Files
tiennm99 47afb85093 fix: close remaining secret leaks, timeout gaps and config blind spots
- Generated service names come only from a URL host, a key=value DSN's
  host=, or a MySQL tcp() address, so a password in a key=value DSN can no
  longer end up in the name printed on every log line.
- connect_timeout is added only to postgres:// and postgresql:// URLs
  (parsed, so it never lands after a fragment) or as a key=value token, never
  glued onto a key=value value containing "://".
- Driver parse errors that quote password fragments (mongo escape errors,
  lib/pq's missing "=" error) are replaced with generic hints.
- MongoDB keeps its client only after a successful connect, so a failed
  connect is not disconnected twice.
- Couchbase gets ready_timeout plus 1 minute to connect, so raising
  ready_timeout takes effect.
- Shutdown waits at most 7 seconds, inside Docker's 10-second grace period.
- Each adapter declares its config keys; unknown keys anywhere in the file,
  including under config, log a warning without blocking start.
2026-10-09 12:36:21 +07:00

57 lines
1.1 KiB
Go

package main
import (
"context"
"log"
"os"
"os/signal"
"sync"
"syscall"
"time"
)
func main() {
configPath, err := defaultConfigFile()
if err != nil {
log.Fatalf("load config: %v", err)
}
services, err := loadConfigFile(configPath)
if err != nil {
log.Fatalf("load config: %v", err)
}
ctx, cancel := context.WithCancel(context.Background())
var wg sync.WaitGroup
for _, svcConfig := range services {
runService(ctx, &wg, svcConfig)
}
sigCh := make(chan os.Signal, 1)
signal.Notify(sigCh, syscall.SIGINT, syscall.SIGTERM)
<-sigCh
cancel()
waitShutdown(&wg, shutdownTimeout)
}
// shutdownTimeout stays under Docker's default 10s stop grace period. A
// driver stuck in a handshake that ignores cancellation (lib/pq) would
// otherwise hold the process until Docker sends SIGKILL.
const shutdownTimeout = 7 * time.Second
func waitShutdown(wg *sync.WaitGroup, timeout time.Duration) bool {
done := make(chan struct{})
go func() {
wg.Wait()
close(done)
}()
select {
case <-done:
return true
case <-time.After(timeout):
log.Printf("shutdown: services still stopping after %s; exiting", timeout)
return false
}
}