CN103368806A - Method and system for processing data flow and device - Google Patents

Method and system for processing data flow and device Download PDF

Info

Publication number
CN103368806A
CN103368806A CN 201210082588 CN201210082588A CN103368806A CN 103368806 A CN103368806 A CN 103368806A CN 201210082588 CN201210082588 CN 201210082588 CN 201210082588 A CN201210082588 A CN 201210082588A CN 103368806 A CN103368806 A CN 103368806A
Authority
CN
China
Prior art keywords
equipment
tunnel
data flow
tunnel endpoint
endpoint addresses
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN 201210082588
Other languages
Chinese (zh)
Inventor
徐小虎
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CN 201210082588 priority Critical patent/CN103368806A/en
Priority to PCT/CN2012/083269 priority patent/WO2013143275A1/en
Publication of CN103368806A publication Critical patent/CN103368806A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • H04L12/46Interconnection of networks
    • H04L12/4633Interconnection of networks using encapsulation techniques, e.g. tunneling

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The invention provides a method and a system for processing a data flow and a device. The method comprises steps: that first PE equipment acquires a address prefix, announced by second PE equipment, of a tunnel endpoint corresponding to the second PE equipment, wherein the address prefix of the tunnel endpoint comprises at least two IP addresses; that the IP addresses of the address prefix of the tunnel endpoint are taken as tunnel destination IP addresses of VPN data flows when the first PE equipment transmits at least two VPN data flows to the second PE equipment via tunnels, wherein the tunnel destination IP addresses of at least two VPN data flows are different.

Description

The processing method of data flow and system and equipment
Technical field
The present invention relates to the communication technology, relate in particular to a kind of processing method and system and equipment of data flow.
Background technology
In the prior art, PE (Provider Edge, Provider Edge)/P (Provider, operator) router is usually according to Virtual Private Network (the Virtual Private Network that receives; Be called for short: VPN) some field information of tunnel header (such as tunnel source IP address and purpose IP address, tunnel) carries out Hash (hash) and calculates and realize based on equal cost multipath (Equal CostMulti-Path in the data flow; Be called for short: load balancing ECMP).
But, for a plurality of different VPN data flow between certain entrance (ingress) PE equipment and certain outlet (egress) PE equipment, finish the Internet (InternetProtocol via ingress PE; Be called for short IP) tunnel or generic route encapsulation (Generic Routing Encapsulation; Be called for short: GRE) after the tunnel encapsulation, the tunnel source IP address of the VPN data flow that these are different and purpose IP address, tunnel all are respectively the IP addresses of ingress PE equipment and egress PE equipment.So, on these certain P equipment of VPN data flow process, even there are many equative routes that arrive egress PE equipment on this P equipment, because it is all the same the relevant field information of the tunnel header of these VPN data flow (comprise tunnel source IP address with purpose IP address, tunnel etc.) to be carried out the result of Hash calculation, these VPN data flow (data flow) all can be assigned on the same path, thereby can't effectively realize the load balancing based on ECMP.
Summary of the invention
The invention provides a kind of data flow processing method and and system and equipment, with so that a plurality of VPN data flow transmit by at least two equative routes, thereby effectively realization is based on the load balancing of ECMP.
First aspect of the present invention provides a kind of processing method of packet, comprising:
The one PE equipment obtains the tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment of the 2nd PE devices advertise, and wherein, described tunnel endpoint addresses prefix comprises a plurality of IP address;
When a described PE equipment when sending a plurality of VPN data flow to described the 2nd PE equipment by the tunnel, IP address in the described tunnel endpoint addresses prefix that a described PE equipment will obtain is as the purpose IP address, tunnel of described VPN data flow, wherein, the purpose IP address, tunnel of at least two described VPN data flow in the plural described VPN data flow is different.
Another aspect of the present invention provides a kind of processing method of data flow, comprising:
Tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment of the 2nd PE devices advertise obtained described tunnel endpoint addresses prefix for a PE; Wherein, described tunnel endpoint addresses prefix comprises a plurality of IP address;
Described the 2nd PE equipment produces virtual interface corresponding to each IP address in the described tunnel endpoint addresses prefix, and announces routing iinformation corresponding to described tunnel endpoint addresses prefix by IGP;
Described the 2nd PE equipment received and processed a described PE device forwards by described virtual interface purpose IP address, tunnel is the VPN data flow of IP address corresponding to described virtual interface.
Another aspect of the present invention provides a kind of PE equipment, comprising:
Tunnel endpoint addresses prefix acquisition module, for tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment of obtaining the 2nd PE devices advertise, wherein, described tunnel endpoint addresses prefix comprises a plurality of IP address;
The tunnel encapsulation module, be used for when described PE equipment when sending a plurality of VPN data flow to described the 2nd PE equipment by the tunnel, with the tunnel purpose IP address of the IP address in the described tunnel endpoint addresses prefix of obtaining as described VPN data flow, wherein, the purpose IP address, tunnel of at least two described VPN data flow in the plural described VPN data flow is different.
Also aspect of the present invention provides a kind of PE equipment, comprising:
Tunnel endpoint addresses prefix announcement module is used for announcing tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment, obtains described tunnel endpoint addresses prefix for a PE; Wherein, described tunnel endpoint addresses prefix comprises a plurality of IP address;
The virtual interface generation module is for generation of virtual interface corresponding to each IP address in the described tunnel endpoint addresses prefix;
The routing iinformation announcement module is used for announcing routing iinformation corresponding to described tunnel endpoint addresses prefix by IGP;
The Data Stream Processing module is the VPN data flow of IP address corresponding to described virtual interface for the purpose IP address, tunnel that receives and process a described PE device forwards by described virtual interface.
Another aspect of the present invention provides a kind for the treatment of system of data flow, comprise: a PE equipment and the 2nd PE equipment, wherein, the PE equipment that a described PE equipment provides for another aspect of the present invention, the 2nd PE equipment is also PE equipment that the aspect provides of the present invention.
Technique effect of the present invention is: when a PE equipment when sending a plurality of VPN data flow to the 2nd PE equipment by the tunnel, with the tunnel purpose IP address of the IP address in the tunnel endpoint addresses prefix of obtaining as the VPN data flow, wherein, the purpose IP address, tunnel of at least two VPN data flow in a plurality of VPN data flow is different, thereby so that a plurality of VPN data flow that exist the P equipment of many equative routes of the 2nd PE equipment of arrival to receive can be transmitted by at least two equative routes, even there are many equative routes of the 2nd PE equipment that reaches in P equipment in the prior art, a plurality of VPN distribution of flows of source and destination IP address, tunnel that still can only the encapsulation that receive is identical are transmitted to a paths, the present invention has realized that a plurality of VPN data flow can transmit by at least two equative routes, thereby effectively realizes the load balancing based on ECMP.
Description of drawings
Fig. 1 be each method of the present invention based on IP or MPLS VPN network architecture schematic diagram;
Fig. 2 is the flow chart of first embodiment of the processing method of packet provided by the invention;
Fig. 3 is the flow chart of the 3rd embodiment of the processing method of packet provided by the invention;
Fig. 4 is the structural representation of the 4th embodiment of PE equipment provided by the invention;
Fig. 5 is the structural representation of the 6th embodiment of PE equipment provided by the invention;
Fig. 6 is the structural representation of the 8th embodiment for the treatment of system of data flow provided by the invention.
Embodiment
Fig. 1 be each method of the present invention based on Internet protocol (Internet Protocol; Be called for short IP) or multiprotocol label switching (Multi-Protocol Label Switching; Be called for short: MPLS) Virtual Private Network configuration diagram, as shown in Figure 1, this network comprises: several (for example 2) Provider Edge (Provider Edge; Be called for short: PE) equipment 11, several (for example 5) (Provider of operator; Be called for short: P) equipment 12 and several (for example 4) customer edge (Customer Edge; Be called for short: CE) equipment 13.Concrete, PE equipment 11 connects CE equipment 13 and P equipment 12.
Wherein, P equipment 12 is operator's routers.The ustomer premises access equipment that CE equipment 13 connects for service provider, and CE equipment 13 can be a router, a switch or a main frame.
Fig. 2 is the flow chart of first embodiment of the processing method of packet provided by the invention, and on above-mentioned IP shown in Figure 1 or MPLS VPN network foundation, as shown in Figure 2, the method for the present embodiment can comprise:
101, a PE equipment obtains the tunnel endpoint addresses prefix corresponding to the 2nd PE equipment of the 2nd PE devices advertise, and wherein, this tunnel endpoint addresses prefix comprises at least two IP addresses.
For instance, in the present embodiment, this tunnel is IP tunnel or gre tunneling.
102, when a PE equipment when sending plural VPN data flow to the 2nd PE equipment by the tunnel, the one PE equipment is with the tunnel purpose IP address of the IP address in the tunnel endpoint addresses prefix of obtaining as the VPN data flow, and wherein the purpose IP address, tunnel of at least two VPN data flow in the plural VPN data flow is different.
For instance, when the one PE will transmit from a VPN data flow the 2nd PE that local CE equipment is received, need to carry out tunnel encapsulation to this VPN data flow, use the IP address of oneself as the tunnel source IP address, use an IP address tunnel endpoint addresses prefix corresponding to the 2nd PE equipment obtain from the 2nd PE to encapsulate as the purpose IP address, tunnel of a VPN data flow.When VPN data flow the 2nd PE of other that will receive from local CE equipment as a PE transmits, when these other VPN data flow is carried out tunnel encapsulation, use respectively an IP address tunnel endpoint addresses prefix corresponding to the 2nd PE equipment that obtains from the 2nd PE to encapsulate as the purpose IP address, tunnel of other VPN data flow, wherein have at least the purpose IP address, tunnel of a VPN data flow to be different from the purpose IP address, tunnel of a VPN data flow in above-mentioned other the VPN data flow after the encapsulation.In this embodiment, for the situation that has VPN data flow different more than two to send, different VPN data flow is used the different IP addresses in the tunnel endpoint addresses prefix, when P equipment carries out tunnel header hash like this, can draw Different Results, thereby these VPN assignment of traffic are transmitted to many equative routes.Certainly, for a plurality of different VPN data flow that will send, if the purpose IP address, tunnel of rear each the VPN data flow of encapsulation is the different IP address in the tunnel endpoint addresses prefix of obtaining, the effect of load balancing is best in this case.
For instance, in the tunnel endpoint addresses prefix that a PE equipment obtains, comprise 4 different IP addresses, and a PE equipment is when sending 2 VPN data flow to the 2nd PE equipment by IP or gre tunneling, can from the tunnel endpoint addresses prefix, select one of them IP address assignment to a VPN data flow, select wherein another IP address assignment to another VPN data flow, thereby so that the purpose IP address, tunnel of 2 VPN data flow is different.Again for instance, in the tunnel endpoint addresses prefix, comprise 4 different IP addresses, and a PE equipment is when sending 20 VPN data flow to the 2nd PE equipment by IP or gre tunneling, can be according to 4 IP addresses in the tunnel endpoint addresses prefix, the purpose IP address, tunnel that is 20 VPN data flow is distributed, preferably, can be so that the purpose IP address, tunnel of per 5 the VPN data flow in these 20 VPN data flow be an IP address in the tunnel endpoint addresses prefix, namely the purpose IP address, tunnel of 20 VPN data flow comprises 4 IP addresses in this tunnel endpoint addresses prefix.
Also need to prove, receive a plurality of VPN data flow of a PE device forwards when the P equipment that is connected with a PE equipment after, and this P equipment exists when reaching many equative routes of the 2nd PE equipment, can be according to the relevant field information of the tunnel header of a plurality of VPN data flow, respectively a plurality of VPN data flow are carried out processing based on the load balancing of ECMP, because this relevant field information comprises the purpose IP address in tunnel and the source IP address in tunnel, and the allocation process of above-mentioned steps 102 has been carried out in the purpose IP address in the tunnel of this VPN data flow, therefore, a plurality of VPN data flow can be transmitted by at least two equative routes.
In the present embodiment, in the situation of many equative routes that have the 2nd PE equipment of arrival at P equipment, P equipment can be transmitted the plural VPN data flow that receives by at least two equative routes, even there are many equative routes of the 2nd PE equipment that reaches in P equipment in the prior art, a plurality of VPN distribution of flows of source and destination IP address, tunnel that still can only the encapsulation that receive is identical are transmitted to a paths, the embodiment of the invention has realized that a plurality of VPN data flow can transmit by at least two equative routes, thereby effectively realizes the load balancing based on ECMP.
Further, in second embodiment of the present invention, on the basis of above-mentioned enforcement shown in Figure 2, when there were many equative routes of the 2nd PE equipment of arrival in a PE equipment, the method also comprised:
The one PE equipment carries out processing based on the load balancing of ECMP to a plurality of VPN data flow respectively, so that the different VPN data flow is transmitted by at least two equative routes according to the relevant field information of tunnel header corresponding to a plurality of VPN data flow.
Need to prove, when there is an equative route of the 2nd PE equipment of arrival in a PE equipment, can directly a plurality of VPN data flow be transmitted by this equative route.
Fig. 3 is the flow chart of the 3rd embodiment of the processing method of packet provided by the invention, and on above-mentioned IP shown in Figure 1 or MPLS VPN network foundation, as shown in Figure 3, the method for the present embodiment can comprise:
201, tunnel endpoint addresses prefix corresponding to the 2nd PE devices advertise the 2nd PE equipment obtained this tunnel endpoint addresses prefix for a PE equipment; Wherein, this tunnel endpoint addresses prefix comprises at least two IP addresses.
In the present embodiment, the 2nd PE equipment can be announced tunnel endpoint addresses prefix corresponding to the 2nd PE in several ways.For instance, the 2nd PE equipment can be by any one or tunnel endpoint addresses prefix corresponding to multiple announcement the 2nd PE in following several modes:
The tunnel endpoint addresses prefix that the 2nd PE equipment is corresponding with the 2nd PE equipment is carried at announcement IP or medium access control (Medium Access Control; Be called for short: MAC) announce in the protocol massages of reachability information; Perhaps,
The tunnel endpoint addresses prefix that the 2nd PE equipment is corresponding with the 2nd PE equipment is carried at and realizes VPLS (Virtual Private LAN Service; Be called for short: announce in the protocol massages that VPLS) neighbours find automatically; Perhaps,
The tunnel endpoint addresses prefix that the 2nd PE equipment is corresponding with the 2nd PE equipment is carried in the protocol massages of announcing tunnel encapsulation information and announces.
For instance, this tunnel can be IP tunnel or gre tunneling.In addition, a PE equipment can be carried out above-mentioned the first embodiment and method corresponding to the second embodiment, and its implementation is similar, repeats no more herein.
202, the 2nd PE equipment produces virtual interface corresponding to each IP address in this tunnel endpoint addresses prefix, and by Interior Gateway Protocol (Interior Gateway Protocols; Be called for short: IGP) announce routing iinformation corresponding to this tunnel endpoint addresses prefix.
In the present embodiment, the 2nd PE equipment adopts IGP that routing iinformation corresponding to this tunnel endpoint addresses prefix announced, so that the P equipment in IP shown in Figure 1 or the MPLS VPN network or PE equipment can obtain routing iinformation corresponding to this tunnel endpoint addresses prefix, and according to this routing iinformation the VPN data flow that receives is carried out forward process.
203, receive and process the purpose IP address, tunnel of a described PE device forwards by described virtual interface be the VPN data flow of IP address corresponding to described virtual interface to the 2nd PE equipment.
In the present embodiment, tunnel endpoint addresses prefix corresponding to the 2nd PE devices advertise the 2nd PE equipment, and adopt IGP to announce routing iinformation corresponding to this tunnel endpoint addresses prefix, so that when a PE equipment when sending plural VPN data flow to the 2nd PE equipment by the tunnel, the one PE equipment is with the tunnel purpose IP address of the IP address in the tunnel endpoint addresses prefix of the 2nd PE devices advertise as the VPN data flow, wherein the purpose IP address, tunnel of at least two VPN data flow in the above-mentioned plural VPN data flow is different, transmit by at least two equative routes at least two VPN data flow that the P equipment of many equative routes that exist to arrive the 2nd PE equipment will receive, thereby effectively realize load balancing based on ECMP.
Fig. 4 is the structural representation of the 4th embodiment of PE equipment provided by the invention, and this PE equipment for example can be the PE equipment in above-described embodiment.As shown in Figure 4, the PE equipment of this enforcement comprises: tunnel endpoint addresses prefix acquisition module 21 and tunnel encapsulation module 22.Wherein, tunnel endpoint addresses prefix acquisition module 21 is used for obtaining the tunnel endpoint addresses prefix corresponding to the 2nd PE equipment of the 2nd PE devices advertise, and wherein, this tunnel endpoint addresses prefix comprises at least two IP addresses; Tunnel encapsulation module 22 be used for when PE equipment when sending a plurality of VPN data flow to the 2nd PE equipment by the tunnel, with the tunnel purpose IP address of the IP address in the tunnel endpoint addresses prefix of obtaining as the VPN data flow, wherein, the purpose IP address, tunnel of at least two VPN data flow in the plural VPN data flow is different.
The PE equipment of the present embodiment can be carried out the first embodiment and technical scheme corresponding to the second embodiment, and it realizes that principle is similar, repeats no more herein.
In the present embodiment, when a PE equipment when sending plural VPN data flow to the 2nd PE equipment by the tunnel, with the tunnel purpose IP address of the IP address in the tunnel endpoint addresses prefix of obtaining as the VPN data flow, wherein, the purpose IP address, tunnel of at least two VPN data flow in the above-mentioned plural VPN data flow is different, thereby so that at least two VPN data flow that exist the P equipment of many equative routes of the 2nd PE equipment of arrival to receive can be transmitted by at least two equative routes, even there are many equative routes of the 2nd PE equipment that reaches in P equipment in the prior art, a plurality of VPN distribution of flows of source and destination IP address, tunnel that still can only the encapsulation that receive is identical are transmitted to a paths, the present invention has realized that a plurality of VPN data flow can transmit by at least two equative routes, thereby effectively realizes the load balancing based on ECMP.
Further, in the 5th embodiment of the present invention, on the basis of above-mentioned the 4th embodiment, when there are many equative routes of the 2nd PE equipment of arrival in PE equipment, PE equipment also comprises: forwarding module, be used for the relevant field information according to the tunnel header of a plurality of VPN data flow, respectively a plurality of VPN data flow carried out processing based on the load balancing of ECMP, so that the different VPN data flow is transmitted by at least two equative routes; Wherein, the relevant field information of tunnel header comprises: tunnel source IP address and purpose IP address, tunnel.
Fig. 5 is the structural representation of the 6th embodiment of PE equipment provided by the invention, and this PE equipment for example can be the 2nd PE equipment in above-described embodiment.As shown in Figure 5, the PE equipment of the present embodiment comprises: tunnel endpoint addresses prefix announcement module 31, virtual interface generation module 32, routing iinformation announcement module 33 and Data Stream Processing module 34.Wherein, tunnel endpoint addresses prefix announcement module 31 is used for tunnel endpoint addresses prefix corresponding to announcement the 2nd PE equipment, obtains this tunnel endpoint addresses prefix for a PE equipment; Wherein, this tunnel endpoint addresses prefix comprises at least two IP addresses; Virtual interface generation module 32 is for generation of virtual interface corresponding to each IP address in this tunnel endpoint addresses prefix; Routing iinformation announcement module 33 is used for announcing routing iinformation corresponding to this tunnel endpoint addresses prefix by IGP; Data Stream Processing module 34 is the VPN data flow of IP address corresponding to described virtual interface for the purpose IP address, tunnel that receives and process a described PE device forwards by described virtual interface.
The PE equipment of the present embodiment can be carried out the technical scheme of the 3rd embodiment, and it realizes that principle is similar, repeats no more herein.
In the present embodiment, tunnel endpoint addresses prefix corresponding to the 2nd PE devices advertise the 2nd PE equipment, and adopt IGP to announce routing iinformation corresponding to this tunnel endpoint addresses prefix, so that when a PE equipment when sending plural VPN data flow to the 2nd PE equipment by the tunnel, the one PE equipment is with the tunnel purpose IP address of the IP address in the tunnel endpoint addresses prefix of the 2nd PE devices advertise as the VPN data flow, wherein the purpose IP address, tunnel of at least two VPN data flow in the above-mentioned plural VPN data flow is different, transmit by at least two equative routes at least two VPN data flow that the P equipment of many equative routes that exist to arrive the 2nd PE equipment will receive, thereby effectively realize load balancing based on ECMP.
Further, in the 7th embodiment of the present invention, on above-mentioned basis embodiment illustrated in fig. 5, tunnel endpoint addresses prefix announcement module 31 specifically is carried at the protocol massages of announcing IP or MAC reachability information for the tunnel endpoint addresses prefix that PE equipment is corresponding and announces; Perhaps,
Tunnel endpoint addresses prefix announcement module 31 specifically is carried at the automatic protocol massages of finding of VPN neighbours for the tunnel endpoint addresses prefix that PE equipment is corresponding and announces; Perhaps,
Tunnel endpoint addresses prefix announcement module 31 specifically is carried at the protocol massages of announcing tunnel encapsulation information for the tunnel endpoint addresses prefix that PE equipment is corresponding and announces.
Fig. 6 is the structural representation of the 8th embodiment for the treatment of system of data flow provided by the invention, as shown in Figure 6, the treatment system of this data flow comprises: a PE equipment 41 and the 2nd PE equipment 42, wherein, the one PE equipment 41 is above-mentioned PE equipment shown in Figure 4, and can carry out the first embodiment and technical scheme corresponding to the second embodiment, the 2nd PE equipment 42 is above-mentioned PE equipment shown in Figure 5, and can carry out technical scheme corresponding to the 3rd embodiment, it realizes that principle is similar, repeats no more herein.
In addition, this system can also comprise: at least one P equipment is used for receiving at least two VPN data flow that a PE equipment 41 is transmitted.
In addition, need to prove, when there are many equative routes of the 2nd PE equipment of arrival in P equipment, P equipment is used for the relevant field information of tunnel header corresponding at least two VPN data flow of basis, respectively at least two described VPN data flow are carried out processing based on the load balancing of ECMP, transmit by at least two equative routes with at least two described VPN data flow that will receive.
One of ordinary skill in the art will appreciate that: all or part of step that realizes above-mentioned each embodiment of the method can be finished by the relevant hardware of program command.Aforesaid program can be stored in the computer read/write memory medium.This program is carried out the step that comprises above-mentioned each embodiment of the method when carrying out; And aforesaid storage medium comprises: the various media that can be program code stored such as ROM, RAM, magnetic disc or CD.
It should be noted that at last: above each embodiment is not intended to limit only in order to technical scheme of the present invention to be described; Although with reference to aforementioned each embodiment the present invention is had been described in detail, those of ordinary skill in the art is to be understood that: it still can be made amendment to the technical scheme that aforementioned each embodiment puts down in writing, and perhaps some or all of technical characterictic wherein is equal to replacement; And these modifications or replacement do not make the essence of appropriate technical solution break away from the scope of various embodiments of the present invention technical scheme.

Claims (10)

1. the processing method of a data flow is characterized in that, comprising:
The first provider edge equipment PE equipment obtains the tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment of the 2nd PE devices advertise, and wherein, described tunnel endpoint addresses prefix comprises at least two Internet protocol IP addresses;
When a described PE equipment when sending plural virtual private network data flow to described the 2nd PE equipment by the tunnel, IP address in the described tunnel endpoint addresses prefix that a described PE equipment will obtain is as the purpose IP address, tunnel of described VPN data flow, wherein, the purpose IP address, tunnel of at least two described VPN data flow in the described plural described VPN data flow is different.
2. the processing method of data flow according to claim 1 is characterized in that, when there were many equative routes that arrive described the 2nd PE equipment in a described PE equipment, described method also comprised:
A described PE equipment is according to the relevant field information of tunnel header corresponding to described plural VPN data flow, respectively described plural VPN data flow is carried out processing based on the load balancing of equal cost multipath ECMP, so that the different VPN data flow is transmitted by at least two equative routes; Wherein, the relevant field information of described tunnel header comprises: tunnel source IP address and purpose IP address, tunnel
3. the processing method of a data flow is characterized in that, comprising:
Tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment of the second Provider Edge PE devices advertise obtained described tunnel endpoint addresses prefix for a PE; Wherein, described tunnel endpoint addresses prefix comprises at least two Internet protocol IP addresses;
Described the 2nd PE equipment produces virtual interface corresponding to each IP address in the described tunnel endpoint addresses prefix, and announces routing iinformation corresponding to described tunnel endpoint addresses prefix by Interior Gateway Protocol IGP;
Described the 2nd PE equipment received and processed respectively a described PE device forwards by described virtual interface purpose IP address, tunnel is the VPN data flow of IP address corresponding to described virtual interface.
4. the processing method of data flow according to claim 3 is characterized in that, tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment of described the 2nd PE devices advertise comprises:
Described the 2nd PE equipment is carried at tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment in the protocol massages of announcing IP or medium access control MAC reachability information and announces; Perhaps,
Described the 2nd PE equipment is carried at tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment and realizes announcing in the automatic protocol massages of finding of virtual private network neighbours; Perhaps,
Described the 2nd PE equipment is carried at tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment in the protocol massages of announcing tunnel encapsulation information and announces.
5. a Provider Edge PE equipment is characterized in that, comprising:
Tunnel endpoint addresses prefix acquisition module, for tunnel endpoint addresses prefix corresponding to described the 2nd PE equipment of obtaining the 2nd PE devices advertise, wherein, described tunnel endpoint addresses prefix comprises at least two Internet protocol IP addresses;
The tunnel encapsulation module, be used for when described PE equipment when sending plural virtual private network data flow to described the 2nd PE equipment by the tunnel, with the tunnel purpose IP address of the IP address in the described tunnel endpoint addresses prefix of obtaining as described VPN data flow, wherein, the purpose IP address, tunnel of at least two described VPN data flow in the plural described VPN data flow is different.
6. PE equipment according to claim 5 is characterized in that, when there were many equative routes that arrive described the 2nd PE equipment in described PE equipment, described PE equipment also comprised:
Forwarding module, be used for the relevant field information according to tunnel header corresponding to described plural VPN data flow, respectively described plural VPN data flow is carried out processing based on the load balancing of equal cost multipath ECMP, so that the different VPN data flow is transmitted by at least two equative routes; Wherein, the relevant field information of described tunnel header comprises: tunnel source IP address and purpose IP address, tunnel.
7. a PE equipment is characterized in that, comprising:
Tunnel endpoint addresses prefix announcement module is used for announcing tunnel endpoint addresses prefix corresponding to described PE equipment, obtains described tunnel endpoint addresses prefix for a PE; Wherein, described tunnel endpoint addresses prefix comprises at least two Internet protocol IP addresses;
The virtual interface generation module is for generation of virtual interface corresponding to each IP address in the described tunnel endpoint addresses prefix;
The routing iinformation announcement module is used for announcing routing iinformation corresponding to described tunnel endpoint addresses prefix by Interior Gateway Protocol IGP;
The Data Stream Processing module is the VPN data flow of IP address corresponding to described virtual interface for the purpose IP address, tunnel that receives and process a described PE device forwards by described virtual interface.
8. PE equipment according to claim 7, it is characterized in that, described tunnel endpoint addresses prefix announcement module specifically is carried at the protocol massages of announcing IP or medium access control MAC reachability information for the tunnel endpoint addresses prefix that described PE equipment is corresponding and announces; Perhaps,
Described tunnel endpoint addresses prefix announcement module specifically is carried at the protocol massages of realizing the automatic discovery of virtual private network neighbours for the tunnel endpoint addresses prefix that described PE equipment is corresponding and announces; Perhaps,
Described tunnel endpoint addresses prefix announcement module specifically is carried at the protocol massages of announcing tunnel encapsulation information for the tunnel endpoint addresses prefix that described PE equipment is corresponding and announces.
9. the treatment system of a data flow, it is characterized in that, comprise the first Provider Edge PE equipment and the 2nd PE equipment, wherein, a described PE equipment is such as claim 7 or 8 described PE equipment for requiring 5 or 6 described PE equipment, described the 2nd PE equipment such as power.
10. the treatment system of data flow according to claim 9 is characterized in that, also comprises: at least one P of operator equipment, for the plural described VPN data flow that receives a described PE device forwards;
When there are many equative routes that arrive described the 2nd PE equipment in described P equipment, described P equipment is used for the relevant field information of tunnel header corresponding at least two described VPN data flow of basis, respectively at least two described VPN data flow are carried out processing based on the load balancing of equal cost multipath ECMP, transmit by at least two equative routes with the plural described VPN data flow that will receive.
CN 201210082588 2012-03-26 2012-03-26 Method and system for processing data flow and device Pending CN103368806A (en)

Priority Applications (2)

Application Number Priority Date Filing Date Title
CN 201210082588 CN103368806A (en) 2012-03-26 2012-03-26 Method and system for processing data flow and device
PCT/CN2012/083269 WO2013143275A1 (en) 2012-03-26 2012-10-22 Method, system and device for processing data flow

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201210082588 CN103368806A (en) 2012-03-26 2012-03-26 Method and system for processing data flow and device

Publications (1)

Publication Number Publication Date
CN103368806A true CN103368806A (en) 2013-10-23

Family

ID=49258155

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201210082588 Pending CN103368806A (en) 2012-03-26 2012-03-26 Method and system for processing data flow and device

Country Status (2)

Country Link
CN (1) CN103368806A (en)
WO (1) WO2013143275A1 (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2016095439A1 (en) * 2014-12-18 2016-06-23 中兴通讯股份有限公司 Equal cost multi-path (ecmp) based packet transmission method and device
CN106789657A (en) * 2016-12-23 2017-05-31 北京格林伟迪科技股份有限公司 A kind of message forwarding method and device
CN108111385A (en) * 2017-12-28 2018-06-01 新华三技术有限公司 Message forwarding method and device
CN112367252A (en) * 2020-09-25 2021-02-12 新华三技术有限公司合肥分公司 Method and device for realizing disaster recovery backup
CN112804129A (en) * 2019-11-13 2021-05-14 中兴通讯股份有限公司 Message transmission method and system, VPN (virtual private network) equipment at sending end and GRE (generic routing encapsulation) splicing equipment
WO2021179935A1 (en) * 2020-03-13 2021-09-16 华为技术有限公司 Route determination method, apparatus and network device

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN100341294C (en) * 2004-09-28 2007-10-03 华为技术有限公司 Media gateway and its method for distributing service flow IP address
US7590123B2 (en) * 2005-11-22 2009-09-15 Cisco Technology, Inc. Method of providing an encrypted multipoint VPN service
US8040860B2 (en) * 2006-10-26 2011-10-18 Nokia Corporation Mobile IP solution for communication networks
US8311014B2 (en) * 2009-11-06 2012-11-13 Telefonaktiebolaget L M Ericsson (Publ) Virtual care-of address for mobile IP (internet protocol)

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2016095439A1 (en) * 2014-12-18 2016-06-23 中兴通讯股份有限公司 Equal cost multi-path (ecmp) based packet transmission method and device
CN106789657A (en) * 2016-12-23 2017-05-31 北京格林伟迪科技股份有限公司 A kind of message forwarding method and device
CN106789657B (en) * 2016-12-23 2019-10-29 北京格林伟迪科技股份有限公司 A kind of message forwarding method and device
CN108111385A (en) * 2017-12-28 2018-06-01 新华三技术有限公司 Message forwarding method and device
CN108111385B (en) * 2017-12-28 2021-04-27 新华三技术有限公司 Message forwarding method and device
CN112804129A (en) * 2019-11-13 2021-05-14 中兴通讯股份有限公司 Message transmission method and system, VPN (virtual private network) equipment at sending end and GRE (generic routing encapsulation) splicing equipment
CN112804129B (en) * 2019-11-13 2023-11-03 中兴通讯股份有限公司 Message transmission method and system, transmitting end VPN equipment and GRE splicing equipment
WO2021179935A1 (en) * 2020-03-13 2021-09-16 华为技术有限公司 Route determination method, apparatus and network device
CN112367252A (en) * 2020-09-25 2021-02-12 新华三技术有限公司合肥分公司 Method and device for realizing disaster recovery backup
CN112367252B (en) * 2020-09-25 2022-05-27 新华三技术有限公司合肥分公司 Method and device for realizing disaster recovery backup

Also Published As

Publication number Publication date
WO2013143275A1 (en) 2013-10-03

Similar Documents

Publication Publication Date Title
US10938714B2 (en) Communication between distinct network domains
CN109756425B (en) Multicast forwarding method, device and BFR
EP3143732B1 (en) Scalable segment identifier allocation in segment routing
US9049127B2 (en) Methods and devices for providing service clustering in a trill network
WO2017059708A1 (en) Bier information transmission method and reception method, and related device
CN112087386B (en) Message processing method, device and system
US10425327B2 (en) System and method for routing in software defined networks using a flow header
EP2632088B1 (en) Method and device for storing and sending mac address entry
CN108063716B (en) Method and apparatus for Ethernet virtual private network
EP3028434B1 (en) Packet forwarding
JP2015523788A (en) Routing VLAN-tagged packets to the far-end address of a virtual forwarding instance using an individual management scheme
US10911354B2 (en) Packet processing method and system, and device
CN103368806A (en) Method and system for processing data flow and device
CN112511444A (en) Multicast traffic transmission method, device, communication node and storage medium
US11362954B2 (en) Tunneling inter-domain stateless internet protocol multicast packets
CN110224934A (en) A kind of method and device carrying out Message processing using unified SR label stack
CN114095305A (en) BIER message forwarding method, equipment and system
KR20150013536A (en) Selecting between equal cost shortest paths in a 802.1aq network using split tiebreakers
CN102136989A (en) Message transmission method, system and equipment
CN114465946A (en) Method, device and system for obtaining forwarding table item
WO2012116545A1 (en) Multiprotocol label switching (mpls) virtual private network (vpn) over routed ethernet backbone
EP2999171B1 (en) Method, apparatus and system for establishing optical bypass
US8761185B2 (en) Communication networks that provide a common transport domain for use by multiple service domains and methods and computer program products for using the same
CN102291305A (en) Method and device for implementing 6 to 4 relay routing, and message forwarding method
CN112822097A (en) Message forwarding method, first network device and first device group

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C02 Deemed withdrawal of patent application after publication (patent law 2001)
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20131023