solana/ci
Michael Vines 3eaa826ad9 Suppress cargo audit failure for `difference` crate, there's no newer crate to upgrade to yet 2021-01-08 20:20:34 +00:00
..
docker-rust Upgrade to Rust 1.48.0 2020-12-14 08:03:29 -08:00
docker-rust-nightly Upgrade to Rust 1.48.0 2020-12-14 08:03:29 -08:00
semver_bash
setup-new-buildkite-agent CI: Warn when setting up a buildkite agent with no SSH authorized_keys 2020-10-14 17:07:20 -06:00
.gitignore
README.md Docs: Clarify where new buildkite agent SSH keys need added 2020-10-27 03:40:05 +00:00
_ Ignore RUSTSEC-2020-0006 for the moment (#9057) 2020-03-24 20:10:20 -07:00
buildkite-pipeline.sh Revert "Temporarily disable coverage" 2020-12-14 22:17:33 +00:00
buildkite-secondary.yml Remove move_loader and librapay (#11184) 2020-07-23 15:08:59 -06:00
channel-info.sh CI: Don't overwrite pre-existing $CHANNEL 2020-09-11 22:11:55 +00:00
check-ssh-keys.sh
crate-version.sh
dependabot-pr.sh Backpropagate Cargo.lock updates to all lock files (#9180) 2020-04-21 10:07:29 +09:00
dependabot-updater.sh Follow new dependabot's commit author name (#14091) 2020-12-13 02:27:59 +09:00
docker-run.sh Only force up-to-date lock files on edge 2020-06-18 18:23:31 +00:00
env.sh Fix Travis PR detection environment (#10974) 2020-07-09 14:30:47 -06:00
format-url.sh
hoover.sh
localnet-sanity.sh multinode-demo/faucet.sh is no longer required (#10129) 2020-05-19 20:07:30 -07:00
nits.sh Initial population of solana-program-sdk 2020-10-24 08:37:55 -07:00
order-crates-for-publishing.py CI: Fix crate publication 2020-10-12 22:19:24 +00:00
publish-bpf-sdk.sh Check for DO_NOT_PUBLISH_TAR before uploading to CI (#13700) 2020-11-20 08:27:34 -08:00
publish-crate.sh CI: Use branch-versioned cargo throughout 2020-11-05 05:05:57 +00:00
publish-metrics-dashboard.sh Remove some TODOs (#6488) 2019-10-21 22:25:06 -07:00
publish-tarball.sh Check for DO_NOT_PUBLISH_TAR before uploading to CI (#13700) 2020-11-20 08:27:34 -08:00
run-sanity.sh Increase timeout 2020-08-05 14:27:12 -07:00
rust-version.sh Upgrade to Rust 1.48.0 2020-12-14 08:03:29 -08:00
shellcheck.sh Pull a fixed and working version of shellcheck docker imaage (#6975) 2019-11-15 10:55:25 -05:00
test-bench.sh CI: Use branch-versioned cargo throughout 2020-11-05 05:05:57 +00:00
test-checks.sh Suppress cargo audit failure for `difference` crate, there's no newer crate to upgrade to yet 2021-01-08 20:20:34 +00:00
test-coverage.sh Update to rust 1.44.0 (#10585) 2020-06-17 01:32:16 +09:00
test-local-cluster.sh
test-sanity.sh fix running local test-sanity (#13482) 2020-11-09 15:03:44 -08:00
test-stable-perf.sh
test-stable.sh CI: Use branch-versioned cargo throughout 2020-11-05 05:05:57 +00:00
upload-ci-artifact.sh Check for DO_NOT_PUBLISH_TAR before uploading to CI (#13700) 2020-11-20 08:27:34 -08:00
upload-github-release-asset.sh Make curl verbose when uploading assets to github (#10757) 2020-06-24 00:27:55 +00:00

README.md

Our CI infrastructure is built around BuildKite with some additional GitHub integration provided by https://github.com/mvines/ci-gate

Agent Queues

We define two Agent Queues: queue=default and queue=cuda. The default queue should be favored and runs on lower-cost CPU instances. The cuda queue is only necessary for running tests that depend on GPU (via CUDA) access -- CUDA builds may still be run on the default queue, and the buildkite artifact system used to transfer build products over to a GPU instance for testing.

Buildkite Agent Management

Manual Node Setup for Colocated Hardware

This section describes how to set up a new machine that does not have a pre-configured image with all the requirements installed. Used for custom-built hardware at a colocation or office facility. Also works for vanilla Ubuntu cloud instances.

Pre-Requisites

  • Install Ubuntu 18.04 LTS Server
  • Log in as a local or remote user with sudo privileges

Install Core Requirements

Non-GPU enabled machines
sudo ./setup-new-buildkite-agent/setup-new-machine.sh
GPU-enabled machines
  • 1 or more NVIDIA GPUs should be installed in the machine (tested with 2080Ti)
sudo CUDA=1 ./setup-new-buildkite-agent/setup-new-machine.sh

Configure Node for Buildkite-agent based CI

  • Install buildkite-agent and set up it user environment with:
sudo ./setup-new-buildkite-agent/setup-buildkite.sh
  • Copy the pubkey contents from ~buildkite-agent/.ssh/id_ecdsa.pub and add the pubkey as an authorized SSH key on github.
    • In net/scripts/solana-user-authorized_keys.sh
    • Bug mvines to add it to the "solana-grimes" github user
  • Edit /etc/buildkite-agent/buildkite-agent.cfg and/or /etc/systemd/system/buildkite-agent@* to the desired configuration of the agent(s)
  • Copy ejson keys from another CI node at /opt/ejson/keys/ to the same location on the new node.
  • Start the new agent(s) with sudo systemctl enable --now buildkite-agent

Reference

This section contains details regarding previous CI setups that have been used, and that we may return to one day.

Buildkite Azure Setup

Create a new Azure-based "queue=default" agent by running the following command:

$ az vm create \
   --resource-group ci \
   --name XYZ \
   --image boilerplate \
   --admin-username $(whoami) \
   --ssh-key-value ~/.ssh/id_rsa.pub

The "boilerplate" image contains all the required packages pre-installed so the new machine should immediately show up in the Buildkite agent list once it has been provisioned and be ready for service.

Creating a "queue=cuda" agent follows the same process but additionally:

  1. Resize the image from the Azure port to include a GPU
  2. Edit the tags field in /etc/buildkite-agent/buildkite-agent.cfg to tags="queue=cuda,queue=default" and decrease the value of the priority field by one

Updating the CI Disk Image

  1. Create a new VM Instance as described above
  2. Modify it as required
  3. When ready, ssh into the instance and start a root shell with sudo -i. Then prepare it for deallocation by running: waagent -deprovision+user; cd /etc; ln -s ../run/systemd/resolve/stub-resolv.conf resolv.conf
  4. Run az vm deallocate --resource-group ci --name XYZ
  5. Run az vm generalize --resource-group ci --name XYZ
  6. Run az image create --resource-group ci --source XYZ --name boilerplate
  7. Goto the ci resource group in the Azure portal and remove all resources with the XYZ name in them

Buildkite AWS CloudFormation Setup

AWS CloudFormation is currently inactive, although it may be restored in the future

AWS CloudFormation can be used to scale machines up and down based on the current CI load. If no machine is currently running it can take up to 60 seconds to spin up a new instance, please remain calm during this time.

AMI

We use a custom AWS AMI built via https://github.com/solana-labs/elastic-ci-stack-for-aws/tree/solana/cuda.

Use the following process to update this AMI as dependencies change:

$ export AWS_ACCESS_KEY_ID=my_access_key
$ export AWS_SECRET_ACCESS_KEY=my_secret_access_key
$ git clone https://github.com/solana-labs/elastic-ci-stack-for-aws.git -b solana/cuda
$ cd elastic-ci-stack-for-aws/
$ make build
$ make build-ami

Watch for the "amazon-ebs: AMI:" log message to extract the name of the new AMI. For example:

amazon-ebs: AMI: ami-07118545e8b4ce6dc

The new AMI should also now be visible in your EC2 Dashboard. Go to the desired AWS CloudFormation stack, update the ImageId field to the new AMI id, and apply the stack changes.

Buildkite GCP Setup

CI runs on Google Cloud Platform via two Compute Engine Instance groups: ci-default and ci-cuda. Autoscaling is currently disabled and the number of VM Instances in each group is manually adjusted.

Updating a CI Disk Image

Each Instance group has its own disk image, ci-default-vX and ci-cuda-vY, where X and Y are incremented each time the image is changed.

The manual process to update a disk image is as follows:

  1. Create a new VM Instance using the disk image to modify.
  2. Once the VM boots, ssh to it and modify the disk as desired.
  3. Stop the VM Instance running the modified disk. Remember the name of the VM disk
  4. From another machine, gcloud auth login, then create a new Disk Image based off the modified VM Instance:
 $ gcloud compute images create ci-default-$(date +%Y%m%d%H%M) --source-disk xxx --source-disk-zone us-east1-b --family ci-default

or

  $ gcloud compute images create ci-cuda-$(date +%Y%m%d%H%M) --source-disk xxx --source-disk-zone us-east1-b --family ci-cuda
  1. Delete the new VM instance.
  2. Go to the Instance templates tab, find the existing template named ci-default-vX or ci-cuda-vY and select it. Use the "Copy" button to create a new Instance template called ci-default-vX+1 or ci-cuda-vY+1 with the newly created Disk image.
  3. Go to the Instance Groups tag and find the applicable group, ci-default or ci-cuda. Edit the Instance Group in two steps: (a) Set the number of instances to 0 and wait for them all to terminate, (b) Update the Instance template and restore the number of instances to the original value.
  4. Clean up the previous version by deleting it from Instance Templates and Images.