Files
keepalive/adapter/couchbase.go
T
tiennm99 47afb85093 fix: close remaining secret leaks, timeout gaps and config blind spots
- Generated service names come only from a URL host, a key=value DSN's
  host=, or a MySQL tcp() address, so a password in a key=value DSN can no
  longer end up in the name printed on every log line.
- connect_timeout is added only to postgres:// and postgresql:// URLs
  (parsed, so it never lands after a fragment) or as a key=value token, never
  glued onto a key=value value containing "://".
- Driver parse errors that quote password fragments (mongo escape errors,
  lib/pq's missing "=" error) are replaced with generic hints.
- MongoDB keeps its client only after a successful connect, so a failed
  connect is not disconnected twice.
- Couchbase gets ready_timeout plus 1 minute to connect, so raising
  ready_timeout takes effect.
- Shutdown waits at most 7 seconds, inside Docker's 10-second grace period.
- Each adapter declares its config keys; unknown keys anywhere in the file,
  including under config, log a warning without blocking start.
2026-10-09 12:36:21 +07:00

134 lines
3.3 KiB
Go

package adapter
import (
"context"
"time"
"github.com/couchbase/gocb/v2"
)
func init() {
ConfigKeys["couchbase"] = []string{"connection_string", "username", "password", "bucket_name", "scope_name", "collection_name", "ready_timeout", "bucket_ram_quota_mb"}
Registry["couchbase"] = func(cfg Config) (Adapter, error) {
conn, err := cfg.Required("connection_string")
if err != nil {
return nil, err
}
user, err := cfg.Required("username")
if err != nil {
return nil, err
}
pass, err := cfg.Required("password")
if err != nil {
return nil, err
}
bucket, err := cfg.Required("bucket_name")
if err != nil {
return nil, err
}
scope, err := cfg.Required("scope_name")
if err != nil {
return nil, err
}
collName, err := cfg.Required("collection_name")
if err != nil {
return nil, err
}
readyTimeout, err := cfg.OptionalDuration("ready_timeout", defaultCouchbaseReadyTimeout)
if err != nil {
return nil, err
}
bucketRAMQuotaMB, err := cfg.OptionalUint64("bucket_ram_quota_mb", 0)
if err != nil {
return nil, err
}
return &couchbaseAdapter{
conn: conn,
user: user,
pass: pass,
bucket: bucket,
scope: scope,
collName: collName,
docID: cfg.Optional("counter_key", "counter"),
readyTimeout: readyTimeout,
bucketRAMQuotaMB: bucketRAMQuotaMB,
}, nil
}
}
type couchbaseAdapter struct {
cluster *gocb.Cluster
coll *gocb.Collection
conn string
user string
pass string
bucket string
scope string
collName string
docID string
readyTimeout time.Duration
bucketRAMQuotaMB uint64
}
func (a *couchbaseAdapter) Connect(ctx context.Context) error {
opts := gocb.ClusterOptions{
Authenticator: gocb.PasswordAuthenticator{Username: a.user, Password: a.pass},
}
if err := opts.ApplyProfile(gocb.ClusterConfigProfileWanDevelopment); err != nil {
return err
}
cluster, err := gocb.Connect(a.conn, opts)
if err != nil {
return err
}
connected := false
defer func() {
if !connected {
cluster.Close(nil)
}
}()
if err := a.ensureBucket(ctx, cluster); err != nil {
return err
}
b := cluster.Bucket(a.bucket)
if err := b.WaitUntilReady(a.readyTimeout, &gocb.WaitUntilReadyOptions{Context: ctx}); err != nil {
return a.bucketReadyError(err)
}
if err := a.ensureScopeAndCollection(ctx, b); err != nil {
return err
}
a.coll = b.Scope(a.scope).Collection(a.collName)
if err := a.ensureDocument(ctx); err != nil {
return err
}
// Set only on success: the deferred cleanup closes a failed cluster, and
// Close must not close it again.
a.cluster = cluster
connected = true
return nil
}
func (a *couchbaseAdapter) Increment(ctx context.Context) (int64, error) {
// One atomic server-side increment; ensureDocument seeded the counter.
res, err := a.coll.Binary().Increment(a.docID, &gocb.IncrementOptions{Delta: 1, Initial: 1, Context: ctx})
if err != nil {
return 0, err
}
return int64(res.Content()), nil
}
// ConnectTimeout leaves room for ready_timeout, which bounds each of the
// bucket, scope, collection and document setup steps, plus a margin.
func (a *couchbaseAdapter) ConnectTimeout() time.Duration {
return a.readyTimeout + time.Minute
}
func (a *couchbaseAdapter) Close(_ context.Context) error {
if a.cluster == nil {
return nil
}
return a.cluster.Close(nil)
}