2021-05-01 12:45:37 +02:00
|
|
|
package iface
|
|
|
|
|
|
|
|
import (
|
2021-07-19 15:02:11 +02:00
|
|
|
"fmt"
|
2021-05-01 12:45:37 +02:00
|
|
|
log "github.com/sirupsen/logrus"
|
|
|
|
"github.com/vishvananda/netlink"
|
2021-07-19 15:02:11 +02:00
|
|
|
"golang.zx2c4.com/wireguard/wgctrl"
|
2021-05-01 12:45:37 +02:00
|
|
|
"os"
|
|
|
|
)
|
|
|
|
|
2021-06-18 13:01:43 +02:00
|
|
|
// Create Creates a new Wireguard interface, sets a given IP and brings it up.
|
|
|
|
// Will reuse an existing one.
|
|
|
|
func Create(iface string, address string) error {
|
|
|
|
|
2021-06-23 16:11:54 +02:00
|
|
|
if WireguardModExists() {
|
2021-06-24 12:49:14 +02:00
|
|
|
log.Debug("using kernel Wireguard module")
|
2021-06-24 11:02:40 +02:00
|
|
|
return CreateWithKernel(iface, address)
|
2021-06-23 16:11:54 +02:00
|
|
|
} else {
|
2021-06-24 11:02:40 +02:00
|
|
|
return CreateWithUserspace(iface, address)
|
2021-06-18 13:01:43 +02:00
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2021-06-24 11:02:40 +02:00
|
|
|
// CreateWithKernel Creates a new Wireguard interface using kernel Wireguard module.
|
|
|
|
// Works for Linux and offers much better network performance
|
|
|
|
func CreateWithKernel(iface string, address string) error {
|
|
|
|
attrs := netlink.NewLinkAttrs()
|
|
|
|
attrs.Name = iface
|
|
|
|
|
|
|
|
link := wgLink{
|
|
|
|
attrs: &attrs,
|
|
|
|
}
|
|
|
|
|
|
|
|
log.Debugf("adding device: %s", iface)
|
|
|
|
err := netlink.LinkAdd(&link)
|
|
|
|
if os.IsExist(err) {
|
|
|
|
log.Infof("interface %s already exists. Will reuse.", iface)
|
|
|
|
} else if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
err = assignAddr(address, iface)
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
// todo do a discovery
|
2021-08-15 16:56:26 +02:00
|
|
|
log.Debugf("setting MTU: %d interface: %s", defaultMTU, iface)
|
2021-06-24 11:02:40 +02:00
|
|
|
err = netlink.LinkSetMTU(&link, defaultMTU)
|
|
|
|
if err != nil {
|
|
|
|
log.Errorf("error setting MTU on interface: %s", iface)
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
log.Debugf("bringing up interface: %s", iface)
|
|
|
|
err = netlink.LinkSetUp(&link)
|
|
|
|
if err != nil {
|
|
|
|
log.Errorf("error bringing up interface: %s", iface)
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
|
|
|
|
return nil
|
|
|
|
}
|
|
|
|
|
2021-06-18 13:01:43 +02:00
|
|
|
// assignAddr Adds IP address to the tunnel interface
|
|
|
|
func assignAddr(address, name string) error {
|
|
|
|
var err error
|
|
|
|
attrs := netlink.NewLinkAttrs()
|
|
|
|
attrs.Name = name
|
|
|
|
|
2021-05-01 12:45:37 +02:00
|
|
|
link := wgLink{
|
|
|
|
attrs: &attrs,
|
|
|
|
}
|
|
|
|
|
2021-06-06 00:40:44 +02:00
|
|
|
log.Debugf("adding address %s to interface: %s", address, attrs.Name)
|
2021-05-01 12:45:37 +02:00
|
|
|
addr, _ := netlink.ParseAddr(address)
|
2021-06-06 00:40:44 +02:00
|
|
|
err = netlink.AddrAdd(&link, addr)
|
2021-05-01 12:45:37 +02:00
|
|
|
if os.IsExist(err) {
|
2021-06-06 00:40:44 +02:00
|
|
|
log.Infof("interface %s already has the address: %s", attrs.Name, address)
|
2021-05-01 12:45:37 +02:00
|
|
|
} else if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
// On linux, the link must be brought up
|
|
|
|
err = netlink.LinkSetUp(&link)
|
|
|
|
return err
|
|
|
|
}
|
2021-06-06 00:40:44 +02:00
|
|
|
|
|
|
|
type wgLink struct {
|
|
|
|
attrs *netlink.LinkAttrs
|
|
|
|
}
|
|
|
|
|
|
|
|
// Attrs returns the Wireguard's default attributes
|
|
|
|
func (w *wgLink) Attrs() *netlink.LinkAttrs {
|
|
|
|
return w.attrs
|
|
|
|
}
|
|
|
|
|
|
|
|
// Type returns the interface type
|
|
|
|
func (w *wgLink) Type() string {
|
|
|
|
return "wireguard"
|
|
|
|
}
|
2021-07-19 15:02:11 +02:00
|
|
|
|
|
|
|
// Closes the tunnel interface
|
|
|
|
func Close() error {
|
|
|
|
|
|
|
|
if tunIface != nil {
|
|
|
|
return CloseWithUserspace()
|
|
|
|
} else {
|
|
|
|
var iface = ""
|
|
|
|
wg, err := wgctrl.New()
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
defer wg.Close()
|
|
|
|
devList, err := wg.Devices()
|
|
|
|
if err != nil {
|
|
|
|
return err
|
|
|
|
}
|
|
|
|
for _, wgDev := range devList {
|
|
|
|
if wgDev.ListenPort == WgPort {
|
|
|
|
iface = wgDev.Name
|
|
|
|
break
|
|
|
|
}
|
|
|
|
}
|
|
|
|
if iface == "" {
|
|
|
|
return fmt.Errorf("Wireguard Interface not found")
|
|
|
|
}
|
|
|
|
attrs := netlink.NewLinkAttrs()
|
|
|
|
attrs.Name = iface
|
|
|
|
|
|
|
|
link := wgLink{
|
|
|
|
attrs: &attrs,
|
|
|
|
}
|
|
|
|
return netlink.LinkDel(&link)
|
|
|
|
}
|
|
|
|
}
|