Casey Callendrello 04669a0474 Merge pull request #126 from coreosbot-releng/repo-templates | 1 месяц назад | |
---|---|---|
.github | 1 месяц назад | |
iptables | 4 месяцев назад | |
.gitignore | 5 лет назад | |
DCO | 6 лет назад | |
LICENSE | 9 лет назад | |
NOTICE | 6 лет назад | |
README.md | 2 лет назад | |
build | 11 месяцев назад | |
code-of-conduct.md | 6 лет назад | |
go.mod | 3 лет назад | |
test | 1 год назад |
Go bindings for iptables utility.
In-kernel netfilter does not have a good userspace API. The tables are manipulated via setsockopt that sets/replaces the entire table. Changes to existing table need to be resolved by userspace code which is difficult and error-prone. Netfilter developers heavily advocate using iptables utlity for programmatic manipulation.
go-iptables wraps invocation of iptables utility with functions to append and delete rules; create, clear and delete chains.