From: "Fabian Grünbichler" <f.gruenbichler@proxmox.com>
To: Fabian Ebner <f.ebner@proxmox.com>, pve-devel@lists.proxmox.com
Subject: Re: [pve-devel] [PATCH qemu-server 07/10] mtunnel: add API endpoints
Date: Thu, 11 Nov 2021 12:07:39 +0100 [thread overview]
Message-ID: <1636628093.z9q3o3cluj.astroid@nora.none> (raw)
In-Reply-To: <97332e83-f7e1-aa6e-3932-2ba9de52b5cc@proxmox.com>
On November 10, 2021 8:40 am, Fabian Ebner wrote:
> Am 09.11.21 um 13:46 schrieb Fabian Ebner:
>> Am 05.11.21 um 14:03 schrieb Fabian Grünbichler:
>
> ---snip---
>
>>> use IO::Socket::IP;
>>> +use IO::Socket::UNIX;
>>> +use IPC::Open3;
>>> +use JSON;
>>> +use MIME::Base64;
>
> Forgot to ask: is this import needed or a left-over from development?
yes
>
> ---snip---
>
>>
>>> +
>>> + my $migration_snapshot;
>>> + if ($scfg->{type} eq 'zfspool' || $scfg->{type} eq
>>> 'btrfs') {
>>> + $migration_snapshot = '__migration__';
>>> + }
>>> +
>>> + my $volid = "$storeid:$volname";
>>> +
>>> + # find common import/export format, taken from PVE::Storage
>>> + my @import_formats =
>>> PVE::Storage::volume_import_formats($state->{storecfg}, $volid,
>>> $migration_snapshot, undef, $with_snapshots);
>>> + my @export_formats =
>>> PVE::Tools::split_list($params->{'export-formats'});
>>> + my %import_hash = map { $_ => 1 } @import_formats;
>>> + my @common = grep { $import_hash{$_} } @export_formats;
>>> + die "no matching import/export format found for storage
>>> '$storeid'\n"
>>> + if !@common;
>>> + $format = $common[0];
>>> +
>>> + my $input = IO::File->new();
>>> + my $info = IO::File->new();
>>> + my $unix = "/run/qemu-server/$vmid.storage";
>>> +
>>> + my $import_cmd = ['pvesm', 'import', $volid, $format,
>>> "unix://$unix", '-with-snapshots', $with_snapshots];
>>> + if ($params->{'allow-rename'}) {
>>> + push @$import_cmd, '-allow-rename',
>>> $params->{'allow-rename'};
>>> + }
>>> + if ($migration_snapshot) {
>>> + push @$import_cmd, '-delete-snapshot', $migration_snapshot;
>>
>> Missing '-snapshot $migration_snapshot'? While the parameter is ignored
>> by our ZFSPoolPlugin, the BTRFSPlugin aborts if it's not specified
>> AFAICS. And external plugins might require it too.
>
> That is, for the 'btrfs' format. In the patch with the export command, a
> snapshot is only used for ZFS, so it would already fail on export for
> BTRFS with 'btrfs' format. For external plugins we also don't use a
> migration snapshot in storage_migrate(), so please disregard that part.
done
>
>>
>> In general, we'll need to be careful not to introduce mismatches between
>> the import and the export parameters. Might it be better if the client
>> would pass along (most of) the parameters for the import command (which
>> basically is how it's done for the existing storage_migrate)?
>>
>
> On the other hand, that would require being very careful with input
> validation.
yeah, and since we are crossing a trust boundary here (between two
clusters) we have to be careful. if we change the export/import code, we
can always also bump the tunnel API if needed (either to selectively use
new features only if supported, or to error out early if there was a
breaking change). just passing in "pass this to `pvesm import`" is
potentially dangerous if we don't carefully validate the 'this', and
that is easier if it's structured data ;) so I'd rather do this explicit
even if it means extending two places when we change the interface.
>
> ---snip---
>
next prev parent reply other threads:[~2021-11-11 11:07 UTC|newest]
Thread overview: 49+ messages / expand[flat|nested] mbox.gz Atom feed top
2021-11-05 13:03 [pve-devel] [PATCH-series qemu-server++ 0/22] remote migration Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH proxmox 1/1] websocket: adapt for client connection Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH proxmox-websocket-tunnel 1/4] initial commit Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH proxmox-websocket-tunnel 2/4] add tunnel implementation Fabian Grünbichler
2021-11-09 12:54 ` Dominik Csapak
2021-11-11 9:58 ` Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH proxmox-websocket-tunnel 3/4] add fingerprint validation Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH proxmox-websocket-tunnel 4/4] add packaging Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH access-control 1/2] tickets: add tunnel ticket Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH access-control 2/2] ticket: normalize path for verification Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH common 1/3] schema: rename storagepair to storage-pair Fabian Grünbichler
2021-11-11 13:18 ` [pve-devel] applied: " Thomas Lamprecht
2021-11-05 13:03 ` [pve-devel] [PATCH common 2/3] schema: add pve-bridge-id option/format/pair Fabian Grünbichler
2021-11-11 13:18 ` [pve-devel] applied: " Thomas Lamprecht
2021-11-05 13:03 ` [pve-devel] [PATCH common 3/3] schema: add proxmox-remote format/option Fabian Grünbichler
2021-11-11 13:18 ` [pve-devel] applied: " Thomas Lamprecht
2021-11-05 13:03 ` [pve-devel] [PATCH guest-common 1/1] migrate: handle migration_network with remote migration Fabian Grünbichler
2021-11-08 13:50 ` Fabian Ebner
2021-11-10 12:03 ` Fabian Ebner
2021-11-05 13:03 ` [pve-devel] [PATCH http-server 1/1] webproxy: handle unflushed write buffer Fabian Grünbichler
2021-11-08 14:15 ` Fabian Ebner
2021-11-08 15:45 ` Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 01/10] d/control: add pve-ha-manager to B-D Fabian Grünbichler
2021-11-11 13:18 ` [pve-devel] applied: " Thomas Lamprecht
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 02/10] adapt to renamed storage-pair format Fabian Grünbichler
2021-11-11 13:18 ` [pve-devel] applied: " Thomas Lamprecht
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 03/10] migrate: factor out storage checks Fabian Grünbichler
2021-11-11 13:18 ` [pve-devel] applied: " Thomas Lamprecht
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 04/10] refactor map_storage to map_id Fabian Grünbichler
2021-11-09 9:06 ` Fabian Ebner
2021-11-09 12:44 ` Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 05/10] schema: use pve-bridge-id Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 06/10] update_vm: allow simultaneous setting of boot-order and dev Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 07/10] mtunnel: add API endpoints Fabian Grünbichler
2021-11-09 12:46 ` Fabian Ebner
2021-11-10 7:40 ` Fabian Ebner
2021-11-11 11:07 ` Fabian Grünbichler [this message]
2021-11-11 11:04 ` Fabian Grünbichler
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 08/10] migrate: refactor remote VM/tunnel start Fabian Grünbichler
2021-11-09 14:04 ` Fabian Ebner
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 09/10] migrate: add remote migration handling Fabian Grünbichler
2021-11-10 11:17 ` Fabian Ebner
2021-11-11 12:25 ` Fabian Grünbichler
2021-11-11 12:57 ` Fabian Ebner
2021-11-05 13:03 ` [pve-devel] [PATCH qemu-server 10/10] api: add remote migrate endpoint Fabian Grünbichler
2021-11-10 12:29 ` Fabian Ebner
2021-11-11 12:33 ` Fabian Grünbichler
2021-11-09 16:07 ` [pve-devel] [PATCH-series qemu-server++ 0/22] remote migration DERUMIER, Alexandre
2021-11-10 12:42 ` Fabian Ebner
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1636628093.z9q3o3cluj.astroid@nora.none \
--to=f.gruenbichler@proxmox.com \
--cc=f.ebner@proxmox.com \
--cc=pve-devel@lists.proxmox.com \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox