周玉环 d906a41c2e first commit 2 dienas atpakaļ
..
nl d906a41c2e first commit 2 dienas atpakaļ
.gitignore d906a41c2e first commit 2 dienas atpakaļ
CHANGELOG.md d906a41c2e first commit 2 dienas atpakaļ
LICENSE d906a41c2e first commit 2 dienas atpakaļ
Makefile d906a41c2e first commit 2 dienas atpakaļ
README.md d906a41c2e first commit 2 dienas atpakaļ
addr.go d906a41c2e first commit 2 dienas atpakaļ
addr_linux.go d906a41c2e first commit 2 dienas atpakaļ
bpf_linux.go d906a41c2e first commit 2 dienas atpakaļ
bridge_linux.go d906a41c2e first commit 2 dienas atpakaļ
class.go d906a41c2e first commit 2 dienas atpakaļ
class_linux.go d906a41c2e first commit 2 dienas atpakaļ
conntrack_linux.go d906a41c2e first commit 2 dienas atpakaļ
conntrack_unspecified.go d906a41c2e first commit 2 dienas atpakaļ
devlink_linux.go d906a41c2e first commit 2 dienas atpakaļ
filter.go d906a41c2e first commit 2 dienas atpakaļ
filter_linux.go d906a41c2e first commit 2 dienas atpakaļ
fou.go d906a41c2e first commit 2 dienas atpakaļ
fou_linux.go d906a41c2e first commit 2 dienas atpakaļ
fou_unspecified.go d906a41c2e first commit 2 dienas atpakaļ
genetlink_linux.go d906a41c2e first commit 2 dienas atpakaļ
genetlink_unspecified.go d906a41c2e first commit 2 dienas atpakaļ
gtp_linux.go d906a41c2e first commit 2 dienas atpakaļ
handle_linux.go d906a41c2e first commit 2 dienas atpakaļ
handle_unspecified.go d906a41c2e first commit 2 dienas atpakaļ
inet_diag.go d906a41c2e first commit 2 dienas atpakaļ
ioctl_linux.go d906a41c2e first commit 2 dienas atpakaļ
ipset_linux.go d906a41c2e first commit 2 dienas atpakaļ
link.go d906a41c2e first commit 2 dienas atpakaļ
link_linux.go d906a41c2e first commit 2 dienas atpakaļ
link_tuntap_linux.go d906a41c2e first commit 2 dienas atpakaļ
neigh.go d906a41c2e first commit 2 dienas atpakaļ
neigh_linux.go d906a41c2e first commit 2 dienas atpakaļ
netlink.go d906a41c2e first commit 2 dienas atpakaļ
netlink_linux.go d906a41c2e first commit 2 dienas atpakaļ
netlink_unspecified.go d906a41c2e first commit 2 dienas atpakaļ
netns_linux.go d906a41c2e first commit 2 dienas atpakaļ
netns_unspecified.go d906a41c2e first commit 2 dienas atpakaļ
order.go d906a41c2e first commit 2 dienas atpakaļ
proc_event_linux.go d906a41c2e first commit 2 dienas atpakaļ
protinfo.go d906a41c2e first commit 2 dienas atpakaļ
protinfo_linux.go d906a41c2e first commit 2 dienas atpakaļ
qdisc.go d906a41c2e first commit 2 dienas atpakaļ
qdisc_linux.go d906a41c2e first commit 2 dienas atpakaļ
rdma_link_linux.go d906a41c2e first commit 2 dienas atpakaļ
route.go d906a41c2e first commit 2 dienas atpakaļ
route_linux.go d906a41c2e first commit 2 dienas atpakaļ
route_unspecified.go d906a41c2e first commit 2 dienas atpakaļ
rule.go d906a41c2e first commit 2 dienas atpakaļ
rule_linux.go d906a41c2e first commit 2 dienas atpakaļ
socket.go d906a41c2e first commit 2 dienas atpakaļ
socket_linux.go d906a41c2e first commit 2 dienas atpakaļ
tcp.go d906a41c2e first commit 2 dienas atpakaļ
tcp_linux.go d906a41c2e first commit 2 dienas atpakaļ
xfrm.go d906a41c2e first commit 2 dienas atpakaļ
xfrm_monitor_linux.go d906a41c2e first commit 2 dienas atpakaļ
xfrm_policy.go d906a41c2e first commit 2 dienas atpakaļ
xfrm_policy_linux.go d906a41c2e first commit 2 dienas atpakaļ
xfrm_state.go d906a41c2e first commit 2 dienas atpakaļ
xfrm_state_linux.go d906a41c2e first commit 2 dienas atpakaļ

README.md

netlink - netlink library for go

Build Status GoDoc

The netlink package provides a simple netlink library for go. Netlink is the interface a user-space program in linux uses to communicate with the kernel. It can be used to add and remove interfaces, set ip addresses and routes, and configure ipsec. Netlink communication requires elevated privileges, so in most cases this code needs to be run as root. Since low-level netlink messages are inscrutable at best, the library attempts to provide an api that is loosely modeled on the CLI provided by iproute2. Actions like ip link add will be accomplished via a similarly named function like AddLink(). This library began its life as a fork of the netlink functionality in docker/libcontainer but was heavily rewritten to improve testability, performance, and to add new functionality like ipsec xfrm handling.

Local Build and Test

You can use go get command:

go get github.com/vishvananda/netlink

Testing dependencies:

go get github.com/vishvananda/netns

Testing (requires root):

sudo -E go test github.com/vishvananda/netlink

Examples

Add a new bridge and add eth1 into it:

package main

import (
    "fmt"
    "github.com/vishvananda/netlink"
)

func main() {
    la := netlink.NewLinkAttrs()
    la.Name = "foo"
    mybridge := &netlink.Bridge{LinkAttrs: la}
    err := netlink.LinkAdd(mybridge)
    if err != nil  {
        fmt.Printf("could not add %s: %v\n", la.Name, err)
    }
    eth1, _ := netlink.LinkByName("eth1")
    netlink.LinkSetMaster(eth1, mybridge)
}

Note NewLinkAttrs constructor, it sets default values in structure. For now it sets only TxQLen to -1, so kernel will set default by itself. If you're using simple initialization(LinkAttrs{Name: "foo"}) TxQLen will be set to 0 unless you specify it like LinkAttrs{Name: "foo", TxQLen: 1000}.

Add a new ip address to loopback:

package main

import (
    "github.com/vishvananda/netlink"
)

func main() {
    lo, _ := netlink.LinkByName("lo")
    addr, _ := netlink.ParseAddr("169.254.169.254/32")
    netlink.AddrAdd(lo, addr)
}

Future Work

Many pieces of netlink are not yet fully supported in the high-level interface. Aspects of virtually all of the high-level objects don't exist. Many of the underlying primitives are there, so its a matter of putting the right fields into the high-level objects and making sure that they are serialized and deserialized correctly in the Add and List methods.

There are also a few pieces of low level netlink functionality that still need to be implemented. Routing rules are not in place and some of the more advanced link types. Hopefully there is decent structure and testing in place to make these fairly straightforward to add.