Simple netlink library for go.
Go to file
Ivan Kolodyazhny 378a404a26 Implement chains support
This patch implements both tc and filter chains.

We also need to align tc filter delition implementation
with iprote2 to delete filters withichain by passing
additional bits during filter deletion call.
2022-12-14 10:59:49 -08:00
.github add build on macOS test 2022-01-25 13:50:16 -06:00
cmd/ipset-test Make IPSet actually support IPs, and fix protocol errors for newer kernels 2021-03-27 13:25:07 -07:00
nl Support skip_hw/skip_sw flags 2022-12-14 08:41:50 -08:00
testdata Add support for ipset 2020-09-24 21:36:22 -04:00
.gitignore Add support for additional TC BPF filter attributes 2019-07-01 11:37:39 -07:00
addr_linux.go Use Addrmsg when listing addrs, and RtMsg when listing routes 2022-03-29 11:15:07 -05:00
addr_test.go fix the tests to run again 2022-01-12 16:05:20 -06:00
addr.go Add LinkIndex to Addr struct 2020-06-03 11:20:50 -07:00
bpf_linux.go lwtunnel: add support for encap type bpf 2021-07-03 11:44:22 +02:00
bridge_linux_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
bridge_linux.go code simplification 2018-11-19 16:40:56 -08:00
chain_linux.go Implement chains support 2022-12-14 10:59:49 -08:00
chain_test.go Implement chains support 2022-12-14 10:59:49 -08:00
chain.go Implement chains support 2022-12-14 10:59:49 -08:00
CHANGELOG.md Add changelog file, initial release tagging 2018-03-15 21:46:22 -07:00
class_linux.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
class_test.go fix the tests to run again 2022-01-12 16:05:20 -06:00
class.go Service curves fix 2020-01-27 15:49:46 -08:00
conntrack_linux.go Add labelFilter for conntrack 2022-11-03 10:05:53 -07:00
conntrack_test.go Add labelFilter for conntrack 2022-11-03 10:05:53 -07:00
conntrack_unspecified.go Added conntrack_unspecified 2017-04-05 16:02:07 -07:00
devlink_linux.go Support for devlink info command 2021-11-01 11:35:09 -05:00
devlink_test.go Support for devlink info command 2021-11-01 11:35:09 -05:00
filter_linux.go Implement chains support 2022-12-14 10:59:49 -08:00
filter_test.go Implement chains support 2022-12-14 10:59:49 -08:00
filter.go Implement chains support 2022-12-14 10:59:49 -08:00
fou_linux.go code simplification 2018-11-19 16:40:56 -08:00
fou_test.go Fix go build issue for fou code 2017-11-27 11:05:30 -08:00
fou_unspecified.go added support for Foo-over-UDP netlink calls 2017-11-13 12:13:59 -08:00
fou.go Netlink: Fix Darwin build 2018-07-30 08:32:48 -07:00
genetlink_linux.go genetlink: Add missing error check 2018-11-30 08:41:18 -08:00
genetlink_unspecified.go Add support for generic netlink 2017-05-06 23:07:19 -07:00
go.mod Use IFLA_* consts defined in golang.org/x/sys/unix 2022-08-07 20:12:18 +02:00
go.sum Use IFLA_* consts defined in golang.org/x/sys/unix 2022-08-07 20:12:18 +02:00
gtp_linux.go replace syscall with golang.org/x/sys/unix 2017-10-26 09:45:08 -07:00
gtp_test.go Add support for GPRS Tunnelling Protocol(GTP) 2017-05-06 23:07:19 -07:00
handle_linux_test.go Provide handle Close() and deprecate Delete() 2021-09-18 09:03:48 -07:00
handle_linux.go Add SetStrictCheck() method to NetlinkHandle 2022-03-29 11:15:07 -05:00
handle_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
handle_unspecified.go link: add LinkSetGSOMaxSize and LinkSetGROMaxSize 2022-06-07 09:11:27 -07:00
inet_diag.go SocketDiagTCPInfo: Add support for BBR information 2020-11-26 10:01:29 -08:00
ioctl_linux.go link, veth: fix stack corruption from retrieving peer index 2019-11-13 10:31:03 -08:00
ipset_linux_test.go Fix adding ipset entry comment 2022-12-12 09:07:43 -08:00
ipset_linux.go Fix adding ipset entry comment 2022-12-12 09:07:43 -08:00
LICENSE Initial commit of netlink package 2014-08-31 20:34:46 -07:00
link_linux.go Use IFLA_* consts defined in golang.org/x/sys/unix 2022-08-07 20:12:18 +02:00
link_test.go link: Add FlowBased support to Gretun 2022-08-02 12:16:27 +02:00
link_tuntap_linux.go Drop cgo usage for ifReq structure. 2015-10-02 11:54:54 +01:00
link.go link: Add FlowBased support to Gretun 2022-08-02 12:16:27 +02:00
Makefile Properly use Skip() function, add -test.v when running tests 2017-11-08 03:30:16 -08:00
neigh_linux.go Use ndmsg payload for neighbor subscribe requests 2022-11-03 09:05:21 -07:00
neigh_test.go Provide handle Close() and deprecate Delete() 2021-09-18 09:03:48 -07:00
neigh.go Add support for NDA_FLAGS_EXT neighboring attribute 2021-11-01 11:31:57 -05:00
netlink_linux.go support MPLS 2017-02-20 12:07:19 -08:00
netlink_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
netlink_unspecified.go Add XfrmPolicyGet to unspecified operations 2022-11-03 09:19:10 -07:00
netlink.go Reduce allocations 2018-10-29 15:31:34 -07:00
netns_linux.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
netns_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
netns_unspecified.go Add network namespace ID management. 2018-07-19 10:40:23 -07:00
order.go Add support for tcp diags. 2017-02-04 16:48:17 -08:00
proc_event_linux.go Fix darwin target compilation 2022-01-25 13:50:16 -06:00
proc_event_test.go Fix darwin target compilation 2022-01-25 13:50:16 -06:00
protinfo_linux.go Simplify code 2018-10-30 10:31:46 -07:00
protinfo_test.go Allow to skip tests based on min kernel version required 2017-11-08 03:30:16 -08:00
protinfo.go protinfo: Check if object is nil 2018-07-06 09:00:30 -07:00
qdisc_linux.go qdisc ingress_block support 2022-12-13 09:41:45 -08:00
qdisc_test.go qdisc ingress_block support 2022-12-13 09:41:45 -08:00
qdisc.go qdisc ingress_block support 2022-12-13 09:41:45 -08:00
rdma_link_linux.go rdma: support rdma link add/del functionality 2021-09-18 10:31:51 -07:00
rdma_link_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
README.md fix badge 2022-01-12 16:57:20 -06:00
route_linux.go Add firewall mark option to RouteGetOptions 2022-11-07 10:26:17 -08:00
route_test.go Add firewall mark option to RouteGetOptions 2022-11-07 10:26:17 -08:00
route_unspecified.go Fix non-linux build 2021-03-16 07:45:50 -07:00
route.go fix: build failed on macos when use RT_FILTER_TABLE 2022-03-29 11:19:33 -05:00
rule_linux.go rule: add support for uidrange 2022-07-28 08:58:17 -07:00
rule_test.go rule: add support for uidrange 2022-07-28 08:58:17 -07:00
rule.go rule: add support for uidrange 2022-07-28 08:58:17 -07:00
socket_linux_test.go SocketDiagTCPInfo: Add support for BBR information 2020-11-26 10:01:29 -08:00
socket_linux.go feat: support diag TCP with only socket returns 2021-05-30 12:58:56 +02:00
socket_test.go Add SocketDiagTCPInfo with some constants and structs to get tcp_info via sock_diag 2020-09-24 21:34:23 -04:00
socket.go Add support for tcp diags. 2017-02-04 16:48:17 -08:00
tcp_linux_test.go SocketDiagTCPInfo: Add support for BBR information 2020-11-26 10:01:29 -08:00
tcp_linux.go Allow building on non-linux machine 2020-12-28 10:31:32 -08:00
tcp.go Allow building on non-linux machine 2020-12-28 10:31:32 -08:00
xfrm_monitor_linux.go netlink: enforce similar pid checks as in iproute2 2019-07-18 17:26:53 -07:00
xfrm_monitor_test.go skip flaky test in ci 2022-01-12 16:52:50 -06:00
xfrm_policy_linux.go - fixes vishvananda/netlink#815 2022-11-07 14:26:36 -08:00
xfrm_policy_test.go Fix test on 32bit arch 2022-02-22 10:18:32 -08:00
xfrm_policy.go netlink: xfrm, add optional field to XfrmPolicyTmpl 2021-03-24 16:00:33 -07:00
xfrm_state_linux.go - fixes vishvananda/netlink#815 2022-11-07 14:26:36 -08:00
xfrm_state_test.go - fixes vishvananda/netlink#815 2022-11-07 14:26:36 -08:00
xfrm_state.go - fixes vishvananda/netlink#815 2022-11-07 14:26:36 -08:00
xfrm.go replace syscall with golang.org/x/sys/unix 2017-10-26 09:45:08 -07:00

netlink - netlink library for go

Build Status GoDoc

The netlink package provides a simple netlink library for go. Netlink is the interface a user-space program in linux uses to communicate with the kernel. It can be used to add and remove interfaces, set ip addresses and routes, and configure ipsec. Netlink communication requires elevated privileges, so in most cases this code needs to be run as root. Since low-level netlink messages are inscrutable at best, the library attempts to provide an api that is loosely modeled on the CLI provided by iproute2. Actions like ip link add will be accomplished via a similarly named function like AddLink(). This library began its life as a fork of the netlink functionality in docker/libcontainer but was heavily rewritten to improve testability, performance, and to add new functionality like ipsec xfrm handling.

Local Build and Test

You can use go get command:

go get github.com/vishvananda/netlink

Testing dependencies:

go get github.com/vishvananda/netns

Testing (requires root):

sudo -E go test github.com/vishvananda/netlink

Examples

Add a new bridge and add eth1 into it:

package main

import (
    "fmt"
    "github.com/vishvananda/netlink"
)

func main() {
    la := netlink.NewLinkAttrs()
    la.Name = "foo"
    mybridge := &netlink.Bridge{LinkAttrs: la}
    err := netlink.LinkAdd(mybridge)
    if err != nil  {
        fmt.Printf("could not add %s: %v\n", la.Name, err)
    }
    eth1, _ := netlink.LinkByName("eth1")
    netlink.LinkSetMaster(eth1, mybridge)
}

Note NewLinkAttrs constructor, it sets default values in structure. For now it sets only TxQLen to -1, so kernel will set default by itself. If you're using simple initialization(LinkAttrs{Name: "foo"}) TxQLen will be set to 0 unless you specify it like LinkAttrs{Name: "foo", TxQLen: 1000}.

Add a new ip address to loopback:

package main

import (
    "github.com/vishvananda/netlink"
)

func main() {
    lo, _ := netlink.LinkByName("lo")
    addr, _ := netlink.ParseAddr("169.254.169.254/32")
    netlink.AddrAdd(lo, addr)
}

Future Work

Many pieces of netlink are not yet fully supported in the high-level interface. Aspects of virtually all of the high-level objects don't exist. Many of the underlying primitives are there, so its a matter of putting the right fields into the high-level objects and making sure that they are serialized and deserialized correctly in the Add and List methods.

There are also a few pieces of low level netlink functionality that still need to be implemented. Routing rules are not in place and some of the more advanced link types. Hopefully there is decent structure and testing in place to make these fairly straightforward to add.