Darren Shepherd 0323844ca6 Add CNI networking to system-docker 8 年之前
..
iptables 0323844ca6 Add CNI networking to system-docker 8 年之前
.travis.yml 0323844ca6 Add CNI networking to system-docker 8 年之前
LICENSE 0323844ca6 Add CNI networking to system-docker 8 年之前
README.md 0323844ca6 Add CNI networking to system-docker 8 年之前
build 0323844ca6 Add CNI networking to system-docker 8 年之前
test 0323844ca6 Add CNI networking to system-docker 8 年之前

README.md

go-iptables

Build Status

Go bindings for iptables utility.

In-kernel netfilter does not have a good userspace API. The tables are manipulated via setsockopt that sets/replaces the entire table. Changes to existing table need to be resolved by userspace code which is difficult and error-prone. Netfilter developers heavily advocate using iptables utlity for programmatic manipulation.

go-iptables wraps invokation of iptables utility with functions to append and delete rules; create, clear and delete chains.