utils_linux.go 3.8 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125
  1. //go:build linux
  2. // +build linux
  3. // Network utility functions.
  4. package netutils
  5. import (
  6. "fmt"
  7. "net"
  8. "strings"
  9. "github.com/docker/docker/libnetwork/ipamutils"
  10. "github.com/docker/docker/libnetwork/ns"
  11. "github.com/docker/docker/libnetwork/resolvconf"
  12. "github.com/docker/docker/libnetwork/types"
  13. "github.com/pkg/errors"
  14. "github.com/vishvananda/netlink"
  15. )
  16. var (
  17. networkGetRoutesFct func(netlink.Link, int) ([]netlink.Route, error)
  18. )
  19. // CheckRouteOverlaps checks whether the passed network overlaps with any existing routes
  20. func CheckRouteOverlaps(toCheck *net.IPNet) error {
  21. networkGetRoutesFct := networkGetRoutesFct
  22. if networkGetRoutesFct == nil {
  23. networkGetRoutesFct = ns.NlHandle().RouteList
  24. }
  25. networks, err := networkGetRoutesFct(nil, netlink.FAMILY_V4)
  26. if err != nil {
  27. return err
  28. }
  29. for _, network := range networks {
  30. if network.Dst != nil && network.Scope == netlink.SCOPE_LINK && NetworkOverlaps(toCheck, network.Dst) {
  31. return ErrNetworkOverlaps
  32. }
  33. }
  34. return nil
  35. }
  36. // GenerateIfaceName returns an interface name using the passed in
  37. // prefix and the length of random bytes. The api ensures that the
  38. // there are is no interface which exists with that name.
  39. func GenerateIfaceName(nlh *netlink.Handle, prefix string, len int) (string, error) {
  40. linkByName := netlink.LinkByName
  41. if nlh != nil {
  42. linkByName = nlh.LinkByName
  43. }
  44. for i := 0; i < 3; i++ {
  45. name, err := GenerateRandomName(prefix, len)
  46. if err != nil {
  47. continue
  48. }
  49. _, err = linkByName(name)
  50. if err != nil {
  51. if strings.Contains(err.Error(), "not found") {
  52. return name, nil
  53. }
  54. return "", err
  55. }
  56. }
  57. return "", types.InternalErrorf("could not generate interface name")
  58. }
  59. // ElectInterfaceAddresses looks for an interface on the OS with the
  60. // specified name and returns returns all its IPv4 and IPv6 addresses in CIDR notation.
  61. // If a failure in retrieving the addresses or no IPv4 address is found, an error is returned.
  62. // If the interface does not exist, it chooses from a predefined
  63. // list the first IPv4 address which does not conflict with other
  64. // interfaces on the system.
  65. func ElectInterfaceAddresses(name string) ([]*net.IPNet, []*net.IPNet, error) {
  66. var v4Nets, v6Nets []*net.IPNet
  67. link, _ := ns.NlHandle().LinkByName(name)
  68. if link != nil {
  69. v4addr, err := ns.NlHandle().AddrList(link, netlink.FAMILY_V4)
  70. if err != nil {
  71. return nil, nil, err
  72. }
  73. v6addr, err := ns.NlHandle().AddrList(link, netlink.FAMILY_V6)
  74. if err != nil {
  75. return nil, nil, err
  76. }
  77. for _, nlAddr := range v4addr {
  78. v4Nets = append(v4Nets, nlAddr.IPNet)
  79. }
  80. for _, nlAddr := range v6addr {
  81. v6Nets = append(v6Nets, nlAddr.IPNet)
  82. }
  83. }
  84. if link == nil || len(v4Nets) == 0 {
  85. // Choose from predefined local scope networks
  86. v4Net, err := FindAvailableNetwork(ipamutils.PredefinedLocalScopeDefaultNetworks)
  87. if err != nil {
  88. return nil, nil, errors.Wrapf(err, "PredefinedLocalScopeDefaultNetworks List: %+v",
  89. ipamutils.PredefinedLocalScopeDefaultNetworks)
  90. }
  91. v4Nets = append(v4Nets, v4Net)
  92. }
  93. return v4Nets, v6Nets, nil
  94. }
  95. // FindAvailableNetwork returns a network from the passed list which does not
  96. // overlap with existing interfaces in the system
  97. func FindAvailableNetwork(list []*net.IPNet) (*net.IPNet, error) {
  98. // We don't check for an error here, because we don't really care if we
  99. // can't read /etc/resolv.conf. So instead we skip the append if resolvConf
  100. // is nil. It either doesn't exist, or we can't read it for some reason.
  101. var nameservers []string
  102. if rc, err := resolvconf.Get(); err == nil {
  103. nameservers = resolvconf.GetNameserversAsCIDR(rc.Content)
  104. }
  105. for _, nw := range list {
  106. if err := CheckNameserverOverlaps(nameservers, nw); err == nil {
  107. if err := CheckRouteOverlaps(nw); err == nil {
  108. return nw, nil
  109. }
  110. }
  111. }
  112. return nil, fmt.Errorf("no available network")
  113. }