHandler
::Sync(&create_fixed_index
),
336 "Create fixed chunk index file.",
338 ("archive-name", false, &crate::api2
::types
::BACKUP_ARCHIVE_NAME_SCHEMA
),
339 ("size", false, &IntegerSchema
::new("File size.")
343 ("reuse-csum", true, &StringSchema
::new("If set, compare last backup's \
344 csum and reuse index for incremental backup if it matches.").schema()),
349 fn create_fixed_index(
352 rpcenv
: &mut dyn RpcEnvironment
,
353 ) -> Result
<Value
, Error
> {
355 let env
: &BackupEnvironment
= rpcenv
.as_ref();
357 let name
= tools
::required_string_param(¶m
, "archive-name")?
.to_owned();
358 let size
= tools
::required_integer_param(¶m
, "size")?
as usize;
359 let reuse_csum
= param
["reuse-csum"].as_str();
361 let archive_name
= name
.clone();
362 if !archive_name
.ends_with(".fidx") {
363 bail
!("wrong archive extension: '{}'", archive_name
);
366 let mut path
= env
.backup_dir
.relative_path();
367 path
.push(&archive_name
);
369 let chunk_size
= 4096*1024; // todo: ??
371 // do incremental backup if csum is set
372 let mut reader
= None
;
373 let mut incremental
= false;
374 if let Some(csum
) = reuse_csum
{
376 let last_backup
= match &env
.last_backup
{
379 bail
!("cannot reuse index - no valid previous backup exists");
383 let mut last_path
= last_backup
.backup_dir
.relative_path();
384 last_path
.push(&archive_name
);
386 let index
= match env
.datastore
.open_fixed_reader(last_path
) {
389 bail
!("cannot reuse index - no previous backup exists for archive");
393 let (old_csum
, _
) = index
.compute_csum();
394 let old_csum
= proxmox
::tools
::digest_to_hex(&old_csum
);
395 if old_csum
!= csum
{
396 bail
!("expected csum ({}) doesn't match last backup's ({}), cannot do incremental backup",
400 reader
= Some(index
);
403 let mut writer
= env
.datastore
.create_fixed_writer(&path
, size
, chunk_size
)?
;
405 if let Some(reader
) = reader
{
406 writer
.clone_data_from(&reader
)?
;
409 let wid
= env
.register_fixed_writer(writer
, name
, size
, chunk_size
as u32, incremental
)?
;
411 env
.log(format
!("created new fixed index {} ({:?})", wid
, path
));
417 pub const API_METHOD_DYNAMIC_APPEND
: ApiMethod
= ApiMethod
::new(
418 &ApiHandler
::Sync(&dynamic_append
),
420 "Append chunk to dynamic index writer.",
425 &IntegerSchema
::new("Dynamic writer ID.")
433 &ArraySchema
::new("Chunk digest list.", &CHUNK_DIGEST_SCHEMA
).schema()
439 "Chunk offset list.",
440 &IntegerSchema
::new("Corresponding chunk offsets.")
452 rpcenv
: &mut dyn RpcEnvironment
,
453 ) -> Result
<Value
, Error
> {
455 let wid
= tools
::required_integer_param(¶m
, "wid")?
as usize;
456 let digest_list
= tools
::required_array_param(¶m
, "digest-list")?
;
457 let offset_list
= tools
::required_array_param(¶m
, "offset-list")?
;
459 if offset_list
.len() != digest_list
.len() {
460 bail
!("offset list has wrong length ({} != {})", offset_list
.len(), digest_list
.len());
463 let env
: &BackupEnvironment
= rpcenv
.as_ref();
465 env
.debug(format
!("dynamic_append {} chunks", digest_list
.len()));
467 for (i
, item
) in digest_list
.iter().enumerate() {
468 let digest_str
= item
.as_str().unwrap();
469 let digest
= proxmox
::tools
::hex_to_digest(digest_str
)?
;
470 let offset
= offset_list
[i
].as_u64().unwrap();
471 let size
= env
.lookup_chunk(&digest
).ok_or_else(|| format_err
!("no such chunk {}", digest_str
))?
;
473 env
.dynamic_writer_append_chunk(wid
, offset
, size
, &digest
)?
;
475 env
.debug(format
!("successfully added chunk {} to dynamic index {} (offset {}, size {})", digest_str
, wid
, offset
, size
));
482 pub const API_METHOD_FIXED_APPEND
: ApiMethod
= ApiMethod
::new(
483 &ApiHandler
::Sync(&fixed_append
),
485 "Append chunk to fixed index writer.",
490 &IntegerSchema
::new("Fixed writer ID.")
498 &ArraySchema
::new("Chunk digest list.", &CHUNK_DIGEST_SCHEMA
).schema()
504 "Chunk offset list.",
505 &IntegerSchema
::new("Corresponding chunk offsets.")
517 rpcenv
: &mut dyn RpcEnvironment
,
518 ) -> Result
<Value
, Error
> {
520 let wid
= tools
::required_integer_param(¶m
, "wid")?
as usize;
521 let digest_list
= tools
::required_array_param(¶m
, "digest-list")?
;
522 let offset_list
= tools
::required_array_param(¶m
, "offset-list")?
;
524 if offset_list
.len() != digest_list
.len() {
525 bail
!("offset list has wrong length ({} != {})", offset_list
.len(), digest_list
.len());
528 let env
: &BackupEnvironment
= rpcenv
.as_ref();
530 env
.debug(format
!("fixed_append {} chunks", digest_list
.len()));
532 for (i
, item
) in digest_list
.iter().enumerate() {
533 let digest_str
= item
.as_str().unwrap();
534 let digest
= proxmox
::tools
::hex_to_digest(digest_str
)?
;
535 let offset
= offset_list
[i
].as_u64().unwrap();
536 let size
= env
.lookup_chunk(&digest
).ok_or_else(|| format_err
!("no such chunk {}", digest_str
))?
;
538 env
.fixed_writer_append_chunk(wid
, offset
, size
, &digest
)?
;
540 env
.debug(format
!("successfully added chunk {} to fixed index {} (offset {}, size {})", digest_str
, wid
, offset
, size
));
547 pub const API_METHOD_CLOSE_DYNAMIC_INDEX
: ApiMethod
= ApiMethod
::new(
548 &ApiHandler
::Sync(&close_dynamic_index
),
550 "Close dynamic index writer.",
555 &IntegerSchema
::new("Dynamic writer ID.")
563 &IntegerSchema
::new("Chunk count. This is used to verify that the server got all chunks.")
570 &IntegerSchema
::new("File size. This is used to verify that the server got all data.")
574 ("csum", false, &StringSchema
::new("Digest list checksum.").schema()),
579 fn close_dynamic_index (
582 rpcenv
: &mut dyn RpcEnvironment
,
583 ) -> Result
<Value
, Error
> {
585 let wid
= tools
::required_integer_param(¶m
, "wid")?
as usize;
586 let chunk_count
= tools
::required_integer_param(¶m
, "chunk-count")?
as u64;
587 let size
= tools
::required_integer_param(¶m
, "size")?
as u64;
588 let csum_str
= tools
::required_string_param(¶m
, "csum")?
;
589 let csum
= proxmox
::tools
::hex_to_digest(csum_str
)?
;
591 let env
: &BackupEnvironment
= rpcenv
.as_ref();
593 env
.dynamic_writer_close(wid
, chunk_count
, size
, csum
)?
;
595 env
.log(format
!("successfully closed dynamic index {}", wid
));
601 pub const API_METHOD_CLOSE_FIXED_INDEX
: ApiMethod
= ApiMethod
::new(
602 &ApiHandler
::Sync(&close_fixed_index
),
604 "Close fixed index writer.",
609 &IntegerSchema
::new("Fixed writer ID.")
617 &IntegerSchema
::new("Chunk count. This is used to verify that the server got all chunks. Ignored for incremental backups.")
624 &IntegerSchema
::new("File size. This is used to verify that the server got all data. Ignored for incremental backups.")
628 ("csum", false, &StringSchema
::new("Digest list checksum.").schema()),
633 fn close_fixed_index (
636 rpcenv
: &mut dyn RpcEnvironment
,
637 ) -> Result
<Value
, Error
> {
639 let wid
= tools
::required_integer_param(¶m
, "wid")?
as usize;
640 let chunk_count
= tools
::required_integer_param(¶m
, "chunk-count")?
as u64;
641 let size
= tools
::required_integer_param(¶m
, "size")?
as u64;
642 let csum_str
= tools
::required_string_param(¶m
, "csum")?
;
643 let csum
= proxmox
::tools
::hex_to_digest(csum_str
)?
;
645 let env
: &BackupEnvironment
= rpcenv
.as_ref();
647 env
.fixed_writer_close(wid
, chunk_count
, size
, csum
)?
;
649 env
.log(format
!("successfully closed fixed index {}", wid
));
657 rpcenv
: &mut dyn RpcEnvironment
,
658 ) -> Result
<Value
, Error
> {
660 let env
: &BackupEnvironment
= rpcenv
.as_ref();
662 env
.finish_backup()?
;
663 env
.log("successfully finished backup");
669 pub const API_METHOD_DOWNLOAD_PREVIOUS
: ApiMethod
= ApiMethod
::new(
670 &ApiHandler
::AsyncHttp(&download_previous
),
672 "Download archive from previous backup.",
674 ("archive-name", false, &crate::api2
::types
::BACKUP_ARCHIVE_NAME_SCHEMA
)
679 fn download_previous(
684 rpcenv
: Box
<dyn RpcEnvironment
>,
685 ) -> ApiResponseFuture
{
688 let env
: &BackupEnvironment
= rpcenv
.as_ref();
690 let archive_name
= tools
::required_string_param(¶m
, "archive-name")?
.to_owned();
692 let last_backup
= match &env
.last_backup
{
694 None
=> bail
!("no valid previous backup"),
697 let mut path
= env
.datastore
.snapshot_path(&last_backup
.backup_dir
);
698 path
.push(&archive_name
);
701 let index
: Option
<Box
<dyn IndexFile
>> = match archive_type(&archive_name
)?
{
702 ArchiveType
::FixedIndex
=> {
703 let index
= env
.datastore
.open_fixed_reader(&path
)?
;
704 Some(Box
::new(index
))
706 ArchiveType
::DynamicIndex
=> {
707 let index
= env
.datastore
.open_dynamic_reader(&path
)?
;
708 Some(Box
::new(index
))
712 if let Some(index
) = index
{
713 env
.log(format
!("register chunks in '{}' from previous backup.", archive_name
));
715 for pos
in 0..index
.index_count() {
716 let info
= index
.chunk_info(pos
).unwrap();
717 let size
= info
.range
.end
- info
.range
.start
;
718 env
.register_chunk(info
.digest
, size
as u32)?
;
723 env
.log(format
!("download '{}' from previous backup.", archive_name
));
724 crate::api2
::helpers
::create_download_response(path
).await