Relevant changes: - containerd/containerd#51 Fix empty device type - containerd/containerd#52 Remove call to unitName - Calling unitName incorrectly appends -slice onto the end of the slice cgroup we are looking for - addresses containerd/containerd#47 cgroups: cgroup deleted - containerd/containerd#53 systemd-239+ no longer allows delegate slice - containerd/containerd#54 Bugfix: can't write to cpuset cgroup - containerd/containerd#63 Makes Load function more lenient on subsystems' checking - addresses containerd/containerd#58 Very strict checking of subsystems' existence while loading cgroup - containerd/containerd#67 Add functionality for retrieving all tasks of a cgroup - containerd/containerd#68 Fix net_prio typo - containerd/containerd#69 Blkio weight/leafWeight pointer value - containerd/containerd#77 Check for non-active/supported cgroups - addresses containerd/containerd#76 unable to find * in controller set: unknown - addresses docker/for-linux#545 Raspbian: Error response from daemon: unable to find "net_prio" in controller set: unknown - addresses docker/for-linux#552 Error response from daemon: unable to find "cpuacct" in controller set: unknown - addresses docker/for-linux#545 Raspbian: Error response from daemon: unable to find "net_prio" in controller set: unknown Signed-off-by: Sebastiaan van Stijn <github@gone.nl> (cherry picked from commit 386b06eacd689bb98fb4117087614466c6e130f3) Signed-off-by: Sebastiaan van Stijn <github@gone.nl> Upstream-commit: a36f6bfc36d2425c693097102b91152fa8f80012 Component: engine
113 lines
2.3 KiB
Go
113 lines
2.3 KiB
Go
/*
|
|
Copyright The containerd Authors.
|
|
|
|
Licensed under the Apache License, Version 2.0 (the "License");
|
|
you may not use this file except in compliance with the License.
|
|
You may obtain a copy of the License at
|
|
|
|
http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
Unless required by applicable law or agreed to in writing, software
|
|
distributed under the License is distributed on an "AS IS" BASIS,
|
|
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
See the License for the specific language governing permissions and
|
|
limitations under the License.
|
|
*/
|
|
|
|
package cgroups
|
|
|
|
import (
|
|
"fmt"
|
|
|
|
specs "github.com/opencontainers/runtime-spec/specs-go"
|
|
)
|
|
|
|
// Name is a typed name for a cgroup subsystem
|
|
type Name string
|
|
|
|
const (
|
|
Devices Name = "devices"
|
|
Hugetlb Name = "hugetlb"
|
|
Freezer Name = "freezer"
|
|
Pids Name = "pids"
|
|
NetCLS Name = "net_cls"
|
|
NetPrio Name = "net_prio"
|
|
PerfEvent Name = "perf_event"
|
|
Cpuset Name = "cpuset"
|
|
Cpu Name = "cpu"
|
|
Cpuacct Name = "cpuacct"
|
|
Memory Name = "memory"
|
|
Blkio Name = "blkio"
|
|
Rdma Name = "rdma"
|
|
)
|
|
|
|
// Subsystems returns a complete list of the default cgroups
|
|
// available on most linux systems
|
|
func Subsystems() []Name {
|
|
n := []Name{
|
|
Hugetlb,
|
|
Freezer,
|
|
Pids,
|
|
NetCLS,
|
|
NetPrio,
|
|
PerfEvent,
|
|
Cpuset,
|
|
Cpu,
|
|
Cpuacct,
|
|
Memory,
|
|
Blkio,
|
|
Rdma,
|
|
}
|
|
if !isUserNS {
|
|
n = append(n, Devices)
|
|
}
|
|
return n
|
|
}
|
|
|
|
type Subsystem interface {
|
|
Name() Name
|
|
}
|
|
|
|
type pather interface {
|
|
Subsystem
|
|
Path(path string) string
|
|
}
|
|
|
|
type creator interface {
|
|
Subsystem
|
|
Create(path string, resources *specs.LinuxResources) error
|
|
}
|
|
|
|
type deleter interface {
|
|
Subsystem
|
|
Delete(path string) error
|
|
}
|
|
|
|
type stater interface {
|
|
Subsystem
|
|
Stat(path string, stats *Metrics) error
|
|
}
|
|
|
|
type updater interface {
|
|
Subsystem
|
|
Update(path string, resources *specs.LinuxResources) error
|
|
}
|
|
|
|
// SingleSubsystem returns a single cgroup subsystem within the base Hierarchy
|
|
func SingleSubsystem(baseHierarchy Hierarchy, subsystem Name) Hierarchy {
|
|
return func() ([]Subsystem, error) {
|
|
subsystems, err := baseHierarchy()
|
|
if err != nil {
|
|
return nil, err
|
|
}
|
|
for _, s := range subsystems {
|
|
if s.Name() == subsystem {
|
|
return []Subsystem{
|
|
s,
|
|
}, nil
|
|
}
|
|
}
|
|
return nil, fmt.Errorf("unable to find subsystem %s", subsystem)
|
|
}
|
|
}
|