1 // Copyright (C) The Arvados Authors. All rights reserved.
3 // SPDX-License-Identifier: AGPL-3.0
11 "git.arvados.org/arvados.git/lib/dispatchcloud/container"
12 "git.arvados.org/arvados.git/sdk/go/arvados"
13 "github.com/sirupsen/logrus"
16 var quietAfter503 = time.Minute
18 func (sch *Scheduler) runQueue() {
19 running := sch.pool.Running()
20 unalloc := sch.pool.Unallocated()
22 unsorted, _ := sch.queue.Entries()
23 sorted := make([]container.QueueEnt, 0, len(unsorted))
24 for _, ent := range unsorted {
25 sorted = append(sorted, ent)
27 sort.Slice(sorted, func(i, j int) bool {
28 _, irunning := running[sorted[i].Container.UUID]
29 _, jrunning := running[sorted[j].Container.UUID]
30 if irunning != jrunning {
31 // Ensure the "tryrun" loop (see below) sees
32 // already-scheduled containers first, to
33 // ensure existing supervisor containers are
34 // properly counted before we decide whether
35 // we have room for new ones.
38 ilocked := sorted[i].Container.State == arvados.ContainerStateLocked
39 jlocked := sorted[j].Container.State == arvados.ContainerStateLocked
40 if ilocked != jlocked {
41 // Give precedence to containers that we have
42 // already locked, even if higher-priority
43 // containers have since arrived in the
44 // queue. This avoids undesirable queue churn
45 // effects including extra lock/unlock cycles
46 // and bringing up new instances and quickly
47 // shutting them down to make room for
48 // different instance sizes.
50 } else if pi, pj := sorted[i].Container.Priority, sorted[j].Container.Priority; pi != pj {
53 // When containers have identical priority,
54 // start them in the order we first noticed
55 // them. This avoids extra lock/unlock cycles
56 // when we unlock the containers that don't
57 // fit in the available pool.
58 return sorted[i].FirstSeenAt.Before(sorted[j].FirstSeenAt)
62 if t := sch.client.Last503(); t.After(sch.last503time) {
63 // API has sent an HTTP 503 response since last time
64 // we checked. Use current #containers - 1 as
65 // maxConcurrency, i.e., try to stay just below the
66 // level where we see 503s.
68 if newlimit := len(running) - 1; newlimit < 1 {
69 sch.maxConcurrency = 1
71 sch.maxConcurrency = newlimit
73 } else if sch.maxConcurrency > 0 && time.Since(sch.last503time) > quietAfter503 {
74 // If we haven't seen any 503 errors lately, raise
75 // limit to ~10% beyond the current workload.
77 // As we use the added 10% to schedule more
78 // containers, len(running) will increase and we'll
79 // push the limit up further. Soon enough,
80 // maxConcurrency will get high enough to schedule the
81 // entire queue, hit pool quota, or get 503s again.
82 max := len(running)*11/10 + 1
83 if sch.maxConcurrency < max {
84 sch.maxConcurrency = max
87 if sch.last503time.IsZero() {
88 sch.mLast503Time.Set(0)
90 sch.mLast503Time.Set(float64(sch.last503time.Unix()))
92 sch.mMaxContainerConcurrency.Set(float64(sch.maxConcurrency))
94 sch.logger.WithFields(logrus.Fields{
95 "Containers": len(sorted),
96 "Processes": len(running),
97 "maxConcurrency": sch.maxConcurrency,
100 dontstart := map[arvados.InstanceType]bool{}
101 var overquota []container.QueueEnt // entries that are unmappable because of worker pool quota
102 var overmaxsuper []container.QueueEnt // unmappable because max supervisors (these are not included in overquota)
103 var containerAllocatedWorkerBootingCount int
105 // trying is #containers running + #containers we're trying to
106 // start. We stop trying to start more containers if this
107 // reaches the dynamic maxConcurrency limit.
108 trying := len(running)
113 for i, ent := range sorted {
114 ctr, it := ent.Container, ent.InstanceType
115 logger := sch.logger.WithFields(logrus.Fields{
116 "ContainerUUID": ctr.UUID,
117 "InstanceType": it.Name,
119 if ctr.SchedulingParameters.Supervisor {
121 if sch.maxSupervisors > 0 && supervisors > sch.maxSupervisors {
122 overmaxsuper = append(overmaxsuper, sorted[i])
126 if _, running := running[ctr.UUID]; running || ctr.Priority < 1 {
130 case arvados.ContainerStateQueued:
131 if sch.maxConcurrency > 0 && trying >= sch.maxConcurrency {
132 logger.Tracef("not locking: already at maxConcurrency %d", sch.maxConcurrency)
136 if unalloc[it] < 1 && sch.pool.AtQuota() {
137 logger.Trace("not locking: AtQuota and no unalloc workers")
138 overquota = sorted[i:]
141 if sch.pool.KillContainer(ctr.UUID, "about to lock") {
142 logger.Info("not locking: crunch-run process from previous attempt has not exited")
145 go sch.lockContainer(logger, ctr.UUID)
147 case arvados.ContainerStateLocked:
148 if sch.maxConcurrency > 0 && trying >= sch.maxConcurrency {
149 logger.Tracef("not starting: already at maxConcurrency %d", sch.maxConcurrency)
155 } else if sch.pool.AtQuota() {
156 // Don't let lower-priority containers
157 // starve this one by using keeping
158 // idle workers alive on different
160 logger.Trace("overquota")
161 overquota = sorted[i:]
163 } else if sch.pool.Create(it) {
164 // Success. (Note pool.Create works
165 // asynchronously and does its own
166 // logging about the eventual outcome,
167 // so we don't need to.)
168 logger.Info("creating new instance")
170 // Failed despite not being at quota,
171 // e.g., cloud ops throttled. TODO:
172 // avoid getting starved here if
173 // instances of a specific type always
175 logger.Trace("pool declined to create new instance")
180 // We already tried & failed to start
181 // a higher-priority container on the
182 // same instance type. Don't let this
183 // one sneak in ahead of it.
184 } else if sch.pool.KillContainer(ctr.UUID, "about to start") {
185 logger.Info("not restarting yet: crunch-run process from previous attempt has not exited")
186 } else if sch.pool.StartContainer(it, ctr) {
187 logger.Trace("StartContainer => true")
190 logger.Trace("StartContainer => false")
191 containerAllocatedWorkerBootingCount += 1
197 sch.mContainersAllocatedNotStarted.Set(float64(containerAllocatedWorkerBootingCount))
198 sch.mContainersNotAllocatedOverQuota.Set(float64(len(overquota) + len(overmaxsuper)))
200 if len(overquota)+len(overmaxsuper) > 0 {
201 // Unlock any containers that are unmappable while
202 // we're at quota (but if they have already been
203 // scheduled and they're loading docker images etc.,
205 for _, ctr := range append(overmaxsuper, overquota...) {
207 _, toolate := running[ctr.UUID]
208 if ctr.State == arvados.ContainerStateLocked && !toolate {
209 logger := sch.logger.WithField("ContainerUUID", ctr.UUID)
210 logger.Info("unlock because pool capacity is used by higher priority containers")
211 err := sch.queue.Unlock(ctr.UUID)
213 logger.WithError(err).Warn("error unlocking")
218 if len(overquota) > 0 {
219 // Shut down idle workers that didn't get any
220 // containers mapped onto them before we hit quota.
221 for it, n := range unalloc {
225 sch.pool.Shutdown(it)
230 // Lock the given container. Should be called in a new goroutine.
231 func (sch *Scheduler) lockContainer(logger logrus.FieldLogger, uuid string) {
232 if !sch.uuidLock(uuid, "lock") {
235 defer sch.uuidUnlock(uuid)
236 if ctr, ok := sch.queue.Get(uuid); !ok || ctr.State != arvados.ContainerStateQueued {
237 // This happens if the container has been cancelled or
238 // locked since runQueue called sch.queue.Entries(),
239 // possibly by a lockContainer() call from a previous
240 // runQueue iteration. In any case, we will respond
241 // appropriately on the next runQueue iteration, which
242 // will have already been triggered by the queue
244 logger.WithField("State", ctr.State).Debug("container no longer queued by the time we decided to lock it, doing nothing")
247 err := sch.queue.Lock(uuid)
249 logger.WithError(err).Warn("error locking container")
252 logger.Debug("lock succeeded")
253 ctr, ok := sch.queue.Get(uuid)
255 logger.Error("(BUG?) container disappeared from queue after Lock succeeded")
256 } else if ctr.State != arvados.ContainerStateLocked {
257 logger.Warnf("(race?) container has state=%q after Lock succeeded", ctr.State)
261 // Acquire a non-blocking lock for specified UUID, returning true if
262 // successful. The op argument is used only for debug logs.
264 // If the lock is not available, uuidLock arranges to wake up the
265 // scheduler after a short delay, so it can retry whatever operation
266 // is trying to get the lock (if that operation is still worth doing).
268 // This mechanism helps avoid spamming the controller/database with
269 // concurrent updates for any single container, even when the
270 // scheduler loop is running frequently.
271 func (sch *Scheduler) uuidLock(uuid, op string) bool {
273 defer sch.mtx.Unlock()
274 logger := sch.logger.WithFields(logrus.Fields{
275 "ContainerUUID": uuid,
278 if op, locked := sch.uuidOp[uuid]; locked {
279 logger.Debugf("uuidLock not available, Op=%s in progress", op)
280 // Make sure the scheduler loop wakes up to retry.
281 sch.wakeup.Reset(time.Second / 4)
284 logger.Debug("uuidLock acquired")
285 sch.uuidOp[uuid] = op
289 func (sch *Scheduler) uuidUnlock(uuid string) {
291 defer sch.mtx.Unlock()
292 delete(sch.uuidOp, uuid)