348ced9097
Before, journald would remove journal files until both MaxUse= and KeepFree= settings would be satisfied. The first one depends (if set automatically) on the size of the file system and is constant. But the second one depends on current use of the file system, and a spike in disk usage would cause journald to delete journal files, trying to reach usage which would leave 15% of the disk free. This behaviour is surprising for the user who doesn't expect his logs to be purged when disk usage goes above 85%, which on a large disk could be some gigabytes from being full. In addition attempting to keep 15% free provides an attack vector where filling the disk sufficiently disposes of almost all logs. Instead, obey KeepFree= only as a limit on adding additional files. When replacing old files with new, ignore KeepFree=. This means that if journal disk usage reached some high point that at some later point start to violate the KeepFree= constraint, journald will not add files to go above this point, but it will stay (slightly) below it. When journald is restarted, it forgets the previous maximum usage value, and sets the limit based on the current usage, so if disk remains to be filled, journald might use one journal-file-size less on each restart, if restarts happen just after rotation. This seems like a reasonable compromise between implementation complexity and robustness.
191 lines
6.3 KiB
C
191 lines
6.3 KiB
C
/*-*- Mode: C; c-basic-offset: 8; indent-tabs-mode: nil -*-*/
|
|
|
|
/***
|
|
This file is part of systemd.
|
|
|
|
Copyright 2011 Lennart Poettering
|
|
|
|
systemd is free software; you can redistribute it and/or modify it
|
|
under the terms of the GNU Lesser General Public License as published by
|
|
the Free Software Foundation; either version 2.1 of the License, or
|
|
(at your option) any later version.
|
|
|
|
systemd is distributed in the hope that it will be useful, but
|
|
WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
|
|
Lesser General Public License for more details.
|
|
|
|
You should have received a copy of the GNU Lesser General Public License
|
|
along with systemd; If not, see <http://www.gnu.org/licenses/>.
|
|
***/
|
|
|
|
#include <fcntl.h>
|
|
#include <unistd.h>
|
|
|
|
#include <systemd/sd-journal.h>
|
|
|
|
#include "log.h"
|
|
#include "journal-file.h"
|
|
#include "journal-authenticate.h"
|
|
#include "journal-vacuum.h"
|
|
|
|
static bool arg_keep = false;
|
|
|
|
static void test_non_empty(void) {
|
|
dual_timestamp ts;
|
|
JournalFile *f;
|
|
struct iovec iovec;
|
|
static const char test[] = "TEST1=1", test2[] = "TEST2=2";
|
|
Object *o;
|
|
uint64_t p;
|
|
char t[] = "/tmp/journal-XXXXXX";
|
|
|
|
log_set_max_level(LOG_DEBUG);
|
|
|
|
assert_se(mkdtemp(t));
|
|
assert_se(chdir(t) >= 0);
|
|
|
|
assert_se(journal_file_open("test.journal", O_RDWR|O_CREAT, 0666, true, true, NULL, NULL, NULL, &f) == 0);
|
|
|
|
dual_timestamp_get(&ts);
|
|
|
|
iovec.iov_base = (void*) test;
|
|
iovec.iov_len = strlen(test);
|
|
assert_se(journal_file_append_entry(f, &ts, &iovec, 1, NULL, NULL, NULL) == 0);
|
|
|
|
iovec.iov_base = (void*) test2;
|
|
iovec.iov_len = strlen(test2);
|
|
assert_se(journal_file_append_entry(f, &ts, &iovec, 1, NULL, NULL, NULL) == 0);
|
|
|
|
iovec.iov_base = (void*) test;
|
|
iovec.iov_len = strlen(test);
|
|
assert_se(journal_file_append_entry(f, &ts, &iovec, 1, NULL, NULL, NULL) == 0);
|
|
|
|
#ifdef HAVE_GCRYPT
|
|
journal_file_append_tag(f);
|
|
#endif
|
|
journal_file_dump(f);
|
|
|
|
assert(journal_file_next_entry(f, NULL, 0, DIRECTION_DOWN, &o, &p) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 1);
|
|
|
|
assert(journal_file_next_entry(f, o, p, DIRECTION_DOWN, &o, &p) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 2);
|
|
|
|
assert(journal_file_next_entry(f, o, p, DIRECTION_DOWN, &o, &p) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 3);
|
|
|
|
assert(journal_file_next_entry(f, o, p, DIRECTION_DOWN, &o, &p) == 0);
|
|
|
|
assert(journal_file_next_entry(f, NULL, 0, DIRECTION_DOWN, &o, &p) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 1);
|
|
|
|
assert(journal_file_skip_entry(f, o, p, 2, &o, &p) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 3);
|
|
|
|
assert(journal_file_skip_entry(f, o, p, -2, &o, &p) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 1);
|
|
|
|
assert(journal_file_skip_entry(f, o, p, -2, &o, &p) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 1);
|
|
|
|
assert(journal_file_find_data_object(f, test, strlen(test), NULL, &p) == 1);
|
|
assert(journal_file_next_entry_for_data(f, NULL, 0, p, DIRECTION_DOWN, &o, NULL) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 1);
|
|
|
|
assert(journal_file_next_entry_for_data(f, NULL, 0, p, DIRECTION_UP, &o, NULL) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 3);
|
|
|
|
assert(journal_file_find_data_object(f, test2, strlen(test2), NULL, &p) == 1);
|
|
assert(journal_file_next_entry_for_data(f, NULL, 0, p, DIRECTION_UP, &o, NULL) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 2);
|
|
|
|
assert(journal_file_next_entry_for_data(f, NULL, 0, p, DIRECTION_DOWN, &o, NULL) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 2);
|
|
|
|
assert(journal_file_find_data_object(f, "quux", 4, NULL, &p) == 0);
|
|
|
|
assert(journal_file_move_to_entry_by_seqnum(f, 1, DIRECTION_DOWN, &o, NULL) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 1);
|
|
|
|
assert(journal_file_move_to_entry_by_seqnum(f, 3, DIRECTION_DOWN, &o, NULL) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 3);
|
|
|
|
assert(journal_file_move_to_entry_by_seqnum(f, 2, DIRECTION_DOWN, &o, NULL) == 1);
|
|
assert(le64toh(o->entry.seqnum) == 2);
|
|
|
|
assert(journal_file_move_to_entry_by_seqnum(f, 10, DIRECTION_DOWN, &o, NULL) == 0);
|
|
|
|
journal_file_rotate(&f, true, true);
|
|
journal_file_rotate(&f, true, true);
|
|
|
|
journal_file_close(f);
|
|
|
|
log_info("Done...");
|
|
|
|
if (arg_keep)
|
|
log_info("Not removing %s", t);
|
|
else {
|
|
journal_directory_vacuum(".", 3000000, 0, NULL);
|
|
|
|
assert_se(rm_rf_dangerous(t, false, true, false) >= 0);
|
|
}
|
|
|
|
puts("------------------------------------------------------------");
|
|
}
|
|
|
|
static void test_empty(void) {
|
|
JournalFile *f1, *f2, *f3, *f4;
|
|
char t[] = "/tmp/journal-XXXXXX";
|
|
|
|
log_set_max_level(LOG_DEBUG);
|
|
|
|
assert_se(mkdtemp(t));
|
|
assert_se(chdir(t) >= 0);
|
|
|
|
assert_se(journal_file_open("test.journal", O_RDWR|O_CREAT, 0666, false, false, NULL, NULL, NULL, &f1) == 0);
|
|
|
|
assert_se(journal_file_open("test-compress.journal", O_RDWR|O_CREAT, 0666, true, false, NULL, NULL, NULL, &f2) == 0);
|
|
|
|
assert_se(journal_file_open("test-seal.journal", O_RDWR|O_CREAT, 0666, false, true, NULL, NULL, NULL, &f3) == 0);
|
|
|
|
assert_se(journal_file_open("test-seal-compress.journal", O_RDWR|O_CREAT, 0666, true, true, NULL, NULL, NULL, &f4) == 0);
|
|
|
|
journal_file_print_header(f1);
|
|
puts("");
|
|
journal_file_print_header(f2);
|
|
puts("");
|
|
journal_file_print_header(f3);
|
|
puts("");
|
|
journal_file_print_header(f4);
|
|
puts("");
|
|
|
|
log_info("Done...");
|
|
|
|
if (arg_keep)
|
|
log_info("Not removing %s", t);
|
|
else {
|
|
journal_directory_vacuum(".", 3000000, 0, NULL);
|
|
|
|
assert_se(rm_rf_dangerous(t, false, true, false) >= 0);
|
|
}
|
|
|
|
journal_file_close(f1);
|
|
journal_file_close(f2);
|
|
journal_file_close(f3);
|
|
journal_file_close(f4);
|
|
}
|
|
|
|
int main(int argc, char *argv[]) {
|
|
arg_keep = argc > 1;
|
|
|
|
/* journal_file_open requires a valid machine id */
|
|
if (access("/etc/machine-id", F_OK) != 0)
|
|
return EXIT_TEST_SKIP;
|
|
|
|
test_non_empty();
|
|
test_empty();
|
|
|
|
return 0;
|
|
}
|