2021-05-25 23:48:54 +00:00
|
|
|
// +build linux
|
|
|
|
|
2015-02-22 17:24:22 -08:00
|
|
|
package bridge
|
|
|
|
|
|
|
|
import (
|
2016-11-22 09:29:53 +08:00
|
|
|
"errors"
|
2015-05-18 16:49:12 -07:00
|
|
|
"fmt"
|
|
|
|
"io/ioutil"
|
2016-09-16 22:40:44 -07:00
|
|
|
"net"
|
2015-05-18 16:49:12 -07:00
|
|
|
"path/filepath"
|
|
|
|
|
2021-04-06 00:24:47 +00:00
|
|
|
"github.com/docker/docker/libnetwork/types"
|
2017-07-26 14:18:31 -07:00
|
|
|
"github.com/sirupsen/logrus"
|
2015-02-22 17:24:22 -08:00
|
|
|
"github.com/vishvananda/netlink"
|
|
|
|
)
|
|
|
|
|
2016-09-16 22:40:44 -07:00
|
|
|
func selectIPv4Address(addresses []netlink.Addr, selector *net.IPNet) (netlink.Addr, error) {
|
|
|
|
if len(addresses) == 0 {
|
2016-11-22 09:29:53 +08:00
|
|
|
return netlink.Addr{}, errors.New("unable to select an address as the address pool is empty")
|
2016-09-16 22:40:44 -07:00
|
|
|
}
|
|
|
|
if selector != nil {
|
|
|
|
for _, addr := range addresses {
|
|
|
|
if selector.Contains(addr.IP) {
|
|
|
|
return addr, nil
|
|
|
|
}
|
|
|
|
}
|
|
|
|
}
|
|
|
|
return addresses[0], nil
|
|
|
|
}
|
|
|
|
|
2015-05-22 10:56:36 -07:00
|
|
|
func setupBridgeIPv4(config *networkConfiguration, i *bridgeInterface) error {
|
2018-12-23 19:05:20 -05:00
|
|
|
if !config.InhibitIPv4 {
|
|
|
|
addrv4List, _, err := i.addresses()
|
|
|
|
if err != nil {
|
|
|
|
return fmt.Errorf("failed to retrieve bridge interface addresses: %v", err)
|
|
|
|
}
|
2015-02-22 17:24:22 -08:00
|
|
|
|
2018-12-23 19:05:20 -05:00
|
|
|
addrv4, _ := selectIPv4Address(addrv4List, config.AddressIPv4)
|
2016-09-16 22:40:44 -07:00
|
|
|
|
2018-12-23 19:05:20 -05:00
|
|
|
if !types.CompareIPNet(addrv4.IPNet, config.AddressIPv4) {
|
|
|
|
if addrv4.IPNet != nil {
|
|
|
|
if err := i.nlh.AddrDel(i.Link, &addrv4); err != nil {
|
|
|
|
return fmt.Errorf("failed to remove current ip address from bridge: %v", err)
|
|
|
|
}
|
|
|
|
}
|
|
|
|
logrus.Debugf("Assigning address to bridge interface %s: %s", config.BridgeName, config.AddressIPv4)
|
|
|
|
if err := i.nlh.AddrAdd(i.Link, &netlink.Addr{IPNet: config.AddressIPv4}); err != nil {
|
|
|
|
return &IPv4AddrAddError{IP: config.AddressIPv4, Err: err}
|
2015-10-05 14:53:25 -07:00
|
|
|
}
|
|
|
|
}
|
2015-02-27 09:11:53 -08:00
|
|
|
}
|
|
|
|
|
2015-04-24 15:13:44 -07:00
|
|
|
// Store bridge network and default gateway
|
2015-10-05 14:53:25 -07:00
|
|
|
i.bridgeIPv4 = config.AddressIPv4
|
|
|
|
i.gatewayIPv4 = config.AddressIPv4.IP
|
2015-04-10 16:02:25 +00:00
|
|
|
|
2015-02-27 09:11:53 -08:00
|
|
|
return nil
|
2015-02-22 17:24:22 -08:00
|
|
|
}
|
|
|
|
|
2015-05-22 10:56:36 -07:00
|
|
|
func setupGatewayIPv4(config *networkConfiguration, i *bridgeInterface) error {
|
2015-04-24 15:13:44 -07:00
|
|
|
if !i.bridgeIPv4.Contains(config.DefaultGatewayIPv4) {
|
2015-05-14 14:56:15 -07:00
|
|
|
return &ErrInvalidGateway{}
|
2015-04-24 15:13:44 -07:00
|
|
|
}
|
2015-06-11 23:21:50 -07:00
|
|
|
|
2015-04-24 15:13:44 -07:00
|
|
|
// Store requested default gateway
|
|
|
|
i.gatewayIPv4 = config.DefaultGatewayIPv4
|
|
|
|
|
|
|
|
return nil
|
|
|
|
}
|
2015-05-18 16:49:12 -07:00
|
|
|
|
2018-05-29 17:07:06 +08:00
|
|
|
func setupLoopbackAddressesRouting(config *networkConfiguration, i *bridgeInterface) error {
|
2015-05-18 16:49:12 -07:00
|
|
|
sysPath := filepath.Join("/proc/sys/net/ipv4/conf", config.BridgeName, "route_localnet")
|
2015-07-27 13:31:03 +02:00
|
|
|
ipv4LoRoutingData, err := ioutil.ReadFile(sysPath)
|
|
|
|
if err != nil {
|
|
|
|
return fmt.Errorf("Cannot read IPv4 local routing setup: %v", err)
|
|
|
|
}
|
2018-05-29 17:07:06 +08:00
|
|
|
// Enable loopback addresses routing only if it isn't already enabled
|
2015-07-27 13:31:03 +02:00
|
|
|
if ipv4LoRoutingData[0] != '1' {
|
|
|
|
if err := ioutil.WriteFile(sysPath, []byte{'1', '\n'}, 0644); err != nil {
|
|
|
|
return fmt.Errorf("Unable to enable local routing for hairpin mode: %v", err)
|
|
|
|
}
|
2015-05-18 16:49:12 -07:00
|
|
|
}
|
|
|
|
return nil
|
|
|
|
}
|