agreement_tests.rs 8.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334
  1. #![allow(clippy::identity_op)]
  2. use rand::{thread_rng, Rng};
  3. use scopeguard::defer;
  4. // This is to remove the annoying "unused code in config" warnings.
  5. pub mod config;
  6. #[test]
  7. fn basic_agreement() -> config::Result<()> {
  8. const SERVERS: usize = 5;
  9. let cfg = make_config!(SERVERS, false);
  10. defer!(cfg.cleanup());
  11. cfg.begin("Test (2B): basic agreement");
  12. for index in 1..4 {
  13. let committed = cfg.committed_count(index)?;
  14. assert_eq!(0, committed.0, "some have committed before start()");
  15. let commit_index = cfg.one(index as i32 * 100, SERVERS, false)?;
  16. assert_eq!(
  17. index, commit_index,
  18. "got index {} but expected {}",
  19. commit_index, index
  20. );
  21. }
  22. cfg.end();
  23. Ok(())
  24. }
  25. #[test]
  26. fn fail_agree() -> config::Result<()> {
  27. const SERVERS: usize = 3;
  28. let cfg = make_config!(SERVERS, false);
  29. defer!(cfg.cleanup());
  30. cfg.begin("Test (2B): agreement despite follower disconnection");
  31. cfg.one(101, SERVERS, false)?;
  32. // follower network disconnection
  33. let leader = cfg.check_one_leader()?;
  34. cfg.disconnect((leader + 1) % SERVERS);
  35. // agree despite one disconnected server?
  36. cfg.one(102, SERVERS - 1, false)?;
  37. cfg.one(103, SERVERS - 1, false)?;
  38. config::sleep_election_timeouts(1);
  39. cfg.one(104, SERVERS - 1, false)?;
  40. cfg.one(105, SERVERS - 1, false)?;
  41. // re-connect
  42. cfg.connect((leader + 1) % SERVERS);
  43. // agree with full set of servers?
  44. cfg.one(106, SERVERS, true)?;
  45. config::sleep_election_timeouts(1);
  46. cfg.one(107, SERVERS, true)?;
  47. cfg.end();
  48. Ok(())
  49. }
  50. #[test]
  51. fn fail_no_agree() -> config::Result<()> {
  52. const SERVERS: usize = 5;
  53. let cfg = make_config!(SERVERS, false);
  54. defer!(cfg.cleanup());
  55. cfg.begin("Test (2B): no agreement if too many followers disconnect");
  56. cfg.one(10, SERVERS, false)?;
  57. // 3 of 5 followers disconnect
  58. let leader = cfg.check_one_leader()?;
  59. cfg.disconnect((leader + 1) % SERVERS);
  60. cfg.disconnect((leader + 2) % SERVERS);
  61. cfg.disconnect((leader + 3) % SERVERS);
  62. let result = cfg.leader_start(leader, 20);
  63. assert!(result.is_some(), "leader rejected start()");
  64. let index = result.unwrap().1;
  65. assert_eq!(2, index, "expected index 2, got {}", index);
  66. config::sleep_election_timeouts(2);
  67. let (commit_count, _) = cfg.committed_count(index)?;
  68. assert_eq!(
  69. 0, commit_count,
  70. "{} committed but no majority",
  71. commit_count
  72. );
  73. // repair
  74. cfg.connect((leader + 1) % SERVERS);
  75. cfg.connect((leader + 2) % SERVERS);
  76. cfg.connect((leader + 3) % SERVERS);
  77. // the disconnected majority may have chosen a leader from
  78. // among their own ranks, forgetting index 2.
  79. let leader2 = cfg.check_one_leader()?;
  80. let result = cfg.leader_start(leader2, 30);
  81. assert!(result.is_some(), "leader2 rejected start()");
  82. let index = result.unwrap().1;
  83. assert!(index == 2 || index == 3, "unexpected index {}", index);
  84. cfg.one(1000, SERVERS, true)?;
  85. cfg.end();
  86. Ok(())
  87. }
  88. #[test]
  89. fn rejoin() -> config::Result<()> {
  90. const SERVERS: usize = 3;
  91. let cfg = make_config!(SERVERS, false);
  92. defer!(cfg.cleanup());
  93. cfg.begin("Test (2B): rejoin of partitioned leader");
  94. cfg.one(101, SERVERS, true)?;
  95. // leader network failure
  96. let leader1 = cfg.check_one_leader()?;
  97. cfg.disconnect(leader1);
  98. // make old leader try to agree on some entries
  99. cfg.leader_start(leader1, 102);
  100. cfg.leader_start(leader1, 103);
  101. cfg.leader_start(leader1, 104);
  102. // new leader commits, also for index=2
  103. cfg.one(103, 2, true)?;
  104. // new leader network failure
  105. let leader2 = cfg.check_one_leader()?;
  106. cfg.disconnect(leader2);
  107. // old leader connected again
  108. cfg.connect(leader1);
  109. cfg.one(104, 2, true)?;
  110. // all together now
  111. cfg.connect(leader2);
  112. cfg.one(105, SERVERS, true)?;
  113. cfg.end();
  114. Ok(())
  115. }
  116. #[test]
  117. fn backup() -> config::Result<()> {
  118. const SERVERS: usize = 5;
  119. let cfg = make_config!(SERVERS, false);
  120. defer!(cfg.cleanup());
  121. cfg.begin(
  122. "Test (2B): leader backs up quickly over incorrect follower logs",
  123. );
  124. cfg.one(thread_rng().gen(), SERVERS, true)?;
  125. // put leader and one follower in a partition
  126. let leader1 = cfg.check_one_leader()?;
  127. cfg.disconnect((leader1 + 2) % SERVERS);
  128. cfg.disconnect((leader1 + 3) % SERVERS);
  129. cfg.disconnect((leader1 + 4) % SERVERS);
  130. // submit lots of commands that won't commit
  131. for _ in 0..SERVERS {
  132. cfg.leader_start(leader1, thread_rng().gen());
  133. }
  134. config::sleep_election_timeouts(2);
  135. cfg.disconnect((leader1 + 0) % SERVERS);
  136. cfg.disconnect((leader1 + 1) % SERVERS);
  137. // allow other partition to recover
  138. cfg.connect((leader1 + 2) % SERVERS);
  139. cfg.connect((leader1 + 3) % SERVERS);
  140. cfg.connect((leader1 + 4) % SERVERS);
  141. // lots of successful commands to new group.
  142. for _ in 0..50 {
  143. cfg.one(thread_rng().gen(), 3, true)?;
  144. }
  145. // now another partitioned leader and one follower
  146. let leader2 = cfg.check_one_leader()?;
  147. let mut other = (leader1 + 2) % SERVERS;
  148. if leader2 == other {
  149. other = (leader2 + 1) % SERVERS;
  150. }
  151. cfg.disconnect(other);
  152. // lots more commands that won't commit
  153. for _ in 0..50 {
  154. cfg.leader_start(leader2, thread_rng().gen());
  155. }
  156. config::sleep_election_timeouts(2);
  157. // bring original leader back to life,
  158. for i in 0..SERVERS {
  159. cfg.disconnect(i);
  160. }
  161. cfg.connect((leader1 + 0) % SERVERS);
  162. cfg.connect((leader1 + 1) % SERVERS);
  163. cfg.connect(other);
  164. // lots of successful commands to new group.
  165. for _ in 0..50 {
  166. cfg.one(thread_rng().gen(), 3, true)?;
  167. }
  168. // now everyone
  169. for i in 0..SERVERS {
  170. cfg.connect(i);
  171. }
  172. cfg.one(thread_rng().gen(), SERVERS, true)?;
  173. cfg.end();
  174. Ok(())
  175. }
  176. #[test]
  177. fn count() -> config::Result<()> {
  178. const SERVERS: usize = 3;
  179. let cfg = make_config!(SERVERS, false);
  180. defer!(cfg.cleanup());
  181. cfg.begin("Test (2B): RPC counts aren't too high");
  182. cfg.check_one_leader()?;
  183. let total = cfg.total_rpcs();
  184. assert!(
  185. (1..=30).contains(&total),
  186. "too many or few RPCs ({}) to elect initial leader",
  187. total
  188. );
  189. let mut retries = 0;
  190. let (success, total) = loop {
  191. if retries == 5 {
  192. break (false, 0);
  193. }
  194. if retries != 0 {
  195. config::sleep_millis(3000);
  196. }
  197. retries += 1;
  198. let leader = cfg.check_one_leader()?;
  199. let start_total = cfg.total_rpcs();
  200. const ITERS: usize = 10;
  201. let (term, start_index) = match cfg.leader_start(leader, 1) {
  202. Some(pair) => pair,
  203. None => continue,
  204. };
  205. let mut cmds = vec![];
  206. for i in 1..(ITERS + 2) {
  207. let cmd: i32 = thread_rng().gen();
  208. cmds.push(cmd);
  209. let index = match cfg.leader_start(leader, cmd) {
  210. Some((new_term, index)) => {
  211. if new_term == term {
  212. Some(index)
  213. } else {
  214. None
  215. }
  216. }
  217. None => None,
  218. };
  219. if let Some(index) = index {
  220. assert_eq!(start_index + i, index, "start() failed");
  221. } else {
  222. retries = 0;
  223. break;
  224. }
  225. }
  226. if retries == 0 {
  227. continue;
  228. }
  229. for i in 1..(ITERS + 1) {
  230. let cmd = cfg.wait(start_index + i, SERVERS, Some(term))?;
  231. if let Some(cmd) = cmd {
  232. assert_eq!(
  233. cmd,
  234. cmds[i - 1],
  235. "wrong value {} committed for index {}; expected {:?}",
  236. cmd,
  237. start_index + i,
  238. cmds
  239. )
  240. } else {
  241. retries = 0;
  242. break;
  243. }
  244. }
  245. if term != cfg.check_terms()?.expect("terms should be agreed on") {
  246. retries = 0;
  247. }
  248. if retries == 0 {
  249. continue;
  250. }
  251. let diff = cfg.total_rpcs() - start_total;
  252. if diff > (ITERS + 1 + 3) * 3 {
  253. panic!("too many RPCs ({}) for {} entries", diff, ITERS);
  254. }
  255. break (true, cfg.total_rpcs());
  256. };
  257. assert!(success, "term change too often");
  258. config::sleep_election_timeouts(1);
  259. let diff = cfg.total_rpcs() - total;
  260. assert!(
  261. diff < 3 * 20,
  262. "too many RPCs ({}) for 1 second of idleness",
  263. diff
  264. );
  265. cfg.end();
  266. Ok(())
  267. }