utils_linux.go 3.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122
  1. //go:build linux
  2. // +build linux
  3. // Network utility functions.
  4. package netutils
  5. import (
  6. "net"
  7. "os"
  8. "github.com/docker/docker/libnetwork/ipamutils"
  9. "github.com/docker/docker/libnetwork/ns"
  10. "github.com/docker/docker/libnetwork/resolvconf"
  11. "github.com/docker/docker/libnetwork/types"
  12. "github.com/pkg/errors"
  13. "github.com/vishvananda/netlink"
  14. )
  15. var networkGetRoutesFct func(netlink.Link, int) ([]netlink.Route, error)
  16. // CheckRouteOverlaps checks whether the passed network overlaps with any existing routes
  17. func CheckRouteOverlaps(toCheck *net.IPNet) error {
  18. networkGetRoutesFct := networkGetRoutesFct
  19. if networkGetRoutesFct == nil {
  20. networkGetRoutesFct = ns.NlHandle().RouteList
  21. }
  22. networks, err := networkGetRoutesFct(nil, netlink.FAMILY_V4)
  23. if err != nil {
  24. return err
  25. }
  26. for _, network := range networks {
  27. if network.Dst != nil && network.Scope == netlink.SCOPE_LINK && NetworkOverlaps(toCheck, network.Dst) {
  28. return ErrNetworkOverlaps
  29. }
  30. }
  31. return nil
  32. }
  33. // GenerateIfaceName returns an interface name using the passed in
  34. // prefix and the length of random bytes. The api ensures that the
  35. // there are is no interface which exists with that name.
  36. func GenerateIfaceName(nlh *netlink.Handle, prefix string, len int) (string, error) {
  37. linkByName := netlink.LinkByName
  38. if nlh != nil {
  39. linkByName = nlh.LinkByName
  40. }
  41. for i := 0; i < 3; i++ {
  42. name, err := GenerateRandomName(prefix, len)
  43. if err != nil {
  44. return "", err
  45. }
  46. _, err = linkByName(name)
  47. if err != nil {
  48. if errors.As(err, &netlink.LinkNotFoundError{}) {
  49. return name, nil
  50. }
  51. return "", err
  52. }
  53. }
  54. return "", types.InternalErrorf("could not generate interface name")
  55. }
  56. // ElectInterfaceAddresses looks for an interface on the OS with the
  57. // specified name and returns returns all its IPv4 and IPv6 addresses in CIDR notation.
  58. // If a failure in retrieving the addresses or no IPv4 address is found, an error is returned.
  59. // If the interface does not exist, it chooses from a predefined
  60. // list the first IPv4 address which does not conflict with other
  61. // interfaces on the system.
  62. func ElectInterfaceAddresses(name string) ([]*net.IPNet, []*net.IPNet, error) {
  63. var v4Nets, v6Nets []*net.IPNet
  64. link, _ := ns.NlHandle().LinkByName(name)
  65. if link != nil {
  66. v4addr, err := ns.NlHandle().AddrList(link, netlink.FAMILY_V4)
  67. if err != nil {
  68. return nil, nil, err
  69. }
  70. v6addr, err := ns.NlHandle().AddrList(link, netlink.FAMILY_V6)
  71. if err != nil {
  72. return nil, nil, err
  73. }
  74. for _, nlAddr := range v4addr {
  75. v4Nets = append(v4Nets, nlAddr.IPNet)
  76. }
  77. for _, nlAddr := range v6addr {
  78. v6Nets = append(v6Nets, nlAddr.IPNet)
  79. }
  80. }
  81. if link == nil || len(v4Nets) == 0 {
  82. // Choose from predefined local scope networks
  83. v4Net, err := FindAvailableNetwork(ipamutils.PredefinedLocalScopeDefaultNetworks)
  84. if err != nil {
  85. return nil, nil, errors.Wrapf(err, "PredefinedLocalScopeDefaultNetworks List: %+v",
  86. ipamutils.PredefinedLocalScopeDefaultNetworks)
  87. }
  88. v4Nets = append(v4Nets, v4Net)
  89. }
  90. return v4Nets, v6Nets, nil
  91. }
  92. // FindAvailableNetwork returns a network from the passed list which does not
  93. // overlap with existing interfaces in the system
  94. func FindAvailableNetwork(list []*net.IPNet) (*net.IPNet, error) {
  95. // We don't check for an error here, because we don't really care if we
  96. // can't read /etc/resolv.conf. So instead we skip the append if resolvConf
  97. // is nil. It either doesn't exist, or we can't read it for some reason.
  98. var nameservers []string
  99. if rc, err := os.ReadFile(resolvconf.Path()); err == nil {
  100. nameservers = resolvconf.GetNameserversAsCIDR(rc)
  101. }
  102. for _, nw := range list {
  103. if err := CheckNameserverOverlaps(nameservers, nw); err == nil {
  104. if err := CheckRouteOverlaps(nw); err == nil {
  105. return nw, nil
  106. }
  107. }
  108. }
  109. return nil, errors.New("no available network")
  110. }