1
0
mirror of https://github.com/rancher/os.git synced 2025-07-04 18:46:15 +00:00
os/vendor/github.com/coreos/go-iptables
2016-06-28 15:34:26 -07:00
..
iptables Add CNI networking to system-docker 2016-06-28 15:34:26 -07:00
.travis.yml Add CNI networking to system-docker 2016-06-28 15:34:26 -07:00
build Add CNI networking to system-docker 2016-06-28 15:34:26 -07:00
LICENSE Add CNI networking to system-docker 2016-06-28 15:34:26 -07:00
README.md Add CNI networking to system-docker 2016-06-28 15:34:26 -07:00
test Add CNI networking to system-docker 2016-06-28 15:34:26 -07:00

go-iptables

Build Status

Go bindings for iptables utility.

In-kernel netfilter does not have a good userspace API. The tables are manipulated via setsockopt that sets/replaces the entire table. Changes to existing table need to be resolved by userspace code which is difficult and error-prone. Netfilter developers heavily advocate using iptables utlity for programmatic manipulation.

go-iptables wraps invokation of iptables utility with functions to append and delete rules; create, clear and delete chains.