Test / test (push) Successful in 2m4s
Release / gates (push) Successful in 2m5s
Release / build (amd64, freebsd) (push) Successful in 1m27s
Release / build (amd64, linux) (push) Successful in 1m22s
Release / build (amd64, netbsd) (push) Successful in 1m19s
Release / build (amd64, openbsd) (push) Successful in 1m20s
Release / build (arm64, darwin) (push) Successful in 1m21s
Release / build (arm64, freebsd) (push) Successful in 1m26s
Release / build (arm64, linux) (push) Successful in 1m25s
Release / build (arm64, netbsd) (push) Successful in 1m31s
Release / build (arm64, openbsd) (push) Successful in 1m27s
Release / build (loong64, linux) (push) Successful in 1m37s
Release / build (riscv64, linux) (push) Successful in 1m21s
Release / release (push) Successful in 40s
Assisted-by: GLM 5.3 Flash
95 lines
2.7 KiB
Go
95 lines
2.7 KiB
Go
// Copyright (c) 2026 Petr Balvín <opensource@petrbalvin.org> (https://petrbalvin.org)
|
|
// SPDX-License-Identifier: MIT
|
|
|
|
// Package server accepts connections from NFS clients.
|
|
//
|
|
// Each accepted connection reaches the Handle hook, which owns the
|
|
// connection for its whole lifetime; a nil Handle closes it at once. The
|
|
// nfsd command wires the hook to the NFSv4.2 dispatcher.
|
|
package server
|
|
|
|
import (
|
|
"context"
|
|
"errors"
|
|
"net"
|
|
"sync/atomic"
|
|
"syscall"
|
|
"time"
|
|
)
|
|
|
|
// acceptRetryPause is the pause before the next accept after a
|
|
// transient resource error, so a connection storm cannot spin the loop.
|
|
const acceptRetryPause = 10 * time.Millisecond
|
|
|
|
// A Server accepts connections from NFS clients.
|
|
type Server struct {
|
|
// Handle serves one accepted connection. It runs on its own goroutine
|
|
// and owns the connection for its whole lifetime, closing it when the
|
|
// session ends. A nil Handle closes the connection at once.
|
|
Handle func(conn net.Conn)
|
|
|
|
// MaxConns caps the connections served at once. Zero means no cap. A
|
|
// connection offered above the cap closes at once, and the client
|
|
// sees an immediate end of file.
|
|
MaxConns int
|
|
|
|
live atomic.Int64
|
|
}
|
|
|
|
// transientAccept reports whether the accept error is survivable: the
|
|
// listener stays usable and the next accept is worth trying. A storm of
|
|
// aborted connections or a momentary file table exhaustion must not
|
|
// take the daemon down with every client on it.
|
|
func transientAccept(err error) bool {
|
|
return errors.Is(err, syscall.ECONNABORTED) ||
|
|
errors.Is(err, syscall.EMFILE) ||
|
|
errors.Is(err, syscall.ENFILE) ||
|
|
errors.Is(err, syscall.EAGAIN) ||
|
|
errors.Is(err, syscall.EINTR)
|
|
}
|
|
|
|
// Serve accepts connections on ln until the listener fails or ctx is
|
|
// cancelled. A cancellation closes the listener and Serve returns nil;
|
|
// a closed listener returns nil; a transient accept error is waited out;
|
|
// any other listener failure returns the error as is. In flight
|
|
// connections are not drained: NFS clients retry through their session
|
|
// replay caches, so an immediate return is the correct shutdown.
|
|
func (s *Server) Serve(ctx context.Context, ln net.Listener) error {
|
|
stop := make(chan struct{})
|
|
defer close(stop)
|
|
go func() {
|
|
select {
|
|
case <-ctx.Done():
|
|
ln.Close()
|
|
case <-stop:
|
|
}
|
|
}()
|
|
for {
|
|
conn, err := ln.Accept()
|
|
if err == nil {
|
|
if s.Handle == nil {
|
|
conn.Close()
|
|
continue
|
|
}
|
|
if s.MaxConns > 0 && s.live.Load() >= int64(s.MaxConns) {
|
|
conn.Close()
|
|
continue
|
|
}
|
|
s.live.Add(1)
|
|
go func() {
|
|
defer s.live.Add(-1)
|
|
s.Handle(conn)
|
|
}()
|
|
continue
|
|
}
|
|
if ctx.Err() != nil || errors.Is(err, net.ErrClosed) {
|
|
return nil
|
|
}
|
|
if transientAccept(err) {
|
|
time.Sleep(acceptRetryPause)
|
|
continue
|
|
}
|
|
return err
|
|
}
|
|
}
|