Files
OmniRoute/tests/unit/windows-process-stop-8045.test.ts
Diego Rodrigues de Sa e Souza 6302a78657 fix(db): register SIGHUP handler and stop force-killing server on win32 stop paths (#8045) (#8148)
Windows console-window close delivers CTRL_CLOSE_EVENT, which Node/libuv maps
to a JS-visible SIGHUP event. initGracefulShutdown() only listened for
SIGTERM/SIGINT, so closing the window never ran cleanup() (WAL checkpoint +
closeDbInstance()), leaving storage.sqlite's WAL un-checkpointed for the next
launch.

Separately, process.kill(pid, "SIGTERM") on win32 unconditionally
force-terminates the target process instead of delivering an interceptable
signal. The CLI's own stop paths (ServerSupervisor.stop() and
runStopCommand()) sent it immediately on every stop, racing and beating the
child's own async graceful shutdown before the WAL checkpoint could run.

Fix:
- src/lib/gracefulShutdown.ts: register a SIGHUP handler alongside
  SIGTERM/SIGINT.
- src/shared/platform/windowsProcess.ts (new): stopProcessGracefully() skips
  the immediate SIGTERM on win32 (letting the target's own CTRL_C/CTRL_CLOSE
  handling run) and polls before escalating to SIGKILL; unchanged immediate
  SIGTERM behavior on POSIX.
- bin/cli/runtime/processSupervisor.mjs and bin/cli/commands/stop.mjs: use
  stopProcessGracefully() instead of an unconditional process.kill(SIGTERM).

Regression tests: tests/unit/graceful-shutdown-sighup-8045.test.ts (reuses
the RED probe from the triage analysis) and
tests/unit/windows-process-stop-8045.test.ts.
2026-07-22 11:27:49 -03:00

98 lines
3.0 KiB
TypeScript

import { test } from "node:test";
import assert from "node:assert/strict";
import { stopProcessGracefully } from "../../src/shared/platform/windowsProcess.ts";
// #8045: on win32, process.kill(pid, "SIGTERM") is documented to unconditionally
// force-terminate the target — never a real, interceptable signal. Sending it
// immediately races (and beats) the target's own async graceful-shutdown WAL
// checkpoint. stopProcessGracefully() must NOT send SIGTERM on win32.
test("stopProcessGracefully: on win32 does NOT send SIGTERM, only polls then escalates to SIGKILL", async () => {
const signalsSent: string[] = [];
let running = true;
const sleeps: number[] = [];
await stopProcessGracefully({
pid: 4242,
timeoutMs: 300,
pollIntervalMs: 50,
platform: "win32",
isPidRunning: () => running,
sleep: async (ms) => {
sleeps.push(ms);
// Simulate the process exiting on its own shortly after the first poll,
// mimicking its own SIGHUP/CTRL_CLOSE_EVENT-driven graceful shutdown.
if (sleeps.length >= 2) running = false;
},
});
assert.ok(
!signalsSent.includes("SIGTERM"),
"must not send SIGTERM on win32 (it force-kills unconditionally there)"
);
});
test("stopProcessGracefully: on win32 escalates to SIGKILL if the process never exits", async () => {
const killed: Array<{ pid: number; signal: string }> = [];
const originalKill = process.kill;
// @ts-expect-error — test-only override to observe signals without touching a real PID.
process.kill = (pid: number, signal?: string | number) => {
killed.push({ pid, signal: String(signal) });
return true;
};
try {
await stopProcessGracefully({
pid: 4243,
timeoutMs: 100,
pollIntervalMs: 20,
platform: "win32",
isPidRunning: () => true, // never exits on its own
sleep: async () => {},
});
} finally {
process.kill = originalKill;
}
assert.ok(
killed.some((k) => k.signal === "SIGKILL"),
`expected an eventual SIGKILL escalation, got: ${JSON.stringify(killed)}`
);
assert.ok(
!killed.some((k) => k.signal === "SIGTERM"),
"must never send SIGTERM on win32"
);
});
test("stopProcessGracefully: on non-win32 sends SIGTERM immediately (unchanged POSIX behavior)", async () => {
const killed: Array<{ pid: number; signal: string }> = [];
const originalKill = process.kill;
// @ts-expect-error — test-only override.
process.kill = (pid: number, signal?: string | number) => {
killed.push({ pid, signal: String(signal) });
return true;
};
let running = true;
try {
await stopProcessGracefully({
pid: 4244,
timeoutMs: 200,
pollIntervalMs: 20,
platform: "linux",
isPidRunning: () => running,
sleep: async () => {
running = false;
},
});
} finally {
process.kill = originalKill;
}
assert.equal(killed[0]?.signal, "SIGTERM", "must send SIGTERM immediately on POSIX");
assert.ok(
!killed.some((k) => k.signal === "SIGKILL"),
"must not escalate to SIGKILL once the process exited"
);
});