3 function config_device
{
7 ip link add veth0
type veth peer name veth0b
8 ip link add veth1
type veth peer name veth1b
9 ip link add veth2
type veth peer name veth2b
13 ip link
set dev veth0b mtu
1500
14 ip link
set dev veth1b mtu
1500
15 ip link
set dev veth2b mtu
1500
16 ip link
set veth0 netns at_ns0
17 ip link
set veth1 netns at_ns1
18 ip link
set veth2 netns at_ns2
19 ip netns
exec at_ns0 ip addr add
172.16.1.100/24 dev veth0
20 ip netns
exec at_ns0 ip addr add
2401:db00
::1/64 dev veth0 nodad
21 ip netns
exec at_ns0 ip link
set dev veth0 up
22 ip netns
exec at_ns1 ip addr add
172.16.1.101/24 dev veth1
23 ip netns
exec at_ns1 ip addr add
2401:db00
::2/64 dev veth1 nodad
24 ip netns
exec at_ns1 ip link
set dev veth1 up
25 ip netns
exec at_ns2 ip addr add
172.16.1.200/24 dev veth2
26 ip netns
exec at_ns2 ip addr add
2401:db00
::3/64 dev veth2 nodad
27 ip netns
exec at_ns2 ip link
set dev veth2 up
28 ip link add br0
type bridge
30 ip link
set dev br0 mtu
1500
31 ip link
set veth0b master br0
32 ip link
set veth1b master br0
33 ip link
set veth2b master br0
36 function add_ipip_tunnel
{
37 ip netns
exec at_ns0 \
38 ip link add dev
$DEV_NS type ipip
local 172.16.1.100 remote
172.16.1.200
39 ip netns
exec at_ns0 ip link
set dev
$DEV_NS up
40 ip netns
exec at_ns0 ip addr add dev
$DEV_NS 10.1.1.100/24
41 ip netns
exec at_ns1 \
42 ip link add dev
$DEV_NS type ipip
local 172.16.1.101 remote
172.16.1.200
43 ip netns
exec at_ns1 ip link
set dev
$DEV_NS up
44 # same inner IP address in at_ns0 and at_ns1
45 ip netns
exec at_ns1 ip addr add dev
$DEV_NS 10.1.1.100/24
47 ip netns
exec at_ns2 ip link add dev
$DEV type ipip external
48 ip netns
exec at_ns2 ip link
set dev
$DEV up
49 ip netns
exec at_ns2 ip addr add dev
$DEV 10.1.1.200/24
52 function add_ipip6_tunnel
{
53 ip netns
exec at_ns0 \
54 ip link add dev
$DEV_NS type ip6tnl mode ipip6
local 2401:db00
::1/64 remote
2401:db00
::3/64
55 ip netns
exec at_ns0 ip link
set dev
$DEV_NS up
56 ip netns
exec at_ns0 ip addr add dev
$DEV_NS 10.1.1.100/24
57 ip netns
exec at_ns1 \
58 ip link add dev
$DEV_NS type ip6tnl mode ipip6
local 2401:db00
::2/64 remote
2401:db00
::3/64
59 ip netns
exec at_ns1 ip link
set dev
$DEV_NS up
60 # same inner IP address in at_ns0 and at_ns1
61 ip netns
exec at_ns1 ip addr add dev
$DEV_NS 10.1.1.100/24
63 ip netns
exec at_ns2 ip link add dev
$DEV type ip6tnl mode ipip6 external
64 ip netns
exec at_ns2 ip link
set dev
$DEV up
65 ip netns
exec at_ns2 ip addr add dev
$DEV 10.1.1.200/24
68 function add_ip6ip6_tunnel
{
69 ip netns
exec at_ns0 \
70 ip link add dev
$DEV_NS type ip6tnl mode ip6ip6
local 2401:db00
::1/64 remote
2401:db00
::3/64
71 ip netns
exec at_ns0 ip link
set dev
$DEV_NS up
72 ip netns
exec at_ns0 ip addr add dev
$DEV_NS 2601:646::1/64
73 ip netns
exec at_ns1 \
74 ip link add dev
$DEV_NS type ip6tnl mode ip6ip6
local 2401:db00
::2/64 remote
2401:db00
::3/64
75 ip netns
exec at_ns1 ip link
set dev
$DEV_NS up
76 # same inner IP address in at_ns0 and at_ns1
77 ip netns
exec at_ns1 ip addr add dev
$DEV_NS 2601:646::1/64
79 ip netns
exec at_ns2 ip link add dev
$DEV type ip6tnl mode ip6ip6 external
80 ip netns
exec at_ns2 ip link
set dev
$DEV up
81 ip netns
exec at_ns2 ip addr add dev
$DEV 2601:646::2/64
88 ip netns
exec at_ns2 tc qdisc add dev
$DEV clsact
89 ip netns
exec at_ns2 tc filter add dev
$DEV egress bpf da obj tcbpf2_kern.o sec
$SET_TUNNEL
90 ip netns
exec at_ns2 tc filter add dev
$DEV ingress bpf da obj tcbpf2_kern.o sec
$GET_TUNNEL
98 cat /sys
/kernel
/debug
/tracing
/trace_pipe
&
101 attach_bpf
$DEV ipip_set_tunnel ipip_get_tunnel
103 ip netns
exec at_ns0
ping -c 1 10.1.1.200
104 ip netns
exec at_ns2
ping -c 1 10.1.1.100
105 ip netns
exec at_ns0 iperf
-sD -p 5200 > /dev
/null
106 ip netns
exec at_ns1 iperf
-sD -p 5201 > /dev
/null
108 # tcp check _same_ IP over different tunnels
109 ip netns
exec at_ns2 iperf
-c 10.1.1.100 -n 5k
-p 5200
110 ip netns
exec at_ns2 iperf
-c 10.1.1.100 -n 5k
-p 5201
114 # IPv4 over IPv6 tunnel
115 function test_ipip6
{
120 cat /sys
/kernel
/debug
/tracing
/trace_pipe
&
123 attach_bpf
$DEV ipip6_set_tunnel ipip6_get_tunnel
125 ip netns
exec at_ns0
ping -c 1 10.1.1.200
126 ip netns
exec at_ns2
ping -c 1 10.1.1.100
127 ip netns
exec at_ns0 iperf
-sD -p 5200 > /dev
/null
128 ip netns
exec at_ns1 iperf
-sD -p 5201 > /dev
/null
130 # tcp check _same_ IP over different tunnels
131 ip netns
exec at_ns2 iperf
-c 10.1.1.100 -n 5k
-p 5200
132 ip netns
exec at_ns2 iperf
-c 10.1.1.100 -n 5k
-p 5201
136 # IPv6 over IPv6 tunnel
137 function test_ip6ip6
{
142 cat /sys
/kernel
/debug
/tracing
/trace_pipe
&
145 attach_bpf
$DEV ip6ip6_set_tunnel ip6ip6_get_tunnel
147 ip netns
exec at_ns0
ping -6 -c 1 2601:646::2
148 ip netns
exec at_ns2
ping -6 -c 1 2601:646::1
149 ip netns
exec at_ns0 iperf
-6sD -p 5200 > /dev
/null
150 ip netns
exec at_ns1 iperf
-6sD -p 5201 > /dev
/null
152 # tcp check _same_ IP over different tunnels
153 ip netns
exec at_ns2 iperf
-6c 2601:646::1 -n 5k
-p 5200
154 ip netns
exec at_ns2 iperf
-6c 2601:646::1 -n 5k
-p 5201
161 ip netns delete at_ns0
162 ip netns delete at_ns1
163 ip netns delete at_ns2
174 echo "Testing IP tunnels..."