CN105704053B - Application traffic guard method and system and gateway - Google Patents

Application traffic guard method and system and gateway Download PDF

Info

Publication number
CN105704053B
CN105704053B CN201410707251.3A CN201410707251A CN105704053B CN 105704053 B CN105704053 B CN 105704053B CN 201410707251 A CN201410707251 A CN 201410707251A CN 105704053 B CN105704053 B CN 105704053B
Authority
CN
China
Prior art keywords
application
flow
vpn
orientation
identification information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201410707251.3A
Other languages
Chinese (zh)
Other versions
CN105704053A (en
Inventor
张志明
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Telecom Corp Ltd
Original Assignee
China Telecom Corp Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Telecom Corp Ltd filed Critical China Telecom Corp Ltd
Priority to CN201410707251.3A priority Critical patent/CN105704053B/en
Publication of CN105704053A publication Critical patent/CN105704053A/en
Application granted granted Critical
Publication of CN105704053B publication Critical patent/CN105704053B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The invention discloses a kind of application traffic guard method and system and gateways, are related to field of communication technology, wherein method includes: the flow of gateway monitoring application;Whether the identification information of the flow for the application that gateway judgement monitors is consistent with the identification information of the orientation application saved;If the identification information of the flow of the application monitored is consistent with the identification information of the orientation application saved, the application is orientation application, and the flow which applies is sent to vpn server by the channel VPN by gateway.Compared with prior art, on the one hand, the foundation and application traffic of being responsible for the channel each terminal VPN in its coverage area is concentrated to transmit by gateway, without installing VPN client in each terminal and being respectively configured, the realization and configuration work of VPN are simplified, the user experience is improved;On the other hand, can be by the traffic differentiation of orientation application and other application, only the flow by orientation application is transmitted by the channel VPN, will not influence the normal use of other non-directionals application.

Description

Application traffic guard method and system and gateway
Technical field
The present invention relates to field of communication technology, especially a kind of application traffic guard method and system and gateway.
Background technique
With flourishing for internet, the number of users of the orientations such as Hai Tao and game on line application is increasing, user couple The flow of these orientation applications has safeguard protection demand and delay requirement.
In order to achieve the above object, VPN (Virtual Private Network, Virtual Private Network are presently mainly used Network) mode application traffic is protected.As shown in Figure 1, different terminals (such as PC PC, hand in home network Machine etc.) it requires that VPN client is installed respectively, and need to carry out corresponding parameter configuration in respective VPN client.
Existing application traffic protection scheme, on the one hand, different terminals need to install VPN client respectively and carry out VPN The parameter configuration of client, installation and configuration work very complicated;On the other hand, after enabling VPN function, the stream of all applications Amount is all transmitted by the channel VPN, may be influenced the use of other business to a certain extent, be affected user experience.
Summary of the invention
One technical problem to be solved by the embodiment of the invention is that: solve existing VPN channel application traffic protection side The problems such as normal use of non-directional application is installed with configuration work very complicated and will affect existing for case.
According to an aspect of the present invention, a kind of application traffic guard method is provided, comprising: the flow of gateway monitoring application; Whether the identification information of the flow for the application that gateway judgement monitors is consistent with the identification information of the orientation application saved;If prison The identification information of the flow of the application measured is consistent with the identification information of the orientation application saved, then the application is that orientation is answered With the flow that the orientation is applied is sent to vpn server by the channel VPN by gateway.
In one embodiment, the identification information includes IP address or domain name;The gateway judges the application monitored The identification information of flow and the identification information of the orientation application saved whether unanimously include: that gateway judges the application that monitors Flow IP address with saved orientation application IP address it is whether consistent;Or gateway judges the stream of the application monitored Whether the domain name of amount is consistent with the domain name of the orientation application saved.
In one embodiment, the method also includes the mark letters that: gateway receives the orientation application that Cloud Server issues It ceases and saves.
In one embodiment, the flow which applies is sent to vpn server packet by the channel VPN by the gateway Include: gateway passes through to Cloud Server application VPN account and establishes the channel VPN between the VPN account applied and vpn server; The flow that the orientation is applied is sent to vpn server by the channel VPN established by gateway.
In one embodiment, the method also includes: if gateway monitors within default a period of time application The identification information of flow and the identification information of the orientation application saved do not have unanimous circumstances, then close the channel VPN.
According to another aspect of the present invention, a kind of gateway is provided, comprising: flow monitoring module, for monitoring the stream of application Amount;Traffic protection module, for judging the identification information and the mark of the orientation application saved of the flow of the application monitored Whether information is consistent, and consistent with the identification information of the orientation application saved in the identification information of the flow of the application monitored When determine the application for orientation application;Flow sending module, for the flow of orientation application to be sent to by the channel VPN Vpn server.
In one embodiment, the identification information includes IP address or domain name;The traffic protection module is specific to use In: judge whether the IP address of the flow of the application monitored is consistent with the IP address of the orientation application saved;Or judgement Whether the domain name of the flow of the application monitored is consistent with the domain name of the orientation application saved.
In one embodiment, the traffic protection module is also used to receive the mark for the orientation application that Cloud Server issues Know information and saves.
In one embodiment, the gateway further include: VPN establishes module, for the flow in the application monitored When identification information is consistent with the identification information of the orientation application saved, arrived to Cloud Server application VPN account, and by application VPN account and vpn server between establish the channel VPN.
In one embodiment, the gateway further include: VPN closedown module, if within default a period of time Flow monitoring module monitors to application flow identification information with saved orientation application identification information it is not consistent The case where when, close the channel VPN.
According to another aspect of the invention, a kind of application traffic protection system is provided, including vpn server and any of the above-described The gateway that embodiment provides;The vpn server, for receiving the stream for the orientation application that the gateway is sent by the channel VPN Amount.
In one embodiment, the system also includes Cloud Servers, for issuing the mark of orientation application to the gateway Know information;And VPN account is issued to the gateway in the gateway application VPN account.
The embodiment of the present invention monitors the flow applied in each terminal, and the mark of the flow according to application by gateway Information is determined to need orientation application to be protected, then transmits the flow that orientation is applied by the channel VPN.With existing skill Art is compared, on the one hand, concentrates the foundation and application traffic of being responsible for the channel each terminal VPN in its coverage area to transmit by gateway, nothing VPN client need to be installed in each terminal and be respectively configured, simplify the realization and configuration work of VPN, improve user's body It tests;On the other hand, the flow of the flow of orientation application and other application can be distinguished, only the flow by orientation application leads to It crosses the channel VPN to be transmitted, will not influence the normal use of other non-directionals application.
Below by drawings and examples, technical scheme of the present invention will be described in further detail.
Detailed description of the invention
In order to more clearly explain the embodiment of the invention or the technical proposal in the existing technology, to embodiment or will show below There is attached drawing needed in technical description to be briefly described, it should be apparent that, the accompanying drawings in the following description is only this Some embodiments of invention without any creative labor, may be used also for those of ordinary skill in the art To obtain other drawings based on these drawings.
Fig. 1 is the schematic illustration protected in the prior art using VPN mode to flow;
Fig. 2 is the flow diagram of application traffic guard method one embodiment of the present invention;
Fig. 3 is the structural schematic diagram of gateway one embodiment of the present invention;
Fig. 4 is the structural schematic diagram of another embodiment of gateway of the present invention;
Fig. 5 is the structural schematic diagram that system one embodiment is protected in application traffic of the present invention.
Specific embodiment
Following will be combined with the drawings in the embodiments of the present invention, and technical solution in the embodiment of the present invention carries out clear, complete Site preparation description, it is clear that described embodiments are only a part of the embodiments of the present invention, instead of all the embodiments.It is based on Embodiment in the present invention, it is obtained by those of ordinary skill in the art without making creative efforts every other Embodiment shall fall within the protection scope of the present invention.
Unless specifically stated otherwise, positioned opposite, the digital table of the component and step that otherwise illustrate in these embodiments It is not limited the scope of the invention up to formula and numerical value.
Simultaneously, it should be appreciated that for ease of description, the size of various pieces shown in attached drawing is not according to reality Proportionate relationship draw.
Technology, method and apparatus known to person of ordinary skill in the relevant may be not discussed in detail, but suitable In the case of, the technology, method and apparatus should be considered as authorizing part of specification.
It is shown here and discuss all examples in, any occurrence should be construed as merely illustratively, without It is as limitation.Therefore, the other examples of exemplary embodiment can have different values.
It should also be noted that similar label and letter indicate similar terms in following attached drawing, therefore, once a certain Xiang Yi It is defined in a attached drawing, then in subsequent attached drawing does not need that it is further discussed.
The flow that the invention proposes a kind of in such a way that gateway is in conjunction with VPN to apply to orientation is protected, nothing Configuration VPN client need to be installed in terminal can be realized the adaptive guard of orientation application traffic, and will not influence other industry Business experience, is transformed without to carrier network, has accuracy, convenience and universality.
Fig. 2 is the flow diagram of application traffic guard method one embodiment of the present invention.As shown in Fig. 2, the present embodiment Method include the following steps:
Step 102, the flow of gateway monitoring application.Specifically, which can monitor all ends in its coverage area The flow applied on end.
Wherein, gateway can include but is not limited to home gateway, and intelligent operating system and various can be equipped in gateway Application plug-in, application plug-in have the ability of the various interfaces of call operation system.
Step 104, the identification information and the mark of the orientation application saved of the flow for the application that gateway judgement monitors Whether information is consistent.If consistent, step 106 is executed;If inconsistent, step 108 is executed.
One of illustrative implementation method, can be received under Cloud Server dynamic by the application plug-in in gateway The identification information and preservation, Cloud Server of the need of hair orientation application to be protected can once issue one or more orientation applications Identification information.
Step 106, if the identification information one of the identification information of the flow of the application monitored and the orientation application saved It causes, then can determine and be applied using for orientation, the flow which applies is sent to vpn server by the channel VPN by gateway. Here, orientation application is such as can be Hai Tao and game on line.
Step 108, if the identification information of the flow of the application monitored with saved orientation application identification information not Unanimously, then it can determine using being non-directional application, the channel VPN, such as the stream that gateway applies the non-directional can not be passed through Amount is sent directly to internet.
The channel VPN in the present invention can include but is not limited to the transmission that flow is carried out by following three kinds of tunnel protocols: Point to Point Tunnel Protocol (PPTP), Layer 2 Tunneling Protocol (L2TP) and internet safety protocol (IPSec).
For example, when monitoring the flow of application, the plug-in unit in gateway judge the flow applied identification information whether be One of the identification information of the orientation application saved, if so, the identification information of the flow for the application that judgement monitors with protected The identification information for the orientation application deposited is consistent, which is to need orientation application to be protected, the then stream that gateway applies the orientation Amount is sent to vpn server, such as LNS server, i.e. L2TP Network Server by the channel VPN.
The present embodiment monitors the flow applied in each terminal, and the identification information of the flow according to application by gateway It determines to need orientation application to be protected, then the flow by orientation application is transmitted by the channel VPN.With prior art phase Than, on the one hand, it concentrates the foundation and application traffic of being responsible for the channel each terminal VPN in its coverage area to transmit by gateway, is not necessarily to VPN client is installed in each terminal and is respectively configured, simplifies the realization and configuration work of VPN, the user experience is improved;Separately On the one hand, the flow of the flow of orientation application and other application can be distinguished, only the flow by orientation application passes through VPN Channel is transmitted, and will not influence the normal use of other non-directionals application.
In actual application, user possibly through domain name mode, be also possible to by way of IP address come to visit Ask network.As another embodiment of application traffic guard method of the present invention, above-mentioned identification information for example can be IP address Or domain name, such as IP1, IP2, IP3 or domain name 1, domain name 2, domain name 3 etc..When gateway judges the flow of the application monitored When whether identification information is consistent with the identification information of the orientation application saved, gateway may determine that the flow of the application monitored IP address with saved orientation application IP address it is whether consistent;Or, it can be determined that the flow of the application monitored Whether domain name is consistent with the domain name of the orientation application saved.As long as there is an information in the IP address or domain name of the flow of application The IP address or domain name applied with the orientation saved are consistent, then can be determined that the application for orientation application.
In order to realize adaptive application traffic protection, it is logical that gateway can establish VPN in advance for the flow of orientation application Road.At this point, gateway dynamically to Cloud Server application VPN account, then passes through the VPN account applied and vpn server Between establish the channel VPN, for example, gateway by application to VPN account go access LNS server, to be built with LNS server Vertical L2TP connection.
In one embodiment, in order to improve the utilization rate of VPN resource, just it can also be established after orienting application and enabling The channel VPN, that is, when the identification information of the flow of the application monitored is consistent with the identification information of the orientation application saved, Gateway is then logical by establishing VPN between the VPN account applied and vpn server just to Cloud Server application VPN account The flow that the orientation is applied is passed through the channel VPN just established later and is sent to vpn server by road.
In one embodiment, if the identification information of the flow for the application that gateway monitors within default a period of time with The identification information of the orientation application saved does not have unanimous circumstances, i.e., the flow for orienting application during this period of time is 0, then net The VPN connection that can be disconnected between vpn server is closed, so that the channel VPN is closed, effectively to discharge server resource, into The utilization rate of one step raising VPN resource.
In above-mentioned two embodiment, can be issued by Cloud Server to gateway when establish the channel VPN configuration strategy, And above-mentioned default a period of time is configured.
Each embodiment in this specification is described in a progressive manner, the highlights of each of the examples are with its The difference of its embodiment, the same or similar part cross-reference between each embodiment.For system embodiment For, since it is substantially corresponding with embodiment of the method, so being described relatively simple, referring to the portion of embodiment of the method in place of correlation It defends oneself bright.
Fig. 3 is the structural schematic diagram of gateway one embodiment of the present invention.As shown in figure 3, the gateway of the present embodiment specifically wraps It includes:
Flow monitoring module 301, for monitoring the flow of application.Traffic protection module 302, for judging that is monitored answers Whether the identification information of flow is consistent with the identification information of the orientation application saved, and in the flow of the application monitored Identification information with saved orientation application identification information it is consistent when determine application be orientation apply.Flow sending module 303, for the flow of orientation application to be sent to vpn server by the channel VPN.
The present embodiment monitors the flow applied in each terminal by flow monitoring module 301, and passes through traffic protection Module 302 determines that orientation to be protected is needed to apply according to the identification information of the flow of application, then by flow sending module 303 transmit the flow of orientation application by the channel VPN.Compared with prior art, on the one hand, it is responsible for by gateway concentration Foundation and the application traffic transmission in the channel each terminal VPN in coverage area, without installing VPN client in each terminal and dividing It does not configure, simplifies the realization and configuration work of VPN, the user experience is improved;It on the other hand, can be by the flow of orientation application It is distinguished with the flow of other application, only the flow by orientation application is transmitted by the channel VPN, and it is non-to will not influence other Orient the normal use of application.
In one embodiment, above-mentioned identification information may include IP address or domain name.Correspondingly, traffic protection module 302, be specifically used for: judge the IP address of the flow of the application monitored and the orientation application saved IP address whether one It causes;Or judge whether the domain name of the flow of the application monitored is consistent with the domain name of the orientation application saved.
In one embodiment, referring to Fig. 3, traffic protection module 302 is also used to receive the orientation that Cloud Server issues and answers Identification information and preservation.
Fig. 4 is the structural schematic diagram of another embodiment of gateway of the present invention.Compared with embodiment illustrated in fig. 3, the present embodiment In gateway can also include: that VPN establishes module 401, the identification information for the flow in the application monitored with saved Orientation application identification information it is consistent when, to Cloud Server application VPN account, and pass through VPN account apply and VPN clothes The channel VPN is established between business device.
In one embodiment, referring to fig. 4, gateway can also include: VPN closedown module 402, if for default In a period of time flow monitoring module monitors to application flow identification information with saved orientation application mark believe When breath does not have unanimous circumstances, the channel VPN is closed.
Fig. 5 is the structural schematic diagram that system one embodiment is protected in application traffic of the present invention.As shown in figure 5, the system packet The gateway 502 of vpn server 501 and the offer of any of the above-described embodiment is provided.Wherein, vpn server 501, it is logical for receiving gateway Cross the flow of the orientation application of the channel VPN transmission.
It can also include: Cloud Server referring to Fig. 5 in another embodiment of application traffic of the present invention protection system 503, for issuing the identification information of orientation application to gateway 502;And when gateway 502 applies for VPN account under gateway 502 Send out VPN account.
Those of ordinary skill in the art will appreciate that: realize that all or part of the steps of above method embodiment can pass through The relevant hardware of program instruction is completed, and program above-mentioned can be stored in a computer readable storage medium, the program When being executed, step including the steps of the foregoing method embodiments is executed;And storage medium above-mentioned includes: ROM, RAM, magnetic disk or light The various media that can store program code such as disk.
Description of the invention is given for the purpose of illustration and description, and is not exhaustively or will be of the invention It is limited to disclosed form.Many modifications and variations are obvious for the ordinary skill in the art.It selects and retouches It states embodiment and is to more preferably illustrate the principle of the present invention and practical application, and those skilled in the art is enable to manage The solution present invention is to design various embodiments suitable for specific applications with various modifications.

Claims (8)

1. a kind of application traffic guard method, comprising:
The flow applied in each terminal in gateway monitoring gateway coverage area;
Whether the identification information of the flow for the application that gateway judgement monitors is consistent with the identification information of the orientation application saved;
If the identification information of the flow of the application monitored is consistent with the identification information of the orientation application saved, the application For orientation application, gateway passes through and establishes between the VPN account applied and vpn server to Cloud Server application VPN account The channel VPN;The flow that the orientation is applied is sent to vpn server by the channel VPN established, to be sent to internet;
If what the identification information of the flow for the application that gateway monitors within default a period of time was applied with the orientation saved Identification information does not have unanimous circumstances, then closes the channel VPN;
If the identification information of the flow of the application monitored and the identification information of the orientation application saved are inconsistent, described to answer With for non-directional application, the flow which applies is not passed through the channel VPN and is sent directly to internet by gateway.
2. the method according to claim 1, wherein the identification information includes IP address or domain name;
Whether the identification information that the identification information of the flow for the application that the gateway judgement monitors is applied with the orientation saved Unanimously include:
Whether the IP address of the flow for the application that gateway judgement monitors is consistent with the IP address of the orientation application saved;Or
Whether the domain name of the flow for the application that gateway judgement monitors is consistent with the domain name of the orientation application saved.
3. the method according to claim 1, wherein further include: gateway receives the orientation that Cloud Server issues and answers Identification information and preservation.
4. a kind of gateway characterized by comprising
Flow monitoring module, for monitoring the flow applied in each terminal in gateway coverage area;
Traffic protection module, for judging the identification information and the mark of the orientation application saved of the flow of the application monitored Whether information is consistent, and consistent with the identification information of the orientation application saved in the identification information of the flow of the application monitored When determine the application for orientation application, the application monitored flow identification information with saved orientation application mark Knowledge information determines the application for non-directional application when inconsistent;
VPN establishes module, believes for the identification information of the flow in the application monitored and the mark of the orientation application saved When ceasing consistent, to Cloud Server application VPN account, and it is logical by establishing VPN between the VPN account applied and vpn server Road;
Flow sending module, for the flow of orientation application to be sent to vpn server by the channel VPN established, to send out It is sent to internet;The flow that non-directional is applied is not passed through into the channel VPN and is sent directly to internet;
VPN closedown module, if the mark for the flow in the application that flow monitoring module monitors arrive within default a period of time When knowing the identification information that information is applied with the orientation saved does not have unanimous circumstances, the channel VPN is closed.
5. gateway according to claim 4, which is characterized in that the identification information includes IP address or domain name;
The traffic protection module, is specifically used for: judging that the IP address of the flow of the application monitored is answered with the orientation saved Whether IP address is consistent;Or
Judge whether the domain name of the flow of the application monitored is consistent with the domain name of the orientation application saved.
6. gateway according to claim 4, which is characterized in that
The traffic protection module is also used to receive the identification information for the orientation application that Cloud Server issues and preservation.
7. system is protected in a kind of application traffic, which is characterized in that including any net of vpn server and claim 4-6 It closes;
The vpn server, for receiving the flow for the orientation application that the gateway is sent by the channel VPN.
8. system according to claim 7, which is characterized in that further include:
Cloud Server, for issuing the identification information of orientation application to the gateway;And in the gateway application VPN account VPN account is issued to the gateway.
CN201410707251.3A 2014-11-28 2014-11-28 Application traffic guard method and system and gateway Active CN105704053B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410707251.3A CN105704053B (en) 2014-11-28 2014-11-28 Application traffic guard method and system and gateway

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410707251.3A CN105704053B (en) 2014-11-28 2014-11-28 Application traffic guard method and system and gateway

Publications (2)

Publication Number Publication Date
CN105704053A CN105704053A (en) 2016-06-22
CN105704053B true CN105704053B (en) 2019-05-21

Family

ID=56230747

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410707251.3A Active CN105704053B (en) 2014-11-28 2014-11-28 Application traffic guard method and system and gateway

Country Status (1)

Country Link
CN (1) CN105704053B (en)

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107689874B (en) * 2016-08-03 2021-04-20 中国电信股份有限公司 Directional flow processing method, system and packet data network gateway
CN107995002B (en) * 2016-10-27 2021-05-18 中国电信股份有限公司 Method and system for charging based on directional flow label
CN106792897B (en) * 2016-12-08 2019-08-30 京信通信系统(中国)有限公司 Gateway shunt method and system in LTE-VPN evolved system
CN106953778A (en) * 2017-02-13 2017-07-14 深圳市梧桐世界科技股份有限公司 A kind of long-distance management system
CN107770164B (en) * 2017-09-30 2020-05-12 Oppo广东移动通信有限公司 Data updating method and device, computer equipment and readable storage medium
CN109460642B (en) * 2018-11-13 2021-12-14 北京天融信网络安全技术有限公司 Application program network access sensing method, device and equipment
CN110290044B (en) * 2019-06-26 2021-08-06 普联技术有限公司 Method, device and storage medium for shunting VPN (virtual private network) and backbone network
CN113055446B (en) * 2021-02-24 2022-06-14 深圳竹云科技有限公司 Method and device for protecting application flow in zero trust and computing equipment
CN113347113B (en) * 2021-06-29 2023-02-03 深信服科技股份有限公司 Flow control method, device, equipment and computer storage medium

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1954580A (en) * 2004-05-17 2007-04-25 汤姆森特许公司 Methods and apparatus managing access to virtual private network for portable devices without VPN client
CN102891790A (en) * 2012-09-21 2013-01-23 中国电信股份有限公司云计算分公司 VPN (Virtual Private Network) virtualization method and system of visiting virtual private cloud
CN102891802A (en) * 2012-09-19 2013-01-23 深圳市深信服电子科技有限公司 Data flow distributing method, mobile terminal and data flow distributing system
CN103684803A (en) * 2013-12-11 2014-03-26 中国联合网络通信集团有限公司 Flow collecting device and system and method for directional flow accounting
CN103812770A (en) * 2012-11-12 2014-05-21 华为技术有限公司 Cloud service message redirecting method and system and cloud gateway

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7075933B2 (en) * 2003-08-01 2006-07-11 Nortel Networks, Ltd. Method and apparatus for implementing hub-and-spoke topology virtual private networks

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1954580A (en) * 2004-05-17 2007-04-25 汤姆森特许公司 Methods and apparatus managing access to virtual private network for portable devices without VPN client
CN102891802A (en) * 2012-09-19 2013-01-23 深圳市深信服电子科技有限公司 Data flow distributing method, mobile terminal and data flow distributing system
CN102891790A (en) * 2012-09-21 2013-01-23 中国电信股份有限公司云计算分公司 VPN (Virtual Private Network) virtualization method and system of visiting virtual private cloud
CN103812770A (en) * 2012-11-12 2014-05-21 华为技术有限公司 Cloud service message redirecting method and system and cloud gateway
CN103684803A (en) * 2013-12-11 2014-03-26 中国联合网络通信集团有限公司 Flow collecting device and system and method for directional flow accounting

Also Published As

Publication number Publication date
CN105704053A (en) 2016-06-22

Similar Documents

Publication Publication Date Title
CN105704053B (en) Application traffic guard method and system and gateway
CN110365793A (en) Illegal external connection monitoring method, device, system and storage medium
US6473798B1 (en) Method and system for testing a layer-2 tunnel in a data communication network
CN102014122B (en) IP Camera service system of point-to-point protocol based on two-way safety authentication
CN103973728B (en) The method and device of load balancing under a kind of multiple data centers environment
CN109756501A (en) A kind of high concealment network agent method and system based on http protocol
CN102761534B (en) Realize the method and apparatus of media access control layer Transparent Proxy
CN102594814A (en) Terminal-based network access control system
CN104518936B (en) Link dynamic aggregation method and apparatus
CN104980461B (en) Page push method, apparatus, server and centralized Network management controller
CN103763156A (en) Network speed measurement method and system
CN106603333A (en) Network performance measuring method, apparatus and system
CN108092852A (en) A kind of OpenStack flow collection methods based on Transmission Control Protocol
CN102739665B (en) Method for realizing network virtual security domain
CN110311894A (en) A kind of method that local area network internal dynamic penetrates
CN105898786A (en) Access point escape method and access point escape system
CN104426732A (en) High-speed transmission tunnel realization method and system
CN104519012A (en) SIP-protocol-based method and system for detecting communication network attack
CN107040429A (en) A kind of method of testing and system of port forwarding performance
CN104219111B (en) Link bundling method and communication system based on MLPPP
CN103873444B (en) Method, the business switching device of outer network service are accessed when mobile terminal VPDN is online
CN108353027A (en) A kind of software defined network system for detecting port failure
WO2022100001A9 (en) Network security protection method and protection device
CN104394151A (en) Method, device and system for accessing campus network into operator network
CN104994113B (en) A kind of ADSL wireless routers and the method and system for realizing forced gate under bridge mode using the router

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant