Simple netlink library for go.
Go to file
Daniel Borkmann 74e723f230 Fix inserting a nil neigh.HardwareAddr into the neighboring subsystem
The condition to demand a lladdress for neigh.Flags != NTF_PROXY is just
buggy, since there are various other flags such as NTF_USE, NTF_EXT_MANAGED,
etc where this is not required. Besides, the kernel handles this internally
anyway if it demands a NDA_LLADDR attribute. Simply get rid of the NTF_PROXY
flag/condition since it's wrong.

Fixes: d710fbade4 ("Add proxy support to the neighbor functions (#149)")
Signed-off-by: Daniel Borkmann <daniel@iogearbox.net>
2021-11-01 11:31:57 -05:00
cmd/ipset-test Make IPSet actually support IPs, and fix protocol errors for newer kernels 2021-03-27 13:25:07 -07:00
nl fix staticcheck issues 2021-09-21 09:10:48 -05:00
testdata Add support for ipset 2020-09-24 21:36:22 -04:00
.gitignore Add support for additional TC BPF filter attributes 2019-07-01 11:37:39 -07:00
.travis.yml added support for SFQ qdiscs 2020-10-19 15:28:26 -04:00
CHANGELOG.md Add changelog file, initial release tagging 2018-03-15 21:46:22 -07:00
LICENSE Initial commit of netlink package 2014-08-31 20:34:46 -07:00
Makefile Properly use Skip() function, add -test.v when running tests 2017-11-08 03:30:16 -08:00
README.md link travis to builds, not image 2021-09-21 09:39:15 -05:00
addr.go Add LinkIndex to Addr struct 2020-06-03 11:20:50 -07:00
addr_linux.go Correct panic when IPv4 lacks IFA_ADDRESS address 2021-07-03 11:34:00 +02:00
addr_test.go Add LinkIndex to Addr struct 2020-06-03 11:20:50 -07:00
bpf_linux.go lwtunnel: add support for encap type bpf 2021-07-03 11:44:22 +02:00
bridge_linux.go code simplification 2018-11-19 16:40:56 -08:00
bridge_linux_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
class.go Service curves fix 2020-01-27 15:49:46 -08:00
class_linux.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
class_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
conntrack_linux.go Fix netlink to skip reading TLVs that we are not interested. 2021-09-17 19:01:08 -07:00
conntrack_test.go Add test for conntrack entry raw data parsing 2021-09-17 19:01:08 -07:00
conntrack_unspecified.go Added conntrack_unspecified 2017-04-05 16:02:07 -07:00
devlink_linux.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
devlink_test.go Add devlink port function set attribute 2021-05-08 09:00:34 -07:00
filter.go Add DestPort to TunnelKeyAction 2020-09-24 21:30:07 -04:00
filter_linux.go Add basic flower support 2021-09-17 18:42:15 -07:00
filter_test.go Add basic flower support 2021-09-17 18:42:15 -07:00
fou.go Netlink: Fix Darwin build 2018-07-30 08:32:48 -07:00
fou_linux.go code simplification 2018-11-19 16:40:56 -08:00
fou_test.go Fix go build issue for fou code 2017-11-27 11:05:30 -08:00
fou_unspecified.go added support for Foo-over-UDP netlink calls 2017-11-13 12:13:59 -08:00
genetlink_linux.go genetlink: Add missing error check 2018-11-30 08:41:18 -08:00
genetlink_unspecified.go Add support for generic netlink 2017-05-06 23:07:19 -07:00
go.mod go.mod: update dependencies 2020-09-14 10:45:41 -04:00
go.sum go.mod: update dependencies 2020-09-14 10:45:41 -04:00
gtp_linux.go replace syscall with golang.org/x/sys/unix 2017-10-26 09:45:08 -07:00
gtp_test.go Add support for GPRS Tunnelling Protocol(GTP) 2017-05-06 23:07:19 -07:00
handle_linux.go Provide handle Close() and deprecate Delete() 2021-09-18 09:03:48 -07:00
handle_linux_test.go Provide handle Close() and deprecate Delete() 2021-09-18 09:03:48 -07:00
handle_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
handle_unspecified.go Provide handle Close() and deprecate Delete() 2021-09-18 09:03:48 -07:00
inet_diag.go SocketDiagTCPInfo: Add support for BBR information 2020-11-26 10:01:29 -08:00
ioctl_linux.go link, veth: fix stack corruption from retrieving peer index 2019-11-13 10:31:03 -08:00
ipset_linux.go Make IPSet actually support hash set types 2021-09-18 10:50:26 -07:00
ipset_linux_test.go Make IPSet actually support hash set types 2021-09-18 10:50:26 -07:00
link.go add support for bareudp link type 2021-09-17 10:14:18 -07:00
link_linux.go Set NetNsId to -1 when attr is not specified 2021-11-01 11:26:46 -05:00
link_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
link_tuntap_linux.go Drop cgo usage for ifReq structure. 2015-10-02 11:54:54 +01:00
neigh.go Add support for NDA_FLAGS_EXT neighboring attribute 2021-11-01 11:31:57 -05:00
neigh_linux.go Fix inserting a nil neigh.HardwareAddr into the neighboring subsystem 2021-11-01 11:31:57 -05:00
neigh_test.go Provide handle Close() and deprecate Delete() 2021-09-18 09:03:48 -07:00
netlink.go Reduce allocations 2018-10-29 15:31:34 -07:00
netlink_linux.go support MPLS 2017-02-20 12:07:19 -08:00
netlink_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
netlink_unspecified.go Extend route unspecified operations 2021-09-21 09:11:18 -05:00
netns_linux.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
netns_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
netns_unspecified.go Add network namespace ID management. 2018-07-19 10:40:23 -07:00
order.go Add support for tcp diags. 2017-02-04 16:48:17 -08:00
protinfo.go protinfo: Check if object is nil 2018-07-06 09:00:30 -07:00
protinfo_linux.go Simplify code 2018-10-30 10:31:46 -07:00
protinfo_test.go Allow to skip tests based on min kernel version required 2017-11-08 03:30:16 -08:00
qdisc.go Add support for addition FQ Codel knobs 2020-12-28 10:28:43 -08:00
qdisc_linux.go Don't re-initialize or shadow package level var native to fix data race 2021-05-10 07:24:37 -07:00
qdisc_test.go added support for SFQ qdiscs 2020-10-19 15:28:26 -04:00
rdma_link_linux.go rdma: support rdma link add/del functionality 2021-09-18 10:31:51 -07:00
rdma_link_test.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
route.go Add support for RTA_FLOW 2021-09-20 10:45:34 -07:00
route_linux.go Add linux route get oif option. 2021-09-21 09:12:08 -05:00
route_test.go Add linux route get oif option. 2021-09-21 09:12:08 -05:00
route_unspecified.go Fix non-linux build 2021-03-16 07:45:50 -07:00
rule.go `Rule.String()` method returns `.Dst` 2021-09-20 13:10:42 -07:00
rule_linux.go fix size required for a uint64 2021-08-11 12:18:23 -07:00
rule_test.go `Rule.String()` method returns `.Dst` 2021-09-20 13:10:42 -07:00
socket.go Add support for tcp diags. 2017-02-04 16:48:17 -08:00
socket_linux.go feat: support diag TCP with only socket returns 2021-05-30 12:58:56 +02:00
socket_linux_test.go SocketDiagTCPInfo: Add support for BBR information 2020-11-26 10:01:29 -08:00
socket_test.go Add SocketDiagTCPInfo with some constants and structs to get tcp_info via sock_diag 2020-09-24 21:34:23 -04:00
tcp.go Allow building on non-linux machine 2020-12-28 10:31:32 -08:00
tcp_linux.go Allow building on non-linux machine 2020-12-28 10:31:32 -08:00
tcp_linux_test.go SocketDiagTCPInfo: Add support for BBR information 2020-11-26 10:01:29 -08:00
xfrm.go replace syscall with golang.org/x/sys/unix 2017-10-26 09:45:08 -07:00
xfrm_monitor_linux.go netlink: enforce similar pid checks as in iproute2 2019-07-18 17:26:53 -07:00
xfrm_monitor_test.go Fix Race Condition in TestXfrmMonitorExpire 2019-01-04 09:44:57 -08:00
xfrm_policy.go netlink: xfrm, add optional field to XfrmPolicyTmpl 2021-03-24 16:00:33 -07:00
xfrm_policy_linux.go netlink: xfrm, add optional field to XfrmPolicyTmpl 2021-03-24 16:00:33 -07:00
xfrm_policy_test.go netlink: xfrm, add optional field to XfrmPolicyTmpl 2021-03-24 16:00:33 -07:00
xfrm_state.go Support mask for XfrmState's output mark 2020-12-30 07:19:35 -08:00
xfrm_state_linux.go fix staticcheck issues 2021-09-21 09:10:48 -05:00
xfrm_state_test.go Support mask for XfrmState's output mark 2020-12-30 07:19:35 -08:00

README.md

netlink - netlink library for go

Build Status GoDoc

The netlink package provides a simple netlink library for go. Netlink is the interface a user-space program in linux uses to communicate with the kernel. It can be used to add and remove interfaces, set ip addresses and routes, and configure ipsec. Netlink communication requires elevated privileges, so in most cases this code needs to be run as root. Since low-level netlink messages are inscrutable at best, the library attempts to provide an api that is loosely modeled on the CLI provided by iproute2. Actions like ip link add will be accomplished via a similarly named function like AddLink(). This library began its life as a fork of the netlink functionality in docker/libcontainer but was heavily rewritten to improve testability, performance, and to add new functionality like ipsec xfrm handling.

Local Build and Test

You can use go get command:

go get github.com/vishvananda/netlink

Testing dependencies:

go get github.com/vishvananda/netns

Testing (requires root):

sudo -E go test github.com/vishvananda/netlink

Examples

Add a new bridge and add eth1 into it:

package main

import (
    "fmt"
    "github.com/vishvananda/netlink"
)

func main() {
    la := netlink.NewLinkAttrs()
    la.Name = "foo"
    mybridge := &netlink.Bridge{LinkAttrs: la}
    err := netlink.LinkAdd(mybridge)
    if err != nil  {
        fmt.Printf("could not add %s: %v\n", la.Name, err)
    }
    eth1, _ := netlink.LinkByName("eth1")
    netlink.LinkSetMaster(eth1, mybridge)
}

Note NewLinkAttrs constructor, it sets default values in structure. For now it sets only TxQLen to -1, so kernel will set default by itself. If you're using simple initialization(LinkAttrs{Name: "foo"}) TxQLen will be set to 0 unless you specify it like LinkAttrs{Name: "foo", TxQLen: 1000}.

Add a new ip address to loopback:

package main

import (
    "github.com/vishvananda/netlink"
)

func main() {
    lo, _ := netlink.LinkByName("lo")
    addr, _ := netlink.ParseAddr("169.254.169.254/32")
    netlink.AddrAdd(lo, addr)
}

Future Work

Many pieces of netlink are not yet fully supported in the high-level interface. Aspects of virtually all of the high-level objects don't exist. Many of the underlying primitives are there, so its a matter of putting the right fields into the high-level objects and making sure that they are serialized and deserialized correctly in the Add and List methods.

There are also a few pieces of low level netlink functionality that still need to be implemented. Routing rules are not in place and some of the more advanced link types. Hopefully there is decent structure and testing in place to make these fairly straightforward to add.