chore: Migrate gsutil usage to gcloud storage#484
Conversation
|
Hi @n-h-diaz, Can we get your review on this PR? Thanks! |
Summary of ChangesHello, I'm Gemini Code Assist1! I'm currently reviewing this pull request and will post my feedback shortly. In the meantime, here's a summary to help you and other reviewers quickly get up to speed! This pull request automates the migration of Google Cloud Storage operations from the legacy Highlights
Changelog
Using Gemini Code AssistThe full guide for Gemini Code Assist can be found on our documentation page, here are some quick tips. Invoking Gemini You can request assistance from Gemini at any point by creating a comment using either
Customization To customize Gemini Code Assist for GitHub experience, repository maintainers can create a configuration file and/or provide a custom code review style guide (such as PEP-8 for Python) by creating and adding files to a Limitations & Feedback Gemini Code Assist may make mistakes. Please leave feedback on any instances where its feedback is incorrect or counter productive. You can react with 👍 and 👎 on @gemini-code-assist comments. If you're interested in giving your feedback about your experience with Gemini Code Assist for Github and other Google products, sign up here. You can also get AI-powered code generation, chat, as well as code reviews directly in the IDE at no cost with the Gemini Code Assist IDE Extension. Footnotes
|
There was a problem hiding this comment.
Code Review
This pull request automatically migrates gsutil commands to gcloud storage in cloudbuild.yaml and simple/run_stats.sh. While the migration itself is correct, it preserves and highlights a significant command injection vulnerability in simple/run_stats.sh. This script constructs and executes shell commands using unquoted variables, which can be exploited if command-line arguments are derived from untrusted sources. It is strongly recommended to fix the command execution logic in simple/run_stats.sh to ensure all arguments are properly quoted and handled safely by the shell, which will also improve robustness against file paths containing spaces.
keyurva
left a comment
There was a problem hiding this comment.
Thanks @bhandarivijay-png. Had a couple of questions:
- Does
gcloud storagebehave exactly asgsutilor are there any differences? - What version of the gcloud sdk does this need? Do our
Dockerfiles need to be updated so they are using the correct version?
Also adding @ajaits and @rohitkumarbhagat for awareness for changes to the import tool cloud build. Both - please chime in if any concerns.
Subtle changes: There are minor differences in how certain flags behave (like rsync deletion logic), but for the simple cp and ls commands in this PR, the behavior is identical.
Dockerfiles: Since I've updated cloudbuild.yaml to use the gcr.io/cloud-builders/gcloud image (which Google keeps updated to the latest stable SDK), we are covered for the build process. If we have custom Dockerfiles for local stats runs, I’ll double-check that they pull a recent google-cloud-sdk version (379+). |
Automated: Migrate {target_path} from gsutil to gcloud storage
This CL is part of the on going effort to migrate from the legacy
gsutiltool to the new and improvedgcloud storagecommand-line interface.gcloud storageis the recommended and modern tool for interacting with Google Cloud Storage, offering better performance, unified authentication, and a more consistent command structure with othergcloudcomponents. 🚀Automation Details
This change was generated automatically by an agent that targets users of
gsutil.The transformations applied are based on the gsutil to gcloud storage migration guide.
While we have based the automation on the migration guide, every use case is unique.
It is crucial that you thoroughly test these changes in environments appropriate to your use-case before merging.
Be aware of potential differences between
gsutilandgcloud storagethat could impact your workflows.For instance, the structure of command output may have changed, requiring updates to any scripts that parse it. Similarly, command behavior can differ subtly; the
gcloud storage rsynccommand has a different file deletion logic thangsutil rsync, which could lead to unintended file deletions.Our migration guides can help guide you through a list of mappings and some notable differences between the two tools.
Standard presubmit tests are run as part of this CL's workflow. If you need to target an additional test workflow or require assistance with testing, please let us know.
Please verify that all your Cloud Storage operations continue to work as expected to avoid any potential disruptions in production.
Support and Collaboration
The
GCS CLIteam is here to help! If you encounter any issues, have a complex use case that this automated change doesn't cover, or face any other blockers, please don't hesitate to reach out.We are happy to work with you to test and adjust these changes as needed.
Contact:
gcs-cli-hyd@google.comWe appreciate your partnership in this important migration effort!
#gsutil-migration