CN104836746B - The method and device of PPPoE network message forwarding - Google Patents
The method and device of PPPoE network message forwarding Download PDFInfo
- Publication number
- CN104836746B CN104836746B CN201510233485.3A CN201510233485A CN104836746B CN 104836746 B CN104836746 B CN 104836746B CN 201510233485 A CN201510233485 A CN 201510233485A CN 104836746 B CN104836746 B CN 104836746B
- Authority
- CN
- China
- Prior art keywords
- pppoe
- message
- server
- side ports
- mac address
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Active
Links
Landscapes
- Data Exchanges In Wide-Area Networks (AREA)
- Small-Scale Networks (AREA)
Abstract
This application discloses the method and devices of PPPoE network message forwarding, listen to the message from ustomer premises access equipment by the user-side port configured;If the message listened to is PPPoE unicast message, judge whether the target MAC (Media Access Control) address of the PPPoE unicast message and the MAC Address of the PPPoE server of record match, if mismatching, the PPPoE unicast message is abandoned;If the message listened to is multicast message or non-PPPoE message, by the multicast message or non-PPPoE packet loss;If the message listened to is PPPoE broadcasting packet, the PPPoE broadcasting packet is forwarded to corresponding PPPoE server by configured server side ports according to scheduled load balancing strategy.It can isolate two laminar flow amount between user by the application.
Description
Technical field
A kind of method and dress forwarded this application involves PPPoE network safe practice more particularly to PPPoE network message
It sets.
Background technique
PPPoE (Point to Point Protocolover Ethernet, the point-to- point communication based on local area network) association
View using Ethernet by a large amount of host network consistings, then by BRAS (Broadband Remote Access Serve, it is wide
With remote access server) for the host on Ethernet provide Internet access service, and every host of access is realized and is controlled
System, certification, billing function.Due to the network formed according to PPPoE agreement combine well Ethernet economy and PPP it is good
Good scalability and management control function, is therefore widely used in the environment such as cell access networking.
Since a large number of users is accessed by big double layer network, so entirely accessing network if with no restrictions
Be to user it is open, will cause two layers of flow attacking between user, PPPoE Server private connects and user between building private network
The problems such as.
The existing method for solving the problems, such as this is on access switch be each user access interface divide VLAN, so
Trunk mode (repeater mode) is configured in the BRAS side ports of interchanger afterwards, achievees the effect that PUPV (every every VLAN of user),
Thus two laminar flow amounts between user-isolated.Although this method effectively, can also generate, configuration is complicated, occupies a large amount of VLAN moneys
The problem of source.
Summary of the invention
The application provide a kind of forwarding of PPPoE network message method and device can it is user-isolated between two laminar flow amounts,
And configuration is simple, without occupying a large amount of VLAN resources.
According to the embodiment of the present application in a first aspect, providing a kind of point-to- point communication PPPoE network report based on local area network
The method of text forwarding, runs on interchanger, the port of the interchanger is divided into user-side port and server side ports;The party
Method includes:
The message from PPPoE server is listened to by the server side ports configured, and is forwarded;
The message from ustomer premises access equipment is listened to by the user-side port configured;And to the report of the ustomer premises access equipment
Text carries out the following processing:
If the message listened to is PPPoE unicast message, the purpose MAC of the PPPoE unicast message is judged
Whether address matches with the MAC Address of the PPPoE server of record, if mismatching, the PPPoE unicast message is abandoned;
If the message listened to is multicast message or non-PPPoE message, by the multicast message or non-PPPoE
Packet loss;
If the message listened to is PPPoE broadcasting packet, according to scheduled load balancing strategy by being matched
The PPPoE broadcasting packet is forwarded to corresponding PPPoE server by the server side ports set.
According to the second aspect of the embodiment of the present application, a kind of point-to- point communication PPPoE network report based on local area network is provided
The device of text forwarding, runs on interchanger, the port of the interchanger is divided into user-side port and server side ports;It is described
Device includes:
Module is listened to, for listening to the message from PPPoE server by configured server side ports;And it is logical
It crosses configured user-side port and listens to the message from ustomer premises access equipment, and issue processing module;
The processing module;For being forwarded to the message from PPPoE server;And the report to ustomer premises access equipment
Text makees following processing:If the message listened to is PPPoE unicast message, the mesh of the PPPoE unicast message is judged
MAC Address whether matched with the MAC Address of the PPPoE server of record, if mismatch, the PPPoE unicast message is lost
It abandons;If the message listened to is multicast message or non-PPPoE message, by the multicast message or non-PPPoE message
It abandons;If the message listened to is PPPoE broadcasting packet, passes through according to scheduled load balancing strategy and configured
The PPPoE broadcasting packet is forwarded to corresponding PPPoE server by server side ports.
The application is on switches filtered the message of ustomer premises access equipment, excludes risky list by MAC Address
Casting text, abandons multicast message or non-PPPoE message, broadcasting packet is only turned to PPPoE server, and pass through load balancing plan
Slightly mitigate PPPoE server stress.Since the filter process of the above-mentioned various messages carried out executes on switches,
It can reach the purpose that two laminar flow amounts are isolated between user without occupying VLAN resource i.e.;In addition, passing through certain load balancing plan
Broadcasting packet is slightly sent to corresponding PPPoE server, a large amount of user uniformly online to more PPPoE services can be made
Device achievees the effect that load balancing.Since configuration process can be completed only on switches, without change ustomer premises access equipment and
PPPoE server, therefore configure simple.
Detailed description of the invention
Fig. 1 is PPPoE network networking diagram in the embodiment of the present application;
Fig. 2 is the flow chart of the method for PPPoE network message forwarding in the embodiment of the present application;
Fig. 3 is the PPPoE network networking diagram of switch concatenation in the embodiment of the present application;
Fig. 4 is the flow chart of the method for PPPoE network message forwarding in one application example of the application;
Fig. 5 is the hardware architecture diagram of the device of PPPoE network message forwarding in the embodiment of the present application;
Fig. 6 is the software logic block diagram of the device of PPPoE network message forwarding in the embodiment of the present application;
Fig. 7 is the software logic block diagram of the device of another PPPoE network message forwarding in the embodiment of the present application.
Specific embodiment
Example embodiments are described in detail here, and the example is illustrated in the accompanying drawings.Following description is related to
When attached drawing, unless otherwise indicated, the same numbers in different drawings indicate the same or similar elements.Following exemplary embodiment
Described in embodiment do not represent all embodiments consistent with the application.On the contrary, they be only with it is such as appended
The example of the consistent device and method of some aspects be described in detail in claims, the application.
It is only to be not intended to be limiting the application merely for for the purpose of describing particular embodiments in term used in this application.
It is also intended in the application and the "an" of singular used in the attached claims, " described " and "the" including majority
Form, unless the context clearly indicates other meaning.It is also understood that term "and/or" used herein refers to and wraps
It may be combined containing one or more associated any or all of project listed.
It will be appreciated that though various information, but this may be described using term first, second, third, etc. in the application
A little information should not necessarily be limited by these terms.These terms are only used to for same type of information being distinguished from each other out.For example, not departing from
In the case where the application range, the first information can also be referred to as the second information, and similarly, the second information can also be referred to as
One information.Depending on context, word as used in this " if " can be construed to " ... when " or " when ...
When " or " in response to determination ".
Fig. 1 is a kind of more common PPPoE network networking diagram that the application is applicable in.PPPoE network 100 includes multiple
PPPoE ustomer premises access equipment 110 (Host1, Host2 in figure), the interchanger 120 that is connect with PPPoE ustomer premises access equipment 110, and
The PPPoE server 130 (such as BRAS shown in Fig. 1) being connect with interchanger 120.Interchanger 120 can connect multiple
PPPoE server 130 (BRAS1, BRAS2 in figure).
Realize that PPPoE is used in order to guarantee each equipment in PPPoE network 100 under the premise of supporting PPPoE agreement
Two laminar flow amounts isolation between the end equipment of family, this application provides following solution.
Referring to FIG. 2, the method for the PPPoE network message forwarding that the application is proposed is realized on interchanger 120, due to
The function of PPPoE ustomer premises access equipment 110 and BRAS equipment 130 in existing PPPoE network 100 is not needed to change, therefore being capable of letter
Change configuration, reduces the management complexity to the network equipment.
The scheme of the application is as follows:
S201 listens to the message from ustomer premises access equipment by the user-side port configured;
S202 judges the target MAC (Media Access Control) address of PPPoE unicast message if the message listened to is PPPoE unicast message
Whether match with the MAC Address of the PPPoE server of record, if mismatching, PPPoE unicast message is abandoned;If listened to
Message be multicast message or non-PPPoE message, then by multicast message or non-PPPoE packet loss;If the message listened to
It is PPPoE broadcasting packet, then it is by configured server side ports that the PPPoE is wide according to scheduled load balancing strategy
Casting text is forwarded to corresponding PPPoE server.
For common PPPoE network attack source in ustomer premises access equipment, the application can be by interchanger 120 when scheme is realized
Port configured in advance be user-side port and server side ports, interchanger 120 pass through user-side port and ustomer premises access equipment
110 physical connections specially listen to the PPPoE message from user equipment, pass through server side ports and PPPoE server 130
Physical connection specially listens to the message from PPPoE server.Server side ports are trusted ports, that is, think server side
Port is the port that will not generate two layers of flow attacking, therefore the message received for Servers-all side ports carries out normally
Two layers forwarding, and for the unicast message of ustomer premises access equipment side by matching PPPoE server MAC be filtered, discarding
Unmatched unicast message.
In order to keep two layers of effect being isolated between user more obvious, due to not being related to multicast message in PPPoE network
With common two layer message, present invention also provides more optimal packet filtering strategies:When interchanger 120 receives multicast message
Or when non-PPPoE message, the packet loss that will receive.Processing can prevent two between most user equipment 110 in this way
Layer flow attacking.
In the prior art come user-isolated equipment by way of dividing VLAN to the access interface of each user equipment 110
Between two layers of flow attacking, but preferable load balancing effect is not achieved, in order to solve this problem, present invention also provides
Following strategy:
When receiving PPPoE broadcasting packet, PPPoE server 130 is forwarded to according to scheduled load balancing strategy.Due to
PPPoE broadcasting packet has been forwarded to PPPoE server, will not generate the attack between user.Above-mentioned load balancing strategy can
More flexibly to be realized, for example port is surveyed to the server of interchanger 120 and is executed by port polling or to different ends
The strategy such as different weight is given in oral instruction can be achieved more satisfactory load balancing effect.Since interchanger 120 can be according to negative
Carry and share strategy PPPoE broadcasting packet selectivity is sent to PPPoE server 130, thus make a large number of users it is uniform on
Line achievees the effect that load balancing to more PPPoE servers, so as to mitigate the processing pressure of interchanger 120, at raising
Manage efficiency.
It is worth noting that various strategies and load balancing for preventing two layers of flow attacking involved in the application
Strategy, user can select one or more combination in conceptual design according to the demand of design scenario.
It can recorde the MAC Address of PPPoE server, in this application so that in step S202, filtering user terminal is set
Standby PPPoE unicast message.The MAC Address of record PPPoE server can be the new MAC table list of creation, service when receiving PPPoE
When message transmitted by device 130, the MAC Address of PPPoE server 130 is directly recorded in MAC table list, is also possible to create
The MAC Address of PPPoE server 130 is recorded in list by user configuration after MAC table list.For PPPoE server 130
Transmitted message can be message transmitted by PPPoE server 130 before pppoe session is established, and be also possible to pppoe session
PPPoE data message after foundation.
PPPoE agreement includes two stages:Discovery phase and session stage.Firstly, being sent out by PPPoE ustomer premises access equipment 110
Session is played, sending PADI message with the forms of broadcasting, (PPPoE Active Discovery Initiation, PPPoE discovery is initial
Message), BRAS equipment 130 can respond a PADO message (PPPoE Active Discovery Offer, PPPoE after receiving
It was found that providing message) to PPPoE ustomer premises access equipment 110, PPPoE ustomer premises access equipment 110 sends PADR (PPPoE after receiving again
Active Discovery Request, PPPoE have found request message) unicast message is to BRAS equipment 130, BRAS equipment 130
(PPPoE Active Discovery Session-confirmation, the PPPoE discovery of a PADS message is responded after receiving
Session confirmation message), the session id comprising a distribution in the message.So far, pppoe session is established.
Due to PADO message be discovery phase PPPoE server 130 to PPPoE ustomer premises access equipment 110 send earliest
Message, therefore the function of monitoring PADO message can be opened on the port of interchanger 120, when listening to PADO message, note
Record sends the MAC Address of the PPPoE server 130 of PADO message.Certainly it is readily appreciated that, PPPoE server 130 can also be passed through
Other transmitted messages obtain to obtain MAC Address, such as from the PPPoE data message after the completion of pppoe session foundation
MAC Address.In addition, the application is also not excluded for other type of messages newly defined when PPPoE protocol version in future updates.
The server side ports and PPPoE server for listening to the message of PPPoE server are had recorded in above-mentioned MAC table list
MAC Address corresponding relationship.In one embodiment, a server side ports can connect multiple PPPoE servers
130, therefore a server side ports can be corresponding with multiple MAC Address.Also, when some PPPoE server 130 of connection
Port when changing, when interchanger detects the port of the current message for receiving PPPoE server and the port recorded
When not being inconsistent with the corresponding relationship of MAC Address, the corresponding relationship of recorded MAC Address and server side ports can be updated.By
Identical MAC address entries may be implemented in this can migrate between different port, to support normal PPPoE server to move
It moves.
When 100 scale of PPPoE network is not very big, due to needing the quantity of the MAC Address recorded will not be very much,
It can be not provided with the ageing time of recorded MAC Address, in order to avoid the caused obstructed problem of link after ageing time.
Technical solution provided by the invention can be applied in scene as shown in Figure 3, exist in PPPoE network 100
Multiple cascade interchangers 120 (Switch1, Switch2, Switch3), Switch1 are connected with ustomer premises access equipment 110,
Switch3 is connected with PPPoE server 130.In this example, the Switch1 direct-connected with ustomer premises access equipment is known as the first interchanger,
The Swtich3 direct-connected with PPPoE server 130 is known as second switch.
When implementing this programme, second switch when receiving the message of PPPoE server 130, forward the packet to
First interchanger;First interchanger will send the MAC of the PPPoE server of message when receiving message from second switch
Address is stored, and the MAC Address of PPPoE server and the clothes of the first interchanger can be recorded by above-mentioned MAC table list
The corresponding relationship for device side ports of being engaged in.
When the user-side port of the first interchanger receives PPPoE unicast message, if the purpose of PPPoE unicast message
MAC Address matches with the MAC Address recorded, then is forwarded to by server side ports corresponding on the first interchanger
PPPoE unicast message is forwarded to PPPoE server 130 by second switch, second switch;It is connect if it does not match, abandoning
The PPPoE unicast message of receipts prevents two layers of flow attacking between the user as caused by PPPoE unicast message.
In this example, the first interchanger needs that message transmitted by ustomer premises access equipment 130 is filtered and is screened,
Switch2 plays the role of E-Packeting.
Similar with the function of non-cascaded group of interchanger 120 off the net described above, the first interchanger is in operation packet filtering
It can also be when receiving multicast message or non-PPPoE message when tactful, the packet loss that will receive;As the user of second switch
When side ports receive the PPPoE broadcasting packet of the first interchanger forwarding, the second friendship is forwarded to according to scheduled load balancing strategy
The corresponding server side ports changed planes.
The application example under the network environment of a Fig. 1 is described below.
In this example, interchanger 120 is port1 with the port being connected Host 1, is with the port being connected Host 2
Port2, the port being connected with BRAS1 are port3, and the port being connected with BRAS2 is port4, and the MAC Address of BRAS1 is 00-
The MAC Address of 00-00-00-00-01, BRAS2 are 00-00-00-00-00-02.
In this example, load balancing strategy be according to the quantity of online ustomer premises access equipment on two BRAS by turns on
Line.Packet filtering strategy on the user-side port port1 and port2 of interchanger 120 is mono- according to mac address filter PPPoE
Casting text abandons multicast message or non-PPPoE message, broadcasting packet is forwarded to BRAS.
Fig. 4 is process flow diagram of the interchanger 120 to the received message of user-side port port1 and port2.
S401 receives ether network packet by user-side port port1 or port2;
S402 judges whether received ether network packet is multicast message or non-PPPoE message, if it is, losing
It abandons (S403), if not then into S404;
S404 judges whether received ether network packet is PPPoE broadcasting packet, if it is, executing S405, otherwise
Execute S406;
S405 is forwarded to BRAS side ports according to load balancing strategy.
For example, Host1 is first online in PPPoE discovery phase, the PADI message of broadcast is sent, interchanger 120 is by load point
The message is forwarded to BRAS1 by load strategy, and after receiving PADO message, the MAC binding table of following BRAS1 is established on interchanger 120
?:
Port | MAC |
Port3 | 00-00-00-00-00-01 |
Next, Host2 is online, the PADI message of broadcast is sent, interchanger is forwarded the message by load balancing strategy
To BRAS2, after receiving PADO message, the MAC binding list item of following BRAS2 is established on interchanger 120:
Port | MAC |
Port3 | 00-00-00-00-00-01 |
Port4 | 00-00-00-00-00-02 |
If there is user online again, effect online by turns on two BRAS may be implemented by load balancing strategy.
S406 is PPPoE if the PPPoE message received is not multicast message, non-PPPoE message, broadcasting packet
Unicast message, in this stage by the MAC binding table under recorded in the target MAC (Media Access Control) address of PPPoE unicast message and S405 step
MAC Address in is matched, if identical as the MAC Address recorded, is forwarded to the side BRAS pointed by MAC Address
Port (Port3 or Port4) (S407), if it is not the same, PPPoE unicast message is then abandoned (S408).
Be below Fig. 1 network environment under another application example.
In this example, interchanger 120 is port1 with the port being connected Host A, is with the port being connected Host B
Port2, the port being connected with BRAS1 are port3, and the port being connected with BRAS2 is port4.
Packet filtering strategy on the user-side port port1 and port2 of interchanger 120 is according to mac address filter
PPPoE unicast message abandons multicast message or non-PPPoE message, broadcasting packet is forwarded to BRAS.
Interchanger 120 first by four kinds of messages of discovery phase and session stage by Host1, Host2 and BRAS1 and
BRAS2 establishes session, after session stage is established, into the PPPoE data message interaction stage.
In PPPoE data message interactive process, if the PPPoE data message received first from BRAS1 or
BRAS2 then records the corresponding relationship of the source MAC and port port2 or port3 in the PPPoE data message.
If having received the PPPoE number from Host1 or Host2 before the MAC Address of record BRAS1 or BRAS2
It can not be executed in the application due to not yet recording the MAC Address of BRAS1 or BRAS2 at this time to ustomer premises access equipment according to message
The function that is filtered of message, it is therefore desirable to be forwarded to according to MAC Address recorded in forwarding table traditional in interchanger
BRAS1 or BRAS2 records the MAC of BRAS1 or BRAS2 after receiving the PPPoE data message that BRAS1 or BRAS2 is sent
Address starts to execute following procedure after this moment:
Interchanger 120 judges whether ether network packet received by user-side port is multicast message or non-PPPoE report
Text, if it is, abandon, if it is not, then judge whether received ether network packet is PPPoE broadcasting packet, if it is
PPPoE broadcasting packet is then forwarded to BRAS side ports according to load balancing strategy;It, will if what is received is PPPoE unicast message
The target MAC (Media Access Control) address of PPPoE unicast message is matched with the MAC Address in the MAC binding list item recorded, if with institute
The MAC Address of record is identical, then is forwarded to BRAS side ports pointed by MAC Address (Port3 or Port4), if it is not the same,
Then PPPoE unicast message is abandoned.
Corresponding with the embodiment of method of aforementioned PPPoE network message forwarding, present invention also provides PPPoE network reports
The embodiment of the device of text forwarding.
The embodiment of the device of the application PPPoE network message forwarding can be using on switches.Installation practice can
Can also be realized by way of hardware or software and hardware combining by software realization.Taking software implementation as an example, as one
Device on logical meaning is by the processor of interchanger where it by computer program corresponding in nonvolatile memory
Instruction is read into memory what operation was formed.For hardware view, as shown in figure 5, being forwarded for the application PPPoE network message
Device where interchanger a kind of hardware structure diagram, in addition to processor shown in fig. 5, memory, network interface and non-volatile
Except property memory, the interchanger in embodiment where device can also include it generally according to the actual functional capability of the interchanger
His hardware, repeats no more this.
Referring to FIG. 6, the device 600 of the application PPPoE network message forwarding, in software realization, including listens to module
601, for listening to the message from ustomer premises access equipment by configured user-side port, and issue processing module 602;
Processing module 602;If the message for listening to is PPPoE unicast message, judge that the PPPoE is mono-
Whether the target MAC (Media Access Control) address of casting text matches with the MAC Address of the PPPoE server of record, if mismatching, by the PPPoE
Unicast message abandons;If the message listened to is multicast message or non-PPPoE message, by the multicast message or non-
PPPoE packet loss;It is logical according to scheduled load balancing strategy if the message listened to is PPPoE broadcasting packet
It crosses configured server side ports and the PPPoE broadcasting packet is forwarded to corresponding PPPoE server.
The module 601 of listening to can be also used for listening to by the service side ports configured from PPPoE server
Message;
The device 600 of PPPoE network message forwarding can also include memory module (not shown), listen to for recording
To the corresponding relationship of the MAC Address of the server side ports and PPPoE server of the message of the PPPoE server.
The server side ports can correspond to the MAC Address of one or more PPPoE servers.
The processing module 602 can be also used for the target MAC (Media Access Control) address and record in the PPPoE unicast message
When the MAC Address matching of PPPoE server, server side ports corresponding with the MAC Address of the PPPoE server are searched,
And the PPPoE unicast message is sent to the PPPoE server by the server side ports.
The message of the PPPoE server can be PPPoE discovery and provide message PADO message.
Fig. 7 is another embodiment, and the processing module 602 includes first processing module 6011 and Second processing module
6012, it is described listen to module 601 include user-side port 6021 and service side ports 6022 described in first processing module 6011 and
User-side port 6021 connects;The Second processing module 6012 is connect with server side ports 6022;
The user-side port 6021 is provided for listening to the message from ustomer premises access equipment, and by the message listened to
To first processing module 6011;
The service side ports 6022, provide for listening to the message from PPPoE server, and by the message listened to
To Second processing module 6012;
The first processing module 6011 executes at least one following step:
If the message of the ustomer premises access equipment is PPPoE unicast message, the purpose of the PPPoE unicast message is judged
Whether MAC Address matches with the MAC Address of the PPPoE server of record, if mismatching, which is abandoned, such as
Fruit matching, then search corresponding with the MAC Address of matched PPPoE server server side ports, and by PPPoE unicast report
Text (carrying server side ports information) is sent to the Second processing module 6012;
If the message of the ustomer premises access equipment is multicast message or non-PPPoE message, by the multicast message or non-
PPPoE packet loss;
If the message of the ustomer premises access equipment is PPPoE broadcasting packet, which is sent to described
Second processing module 6012;
The Second processing module 6012 is for passing through the PPPoE unicast message that the first processing module 6011 forwards
Corresponding server side ports are transmitted to the PPPoE server;Or by PPPOE broadcasting packet according to scheduled load balancing plan
Slightly corresponding PPPoE server is transmitted to by server side ports;Or the message for sending the PPPoE server (carries
Receive the server side ports information of the message) it is forwarded to the first processing module 6011.
The first processing module 6011 records the PPPoE server when receiving the message of PPPoE server transmission
MAC Address and server side ports corresponding relationship.
The function of each unit and the realization process of effect are specifically detailed in the above method and correspond to step in above-mentioned apparatus
Realization process, details are not described herein.
For device embodiment, since it corresponds essentially to embodiment of the method, so related place is referring to method reality
Apply the part explanation of example.The apparatus embodiments described above are merely exemplary, wherein described be used as separation unit
The unit of explanation may or may not be physically separated, and component shown as a unit can be or can also be with
It is not physical unit, it can it is in one place, or may be distributed over multiple network units.It can be according to actual
The purpose for needing to select some or all of the modules therein to realize application scheme.Those of ordinary skill in the art are not paying
Out in the case where creative work, it can understand and implement.
The foregoing is merely the preferred embodiments of the application, not to limit the application, all essences in the application
Within mind and principle, any modification, equivalent substitution, improvement and etc. done be should be included within the scope of the application protection.
Claims (10)
1. a kind of method of the point-to- point communication PPPoE network message forwarding based on local area network, runs on interchanger, feature
It is, the port of the interchanger is divided into user-side port and server side ports;This method includes:
The message from PPPoE server is listened to by the server side ports configured, and is forwarded;
Listen to the message from ustomer premises access equipment by the user-side port configured, and to the message of the ustomer premises access equipment into
The following processing of row:
If the message listened to is PPPoE unicast message, the target MAC (Media Access Control) address of the PPPoE unicast message is judged
Whether match with the MAC Address of the PPPoE server of record, if mismatching, the PPPoE unicast message is abandoned;
If the message listened to is multicast message or non-PPPoE message, by the multicast message or non-PPPoE message
It abandons;
If the message listened to is PPPoE broadcasting packet, passes through according to scheduled load balancing strategy and configured
The PPPoE broadcasting packet is forwarded to corresponding PPPoE server by server side ports.
2. the method according to claim 1, wherein the method also includes:
Record the MAC Address of the server side ports and the PPPoE server that listen to the message of the PPPoE server
Corresponding relationship.
3. according to the method described in claim 2, it is characterized in that,
The MAC Address of the corresponding one or more PPPoE server of the server side ports.
4. according to the method in claim 2 or 3, which is characterized in that the target MAC (Media Access Control) address of the PPPoE unicast message with
When the MAC Address matching of the PPPoE server of record, this method further includes:
Server side ports corresponding with the MAC Address of the PPPoE server are searched, and will by the server side ports
The PPPoE unicast message is sent to the PPPoE server.
5. according to the method described in claim 2, it is characterized in that, the message of the PPPoE server provides for PPPoE discovery
Message PADO message.
6. a kind of device of the point-to- point communication PPPoE network message forwarding based on local area network, runs on interchanger, feature
It is, the port of the interchanger is divided into user-side port and server side ports;Described device includes:
Module is listened to, for listening to the message from PPPoE server by configured server side ports;And pass through institute
The user-side port of configuration listens to the message from ustomer premises access equipment, and issues processing module;
The processing module;For being forwarded to the message from PPPoE server;And the message of ustomer premises access equipment is made
It handles below:If the message listened to is PPPoE unicast message, the purpose MAC of the PPPoE unicast message is judged
Whether address matches with the MAC Address of the PPPoE server of record, if mismatching, the PPPoE unicast message is abandoned;Such as
The message that fruit listens to is multicast message or non-PPPoE message, then by the multicast message or non-PPPoE packet loss;
If the message listened to is PPPoE broadcasting packet, pass through configured service according to scheduled load balancing strategy
The PPPoE broadcasting packet is forwarded to corresponding PPPoE server by device side ports.
7. device according to claim 6, which is characterized in that
Described device further includes memory module, for recording the server side ports for listening to the message of the PPPoE server
With the corresponding relationship of the MAC Address of the PPPoE server.
8. device according to claim 7, which is characterized in that
The MAC Address of the corresponding one or more PPPoE server of the server side ports.
9. device according to claim 7 or 8, which is characterized in that the processing module is also used in the PPPoE unicast
When the target MAC (Media Access Control) address of message is matched with the MAC Address of the PPPoE server of record, search and the PPPoE server
The corresponding server side ports of MAC Address, and by the server side ports be sent to the PPPoE unicast message described
PPPoE server.
10. device according to claim 7, which is characterized in that the message of the PPPoE server is that PPPoE discovery mentions
For message PADO message.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201510233485.3A CN104836746B (en) | 2015-05-08 | 2015-05-08 | The method and device of PPPoE network message forwarding |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201510233485.3A CN104836746B (en) | 2015-05-08 | 2015-05-08 | The method and device of PPPoE network message forwarding |
Publications (2)
Publication Number | Publication Date |
---|---|
CN104836746A CN104836746A (en) | 2015-08-12 |
CN104836746B true CN104836746B (en) | 2018-11-27 |
Family
ID=53814391
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201510233485.3A Active CN104836746B (en) | 2015-05-08 | 2015-05-08 | The method and device of PPPoE network message forwarding |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN104836746B (en) |
Families Citing this family (3)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN105262698B (en) | 2015-10-28 | 2019-03-01 | 华为技术有限公司 | A kind of methods, devices and systems of load balancing |
CN107465619A (en) * | 2017-08-22 | 2017-12-12 | 南京航空航天大学 | A kind of method and apparatus of Internet of Things commercial network message forwarding |
CN107888503B (en) * | 2017-12-29 | 2021-05-25 | 新华三技术有限公司 | Multicast message transmission method and device and client terminal equipment |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101076978A (en) * | 2004-01-16 | 2007-11-21 | 艾利森电话股份有限公司 | Directed pppoe session initiation over switched ethernet |
CN101616082A (en) * | 2009-07-29 | 2009-12-30 | 杭州华三通信技术有限公司 | The method and apparatus that message is handled in a kind of virtual private LAN service network |
CN103780484A (en) * | 2014-01-26 | 2014-05-07 | 杭州华三通信技术有限公司 | Message transmitting method and device |
CN103888356A (en) * | 2014-04-12 | 2014-06-25 | 何顺民 | VPLS achieving method, system and provider edge device |
-
2015
- 2015-05-08 CN CN201510233485.3A patent/CN104836746B/en active Active
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101076978A (en) * | 2004-01-16 | 2007-11-21 | 艾利森电话股份有限公司 | Directed pppoe session initiation over switched ethernet |
CN101616082A (en) * | 2009-07-29 | 2009-12-30 | 杭州华三通信技术有限公司 | The method and apparatus that message is handled in a kind of virtual private LAN service network |
CN103780484A (en) * | 2014-01-26 | 2014-05-07 | 杭州华三通信技术有限公司 | Message transmitting method and device |
CN103888356A (en) * | 2014-04-12 | 2014-06-25 | 何顺民 | VPLS achieving method, system and provider edge device |
Non-Patent Citations (2)
Title |
---|
"PPPoE协议分析及Linux操作系统下的设计与实现";李俊华;《中国优秀硕士学位论文全文数据库 信息科技辑》;20041215;正文第16-20页、40-42页 * |
"湖州电信宽带IP城域网优化设计";俞迪;《中国优秀硕士学位论文全文数据库 信息科技辑》;20100315;正文第17-25页、29-31页 * |
Also Published As
Publication number | Publication date |
---|---|
CN104836746A (en) | 2015-08-12 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
EP3681110B1 (en) | A region interconnect control using vrf tables across heterogeneous networks | |
EP3493508B1 (en) | Separation of control plane function and forwarding plane function of broadband remote access server | |
CN112737690B (en) | Optical line terminal OLT equipment virtualization method and related equipment | |
CN104426681B (en) | The distributed multicast of endpoint | |
CN101075962B (en) | Method and apparatus for realizing DHCP repeater in two-layer network exchanger | |
CN101119290B (en) | Ethernet supporting source specific multicast forwarding method and system | |
CN104426680B (en) | Data transmission method, device and system | |
CN106559292A (en) | A kind of broad band access method and device | |
CN111614541B (en) | Method for adding public cloud network physical host into VPC | |
CN102148766B (en) | Method for service interworking in PON (passive optical network) under three-layer function networking | |
TW200913614A (en) | Data center virtual local area network system and method | |
WO2016202086A1 (en) | Network topology joining method and apparatus | |
CN109121026B (en) | Method and system for realizing VOLT (Voice over Internet protocol) based on logic port | |
CN105939267B (en) | Outband management method and device | |
CN107317768A (en) | Traffic scheduling method and device | |
CN102137001A (en) | Routing information exchange method, equipment and system | |
CN105635335B (en) | Social resources cut-in method, apparatus and system | |
CN104836746B (en) | The method and device of PPPoE network message forwarding | |
WO2018171396A1 (en) | Data transmission method, device and system | |
US20060203827A1 (en) | Method for facilitating application server functionality and access node comprising same | |
CN108173928A (en) | Method, apparatus, storage medium and the terminal device of UDP message transmission | |
US20080186967A1 (en) | Method for supporting source-specific multicast forwarding over ethernet and device thereof | |
CN103179044B (en) | The implementation method of traffic management, equipment and system | |
CN100499549C (en) | Apparatus and base station equipment for transmitting IP message in WiMAX network | |
CN107995124A (en) | Traffic scheduling method and device |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
C10 | Entry into substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
CB02 | Change of applicant information | ||
CB02 | Change of applicant information |
Address after: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No. Applicant after: Xinhua three Technology Co., Ltd. Address before: 310052 Binjiang District Changhe Road, Zhejiang, China, No. 466, No. Applicant before: Huasan Communication Technology Co., Ltd. |
|
GR01 | Patent grant | ||
GR01 | Patent grant |