moby--moby/libnetwork
Akihiro Suda ce5bc0079b allow propagating custom exec-root (e.g. "/run/docker") to libnetwork-setkey
The docker daemon needs to be modified as follows:

    diff --git a/daemon/oci_linux.go b/daemon/oci_linux.go
    index 00ace320df..ea7daa72df 100644
    --- a/daemon/oci_linux.go
    +++ b/daemon/oci_linux.go
    @@ -809,7 +809,7 @@ func (daemon *Daemon) createSpec(c *container.Container) (retSpec *specs.Spec, e
                        s.Hooks = &specs.Hooks{
                                Prestart: []specs.Hook{{
                                        Path: target,
    -                                   Args: []string{"libnetwork-setkey", c.ID, daemon.netController.ID()},
    +                                   Args: []string{"libnetwork-setkey", c.ID, daemon.netController.ID(), "-exec-root="+daemon.configStore.GetExecRoot()},
                                }},
                        }
                }

Signed-off-by: Akihiro Suda <suda.akihiro@lab.ntt.co.jp>
2018-09-14 14:09:09 +09:00
..
.circleci circleci: Rename 'lint' to 'check' to match build target 2018-07-10 17:01:48 +01:00
api Remove Solaris support 2017-10-25 15:33:06 +02:00
bitseq doc: fix typo 2018-09-07 11:48:15 +08:00
client Spelling fixes 2018-07-12 12:54:44 -07:00
cluster Switch from x/net/context -> context 2018-04-24 14:57:04 -07:00
cmd doc: fix typo 2018-09-07 11:48:15 +08:00
config allow propagating custom exec-root (e.g. "/run/docker") to libnetwork-setkey 2018-09-14 14:09:09 +09:00
datastore Spelling fixes 2018-07-12 12:54:44 -07:00
diagnostic doc: fix typo 2018-09-07 11:48:15 +08:00
discoverapi fix nits in comments and log 2016-10-29 19:35:18 +08:00
docs Spelling fixes 2018-07-12 12:54:44 -07:00
driverapi Spelling fixes 2018-07-12 12:54:44 -07:00
drivers Fix typo: assigment -> assignment 2018-09-13 09:59:39 +08:00
drvregistry Spelling fixes 2018-07-12 12:54:44 -07:00
etchosts Enable network-db test image creation 2018-05-29 08:03:32 -07:00
hostdiscovery test: fix ineffectual assignments 2018-05-29 18:08:32 +08:00
idm Adding a unit case to verify rollover 2017-10-03 12:15:34 -07:00
internal Create internal directory 2018-07-16 17:34:20 -07:00
ipam Fix some typos 2018-09-08 09:33:24 +08:00
ipamapi Adding a unit case to verify rollover 2017-10-03 12:15:34 -07:00
ipams Global Default Address Pool support 2018-08-16 11:28:24 -04:00
ipamutils Add getter function for Default Address Pools 2018-08-16 15:48:42 -04:00
iptables Spelling fixes 2018-07-12 12:54:44 -07:00
ipvs ipvs support rs connection information 2018-08-22 21:14:26 +08:00
netlabel Support for com.docker.network.bridge.container_interface_prefix label 2017-03-01 03:09:45 +01:00
netutils Global Default Address Pool support 2018-08-16 11:28:24 -04:00
networkdb fix error when make lint 2018-09-08 21:06:07 +08:00
ns Add init_windows.go for compilation 2018-09-13 09:20:03 -07:00
options use grep to find a/an misuse 2016-06-03 16:35:33 +08:00
osl doc: fix typo 2018-09-07 11:48:15 +08:00
portallocator Don't build portallocator on Windows 2018-09-13 09:20:03 -07:00
portmapper Support SCTP port mapping 2018-02-13 16:01:03 +09:00
resolvconf Fix handling of the resolv.conf 2018-07-24 10:18:10 -07:00
support Added support for Swarm Service Driller (ssd) 2018-08-16 14:30:23 -05:00
test/integration doc: fix typo 2018-09-07 11:48:15 +08:00
testutils Remove Solaris support 2017-10-25 15:33:06 +02:00
types Migrate to gotest.tools :) 2018-07-06 11:01:37 -07:00
vendor Bump libkv to 458977154600b9f23984d9f4b82e79570b5ae12b 2018-09-13 09:20:03 -07:00
.dockerignore Added back dockerignore 2018-06-22 16:10:22 -07:00
.gitignore Added back dockerignore 2018-06-22 16:10:22 -07:00
CHANGELOG.md Spelling fixes 2018-07-12 12:54:44 -07:00
Dockerfile Dockerfile: Install a fixed version of gogoprotobuf 2018-07-25 15:42:25 +01:00
LICENSE
MAINTAINERS Maintainers update 2018-05-18 09:36:32 -07:00
Makefile Make protobuf check silent 2018-07-12 12:54:59 -07:00
README.md Add required imports to example code in README.md 2018-07-16 14:50:53 +01:00
ROADMAP.md fix typos 2016-05-30 18:20:52 +08:00
Vagrantfile Updated vagrant box, ubuntu/vivid64 was remove from atlas.hasicorp.com 2016-10-19 15:28:46 -06:00
agent.go Spelling fixes 2018-07-12 12:54:44 -07:00
agent.pb.go Gracefully remove LB endpoints from services 2018-03-16 15:19:49 -04:00
agent.proto Gracefully remove LB endpoints from services 2018-03-16 15:19:49 -04:00
controller.go Give LB sandboxes predictable names 2018-07-24 17:10:41 -04:00
default_gateway.go Avoid default gateway collisions 2018-06-28 12:08:18 -04:00
default_gateway_freebsd.go Default GW support for overlay networks 2016-11-08 14:12:29 -08:00
default_gateway_linux.go Default GW support for overlay networks 2016-11-08 14:12:29 -08:00
default_gateway_windows.go Default GW support for overlay networks 2016-11-08 14:12:29 -08:00
drivers_experimental_linux.go Handling the new experimental daemon flag 2016-12-13 13:57:17 -08:00
drivers_freebsd.go Handling the new experimental daemon flag 2016-12-13 13:57:17 -08:00
drivers_ipam.go Allow user to specify default address pools for docker networks 2018-02-22 12:14:59 -05:00
drivers_linux.go Handling the new experimental daemon flag 2016-12-13 13:57:17 -08:00
drivers_windows.go Changes to support ICS network on windows 2017-05-18 13:45:38 -07:00
endpoint.go Add endpoint load-balancing mode 2018-06-28 12:08:18 -04:00
endpoint_cnt.go endpoint_cnt store updates should not create an object 2017-10-26 17:52:40 -07:00
endpoint_info.go Add SrcName() method to return interface name 2018-06-28 12:08:18 -04:00
endpoint_info_unix.go Default GW support for overlay networks 2016-11-08 14:12:29 -08:00
endpoint_info_windows.go Default GW support for overlay networks 2016-11-08 14:12:29 -08:00
error.go Merge pull request #1616 from chchliang/testnetwork 2017-04-10 13:54:44 -07:00
errors_test.go
firewall_linux.go Reload DOCKER-USER chain on frewalld reload. 2018-01-12 10:50:22 -05:00
firewall_others.go Reload DOCKER-USER chain on frewalld reload. 2018-01-12 10:50:22 -05:00
libnetwork_internal_test.go Create internal directory 2018-07-16 17:34:20 -07:00
libnetwork_linux_test.go Fix handling of the resolv.conf 2018-07-24 10:18:10 -07:00
libnetwork_test.go Spelling fixes 2018-07-12 12:54:44 -07:00
machines
network.go Merge pull request #2240 from ctelfer/nice-lb-names 2018-07-25 10:14:10 -07:00
network_unix.go Windows overlay driver support 2016-11-03 16:50:04 -07:00
network_windows.go Fix for docker intercepting DNS requests on ICS network 2017-11-17 13:06:14 -08:00
resolver.go Spelling fixes 2018-07-12 12:54:44 -07:00
resolver_test.go Retry other external DNS servers on ServFail 2018-03-23 10:22:04 -07:00
resolver_unix.go Rolling back the port configs if failed to programIngress() 2018-09-11 19:10:59 +08:00
resolver_windows.go Move the iptables setup for embedded DNS into a reexec process 2016-04-15 23:37:20 -07:00
sandbox.go Merge pull request #2240 from ctelfer/nice-lb-names 2018-07-25 10:14:10 -07:00
sandbox_dns_unix.go Fix handling of the resolv.conf 2018-07-24 10:18:10 -07:00
sandbox_dns_windows.go Add network restore to support docker live restore container 2016-06-13 23:48:00 -07:00
sandbox_externalkey.go
sandbox_externalkey_unix.go allow propagating custom exec-root (e.g. "/run/docker") to libnetwork-setkey 2018-09-14 14:09:09 +09:00
sandbox_externalkey_windows.go
sandbox_store.go Use fmt precision to limit string length 2018-07-05 17:44:04 -04:00
sandbox_test.go Improve interface order 2018-05-25 17:40:32 +02:00
service.go Create internal directory 2018-07-16 17:34:20 -07:00
service_common.go Create internal directory 2018-07-16 17:34:20 -07:00
service_common_test.go Migrate to gotest.tools :) 2018-07-06 11:01:37 -07:00
service_linux.go Rolling back the port configs if failed to programIngress() 2018-09-11 19:10:59 +08:00
service_unsupported.go Add endpoint load-balancing mode 2018-06-28 12:08:18 -04:00
service_windows.go Add endpoint load-balancing mode 2018-06-28 12:08:18 -04:00
store.go Add option processing to network.Delete() 2018-06-28 12:08:12 -04:00
store_linux_test.go libnetwork support for Solaris 2016-10-14 16:38:23 -07:00
store_test.go libnetwork support for Solaris 2016-10-14 16:38:23 -07:00
vendor.conf Remove unused syndtr/gocapability from vendor.conf 2018-09-13 09:20:03 -07:00

README.md

libnetwork - networking for containers

Circle CI Coverage Status GoDoc Go Report Card

Libnetwork provides a native Go implementation for connecting containers

The goal of libnetwork is to deliver a robust Container Network Model that provides a consistent programming interface and the required network abstractions for applications.

Design

Please refer to the design for more information.

Using libnetwork

There are many networking solutions available to suit a broad range of use-cases. libnetwork uses a driver / plugin model to support all of these solutions while abstracting the complexity of the driver implementations by exposing a simple and consistent Network Model to users.

import (
	"fmt"
	"log"

	"github.com/docker/docker/pkg/reexec"
	"github.com/docker/libnetwork"
	"github.com/docker/libnetwork/config"
	"github.com/docker/libnetwork/netlabel"
	"github.com/docker/libnetwork/options"
)

func main() {
	if reexec.Init() {
		return
	}

	// Select and configure the network driver
	networkType := "bridge"

	// Create a new controller instance
	driverOptions := options.Generic{}
	genericOption := make(map[string]interface{})
	genericOption[netlabel.GenericData] = driverOptions
	controller, err := libnetwork.New(config.OptionDriverConfig(networkType, genericOption))
	if err != nil {
		log.Fatalf("libnetwork.New: %s", err)
	}

	// Create a network for containers to join.
	// NewNetwork accepts Variadic optional arguments that libnetwork and Drivers can use.
	network, err := controller.NewNetwork(networkType, "network1", "")
	if err != nil {
		log.Fatalf("controller.NewNetwork: %s", err)
	}

	// For each new container: allocate IP and interfaces. The returned network
	// settings will be used for container infos (inspect and such), as well as
	// iptables rules for port publishing. This info is contained or accessible
	// from the returned endpoint.
	ep, err := network.CreateEndpoint("Endpoint1")
	if err != nil {
		log.Fatalf("network.CreateEndpoint: %s", err)
	}

	// Create the sandbox for the container.
	// NewSandbox accepts Variadic optional arguments which libnetwork can use.
	sbx, err := controller.NewSandbox("container1",
		libnetwork.OptionHostname("test"),
		libnetwork.OptionDomainname("docker.io"))
	if err != nil {
		log.Fatalf("controller.NewSandbox: %s", err)
	}

	// A sandbox can join the endpoint via the join api.
	err = ep.Join(sbx)
	if err != nil {
		log.Fatalf("ep.Join: %s", err)
	}

	// libnetwork client can check the endpoint's operational data via the Info() API
	epInfo, err := ep.DriverInfo()
	if err != nil {
		log.Fatalf("ep.DriverInfo: %s", err)
	}

	macAddress, ok := epInfo[netlabel.MacAddress]
	if !ok {
		log.Fatalf("failed to get mac address from endpoint info")
	}

	fmt.Printf("Joined endpoint %s (%s) to sandbox %s (%s)\n", ep.Name(), macAddress, sbx.ContainerID(), sbx.Key())
}

Future

Please refer to roadmap for more information.

Contributing

Want to hack on libnetwork? Docker's contributions guidelines apply.

Code and documentation copyright 2015 Docker, inc. Code released under the Apache 2.0 license. Docs released under Creative commons.