3 function config_device {
7 ip link add veth0 type veth peer name veth0b
8 ip link add veth1 type veth peer name veth1b
9 ip link add veth2 type veth peer name veth2b
13 ip link set dev veth0b mtu 1500
14 ip link set dev veth1b mtu 1500
15 ip link set dev veth2b mtu 1500
16 ip link set veth0 netns at_ns0
17 ip link set veth1 netns at_ns1
18 ip link set veth2 netns at_ns2
19 ip netns exec at_ns0 ip addr add 172.16.1.100/24 dev veth0
20 ip netns exec at_ns0 ip addr add 2401:db00::1/64 dev veth0 nodad
21 ip netns exec at_ns0 ip link set dev veth0 up
22 ip netns exec at_ns1 ip addr add 172.16.1.101/24 dev veth1
23 ip netns exec at_ns1 ip addr add 2401:db00::2/64 dev veth1 nodad
24 ip netns exec at_ns1 ip link set dev veth1 up
25 ip netns exec at_ns2 ip addr add 172.16.1.200/24 dev veth2
26 ip netns exec at_ns2 ip addr add 2401:db00::3/64 dev veth2 nodad
27 ip netns exec at_ns2 ip link set dev veth2 up
28 ip link add br0 type bridge
30 ip link set dev br0 mtu 1500
31 ip link set veth0b master br0
32 ip link set veth1b master br0
33 ip link set veth2b master br0
36 function add_ipip_tunnel {
37 ip netns exec at_ns0 \
38 ip link add dev $DEV_NS type ipip local 172.16.1.100 remote 172.16.1.200
39 ip netns exec at_ns0 ip link set dev $DEV_NS up
40 ip netns exec at_ns0 ip addr add dev $DEV_NS 10.1.1.100/24
41 ip netns exec at_ns1 \
42 ip link add dev $DEV_NS type ipip local 172.16.1.101 remote 172.16.1.200
43 ip netns exec at_ns1 ip link set dev $DEV_NS up
44 # same inner IP address in at_ns0 and at_ns1
45 ip netns exec at_ns1 ip addr add dev $DEV_NS 10.1.1.100/24
47 ip netns exec at_ns2 ip link add dev $DEV type ipip external
48 ip netns exec at_ns2 ip link set dev $DEV up
49 ip netns exec at_ns2 ip addr add dev $DEV 10.1.1.200/24
52 function add_ipip6_tunnel {
53 ip netns exec at_ns0 \
54 ip link add dev $DEV_NS type ip6tnl mode ipip6 local 2401:db00::1/64 remote 2401:db00::3/64
55 ip netns exec at_ns0 ip link set dev $DEV_NS up
56 ip netns exec at_ns0 ip addr add dev $DEV_NS 10.1.1.100/24
57 ip netns exec at_ns1 \
58 ip link add dev $DEV_NS type ip6tnl mode ipip6 local 2401:db00::2/64 remote 2401:db00::3/64
59 ip netns exec at_ns1 ip link set dev $DEV_NS up
60 # same inner IP address in at_ns0 and at_ns1
61 ip netns exec at_ns1 ip addr add dev $DEV_NS 10.1.1.100/24
63 ip netns exec at_ns2 ip link add dev $DEV type ip6tnl mode ipip6 external
64 ip netns exec at_ns2 ip link set dev $DEV up
65 ip netns exec at_ns2 ip addr add dev $DEV 10.1.1.200/24
68 function add_ip6ip6_tunnel {
69 ip netns exec at_ns0 \
70 ip link add dev $DEV_NS type ip6tnl mode ip6ip6 local 2401:db00::1/64 remote 2401:db00::3/64
71 ip netns exec at_ns0 ip link set dev $DEV_NS up
72 ip netns exec at_ns0 ip addr add dev $DEV_NS 2601:646::1/64
73 ip netns exec at_ns1 \
74 ip link add dev $DEV_NS type ip6tnl mode ip6ip6 local 2401:db00::2/64 remote 2401:db00::3/64
75 ip netns exec at_ns1 ip link set dev $DEV_NS up
76 # same inner IP address in at_ns0 and at_ns1
77 ip netns exec at_ns1 ip addr add dev $DEV_NS 2601:646::1/64
79 ip netns exec at_ns2 ip link add dev $DEV type ip6tnl mode ip6ip6 external
80 ip netns exec at_ns2 ip link set dev $DEV up
81 ip netns exec at_ns2 ip addr add dev $DEV 2601:646::2/64
88 ip netns exec at_ns2 tc qdisc add dev $DEV clsact
89 ip netns exec at_ns2 tc filter add dev $DEV egress bpf da obj tcbpf2_kern.o sec $SET_TUNNEL
90 ip netns exec at_ns2 tc filter add dev $DEV ingress bpf da obj tcbpf2_kern.o sec $GET_TUNNEL
98 cat /sys/kernel/debug/tracing/trace_pipe &
101 attach_bpf $DEV ipip_set_tunnel ipip_get_tunnel
103 ip netns exec at_ns0 ping -c 1 10.1.1.200
104 ip netns exec at_ns2 ping -c 1 10.1.1.100
105 ip netns exec at_ns0 iperf -sD -p 5200 > /dev/null
106 ip netns exec at_ns1 iperf -sD -p 5201 > /dev/null
108 # tcp check _same_ IP over different tunnels
109 ip netns exec at_ns2 iperf -c 10.1.1.100 -n 5k -p 5200
110 ip netns exec at_ns2 iperf -c 10.1.1.100 -n 5k -p 5201
114 # IPv4 over IPv6 tunnel
115 function test_ipip6 {
120 cat /sys/kernel/debug/tracing/trace_pipe &
123 attach_bpf $DEV ipip6_set_tunnel ipip6_get_tunnel
125 ip netns exec at_ns0 ping -c 1 10.1.1.200
126 ip netns exec at_ns2 ping -c 1 10.1.1.100
127 ip netns exec at_ns0 iperf -sD -p 5200 > /dev/null
128 ip netns exec at_ns1 iperf -sD -p 5201 > /dev/null
130 # tcp check _same_ IP over different tunnels
131 ip netns exec at_ns2 iperf -c 10.1.1.100 -n 5k -p 5200
132 ip netns exec at_ns2 iperf -c 10.1.1.100 -n 5k -p 5201
136 # IPv6 over IPv6 tunnel
137 function test_ip6ip6 {
142 cat /sys/kernel/debug/tracing/trace_pipe &
145 attach_bpf $DEV ip6ip6_set_tunnel ip6ip6_get_tunnel
147 ip netns exec at_ns0 ping -6 -c 1 2601:646::2
148 ip netns exec at_ns2 ping -6 -c 1 2601:646::1
149 ip netns exec at_ns0 iperf -6sD -p 5200 > /dev/null
150 ip netns exec at_ns1 iperf -6sD -p 5201 > /dev/null
152 # tcp check _same_ IP over different tunnels
153 ip netns exec at_ns2 iperf -6c 2601:646::1 -n 5k -p 5200
154 ip netns exec at_ns2 iperf -6c 2601:646::1 -n 5k -p 5201
161 ip netns delete at_ns0
162 ip netns delete at_ns1
163 ip netns delete at_ns2
174 echo "Testing IP tunnels..."