Changeset 6d18ddb for doc/theses


Ignore:
Timestamp:
Jun 19, 2023, 10:36:01 AM (12 months ago)
Author:
caparsons <caparson@…>
Branches:
master
Children:
dc136d7
Parents:
60c3d87e (diff), df27752 (diff)
Note: this is a merge changeset, the changes displayed below correspond to the merge itself.
Use the (diff) links above to see all the changes relative to each parent.
Message:

Merge branch 'master' of plg.uwaterloo.ca:software/cfa/cfa-cc

Merged actors.tex. Added 'Actor Termination' section and reworked 'Actor Send' section.

Location:
doc/theses/colby_parsons_MMAth
Files:
2 edited

Legend:

Unmodified
Added
Removed
  • doc/theses/colby_parsons_MMAth/glossary.tex

    r60c3d87e r6d18ddb  
    3737\newabbreviation{toctou}{TOCTOU}{\Newterm{time-of-check to time-of-use}}
    3838
    39 \newglossaryentry{actor}
    40 {
     39\newglossaryentry{actor}{
    4140name=actor,
    4241description={A basic unit of an actor system that can store local state and send messages to other actors.}
    4342}
    4443
    45 \newglossaryentry{gulp}
    46 {
    47 name=gulp,
     44\newglossaryentry{gulp}{
     45name={gulp},
     46first={\Newterm{gulp}},
    4847description={Move the contents of message queue to a local queue of the executor thread using a single atomic instruction.}
    4948}
    5049
    51 \newglossaryentry{impl_concurrency}
    52 {
     50\newglossaryentry{impl_concurrency}{
    5351name=implicit concurrency,
     52first={\Newterm{implicit concurrency}},
    5453description={A class of concurrency features that abstract away explicit thread synchronization and mutual exclusion.}
    5554}
    5655
    57 \newglossaryentry{actor_model}
    58 {
     56\newglossaryentry{actor_model}{
    5957name=actor model,
     58first={\Newterm{actor model}},
    6059description={A concurrent computation model, where tasks are broken into units of work that are distributed to actors in the form of messages.}
    6160}
    6261
    63 \newglossaryentry{actor_system}
    64 {
     62\newglossaryentry{actor_system}{
    6563name=actor system,
     64first={\Newterm{actor system}},
    6665description={An implementation of the actor model.}
    6766}
    6867
    69 \newglossaryentry{synch_multiplex}
    70 {
     68\newglossaryentry{synch_multiplex}{
    7169name=synchronous multiplexing,
     70first={\Newterm{synchronous multiplexing}},
    7271description={synchronization on some subset of a set of resources.}
    7372}
  • doc/theses/colby_parsons_MMAth/text/actors.tex

    r60c3d87e r6d18ddb  
    2121An actor is executed by an underlying \Newterm{executor} (kernel thread-pool) that fairly invokes each actor, where an actor invocation processes one or more messages from its mailbox.
    2222The default number of executor threads is often proportional to the number of computer cores to achieve good performance.
    23 An executor is often tunable with respect to the number of kernel threads and its scheduling algorithm, which optimize for specific actor applications and workloads \see{end of Section~\ref{s:CFAActorSyntax}}.
    24 
    25 \section{Classic Actor System}
     23An executor is often tunable with respect to the number of kernel threads and its scheduling algorithm, which optimize for specific actor applications and workloads \see{end of Section~\ref{s:CFAActor}}.
     24
     25\subsection{Classic Actor System}
    2626An implementation of the actor model with a community of actors is called an actor system.
    2727Actor systems largely follow the actor model, but can differ in some ways.
     
    4545\end{figure}
    4646
    47 \section{\CFA Actors}
     47\subsection{\CFA Actor System}
    4848Figure~\ref{f:standard_actor} shows an actor system designed as \Newterm{actor-centric}, where a set of actors are scheduled and run on underlying executor threads~\cite{CAF,Akka,ProtoActor}.
    4949The simplest design has a single global queue of actors accessed by the executor threads, but this approach results in high contention as both ends of the queue by the executor threads.
     
    9292\end{enumerate}
    9393
    94 \section{\CFA Actor Syntax}\label{s:CFAActorSyntax}
     94\section{\CFA Actor}\label{s:CFAActor}
    9595\CFA is not an object oriented language and it does not have \gls{rtti}.
    9696As such, all message sends and receives among actors can only occur using static type-matching, as in Typed-Akka~\cite{AkkaTyped}.
     
    146146// messages
    147147struct str_msg {
    148         @inline message;@                                               $\C{// Plan-9 C nominal inheritance}$
    149148        char str[12];
     149        @inline message;@                                               $\C{// Plan-9 C inheritance}$
    150150};
    151151void ?{}( str_msg & this, char * str ) { strcpy( this.str, str ); }  $\C{// constructor}$
    152152struct int_msg {
    153         @inline message;@                                               $\C{// Plan-9 C nominal inheritance}$
    154153        int i;
     154        @inline message;@                                               $\C{// Plan-9 C inheritance}$
    155155};
    156 void ?{}( int_msg & this, int i ) { this.i = i; }       $\C{// constructor}$
    157156// behaviours
    158 allocation receive( my_actor &, @str_msg & msg@ ) {
    159         sout | "string message \"" | msg.str | "\"";
     157allocation receive( my_actor &, @str_msg & msg@ ) with(msg) {
     158        sout | "string message \"" | str | "\"";
    160159        return Nodelete;                                                $\C{// actor not finished}$
    161160}
    162 allocation receive( my_actor &, @int_msg & msg@ ) {
    163         sout | "integer message" | msg.i;
     161allocation receive( my_actor &, @int_msg & msg@ ) with(msg) {
     162        sout | "integer message" | i;
    164163        return Nodelete;                                                $\C{// actor not finished}$
    165164}
    166165int main() {
     166        str_msg str_msg{ "Hello World" };               $\C{// constructor call}$
     167        int_msg int_msg{ 42 };                                  $\C{// constructor call}$
    167168        start_actor_system();                                   $\C{// sets up executor}$
    168169        my_actor actor;                                                 $\C{// default constructor call}$
    169         str_msg str_msg{ "Hello World" };               $\C{// constructor call}$
    170         int_msg int_msg{ 42 };                                  $\C{// constructor call}$
    171         @actor << str_msg << int_msg;@                  $\C{// cascade sends}$
    172         @actor << int_msg;@                                             $\C{// send}$
    173         @actor << finished_msg;@                                $\C{// send => terminate actor (deallocation deferred)}$
     170        @actor | str_msg | int_msg;@                    $\C{// cascade sends}$
     171        @actor | int_msg;@                                              $\C{// send}$
     172        @actor | finished_msg;@                                 $\C{// send => terminate actor (deallocation deferred)}$
    174173        stop_actor_system();                                    $\C{// waits until actors finish}\CRT$
    175174} // deallocate int_msg, str_msg, actor
    176175\end{cfa}
    177176\caption{\CFA Actor Syntax}
    178 \label{f:CFAActorSyntax}
    179 \end{figure}
    180 
    181 Figure~\ref{f:CFAActorSyntax} shows a complete \CFA actor example starting with the actor type @my_actor@ created by defining a @struct@ that inherits from the base @actor@ @struct@ via the @inline@ keyword.
    182 This inheritance style is the Plan-9 C-style nominal inheritance discussed in Section~\ref{s:Inheritance}.
     177\label{f:CFAActor}
     178\end{figure}
     179
     180Figure~\ref{f:CFAActor} shows a complete \CFA actor example starting with the actor type @my_actor@ created by defining a @struct@ that inherits from the base @actor@ @struct@ via the @inline@ keyword.
     181This inheritance style is the Plan-9 C-style inheritance discussed in Section~\ref{s:Inheritance}.
    183182Similarly, the message types @str_msg@ and @int_msg@ are created by defining a @struct@ that inherits from the base @message@ @struct@ via the @inline@ keyword.
    184 Both message types have constructors to set the message value.
     183Only @str_msg@ needs a constructor to copy the C string;
     184@int_msg@ is initialized using its \CFA auto-generated constructors.
    185185There are two matching @receive@ (behaviour) routines that process the corresponding typed messages.
    186 The program main begins by calling @start_actor_system@ to start the actor implementation, including executor threads to run the actors.
    187 An actor and two messages are created on the stack, and four messages are sent to the actor using operator @<<@.
    188 The last message is the builtin @finish_msg@, which returns @Finished@ to an executor thread, which removes the actor from the actor system \see{Section~\ref{s:ActorBehaviours}}.
    189 The call to @stop_actor_system@ blocks program main until all actors are finished and removed from the actor system.
    190 The program main ends by deleting the actor and messages from the stack.
     186Both @receive@ routines use a @with@ clause so message fields are not qualified and return @Nodelete@ indicating the actor is not finished.
     187Also, all messages are marked with @Nodelete@ as their default allocation state.
     188The program main begins by creating two messages on the stack.
     189Then the executor system is started by calling @start_actor_system@.
     190Now an actor is created on the stack and four messages are sent it using operator @?|?@.
     191The last message is the builtin @finish_msg@, which returns @Finished@ to an executor thread, causing it to removes the actor from the actor system \see{Section~\ref{s:ActorBehaviours}}.
     192The call to @stop_actor_system@ blocks the program main until all actors are finished and removed from the actor system.
     193The program main ends by deleting the actor and two messages from the stack.
    191194The output for the program is:
    192195\begin{cfa}
     
    237240Note, it is safe to construct an actor or message with a status other than @Nodelete@, since the executor only examines the allocation action after a behaviour returns.
    238241
     242\subsection{Actor Envelopes}\label{s:envelope}
     243As stated, each message, regardless of where it is allocated, can be sent to an arbitrary number of actors, and hence, appear on an arbitrary number of message queues.
     244Because a C program manages message lifetime, messages cannot be copied for each send, otherwise who manages the copies.
     245Therefore, it up to the actor program to manage message life-time across receives.
     246However, for a message to appear on multiple message queues, it needs an arbitrary number of associated destination behaviours.
     247Hence, there is the concept of an envelop, which is dynamically allocated on each send, that wraps a message with any extra implementation fields needed to persist between send and receive.
     248Managing the envelop is straightforward because it is created at the send and deleted after the receive, \ie there is 1:1 relationship for an envelop and a many to one relationship for a message.
     249
     250% In actor systems, messages are sent and received by actors.
     251% When a actor receives a message it executes its behaviour that is associated with that message type.
     252% However the unit of work that stores the message, the receiving actor's address, and other pertinent information needs to persist between send and the receive.
     253% Furthermore the unit of work needs to be able to be stored in some fashion, usually in a queue, until it is executed by an actor.
     254% All these requirements are fulfilled by a construct called an envelope.
     255% The envelope wraps up the unit of work and also stores any information needed by data structures such as link fields.
     256
     257% One may ask, "Could the link fields and other information be stored in the message?".
     258% This is a good question to ask since messages also need to have a lifetime that persists beyond the work it delivers.
     259% However, if one were to use messages as envelopes then a message would not be able to be sent to multiple actors at a time.
     260% Therefore this approach would just push the allocation into another location, and require the user to dynamically allocate a message for every send, or require careful ordering to allow for message reuse.
     261
    239262\subsection{Actor System}\label{s:ActorSystem}
    240263The calls to @start_actor_system@, and @stop_actor_system@ mark the start and end of a \CFA actor system.
     
    258281All actors must be created \emph{after} calling @start_actor_system@ so the executor can keep track of the number of actors that have entered the system but not yet terminated.
    259282
    260 % All message sends are done using the left-shift operator, @<<@, similar to the syntax of \CC's stream output.
    261 % \begin{cfa}
    262 % allocation ?<<?( my_actor & receiver, my_msg & msg )
    263 % \end{cfa}
    264 % Notice this signature is the same as the @receive@ routine, which is no coincidence.
    265 % The \CFA compiler generates a @?<<?@ routine definition and forward declaration for each @receive@ routine that has the appropriate signature.
    266 % The generated routine packages the message and actor in an \hyperref[s:envelope]{envelope} and adds it to the executor's queues via an executor routine.
    267 % As part of packaging the envelope, the @?<<?@ routine sets a routine pointer in the envelope to point to the appropriate receive routine for given actor and message types.
    268 
    269 \subsection{Actor Send}\label{s:ActorSend} % C_TODO: rework this paragraph based on discussion with Mike, see ~/cfa-cc/actor_poly.tex for notes (and fangren's resolver changes)
    270 All message sends are done using the left-shift operator, @<<@, similar to the syntax of \CC's stream output.
     283\subsection{Actor Send}\label{s:ActorSend}
     284All message sends are done using the vertical-bar (bit-or) operator, @?|?@, similar to the syntax of the \CFA stream I/O.
     285Hence, programmers must write a matching @?|?@ routine for each @receive@ routine, which is awkward and generates a maintenance problem That must be solved.
     286The currently supported approach to creating a generic @?|?@ routine requires users to create specific routines for their actor and message types that access the base type.
     287Since these routines are not complex, they can be generated using macros that the user can add following their message and actor types.
     288This works, but is not much better than asking users to write the @?|?@ routine themselves.
     289
    271290As stated, \CFA does not have named inheritance with RTTI.
    272291\CFA does have a preliminary form of virtual routines, but it is not mature enough for use in this work.
    273 Therefore, there is no mechanism to write a generic @<<@ routine taking a base actor and message type, and then dynamically selecting the @receive@ routine from the actor argument.
    274 (For messages, the Plan-9 inheritance is sufficient because only the inherited fields are needed during the message send.)
    275 Hence, programmers must write a matching @<<@ routine for each @receive@ routine, which is awkward and generates a maintenance problem.
    276 Therefore, I chose to use a template-like approach, where the compiler generates a matching @<<@ routine for each @receive@ routine it finds with an actor/message type-signature.
    277 Then, \CFA uses the type from the left-hand side of an assignment to select the matching receive routine.
     292Virtuals would provide a clean mechanism to write a single generic @?|?@ routine taking a base actor and message type, and then dynamically selecting the @receive@ routine from the actor argument.
     293Note, virtuals are not needed for the send; Plan-9 inheritance is sufficient because only the inherited fields are needed during the message send (only upcasting is needed).
     294
     295Therefore, a template-like approach was chosen, where the compiler generates a matching @?|?@ routine for each @receive@ routine it finds with the correct actor/message type-signature.
     296This approach requires no annotation or additional code to be written by users, thus it resolves the maintenance problem.
    278297(When the \CFA virtual routines mature, it should be possible to seamlessly transition to it from the template approach.)
    279298
    280 % Funneling all message sends through a single @allocation ?<<?(actor &, message &)@ routine is not feasible since the type of the actor and message would be erased, making it impossible to acquire a pointer to the correct @receive@.
    281 % As such a @?<<?@ routine per @receive@ provides type information needed to write the correct "address" on the envelope.
    282 
    283 % The left-shift operator routines are generated by the compiler.
    284 An example of a receive routine and its corresponding generated operator routine is shown in Figure~\ref{f:actor_gen}.
    285 Notice the parameter signature of @?<<?@ is the same as the @receive@ routine.
    286 A @?<<?@ routine is generated per @receive@ routine with a matching signature.
    287 The @?<<?@ routine packages the message and actor in an \hyperref[s:envelope]{envelope} and adds it to the executor's queues via the executor routine @send@.
    288 The envelope is conceptually "addressed" to a behaviour, which is stored in the envelope as a function pointer to a @receive@ routine.
    289 The @?<<?@ routines ensure that messages are sent to the right address, \ie sent to the right @receive@ routine based on actor and message type.
     299Figure~\ref{f:send_gen} shows the generated send routine for the @int_msg@ receive in Figure~\ref{f:CFAActor}.
     300Operator @?|?@ has the same parameter signature as the corresponding @receive@ routine and returns an @actor@ so the operator can be cascaded.
     301The routine sets @rec_fn@ to the matching @receive@ routine using the left-hand type to perform the selection.
     302Then the routine packages the base and derived actor and message and actor, along with the receive routine into an \hyperref[s:envelope]{envelope}.
     303Finally, the envelop is added to the executor queue designated by the actor using the executor routine @send@.
    290304
    291305\begin{figure}
    292306\begin{cfa}
    293 $\LstCommentStyle{// from Figure~\ref{f:CFAActorSyntax}}$
    294 struct my_actor { inline actor; };                                      $\C[3.5in]{// actor}$
    295 struct int_msg { inline message; int i; };                      $\C{// message}$
    296 void ?{}( int_msg & this, int i ) { this.i = i; }       $\C{// constructor}$
    297 allocation receive( @my_actor &, int_msg & msg@ ) {     $\C{// receiver}$
    298         sout | "integer message" | msg.i;
    299         return Nodelete;
    300 }
    301 
    302 // compiler generated operator
    303 #define RECEIVER( A, M ) (allocation (*)(actor &, message &))(allocation (*)( A &, M & ))receive
    304 my_actor & ?<<?( @my_actor & receiver, int_msg & msg@ ) {
    305         send( receiver, (request){ &receiver, &msg, RECEIVER( my_actor, int_msg ) } );
     307$\LstCommentStyle{// from Figure~\ref{f:CFAActor}}$
     308struct my_actor { inline actor; };                                              $\C[3.75in]{// actor}$
     309struct int_msg { inline message; int i; };                              $\C{// message}$
     310allocation receive( @my_actor &, int_msg & msg@ ) {...} $\C{// receiver}$
     311
     312// compiler generated send operator
     313typedef allocation (*receive_t)( actor &, message & );
     314actor & ?|?( @my_actor & receiver, int_msg & msg@ ) {
     315        allocation (*rec_fn)( my_actor &, int_msg & ) = @receive@; // deduce receive routine
     316        request req{ &receiver, (actor *)&receiver, &msg, (message *)&msg, (receive_t)rec_fn };
     317        send( receiver, req );                                                          $\C{// queue message for execution}\CRT$
    306318        return receiver;
    307319}
    308320\end{cfa}
    309321\caption{Generated Send Operator}
    310 \label{f:actor_gen}
     322\label{f:send_gen}
     323\end{figure}
     324
     325\subsection{Actor Termination}\label{s:ActorTerm}
     326As discussed in Section~\ref{s:ActorSend}, during a message send, the derived type of the actor and message is erased, and then recovered later by calling the receive routine.
     327After the receive routine is done, the executor must clean up the actor and message according to their allocation status.
     328If the allocation status is @Delete@ or @Destroy@, the appropriate destructor must be called by the executor.
     329This poses a problem; the type of the actor or message is not available to the executor, but it needs to call the right destructor!
     330This requires down-casting from the base type to derived type, which requires a virtual system.
     331Thus, a rudimentary destructor-only virtual system was added to \CFA as part of this work.
     332This virtual system is used via Plan-9 inheritance of the @virtual_dtor@ type.
     333The @virtual_dtor@ type maintains a pointer to the start of the object, and a pointer to the correct destructor.
     334When a type inherits the @virtual_dtor@ type, the compiler adds code to its destructor to make sure that whenever any destructor along inheritance tree is called, the destructor call is intercepted, and restarts at the appropriate destructor for that object.
     335
     336\begin{figure}
     337\begin{cfa}
     338struct base_type { inline virtual_dtor; };
     339struct intermediate_type { inline base_type; };
     340struct derived_type { inline intermediate_type; };
     341
     342int main() {
     343    derived_type d1, d2, d3;
     344    intermediate_type & i = d2;
     345    base_type & b = d3;
     346    ^d1{}; ^i{}; ^b{}; // all of these will call the destructors in the correct order
     347}
     348
     349\end{cfa}
     350\caption{\CFA Virtual Destructor}
     351\label{f:VirtDtor}
     352\end{figure}
     353
     354This virtual destructor system was built for this work, but is general and can be used in any type in \CFA.
     355Actors and messages opt into this system by inheriting the @virtual_dtor@ type, which allows the executor to call the right destructor without knowing the derived actor or message type.
     356
     357Figure~\ref{f:ConvenienceMessages} shows three builtin convenience messages and receive routines used to terminate actors, depending on how an actor is allocated: @Delete@, @Destroy@ or @Finished@.
     358For example, in Figure~\ref{f:CFAActor}, the builtin @finished_msg@ message and receive are used to terminate the actor because the actor is allocated on the stack, so no deallocation actions are performed by the executor.
     359
     360\begin{figure}
     361\begin{cfa}
     362message __base_msg_finished $@$= { .allocation_ : Finished }; // no auto-gen constructors
     363struct __delete_msg_t { inline message; } delete_msg = __base_msg_finished;
     364struct __destroy_msg_t { inline message; } destroy_msg = __base_msg_finished;
     365struct __finished_msg_t { inline message; } finished_msg = __base_msg_finished;
     366
     367allocation receive( actor & this, __delete_msg_t & msg ) { return Delete; }
     368allocation receive( actor & this, __destroy_msg_t & msg ) { return Destroy; }
     369allocation receive( actor & this, __finished_msg_t & msg ) { return Finished; }
     370\end{cfa}
     371\caption{Builtin Convenience Messages}
     372\label{f:ConvenienceMessages}
    311373\end{figure}
    312374
     
    319381The goal is to achieve better performance and scalability for certain kinds of actor applications by reducing executor locking.
    320382Note, lock-free queues do not help because busy waiting on any atomic instruction is the source of the slowdown whether it is a lock or lock-free.
    321 Work steal now becomes queue stealing, where an entire actor/message queue is stolen, which trivially preserves message ordering in a queue \see{Section~\ref{s:steal}}.
    322383
    323384\begin{figure}
     
    330391
    331392Each executor thread iterates over its own message queues until it finds one with messages.
    332 At this point, the executor thread atomically \gls{gulp}s the queue, meaning move the contents of message queue to a local queue of the executor thread using a single atomic instruction.
    333 This step allows the executor threads to process the local queue without any atomics until the next gulp, while other executor threads are adding in parallel to the end of one of the message queues.
    334 In detail, an executor thread performs a test-and-gulp, non-atomically checking if a queue is non-empty before gulping it.
    335 If a test fails during a message add, the worst-case is cycling through all the message queues.
    336 However, the gain is minimizing costly lock acquisitions.
     393At this point, the executor thread atomically \gls{gulp}s the queue, meaning it moves the contents of message queue to a local queue of the executor thread using a single atomic instruction.
    337394An example of the queue gulping operation is shown in the right side of Figure \ref{f:gulp}, where a executor threads gulps queue 0 and begins to process it locally.
    338 
    339 Processing a local queue involves removing a unit of work from the queue and executing it.
     395This step allows an executor thread to process the local queue without any atomics until the next gulp.
     396Other executor threads can continue adding to the ends of executor thread's message queues.
     397In detail, an executor thread performs a test-and-gulp, non-atomically checking if a queue is non-empty, before attempting to gulp it.
     398If an executor misses an non-empty queue due to a race, it eventually finds the queue after cycling through its message queues.
     399This approach minimizes costly lock acquisitions.
     400
     401Processing a local queue involves: removing a unit of work from the queue, dereferencing the actor pointed-to by the work-unit, running the actor's behaviour on the work-unit message, examining the returned allocation status from the @receive@ routine for the actor and internal status in the delivered message, and taking the appropriate actions.
    340402Since all messages to a given actor are in the same queue, this guarantees atomicity across behaviours of that actor since it can only execute on one thread at a time.
    341 After running a behaviour, the executor thread examines the returned allocation status from the @receive@ routine for the actor and internal status in the delivered message, and takes the appropriate action.
    342 Once all actors have marked themselves as being finished the executor initiates shutdown by inserting a sentinel value into the message queues. % C_TODO: potentially change if I keep shutdown flag change
    343 Once a executor threads sees a sentinel it stops running.
    344 After all executors stop running the actor system shutdown is complete.
    345 
    346 \section{Envelopes}\label{s:envelope}
    347 As stated, each message, regardless of where it is allocated, can be sent to an arbitrary number of actors, and hence, appear on an arbitrary number of message queues.
    348 Because a C program manages message lifetime, messages cannot be copied for each send, otherwise who manages the copies.
    349 Therefore, it up to the actor program to manage message life-time across receives.
    350 However, for a message to appear on multiple message queues, it needs an arbitrary number of associated destination behaviours.
    351 Hence, there is the concept of an envelop, which is dynamically allocated on each send, that wraps a message with any extra implementation fields needed to persist between send and receive.
    352 Managing the envelop is straightforward because it is created at the send and deleted after the receive, \ie there is 1:1 relationship for an envelop and a many to one relationship for a message.
    353 
    354 Unfortunately, this frequent allocation of envelopes for each send results in heavy contention on the memory allocator.
    355 As such, a way to alleviate contention on the memory allocator would result in a performance improvement.
    356 Contention is reduced using a novel data structure, called a \Newterm{copy queue}.
     403As each actor is created or terminated by an executor thread, it increments/decrements a global counter.
     404When an executor decrements the counter to zero, it sets a global boolean variable that is checked by each executor thread when it has no work.
     405Once a executor threads sees the flag is set it stops running.
     406After all executors stop, the actor system shutdown is complete.
    357407
    358408\subsection{Copy Queue}\label{s:copyQueue}
     409Unfortunately, the frequent allocation of envelopes for each send results in heavy contention on the memory allocator.
     410This contention is reduced using a novel data structure, called a \Newterm{copy queue}.
    359411The copy queue is a thin layer over a dynamically sized array that is designed with the envelope use case in mind.
    360 A copy queue supports the typical queue operations of push/pop but in a different way than a typical array based queue.
    361 The copy queue is designed to take advantage of the \gls{gulp}ing pattern.
    362 As such, the amortized runtime cost of each push/pop operation for the copy queue is $O(1)$.
     412A copy queue supports the typical queue operations of push/pop but in a different way from a typical array-based queue.
     413
     414The copy queue is designed to take advantage of the \gls{gulp}ing pattern, giving an amortized runtime cost for each push/pop operation of $O(1)$.
    363415In contrast, a na\"ive array-based queue often has either push or pop cost $O(n)$ and the other cost $O(1)$ since one of the operations requires shifting the elements of the queue.
    364416Since the executor threads gulp a queue to operate on it locally, this creates a usage pattern where all elements are popped from the copy queue without any interleaved pushes.
     
    372424For many workload, the copy queues grow in size to facilitate the average number of messages in flight and there is no further dynamic allocations.
    373425One downside of this approach that more storage is allocated than needed, \ie each copy queue is only partially full.
    374 Comparatively, the individual envelope allocations of a list based queue mean that the actor system always uses the minimum amount of heap space and cleans up eagerly.
     426Comparatively, the individual envelope allocations of a list-based queue mean that the actor system always uses the minimum amount of heap space and cleans up eagerly.
    375427Additionally, bursty workloads can cause the copy queues to allocate a large amounts of space to accommodate the peaks of the throughput, even if most of that storage is not needed for the rest of the workload's execution.
    376428
     
    378430Initially, the memory reclamation na\"ively reclaims one index of the array per \gls{gulp}, if the array size is above a low fixed threshold.
    379431However, this approach has a problem.
    380 The high memory usage watermark nearly doubled!
    381 The issue can easily be highlighted with an example.
     432The high memory watermark nearly doubled!
     433The issue is highlighted with an example.
    382434Assume a fixed throughput workload, where a queue never has more than 19 messages at a time.
    383435If the copy queue starts with a size of 10, it ends up doubling at some point to size 20 to accommodate 19 messages.
    384436However, after 2 gulps and subsequent reclamations the array size is 18.
    385437The next time 19 messages are enqueued, the array size is doubled to 36!
    386 To avoid this issue a second check is added.
    387 Each copy queue now tracks the utilization of its array size.
     438To avoid this issue, a second check is added.
    388439Reclamation only occurs if less than half of the array is utilized.
    389 In doing this, the reclamation scheme is able to achieve a lower high-watermark and a lower overall memory utilization compared to the non-reclamation copy queues.
    390 However, the use of copy queues still incurs a higher memory cost than list-based queueing.
    391 With the inclusion of a memory reclamation scheme the increase in memory usage is reasonable considering the performance gains and is discussed further in Section~\ref{s:actor_perf}.
     440This check achieves a lower total storage and overall memory utilization compared to the non-reclamation copy queues.
     441However, the use of copy queues still incurs a higher memory cost than list-based queueing, but the increase in memory usage is reasonable considering the performance gains \see{Section~\ref{s:actor_perf}}.
    392442
    393443\section{Work Stealing}\label{s:steal}
    394 Work stealing is a scheduling strategy that attempts to load balance, and increase resource utilization by having idle threads steal work.
    395 There are many parts that make up a work stealing actor scheduler, but the two that will be highlighted in this work are the stealing mechanism and victim selection.
    396 
    397 % C_TODO enter citation for langs
     444Work stealing is a scheduling strategy to provide \Newterm{load balance}.
     445The goal is to increase resource utilization by having idle threads steal work from working threads.
     446While there are multiple parts in work-stealing scheduler, the two important components are victim selection and the stealing mechanism.
     447
    398448\subsection{Stealing Mechanism}
    399 In this discussion of work stealing the worker being stolen from will be referred to as the \textbf{victim} and the worker stealing work will be called the \textbf{thief}.
    400 The stealing mechanism presented here differs from existing work stealing actor systems due the inverted actor system.
    401 Other actor systems such as Akka \cite{} and CAF \cite{} have work stealing, but since they use an classic actor system that is actor-centric, stealing work is the act of stealing an actor from a dequeue.
    402 As an example, in CAF, the sharded actor queue is a set of double ended queues (dequeues).
    403 Whenever an actor is moved to a ready queue, it is inserted into a worker's dequeue.
     449In work stealing, the stealing worker is called the \Newterm{thief} and the stolen-from worker is called the \Newterm{victim}.
     450The stealing mechanism presented here differs from existing work-stealing actor-systems because of the message-centric (inverted) actor-system.
     451Other actor systems, such as Akka~\cite{Akka} and CAF~\cite{CAF}, have work stealing, but use an actor-centric system where stealing is dequeuing from a non-empty ready-queue to an empty ready-queue.
     452As an example, in CAF, the sharded actor queue is a set of double-ended queues (dequeues).
     453When an actor has messages, it is inserted into a worker's dequeue (ready queue).
    404454Workers then consume actors from the dequeue and execute their behaviours.
    405455To steal work, thieves take one or more actors from a victim's dequeue.
    406 This action creates contention on the dequeue, which can slow down the throughput of the victim.
    407 The notion of which end of the dequeue is used for stealing, consuming, and inserting is not discussed since it isn't relevant.
    408 By the pigeon hole principle there are three dequeue operations (push/victim pop/thief pop) that can occur concurrently and only two ends to a dequeue, so work stealing being present in a dequeue based system will always result in a potential increase in contention on the dequeues.
     456By the pigeon hole principle, there are three dequeue operations (push/victim pop/thief pop) that can occur concurrently and only two ends to a dequeue, so work stealing in a dequeue-based system always results in a potential increase in contention on the dequeues.
     457This contention can slows down the victim's throughput.
     458Note, which end of the dequeue is used for stealing, consuming, and inserting is not discussed since the largest cost is the mutual exclusion and its duration for safely performing the queue operations.
     459
     460Work steal now becomes queue stealing, where an entire actor/message queue is stolen, which trivially preserves message ordering in a queue \see{Section~\ref{s:steal}}.
    409461
    410462% C_TODO: maybe insert stealing diagram
    411463
    412 In \CFA, the actor work stealing implementation is unique.
    413 While other systems are concerned with stealing actors, the \CFA actor system steals queues.
    414 This is a result of \CFA's use of the inverted actor system.
    415 The goal of the \CFA actor work stealing mechanism is to have a zero-victim-cost stealing mechanism.
    416 This does not means that stealing has no cost.
    417 This goal is to ensure that stealing work does not impact the performance of victim workers.
    418 This means that thieves can not contend with victims, and that victims should perform no stealing related work unless they become a thief.
    419 In theory this goal is not achieved, but results will be presented that show the goal is achieved in practice.
    420 In \CFA's actor system workers own a set of sharded queues which they iterate over and gulp.
    421 If a worker has iterated over the queues they own twice without finding any work, they try to steal a queue from another worker.
    422 Stealing a queue is done wait-free with a few atomic instructions that can only create contention with other stealing workers.
    423 To steal a queue a worker does the following:
     464In \CFA, the actor work-stealing implementation is unique because of the message-centric system.
     465In this system, it is impractical to steal actors because an actor's messages are distributed in temporal order along the message queue.
     466To ensure sequential actor execution and FIFO message delivery, actor stealing requires finding and removing all of an actor's messages, and inserting them consecutively in another message queue.
     467This operation is $O(N)$ with a non-trivial constant.
     468The only way for work stealing to become practical is to shard the message queue, which also reduces contention, and steal queues to eliminate queue searching.
     469
     470Given queue stealing, the goal is to have a zero-victim-cost stealing mechanism, which does not mean stealing has no cost.
     471It means work stealing does not affect the performance of the victim worker.
     472The implication is that thieves cannot contend with a victim, and that a victim should perform no stealing related work unless it becomes a thief.
     473In theory, this goal is not achievable, but results show the goal is achieved in practice.
     474
     475In \CFA's actor system, workers own a set of sharded queues, which they iterate over and gulp.
     476If a worker has iterated over its message queues twice without finding any work, it tries to steal a queue from another worker.
     477Stealing a queue is done wait-free with a few atomic instructions that can only create contention with other stealing workers, not the victim.
     478To steal a queue, a worker does the following:
    424479\begin{enumerate}[topsep=5pt,itemsep=3pt,parsep=0pt]
    425480\item
    426 The thief chooses a victim.
     481The thief chooses a victim, which is trivial because all workers are stored in a shared array.
    427482
    428483\item
    429484The thief starts at a random index in the array of the victim's queues and searches for a candidate queue.
    430 A candidate queue is any queue that is not empty, is not being stolen by another thief, and is not being processed by the victim.
    431 These are not strictly enforced rules.
    432 The candidate is identified non-atomically and as such queues that do not satisfy these rules may be stolen.
    433 However, steals that do not meet these requirements do not affect correctness so they are allowed and do not constitute failed steals as the queues will still be swapped.
    434 
    435 
    436 \item
    437 Once a candidate queue is chosen, the thief attempts a wait-free swap of the victim's queue and a random on of the thief's queues.
    438 This swap can fail.
    439 If the swap is successful the thief swaps the two queues.
    440 If the swap fails, another thief must have attempted to steal one of the two queues being swapped.
    441 Failing to steal is good in this case since stealing a queue that was just swapped would likely result in stealing an empty queue.
     485A candidate queue is any non-empty queue not being processed by the victim and not being stolen by another thief.
     486These rules are not strictly enforced.
     487A candidate is identified non-atomically, and as such, queues that do not satisfy these rules may be stolen.
     488However, steals not meeting the rules do not affect correctness and do not constitute failed steals as the queue is always swapped.
     489
     490\item
     491Once a candidate queue is chosen, the thief attempts a wait-free swap of a victim's queue to a random empty thief queue.
     492If the swap successes, the steal is completed.
     493If the swap fails, the victim may have been gulping that message queue or another thief must have attempted to steal the victim's queue.
     494In either case, that message queue is highly likely to be empty.
     495
     496\item
     497Once a thief fails or succeeds in stealing a queue, it iterates over its messages queues again because new messages may have arrived during stealing.
     498Stealing is only repeated after two consecutive iterations over its owned queues without finding work.
    442499\end{enumerate}
    443500
    444 Once a thief fails or succeeds in stealing a queue, it goes back to its own set of queues and iterates over them again.
    445 It will only try to steal again once it has completed two consecutive iterations over its owned queues without finding any work.
    446501The key to the stealing mechanism is that the queues can still be operated on while they are being swapped.
    447 This eliminates any contention between thieves and victims.
     502This functionality eliminates any contention among thieves and victims.
     503
    448504The first key to this is that actors and workers maintain two distinct arrays of references to queues.
    449505Actors will always receive messages via the same queues.
     
    594650
    595651\subsection{Stealing Guarantees}
    596 
    597 % C_TODO insert graphs for each proof
    598652Given that the stealing operation can potentially fail, it is important to discuss the guarantees provided by the stealing implementation.
    599653Given a set of $N$ swaps a set of connected directed graphs can be constructed where each vertex is a queue and each edge is a swap directed from a thief queue to a victim queue.
     
    737791Since the @Finished@ allocation status is unused for messages, it is used internally to detect if a message has been sent.
    738792Deallocating a message without sending it could indicate to a user that they are touching freed memory later, or it could point out extra allocations that could be removed.
     793\item Detection of messages sent but not received
     794As discussed in Section~\ref{s:executor}, once all actors have terminated shutdown is communicated to executor threads via a status flag. Upon termination the executor threads check their queues to see if any contain messages. If they do, an error is reported. Messages being sent but not received means that their allocation action did not occur and their payload was not delivered. Missing the allocation action can lead to memory leaks and missed payloads can cause unpredictable behaviour. Detecting this can indicate a race or logic error in the user's code.
    739795\end{itemize}
    740796
Note: See TracChangeset for help on using the changeset viewer.