2015-01-21 11:07:45 -08:00
|
|
|
// Copyright 2013 The Prometheus Authors
|
2013-04-24 02:51:40 -07:00
|
|
|
// Licensed under the Apache License, Version 2.0 (the "License");
|
|
|
|
// you may not use this file except in compliance with the License.
|
|
|
|
// You may obtain a copy of the License at
|
|
|
|
//
|
|
|
|
// http://www.apache.org/licenses/LICENSE-2.0
|
|
|
|
//
|
|
|
|
// Unless required by applicable law or agreed to in writing, software
|
|
|
|
// distributed under the License is distributed on an "AS IS" BASIS,
|
|
|
|
// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
|
|
|
|
// See the License for the specific language governing permissions and
|
|
|
|
// limitations under the License.
|
|
|
|
|
|
|
|
package rules
|
|
|
|
|
|
|
|
import (
|
2013-04-26 07:02:52 -07:00
|
|
|
"fmt"
|
2013-06-13 07:10:05 -07:00
|
|
|
"html/template"
|
|
|
|
"sync"
|
|
|
|
"time"
|
|
|
|
|
2013-06-25 05:02:27 -07:00
|
|
|
clientmodel "github.com/prometheus/client_golang/model"
|
|
|
|
|
2015-03-30 10:43:19 -07:00
|
|
|
"github.com/prometheus/prometheus/promql"
|
2015-05-29 04:30:30 -07:00
|
|
|
"github.com/prometheus/prometheus/util/strutil"
|
2013-04-24 02:51:40 -07:00
|
|
|
)
|
|
|
|
|
2013-06-25 05:02:27 -07:00
|
|
|
const (
|
2014-12-10 07:16:49 -08:00
|
|
|
// AlertMetricName is the metric name for synthetic alert timeseries.
|
2015-05-25 12:16:32 -07:00
|
|
|
alertMetricName clientmodel.LabelValue = "ALERTS"
|
2013-06-25 05:02:27 -07:00
|
|
|
|
2014-12-10 07:16:49 -08:00
|
|
|
// AlertNameLabel is the label name indicating the name of an alert.
|
2015-05-25 12:16:32 -07:00
|
|
|
alertNameLabel clientmodel.LabelName = "alertname"
|
2014-12-10 07:16:49 -08:00
|
|
|
// AlertStateLabel is the label name indicating the state of an alert.
|
2015-05-25 12:16:32 -07:00
|
|
|
alertStateLabel clientmodel.LabelName = "alertstate"
|
2013-06-25 05:02:27 -07:00
|
|
|
)
|
|
|
|
|
2014-12-10 07:16:49 -08:00
|
|
|
// AlertState denotes the state of an active alert.
|
2013-06-13 07:10:05 -07:00
|
|
|
type AlertState int
|
2013-04-24 02:51:40 -07:00
|
|
|
|
2013-06-13 07:10:05 -07:00
|
|
|
func (s AlertState) String() string {
|
2013-04-24 02:51:40 -07:00
|
|
|
switch s {
|
2015-05-25 12:16:32 -07:00
|
|
|
case StateInactive:
|
2013-06-13 07:10:05 -07:00
|
|
|
return "inactive"
|
2015-05-25 12:16:32 -07:00
|
|
|
case StatePending:
|
2013-05-15 22:38:31 -07:00
|
|
|
return "pending"
|
2015-05-25 12:16:32 -07:00
|
|
|
case StateFiring:
|
2013-05-15 22:38:31 -07:00
|
|
|
return "firing"
|
|
|
|
default:
|
|
|
|
panic("undefined")
|
2013-04-24 02:51:40 -07:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
|
|
|
const (
|
2014-12-10 07:16:49 -08:00
|
|
|
// Inactive alerts are neither firing nor pending.
|
2015-05-25 12:16:32 -07:00
|
|
|
StateInactive AlertState = iota
|
2014-12-10 07:16:49 -08:00
|
|
|
// Pending alerts have been active for less than the configured
|
|
|
|
// threshold duration.
|
2015-05-25 12:16:32 -07:00
|
|
|
StatePending
|
2014-12-10 07:16:49 -08:00
|
|
|
// Firing alerts have been active for longer than the configured
|
|
|
|
// threshold duration.
|
2015-05-25 12:16:32 -07:00
|
|
|
StateFiring
|
2013-04-24 02:51:40 -07:00
|
|
|
)
|
|
|
|
|
2013-06-13 07:10:05 -07:00
|
|
|
// Alert is used to track active (pending/firing) alerts over time.
|
|
|
|
type Alert struct {
|
2013-04-24 02:51:40 -07:00
|
|
|
// The name of the alert.
|
2013-06-13 07:10:05 -07:00
|
|
|
Name string
|
2013-04-24 02:51:40 -07:00
|
|
|
// The vector element labelset triggering this alert.
|
2013-06-25 05:02:27 -07:00
|
|
|
Labels clientmodel.LabelSet
|
2014-12-10 07:16:49 -08:00
|
|
|
// The state of the alert (Pending or Firing).
|
2013-06-13 07:10:05 -07:00
|
|
|
State AlertState
|
2014-12-10 07:16:49 -08:00
|
|
|
// The time when the alert first transitioned into Pending state.
|
Use custom timestamp type for sample timestamps and related code.
So far we've been using Go's native time.Time for anything related to sample
timestamps. Since the range of time.Time is much bigger than what we need, this
has created two problems:
- there could be time.Time values which were out of the range/precision of the
time type that we persist to disk, therefore causing incorrectly ordered keys.
One bug caused by this was:
https://github.com/prometheus/prometheus/issues/367
It would be good to use a timestamp type that's more closely aligned with
what the underlying storage supports.
- sizeof(time.Time) is 192, while Prometheus should be ok with a single 64-bit
Unix timestamp (possibly even a 32-bit one). Since we store samples in large
numbers, this seriously affects memory usage. Furthermore, copying/working
with the data will be faster if it's smaller.
*MEMORY USAGE RESULTS*
Initial memory usage comparisons for a running Prometheus with 1 timeseries and
100,000 samples show roughly a 13% decrease in total (VIRT) memory usage. In my
tests, this advantage for some reason decreased a bit the more samples the
timeseries had (to 5-7% for millions of samples). This I can't fully explain,
but perhaps garbage collection issues were involved.
*WHEN TO USE THE NEW TIMESTAMP TYPE*
The new clientmodel.Timestamp type should be used whenever time
calculations are either directly or indirectly related to sample
timestamps.
For example:
- the timestamp of a sample itself
- all kinds of watermarks
- anything that may become or is compared to a sample timestamp (like the timestamp
passed into Target.Scrape()).
When to still use time.Time:
- for measuring durations/times not related to sample timestamps, like duration
telemetry exporting, timers that indicate how frequently to execute some
action, etc.
*NOTE ON OPERATOR OPTIMIZATION TESTS*
We don't use operator optimization code anymore, but it still lives in
the code as dead code. It still has tests, but I couldn't get all of them to
pass with the new timestamp format. I commented out the failing cases for now,
but we should probably remove the dead code soon. I just didn't want to do that
in the same change as this.
Change-Id: I821787414b0debe85c9fffaeb57abd453727af0f
2013-10-28 06:35:02 -07:00
|
|
|
ActiveSince clientmodel.Timestamp
|
2013-06-13 07:10:05 -07:00
|
|
|
// The value of the alert expression for this vector element.
|
2013-06-25 05:02:27 -07:00
|
|
|
Value clientmodel.SampleValue
|
2013-04-24 02:51:40 -07:00
|
|
|
}
|
|
|
|
|
|
|
|
// sample returns a Sample suitable for recording the alert.
|
2015-03-30 10:43:19 -07:00
|
|
|
func (a Alert) sample(timestamp clientmodel.Timestamp, value clientmodel.SampleValue) *promql.Sample {
|
2013-06-25 05:02:27 -07:00
|
|
|
recordedMetric := clientmodel.Metric{}
|
2013-06-13 07:10:05 -07:00
|
|
|
for label, value := range a.Labels {
|
2013-04-24 02:51:40 -07:00
|
|
|
recordedMetric[label] = value
|
|
|
|
}
|
|
|
|
|
2015-05-25 12:16:32 -07:00
|
|
|
recordedMetric[clientmodel.MetricNameLabel] = alertMetricName
|
|
|
|
recordedMetric[alertNameLabel] = clientmodel.LabelValue(a.Name)
|
|
|
|
recordedMetric[alertStateLabel] = clientmodel.LabelValue(a.State.String())
|
2013-04-24 02:51:40 -07:00
|
|
|
|
2015-03-30 10:43:19 -07:00
|
|
|
return &promql.Sample{
|
2014-12-08 07:55:49 -08:00
|
|
|
Metric: clientmodel.COWMetric{
|
|
|
|
Metric: recordedMetric,
|
|
|
|
Copied: true,
|
|
|
|
},
|
2013-04-24 02:51:40 -07:00
|
|
|
Value: value,
|
|
|
|
Timestamp: timestamp,
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2014-12-10 07:16:49 -08:00
|
|
|
// An AlertingRule generates alerts from its vector expression.
|
2013-04-24 02:51:40 -07:00
|
|
|
type AlertingRule struct {
|
|
|
|
// The name of the alert.
|
2013-04-05 09:03:45 -07:00
|
|
|
name string
|
|
|
|
// The vector expression from which to generate alerts.
|
2015-05-25 12:16:32 -07:00
|
|
|
vector promql.Expr
|
2013-04-24 02:51:40 -07:00
|
|
|
// The duration for which a labelset needs to persist in the expression
|
2014-12-10 07:16:49 -08:00
|
|
|
// output vector before an alert transitions from Pending to Firing state.
|
2013-04-24 02:51:40 -07:00
|
|
|
holdDuration time.Duration
|
|
|
|
// Extra labels to attach to the resulting alert sample vectors.
|
2015-05-25 12:16:32 -07:00
|
|
|
labels clientmodel.LabelSet
|
2013-07-30 08:18:07 -07:00
|
|
|
// Short alert summary, suitable for email subjects.
|
2015-05-25 12:16:32 -07:00
|
|
|
summary string
|
2013-07-30 08:18:07 -07:00
|
|
|
// More detailed alert description.
|
2015-05-25 12:16:32 -07:00
|
|
|
description string
|
2013-06-13 07:10:05 -07:00
|
|
|
|
|
|
|
// Protects the below.
|
|
|
|
mutex sync.Mutex
|
2014-12-10 07:16:49 -08:00
|
|
|
// A map of alerts which are currently active (Pending or Firing), keyed by
|
2013-04-24 02:51:40 -07:00
|
|
|
// the fingerprint of the labelset they correspond to.
|
2013-06-25 05:02:27 -07:00
|
|
|
activeAlerts map[clientmodel.Fingerprint]*Alert
|
2013-04-24 02:51:40 -07:00
|
|
|
}
|
|
|
|
|
2015-05-25 12:16:32 -07:00
|
|
|
// NewAlertingRule constructs a new AlertingRule.
|
|
|
|
func NewAlertingRule(
|
|
|
|
name string,
|
|
|
|
vector promql.Expr,
|
|
|
|
holdDuration time.Duration,
|
|
|
|
labels clientmodel.LabelSet,
|
|
|
|
summary string,
|
|
|
|
description string,
|
|
|
|
) *AlertingRule {
|
|
|
|
return &AlertingRule{
|
|
|
|
name: name,
|
|
|
|
vector: vector,
|
|
|
|
holdDuration: holdDuration,
|
|
|
|
labels: labels,
|
|
|
|
summary: summary,
|
|
|
|
description: description,
|
|
|
|
|
|
|
|
activeAlerts: map[clientmodel.Fingerprint]*Alert{},
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2014-12-10 07:16:49 -08:00
|
|
|
// Name returns the name of the alert.
|
2013-07-30 08:18:07 -07:00
|
|
|
func (rule *AlertingRule) Name() string {
|
|
|
|
return rule.name
|
|
|
|
}
|
2013-04-24 02:51:40 -07:00
|
|
|
|
2015-05-25 12:16:32 -07:00
|
|
|
// eval evaluates the rule expression and then creates pending alerts and fires
|
2015-05-25 11:43:24 -07:00
|
|
|
// or removes previously pending alerts accordingly.
|
2015-05-25 12:16:32 -07:00
|
|
|
func (rule *AlertingRule) eval(timestamp clientmodel.Timestamp, engine *promql.Engine) (promql.Vector, error) {
|
|
|
|
query, err := engine.NewInstantQuery(rule.vector.String(), timestamp)
|
2015-03-30 10:43:19 -07:00
|
|
|
if err != nil {
|
|
|
|
return nil, err
|
|
|
|
}
|
2015-05-25 11:43:24 -07:00
|
|
|
exprResult, err := query.Exec().Vector()
|
2013-04-24 02:51:40 -07:00
|
|
|
if err != nil {
|
2013-05-15 22:38:31 -07:00
|
|
|
return nil, err
|
2013-04-24 02:51:40 -07:00
|
|
|
}
|
|
|
|
|
2013-06-13 07:10:05 -07:00
|
|
|
rule.mutex.Lock()
|
|
|
|
defer rule.mutex.Unlock()
|
|
|
|
|
2013-06-14 04:03:19 -07:00
|
|
|
// Create pending alerts for any new vector elements in the alert expression
|
|
|
|
// or update the expression value for existing elements.
|
2015-05-28 12:51:44 -07:00
|
|
|
resultFPs := map[clientmodel.Fingerprint]struct{}{}
|
2013-04-24 02:51:40 -07:00
|
|
|
for _, sample := range exprResult {
|
2014-12-08 07:55:49 -08:00
|
|
|
fp := sample.Metric.Metric.Fingerprint()
|
2015-05-28 12:51:44 -07:00
|
|
|
resultFPs[fp] = struct{}{}
|
2013-06-25 05:02:27 -07:00
|
|
|
|
2014-12-08 07:55:49 -08:00
|
|
|
if alert, ok := rule.activeAlerts[fp]; !ok {
|
2013-06-25 05:02:27 -07:00
|
|
|
labels := clientmodel.LabelSet{}
|
2014-12-08 07:55:49 -08:00
|
|
|
labels.MergeFromMetric(sample.Metric.Metric)
|
2015-05-25 12:16:32 -07:00
|
|
|
labels = labels.Merge(rule.labels)
|
2013-06-25 05:02:27 -07:00
|
|
|
if _, ok := labels[clientmodel.MetricNameLabel]; ok {
|
|
|
|
delete(labels, clientmodel.MetricNameLabel)
|
2013-06-13 07:10:05 -07:00
|
|
|
}
|
2014-12-08 07:55:49 -08:00
|
|
|
rule.activeAlerts[fp] = &Alert{
|
2013-06-13 07:10:05 -07:00
|
|
|
Name: rule.name,
|
2013-06-14 04:03:19 -07:00
|
|
|
Labels: labels,
|
2015-05-25 12:16:32 -07:00
|
|
|
State: StatePending,
|
2013-06-13 07:10:05 -07:00
|
|
|
ActiveSince: timestamp,
|
|
|
|
Value: sample.Value,
|
2013-04-24 02:51:40 -07:00
|
|
|
}
|
2013-06-13 07:10:05 -07:00
|
|
|
} else {
|
|
|
|
alert.Value = sample.Value
|
2013-04-24 02:51:40 -07:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2015-03-30 10:43:19 -07:00
|
|
|
vector := promql.Vector{}
|
2013-05-15 22:38:31 -07:00
|
|
|
|
2013-04-24 02:51:40 -07:00
|
|
|
// Check if any pending alerts should be removed or fire now. Write out alert timeseries.
|
|
|
|
for fp, activeAlert := range rule.activeAlerts {
|
2015-05-28 12:51:44 -07:00
|
|
|
if _, ok := resultFPs[fp]; !ok {
|
2013-04-24 02:51:40 -07:00
|
|
|
vector = append(vector, activeAlert.sample(timestamp, 0))
|
|
|
|
delete(rule.activeAlerts, fp)
|
|
|
|
continue
|
|
|
|
}
|
|
|
|
|
2015-05-25 12:16:32 -07:00
|
|
|
if activeAlert.State == StatePending && timestamp.Sub(activeAlert.ActiveSince) >= rule.holdDuration {
|
2013-04-24 02:51:40 -07:00
|
|
|
vector = append(vector, activeAlert.sample(timestamp, 0))
|
2015-05-25 12:16:32 -07:00
|
|
|
activeAlert.State = StateFiring
|
2013-04-24 02:51:40 -07:00
|
|
|
}
|
|
|
|
|
|
|
|
vector = append(vector, activeAlert.sample(timestamp, 1))
|
|
|
|
}
|
2013-05-15 22:38:31 -07:00
|
|
|
|
|
|
|
return vector, nil
|
2013-04-24 02:51:40 -07:00
|
|
|
}
|
|
|
|
|
2013-06-13 07:10:05 -07:00
|
|
|
func (rule *AlertingRule) String() string {
|
2015-05-25 12:16:32 -07:00
|
|
|
return fmt.Sprintf("ALERT %s IF %s FOR %s WITH %s", rule.name, rule.vector, strutil.DurationToString(rule.holdDuration), rule.labels)
|
2013-06-13 07:10:05 -07:00
|
|
|
}
|
|
|
|
|
2014-12-10 07:16:49 -08:00
|
|
|
// HTMLSnippet returns an HTML snippet representing this alerting rule.
|
2015-05-18 10:44:40 -07:00
|
|
|
func (rule *AlertingRule) HTMLSnippet(pathPrefix string) template.HTML {
|
2013-06-25 05:02:27 -07:00
|
|
|
alertMetric := clientmodel.Metric{
|
2015-05-25 12:16:32 -07:00
|
|
|
clientmodel.MetricNameLabel: alertMetricName,
|
|
|
|
alertNameLabel: clientmodel.LabelValue(rule.name),
|
2013-06-13 07:10:05 -07:00
|
|
|
}
|
|
|
|
return template.HTML(fmt.Sprintf(
|
|
|
|
`ALERT <a href="%s">%s</a> IF <a href="%s">%s</a> FOR %s WITH %s`,
|
2015-05-28 12:33:48 -07:00
|
|
|
pathPrefix+strutil.GraphLinkForExpression(alertMetric.String()),
|
2013-06-13 07:10:05 -07:00
|
|
|
rule.name,
|
2015-05-25 12:16:32 -07:00
|
|
|
pathPrefix+strutil.GraphLinkForExpression(rule.vector.String()),
|
|
|
|
rule.vector,
|
2015-05-28 12:33:48 -07:00
|
|
|
strutil.DurationToString(rule.holdDuration),
|
2015-05-25 12:16:32 -07:00
|
|
|
rule.labels))
|
2013-06-13 07:10:05 -07:00
|
|
|
}
|
|
|
|
|
2014-12-10 07:16:49 -08:00
|
|
|
// State returns the "maximum" state: firing > pending > inactive.
|
2013-06-13 07:10:05 -07:00
|
|
|
func (rule *AlertingRule) State() AlertState {
|
|
|
|
rule.mutex.Lock()
|
|
|
|
defer rule.mutex.Unlock()
|
|
|
|
|
2015-05-25 12:16:32 -07:00
|
|
|
maxState := StateInactive
|
2013-06-13 07:10:05 -07:00
|
|
|
for _, activeAlert := range rule.activeAlerts {
|
|
|
|
if activeAlert.State > maxState {
|
|
|
|
maxState = activeAlert.State
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return maxState
|
|
|
|
}
|
|
|
|
|
2014-12-10 07:16:49 -08:00
|
|
|
// ActiveAlerts returns a slice of active alerts.
|
2013-06-13 07:10:05 -07:00
|
|
|
func (rule *AlertingRule) ActiveAlerts() []Alert {
|
|
|
|
rule.mutex.Lock()
|
|
|
|
defer rule.mutex.Unlock()
|
|
|
|
|
|
|
|
alerts := make([]Alert, 0, len(rule.activeAlerts))
|
|
|
|
for _, alert := range rule.activeAlerts {
|
|
|
|
alerts = append(alerts, *alert)
|
|
|
|
}
|
|
|
|
return alerts
|
2013-06-06 06:12:37 -07:00
|
|
|
}
|