-
Notifications
You must be signed in to change notification settings - Fork 3.8k
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
58671: sql: fix performance regression in user authn r=otan a=rafiss The authn code needs to query system.users and system.role_options. These queries are run by the internal executor, which has a current DB of "". This causes the name to be resolved as "".system.users and "".system.role_options. The lookup for the "" DB always fails, but that result is not cached, so the lookup occurs on every authn attempt. There is fallback logic that then looks up the correct name. Now we specify the fully-qualified 3-part name for these two queries. This is a low-risk change that can be backported. A more robust fix that will prevent this class of mistaken lookups will follow later, but probably can't be backported. Release note (bug fix): The user authentication flow no longer performs extraneous name lookups. This performance regression was present since v20.2. Co-authored-by: Rafi Shamim <[email protected]>
- Loading branch information
Showing
5 changed files
with
49 additions
and
10 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,41 @@ | ||
// Copyright 2021 The Cockroach Authors. | ||
// | ||
// Use of this software is governed by the Business Source License | ||
// included in the file licenses/BSL.txt. | ||
// | ||
// As of the Change Date specified in that file, in accordance with | ||
// the Business Source License, use of this software will be governed | ||
// by the Apache License, Version 2.0, included in the file | ||
// licenses/APL.txt. | ||
|
||
package bench | ||
|
||
import "testing" | ||
|
||
func BenchmarkSystemDatabaseQueries(b *testing.B) { | ||
tests := []RoundTripBenchTestCase{ | ||
// This query performs 1 extra lookup since the executor first tries to | ||
// lookup the name `current_db.system.users`. | ||
{ | ||
name: "select system.users without schema name", | ||
stmt: `SELECT username, "hashedPassword" FROM system.users WHERE username = 'root'`, | ||
}, | ||
// This query performs 4 extra lookup since the executor tries to | ||
// lookup the name `"".system.users`. Since the "" database doesn't exist, | ||
// it also falls back to looking up that database name in the deprecated | ||
// namespace table. | ||
{ | ||
name: "select system.users with empty database name", | ||
setup: `SET sql_safe_updates = false; USE "";`, | ||
stmt: `SELECT username, "hashedPassword" FROM system.users WHERE username = 'root'`, | ||
}, | ||
// This query performs 2 lookups: getting the descriptor ID by name, then | ||
// fetching the system table descriptor. | ||
{ | ||
name: "select system.users with schema name", | ||
stmt: `SELECT username, "hashedPassword" FROM system.public.users WHERE username = 'root'`, | ||
}, | ||
} | ||
|
||
RunRoundTripBenchmark(b, tests) | ||
} |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters