Find a file
Tim Gross 0a19fe3b60 fix multiple overflow errors in exponential backoff (#18200)
We use capped exponential backoff in several places in the code when handling
failures. The code we've copy-and-pasted all over has a check to see if the
backoff is greater than the limit, but this check happens after the bitshift and
we always increment the number of attempts. This causes an overflow with a
fairly small number of failures (ex. at one place I tested it occurs after only
24 iterations), resulting in a negative backoff which then never recovers. The
backoff becomes a tight loop consuming resources and/or DoS'ing a Nomad RPC
handler or an external API such as Vault. Note this doesn't occur in places
where we cap the number of iterations so the loop breaks (usually to return an
error), so long as the number of iterations is reasonable.

Introduce a helper with a check on the cap before the bitshift to avoid overflow in all 
places this can occur.

Fixes: #18199
Co-authored-by: stswidwinski <stan.swidwinski@gmail.com>
2023-08-15 14:39:09 -04:00
.changelog fix multiple overflow errors in exponential backoff (#18200) 2023-08-15 14:39:09 -04:00
.github Backport of e2e: modernize vaultcompat testing into release/1.6.x (#18182) 2023-08-09 09:25:32 -05:00
.release Prepare for next release 2023-07-21 13:49:46 +00:00
.semgrep update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
.tours
acl
api [dep] bump golang.org/x/exp (#18102) 2023-08-03 15:14:39 -04:00
ci
client fix multiple overflow errors in exponential backoff (#18200) 2023-08-15 14:39:09 -04:00
command fix multiple overflow errors in exponential backoff (#18200) 2023-08-15 14:39:09 -04:00
contributing update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
demo
dev
drivers fix multiple overflow errors in exponential backoff (#18200) 2023-08-15 14:39:09 -04:00
e2e Backport of e2e: modernize vaultcompat testing into release/1.6.x (#18182) 2023-08-09 09:25:32 -05:00
helper fix multiple overflow errors in exponential backoff (#18200) 2023-08-15 14:39:09 -04:00
integrations
internal/testing/apitests
jobspec Backport of feature: Add new field render_templates on restart block into release/1.6.x (#18094) 2023-07-28 13:54:00 -05:00
jobspec2 Backport of feature: Add new field render_templates on restart block into release/1.6.x (#18094) 2023-07-28 13:54:00 -05:00
lib
nomad fix multiple overflow errors in exponential backoff (#18200) 2023-08-15 14:39:09 -04:00
plugins
scheduler update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
scripts update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
terraform
testutil Backport of e2e: modernize vaultcompat testing into release/1.6.x (#18182) 2023-08-09 09:25:32 -05:00
tools
ui [ui] Job Variables page (#17964) (#18106) 2023-08-01 09:59:39 -04:00
version Prepare for next release 2023-07-21 13:49:46 +00:00
website docs: ampersand and bash backgrounding problem (#18175) 2023-08-14 15:13:19 -04:00
.copywrite.hcl
.git-blame-ignore-revs
.gitattributes
.gitignore
.go-version update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
.golangci.yml update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
.semgrepignore
build_linux_arm.go
CHANGELOG-unsupported.md
CHANGELOG.md
CODEOWNERS
Dockerfile
GNUmakefile update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
go.mod update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
go.sum update go1.21 (#18184) 2023-08-15 14:40:33 +02:00
LICENSE
main.go
main_test.go
README.md
Vagrantfile

Nomad License: MPL 2.0 Discuss

HashiCorp Nomad logo

Nomad is a simple and flexible workload orchestrator to deploy and manage containers (docker, podman), non-containerized applications (executable, Java), and virtual machines (qemu) across on-prem and clouds at scale.

Nomad is supported on Linux, Windows, and macOS. A commercial version of Nomad, Nomad Enterprise, is also available.

Nomad provides several key features:

  • Deploy Containers and Legacy Applications: Nomads flexibility as an orchestrator enables an organization to run containers, legacy, and batch applications together on the same infrastructure. Nomad brings core orchestration benefits to legacy applications without needing to containerize via pluggable task drivers.

  • Simple & Reliable: Nomad runs as a single binary and is entirely self contained - combining resource management and scheduling into a single system. Nomad does not require any external services for storage or coordination. Nomad automatically handles application, node, and driver failures. Nomad is distributed and resilient, using leader election and state replication to provide high availability in the event of failures.

  • Device Plugins & GPU Support: Nomad offers built-in support for GPU workloads such as machine learning (ML) and artificial intelligence (AI). Nomad uses device plugins to automatically detect and utilize resources from hardware devices such as GPU, FPGAs, and TPUs.

  • Federation for Multi-Region, Multi-Cloud: Nomad was designed to support infrastructure at a global scale. Nomad supports federation out-of-the-box and can deploy applications across multiple regions and clouds.

  • Proven Scalability: Nomad is optimistically concurrent, which increases throughput and reduces latency for workloads. Nomad has been proven to scale to clusters of 10K+ nodes in real-world production environments.

  • HashiCorp Ecosystem: Nomad integrates seamlessly with Terraform, Consul, Vault for provisioning, service discovery, and secrets management.

Quick Start

Testing

See Learn: Getting Started for instructions on setting up a local Nomad cluster for non-production use.

Optionally, find Terraform manifests for bringing up a development Nomad cluster on a public cloud in the terraform directory.

Production

See Learn: Nomad Reference Architecture for recommended practices and a reference architecture for production deployments.

Documentation

Full, comprehensive documentation is available on the Nomad website: https://www.nomadproject.io/docs

Guides are available on HashiCorp Learn.

Roadmap

A timeline of major features expected for the next release or two can be found in the Public Roadmap.

This roadmap is a best guess at any given point, and both release dates and projects in each release are subject to change. Do not take any of these items as commitments, especially ones later than one major release away.

Contributing

See the contributing directory for more developer documentation.