Background technology
Along with developing rapidly of modern communication technology and Internet technology, Internet protocol (InternetProtocol; Hereinafter to be referred as IP) net will be as multiple services unified bearer network, multiple different communication services such as voice-bearer, video, data and enterprise be interconnected simultaneously on IP network.It is the pattern of core that the construction development model of existing network will turn to the business, and will show as the transition of broadband services: multimedia, interactive form account for the multiple business model of main flow gradually; IP-based network integrated services, for example fusion of video, voice-and-data etc.; The extensive use of personalized point-to-point communication (P2P); The user obtains sufficient bandwidth resources and service etc. as required.Wherein, triple play (Triple play) business is a kind of binding business model that merges voice, data and video traffic.Operator is through making rational planning for, and for speech business (hereinafter to be referred as VOIP) and video traffic (hereinafter to be referred as IPTV) provide guaranteed service, the service of doing one's best is provided for the internet data business.In triple play, VOIP and IPTV business adopt physics or private network mode in logic to run at network side, at user side, and through specific terminal, for example VOIP phone, STB (set top box; Hereinafter to be referred as: STB) wait the business of acquisition, carry out traffic differentiation through the access interface on the home gateway; On QoS, according to the service quality of the different business of setting justice (hereinafter to be referred as: Qos) rank and bandwidth guarantee are dispatched.
At present Internet development speed has far surpassed the development speed of communication network, emerge in an endless stream based on the application of the Internet, as internet video share, video request program, the networking telephone, P2P file-sharing, instant messaging etc.Can predict, based on the flexibility and the extensibility of the Internet, the application through internet bearer will get more and more.These use especially multimedia application, and the requirement of bandwidth and Qos than higher, like some video request program websites, has been attracted the online video of watching of large quantities of users, and the user hopes to obtain comparatively stable effect and experience.Present adopts extensive style ground, the service manner of doing one's best obviously can't satisfy user's this needs to the internet data business.
Fig. 1 is a triple play system configuration sketch map in the prior art, is example with the DSL access.As shown in Figure 1, Digital Subscriber Line Access Multiplexer (Digital Subscriber Line AccessMultiplexer; Hereinafter to be referred as DSLAM) and Broadband Remote Access Server (Broadband RemoteAccess Server; Hereinafter to be referred as: defined VLAN (Virtual Local Area Network according to type of service BRAS); Hereinafter to be referred as VLAN), particularly, VLAN of internet data delineation of activities, the professional VLAN of VOIP, VLAN of multicast service in the video, VLAN of demand (telecommunication) service carries out the isolation of service traffics in this way; Home gateway (Home Gateway; Hereinafter to be referred as HG) and DSLAM between also divide different Permanent Virtual Channel (permanent virtual channel according to type of service; Hereinafter to be referred as PVC); HG distinguishes business according to the difference of terminal access interface; For example the access interface of computer, IPTV STB, VOIP phone has nothing in common with each other; Flow is transmitted to DSLAM through different PVC, and the flow that DSLAM comes different PVC is mapped to different VLAN and is transmitted to BRAS; Wherein, different PVC and corresponding bandwidth and the Qos priority of VLAN have been got well in planning in advance.
The inventor finds in realizing process of the present invention: in the prior art; BRAS and HG judge type of service through the port of data traffic; And then dispatch forwarding through different forwarding passage (for example PVC and VLAN); Business datum is not carried out the degree of depth and divide processing, can not satisfy user's business demand, QoS is lower.
Embodiment
Further specify the technical scheme of the embodiment of the invention below in conjunction with accompanying drawing and specific embodiment.
Fig. 2 is a data handling system example structure sketch map of the present invention; As shown in Figure 2; In this system a plurality of user terminals that are used to carry out different business for example computer, IPTV STB, VOIP phone etc. be connected with HG, HG is the access interface of the data traffic of user terminal and network interaction; HG is connected with DSLAM, and different one or more deep messages of setting up according to type of service detect (deep packet inspection between HG and the DSLAM; Hereinafter to be referred as: DPI) value-added service PVC; DSLAM is connected with BNG, and sets up one or more DPI value-added service VLAN between DSLAM and the BNG, and wherein every value-added service can be used a VLAN separately; Also can multinomial value-added service use a VLAN jointly; VLAN of internet data delineation of activities for example, the professional VLAN of VOIP, VLAN of multicast service in the video; VLAN of demand (telecommunication) service carries out the isolation of service traffics in this way; BNG is a network egress, is responsible for carrying out data interaction with network side, on BNG, increases the functional module of professional perception, makes the BNG place possess phase-split network data traffic content, the ability of perception loaded service and application.
By on can know, between network egress BNG and user terminal outlet HG, planned the value-added service passage, tactful through these VALN and PVC being distributed predefined dispatching priority and Qos, the value-added service data are carried out priority scheduling, the raising QoS.Operator can be through business platform issue DPI value-added service; This value-added service can be planned classification according to the service sensing ability of DPI equipment; Discernible one or more application types are carried out priority scheduling as one type of value-added service, like network flow-medium acceleration, online game acceleration, voice acceleration etc.The user can subscribe to this type of value-added service through landing portal website of operator, and operator can work out expenses standard flexibly to value-added service.
User's registering service platform selecting DPI value-added service; Business platform is handed down to controlling platform with the value-added service information that the user subscribes to; Strategy controller in the controlling platform is according to user's selection; Dynamically generating the DPI business game is the customer service policy information, comprises the type of service and the corresponding processing strategy of the value-added service that the user subscribes in the customer service policy information, and said processing policy is indication BNG user's subscribed service data is carried out the DPI detection; And issuing the customer service policy information to BNG, indication is carried out DPI to specific user's internet data and is detected.The DPI business game can initiatively be handed down to corresponding BNG by strategy controller, also can be when the user reach the standard grade for the first time, and BNG detects the user and reaches the standard grade, and initiatively obtains user's DPI business game to strategy controller.BNG is according to user's DPI business game, to the user's that subscribed to the DPI value-added service high speed Internet access (high speed internet; Hereinafter to be referred as: HIS) data flow is carried out the DPI detection, marks value-added service data flow wherein, transmits through the DPI VLAN scheduling of appointment, and other HSI data are still through HSI VLAN scheduling forwarding; After business data flow arrives DSLAM, through planning in advance good with transmit the corresponding DPI PVC of passage DPI VLAN, send to user terminal then.
DPI module among the BNG can also be reported to controlling platform with testing result; Issue dynamic control information by the strategy controller in the controlling platform (policy controller) or terminal management control system (ITMS) or other management control system to HG or DSLAM, like dynamic access control tabulation (access control list; Hereinafter to be referred as: ACL), indication HG or DSLAM transmit through corresponding DPI value-added service passage the data flow of up value-added service.
Fig. 3 is a data processing method embodiment flow chart of the present invention, and is as shown in Figure 3, and this method comprises:
Step 100 receives data, according to user's data processing policy information under the said data, judges whether that need carry out deep message to said data detects;
After BNG receives data, to judge at first which user is these data belong to, can be according to the IP address or media interviews control (the media access control of data; Hereinafter to be referred as: the information that MAC) address etc. can the identifying user identity is judged; After judgement learns that these data belong to concrete which user again, search and this user's data processing policy information, and judge whether that according to this data processing policy information needs carry out DPI to the data that receive and detect; Said data processing policy information comprises two information tables; Be respectively customer service policy information and data flow state information; Wherein record the value-added service information that this user orders in the customer service policy information, record the type of service and the relevant information of every data flow of the BNG that flows through in the data flow state information.Should satisfy two conditions simultaneously if need carry out the DPI detection to the data that receive; Be in the data flow state information in relevant these data the type of service of data flow be recorded as the unknown; And this user of record had subscribed to value-added service in the customer service policy information; That is to say that these received data of BNG are new datas for BNG; Do not have before this and receive other data flow relevant, therefore in data flow state information, do not have the type of service record of relevant data stream with these data; In addition, this user must be the user who has subscribed to about the value-added service of certain type of service, judges according to above trigger condition.
Step 101 is carried out deep message to said data and is detected, and obtains the type of service of each data flow in the said data;
If BNG according to customer service policy information and data flow state information judgement learn when the data that receive satisfy above two conditions simultaneously; BNG sends to the data that receive and is responsible for carrying out functional module that DPI detects and carries out DPI and detect; Data are carried out deep message detection processing requirements operator can carry out perception loaded service in the data flow; DPI is as a kind of message detection technique; Can the load (payload) of network data message be detected, thus the type of service of recognition data stream, and then reach the purpose that network traffics are controlled.Through can obtain the traffic type information of each data flow in the data to the depth detection of data load.
Step 102 according to the type of service of each data flow in said data processing policy information and the said data, identifies with the identical data flow of value-added service type that said user orders type of service in the said data;
In detecting data after the type of service of each data flow; BNG is at first through searching the value-added service type that the user orders in the customer service policy information; And the type of service that contrasts which data flow is identical with the value-added service type that the user subscribes to; If there is the identical situation of type of service; Then type of service in the said data being identified with the identical data flow of value-added service type that said user orders, specifically is that the type of service of data flow that will be identical with the value-added service type that the user subscribes in data flow state information is labeled as " value-added service "; For the data flow of the value-added service type mismatch of other type of service and user subscription in the data, the type of service list notation with this data flow in data flow state information is " non-value-added service ".For example, the user subscribes to the value-added service relevant for " online game accelerations ", and in network is handed down to this user's the customer service policy information of BNG, will recording this user, to have subscribed to type of service be the information of the value-added service of " online game "; Carry out the DPI detection when the data of the information that BNG receives and to it after, obtain the type of service of each data flow in the data, for example comprise " online game " type of service and " visual telephone " type of service; Then; BNG contrast customer service policy information is with in the data flow state information type of service of the data flow of relevant " online game " being labeled as " value-added service "; The type of service of the data flow of relevant " visual telephone " is labeled as " non-value-added service ", uses when data are transmitted for follow-up.
Step 103 is dispatched forwarding to the data flow that identifies.
After BNG has upgraded data flow state information, transmit each data flow, not only be marked with the type of service of data flow in the data flow state information, and also have the relevant information of the forwarding usefulness such as destination address of each data flow according to data flow state information.Data flow for the value-added service type will be transmitted through preset value-added service passage, then transmit through original forwarding passage for the data flow of non-value-added service type.If said data are downlink data, then the value-added service corresponding data flow of ordering with said user to identifying is dispatched forwarding through preset value-added service passage; If said data are upstream data, then the value-added service corresponding data flow of ordering with said user that identifies are carried out priority scheduling and transmit.Described preset value-added service passage is and receives before the deal with data, on data transfer path equipment, sets up the value-added service passage that satisfies planning Qos index through static or dynamic mode.Described upstream data is meant the data that flow to the Internet from user terminal, and said downlink data refers to mail to from the Internet data of user terminal.
When system deployment; Will plan in advance corresponding to the value-added service passage of different value-added service data; The value-added service passage comprises DPI VLAN and the DPI PVC between DSLAM and the HG between BNG and the DSLAM; The data that have a certain identification label are forwarded to DSLAM through which bar DPI VLAN, which bar DPI PVC to be transmitted to HG through then, all configure; As long as BNG is for after the value-added service data are provided with identification label, data just can send to the user terminal place through the value-added service passage that configures.Dispatch repeating process particularly and be BNG according to said identification label, detect VLAN, said downlink data is transmitted to Digital Subscriber Line Access Multiplexer DSLAM through the deep message corresponding with said identification label; Said DSLAM detects Permanent Virtual Channel according to said identification label through the deep message corresponding with said identification label, and said downlink data is transmitted to and home gateway HG; Said HG sends to user terminal with said downlink data.BNG can also stamp different " DPI VLAN TAG " with the data message of value-added service, according to data flow state information user data is transmitted to the DSLAM of correspondence again through the DPI VLAN priority scheduling of correspondence; DSLAM is mapped to DPI PVC according to " DPIVLAN TAG ", and HG carries out priority scheduling according to DPI PVC.BNG gives user terminal according to the value-added service passage that planning in advance is good with data forwarding after stamping identification label for user's subscribed service data.
Also there is following situation in the method that present embodiment provides, promptly in the data that BNG receives, do not have and the value-added service corresponding data flow, then directly these data are transmitted through the passage of general service data; Also have, when the received data of BNG are learnt the type of service of each data flow wherein through searching data flow state information, need not to carry out again DPI and detect, can directly the value-added service corresponding data flow be transmitted through preset passage.
In the data processing method that present embodiment provided; When BNG carries out the deep message detection to the data of the BNG that flows through; This process will be used the customer service policy information, and this customer service policy information can initiatively be handed down to corresponding BNG by strategy controller, is received by BNG; Also can be BNG when detecting the user and reaching the standard grade for the first time, initiatively obtain the customer service policy information to strategy controller.
Further; Business platform is divided value-added service according to the DPI detectability of BNG equipment; Discernible one or more application types are carried out priority scheduling as one type of value-added service; Like business such as network flow-medium acceleration, online game acceleration, voice acceleration, and the value-added service of supporting issued to the user; The user can subscribe to this type of value-added service through login portal website.Controlling platform generates said customer service policy information, and sends to BNG according to user's subscription information, is used to indicate BNG that specific user's value-added service data are carried out priority scheduling and handles.
BNG is after finishing DPI detection processing to data; Also to testing result be reported controlling platform; Be specially BNG and send the testing result information of said data being carried out deep message detection processing, comprise the traffic type information of each data flow in the data in this object information to controlling platform; Said controlling platform is according to said testing result information; Send control information to said HG and/or said DSLAM; Said control information is used to indicate the data that said HG and/or said DSLAM will be corresponding with the value-added service that the user orders, and transmits through the value-added service passage of setting.After BNG reports testing result; Issue dynamic control information by the strategy controller in the controlling platform or terminal management control system or other management control system to HG and/or DSLAM; Like dynamic ACL, indication HG and/or DSLAM transmit through corresponding value-added service passage the data flow of value-added service.
Said HG and/or said DSLAM are according to control information; Data are transmitted detailed process through the value-added service passage of said setting to be comprised; Said HG detects Permanent Virtual Channel with data through the deep message in the said value-added service passage, sends to said DSLAM; And/or said DSLAM detects VLAN with said upstream data through the deep message in the said value-added service passage, sends to wideband network gateway BNG.The control information that data issue according to strategy controller on HG and/or DSLAM is mapped to DPI PVC/VLAN; This depends on RG and/or DSLAM dynamic ACL configuration and coupling that whether the support policy controller issues; If HG and DSLAM can not support this dynamic-configuration and coupling; Then data flow arrives BNG through HIS VLAN, by BNG data is sent to network again.
The data processing method that the embodiment of the invention provides is at present the internet, applications flow not being had a kind of method of segmenting and runing; A kind of value-added service solution of network application is provided; The embodiment of the invention can be discerned and manage the flow of the Internet, and partial discharge is carried out priority scheduling through the value-added service passage of planning; Operator is developing value-added services, acquisition high yield in view of the above, and the user can obtain higher service quality.And the data processing method of the value-added service that provides of present embodiment is not limited to internet, applications, also can plan as required, segment and run to other network service traffic.
One of ordinary skill in the art will appreciate that: all or part of step that realizes said method embodiment can be accomplished through the relevant hardware of program command; Aforesaid program can be stored in the computer read/write memory medium; This program the step that comprises said method embodiment when carrying out; And aforesaid storage medium comprises: various media that can be program code stored such as ROM, RAM, magnetic disc or CD.
Fig. 4 is wideband network gateway embodiment one structural representation of the present invention; As shown in Figure 4; This wideband network gateway comprises first receiver module 11, judge module 12, detection module 13, table administration module 14 and forwarding module 15, and wherein first receiver module 11 is used to receive data and judges user under the said data; Judge module 12 is used for according to user's data processing policy information under the said data, judges whether that need carry out deep message to said data detects; Detection module 13 is used for that said data are carried out deep message and detects, and obtains the type of service of each data flow in the said data; Table administration module 14 is used for the type of service according to said data processing policy information and said each data flow of data, and type of service in the said data is identified with the identical data flow of value-added service type that said user orders; Forwarding module 15 is used for the data flow that identifies is dispatched forwarding.
Particularly, after first receiver module 11 receives data, judge which user it belongs to the data message that receives, this can according to the IP address of data message or MAC Address etc. can the identifying user identity information judge; After learning that which user is these data belong to; Send the data to judge module 12; Judge whether that by judge module 12 need carry out DPI to these data detects; Needs carry out DPI to data and detect when satisfying following two conditions at the same time; Said condition be in the data flow state information in relevant these data the type of service of data flow be recorded as the unknown, and this user of record had subscribed to value-added service in the customer service policy information, wherein data flow state information and customer service policy information composition user's data processing policy information.Learn and to carry out DPI when detecting to data in judgement; Then send the data to detection module 13 according to the value-added service type corresponding processing strategy in the customer service policy information with user's subscription; Carry out DPI through 13 pairs of data of detection module and detect, obtain the type of service of each data flow in the data; Upgrade through 14 pairs of data flow state informations of table administration module then; Type of service in the said data is identified with the identical data flow of value-added service type that said user orders; Table administration module 14 is responsible for the storage and the management of data flow state information and user tactics information, and judge module 12 obtains from table administration module 14 with the user data policy information that 15 pairs of data of forwarding module carry out using in the processing procedure; The customer service policy information of storage also can receive through first receiver module 11 in the table administration module 14, and is stored in the table administration module 14, and said customer service policy information comprises the traffic type information of the value-added service that said user subscribes to.At last; 15 pairs of data of forwarding module are transmitted; For downlink data, can will transmit through preset value-added service passage corresponding to the data of value-added service particularly, the data of non-value-added service will be transmitted through original passage according to upgrading back data flow state information; For upstream data, then the value-added service data are preferably dispatched forwarding.For example; Dispatch forwarding for downlink data; The scheduling repeating process is that BNG gives DSLAM through the DPIVLAN that plans with data forwarding, and then by DSLAM data is sent to HG through the DPI PVC corresponding with DPI VLAN, by HG data is issued user terminal again.
Fig. 5 is wideband network gateway embodiment two structural representations of the present invention; As shown in Figure 5; Based on wideband network gateway embodiment one; This wideband network gateway comprises first receiver module 11, judge module 12, detection module 13, table administration module 14 and forwarding module 15; Wherein judge module 12 comprises that first judges that submodule 121 and the second judgement submodule, 122, the first judgement submodules 121 are used for the data flow state information according to said data processing policy information, judge whether the type of service of each data flow in the said data is unknown; Second judges that submodule 122 is used for the customer service policy information according to said data processing policy information, judges whether said user has subscribed to value-added service.Whether judge module 12 carries out the trigger condition that DPI detects and judges meeting through two function sub-modules.
Wideband network gateway can send to controlling platform through it being used for of comprising and said data carried out the reporting modules 16 that deep message detects the traffic type information of handling said each data flow of data that obtains testing result information is sent after data being finished deep message and being detected.Certainly when upstream data service took place, first receiver module 11 also will be used to receive the upstream data of sending from DSLAM;
The wideband network gateway that present embodiment provides can be discerned and manage the flow of the Internet, and partial discharge is carried out priority scheduling through the value-added service passage of planning; Operator is developing value-added services in view of the above, improves income, improves QoS.
Fig. 6 is a strategy controller device example structure sketch map of the present invention; As shown in Figure 6; This strategy controller device comprises first sending module 21 and second receiver module 22; Wherein first sending module 21 is used for sending the customer service policy information to wideband network gateway, and said customer service policy information comprises the traffic type information and the corresponding processing strategy of the value-added service that the user subscribes to; Second receiver module 22 is used for receiving that said wideband network gateway sends said data are carried out deep message detects the traffic type information of handling said each data flow of data that obtains.
Particularly; Strategy controller is according to user subscription information; Generate the customer service policy information, record the traffic type information of the value-added service of user's subscription in the customer service policy information, represent which value-added service which user has subscribed to; Comprise also and type of service corresponding processing strategy that said processing policy detects for indication BNG carries out DPI to user's subscribed service data; Through first sending module 21 the customer service policy information is sent to BNG then; After BNG carries out the DPI detection to data; Report testing result, be responsible for reception by second receiver module 22, and generate control information for HG and/or DSLAM; Send to HG and/or DSLAM through first sending module 21; First sending module 21 sends control information to HG and/or DSLAM, and said control information is used to indicate the data that said access node will be corresponding with the value-added service that the user orders, and transmits through preset value-added service passage.
The strategy controller device that present embodiment provides can generate deep message detection business game information according to the service sensing ability of hardware device itself and user's subscription information; And send to BNG; Indication BNG carries out the priority scheduling processing to specific user's particular data; Satisfy user's business demand, improved QoS.
Fig. 7 is an access node apparatus example structure sketch map of the present invention, and is as shown in Figure 7, and this access node apparatus comprises the 3rd receiver module 31 and second sending module 32, and wherein the 3rd receiver module 31 is used to receive data; Second sending module 32 is used for according to control information; Said data are transmitted through preset value-added service passage; Said control information is used to indicate the data that said access node will be corresponding with the value-added service that the user orders, and transmits through preset value-added service passage.
Described access node can be home gateway or Digital Subscriber Line Access Multiplexer; When if access node is home gateway; Then the 3rd receiver module 31 receives data; Second sending module 32 is used for according to control information, said data is detected Permanent Virtual Channel through the deep message of setting send to Digital Subscriber Line Access Multiplexer DSLAM.If access node is a Digital Subscriber Line Access Multiplexer, then the 3rd receiver module 31 receives data, and second sending module 32 is used for according to control information, said data is detected VLAN through the deep message of setting send to wideband network gateway.
The access node that present embodiment provides can carry out priority scheduling to user's value-added service data according to the good scheduling forwarding strategy of planning in advance and handle, and satisfies user's business demand, has improved QoS.
What should explain at last is: above embodiment is only in order to explaining technical scheme of the present invention, but not to its restriction; Although with reference to previous embodiment the present invention has been carried out detailed explanation, those of ordinary skill in the art is to be understood that: it still can be made amendment to the technical scheme that aforementioned each embodiment put down in writing, and perhaps part technical characterictic wherein is equal to replacement; And these are revised or replacement, do not make the spirit and the scope of the essence disengaging various embodiments of the present invention technical scheme of relevant art scheme.