{
    "mode": "man",
    "parameter": "proc_net",
    "section": "5",
    "url": "https://www.chedong.com/phpMan.php/man/proc_net/5/json",
    "generated": "2026-10-04T06:52:39Z",
    "sections": {
        "NAME": {
            "content": "/proc/pid/net/, /proc/net/ - network layer information\n",
            "subsections": []
        },
        "DESCRIPTION": {
            "content": "/proc/pid/net/ (since Linux 2.6.25)\nSee the description of /proc/net.\n\n/proc/net/\nThis  directory contains various files and subdirectories containing information about\nthe networking layer.  The files contain ASCII structures and are, therefore, readable\nwith cat(1).  However, the standard netstat(8) suite provides much cleaner  access  to\nthese files.\n\nWith  the  advent  of  network namespaces, various information relating to the network\nstack is virtualized (see networknamespaces(7)).  Thus, since Linux 2.6.25, /proc/net\nis a symbolic link to the directory /proc/self/net, which contains the same files  and\ndirectories as listed below.  However, these files and directories now expose informa‐\ntion for the network namespace of which the process is a member.\n\n/proc/net/arp\nThis  holds  an  ASCII  readable dump of the kernel ARP table used for address resolu‐\ntions.  It will show both dynamically learned and preprogrammed ARP entries.  The for‐\nmat is:\n\nIP address     HW type   Flags     HW address          Mask   Device\n192.168.0.50   0x1       0x2       00:50:BF:25:68:F3   *      eth0\n192.168.0.250  0x1       0xc       00:00:00:00:00:00   *      eth0\n\nHere \"IP address\" is the IPv4 address of the machine and the \"HW type\" is the hardware\ntype of the address from RFC 826.  The flags are the internal flags of the ARP  struc‐\nture (as defined in /usr/include/linux/ifarp.h) and the \"HW address\" is the data link\nlayer mapping for that IP address if it is known.\n\n/proc/net/dev\nThe dev pseudo-file contains network device status information.  This gives the number\nof received and sent packets, the number of errors and collisions and other basic sta‐\ntistics.  These are used by the ifconfig(8) program to report device status.  The for‐\nmat is:\n\nInter-|   Receive                                                |  Transmit\nface |bytes    packets errs drop fifo frame compressed multicast|bytes    packets errs drop fifo colls carrier compressed\nlo: 2776770   11307    0    0    0     0          0         0  2776770   11307    0    0    0     0       0          0\neth0: 1215645    2751    0    0    0     0          0         0  1782404    4324    0    0    0   427       0          0\nppp0: 1622270    5552    1    0    0     0          0         0   354130    5669    0    0    0     0       0          0\ntap0:    7714      81    0    0    0     0          0         0     7714      81    0    0    0     0       0          0\n\n/proc/net/devmcast\nDefined in /usr/src/linux/net/core/devmcast.c:\n\nindx interfacename  dmiu dmig dmiaddress\n2    eth0            1     0     01005e000001\n3    eth1            1     0     01005e000001\n4    eth2            1     0     01005e000001\n\n/proc/net/igmp\nInternet Group Management Protocol.  Defined in /usr/src/linux/net/core/igmp.c.\n\n/proc/net/rarp\nThis  file  uses the same format as the arp file and contains the current reverse map‐\nping database used to provide rarp(8) reverse address lookup services.  If RARP is not\nconfigured into the kernel, this file will not be present.\n\n/proc/net/raw\nHolds a dump of the RAW socket table.  Much of the information is  not  of  use  apart\nfrom debugging.  The \"sl\" value is the kernel hash slot for the socket, the \"localad‐\ndress\"  is the local address and protocol number pair.  \"St\" is the internal status of\nthe socket.  The \"txqueue\" and \"rxqueue\" are the outgoing and incoming data queue in\nterms of kernel memory usage.  The \"tr\", \"tm->when\", and \"rexmits\" fields are not used\nby RAW.  The \"uid\" field holds the effective UID of the creator of the socket.\n\n/proc/net/snmp\nThis file holds the ASCII data needed for the IP, ICMP, TCP, and UDP management infor‐\nmation bases for an SNMP agent.\n\n/proc/net/tcp\nHolds a dump of the TCP socket table.  Much of the information is  not  of  use  apart\nfrom debugging.  The \"sl\" value is the kernel hash slot for the socket, the \"localad‐\ndress\" is the local address and port number pair.  The \"remaddress\" is the remote ad‐\ndress and port number pair (if connected).  \"St\" is the internal status of the socket.\nThe  \"txqueue\"  and  \"rxqueue\"  are the outgoing and incoming data queue in terms of\nkernel memory usage.  The \"tr\", \"tm->when\", and \"rexmits\" fields hold internal  infor‐\nmation  of the kernel socket state and are useful only for debugging.  The \"uid\" field\nholds the effective UID of the creator of the socket.\n\n/proc/net/udp\nHolds a dump of the UDP socket table.  Much of the information is  not  of  use  apart\nfrom debugging.  The \"sl\" value is the kernel hash slot for the socket, the \"localad‐\ndress\" is the local address and port number pair.  The \"remaddress\" is the remote ad‐\ndress and port number pair (if connected).  \"St\" is the internal status of the socket.\nThe  \"txqueue\"  and  \"rxqueue\"  are the outgoing and incoming data queue in terms of\nkernel memory usage.  The \"tr\", \"tm->when\", and \"rexmits\" fields are not used by  UDP.\nThe \"uid\" field holds the effective UID of the creator of the socket.  The format is:\n\nsl  localaddress remaddress   st txqueue rxqueue tr rexmits  tm->when uid\n1: 01642C89:0201 0C642C89:03FF 01 00000000:00000001 01:000071BA 00000000 0\n1: 00000000:0801 00000000:0000 0A 00000000:00000000 00:00000000 6F000100 0\n1: 00000000:0201 00000000:0000 0A 00000000:00000000 00:00000000 00000000 0\n\n/proc/net/unix\nLists  the UNIX domain sockets present within the system and their status.  The format\nis:\n\nNum RefCount Protocol Flags    Type St Inode Path\n0: 00000002 00000000 00000000 0001 03    42\n1: 00000001 00000000 00010000 0001 01  1948 /dev/printer\n\nThe fields are as follows:\n\nNum:      the kernel table slot number.\n\nRefCount: the number of users of the socket.\n\nProtocol: currently always 0.\n\nFlags:    the internal kernel flags holding the status of the socket.\n\nType:     the socket type.  For SOCKSTREAM sockets,  this  is  0001;  for  SOCKDGRAM\nsockets, it is 0002; and for SOCKSEQPACKET sockets, it is 0005.\n\nSt:       the internal state of the socket.\n\nInode:    the inode number of the socket.\n\nPath:     the  bound  pathname  (if any) of the socket.  Sockets in the abstract name‐\nspace are included in the list, and are shown with  a  Path  that  commences\nwith the character '@'.\n\n/proc/net/netfilter/nfnetlinkqueue\nThis  file  contains  information  about netfilter user-space queueing, if used.  Each\nline represents a queue.  Queues that have not been subscribed to by  user  space  are\nnot shown.\n\n1   4207     0  2 65535     0     0        0  1\n(1)   (2)    (3)(4)  (5)    (6)   (7)      (8)\n\nThe fields in each line are:\n\n(1)  The  ID  of  the  queue.   This  matches  what is specified in the --queue-num or\n--queue-balance options to the iptables(8) NFQUEUE target.   See  iptables-exten‐\nsions(8) for more information.\n\n(2)  The netlink port ID subscribed to the queue.\n\n(3)  The  number of packets currently queued and waiting to be processed by the appli‐\ncation.\n\n(4)  The copy mode of the queue.  It is either 1 (metadata only) or 2 (also copy  pay‐\nload data to user space).\n\n(5)  Copy  range;  that  is, how many bytes of packet payload should be copied to user\nspace at most.\n\n(6)  queue dropped.  Number of packets that had to be dropped by  the  kernel  because\ntoo  many  packets  are already waiting for user space to send back the mandatory\naccept/drop verdicts.\n\n(7)  queue user dropped.  Number of packets that were dropped within the netlink  sub‐\nsystem.   Such drops usually happen when the corresponding socket buffer is full;\nthat is, user space is not able to read messages fast enough.\n\n(8)  sequence number.  Every queued packet is associated with a (32-bit) monotonically\nincreasing sequence number.  This shows the ID of the most recent packet queued.\n\nThe last number exists only for compatibility reasons and is always 1.\n",
            "subsections": []
        },
        "SEE ALSO": {
            "content": "proc(5)\n\nLinux man-pages 6.7                          2023-08-15                              procpidnet(5)",
            "subsections": []
        }
    },
    "summary": "/proc/pid/net/, /proc/net/ - network layer information",
    "flags": [],
    "examples": [],
    "see_also": [
        {
            "name": "proc",
            "section": "5",
            "url": "https://www.chedong.com/phpMan.php/man/proc/5/json"
        }
    ]
}