|
il y a 5 mois | |
---|---|---|
.github | il y a 6 mois | |
iptables | il y a 9 mois | |
.gitignore | il y a 6 ans | |
DCO | il y a 7 ans | |
LICENSE | il y a 10 ans | |
NOTICE | il y a 7 ans | |
README.md | il y a 2 ans | |
build | il y a 1 an | |
code-of-conduct.md | il y a 7 ans | |
go.mod | il y a 4 ans | |
test | il y a 1 an |
Go bindings for iptables utility.
In-kernel netfilter does not have a good userspace API. The tables are manipulated via setsockopt that sets/replaces the entire table. Changes to existing table need to be resolved by userspace code which is difficult and error-prone. Netfilter developers heavily advocate using iptables utlity for programmatic manipulation.
go-iptables wraps invocation of iptables utility with functions to append and delete rules; create, clear and delete chains.