Skip to content

Run on Node 24 - #2858

Merged
bert-e merged 5 commits into
development/9.6from
improvement/BB-888
Sep 24, 2026
Merged

bert-e merged 5 commits into
development/9.6from
improvement/BB-888

Conversation

@francoisferrand

Copy link
Copy Markdown
Contributor

Part of the OS-1155 Node.js 22 → 24 upgrade.

Runtime images, the syntheticbucketd test image and the 5 CI jobs move to Node 24, and engines.node goes to >=24. With a real floor, --ignore-engines is no longer needed anywhere — it was only there to mask the native module breakage below.

That breakage was bucketclient 8.2.x pulling arsenal as a full dependency, which dragged in diskusage and aws-sdk v2 and failed to build on 24. bucketclient 8.2.10 makes arsenal a peer dependency, and arsenal 8.6.0-preview.1 is on the AWS SDK v3 with no diskusage at all. A resolution keeps the transitive bucketclient copies on 8.2.10 too. vaultclient and httpagent follow to their tagged releases (httpagent 1.1.1 also matches what arsenal pulls, so the duplicate unpack warning goes away).

ioctl is loaded at runtime but only ever reached us through arsenal as an optional dependency, where a failed native build is silently ignored and yarn tells you it is safe. Declared directly so it is a real, visible dependency.

Two smaller cleanups riding along, both enabled by the arsenal bump:

  • url.parse() is deprecated, but its quirks are load-bearing for S3 request targets — WHATWG URL collapses dot segments, reads a leading // as an authority and percent-encodes non-ASCII. BackbeatRequest now uses arsenal's requestUrl.parseRequestTarget, which is built for exactly this; IngestionPopulator gets plain URL, since that one really is an absolute URL.
  • backo is archived upstream; arsenal 8.6 ships an equivalent Backoff, so the separate dependency goes.

Verified

On Node 24.21.0: install clean, lint clean, 703 unit tests passing (api, lib, utils, credentials, clients, gc — the rest of the unit suite needs a live Kafka broker).

yarn audit, deduplicated by advisory × path, prod dependencies only: 86 → 84, with two highs gone (@opentelemetry/propagator-jaeger and base-x, both via arsenal). What's left is upstream: fcntl, @aws-sdk/client-iam → fast-xml-parser, arsenal's socket.io/ws chain, async@2 → lodash, breakbeat → axios. The larger dev-side count is almost entirely @zenko/cloudserver and never reaches the production image.

Issue: BB-888

Part of the Node.js 22 -> 24 upgrade: move the runtime images and the
test workflow to the Node 24 bookworm-slim base, so what we build and
what we test against match the version we now support.

Issue: BB-888
Node 24 broke the native module chain: bucketclient 8.2.x pulled arsenal
as a full dependency, dragging in diskusage and aws-sdk v2, which fail to
build. bucketclient 8.2.10 makes arsenal a peer dependency, and arsenal
8.6.0-preview.1 moves to the AWS SDK v3 and drops diskusage entirely; a
resolution keeps the transitive copies on 8.2.10 too.

ioctl is loaded at runtime but only ever reached us through arsenal as an
optional dependency, where a failed build is silently ignored -- declare
it directly so it is a real, visible dependency.

With the floor at >=24, --ignore-engines is no longer needed anywhere.

Issue: BB-888
url.parse() is deprecated and its quirks are load-bearing for S3 request
targets: WHATWG URL collapses dot segments, reads a leading // as an
authority and percent-encodes non-ASCII, so it is not a drop-in for
routes. Use arsenal's requestUrl.parseRequestTarget, which is built for
exactly that, and plain URL for the ingestion endpoint, which really is
an absolute URL.

Issue: BB-888
backo is archived upstream and unmaintained; arsenal 8.6 ships an
equivalent Backoff with the same min/max/factor/jitter options, so there
is no reason to keep a separate dependency for it.

Issue: BB-888
@bert-e

bert-e commented Sep 23, 2026

Copy link
Copy Markdown
Contributor

Hello francoisferrand,

My role is to assist you with the merge of this
pull request. Please type @bert-e help to get information
on this process, or consult the user documentation.

Available options
name description privileged authored
/after_pull_request Wait for the given pull request id to be merged before continuing with the current one.
/bypass_author_approval Bypass the pull request author's approval ⭐
/bypass_build_status Bypass the build and test status ⭐
/bypass_commit_size Bypass the check on the size of the changeset TBA ⭐
/bypass_incompatible_branch Bypass the check on the source branch prefix ⭐
/bypass_jira_check Bypass the Jira issue check ⭐
/bypass_peer_approval Bypass the pull request peers' approval ⭐
/bypass_leader_approval Bypass the pull request leaders' approval ⭐
/bypass_source_branch_lineage Bypass the cross-branch contamination check ⭐
/approve Instruct Bert-E that the author has approved the pull request. ✍️
/create_pull_requests Allow the creation of integration pull requests.
/create_integration_branches Allow the creation of integration branches.
/no_octopus Prevent Wall-E from doing any octopus merge and use multiple consecutive merge instead
/unanimity Change review acceptance criteria from one reviewer at least to all reviewers
/wait Instruct Bert-E not to run until further notice.
Available commands
name description privileged
/help Print Bert-E's manual in the pull request.
/status Print Bert-E's current status in the pull request.
/clear Remove all comments from Bert-E from the history TBA
/retry Re-start a fresh build TBA
/build Re-start a fresh build TBA
/force_reset Delete integration branches & pull requests, and restart merge process from the beginning.
/reset Try to remove integration branches unless there are commits on them which do not appear on the source branch.

Status report is not available.

@codecov

codecov Bot commented Sep 23, 2026 •

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 76.75%. Comparing base (329b913) to head (1b7cedd).
⚠️ Report is 5 commits behind head on development/9.6.

Additional details and impacted files

Impacted file tree graph

Files with missing lines Coverage Δ
lib/api/BackbeatRequest.js 91.46% <100.00%> (ø)
lib/queuePopulator/IngestionPopulator.js 80.25% <100.00%> (-0.07%) ⬇️
lib/tasks/BackbeatTask.js 95.83% <100.00%> (ø)

... and 2 files with indirect coverage changes

Components Coverage Δ
Bucket Notification 80.25% <ø> (ø)
Core Library 84.21% <100.00%> (+0.01%) ⬆️
Ingestion 75.37% <100.00%> (-0.03%) ⬇️
Lifecycle 81.65% <ø> (ø)
Oplog Populator 85.83% <ø> (ø)
Replication 63.86% <ø> (+0.03%) ⬆️
Bucket Scanner 85.76% <ø> (ø)
@@                 Coverage Diff                 @@
##           development/9.6    #2858      +/-   ##
===================================================
+ Coverage            76.74%   76.75%   +0.01%     
===================================================
  Files                  207      207              
  Lines                14488    14487       -1     
===================================================
+ Hits                 11119    11120       +1     
+ Misses                3359     3357       -2     
  Partials                10       10              
Flag Coverage Δ
api:retry 9.16% <80.00%> (+<0.01%) ⬆️
api:routes 8.93% <60.00%> (+<0.01%) ⬆️
bucket-scanner 85.76% <ø> (ø)
ft_test:queuepopulator 11.44% <20.00%> (+<0.01%) ⬆️
ingestion 12.66% <40.00%> (-0.01%) ⬇️
lib 8.92% <0.00%> (+<0.01%) ⬆️
lifecycle 20.51% <40.00%> (-0.02%) ⬇️
notification 0.98% <0.00%> (+<0.01%) ⬆️
oplogPopulator 0.13% <0.00%> (+<0.01%) ⬆️
replication 18.85% <40.00%> (+<0.01%) ⬆️
unit 57.99% <100.00%> (-0.01%) ⬇️

Flags with carried forward coverage won't be shown. Click here to find out more.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.
  • 📦 JS Bundle Analysis: Save yourself from yourself by tracking and limiting bundle sizes in JS merges.

@scality scality deleted a comment from bert-e Sep 24, 2026
@bert-e

bert-e commented Sep 24, 2026

Copy link
Copy Markdown
Contributor

Waiting for approval

The following approvals are needed before I can proceed with the merge:

  • the author

  • 2 peers

Comment thread .github/workflows/tests.yaml Outdated
The actions we pin were all still on the node20 runtime, which is
end-of-life on the runner; their latest majors move to node24, in line
with the rest of this branch. Nothing we pass them changed: the inputs
removed along the way (buildx and build-push deprecations) were unused,
and checkout v7's fork restriction only concerns pull_request_target and
workflow_run, which we don't use.

Issue: BB-888
@francoisferrand

Copy link
Copy Markdown
Contributor Author

/approve

@bert-e

bert-e commented Sep 24, 2026

Copy link
Copy Markdown
Contributor

I have successfully merged the changeset of this pull request
into targetted development branches:

  • ✔️ development/9.6

The following branches have NOT changed:

  • development/7.10
  • development/7.4
  • development/7.70
  • development/8.6
  • development/9.0
  • development/9.1
  • development/9.2
  • development/9.3
  • development/9.4
  • development/9.5

This pull request did not target the following hotfix branch(es) so they
were left untouched:

  • hotfix/7.10.3
  • hotfix/7.10.17
  • hotfix/7.6.0
  • hotfix/7.4.2
  • hotfix/7.4.5
  • hotfix/7.10.8
  • hotfix/8.2.12
  • hotfix/7.10.2
  • hotfix/7.4.4
  • hotfix/7.8.0
  • hotfix/7.70.1
  • hotfix/7.4.1
  • hotfix/7.10.12
  • hotfix/7.10.4
  • hotfix/7.4.7
  • hotfix/7.4.8
  • hotfix/7.4.9
  • hotfix/7.9.0
  • hotfix/7.10.1
  • hotfix/7.4.6
  • hotfix/7.2.0
  • hotfix/7.4.0
  • hotfix/9.0.4
  • hotfix/7.70.12
  • hotfix/7.7.0
  • hotfix/7.10.0
  • hotfix/7.70.15
  • hotfix/7.4.10
  • hotfix/7.4.3
  • hotfix/9.0.7

Please check the status of the associated issue BB-888.

Goodbye francoisferrand.

The following options are set: approve

@bert-e
bert-e merged commit 1b7cedd into development/9.6 Sep 24, 2026
24 checks passed
@bert-e
bert-e deleted the improvement/BB-888 branch September 24, 2026 21:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants