luoluoyuyu opened a new pull request, #18512:
URL: https://github.com/apache/iotdb/pull/18512

   
   
   ## Problem
   
   Snapshot/backup pipes can be automatically dropped even when some DataNodes 
failed to initialize their PipeConnector.
   
   In the failing case, ConfigNode reported PIPE_PUSH_SINGLE_META failures with 
TSStatus(code:1807) and Broken pipe on multiple DataNodes, then 
PIPE_PUSH_ALL_META timed out. Some DataNodes therefore had no local PipeTask, 
but the old DataNode completion check treated a missing task map as completed. 
ConfigNode then saw every DataNode as completed and removed the pipe, making an 
incomplete backup look successful.
   
   ### Root cause
   
   DataNode treated pipeTaskMap == null as all regions completed.
   
   DataNode only checked existing tasks, so a Region whose PipeTask failed to 
start was silently ignored.
   
   ConfigNode waited for all registered DataNodes instead of only the DataNodes 
that actually own target Regions for the pipe.
   
   ConfigNode subtracted completed nodes from a live keySet() view, which could 
mutate the registered DataNode set.
   
   ### Changes
   
   DataNode completion checkCompute the expected local DataRegion IDs from the 
pipe's runtime metadata. A DataNode is only reported completed when every 
expected local DataRegion has a completed PipeDataNodeTask. An empty expected 
set is treated as completed because that DataNode has no local history transfer 
to perform.
   
   ConfigNode completion checkDerive the expected DataNode IDs from the pipe's 
runtime metadata instead of using all registered DataNodes. DataNodes that do 
not own any target Region are ignored during the auto-drop judgment. DataNodes 
that should participate but have not completed still block auto-drop.
   
   Avoid mutating the registered DataNode setCopy the registered DataNode IDs 
before subtracting completed IDs, preventing removeAll from modifying the live 
keySet().
   
   Add unit testAdd coverage for the DataNode completion predicate, including a 
missing expected Region, a missing task map, an uncompleted task, and an empty 
expected set.
   
   
   <!--
   In each section, please describe design decisions made, including:
    - Choice of algorithms
    - Behavioral aspects. What configuration values are acceptable? How are 
corner cases and error 
       conditions handled, such as when there are insufficient resources?
    - Class organization and design (how the logic is split between classes, 
inheritance, composition, 
       design patterns)
    - Method organization and design (how the logic is split between methods, 
parameters and return types)
    - Naming (class, method, API, configuration, HTTP endpoint, names of 
emitted metrics)
   -->
   
   
   <!-- It's good to describe an alternative design (or mention an alternative 
name) for every design 
   (or naming) decision point and compare the alternatives with the designs 
that you've implemented 
   (or the names you've chosen) to highlight the advantages of the chosen 
designs and names. -->
   
   <!-- If there was a discussion of the design of the feature implemented in 
this PR elsewhere 
   (e. g. a "Proposal" issue, any other issue, or a thread in the development 
mailing list), 
   link to that discussion from this PR description and explain what have 
changed in your final design 
   compared to your original proposal or the consensus version in the end of 
the discussion. 
   If something hasn't changed since the original discussion, you can omit a 
detailed discussion of 
   those aspects of the design here, perhaps apart from brief mentioning for 
the sake of readability 
   of this PR description. -->
   
   <!-- Some of the aspects mentioned above may be omitted for simple and small 
changes. -->
   
   <hr>
   
   This PR has:
   - [ ] been self-reviewed.
       - [ ] concurrent read
       - [ ] concurrent write
       - [ ] concurrent read and write 
   - [ ] added documentation for new or modified features or behaviors.
   - [ ] added Javadocs for most classes and all non-trivial methods. 
   - [ ] added or updated version, __license__, or notice information
   - [ ] added comments explaining the "why" and the intent of the code 
wherever would not be obvious 
     for an unfamiliar reader.
   - [ ] added unit tests or modified existing tests to cover new code paths, 
ensuring the threshold 
     for code coverage.
   - [ ] added integration tests.
   - [ ] been tested in a test IoTDB cluster.
   
   <!-- Check the items by putting "x" in the brackets for the done things. Not 
all of these items 
   apply to every PR. Remove the items which are not done or not relevant to 
the PR. None of the items 
   from the checklist above are strictly necessary, but it would be very 
helpful if you at least 
   self-review the PR. -->
   
   <hr>
   
   ##### Key changed/added classes (or packages if there are too many classes) 
in this PR
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to