X-Git-Url: https://git.arvados.org/arvados.git/blobdiff_plain/4e5342f47855cb76c22bdb9095c7e459701833bd..24bcfa0b87b87e4510fffe8a961a5d4a9fd34948:/services/api/test/unit/container_request_test.rb diff --git a/services/api/test/unit/container_request_test.rb b/services/api/test/unit/container_request_test.rb index d0def576c3..3b17574237 100644 --- a/services/api/test/unit/container_request_test.rb +++ b/services/api/test/unit/container_request_test.rb @@ -1,97 +1,43 @@ require 'test_helper' class ContainerRequestTest < ActiveSupport::TestCase - def check_illegal_modify c - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.command = ["echo", "bar"] - c.save! - end - - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.container_image = "img2" - c.save! - end - - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.cwd = "/tmp2" - c.save! - end - - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.environment = {"FOO" => "BAR"} - c.save! - end - - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.mounts = {"FOO" => "BAR"} - c.save! - end - - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.output_path = "/tmp3" - c.save! - end - - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.runtime_constraints = {"FOO" => "BAR"} - c.save! - end - - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.name = "baz" - c.save! - end - - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.description = "baz" - c.save! - end - + def create_minimal_req! attrs={} + defaults = { + command: ["echo", "foo"], + container_image: links(:docker_image_collection_tag).name, + cwd: "/tmp", + environment: {}, + mounts: {"/out" => {"kind" => "tmp", "capacity" => 1000000}}, + output_path: "/out", + runtime_constraints: {"vcpus" => 1, "ram" => 2}, + name: "foo", + description: "bar", + } + cr = ContainerRequest.create!(defaults.merge(attrs)) + cr.reload + return cr end - def check_bogus_states c - assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.state = nil - c.save! - end - + def check_bogus_states cr + [nil, "Flubber"].each do |state| assert_raises(ActiveRecord::RecordInvalid) do - c.reload - c.state = "Flubber" - c.save! + cr.state = state + cr.save! end + cr.reload + end end test "Container request create" do - set_user_from_auth :active_trustedclient - cr = ContainerRequest.new - cr.command = ["echo", "foo"] - cr.container_image = "img" - cr.cwd = "/tmp" - cr.environment = {} - cr.mounts = {"BAR" => "FOO"} - cr.output_path = "/tmpout" - cr.runtime_constraints = {} - cr.name = "foo" - cr.description = "bar" - cr.save! + set_user_from_auth :active + cr = create_minimal_req! assert_nil cr.container_uuid assert_nil cr.priority check_bogus_states cr - cr.reload + # Ensure we can modify all attributes cr.command = ["echo", "foo3"] cr.container_image = "img3" cr.cwd = "/tmp3" @@ -99,7 +45,7 @@ class ContainerRequestTest < ActiveSupport::TestCase cr.mounts = {"BAR" => "BAZ"} cr.output_path = "/tmp4" cr.priority = 2 - cr.runtime_constraints = {"X" => "Y"} + cr.runtime_constraints = {"vcpus" => 4} cr.name = "foo3" cr.description = "bar3" cr.save! @@ -107,21 +53,54 @@ class ContainerRequestTest < ActiveSupport::TestCase assert_nil cr.container_uuid end - test "Container request priority must be non-nil" do - set_user_from_auth :active_trustedclient - cr = ContainerRequest.new - cr.command = ["echo", "foo"] - cr.container_image = "img" - cr.cwd = "/tmp" - cr.environment = {} - cr.mounts = {"BAR" => "FOO"} - cr.output_path = "/tmpout" - cr.runtime_constraints = {} - cr.name = "foo" - cr.description = "bar" - cr.save! + [ + {"vcpus" => 1}, + {"vcpus" => 1, "ram" => nil}, + {"vcpus" => 0, "ram" => 123}, + {"vcpus" => "1", "ram" => "123"} + ].each do |invalid_constraints| + test "Create with #{invalid_constraints}" do + set_user_from_auth :active + assert_raises(ActiveRecord::RecordInvalid) do + cr = create_minimal_req!(state: "Committed", + priority: 1, + runtime_constraints: invalid_constraints) + cr.save! + end + end - cr.reload + test "Update with #{invalid_constraints}" do + set_user_from_auth :active + cr = create_minimal_req!(state: "Uncommitted", priority: 1) + cr.save! + assert_raises(ActiveRecord::RecordInvalid) do + cr = ContainerRequest.find_by_uuid cr.uuid + cr.update_attributes!(state: "Committed", + runtime_constraints: invalid_constraints) + end + end + end + + test "Update from fixture" do + set_user_from_auth :active + cr = ContainerRequest.find_by_uuid(container_requests(:running).uuid) + cr.update_attributes!(description: "New description") + assert_equal "New description", cr.description + end + + test "Update with valid runtime constraints" do + set_user_from_auth :active + cr = create_minimal_req!(state: "Uncommitted", priority: 1) + cr.save! + cr = ContainerRequest.find_by_uuid cr.uuid + cr.update_attributes!(state: "Committed", + runtime_constraints: {"vcpus" => 1, "ram" => 23}) + assert_not_nil cr.container_uuid + end + + test "Container request priority must be non-nil" do + set_user_from_auth :active + cr = create_minimal_req!(priority: nil) cr.state = "Committed" assert_raises(ActiveRecord::RecordInvalid) do cr.save! @@ -129,37 +108,28 @@ class ContainerRequestTest < ActiveSupport::TestCase end test "Container request commit" do - set_user_from_auth :active_trustedclient - cr = ContainerRequest.new - cr.command = ["echo", "foo"] - cr.container_image = "img" - cr.cwd = "/tmp" - cr.environment = {} - cr.mounts = {"BAR" => "FOO"} - cr.output_path = "/tmpout" - cr.priority = 1 - cr.runtime_constraints = {} - cr.name = "foo" - cr.description = "bar" - cr.save! + set_user_from_auth :active + cr = create_minimal_req!(runtime_constraints: {"vcpus" => 2, "ram" => 30}) - cr.reload assert_nil cr.container_uuid cr.reload cr.state = "Committed" + cr.priority = 1 cr.save! cr.reload + assert_not_nil cr.container_uuid c = Container.find_by_uuid cr.container_uuid + assert_not_nil c assert_equal ["echo", "foo"], c.command - assert_equal "img", c.container_image + assert_equal collections(:docker_image).portable_data_hash, c.container_image assert_equal "/tmp", c.cwd assert_equal({}, c.environment) - assert_equal({"BAR" => "FOO"}, c.mounts) - assert_equal "/tmpout", c.output_path - assert_equal({}, c.runtime_constraints) + assert_equal({"/out" => {"kind"=>"tmp", "capacity"=>1000000}}, c.mounts) + assert_equal "/out", c.output_path + assert_equal({"vcpus" => 2, "ram" => 30}, c.runtime_constraints) assert_equal 1, c.priority assert_raises(ActiveRecord::RecordInvalid) do @@ -174,181 +144,118 @@ class ContainerRequestTest < ActiveSupport::TestCase c.reload assert_equal 0, cr.priority assert_equal 0, c.priority - end test "Container request max priority" do - set_user_from_auth :active_trustedclient - cr = ContainerRequest.new - cr.state = "Committed" - cr.container_image = "img" - cr.command = ["foo", "bar"] - cr.output_path = "/tmp" - cr.cwd = "/tmp" - cr.priority = 5 - cr.save! + set_user_from_auth :active + cr = create_minimal_req!(priority: 5, state: "Committed") c = Container.find_by_uuid cr.container_uuid assert_equal 5, c.priority - cr2 = ContainerRequest.new - cr2.container_image = "img" - cr2.command = ["foo", "bar"] - cr2.output_path = "/tmp" - cr2.cwd = "/tmp" + cr2 = create_minimal_req! cr2.priority = 10 - cr2.save! - + cr2.state = "Committed" + cr2.container_uuid = cr.container_uuid act_as_system_user do - cr2.state = "Committed" - cr2.container_uuid = cr.container_uuid cr2.save! end + # cr and cr2 have priority 5 and 10, and are being satisfied by + # the same container c, so c's priority should be + # max(priority)=10. c.reload assert_equal 10, c.priority - cr2.reload - cr2.priority = 0 - cr2.save! + cr2.update_attributes!(priority: 0) c.reload assert_equal 5, c.priority - cr.reload - cr.priority = 0 - cr.save! + cr.update_attributes!(priority: 0) c.reload assert_equal 0, c.priority - end test "Independent container requests" do - set_user_from_auth :active_trustedclient - cr = ContainerRequest.new - cr.state = "Committed" - cr.container_image = "img" - cr.command = ["foo", "bar"] - cr.output_path = "/tmp" - cr.cwd = "/tmp" - cr.priority = 5 - cr.save! + set_user_from_auth :active + cr1 = create_minimal_req!(command: ["foo", "1"], priority: 5, state: "Committed") + cr2 = create_minimal_req!(command: ["foo", "2"], priority: 10, state: "Committed") - cr2 = ContainerRequest.new - cr2.state = "Committed" - cr2.container_image = "img" - cr2.command = ["foo", "bar"] - cr2.output_path = "/tmp" - cr2.cwd = "/tmp" - cr2.priority = 10 - cr2.save! - - c = Container.find_by_uuid cr.container_uuid - assert_equal 5, c.priority + c1 = Container.find_by_uuid cr1.container_uuid + assert_equal 5, c1.priority c2 = Container.find_by_uuid cr2.container_uuid assert_equal 10, c2.priority - cr.priority = 0 - cr.save! + cr1.update_attributes!(priority: 0) - c.reload - assert_equal 0, c.priority + c1.reload + assert_equal 0, c1.priority c2.reload assert_equal 10, c2.priority end - - test "Container cancelled finalizes request" do - set_user_from_auth :active_trustedclient - cr = ContainerRequest.new - cr.state = "Committed" - cr.container_image = "img" - cr.command = ["foo", "bar"] - cr.output_path = "/tmp" - cr.cwd = "/tmp" - cr.priority = 5 - cr.save! - - cr.reload - assert_equal "Committed", cr.state - - c = Container.find_by_uuid cr.container_uuid - assert_equal "Queued", c.state + test "Request is finalized when its container is cancelled" do + set_user_from_auth :active + cr = create_minimal_req!(priority: 1, state: "Committed", container_count_max: 1) act_as_system_user do - c.state = "Cancelled" - c.save! + Container.find_by_uuid(cr.container_uuid). + update_attributes!(state: Container::Cancelled) end cr.reload assert_equal "Final", cr.state - end - - test "Container complete finalizes request" do - set_user_from_auth :active_trustedclient - cr = ContainerRequest.new - cr.state = "Committed" - cr.container_image = "img" - cr.command = ["foo", "bar"] - cr.output_path = "/tmp" - cr.cwd = "/tmp" - cr.priority = 5 - cr.save! - - cr.reload - assert_equal "Committed", cr.state - - c = Container.find_by_uuid cr.container_uuid - assert_equal "Queued", c.state - - act_as_system_user do - c.state = "Running" - c.save! + test "Request is finalized when its container is completed" do + set_user_from_auth :active + project = groups(:private) + cr = create_minimal_req!(owner_uuid: project.uuid, + priority: 1, + state: "Committed") + + c = act_as_system_user do + c = Container.find_by_uuid(cr.container_uuid) + c.update_attributes!(state: Container::Locked) + c.update_attributes!(state: Container::Running) + c end cr.reload assert_equal "Committed", cr.state act_as_system_user do - c.state = "Complete" - c.save! + c.update_attributes!(state: Container::Complete, + output: '1f4b0bc7583c2a7f9102c395f4ffc5e3+45', + log: 'fa7aeb5140e2848d39b416daeef4ffc5+45') end cr.reload assert_equal "Final", cr.state - + ['output', 'log'].each do |out_type| + pdh = Container.find_by_uuid(cr.container_uuid).send(out_type) + assert_equal(1, Collection.where(portable_data_hash: pdh, + owner_uuid: project.uuid).count, + "Container #{out_type} should be copied to #{project.uuid}") + end end test "Container makes container request, then is cancelled" do - set_user_from_auth :active_trustedclient - cr = ContainerRequest.new - cr.state = "Committed" - cr.container_image = "img" - cr.command = ["foo", "bar"] - cr.output_path = "/tmp" - cr.cwd = "/tmp" - cr.priority = 5 - cr.save! + set_user_from_auth :active + cr = create_minimal_req!(priority: 5, state: "Committed", container_count_max: 1) c = Container.find_by_uuid cr.container_uuid assert_equal 5, c.priority - cr2 = ContainerRequest.new - cr2.state = "Committed" - cr2.container_image = "img" - cr2.command = ["foo", "bar"] - cr2.output_path = "/tmp" - cr2.cwd = "/tmp" - cr2.priority = 10 - cr2.requesting_container_uuid = c.uuid - cr2.save! + cr2 = create_minimal_req! + cr2.update_attributes!(priority: 10, state: "Committed", requesting_container_uuid: c.uuid, command: ["echo", "foo2"], container_count_max: 1) + cr2.reload c2 = Container.find_by_uuid cr2.container_uuid assert_equal 10, c2.priority @@ -368,4 +275,210 @@ class ContainerRequestTest < ActiveSupport::TestCase assert_equal 0, c2.priority end + [ + ['active', 'zzzzz-dz642-runningcontainr'], + ['active_no_prefs', nil], + ].each do |token, expected| + test "create as #{token} and expect requesting_container_uuid to be #{expected}" do + set_user_from_auth token + cr = ContainerRequest.create(container_image: "img", output_path: "/tmp", command: ["echo", "foo"]) + assert_not_nil cr.uuid, 'uuid should be set for newly created container_request' + assert_equal expected, cr.requesting_container_uuid + end + end + + [[{"vcpus" => [2, nil]}, + lambda { |resolved| resolved["vcpus"] == 2 }], + [{"vcpus" => [3, 7]}, + lambda { |resolved| resolved["vcpus"] == 3 }], + [{"vcpus" => 4}, + lambda { |resolved| resolved["vcpus"] == 4 }], + [{"ram" => [1000000000, 2000000000]}, + lambda { |resolved| resolved["ram"] == 1000000000 }], + [{"ram" => [1234234234]}, + lambda { |resolved| resolved["ram"] == 1234234234 }], + ].each do |rc, okfunc| + test "resolve runtime constraint range #{rc} to values" do + cr = ContainerRequest.new(runtime_constraints: rc) + resolved = cr.send :runtime_constraints_for_container + assert(okfunc.call(resolved), + "container runtime_constraints was #{resolved.inspect}") + end + end + + [[{"/out" => { + "kind" => "collection", + "uuid" => "zzzzz-4zz18-znfnqtbbv4spc3w", + "path" => "/foo"}}, + lambda do |resolved| + resolved["/out"] == { + "portable_data_hash" => "1f4b0bc7583c2a7f9102c395f4ffc5e3+45", + "kind" => "collection", + "path" => "/foo", + } + end], + [{"/out" => { + "kind" => "collection", + "uuid" => "zzzzz-4zz18-znfnqtbbv4spc3w", + "portable_data_hash" => "1f4b0bc7583c2a7f9102c395f4ffc5e3+45", + "path" => "/foo"}}, + lambda do |resolved| + resolved["/out"] == { + "portable_data_hash" => "1f4b0bc7583c2a7f9102c395f4ffc5e3+45", + "kind" => "collection", + "path" => "/foo", + } + end], + ].each do |mounts, okfunc| + test "resolve mounts #{mounts.inspect} to values" do + set_user_from_auth :active + cr = ContainerRequest.new(mounts: mounts) + resolved = cr.send :mounts_for_container + assert(okfunc.call(resolved), + "mounts_for_container returned #{resolved.inspect}") + end + end + + test 'mount unreadable collection' do + set_user_from_auth :spectator + m = { + "/foo" => { + "kind" => "collection", + "uuid" => "zzzzz-4zz18-znfnqtbbv4spc3w", + "path" => "/foo", + }, + } + cr = ContainerRequest.new(mounts: m) + assert_raises(ArvadosModel::UnresolvableContainerError) do + cr.send :mounts_for_container + end + end + + test 'mount collection with mismatched UUID and PDH' do + set_user_from_auth :active + m = { + "/foo" => { + "kind" => "collection", + "uuid" => "zzzzz-4zz18-znfnqtbbv4spc3w", + "portable_data_hash" => "fa7aeb5140e2848d39b416daeef4ffc5+45", + "path" => "/foo", + }, + } + cr = ContainerRequest.new(mounts: m) + assert_raises(ArgumentError) do + cr.send :mounts_for_container + end + end + + ['arvados/apitestfixture:latest', + 'arvados/apitestfixture', + 'd8309758b8fe2c81034ffc8a10c36460b77db7bc5e7b448c4e5b684f9d95a678', + ].each do |tag| + test "container_image_for_container(#{tag.inspect})" do + set_user_from_auth :active + cr = ContainerRequest.new(container_image: tag) + resolved = cr.send :container_image_for_container + assert_equal resolved, collections(:docker_image).portable_data_hash + end + end + + test "container_image_for_container(pdh)" do + set_user_from_auth :active + pdh = collections(:docker_image).portable_data_hash + cr = ContainerRequest.new(container_image: pdh) + resolved = cr.send :container_image_for_container + assert_equal resolved, pdh + end + + ['acbd18db4cc2f85cedef654fccc4a4d8+3', + 'ENOEXIST', + 'arvados/apitestfixture:ENOEXIST', + ].each do |img| + test "container_image_for_container(#{img.inspect}) => 422" do + set_user_from_auth :active + cr = ContainerRequest.new(container_image: img) + assert_raises(ArvadosModel::UnresolvableContainerError) do + cr.send :container_image_for_container + end + end + end + + test "requestor can retrieve container owned by dispatch" do + assert_not_empty Container.readable_by(users(:admin)).where(uuid: containers(:running).uuid) + assert_not_empty Container.readable_by(users(:active)).where(uuid: containers(:running).uuid) + assert_empty Container.readable_by(users(:spectator)).where(uuid: containers(:running).uuid) + end + + [ + [{"var" => "value1"}, {"var" => "value1"}], + [{"var" => "value1"}, {"var" => "value2"}] + ].each do |env1, env2| + test "Container request #{(env1 == env2) ? 'does' : 'does not'} reuse container when committed" do + common_attrs = {cwd: "test", + priority: 1, + command: ["echo", "hello"], + output_path: "test", + runtime_constraints: {"vcpus" => 4, + "ram" => 12000000000}, + mounts: {"test" => {"kind" => "json"}}} + set_user_from_auth :active + cr1 = create_minimal_req!(common_attrs.merge({state: ContainerRequest::Committed, + environment: env1})) + cr2 = create_minimal_req!(common_attrs.merge({state: ContainerRequest::Uncommitted, + environment: env2})) + assert_not_nil cr1.container_uuid + assert_nil cr2.container_uuid + + # Update cr2 to commited state and check for container equality on both cases, + # when env1 and env2 are equal the same container should be assigned, and + # when env1 and env2 are different, cr2 container should be different. + cr2.update_attributes!({state: ContainerRequest::Committed}) + assert_equal (env1 == env2), (cr1.container_uuid == cr2.container_uuid) + end + end + + test "requesting_container_uuid at create is not allowed" do + set_user_from_auth :active + assert_raises(ActiveRecord::RecordNotSaved) do + create_minimal_req!(state: "Uncommitted", priority: 1, requesting_container_uuid: 'youcantdothat') + end + end + + test "Retry on container cancelled" do + set_user_from_auth :active + cr = create_minimal_req!(priority: 1, state: "Committed", container_count_max: 2) + prev_container_uuid = cr.container_uuid + + c = act_as_system_user do + c = Container.find_by_uuid(cr.container_uuid) + c.update_attributes!(state: Container::Locked) + c.update_attributes!(state: Container::Running) + c + end + + cr.reload + assert_equal "Committed", cr.state + assert_equal prev_container_uuid, cr.container_uuid + prev_container_uuid = cr.container_uuid + + act_as_system_user do + c.update_attributes!(state: Container::Cancelled) + end + + cr.reload + assert_equal "Committed", cr.state + assert_not_equal prev_container_uuid, cr.container_uuid + prev_container_uuid = cr.container_uuid + + c = act_as_system_user do + c = Container.find_by_uuid(cr.container_uuid) + c.update_attributes!(state: Container::Cancelled) + c + end + + cr.reload + assert_equal "Final", cr.state + assert_equal prev_container_uuid, cr.container_uuid + end + end