Project

General

Profile

Crunch2 installation » History » Version 16

Brett Smith, 08/08/2016 02:46 PM

1 1 Tom Clegg
h1. Crunch2 installation
2
3
(DRAFT -- when ready, this will move to doc.arvados.org→install)
4
5 2 Tom Clegg
{{toc}}
6
7
h2. Set up a crunch-dispatch service
8
9
Currently, dispatching containers via SLURM is supported.
10
11 9 Brett Smith
Install crunch-dispatch-slurm on a node that can submit SLURM jobs. This can be any node appropriately configured to connect to the SLURM controller node.
12 2 Tom Clegg
13
<pre><code class="shell">
14 15 Brett Smith
$ sudo apt-get install crunch-dispatch-slurm
15 2 Tom Clegg
</code></pre>
16
17 9 Brett Smith
Create a privileged Arvados API token for use by the dispatcher. If you have multiple dispatch processes, you should give each one a different token.
18 2 Tom Clegg
19
<pre><code class="shell">
20
apiserver:~$ cd /var/www/arvados-api/current
21
apiserver:/var/www/arvados-api/current$ sudo -u webserver-user RAILS_ENV=production bundle exec script/create_superuser_token.rb
22
zzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzz
23
</code></pre>
24
25 16 Brett Smith
Configure crunch-dispatch-slurm to authenticate to your API server using the token you just generated:
26 1 Tom Clegg
27 15 Brett Smith
<pre><code class="shell">
28 16 Brett Smith
$ sudo mkdir -p /etc/arvados
29
$ sudo install -d -m 0700 /etc/arvados/crunch-dispatch-slurm
30 1 Tom Clegg
</code></pre>
31
32 16 Brett Smith
Edit @/etc/arvados/crunch-dispatch-slurm/config.json@ to look like this:
33 2 Tom Clegg
34 16 Brett Smith
<pre><code class="json">{
35
  "Client": {
36
    "APIHost": "zzzzz.arvadosapi.com",
37
    "AuthToken": "zzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzzz",
38
  }
39
}
40
</code></pre>
41 6 Tom Clegg
42 10 Tom Clegg
Ensure the @crunch@ user on the dispatch node can run Docker containers on SLURM compute nodes via @srun@ or @sbatch@. Depending on your SLURM installation, this may require that the @crunch@ user exist -- and have the same UID, GID, and home directory -- on the dispatch node and all SLURM compute nodes.
43
44 15 Brett Smith
For example, this should print "OK" (possibly after some extra status/debug messages from SLURM and Docker):
45 10 Tom Clegg
46
<pre>
47
crunch@dispatch:~$ srun -N1 docker run busybox echo OK
48
</pre>
49
50 2 Tom Clegg
51 3 Tom Clegg
h2. Install crunch-run on all compute nodes
52 1 Tom Clegg
53 3 Tom Clegg
<pre><code class="shell">
54
sudo apt-get install crunch-run
55
</code></pre>
56
57 1 Tom Clegg
h2. Enable cgroup accounting on all compute nodes
58
59 4 Tom Clegg
(This requirement isn't new for crunch2/containers, but it seems to be a FAQ. The Docker install guide mentions it's optional and performance-degrading, so it's not too surprising if people skip it. Perhaps we should say why/when it's a good idea to enable it?)
60
61 3 Tom Clegg
Check https://docs.docker.com/engine/installation/linux/ for instructions specific to your distribution.
62
63
For example, on Ubuntu:
64
# Update @/etc/default/grub@ to include: <pre>
65
GRUB_CMDLINE_LINUX="cgroup_enable=memory swapaccount=1"
66
</pre>
67
# @sudo update-grub@
68
# Reboot
69 2 Tom Clegg
70 9 Brett Smith
h2. Configure Docker
71 1 Tom Clegg
72 4 Tom Clegg
Unchanged from current docs.
73
74 12 Tom Clegg
h2. Configure SLURM cgroups
75
76
In setups where SLURM uses cgroups to impose resource limits, Crunch can be configured to run its Docker containers inside the cgroup assigned by SLURM. (With the default configuration, docker runs all containers in the "docker" cgroup, which means the SLURM resource limits only apply to crunch-run and arv-mount processes, while the container itself has a separate set of limits imposed by Docker.)
77
78
To configure SLURM to use cgroups for resource limits, add to @/etc/slurm-llnl/slurm.conf@:
79
80
<pre>
81
TaskPlugin=task/cgroup
82
</pre>
83
84
Add to @/etc/slurm-llnl/cgroup.conf@:
85
86
<pre>
87
CgroupMountpoint=/sys/fs/cgroup
88
ConstrainCores=yes
89
ConstrainDevices=yes
90
ConstrainRAMSpace=yes
91
ConstrainSwapSpace=yes
92
</pre>
93
94
(See slurm.conf(5) and cgroup.conf(5) for more information.)
95
96
Add the @-cgroup-parent-subsystem=memory@ option to @/etc/arvados/crunch-dispatch-slurm/config.json@ on the dispatch node:
97
98
<pre>
99
{
100
  "CrunchRunCommand": ["crunch-run", "-cgroup-parent-subsystem=memory"]
101
}
102
</pre>
103
104
The choice of subsystem ("memory" in this example) must correspond to one of the resource types enabled in @cgroup.conf@. Limits for other resource types will also be respected: the specified subsystem is singled out only to let Crunch determine the name of the cgroup provided by SLURM.
105
106
Restart crunch-dispatch-slurm to load the new configuration.
107
108
<pre>
109
root@dispatch:~# sv term /etc/sv/crunch-dispatch-slurm
110
</pre>
111
112 1 Tom Clegg
h2. Test the dispatcher
113 4 Tom Clegg
114 13 Brett Smith
On the dispatch node, start monitoring the crunch-dispatch-slurm logs:
115 4 Tom Clegg
116
<pre><code class="shell">
117 13 Brett Smith
dispatch-node$ sudo journalctl -fu crunch-dispatch-slurm.service
118 5 Tom Clegg
</code></pre>
119
120 11 Tom Clegg
On a shell VM, run a trivial container.
121
122 5 Tom Clegg
<pre><code class="shell">
123 1 Tom Clegg
user@shellvm:~$ arv container_request create --container-request '{
124
  "name":            "test",
125 5 Tom Clegg
  "state":           "Committed",
126
  "priority":        1,
127 13 Brett Smith
  "container_image": "arvados/jobs:latest",
128
  "command":         ["echo", "Hello, Crunch!"],
129 4 Tom Clegg
  "output_path":     "/out",
130 1 Tom Clegg
  "mounts": {
131
    "/out": {
132
      "kind":        "tmp",
133
      "capacity":    1000
134
    }
135 13 Brett Smith
  },
136
  "runtime_constraints": {
137
    "vcpus": 1,
138
    "ram": 8388608
139 1 Tom Clegg
  }
140
}'
141
</code></pre>
142
143
Measures of success:
144 13 Brett Smith
* Dispatcher log entries will indicate it has submitted a SLURM job.
145
  <pre>2016-08-05_13:52:54.73665 2016/08/05 13:52:54 Monitoring container zzzzz-dz642-hdp2vpu9nq14tx0 started
146
2016-08-05_13:53:04.54148 2016/08/05 13:53:04 About to submit queued container zzzzz-dz642-hdp2vpu9nq14tx0
147
2016-08-05_13:53:04.55305 2016/08/05 13:53:04 sbatch succeeded: Submitted batch job 8102
148
</pre>
149
* Before the container finishes, SLURM's @squeue@ command will show the new job in the list of queued/running jobs.
150
  <pre>$ squeue --long
151
Fri Aug  5 13:57:50 2016
152
  JOBID PARTITION     NAME     USER    STATE       TIME TIMELIMIT  NODES NODELIST(REASON)
153
   8103   compute zzzzz-dz   crunch  RUNNING       1:56 UNLIMITED      1 compute0
154 14 Brett Smith
</pre> The job's name corresponds to the UUID of the container that fulfills this container request.  You can get more information about it by running, e.g., @scontrol show job Name=<UUID>@.
155 13 Brett Smith
* When the container finishes, the dispatcher will log that, with the final result:
156
  <pre>2016-08-05_13:53:14.68780 2016/08/05 13:53:14 Container zzzzz-dz642-hdp2vpu9nq14tx0 now in state "Complete" with locked_by_uuid ""
157
2016-08-05_13:53:14.68782 2016/08/05 13:53:14 Monitoring container zzzzz-dz642-hdp2vpu9nq14tx0 finished
158
</pre>
159 8 Tom Clegg
* After the container finishes, @arv container list --limit 1@ will indicate the outcome: <pre>
160
{
161
 ...
162 7 Tom Clegg
 "exit_code":0,
163 13 Brett Smith
 "log":"a01df2f7e5bc1c2ad59c60a837e90dc6+166",
164
 "output":"d41d8cd98f00b204e9800998ecf8427e+0",
165 1 Tom Clegg
 "state":"Complete",
166
 ...
167 13 Brett Smith
}
168 14 Brett Smith
</pre> You can use standard Keep tools to view the job's output and logs from their corresponding fields.  For example, to see the logs:
169 13 Brett Smith
  <pre>$ arv keep ls a01df2f7e5bc1c2ad59c60a837e90dc6+166
170
./crunch-run.txt
171
./stderr.txt
172
./stdout.txt
173
$ arv keep get a01df2f7e5bc1c2ad59c60a837e90dc6+166/stdout.txt
174
2016-08-05T13:53:06.201011Z Hello, Crunch!
175 7 Tom Clegg
</pre>