CN105939242B - Realize the method and device of virtual system - Google Patents

Realize the method and device of virtual system Download PDF

Info

Publication number
CN105939242B
CN105939242B CN201610162220.3A CN201610162220A CN105939242B CN 105939242 B CN105939242 B CN 105939242B CN 201610162220 A CN201610162220 A CN 201610162220A CN 105939242 B CN105939242 B CN 105939242B
Authority
CN
China
Prior art keywords
port
virtual system
isolation group
message
configuration information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201610162220.3A
Other languages
Chinese (zh)
Other versions
CN105939242A (en
Inventor
周立伟
余刚
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou DPTech Technologies Co Ltd
Original Assignee
Hangzhou DPTech Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou DPTech Technologies Co Ltd filed Critical Hangzhou DPTech Technologies Co Ltd
Priority to CN201610162220.3A priority Critical patent/CN105939242B/en
Publication of CN105939242A publication Critical patent/CN105939242A/en
Application granted granted Critical
Publication of CN105939242B publication Critical patent/CN105939242B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L12/00Data switching networks
    • H04L12/28Data switching networks characterised by path configuration, e.g. LAN [Local Area Networks] or WAN [Wide Area Networks]
    • H04L12/46Interconnection of networks
    • H04L12/4641Virtual LANs, VLANs, e.g. virtual private networks [VPN]
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F9/00Arrangements for program control, e.g. control units
    • G06F9/06Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
    • G06F9/44Arrangements for executing specific programs
    • G06F9/455Emulation; Interpretation; Software simulation, e.g. virtualisation or emulation of application or operating system execution engines
    • G06F9/45533Hypervisors; Virtual machine monitors

Landscapes

  • Engineering & Computer Science (AREA)
  • Software Systems (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Physics & Mathematics (AREA)
  • General Engineering & Computer Science (AREA)
  • General Physics & Mathematics (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The application provides a kind of method and device for realizing virtual system, the method application is on network devices, the network equipment includes multiple ports, the described method includes: according to the virtual system divided in advance, port isolation group is created, the port for belonging to the same virtual system is respectively divided in the same port isolation group;The configuration information of the port isolation group after dividing is saved, the configuration information of the port isolation group includes the corresponding relationship of each port included by port isolation group and the port isolation group.It using method provided by the present application, realizes on not having the physical equipment for supporting virtualization technology chip, realizes virtual system, and the communication security between effective guarantee virtual system;And the applicability for realizing the method for virtual system is improved, reduce its dependence to physical equipment itself.

Description

Realize the method and device of virtual system
Technical field
This application involves network communication technology fields, more particularly to realize the method and device of virtual system.
Background technique
Virtualization technology may be implemented a physical equipment inventing more logical device, to realize virtual system.By Independent hardware and software resource, and the respective number of independent maintenance can be possessed in each virtual system on same physical equipment According to, therefore be independent of each other between each virtual system on same physical equipment, so that the resource for improving physical equipment uses Rate realizes the quick and easy deployment of physical equipment resource.If the chip on certain physical equipment does not support virtualization technology, Information between each virtual system realized on the physical equipment by virtualization technology is likely to can not be mutually isolated, from And the communication security between virtual system is unable to get guarantee, and, it is likely that cause the waste of physical equipment cpu resource, example Such as, some virtual system in physical equipment has sent a broadcasting packet, it is generally the case that the broadcasting packet only need to be in the void It is transmitted between each port of quasi- system, but since the information between each virtual system can not be mutually isolated, causes the broadcast report Text is also conveyed in the port of other virtual systems, after other virtual systems receive message, the message will be handled, to lead Cause the waste of physical equipment cpu resource.
In the prior art, virtual system is realized on not having the physical equipment for supporting virtualization technology chip in order to realize System, and realize effective use physical equipment resource and ensure the communication security between virtual system, can by technological means, Using the master control borad and business board of physical equipment, the resource of Lai Shixian virtual system is divided.However, usually depth exchange gateway is set It is standby to use which, and common interchanger class equipment, then due to not having business board, and this kind of mode reality can not be passed through Existing virtual system, thus, realize that virtual system has significant limitation using the above-mentioned prior art.
Summary of the invention
In view of this, the application provides a kind of method and device for realizing virtual system, do not having support void to realize On the physical equipment of quasi-ization technology chip, virtual system, and the communication security between effective guarantee virtual system are realized;And it improves The applicability for realizing the method for virtual system, reduces its dependence to physical equipment itself.
Specifically, the application is achieved by the following technical solution:
According to the embodiment of the present application in a first aspect, providing a kind of method for realizing virtual system, the method is applied On the network equipment, the network equipment includes multiple ports, which comprises
According to the virtual system divided in advance, port isolation group is created, the port for belonging to the same virtual system is distinguished It is divided into the same port isolation group;
The configuration information of the port isolation group after dividing is saved, the configuration information of the port isolation group includes port isolation The corresponding relationship of group and each port included by the port isolation group.
In one embodiment, the virtual system that the basis divides in advance creates port isolation group, comprising:
The number M of the virtual system divided in advance is obtained, M port isolation group, a port isolation are created Group is corresponding with a virtual system.
In another embodiment, the network equipment includes the chip for handling message transmitted by the port;
The configuration information for saving the port isolation group after dividing, comprising:
The configuration information of port isolation group after the division is saved on the chip.
In yet another embodiment, the method also includes:
When the port sends message, according to the configuration information of the port isolation group of preservation, determine described in sending Group is isolated by whether the next-hop port being sent to belongs to same port with the message in the port of message;
If the next-hop port belongs to same port with the port for sending the message and group is isolated, directly by institute It states message and is sent to the next-hop port from the port for sending message.
In yet another embodiment, the chip does not support virtualization technology.
According to the second aspect of the embodiment of the present application, a kind of device for realizing virtual system is provided, described device is applied On the network equipment, the network equipment includes multiple ports, and described device includes:
Division unit, for creating port isolation group, the same virtual system will be belonged to according to the virtual system divided in advance The port of system is respectively divided in the same port isolation group;
Storage unit, for saving the configuration information of the port isolation group after dividing, the port isolation group matches confidence Breath includes the corresponding relationship of each port included by port isolation group and the port isolation group.
In one embodiment, the division unit, is used for:
The number M of the virtual system divided in advance is obtained, M port isolation group, a port isolation are created Group is corresponding with a virtual system;By the port for belonging to the same virtual system be respectively divided the same port every From in group.
In another embodiment, the network equipment includes the chip for handling message transmitted by the port;
The storage unit, is used for: the configuration information of the port isolation group after the division is saved on the chip.
In yet another embodiment, described device further include:
Determination unit, for when the port sends message, according to the configuration information of the port isolation group of preservation, Determine group is isolated by whether the next-hop port being sent to belongs to same port with the message in the port for sending the message;
Processing unit is isolated for belonging to same port with the port for sending the message in the next-hop port When group, the message is directly sent to the next-hop port from the port for sending message.
In yet another embodiment, the chip does not support virtualization technology.
Using the method for the present embodiment, by the way that the port for belonging to same virtual system is divided into same port isolation group In, and the configuration information of the port isolation group after dividing is saved, so that in the network for not having the chip for supporting virtualization technology Also information is mutually isolated between the virtual system that virtual system may be implemented in equipment, and realized, to effectively ensure Communication security between virtual system;And since the implementation of this method does not require the configuration of the network equipment itself, thus The applicability for realizing the method for virtual system is improved, the dependence to the network equipment itself is reduced.
Detailed description of the invention
Fig. 1 illustrates the application scenarios schematic diagram that the embodiment of the present application realizes the method for virtual system.
Fig. 2 illustrates one embodiment flow chart that the application realizes the method for virtual system.
Fig. 3 illustrates another embodiment flow chart that the application realizes the method for virtual system.
Fig. 4 is a kind of hardware structure diagram of the network equipment where the application realizes the device of virtual system.
Fig. 5 is one embodiment block diagram for the device that the application realizes virtual system.
Fig. 6 is another embodiment block diagram for the device that the application realizes virtual system.
Specific embodiment
Example embodiments are described in detail here, and the example is illustrated in the accompanying drawings.Following description is related to When attached drawing, unless otherwise indicated, the same numbers in different drawings indicate the same or similar elements.Following exemplary embodiment Described in embodiment do not represent all embodiments consistent with the application.On the contrary, they be only with it is such as appended The example of the consistent device and method of some aspects be described in detail in claims, the application.
It is only to be not intended to be limiting the application merely for for the purpose of describing particular embodiments in term used in this application. It is also intended in the application and the "an" of singular used in the attached claims, " described " and "the" including majority Form, unless the context clearly indicates other meaning.It is also understood that term "and/or" used herein refers to and wraps It may be combined containing one or more associated any or all of project listed.
It will be appreciated that though various information, but this may be described using term first, second, third, etc. in the application A little information should not necessarily be limited by these terms.These terms are only used to for same type of information being distinguished from each other out.For example, not departing from In the case where the application range, the first information can also be referred to as the second information, and similarly, the second information can also be referred to as One information.Depending on context, word as used in this " if " can be construed to " ... when " or " when ... When " or " in response to determination ".
Virtualization technology is a kind of resource management techniques, be may be implemented by virtualization technology a physical equipment is virtual Cheng Duotai logical device, therefore can run a virtual system in every logical device may be implemented by virtualization technology Multiple virtual systems are run on one physical equipment.Each virtual system can possess independent hardware and software resource, and solely The vertical respective data of maintenance, for example, the data such as route table items, business game.Between virtual system on same physical equipment It can be independent of each other, to improve the resource utilization of physical equipment.
However, the chip on some physical equipments is not supported to virtualize, if passing through virtualization on such physical equipment Technology divides virtual system (for example, by order line or software, the instruction for dividing virtual system is issued to physical equipment), this When each virtual system for being realized between information be likely to can not be mutually isolated, for example, due to the port of each virtual system Between can be in communication with each other, cause the internal information of some virtual system in physical equipment to be transferred to another virtual to be System, so that the communication security between virtual system is unable to get guarantee, and is likely to cause physical equipment cpu resource Waste, for example, some virtual system after receiving the message of other virtual systems, will be handled the message, thus Waste the cpu resource of physical equipment.
In order to realize on the above-mentioned physical equipment for not having the chip for supporting virtualization technology, realization virtual system, and Communication security between effective guarantee virtual system, this application provides a kind of method and devices for realizing virtual system, pass through This method realizes virtual system, can also improve the applicability for realizing the method for virtual system, reduces to physical equipment itself It relies on.
Following Fig. 1 illustrates the application scenarios schematic diagram that the embodiment of the present application realizes the method for virtual system.In Fig. 1 Including a network equipment 11, it is assumed that there are 4 ports (port 1 as shown in Figure 1 to port 4) on the network equipment 11, Also there is chip 111, it is assumed that the chip 111 does not support virtualization technology, and on the network equipment 11 not on the network equipment 11 The chip of virtualization technology is supported with other.It is understood that also there is other component, in Fig. 1 simultaneously on the network equipment It does not show one by one.
The purpose of the method for the realization virtual system of the application is, even if the chip 111 of the network equipment 11 does not support void Quasi-ization technology still can realize the division of virtual system by executing the present processes.For example, shown in Fig. 1, it is assumed that It needs to divide two virtual systems on the network equipment 11, then can pass through the side provided by the present application for realizing virtual system Method carries out the division of virtual system.Virtual system 112 and virtual system 113 can be formed after division, wherein port 1 and port 2 are allocated to virtual system 112, and port 3 and port 4 are allocated to virtual system 113, and may be implemented to belong to same virtual It can be in communication with each other between port (such as port 1 and port 2) in system, and belong to the port (example in different virtual systems Such as port 2 and port 3) between cannot be in communication with each other, thus realize do not have support virtualization technology chip object It manages in equipment, realizes virtual system, and effectively ensured the communication security between virtual system.
Following Fig. 2 illustrates one embodiment flow chart that the application realizes the method for virtual system, shown in the Fig. 2 Embodiment flow chart, on the basis of above-mentioned application scenarios schematic diagram shown in FIG. 1, realized with the network equipment 11 divide it is virtual For system 112 and virtual system 113, it may comprise steps of:
Step S201: according to the virtual system divided in advance, port isolation group is created, the same virtual system will be belonged to Port is respectively divided in the same port isolation group.
In the embodiment of the present application, user can be by technological means, for example, being realized by software or order line in net Virtual system is created in network equipment 11, and divides resource for each virtual system created, wherein may include by some Port is divided into some virtual system.For example, creation virtual system 112 and virtual system 113, and port 1 and port 2 are divided To virtual system 112, port 3 and port 4 are divided into virtual system 113.Specifically how to realize creation virtual system and is Virtual system divides resource, may refer to relevant programme in the prior art, does not remake be described in detail in this application.
When user creates virtual system, and after dividing resource for virtual system, the network equipment 11 can be according to being created The configuration information of virtual system and virtual system, the configuration information of the virtual system may include virtual system and its included by Resource corresponding relationship, for example, the configuration information of virtual system includes port included by virtual system and the virtual system Corresponding relationship, create port isolation group, the number of the port isolation group created is identical as the number of virtual system, and one Port isolation group corresponds to a virtual system, for example, creation port isolation group 114 and port isolation group 115.
After creating port isolation group, the network equipment 11 can continue the configuration information according to above-mentioned each virtual system, will The port for belonging to the same virtual system is respectively divided in the same port isolation group.For example, as shown in Figure 1, by 1 He of port Port 2 is divided into port isolation group 114, and port 3 and port 4 are divided into port isolation group 115.Due to belonging to same side It can be in communication with each other between port in mouthful isolation group, and belong between any two ports of different port isolation group and cannot It is in communication with each other, so as to realize mutually isolated, the effectively guarantee of information between virtual system 112 and virtual system 113 The information security of virtual system.
Step S202: the configuration information of the port isolation group after dividing, the configuration information packet of the port isolation group are saved Include the corresponding relationship of each port included by port isolation group and the port isolation group.
When executing the step S201, by the port for belonging to the same virtual system be divided into the same port isolation group it Afterwards, in the embodiment of the present application, the configuration information of port isolation group can be saved, the configuration information may include port isolation group with The corresponding relationship of each port included by it, for example, the configuration information of port isolation group 114 includes the port isolation group 114 With the corresponding relationship of port 1, port 2.
By saving the configuration information of the port isolation group after dividing, can make subsequent logical in virtual system progress data When letter, it may be convenient to use the configuration information of the port isolation group.For example, the port 1 in virtual system 112, if will send One message, it is assumed that the port-for-port 3 that the next-hop port of the message, the i.e. message will be sent directly to can then pass through The configuration information of the port isolation group of preservation obtains exit port 1 is not isolated in group with port 3 in same port, to refuse the report Text is sent directly to port 3 from port 1, thus realize information between virtual system 112 and virtual system 113 mutually every From effectively having ensured the information security of virtual system.
Using the method for the present embodiment, by the way that the port for belonging to same virtual system is divided into same port isolation group In, and the configuration information of the port isolation group after dividing is saved, so that in the network for not having the chip for supporting virtualization technology Also it can accomplish that information is mutually isolated between the virtual system that virtual system may be implemented in equipment, and realized, to have The communication security between virtual system is ensured to effect;And since the configuration of the network equipment itself is not wanted in the implementation of this method It asks, to improve the applicability for realizing the method for virtual system, reduces the dependence to the network equipment itself.
In order to which the method that the application realizes virtual system is described in more detail, following Fig. 3 illustrates the application and realizes void Another embodiment flow chart of the method for quasi- system, the embodiment flow chart shown in Fig. 3, in above-mentioned application shown in FIG. 1 On the basis of schematic diagram of a scenario and above-mentioned embodiment flow chart shown in Fig. 2, is still realized with the network equipment 11 and divide virtual system For 112 with virtual system 113, the method that the application realizes virtual system is illustrated in greater detail, may comprise steps of:
Step S301: obtaining the number M of the virtual system divided in advance, creates M port isolation group.
Step S302: the port for belonging to the same virtual system is respectively divided in the same port isolation group.
The description of this step may refer to the associated description in above-mentioned steps S201, and in this not go into detail.
Step S303: the configuration information of the port isolation group after the division is stored on the chip of itself, the core Piece is for handling message transmitted by the port.
In one example, the configuration information of the port isolation group after division can be stored in the network equipment 11 itself On chip 111, which can not support virtualization technology.
Under normal conditions, which can be used for handling message transmitted by the port of virtual system, for example, virtually When the port 1 of system 112 sends message to port 2, which can be forwarded by chip 111.
Step S304: it when the port sends message, according to the configuration information of the port isolation group of preservation, determines Group is isolated by whether the next-hop port being sent to belongs to same port with the message in the port for sending the message, if so, S305 is thened follow the steps, otherwise, executes step S306.
In one example, it is assumed that when port 1 sends message, which can be virtual system 112 itself Built-in message, be also possible to the message that other network equipments are sent to the network equipment 11, no matter which kind of message the message is, by It will be sent by port 1 in the message, and in the application, for convenience, port 1 can be known as sending the end of the message Mouthful.
Later, the network equipment 11 can be by the configuration information of the port isolation group saved on chip 111, and determining should The next-hop port that message will be sent to, such as port 2, with the port 1 for sending the message, if belong to same port isolation Group.
Step S305: the message is directly sent to the next-hop port from the port for sending message, is terminated Process.
In the present embodiment, seen from the above description, the configuration information of port isolation group can be stored on chip, and should Chip usually can be used for message transmitted by processing end mouthful.It is opposite to the processing speed of message since chip is hardware It, can more faster, so that the method for realizing virtual system by applying this embodiment, the void divided for software Quasi- system, handles the more efficient of message.
Step S306: the message is sent to the next-hop port from the port for sending message by refusal.
For example, it is assumed that message transmitted by the port 1 of virtual system 112 is broadcasting packet, since port 3 and port 4 are equal Not with port 1 in the same port isolation group, then the broadcasting packet will not be sent to port 3 from port 1 by the network equipment 11 With port 4.Information to realize between virtual system 112 and virtual system 113 is isolated;And avoid the occurrence of virtual system After 113 receive the broadcasting packet of virtual system 112, received broadcasting packet is still handled, the CPU of the network equipment 11 is caused The wasting of resources.
Using the method for the present embodiment, by the way that the port for belonging to same virtual system is divided into same port isolation group In, and the configuration information of the port isolation group after dividing is saved, it realizes in the net for not having the chip for supporting virtualization technology Also the port between virtual system that virtual system may be implemented in network equipment, also, realized cannot communicate with each other, thus The information isolation between virtual system is realized, has effectively ensured the communication security between virtual system, and due to this method Implementation the configuration of the network equipment itself is not required, thus improve realize virtual system method applicability, reduce Dependence to physical equipment itself.
Corresponding with the aforementioned realization embodiment of method of virtual system, present invention also provides the dresses for realizing virtual system The embodiment set.
The application realizes that the embodiment of the device of virtual system can be using on network devices.Installation practice can lead to Software realization is crossed, can also be realized by way of hardware or software and hardware combining.Taking software implementation as an example, as a logic Device in meaning is to be referred to computer program corresponding in nonvolatile memory by the processor of the network equipment where it It enables and is read into memory what operation was formed.For hardware view, as shown in figure 4, realizing the device of virtual system for the application A kind of hardware structure diagram of the place network equipment, in addition to processor 41 shown in Fig. 4, memory 42, network interface 43 and it is non-easily Except the property lost memory 44, the network equipment in embodiment where device may be used also generally according to the actual functional capability of the network equipment To include other hardware, this is repeated no more.
Referring to FIG. 5, realizing one embodiment block diagram of the device of virtual system for the application, described device can be applied On network devices, the network equipment may include multiple ports, the apparatus may include: division unit 51 saves list Member 52.
The division unit 51 can be used for creating port isolation group according to the virtual system divided in advance, will belong to same The port of one virtual system is respectively divided in the same port isolation group;
The storage unit 52 can be used to save the configuration information of the port isolation group after dividing, the port isolation The configuration information of group includes the corresponding relationship of each port included by port isolation group and the port isolation group.
In one embodiment, the division unit 51, can be used for: obtain of the virtual system divided in advance Number M, creates M port isolation group, and a port isolation group is corresponding with a virtual system;The same void will be belonged to The port of quasi- system is respectively divided in the same port isolation group;
The network equipment includes the chip for handling message transmitted by the port, which does not support to virtualize Technology;
The storage unit 52, can be used for: the configuration information of the port isolation group after the division is stored in described On chip.
Referring to FIG. 6, realizing another embodiment block diagram of the device of virtual system, the dress shown in fig. 6 for the application It sets, on the basis of above-mentioned Fig. 5 shown device, can also comprise determining that unit 53, processing unit 54.
Determination unit 53 can be used for when the port sends message, according to matching for the port isolation group of preservation Confidence breath, determine the port for sending the message and the message by the next-hop port being sent to whether belong to same port every From group;
Processing unit 54 can be used for belonging to the same end in the next-hop port and the port for sending the message When mouth isolation group, the message is directly sent to the next-hop port from the port for sending message.
The function of each unit and the realization process of effect are specifically detailed in the above method and correspond to step in above-mentioned apparatus Realization process, details are not described herein.
For device embodiment, since it corresponds essentially to embodiment of the method, so related place is referring to method reality Apply the part explanation of example.The apparatus embodiments described above are merely exemplary, wherein described be used as separation unit The unit of explanation may or may not be physically separated, and component shown as a unit can be or can also be with It is not physical unit, it can it is in one place, or may be distributed over multiple network units.It can be according to actual The purpose for needing to select some or all of the modules therein to realize application scheme.Those of ordinary skill in the art are not paying Out in the case where creative work, it can understand and implement.
The foregoing is merely the preferred embodiments of the application, not to limit the application, all essences in the application Within mind and principle, any modification, equivalent substitution, improvement and etc. done be should be included within the scope of the application protection.

Claims (6)

1. a kind of method for realizing virtual system, which is characterized in that the method is applied on network devices, the network equipment Including multiple ports, the network equipment further includes the chip for handling message transmitted by the port, and the chip is not It supports virtualization technology, and does not have other chips for supporting virtualization technology on the network equipment;The described method includes:
According to the configuration information of the virtual system divided in advance, port isolation group is created, the end of the same virtual system will be belonged to Mouth is respectively divided in the same port isolation group;The configuration information includes included by virtual system and the virtual system Port corresponding relationship;
Save the configuration information of the port isolation group after dividing, the configuration information of the port isolation group include port isolation group with The corresponding relationship of each port included by the port isolation group;Specifically, matching the port isolation group after the division Confidence breath saves on the chip.
2. the method according to claim 1, wherein the virtual system that the basis divides in advance, creates port Isolation group, comprising:
Obtain the number M of the virtual system divided in advance, create M port isolation group, a port isolation group and One virtual system is corresponding.
3. the method according to claim 1, wherein the method also includes:
When the port sends message, according to the configuration information of the port isolation group of preservation, determines and send the message Port group is isolated by whether the next-hop port being sent to belongs to same port with the message;
If the next-hop port belongs to same port with the port for sending the message and group is isolated, directly by the report Text is sent to the next-hop port from the port for sending message.
4. a kind of device for realizing virtual system, which is characterized in that described device is applied on network devices, the network equipment Including multiple ports, the network equipment further includes the chip for handling message transmitted by the port, and the chip is not It supports virtualization technology, and does not have other chips for supporting virtualization technology on the network equipment;Described device includes:
Division unit creates port isolation group, will belong to same for the configuration information according to the virtual system divided in advance The port of virtual system is respectively divided in the same port isolation group;The configuration information includes virtual system and the void The corresponding relationship of port included by quasi- system;
Storage unit, for saving the configuration information of the port isolation group after dividing, the configuration information packet of the port isolation group Include the corresponding relationship of each port included by port isolation group and the port isolation group;It specifically, will be after the division The configuration information of port isolation group saves on the chip.
5. device according to claim 4, which is characterized in that the division unit is used for:
Obtain the number M of the virtual system divided in advance, create M port isolation group, a port isolation group and One virtual system is corresponding;The same port isolation group is respectively divided in the port for belonging to the same virtual system It is interior.
6. device according to claim 4, which is characterized in that described device further include:
Determination unit, for according to the configuration information of the port isolation group of preservation, determining when the port sends message Group is isolated by whether the next-hop port being sent to belongs to same port with the message in the port for sending the message;
Group is isolated for belonging to same port with the port for sending the message in the next-hop port in processing unit When, the message is directly sent to the next-hop port from the port for sending message.
CN201610162220.3A 2016-03-21 2016-03-21 Realize the method and device of virtual system Active CN105939242B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201610162220.3A CN105939242B (en) 2016-03-21 2016-03-21 Realize the method and device of virtual system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201610162220.3A CN105939242B (en) 2016-03-21 2016-03-21 Realize the method and device of virtual system

Publications (2)

Publication Number Publication Date
CN105939242A CN105939242A (en) 2016-09-14
CN105939242B true CN105939242B (en) 2019-07-09

Family

ID=57151285

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201610162220.3A Active CN105939242B (en) 2016-03-21 2016-03-21 Realize the method and device of virtual system

Country Status (1)

Country Link
CN (1) CN105939242B (en)

Families Citing this family (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107342820B (en) * 2017-01-09 2019-06-25 烽火通信科技股份有限公司 The method and system of VOLT are realized based on Template Manager
CN114020554A (en) * 2021-10-30 2022-02-08 江苏信而泰智能装备有限公司 Port isolation method of tester and tester with port isolation function

Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102946354A (en) * 2012-11-15 2013-02-27 华为技术有限公司 Message forwarding method and device and network equipment thereof

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8619771B2 (en) * 2009-09-30 2013-12-31 Vmware, Inc. Private allocated networks over shared communications infrastructure

Patent Citations (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102946354A (en) * 2012-11-15 2013-02-27 华为技术有限公司 Message forwarding method and device and network equipment thereof

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
华为CloudEngine12800系列交换机VS技术白皮书;华为技术有限公司;《华为官方网站,http://e.huawei.com/zh/material/onLineView?materialid=9b600209cc404ce8979a3542fbdad968》;20160105;第1-5、22、28-29页

Also Published As

Publication number Publication date
CN105939242A (en) 2016-09-14

Similar Documents

Publication Publication Date Title
US10698717B2 (en) Accelerator virtualization method and apparatus, and centralized resource manager
CN103200085B (en) A kind of method and system that realize the transmitting-receiving of VXLAN message linear speed
CN106301859B (en) Method, device and system for managing network card
CN102316043B (en) Port virtualization method, switch and communication system
US10623415B2 (en) Virtual network function (VNF) hardware trust in a network function virtualization (NFV) software defined network (SDN)
CN103346981A (en) Virtual exchange method, related device and computer system
CN105511954A (en) Method and device for message processing
JP2007158870A (en) Virtual computer system and network communication method thereof
CN107133109B (en) Method and device for communication between modules and computing equipment
CN104486234A (en) Method and server for uninstalling service exchanger to physical network card
CN103414626A (en) Message processing method and device based on network virtualization
CN105791175A (en) Method and equipment for controlling transmission resources in software defined network SDN
US10708198B1 (en) Methods and apparatus to reduce packet flooding and duplicate packets in a multi-fabric virtual network
CN106603409B (en) Data processing system, method and equipment
CN109194589B (en) MDC (media data center) implementation method and device
CN103166845A (en) Data processing method and device
CN104683428A (en) Network service processing method and device
CN105939242B (en) Realize the method and device of virtual system
CN104468389A (en) Message processing method, servers and server system
CN114297130A (en) Data transmission processing method in chip system and related device
CN107896196B (en) Method and device for distributing messages
EP3240251A1 (en) Line card determination, determination processing method and device, and line card determination system
US9503278B2 (en) Reflective relay processing on logical ports for channelized links in edge virtual bridging systems
CN106534400B (en) Method for network address translation and device
CN111262771B (en) Virtual private cloud communication system, system configuration method and controller

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
CB02 Change of applicant information

Address after: Binjiang District and Hangzhou city in Zhejiang Province Road 310051 No. 68 in the 6 storey building

Applicant after: Hangzhou Dipu Polytron Technologies Inc

Address before: Binjiang District and Hangzhou city in Zhejiang Province Road 310051 No. 68 in the 6 storey building

Applicant before: Hangzhou Dipu Technology Co., Ltd.

CB02 Change of applicant information
GR01 Patent grant
GR01 Patent grant