-
Notifications
You must be signed in to change notification settings - Fork 943
chore: add prebuild docs #17580
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
Merged
chore: add prebuild docs #17580
Changes from 11 commits
Commits
Show all changes
22 commits
Select commit
Hold shift + click to select a range
6b75c2e
chore: prebuild docs
dannykopping c806859
add prebuilt to manifest; make lint/fmt/gen
EdwardAngert 1ef926a
relative links
EdwardAngert 4b101f3
copy edit
EdwardAngert 8bebe5a
Merge branch 'main' into dk/prebuilds-docs
EdwardAngert 1c6aee4
chore: review comments & additions
dannykopping 5c603db
copy edit
EdwardAngert 4b3b0a9
link to groups roles
EdwardAngert 684ef43
Apply suggestions from code review
EdwardAngert a10402f
s/prebuilds/prebuilt workspaces
EdwardAngert 850581e
heading edit
EdwardAngert 88f918a
edit prebuilt workspace lifecycle steps
EdwardAngert 470f061
Merge branch 'main' into dk/prebuilds-docs
EdwardAngert d95806b
Apply suggestions from code review
EdwardAngert 6439616
less-specific resource replacement
EdwardAngert e4332d7
Merge branch 'main' into dk/prebuilds-docs
EdwardAngert ad056d7
Merge branch 'main' of github.com:/coder/coder into dk/prebuilds-docs
dannykopping 1edc98f
Merge branch 'dk/prebuilds-docs' of github.com:/coder/coder into dk/p…
dannykopping dfb7958
fix: copy updates
dannykopping 596d7a0
md/copy
EdwardAngert 14998a0
invisible/transparent
EdwardAngert ac21df1
chore: update provider version
dannykopping File filter
Filter by extension
Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
There are no files selected for viewing
212 changes: 212 additions & 0 deletions
212
docs/admin/templates/extending-templates/prebuilt-workspaces.md
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,212 @@ | ||
# Prebuilt workspaces | ||
|
||
Prebuilt workspaces allow template administrators to improve the developer experience by reducing workspace | ||
creation time with an automatically maintained pool of ready-to-use workspaces for specific parameter presets. | ||
|
||
The template administrator configures a template to provision prebuilt workspaces in the background, and then when a developer creates | ||
a new workspace with matching parameters, Coder assigns them an existing prebuilt instance. | ||
Prebuilt workspaces significantly reduce wait times, especially for templates with complex provisioning or lengthy startup procedures. | ||
|
||
Prebuilt workspaces are: | ||
|
||
- Created and maintained automatically by Coder to match your specified preset configurations. | ||
- Claimed transparently when developers create workspaces. | ||
- Monitored and replaced automatically to maintain your desired pool size. | ||
|
||
## Prerequisites | ||
|
||
- [**Premium license**](../../licensing/index.md) | ||
- **Compatible Terraform provider**: Use `coder/coder` Terraform provider `>= 2.3.0-pre2`. (**TODO: update with latest version**) | ||
There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. NOTE: we must not merge until this is updated. There was a problem hiding this comment. Choose a reason for hiding this commentThe reason will be displayed to describe this comment to others. Learn more. @dannykopping - once this is resolved, I think we're set ❗ |
||
- **Feature flag**: Enable the `workspace-prebuilds` [experiment](../../../reference/cli/server.md#--experiments). | ||
|
||
## Enable prebuilt workspaces for template presets | ||
|
||
In your template, add a `prebuilds` block within a `coder_workspace_preset` block to identify how many prebuilt | ||
instances your Coder deployment should maintain: | ||
|
||
```hcl | ||
data "coder_workspace_preset" "goland" { | ||
name = "GoLand: Large" | ||
parameters = { | ||
jetbrains_ide = "GO" | ||
cpus = 8 | ||
memory = 16 | ||
} | ||
prebuilds { | ||
instances = 3 # Number of prebuilt workspaces to maintain | ||
} | ||
} | ||
``` | ||
|
||
After you create or update the template, Coder automatically provisions and maintains prebuilt workspaces through an | ||
internal reconciliation loop (similar to Kubernetes) to maintain the number of specified `instances`. | ||
|
||
Prebuilt workspaces are displayed in the list of workspaces on the Coder dashboard with the owner set to `prebuilds`. | ||
dannykopping marked this conversation as resolved.
Show resolved
Hide resolved
|
||
|
||
## Prebuilt workspace lifecycle | ||
|
||
Prebuilt workspaces follow a specific lifecycle from creation through eligibility to claiming. | ||
|
||
Expand each item in this list for more information about the stage: | ||
|
||
1. <details><summary>The prebuilt workspace is provisioned.</summary> | ||
EdwardAngert marked this conversation as resolved.
Show resolved
Hide resolved
|
||
|
||
After you configure a preset with a prebuilt workspace and publish the template: | ||
|
||
1. Coder automatically creates prebuilt workspaces up to the specified `instances` count. | ||
1. Each new prebuild is initially owned by an unprivileged system pseudo-user named `prebuilds`. | ||
- The `prebuilds` user belongs to the `Everyone` group (you can add it to additional groups if needed). | ||
1. Each prebuilt workspace receives a randomly generated name for identification. | ||
1. The workspace is provisioned like a regular workspace. | ||
|
||
</details> | ||
|
||
1. <details><summary>Eligibility process</summary> | ||
|
||
Before a prebuilt workspace is available to users: | ||
|
||
1. The workspace reaches `running` state. | ||
1. The agent connects to coderd. | ||
1. The agent starts its bootstrap procedures and startup scripts complete successfully. | ||
1. The agent reports `ready` status. | ||
|
||
Prebuilt workspaces that fail during provisioning are retried with an exponential backoff to prevent transient failures. | ||
|
||
</details> | ||
|
||
1. <details><summary>Claiming process</summary> | ||
|
||
When a developer requests a new workspace, the claiming process occurs: | ||
|
||
1. Developer selects a template and preset that has prebuilt workspaces configured. | ||
1. If an eligible prebuilt workspace exists, it's automatically assigned to the user. | ||
1. Ownership transfers from the `prebuilds` user to the requesting user. | ||
1. The workspace name changes to the user's requested name. | ||
1. The process is transparent to the developer - they simply see a workspace ready faster than normal. | ||
|
||
This ownership transfer happens automatically without any special action required by the user. | ||
|
||
</details> | ||
|
||
You can view available prebuilt workspaces in the **Workspaces** view in the Coder dashboard: | ||
|
||
 | ||
|
||
### Template updates and the prebuilt workspace lifecycle | ||
|
||
Prebuilt workspaces have specific behavior when templates are updated: | ||
|
||
1. When a template version changes, prebuilt workspaces for old versions are automatically deleted. | ||
1. New prebuilt workspaces are created for the active template version. 8000 | ||
1. Prebuilt workspaces aren't automatically updated after creation. | ||
1. If dependencies change (e.g., an [AMI](https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/AMIs.html) update) without a template version change, you can: | ||
- Delete the existing prebuilt workspaces manually. | ||
- Coder will automatically create new prebuilt workspaces with the updated dependencies. | ||
|
||
The system always maintains the desired number of prebuilt workspaces for the active template version. | ||
|
||
### Relationship to workspace presets | ||
|
||
Prebuilt workspaces are tightly integrated with [workspace presets](./parameters.md#workspace-presets-beta): | ||
|
||
1. Each prebuilt workspace is associated with a specific template preset. | ||
1. The preset must define all required parameters needed to build the workspace. | ||
1. The preset parameters define the base configuration and are immutable after they're claimed. | ||
1. Parameters that are not defined in the preset can still be customized by users when they claim a workspace. | ||
|
||
## Administration and troubleshooting | ||
|
||
### Managing resource quotas | ||
|
||
Prebuilt workspaces can be used in conjunction with [resource quotas](../../users/quotas.md). | ||
Because unclaimed prebuilt workspaces are owned by the `prebuilds` user, you can: | ||
|
||
1. Configure quotas for any group that includes this user. | ||
1. Set appropriate limits to balance prebuilt workspace availability with resource constraints. | ||
|
||
If a quota is exceeded, the prebuilt workspace will fail provisioning the same way other workspaces do. | ||
|
||
### Template configuration best practices | ||
|
||
#### Preventing resource replacement | ||
|
||
When a prebuilt workspace is claimed, another `terraform apply` run occurs with new values for the workspace owner and name. | ||
|
||
This can cause issues: | ||
|
||
1. The workspace is initially created with values from the `prebuilds` user and a random name. | ||
1. After claiming, the workspace owner and name change, which Terraform sees as configuration drift. | ||
dannykopping marked this conversation as resolved.
Show resolved
Hide resolved
|
||
1. If these values are used in immutable fields, Terraform will destroy and recreate the resource, eliminating the benefit of prebuilds. | ||
|
||
For example, when these values are used in immutable fields like the AWS instance `user_data`, you'll see resource replacement during claiming: | ||
|
||
 | ||
|
||
To prevent this, add a `lifecycle` block with `ignore_changes`: | ||
|
||
```hcl | ||
resource "docker_container" "workspace" { | ||
lifecy 8000 cle { | ||
ignore_changes = all | ||
} | ||
|
||
count = data.coder_workspace.me.start_count | ||
name = "coder-${data.coder_workspace_owner.me.name}-${lower(data.coder_workspace.me.name)}" | ||
... | ||
} | ||
``` | ||
|
||
For more targeted control, specify which attributes to ignore: | ||
|
||
```hcl | ||
resource "docker_container" "workspace" { | ||
lifecycle { | ||
ignore_changes = [name] | ||
} | ||
|
||
count = data.coder_workspace.me.start_count | ||
name = "coder-${data.coder_workspace_owner.me.name}-${lower(data.coder_workspace.me.name)}" | ||
... | ||
} | ||
``` | ||
|
||
Learn more about `ignore_changes` in the [Terraform documentation](https://developer.hashicorp.com/terraform/language/meta-arguments/lifecycle#ignore_changes). | ||
|
||
### Current limitations | ||
|
||
The prebuilt workspaces feature has these current limitations: | ||
|
||
- **Organizations** | ||
|
||
Prebuilt workspaces can only be used with the default organization. | ||
|
||
[coder/internal#364](https://github.com/coder/internal/issues/364) | ||
|
||
- **Autoscaling** | ||
|
||
Prebuilt workspaces remain running until claimed. There's no automated mechanism to reduce instances during off-hours. | ||
|
||
[coder/internal#312](https://github.com/coder/internal/issues/312) | ||
|
||
### Monitoring and observability | ||
|
||
#### Available metrics | ||
|
||
Coder provides several metrics to monitor your prebuilt workspaces: | ||
|
||
- `coderd_prebuilt_workspaces_created_total` (counter): Total number of prebuilt workspaces created to meet the desired instance count. | ||
- `coderd_prebuilt_workspaces_failed_total` (counter): Total number of prebuilt workspaces that failed to build. | ||
- `coderd_prebuilt_workspaces_claimed_total` (counter): Total number of prebuilt workspaces claimed by users. | ||
- `coderd_prebuilt_workspaces_desired` (gauge): Target number of prebuilt workspaces that should be available. | ||
- `coderd_prebuilt_workspaces_running` (gauge): Current number of prebuilt workspaces in a `running` state. | ||
- `coderd_prebuilt_workspaces_eligible` (gauge): Current number of prebuilt workspaces eligible to be claimed. | ||
|
||
#### Logs | ||
|
||
Search for `coderd.prebuilds:` in your logs to track the reconciliation loop's behavior. | ||
|
||
These logs provide information about: | ||
|
||
1. Creation and deletion attempts for prebuilt workspaces. | ||
1. Backoff events after failed builds. | ||
1. Claiming operations. |
Binary file added
BIN
+40.3 KB
docs/images/admin/templates/extend-templates/prebuilt/prebuilt-workspaces.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Binary file added
BIN
+72.2 KB
docs/images/admin/templates/extend-templates/prebuilt/replacement-notification.png
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Uh oh!
There was an error while loading. Please reload this page.