Dockerのネットワークモード
Dockerのさまざまなネットワークドライバー(bridge、host、overlay)と、コンテナ通信への影響を理解します。
「Dockerのネットワークモード」はCoddyKit上の無料Linux Networking & TCP/IP for Developersレッスンです。 これはレッスン1/4です。 下記で完全なレッスンを無料で読むことができます。その後、ブラウザ内の組み込みコードエディタと24時間対応のAIチューターでハンズオン演習できます。 これはLinux Networking & TCP/IP for Developers学習パスの一部であり、ウェブとCoddyKitアプリ全体で進捗が同期されます。 Linux Networking & TCP/IP for Developersコースには全4レッスンが含まれています。
このレッスンの一部はまだ翻訳されておらず、英語で表示されています。
Containers Need to Talk!
Docker containers are isolated by default, but they often need to communicate with each other or the outside world. Docker provides various network drivers to manage this.
These drivers define how containers connect to each other and to the host machine's network, ensuring proper communication and isolation.
The Standard: Bridge Network
When you don't specify a network, Docker automatically uses the default bridge network. Think of it as a virtual switch that Docker creates on your host machine.
Each container connected to this bridge gets its own IP address and can communicate with other containers on the same bridge using their IP addresses.
Default Bridge in Action
Let's inspect the default bridge network and see a container connected to it. This demonstrates how Docker assigns IP addresses within this virtual network.
Run these commands to observe the default bridge and a container's IP.
docker network ls
docker run -d --name mynginx nginx
docker inspect --format='{{.NetworkSettings.IPAddress}}' mynginx
docker stop mynginx
docker rm mynginxSharing Host's Network
The host network mode removes network isolation between the container and the host. The container directly uses the host's network stack.
This means the container's ports are directly exposed on the host's IP address without any port mapping. It offers high performance but significantly reduces isolation.
Host Mode Demo
When a container runs in host mode, it effectively becomes another process on the host's network. Its network interfaces and IP addresses will mirror those of the host machine.
Run this command to see a container's network details in host mode and compare it to your host's network configuration.
docker run --rm --network host alpine ip a
# Compare with your host's `ip a` output!Spanning Multiple Hosts: Overlay
Overlay networks are designed for multi-host container communication, typically used in Docker Swarm or Kubernetes clusters.
They allow containers on different physical or virtual machines to communicate seamlessly as if they were on the same local network. This is vital for distributed applications.
Customizing Your Bridges
While the default bridge is useful, user-defined bridge networks are best practice. They offer several advantages over the default bridge:
- Better Isolation: Keeps your application's network separate.
- Automatic DNS: Containers can find each other by name, not just IP!
- Portability: Easier to move applications between hosts.
Creating a Custom Bridge
Let's create our own custom bridge network and connect containers to it. Observe how containers on the same user-defined bridge can resolve each other by their container names.
This makes inter-container communication much simpler and more robust.
docker network create myapp_network
docker run -d --name myapp_server --network myapp_network alpine/git sh -c "while true; do echo 'Hello from server!' | nc -l -p 8080; done"
docker run --rm --network myapp_network alpine/git sh -c "apk add --no-cache netcat-openbsd && sleep 2 && nc myapp_server 8080"
docker stop myapp_server
docker rm myapp_server
docker network rm myapp_networkContainers Talking by Name
In the previous example, the client container successfully connected to myapp_server using its container name. This is a key advantage of user-defined bridge networks.
Docker's built-in DNS service automatically resolves container names to their IP addresses within the custom network, simplifying service discovery.
Test Your Knowledge!
Which of the following statements about Docker network modes are TRUE?
Docker Networks: A Quick Review
We've explored key Docker network modes that enable container communication:
- Bridge: The default, for single-host container communication.
- Host: Container shares the host's network stack for high performance but less isolation.
- Overlay: For multi-host communication in clustered environments like Docker Swarm.
- User-Defined Bridge: Best practice for custom app networks, offering isolation and automatic DNS resolution by name.
Understanding these modes is vital for designing robust and scalable containerized applications.
よくある質問
「Dockerのネットワークモード」レッスンは無料ですか?
はい。「Dockerのネットワークモード」の完全なテキストはこのウェブで無料で読めます。インタラクティブに演習し(組み込みコードエディタと24時間対応のAIチューター)、Linux Networking & TCP/IP for Developersコースの残りをアンロックするには、CoddyKit PROにアップグレードしてください。 Linux Networking & TCP/IP for Developersコースには全4レッスンが含まれています。
「Dockerのネットワークモード」で何を学びますか?
Dockerのさまざまなネットワークドライバー(bridge、host、overlay)と、コンテナ通信への影響を理解します。 ブラウザで直接実行するハンズオンコードでLinux Networking & TCP/IP for Developersを演習し、24時間対応のAIチューターがレッスンを進める中での質問に答えます。
Linux Networking & TCP/IP for Developersを始めるのに経験は必要ですか?
事前経験は必要ありません。CoddyKitのLinux Networking & TCP/IP for Developersは初級者から上級者向けに構成されているため、ここから始めるか最初から始めて、自分のペースで進むことができます。 これはレッスン1/4です。
「Dockerのネットワークモード」レッスンにはどのくらい時間がかかりますか?
ほとんどのCoddyKitレッスンは約5~10分かかります。各レッスンはコンパクトでインタラクティブなので、着実に進歩し、ウェブとアプリ全体で正確に前回の場所から再開できます。
このLinux Networking & TCP/IP for Developersレッスンでコードを書いて実行できますか?
はい。すべてのLinux Networking & TCP/IP for Developersレッスンに組み込みコードエディタが含まれているため、ブラウザでリアルコードを書いて実行し、即座のAIフィードバックを取得できます。ローカル設定は不要です。
このコースのすべてのレッスン
- Dockerのネットワークモード
- Kubernetesネットワーキングの基礎
- コンテナのネットワークポリシー
- KubernetesにおけるサービスディスカバリとDNS