SYSTEMD.NETDEV(5) systemd.network SYSTEMD.NETDEV(5) systemd.netdev - netdev.netdev ini systemd-networkd(8). systemd.syntax(7) . .netdev . systemd-networkd . netdev systemd-networkd netdev ( foo .netdev) netdev netdev . ( vlan) netdev. netdev networkctl reload systemd-networkd. networkctl(1). .netdev /usr/lib/systemd/network /usr/local/lib/systemd/network /run/systemd/network /etc/systemd/network. . . "70" ( 10-vlan.netdev). .netdev systemd-network-generator.service(8) . /etc/ /run/ /usr/lib/. . ( 0) /dev/null ( ""). netdev foo.netdev "" (drop-in) foo.netdev.d/. ".conf" . . . /etc/systemd/network ".d" /usr/lib/systemd/network /run/systemd/network. /etc/ /run/ /usr/lib/. netdev . ( /run/ /usr/lib/ .) NETDEV .netdev: 1. +----------------+-------------------------------------+ | | | +----------------+-------------------------------------+ |bond | (bond) | | | | | | | | | . | | | | | | | | | | | | [1] | | | | | | . | +----------------+-------------------------------------+ |bridge | | | | (bridge) | | | | | | | | | | | | | | | | | | . | +----------------+-------------------------------------+ |dummy | (dummy) | | | | | | | | | . | +----------------+-------------------------------------+ |gre | GRE | | | 3 | | | IPv4. RFC 2784[2] | | | | | | . | | | | | | | | | "gre0" | | | | | | | | | | | | | | | | | | . | +----------------+-------------------------------------+ |gretap | GRE | | | 2 | | | IPv4. | | | | | | "gretap0" | | | | | | | | | | | | | | | | | | | | | . | +----------------+-------------------------------------+ |erspan | ERSPAN | | | | | | | | | | | | | | | | | | | | | | | | | | | . | | | | | | | | | | | | | | | (GRE) | | | | | | | | | | | | | | | 3 | | | | | | | | | . | | | | | | | | | "erspan0" | | | | | | | | | | | | | | | | | | | | | . | +----------------+-------------------------------------+ |ip6gre | GRE | | | 3 | | | IPv6. | +----------------+-------------------------------------+ |ip6tnl | IPv4 IPv6 | | | IPv6 | +----------------+-------------------------------------+ |ip6gretap | GRE | | | 2 | | | IPv6. | +----------------+-------------------------------------+ |ipip | IPv4 IPv4. | +----------------+-------------------------------------+ |ipvlan | IPVLAN | | | | | | | | | | | | | | | | | | IP. | +----------------+-------------------------------------+ |ipvtap | IPVTAP | | | | | | | | | | | | | | | | | | IP | | | | | | | | | | | | | | | tap. | +----------------+-------------------------------------+ |macvlan | macvlan | | | | | | | | | | | | | | | | | | | | | MAC. | +----------------+-------------------------------------+ |macvtap | macvtap | | | | | | | | | | | | | | | | | | | | | MAC. | +----------------+-------------------------------------+ |sit | IPv6 IPv4. | +----------------+-------------------------------------+ |tap | | | | 2 | | | | | | . | +----------------+-------------------------------------+ |tun | | | | 3 | | | | | | . | +----------------+-------------------------------------+ |veth | | | | | | | . | +----------------+-------------------------------------+ |vlan | VLAN | | | | | | | | | | | | | | | | | | VLAN. IEEE 802.1Q[3] | | | | | | . | +----------------+-------------------------------------+ |vti | IPv4 IPSec. | +----------------+-------------------------------------+ |vti6 | IPv6 IPSec. | +----------------+-------------------------------------+ |vxlan | | | | | | | | | | (vxlan) | | | | | | | | | . | +----------------+-------------------------------------+ |geneve | | | | | | | | | | (GENEVE). | +----------------+-------------------------------------+ |hsr | | | | | | | | | | (HSR) | | | | | | | | | (PRP). HSR | | | PRP | | | | | | | | | | | | IEC 62439-3 | | | | | | | | | | | | . | +----------------+-------------------------------------+ |l2tp | | | | | | | 2 (L2TP) | | | | | | | | | | | | | | | | | | (VPNs) | | | | | | | | | | | | | | | . | | | | | | | | | | +----------------+-------------------------------------+ |macsec | | | | | | | (MACsec) | | | | | | | | | IEEE | | | 802.1AE | | | | | | | | | | | | | | | . | | | MACsec | | | -- | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | . | +----------------+-------------------------------------+ |vrf | | | | | | | (VRF[4]) | | | | | | | | | | | | . | +----------------+-------------------------------------+ |vcan | CAN | | | (vcan). | | | | | | | | | | | | vcan CAN | | | | | | . | +----------------+-------------------------------------+ |vxcan | CAN | | | | | | (vxcan). | | | | | | | | | veth | | | vxcan | | | CAN | | | | | | CAN | | | . | | | vxcan | | | | | | vxcan . | | | | | | | | | | | | . | | | | | | vxcan | | | | | | . | +----------------+-------------------------------------+ |wireguard | | | | WireGuard. | +----------------+-------------------------------------+ |nlmon | | | | Netlink. | | | nlmon | | | | | | Netlink | | | . | +----------------+-------------------------------------+ |fou | Foo-over-UDP. | +----------------+-------------------------------------+ |xfrm | | | | | | | vti/vti6 | | | | | | . | +----------------+-------------------------------------+ |ifb | | | | | | | | | | | | | | | | (ifb) | | | | | | (QoS) | | | | | | | | | | | | . | +----------------+-------------------------------------+ |bareudp | UDP | | | | | | L3 | | | | | | L3 | | | | | | MPLS IP . | | | UDP. | +----------------+-------------------------------------+ |batadv | B.A.T.M.A.N. Advanced[5] | | | | | | | | | | | | | | | | | | | | | | | | | | | 2. | +----------------+-------------------------------------+ |ipoib | IP | | | Infiniband. | +----------------+-------------------------------------+ |wlan | | | | (WLAN) | | | . | +----------------+-------------------------------------+ [MATCH] [Match] . : Host= . ConditionHost= systemd.unit(5) . ("!") . . 211. Virtualization= . ConditionVirtualization= systemd.unit(5) . ("!") . . 211. KernelCommandLine= . ConditionKernelCommandLine= systemd.unit(5) . ("!") . . 211. KernelVersion= ( uname -r) . ConditionKernelVersion= systemd.unit(5) . ("!") . . 237. Version= . ConditionVersion= systemd.unit(5) . ("!") . . 258. Credential= systemd-udevd.service. [2] . ("!") . . 252. Architecture= . ConditionArchitecture= systemd.unit(5) . ("!") . . 211. Firmware= (firmware) . ConditionFirmware= systemd.unit(5) . ("!") . . 249. [NETDEV] [NetDev] : Description= . 215. Name= . . 211. Kind= . . " " . 211. MTUBytes= . K M G 1024. "tun" "tap" MTUBytes= [NetDev]. [Link] systemd.network(5) . 215. MACAddress= MAC "none". "none" systemd-networkd MAC MAC . "tun" "tap" "l2tp" MACAddress= [NetDev] . [Link] systemd.network(5) . "vlan" MAC . MAC machine-id(5). "none" systemd-udevd MAC 99-default.link MACAddressPolicy=persistent. .link MAC . 215. [BRIDGE] [Bridge] "bridge" : HelloTimeSec= HelloTimeSec (hello) . . 227. MaxAgeSec= MaxAgeSec . . 227. ForwardDelaySec= ForwardDelaySec . 227. AgeingTimeSec= MAC MAC . 232. Priority= . 0 65535. . (root bridge). 232. GroupForwardMask= (bitmask) 16 802.1D (01:80:C2:00:00:0X). AND 2^X MAC. 8 01:80:C2:00:00:03 (802.1X PAE). 235. DefaultPVID= VLAN . 1...4094 "none" PVID. 232. MulticastQuerier= . IFLA_BR_MCAST_QUERIER . ICMP . . . 230. MulticastSnooping= . IFLA_BR_MCAST_SNOOPING . IGMP (IGMP) . . 230. VLANFiltering= . IFLA_BR_VLAN_FILTERING . VLAN. . 231. VLANProtocol= VLAN. 802.1q 802.1ad . 246. STP= . (STP) . . 232. MulticastIGMPVersion= (IGMP) . 2 3. . 243. FDBMaxLearned= . . . 0 . 257. LinkLocalLearning= . . . 258. [VLAN] [VLAN] netdevs "vlan" : Id= VLAN . 0...4094. . 211. Protocol= VLAN. "802.1q" "802.1ad" . 248. GVRP= . VLAN (GVRP) VLANs . . 234. MVRP= . VLAN (MVRP) GARP VLAN (GVRP) 2 VLAN . 802.1ak 802.1Q-2005. . 234. LooseBinding= . VLAN VLANs VLAN . . 234. ReorderHeader= . VLAN VLAN . . 234. EgressQOSMaps=, IngressQOSMaps= (SO_PRIORITY) PCP VLAN . 1...4294967294 ""-"" "21-7 45-5". "" "". . 248. [MACVLAN] [MACVLAN] netdevs "macvlan" : Mode= MACVLAN . "private" "vepa" "bridge" "passthru" "source". 211. SourceMACAddress= MACVLAN. . . . . . 246. BroadcastMulticastQueueLength= /. 0...4294967294. . 248. BroadcastQueueThreshold= macvlan. "no" 0...2147483647. "no" . macvlan . . 256. [MACVTAP] [MACVTAP] netdevs "macvtap" [MACVLAN]. [IPVLAN] [IPVLAN] (netdevs) "ipvlan" : Mode= IPVLAN . "L2" "L3" "L3S". 219. Flags= (flags) IPVLAN . "bridge" "private" "vepa". 237. [IPVTAP] [IPVTAP] "ipvtap" [IPVLAN]. [VXLAN] [VXLAN] "vxlan" : VNI= VXLAN ( VXLAN). 1...16777215. External= true. 243. Remote= IP . 233. Local= IP . VXLAN "ipv4_link_local" "ipv6_link_local" "dhcp4" "dhcp6" "slaac". . . 233. Group= IP (multicast) VXLAN. VXLAN . 243. TOS= (Type Of Service) vxlan. 215. TTL= (TTL) N (VXLAN). "inherit" 0...255. 0 TTL '. "inherit" TTL . 215. MacLearning= (boolean). true MAC MAC . 215. FDBAgeingSec= (Forwarding Database) . 218. MaximumFDBEntries= FDB. 228. ReduceARPProxy= . true VXLAN ARP Distributed Overlay Virtual Ethernet (DOVE)[7] . false. 233. L2MissNotification= . true LLADDR netlink. 218. L3MissNotification= . true IP netlink. 218. RouteShortCircuit= . true (route short circuiting). 218. UDPChecksum= . true UDP VXLAN/IPv4. 220. UDP6ZeroChecksumTx= . true VXLAN/IPv6. 220. UDP6ZeroChecksumRx= . true VXLAN/IPv6. 220. RemoteChecksumTx= . true (offload) VXLAN. 232. RemoteChecksumRx= . true VXLAN. 232. GroupPolicyExtension= . true (Group Policy) VXLAN VXLAN. VXLAN VXLAN Group Policy[8]. false. 224. GenericProtocolExtension= . true (Generic Protocol Extension) VXLAN OAM . VXLAN GPE Generic Protocol Extension for VXLAN[9]. 4790. false. 243. DestinationPort= UDP . . 4789 IANA. 229. PortRange= VXLAN. UDP . UDP . 229. FlowLabel= (flow label) . 0-1048575. 234. IPDoNotFragment= << >> (DF) IPv4 IPv4. "inherit". "inherit" IPv6. . 243. Independent= . true vxlan . false .network VXLAN= VXLAN. 247. External= . true vxlan EVPN. false. 258. VNIFilter= . true VNI. External= false. false. 258. [GENEVE] [GENEVE] netdevs "geneve" : Id= (VNI) 0 16777215. . 234. Remote= IP . 234. TOS= TOS . 1 255. 234. TTL= [VXLAN] 0 TTL /proc/sys/net/ipv4/ip_default_ttl. 234. UDPChecksum= . true UDP IPv4. 234. UDP6ZeroChecksumTx= . true UDP IPv6. 234. UDP6ZeroChecksumRx= . true UDP IPv6 . 234. DestinationPort= . 6081. 6081. 234. FlowLabel= . 234. IPDoNotFragment= [VXLAN]. 243. InheritInnerProtocol= . true GENEVE Ethernet. false. 254. [HSR] [HSR] netdevs "hsr" : Ports= . . : Ports=eth1 eth2 Ports=eth1 Ports=eth2 . 258. Protocol= . "hsr" "prp". "hsr". . . . HSR . PRP . 258. Supervision= MAC . 0 255. 0. HSR PRP . MAC 01:15:4E:00:01 . 258. [BAREUDP] [BareUDP] netdevs "bareudp" : DestinationPort= UDP ( 1...65535). . 247. EtherType= (L3). "ipv4" "ipv6" "mpls-uc" "mpls-mc". . 247. MinSourcePort= UDP ( 1...65535). . 257. [L2TP] [L2TP] "l2tp" : TunnelId= . 1...4294967295. "PeerTunnelId=" . . 242. PeerTunnelId= . 1...4294967295. "TunnelId=" . . 242. Remote= IP . . 242. Local= IP . IP "auto" "static" "dynamic". "@" "192.168.0.1@eth0" "auto@eth0". . "auto" . "static" "dynamic" . "auto". 242. EncapsulationType= . "udp" "ip". 242. UDPSourcePort= UDP . UDP. IP. 242. UDPDestinationPort= . UDP. IP. 245. UDPChecksum= . true UDP IPv4. 242. UDP6ChecksumTx= . true UDP IPv6. 242. UDP6ChecksumRx= . true UDP IPv6 . 242. [L2TPSESSION] [L2TPSession] "l2tp" : Name= . . 242. SessionId= . 1...4294967295. "SessionId=" . . 242. PeerSessionId= . 1...4294967295. "PeerSessionId=" . . 242. Layer2SpecificHeader= (layer2specific) . "none" "default". "default". 242. [MACSEC] [MACsec] "macsec" : Port= MACsec. (SCI). 1 65535. . 243. Encrypt= . . . 243. [MACSECRECEIVECHANNEL] [MACsecReceiveChannel] "macsec" : Port= MACsec. (SCI). 1 65535. . 243. MACAddress= MAC MACsec. MAC (SCI). . 243. [MACSECTRANSMITASSOCIATION] [MACsecTransmitAssociation] "macsec" : PacketNumber= ( [SCI]). 1 4,294,967,295. . 243. KeyId= . 0 255. . 243. Key= . . . 128 "dffafc8d7b9a43d5b9a3dfbbf6a30c16". 243. KeyFile= 128 . Key=. "systemd-network" "root:systemd-network" "0640". AF_UNIX . 243. Activate= . . . 243. UseForEncoding= . . [MACsecTransmitAssociation] . Activate=yes . . 243. [MACSECRECEIVEASSOCIATION] [MACsecReceiveAssociation] "macsec" : Port= [MACsecReceiveChannel]. 243. MACAddress= [MACsecReceiveChannel]. 243. PacketNumber= [MACsecTransmitAssociation]. 243. KeyId= [MACsecTransmitAssociation]. 243. Key= [MACsecTransmitAssociation]. 243. KeyFile= [MACsecTransmitAssociation]. 243. Activate= [MACsecTransmitAssociation]. 243. [TUNNEL] [Tunnel] (netdevs) "ipip" "sit" "gre" "gretap" "ip6gre" "ip6gretap" "vti" "vti6" "ip6tnl" "erspan" : External= . Local= Remote=. Independent=. . 251. Local= . "any" "ipv4_link_local" "ipv6_link_local" "dhcp4" "dhcp6" "dhcp_pd" "slaac". "any" . "any". 215. Remote= . IP "any". 215. TOS= (TOS) . TOS [10]. 215. TTL= (TTL) N . N 1...255.. 0 TTL. IPv4 0 (). IPv6 64. 215. DiscoverPathMTU= . MTU . IgnoreDontFragment= . . 215. IgnoreDontFragment= . " " (DF) IPv4 . . IgnoreDontFragment= DiscoverPathMTU= . GRE GRETAP ERSPAN. 254. IPv6FlowLabel= 20 ( RFC 6437[11]) IPv6 ( RFC 2460[12]) . IPv6. . 0...0xFFFFF "inherit" . 223. CopyDSCP= . (DSCP) IPv6. DSCP IP . "no". 223. EncapsulationLimit= . . ( RFC 2473[13]). 0...255 "none". 4. 226. Key= Key= (InputKey= OutputKey=). Key= IPv4. SAD/SPD ( ) IP XFRM ( IPsec). ip-xfrm -- [14] . VTI/VTI6 GRE GRETAP ERSPAN. 231. InputKey= InputKey= . Key=. VTI/VTI6 GRE GRETAP ERSPAN. 231. OutputKey= OutputKey= . Key=. VTI/VTI6 GRE GRETAP ERSPAN. 231. Mode= . . 2. +----------------+-----------------+---------------------+ | | | | +----------------+-----------------+---------------------+ |"ipip" | "ipip" | IPv4 IPv4 | | | | () | | +-----------------+---------------------+ | | "any" | IPv4 | | | | IPv6 IPv4 | +----------------+-----------------+---------------------+ |"sit" | "ipip" | IPv4 IPv4 | | +-----------------+---------------------+ | | "ip6ip" | IPv6 IPv4 | | | | () | | +-----------------+---------------------+ | | "any" | IPv4 | | | | IPv6 IPv4 | +----------------+-----------------+---------------------+ |"ip6tnl" | "ipip6" | IPv4 IPv6 | | +-----------------+---------------------+ | | "ip6ip6" | IPv6 IPv6 | | +-----------------+---------------------+ | | "any" | IPv4 | | | | IPv6 IPv6 | | | | () | +----------------+-----------------+---------------------+ 219. Independent= . ( ) .network Tunnel= . "tunnel@NONE". 235. AssignToLoopback= . "yes" "lo" . "no". 243. AllowLocalRemote= . ip6tnl . . 237. FooOverUDP= . FooOverUDP=. false. IPIP SIT GRE GRETAP. Foo over UDP[15] 240. FOUDestinationPort= UDP . FooOverUDP=yes . 240. FOUSourcePort= UDP . 0 -- . 240. Encapsulation= [FooOverUDP]. 240. IPv6RapidDeploymentPrefix= IPv6 Rapid Deployment[16] 6rd. IPv6 . SIT. 240. ISATAP= . (ISATAP). SIT. . 240. SerializeTunneledPackets= . yes . GRE GRETAP ERSPAN. . 240. ERSPANVersion= ERSPAN. 0 0 ( I) 1 1 ( II) 2 2 ( III). 1. 252. ERSPANIndex= ERSPAN v1 . 0...1048575 ERSPAN. ERSPANVersion=1. 0. 240. ERSPANDirection= ERSPAN v2. "ingress" "egress". ERSPANVersion=2. "ingress". 252. ERSPANHardwareId= ERSPAN v2. 0...63. ERSPANVersion=2. 0. 252. [FOOOVERUDP] [FooOverUDP] "fou" : Encapsulation= UDP. : "FooOverUDP" UDP UDP. "GenericUDPEncapsulation" IP . Generic UDP Encapsulation[17]. "FooOverUDP". 240. Port= . . . 240. PeerPort= . . "Peer=" . 243. Protocol= Protocol= UDP. Encapsulation=FooOverUDP . IP "gre" "ipip" 1...255. Encapsulation=GenericUDPEncapsulation . 240. Peer= IP . "PeerPort=" . 243. Local= IP . 243. [PEER] [Peer] "veth" : Name= . . 215. MACAddress= MAC MAC . 215. [VXCAN] [VXCAN] "vxcan" : Peer= . . 236. [TUN] [Tun] "tun" : MultiQueue= . () . "no". 215. PacketInfo= . ( ). IP . "no". 215. VNetHeader= . IFF_VNET_HDR tun tap. (GSO) . . "no". 223. User= /dev/net/tun. . . 215. Group= /dev/net/tun. . . 215. KeepCarrier= . (carrier status) . . "no". 252. [TAP] [Tap] netdevs "tap" [Tun]. [WIREGUARD] [WireGuard] : PrivateKey= Base64 . wg genkey ( wg(8)). "@" . systemd-networkd.service(8) "network.wireguard.*". systemd.exec(5). WireGuard. "network.wireguard.private.netdev" . 50-foobar.netdev "network.wireguard.private.50-foobar". (). .netdev "root:systemd-network" "0640". 237. PrivateKeyFile= Base64 . PrivateKey=. "systemd-network" "root:systemd-network" "0640". AF_UNIX . 242. ListenPort= UDP . 1 65535 "auto". "auto" . "auto". 237. FirewallMark= WireGuard . 1 4294967295. 243. RouteTable= AllowedIPs=. "default" "main" "local" RouteTable= networkd.conf(5) 1...4294967295. "off" AllowedIPs=. false. [WireGuardPeer]. 250. RouteMetric= AllowedIPs=. 0...4294967295. 0 IPv4 1024 IPv6. [WireGuardPeer]. 250. [WIREGUARDPEER] [WireGuardPeer] : PublicKey= Base64 wg pubkey ( wg(8)) (out of band) . "@" PrivateKey= [WireGuard]. . 237. PublicKeyFile= Base64 (peer). PublicKey=. "systemd-network" "root:systemd-network" "0640". AF_UNIX . 257. PresharedKey= . wg genpsk. . "@" PrivateKey= [WireGuard]. (). .netdev "root:systemd-network" "0640". 237. PresharedKeyFile= Base64 . PresharedKey=. "systemd-network" "root:systemd-network" "0640". AF_UNIX . 242. AllowedIPs= IP (v4 v6) CIDR . . . 0.0.0.0/0 IPv4 ::/0 IPv6. . -- "[Routes]" ".network" wireguard systemd-networkd. 237. Endpoint= IP . IPv6 . "111.222.333.444:51820" IPv4 "[1111:2222::3333]:51820" IPv6. IP . "@" PrivateKey= [WireGuard]. 237. PersistentKeepalive= 1 65535 NAT . NAT (keepalive) 25 . 0 "off" . . . 237. RouteTable= AllowedIPs=. "default" "main" "local" RouteTable= networkd.conf(5) 1...4294967295. [WireGuard]. 250. RouteMetric= AllowedIPs=. 0...4294967295. [WireGuard]. 250. [BOND] [Bond] : Mode= . "balance-rr" ( round robin). "balance-rr" "active-backup" "balance-xor" "broadcast" "802.3ad" "balance-tlb" "balance-alb". 216. TransmitHashPolicy= (transmit hash policy) (slave) balance-xor 802.3ad tlb. "layer2" "layer3+4" "layer2+3" "encap2+3" "encap3+4". 216. LACPTransmitRate= (LACPDU) 802.3ad. "slow" LACPDU 30 "fast" LACPDU . "slow". 216. MIIMonitorSec= (MII). MII. . 0. 216. PeerNotifyDelaySec= (ARP IPv6) . MII (miimon). 0 300 . 0 MIIMonitorSec=. 256. UpDelaySec= . MIIMonitorSec=. 0. 216. DownDelaySec= . MIIMonitorSec=. 0. 216. LearnPacketIntervalSec= . 1 0x7fffffff 1. balance-tlb balance-alb. 220. AdSelect= 802.3ad . "stable" "bandwidth" "count". 220. AdActorSystemPriority= 802.3ad. 1 65535. 240. AdUserPortKey= 802.3ad. 0 1023. 240. AdActorSystem= MAC 802.3ad. . 240. FailOverMACPolicy= active-backup MAC MAC . none. "none" "active" "follow". 220. ARPValidate= ARP ARP () ARP . "none" "active" "backup" "all". 220. ARPIntervalSec= ARP. 0 ARP. 0 . 220. ARPIPTargets= IP ARP ARPIntervalSec= 0. ARP . IPv4 . IP ARP. 16. IP. 220. ARPAllTargets= ARPIPTargets= ARP . active-backup ARPValidate . "any" "all". 220. PrimaryReselectPolicy= . . . "always" "better" "failure". 220. ResendIGMP= IGMP . 200 . 0 255. 1. 0 IGMP . 220. PacketsPerSlave= . 0 . 0 65535. 1. balance-rr. 220. GratuitousARP= (ARP IPv6) . VLAN. (ARPIntervalSec MIIMonitorSec ) 1. 0 255. 1. active-backup. 220. AllSlavesActive= . ( ) false true. ( ) . . false ( ). 220. DynamicTransmitLoadBalancing= . . balance-tlb. . 240. MinLinks= . 0. 220. ARPMissedMax= ARP ARP . . . 256. [1] [XFRM] [Xfrm] : InterfaceId= / xfrm SA/. 1-0xffffffff. . 243. Independent= . false ( ) xfrm . 243. Virtual XFRM Interfaces[18]. [VRF] [VRF] netdevs "vrf" : Table= . . RouteTable= networkd.conf(5). . 243. [BATMANADVANCED] [BatmanAdvanced] netdevs "batadv" : GatewayMode= "off" "server" "client". batman-adv ( ) ( ) ( ). 248. Aggregation= . . true. 248. BridgeLoopAvoidance= . . true. 248. DistributedArpTable= . (ARP) . true. 248. Fragmentation= . . true. 248. HopPenalty= batctl(8) . (TQ) (OGM) ( ). . '15' . 255 ( ) . 0. 248. OriginatorIntervalSec= batman-adv . systemd.time(7) . 248. GatewayBandwidthDown= . K M G T ( 1000) batman-adv . 248. GatewayBandwidthUp= . K M G T ( 1000) batman-adv . 248. RoutingAlgorithm= "batman-v" "batman-iv" routing_algo batctl(8) . . "batman-v". 248. [IPOIB] [IPoIB] netdevs "ipoib" : PartitionKey= 1...0xffff 0x8000. . 250. Mode= "datagram" "connected". . "datagram" Infiniband (UD) MTU IB L2 MTU IPoIB (4 ). IB MTU 2K IPoIB MTU 2048 - 4 = 2044 . "connected" Infiniband (RC). IB (MTU) IP 64K IP UDP TCP . 250. IgnoreUserspaceMulticastGroups= . (true) . . 250. [WLAN] [WLAN] WLAN : PhysicalDevice= WLAN (: "0" "phy0"). WLAN iw phy. . 251. Type= . "ad-hoc" "station" "ap" "ap-vlan" "wds" "monitor" "mesh-point" "p2p-client" "p2p-go" "p2p-device" "ocb" "nan". . 251. WDS= (WDS) . " ". . . 251. 1. /etc/systemd/network/25-bridge.netdev [NetDev] Name=bridge0 Kind=bridge 2. /etc/systemd/network/25-vlan1.netdev [Match] Virtualization=no [NetDev] Name=vlan1 Kind=vlan [VLAN] Id=1 3. /etc/systemd/network/25-ipip.netdev [NetDev] Name=ipip-tun Kind=ipip MTUBytes=1480 [Tunnel] Local=192.168.223.238 Remote=192.169.224.239 TTL=64 4. /etc/systemd/network/1-fou-tunnel.netdev [NetDev] Name=fou-tun Kind=fou [FooOverUDP] Port=5555 Protocol=4 5. /etc/systemd/network/25-fou-ipip.netdev [NetDev] Name=ipip-tun Kind=ipip [Tunnel] Independent=yes Local=10.65.208.212 Remote=10.65.208.211 FooOverUDP=yes FOUDestinationPort=5555 6. /etc/systemd/network/25-tap.netdev [NetDev] Name=tap-test Kind=tap [Tap] MultiQueue=yes PacketInfo=yes 7. /etc/systemd/network/25-sit.netdev [NetDev] Name=sit-tun Kind=sit MTUBytes=1480 [Tunnel] Local=10.65.223.238 Remote=10.65.223.239 8. /etc/systemd/network/25-6rd.netdev [NetDev] Name=6rd-tun Kind=sit MTUBytes=1480 [Tunnel] Local=10.65.223.238 IPv6RapidDeploymentPrefix=2602::/24 9. /etc/systemd/network/25-gre.netdev [NetDev] Name=gre-tun Kind=gre MTUBytes=1480 [Tunnel] Local=10.65.223.238 Remote=10.65.223.239 10. /etc/systemd/network/25-ip6gre.netdev [NetDev] Name=ip6gre-tun Kind=ip6gre [Tunnel] Key=123 11. /etc/systemd/network/25-vti.netdev [NetDev] Name=vti-tun Kind=vti MTUBytes=1480 [Tunnel] Local=10.65.223.238 Remote=10.65.223.239 12. /etc/systemd/network/25-veth.netdev [NetDev] Name=veth-test Kind=veth [Peer] Name=veth-peer 13. /etc/systemd/network/25-bond.netdev [NetDev] Name=bond1 Kind=bond [Bond] Mode=802.3ad TransmitHashPolicy=layer3+4 MIIMonitorSec=1s LACPTransmitRate=fast 14. /etc/systemd/network/25-dummy.netdev [NetDev] Name=dummy-test Kind=dummy MACAddress=12:34:56:78:9a:bc 15. /etc/systemd/network/25-vrf.netdev VRF 42. [NetDev] Name=vrf-test Kind=vrf [VRF] Table=42 16. /etc/systemd/network/25-macvtap.netdev MacVTap. [NetDev] Name=macvtap-test Kind=macvtap 17. /etc/systemd/network/25-wireguard.netdev [NetDev] Name=wg0 Kind=wireguard [WireGuard] PrivateKey=EEGlnEPYJV//kbvvIqxKkQwOiS+UENyPncC4bF46ong= ListenPort=51820 [WireGuardPeer] PublicKey=RDf+LSpeEre7YEIKaxg+wbpsNV7du+ktR99uBEtIiCA= AllowedIPs=fd31:bf08:57cb::/48,192.168.26.0/24 Endpoint=wireguard.example.com:51820 18. /etc/systemd/network/27-xfrm.netdev [NetDev] Name=xfrm0 Kind=xfrm [Xfrm] Independent=yes systemd(1), systemd-networkd.service(8), systemd.link(5), systemd.network(5), systemd-network-generator.service(8) 1. https://docs.kernel.org/networking/bonding.html 2. RFC 2784 https://tools.ietf.org/html/rfc2784 3. IEEE 802.1Q http://www.ieee802.org/1/pages/802.1Q.html 4. VRF https://docs.kernel.org/networking/vrf.html 5. B.A.T.M.A.N. Advanced https://www.open-mesh.org/projects/open-mesh/wiki 6. https://systemd.io/CREDENTIALS 7. (DOVE) https://en.wikipedia.org/wiki/Distributed_Overlay_Virtual_Ethernet 8. VXLAN https://tools.ietf.org/html/draft-smith-vxlan-group-policy 9. VXLAN https://tools.ietf.org/html/draft-ietf-nvo3-vxlan-gpe-07 10. http://tools.ietf.org/html/rfc1349 11. RFC 6437 https://tools.ietf.org/html/rfc6437 12. RFC 2460 https://tools.ietf.org/html/rfc2460 13. RFC 2473 https://tools.ietf.org/html/rfc2473#section-4.1.1 14. ip-xfrm -- https://man7.org/linux/man-pages/man8/ip-xfrm.8.html 15. Foo UDP https://lwn.net/Articles/614348 16. IPv6 https://tools.ietf.org/html/rfc5569 17. UDP https://lwn.net/Articles/615044 18. XFRM https://lwn.net/Articles/757391 3 . . : . systemd 260.2 SYSTEMD.NETDEV(5)