1
0
Fork 0
mirror of https://github.com/moby/moby.git synced 2022-11-09 12:21:53 -05:00
moby--moby/libnetwork
Yves Blusseau 6149b1f32f Fix bad order of iptables filter rules
Rules with ctstate RELATED,ESTABLISHED must be create before same
rules without ctstate.

Signed-off-by: Yves Blusseau <90z7oey02@sneakemail.com>
2016-04-16 18:42:13 +02:00
..
api Add support to accepting arbitrary network ID 2016-04-15 12:34:21 -07:00
bitseq Merge pull request #1120 from mrjana/store 2016-04-15 15:50:46 -07:00
client
cmd Merge pull request #1118 from mrjana/api 2016-04-15 12:52:16 -07:00
config
datastore Remove kvstore deps from datastore package 2016-04-15 15:36:44 -07:00
discoverapi
docs
driverapi Add overlay manager driver 2016-04-14 10:37:42 -07:00
drivers Fix bad order of iptables filter rules 2016-04-16 18:42:13 +02:00
drvregistry Add overlay manager driver 2016-04-14 10:37:42 -07:00
etchosts
Godeps Update libkv in godeps 2016-04-15 14:17:48 -07:00
hostdiscovery
idm
ipam Need boltdb Register only in tests 2016-04-15 16:34:09 -07:00
ipamapi
ipams Fix ipams builtin package for darwin 2016-04-15 14:48:49 -07:00
ipamutils Merge pull request #1095 from mrjana/ipam 2016-04-15 11:46:47 -07:00
iptables Fix bad order of iptables filter rules 2016-04-16 18:42:13 +02:00
netlabel Add overlay manager driver 2016-04-14 10:37:42 -07:00
netutils
networkdb
ns
options
osl Merge pull request #1095 from mrjana/ipam 2016-04-15 11:46:47 -07:00
portallocator
portmapper
resolvconf
test/integration
testutils
types Merge pull request #1095 from mrjana/ipam 2016-04-15 11:46:47 -07:00
.dockerignore
.gitignore
CHANGELOG.md
circle.yml
controller.go Add support to accepting arbitrary network ID 2016-04-15 12:34:21 -07:00
default_gateway.go
default_gateway_freebsd.go
default_gateway_linux.go Add support to accepting arbitrary network ID 2016-04-15 12:34:21 -07:00
default_gateway_solaris.go Get libnetwork to build on Solaris 2016-04-14 14:03:50 -07:00
default_gateway_windows.go
Dockerfile.build
drivers_experimental_linux.go
drivers_freebsd.go
drivers_linux.go
drivers_solaris.go Get libnetwork to build on Solaris 2016-04-14 14:03:50 -07:00
drivers_stub_linux.go
drivers_windows.go
endpoint.go
endpoint_cnt.go
endpoint_info.go
error.go
errors_test.go
libnetwork_internal_test.go Merge pull request #1118 from mrjana/api 2016-04-15 12:52:16 -07:00
libnetwork_test.go Add support to accepting arbitrary network ID 2016-04-15 12:34:21 -07:00
LICENSE
machines
MAINTAINERS
Makefile Enable cross platform build check in circle-ci 2016-04-14 15:01:56 -07:00
network.go Merge pull request #1095 from mrjana/ipam 2016-04-15 11:46:47 -07:00
README.md Add support to accepting arbitrary network ID 2016-04-15 12:34:21 -07:00
resolver.go
ROADMAP.md
sandbox.go
sandbox_dns_unix.go
sandbox_dns_windows.go
sandbox_externalkey.go
sandbox_externalkey_solaris.go Get libnetwork to build on Solaris 2016-04-14 14:03:50 -07:00
sandbox_externalkey_unix.go
sandbox_externalkey_windows.go
sandbox_store.go
sandbox_test.go Add support to accepting arbitrary network ID 2016-04-15 12:34:21 -07:00
store.go Remove kvstore deps from datastore package 2016-04-15 15:36:44 -07:00
store_test.go Add support to accepting arbitrary network ID 2016-04-15 12:34:21 -07:00
Vagrantfile
wrapmake.sh

libnetwork - networking for containers

Circle CI Coverage Status GoDoc

Libnetwork provides a native Go implementation for connecting containers

The goal of libnetwork is to deliver a robust Container Network Model that provides a consistent programming interface and the required network abstractions for applications.

Design

Please refer to the design for more information.

Using libnetwork

There are many networking solutions available to suit a broad range of use-cases. libnetwork uses a driver / plugin model to support all of these solutions while abstracting the complexity of the driver implementations by exposing a simple and consistent Network Model to users.

func main() {
	if reexec.Init() {
		return
	}

	// Select and configure the network driver
	networkType := "bridge"

	// Create a new controller instance
	driverOptions := options.Generic{}
	genericOption := make(map[string]interface{})
	genericOption[netlabel.GenericData] = driverOptions
	controller, err := libnetwork.New(config.OptionDriverConfig(networkType, genericOption))
	if err != nil {
		log.Fatalf("libnetwork.New: %s", err)
	}

	// Create a network for containers to join.
	// NewNetwork accepts Variadic optional arguments that libnetwork and Drivers can use.
	network, err := controller.NewNetwork(networkType, "network1", "")
	if err != nil {
		log.Fatalf("controller.NewNetwork: %s", err)
	}

	// For each new container: allocate IP and interfaces. The returned network
	// settings will be used for container infos (inspect and such), as well as
	// iptables rules for port publishing. This info is contained or accessible
	// from the returned endpoint.
	ep, err := network.CreateEndpoint("Endpoint1")
	if err != nil {
		log.Fatalf("network.CreateEndpoint: %s", err)
	}

	// Create the sandbox for the container.
	// NewSandbox accepts Variadic optional arguments which libnetwork can use.
	sbx, err := controller.NewSandbox("container1",
		libnetwork.OptionHostname("test"),
		libnetwork.OptionDomainname("docker.io"))
	if err != nil {
		log.Fatalf("controller.NewSandbox: %s", err)
	}

	// A sandbox can join the endpoint via the join api.
	err = ep.Join(sbx)
	if err != nil {
		log.Fatalf("ep.Join: %s", err)
	}

	// libnetwork client can check the endpoint's operational data via the Info() API
	epInfo, err := ep.DriverInfo()
	if err != nil {
		log.Fatalf("ep.DriverInfo: %s", err)
	}

	macAddress, ok := epInfo[netlabel.MacAddress]
	if !ok {
		log.Fatalf("failed to get mac address from endpoint info")
	}

	fmt.Printf("Joined endpoint %s (%s) to sandbox %s (%s)\n", ep.Name(), macAddress, sbx.ContainerID(), sbx.Key())
}

Future

Please refer to roadmap for more information.

Contributing

Want to hack on libnetwork? Docker's contributions guidelines apply.

Code and documentation copyright 2015 Docker, inc. Code released under the Apache 2.0 license. Docs released under Creative commons.