一文解析LINUX中的socket与VRF

下面由linux系统教程栏目给大家介绍linux中的socket与vrf,希望对需要的朋友有所帮助!

LINUX socket与VRF

实验环境如下图所示:
13313ddf764619db519c4c64ccc25e5.png

配置如下:

#!/bin/bashsudo ip netns add ns1 sudo ip link add ns1veth1 type veth peer name eth0 netns ns1sudo ip netns add ns2sudo ip link add ns2veth1 type veth peer name eth0 netns ns2sudo ip link set ns1veth1 master vrftestsudo ip link set ns2veth1 master vrftestsudo ip link set ns2veth1 upsudo ip link set ns1veth1 upsudo ip addr add 1.1.1.254/24 dev ns1veth1 sudo ip addr add 2.2.2.254/24 dev ns2veth1 sudo ip netns exec ns2 ip addr add 2.2.2.1/24 dev eth0 sudo ip netns exec ns1 ip addr add 1.1.1.1/24 dev eth0 sudo ip netns exec ns1 ip link set eth0 upsudo ip netns exec ns1 ip link set lo upsudo ip netns exec ns1 ip route add default via 1.1.1.254 dev eth0sudo ip netns exec ns2 ip link set eth0 upsudo ip netns exec ns2 ip link set lo upsudo ip netns exec ns2 ip route add default via 2.2.2.254 dev eth0

实验使用c语言写了两个套接字交互程序:

服务器:vrfs

#include#include#include#include#include#include#include#include #define MAXLINE 4096int main(int argc, char** argv){    int    listenfd, connfd;    struct sockaddr_in     servaddr;    char    buff[4096];    int     n;    int     on = 1;    if( (listenfd = socket(AF_INET, SOCK_STREAM, 0)) == -1 ){        printf("create socket error: %s(errno: %d)n",strerror(errno),errno);        exit(0);    }    setsockopt(listenfd, SOL_SOCKET, SO_REUSEADDR, (void *)&on,                         sizeof(on));    setsockopt(listenfd, SOL_SOCKET, SO_REUSEPORT, (void *)&on,                         sizeof(on));    memset(&servaddr, 0, sizeof(servaddr));    servaddr.sin_family = AF_INET;    servaddr.sin_addr.s_addr = htonl(INADDR_ANY);    servaddr.sin_port = htons(6666);    if(argc == 2){        printf("vrf device name: %srn", argv[1]);        if(0 > setsockopt(listenfd, SOL_SOCKET, SO_BINDTODEVICE, argv[1], strlen(argv[1])+1)){             printf("bind socket master dev error: %s(errno: %d)n",strerror(errno),errno);             exit(0);        }    }    if( bind(listenfd, (struct sockaddr*)&servaddr, sizeof(servaddr)) == -1){        printf("bind socket error: %s(errno: %d)n",strerror(errno),errno);        exit(0);    }    if( listen(listenfd, 10) == -1){        printf("listen socket error: %s(errno: %d)n",strerror(errno),errno);        exit(0);    }    printf("======waiting for client's request======n");    while(1){        if((connfd = accept(listenfd, (struct sockaddr*)NULL, NULL)) == -1){                printf("accept socket error: %s(errno: %d)",strerror(errno),errno);                continue;        }        n = recv(connfd, buff, MAXLINE, 0);        buff[n] = '';        printf("recv msg from client: %sn", buff);        close(connfd);    }    close(listenfd);}

客户端程序:vrfc

#include#include#include#include#include#include#include#include#define MAXLINE 4096#include int main(int argc, char** argv){    int    sockfd, n;    char   *sendline = "hello vrf";    struct sockaddr_in    servaddr;    if( argc != 2){    printf("usage: ./client  [master device]n");    exit(0);    }    if( (sockfd = socket(AF_INET, SOCK_STREAM, 0)) < 0){    printf("create socket error: %s(errno: %d)n", strerror(errno),errno);    exit(0);    }    memset(&servaddr, 0, sizeof(servaddr));    servaddr.sin_family = AF_INET;    servaddr.sin_port = htons(6666);    if( inet_pton(AF_INET, argv[1], &servaddr.sin_addr)  setsockopt(sockfd, SOL_SOCKET, SO_BINDTODEVICE, argv[2], strlen(argv[2])+1)){             printf("bind socket master dev error: %s(errno: %d)n",strerror(errno),errno);             exit(0);        }    }    if( connect(sockfd, (struct sockaddr*)&servaddr, sizeof(servaddr)) < 0){    printf("connect error: %s(errno: %d)n",strerror(errno),errno);    exit(0);    }    printf("send msg to server: hello vrfn");        if( send(sockfd, sendline, strlen(sendline), 0) < 0)    {    printf("send msg error: %s(errno: %d)n", strerror(errno), errno);    exit(0);    }    close(sockfd);    exit(0);}

实验一:惊群效应

在默认VRF环境下,启动两个进程,监听相同的端口和地址:程序中套接口使用了SO_REUSEADDR和SO_REUSEPORT。查看内核如何处理惊群效应。

console1:

admin@ubuntu:~/vrfsocket$ for i in {0..9}; do ./vrfc 127.0.0.1; done  send msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfadmin@ubuntu:~/vrfsocket$

console2:

admin@ubuntu:~/vrfsocket$ ./vrfs ======waiting for client's request======recv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrf

console3:

admin@ubuntu:~/vrfsocket$ ./vrfs ======waiting for client's request======recv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrf

结论

新内核似乎已经能够处理惊群效应了,收到请求时不再通知所有监听该端口的服务器程序,而是会进行一定的负载均衡调度处理。

实验二:启动两个服务器,一个绑定VRF,一个不绑定,客户端不绑定VRF

console1:

admin@ubuntu:~/vrfsocket$ for i in {0..9}; do sudo ./vrfc 127.0.0.1; donesend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfadmin@ubuntu:~/vrfsocket$

console2:

root@ubuntu:/home/admin/vrfsocket# ./vrfs======waiting for client's request======recv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrf

console3:

root@ubuntu:/home/admin/vrfsocket# ./vrfs vrftestvrf device name: vrftest======waiting for client's request======

结论:服务器监听套接字绑定VRF后,不再处理默认VRF中的请求

实验三:启动两个服务器,一个绑定VRF,一个不绑定,客户端绑定VRF

console1:

admin@ubuntu:~/vrfsocket$ for i in {0..9}; do sudo ./vrfc 1.1.1.254 vrftest; donevrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfadmin@ubuntu:~/vrfsocket$

console2:在root用户下运行

root@ubuntu:/home/admin/vrfsocket# ./vrfs======waiting for client's request======

console3:在root用户下运行。

root@ubuntu:/home/admin/vrfsocket# ./vrfs vrftestvrf device name: vrftest======waiting for client's request======recv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrf

结论:服务器监听套接字不绑定VRF,不能处理非默认VRF中的请求

实验四:设置sudo sysctl -w net.ipv4.tcp_l3mdev_accept=1

启动两个服务器,一个绑定VRF,一个不绑定,客户端不绑定VRF

console1:

admin@ubuntu:~/vrfsocket$ for i in {0..9}; do sudo ./vrfc 127.0.0.1; donesend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfsend msg to server: hello vrfadmin@ubuntu:~/vrfsocket$

console2:

root@ubuntu:/home/admin/vrfsocket# ./vrfs======waiting for client's request======recv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrf

console3:

root@ubuntu:/home/admin/vrfsocket# ./vrfs vrftestvrf device name: vrftest======waiting for client's request======

启动一个服务器,绑定VRF,客户端不绑定VRF

console1:

admin@ubuntu:~/vrfsocket$ for i in {0..9}; do sudo ./vrfc 127.0.0.1; doneconnect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)connect error: Connection refused(errno: 111)admin@ubuntu:~/vrfsocket$

console3:

root@ubuntu:/home/admin/vrfsocket# ./vrfs vrftestvrf device name: vrftest======waiting for client's request======

启动一个服务器,绑定VRF,客户端绑定VRF

console1:

admin@ubuntu:~/vrfsocket$ for i in {0..9}; do sudo ./vrfc 1.1.1.254 vrftest; donevrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfadmin@ubuntu:~/vrfsocket$

console3:

root@ubuntu:/home/admin/vrfsocket# ./vrfs vrftestvrf device name: vrftest======waiting for client's request======recv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrf

启动两个服务器,一个绑定VRF,一个不绑定,客户端绑定VRF

console1:

admin@ubuntu:~/vrfsocket$ for i in {0..9}; do sudo ./vrfc 1.1.1.254 vrftest; donevrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfvrf device name: vrftestsend msg to server: hello vrfadmin@ubuntu:~/vrfsocket$

console2:

root@ubuntu:/home/admin/vrfsocket# ./vrfs======waiting for client's request======recv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrfrecv msg from client: hello vrf

console3:

root@ubuntu:/home/admin/vrfsocket# ./vrfs vrftestvrf device name: vrftest======waiting for client's request======

在打开sudo sysctl -w net.ipv4.tcp_l3mdev_accept=1后,默认VRF中的监听套接字能够处理所有VRF中的请求,且优先级高于其它的VRF的监听套接字。

总结

序号 结论

1多个服务器器监听同一地址和端口,内核会进行负载均衡,选择唤醒其中一个进程处理请求。2默认VRF中的服务器进程不能处理非默认VRF中的请求,非默认VRF中的服务器进程不能处理其它VRF中的请求3开启net.ipv4.tcp_l3mdev_accept=1后,默认VRF中的服务器进程可以处理任意VRF中的请求,且优先级最高4开启net.ipv4.tcp_l3mdev_accept=1后,非默认VRF中的服务器进程不能处理其它VRF中的请求,在处理本VRF中的流量时,优先级低于默认VRF中的进程。

推荐学习:《linux视频教程》

以上就是一文解析LINUX中的socket与VRF的详细内容,更多请关注创想鸟其它相关文章!

版权声明:本文内容由互联网用户自发贡献,该文观点仅代表作者本人。本站仅提供信息存储空间服务,不拥有所有权,不承担相关法律责任。
如发现本站有涉嫌抄袭侵权/违法违规的内容, 请发送邮件至 chuangxiangniao@163.com 举报,一经查实,本站将立刻删除。
发布者:程序猿,转转请注明出处:https://www.chuangxiangniao.com/p/157732.html

(0)
打赏 微信扫一扫 微信扫一扫 支付宝扫一扫 支付宝扫一扫

关于作者

上一篇 2025年12月5日 00:49:49
下一篇 2025年12月5日 01:49:12

相关推荐

发表回复

登录后才能评论
关注微信