WO2017088628A1 - Address converting method, device and system, network identity control method and device - Google Patents

Address converting method, device and system, network identity control method and device Download PDF

Info

Publication number
WO2017088628A1
WO2017088628A1 PCT/CN2016/104079 CN2016104079W WO2017088628A1 WO 2017088628 A1 WO2017088628 A1 WO 2017088628A1 CN 2016104079 W CN2016104079 W CN 2016104079W WO 2017088628 A1 WO2017088628 A1 WO 2017088628A1
Authority
WO
WIPO (PCT)
Prior art keywords
network
address
identifier
node
network identifier
Prior art date
Application number
PCT/CN2016/104079
Other languages
French (fr)
Chinese (zh)
Inventor
郝振武
朱超国
丁馥昊
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Publication of WO2017088628A1 publication Critical patent/WO2017088628A1/en

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/09Mapping addresses
    • H04L61/25Mapping addresses of the same type
    • H04L61/2503Translation of Internet protocol [IP] addresses
    • H04L61/2514Translation of Internet protocol [IP] addresses between local and global IP addresses
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/09Mapping addresses
    • H04L61/25Mapping addresses of the same type
    • H04L61/2503Translation of Internet protocol [IP] addresses
    • H04L61/2517Translation of Internet protocol [IP] addresses using port numbers

Definitions

  • the present invention relates to the field of communications, and in particular, to an address translation method, device and system, and network identity control method and apparatus.
  • FIG. 1 is a schematic diagram of a typical Internet access network.
  • the UE User Equipment
  • the access gateway connects to the Internet through the switching node.
  • the UE may be a terminal with a fixed location, such as a home terminal, or a terminal in a mobile state, such as a mobile terminal, a portable digital device (PAD), and the like.
  • a terminal with a fixed location such as a home terminal
  • a terminal in a mobile state such as a mobile terminal, a portable digital device (PAD), and the like.
  • PAD portable digital device
  • AGW Access Gateway
  • IP Internet Protocol
  • GGSN Gateway General Packet Radio
  • Service Support Node Gateway General Packet Radio Service Support Node
  • PGW Packet Data Network Gateway
  • BRAS Broad Band Remote Access Server
  • the authentication server also interacts with the authentication server to ensure the validity of the access. Since the authentication server is independent of the technology of the present invention, it will not be mentioned later.
  • the management and allocation mechanism of the IP address is generally that the AGW establishes a local IP address pool. After the UE is successfully authenticated, the UE selects an unoccupied IP address from the local IP address pool and allocates it to the UE. When the UE goes offline, the UE is released. The assigned IP address. It can be seen from the above process that with this mechanism, the IP address of the UE is dynamically allocated, so each time the UE goes online, the assigned address may be different.
  • the operator changed the IP address allocation method for the UE. Further, it is changed from directly assigning the public network IP address to assigning the private network IP address.
  • the network address translation (NAT) function is performed by using a pre-deployed TN (Translation Node) to perform the network address translation (NAT) function. Convert to a public IP address and send it to save IP address resources.
  • the AGW dynamically allocates the IP address of the private network and accesses the Internet through the TN.
  • the private IP address assigned to the UE and the converted public IP address are different, especially the mobile UE may be This phenomenon is more pronounced when accessing the Internet through different AGWs or different NAT/NAPT devices.
  • IP address allocation mechanism increases the difficulty of Internet supervision, making it impossible for Internet operators to perform accurate and timely searching for illegal operation terminals.
  • the public network address of the same UE is not fixed, it is impossible to effectively track the mobile terminal and analyze the service access, and provide a better service.
  • the technical problem to be solved by the present invention is how to identify the UE in the public network through a fixed network identifier, thereby satisfying the requirements in terms of traceability and service services.
  • An address translation method includes:
  • the identifier management node queries the network identifier corresponding to the user identifier of the first UE, and records the mapping between the queried network identifier and the private network IP address allocated to the first UE. Relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
  • the switching node queries the identifier management node for the network identifier corresponding to the private network IP address of the first UE when the first data packet is received from the first UE, and records the private network IP of the first UE. a mapping relationship between the address and the queried network identifier, and the data packet from the first UE and the data packet sent to the first UE are performed according to the recorded mapping relationship Address translation and transmission.
  • the network management node corresponding to the user identifier of the first UE includes:
  • the access gateway After the first UE is online, the access gateway sends an online message of the first UE to the identity management node, where the online message includes the user identifier of the first UE, and the access gateway allocates The private network IP address of the first UE;
  • the identity management node After receiving the online message, the identity management node queries the corresponding network identifier according to the user identifier of the first UE in the online message.
  • the performing address translation and sending of the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship includes:
  • the switching node establishes a mapping relationship between the network address translation NAT and/or the network address port conversion NAPT data flow according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including Transmitting the source IP address and the port in the data packet from the first UE into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and sending the data packet to the first UE
  • the destination IP address and port in the network are translated into a private network IP address and port corresponding to the corresponding network identifier.
  • the method further includes:
  • the identifier management node When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address.
  • An address and an idle port number segment as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
  • the method further includes:
  • the identifier management node queries the network identifier and the private network according to the private network IP address of the first UE. Mapping relationship between network IP addresses;
  • the network identifier corresponding to the private network IP address of the first UE is queried, the network identifier is returned to the conversion node as a query result;
  • the query is not available, return a query result indicating that there is no such UE to the conversion node; or, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public network
  • the IP address and the idle port number segment are used as the network identifier allocated to the first UE, and the correspondence between the user identifier of the first UE and the assigned network identifier is saved, and the private state of the first UE is saved.
  • the method further includes:
  • the identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
  • the method further includes:
  • the identifier management node updates the user and/or the network of the first UE according to the address information of the new transition node when the new switch node queries the network identifier corresponding to the private network IP address of the first UE. Identifying a correspondence between the address information and the address information of the conversion node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the network identifier of the first UE and/or is originally allocated to the The private network IP address of the first UE.
  • the method further includes:
  • the access gateway When the first UE goes offline, the access gateway sends the offline message of the first UE to the identity management node, and carries the private network IP address originally allocated to the first UE;
  • the identifier management node After receiving the offline message, the identifier management node deletes a mapping relationship between the network identifier of the first UE and the private network IP address, and notifies the first node that the first UE corresponds to the conversion node.
  • a UE is offline, and the notification carries the network identifier of the first UE and/or a private network IP address originally allocated to the first UE.
  • the method further includes:
  • the mapping node After receiving the notification that the first UE goes offline, the mapping node deletes the mapping relationship between the private network IP address of the first UE and the network identifier, and deletes the established NAT and/or NAPT data stream. Mapping relations.
  • An address translation method includes:
  • the switching node queries the network identifier corresponding to the private network IP address of the first UE when receiving the first data packet from the first user equipment UE; the network identifier is a public network IP address, or a public network IP address. Address and port number segment;
  • the switching node records a mapping relationship between the private network IP address of the first UE and the queried network identifier, and sends a data packet from the first UE to the first according to the recorded mapping relationship.
  • a UE's data packet is address translated and transmitted.
  • the performing address translation and sending of the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship includes:
  • the switching node establishes a mapping relationship between the network address translation NAT and/or the network address port conversion NAPT data flow according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including Transmitting a source IP address and a port in the data packet from the first UE into a public network IP address in the network identifier and a port in a port range defined by the network identifier; and sending the data packet to the first UE
  • the destination IP address and port in the network are translated into a private network IP address and port corresponding to the corresponding network identifier.
  • the method further includes:
  • the switching node After receiving the notification that the first UE is offline, the switching node, according to the network identifier of the first UE carried in the notification, and/or the private network IP address originally allocated to the first UE, And deleting a mapping relationship between the private network IP address of the first UE and the network identifier, and deleting the established NAT and/or NAPT data flow mapping relationship.
  • a network identity control method includes:
  • the identifier management node After the first user equipment UE is online, the identifier management node queries the corresponding network identifier according to the user identifier of the first UE, and records between the queried network identifier and the private network IP address allocated to the first UE. Mapping relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
  • the identifier management node After receiving the request for the conversion node to query the network identifier, the identifier management node queries the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and returns the result to the conversion node as a query result.
  • the method further includes:
  • the identifier management node When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address.
  • An address and an idle port number segment as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
  • the method further includes:
  • the identifier management node queries the network identifier corresponding to the private network IP address of the first UE, the network identifier is returned to the conversion node as a query result; if not, the return indicates that there is no such UE
  • the query result is given to the conversion node; or, the idle public network IP address, or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment are allocated as the allocation.
  • the network identifier of the first UE is saved, and the correspondence between the user identifier of the first UE and the allocated network identifier is saved, and the private network IP address of the first UE is saved and the allocated network identifier is saved.
  • the identifier management node receives the request of the conversion node to query the network identifier.
  • the network identifier include:
  • the identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
  • the method further includes:
  • the identifier management node updates the user of the first UE according to the address information of the new transition node. Corresponding relationship between the network identifier and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, the notification carrying the network identifier of the first UE and/or originally assigned to The private network IP address of the first UE.
  • the method further includes:
  • the identity management node After the first UE goes offline, the identity management node deletes the mapping relationship between the network identifier of the first UE and the private network IP address.
  • the identifier management node further includes:
  • the identifier management node notifies the first UE that the first UE corresponds to the first node to go offline, and the notification carries the network identifier and/or the private network IP address originally allocated to the first UE.
  • An address translation system comprising: one or more conversion nodes;
  • the identifier management node is configured to query the network identifier corresponding to the user identifier of the first UE after the first user equipment UE is online, and record the queried network identifier and the private network IP address allocated to the first UE.
  • the mapping relationship between the network identifiers is a public network IP address, or a public network IP address and a port number segment;
  • the switching node is configured to, when receiving the first data packet from the first UE, query the identifier management node for a network identifier corresponding to the private network IP address of the first UE; a mapping relationship between the private network IP address of the first UE and the queried network identifier, and the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship Address translation and sending.
  • system further includes:
  • One or more access gateways configured to send an online message of the first UE to the identity management node when the first UE is online, where the online message carries the user identifier of the first UE, And a private network IP address assigned to the first UE.
  • An address conversion device disposed on the conversion node, includes:
  • the query requesting module is configured to: when receiving the first data packet from the first user equipment UE, query the network identifier corresponding to the private network IP address of the first UE; the network identifier is a public network IP address, Or public network IP address and port number segment;
  • a conversion module configured to record a mapping relationship between the private network IP address of the first UE and the queried network identifier, and send the data packet from the first UE to the foregoing according to the recorded mapping relationship
  • the data packet of the first UE is subjected to address translation and transmission.
  • a network identifier control device is disposed on the identifier management node, and includes:
  • an update module configured to: after the first user equipment UE is online, query the corresponding network identifier according to the user identifier of the first UE, and record the queried network identifier and the private network IP address allocated to the first UE.
  • the mapping relationship between the network identifiers is a public network IP address, or a public network IP address and a port number segment;
  • the query module is configured to query the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and then return the data identifier to the conversion node as a query result.
  • the network identifier is corresponding to the user identifier of the UE, it can be in the public network.
  • the UE is represented by a fixed network identifier, thereby meeting the requirements in terms of traceability, security, and flexible deployment.
  • the alternative of the embodiment of the present invention may also support the enhanced conversion node to form a device pool.
  • Another embodiment of the present invention provides a computer storage medium storing execution instructions for performing the method in the above embodiments.
  • FIG. 1 is a schematic diagram of an existing Internet access
  • FIG. 2 is a schematic flowchart of an address conversion method according to Embodiment 1 of the present invention.
  • FIG. 3 is a schematic flowchart of an address translation method according to Embodiment 2 of the present invention.
  • FIG. 4 is a schematic flowchart of a network identity control method according to Embodiment 3 of the present invention.
  • FIG. 5 is a schematic diagram of an address translation system according to Embodiment 4 of the present invention.
  • FIG. 6 is a schematic diagram of an address translation apparatus according to Embodiment 5 of the present invention.
  • FIG. 7 is a schematic diagram of a network identity control apparatus according to Embodiment 6 of the present invention.
  • Example 8 is a schematic flowchart of Example 1 of an embodiment of the present invention.
  • FIG. 9 is a schematic structural diagram of a system according to Embodiment 2 of the present invention.
  • FIG. 10 is a schematic diagram of deployment of multiple AGWs and multiple eTNs according to Embodiment 3 of the present invention.
  • FIG. 11 is a schematic diagram of a UE online procedure and a data transmission process according to Embodiment 4 of the present invention.
  • FIG. 12 is a schematic diagram of a UE user data packet receiving process according to Embodiment 5 of the present invention.
  • FIG. 13 is a schematic diagram of a process of reselecting an eTN by an AGW according to Embodiment 6 of the present invention.
  • FIG. 14 is a schematic diagram of a UE offline process according to Embodiment 7 of the present invention.
  • Embodiment 1 An address conversion method, as shown in FIG. 2, includes:
  • the identifier management node queries the network identifier corresponding to the user identifier of the first UE after the first UE is online, and records a mapping between the queried network identifier and the private network IP address allocated to the first UE. Relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
  • the switching node when receiving the first data packet from the first UE, query the identifier management node for a network identifier corresponding to the private network IP address of the first UE, and record the private information of the first UE.
  • the identifier management node may be, but is not limited to, receiving the online message of the first UE that is sent by the AGW to learn that the first UE is online; the online message carries the user identifier of the first UE, and The private network IP address assigned by the AGW to the first UE.
  • the switching node may be, but is not limited to, sending a network identifier query request, and querying, by the identifier management node, a network identifier corresponding to the private network IP address of the first UE;
  • the private network IP address of the first UE that is, the source IP address in the data packet.
  • the first data packet received by the switching node from the first UE The source IP address, that is, the private network IP address of the first UE.
  • the conversion node in this embodiment adds more functions than the existing conversion node, and is therefore referred to as an enhanced conversion node hereinafter.
  • the network management node corresponding to the user identifier of the first UE includes:
  • the access gateway After the first UE is online, the access gateway sends an online message of the first UE to the identity management node, where the online message includes the user identifier of the first UE, and the access gateway allocates The private network IP address of the first UE;
  • the identity management node After receiving the online message, the identity management node queries the corresponding network identifier according to the user identifier of the first UE in the online message.
  • the method may further include:
  • the identifier management node establishes a user identifier and a network identifier mapping table, and pre-stores a mapping relationship between the user identifier and the network identifier according to the configuration of the operator.
  • the method further includes:
  • the identifier management node When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address.
  • An address and an idle port number segment as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
  • the public network IP address and the port number segment of the public network may be pre-stored in the identifier management node.
  • the public network IP address of the network identifier or the public network address is selected.
  • the network IP address and port number segment are marked as not idle.
  • the scenario that the converting node receives the first data packet of the first UE includes: a first data packet sent after the first UE is online, and the first The first data packet sent after a UE switches to the switching node.
  • the method further includes:
  • the switching node When the switching node receives the data packet from the UE, firstly, according to the source IP address (that is, the private network IP address) in the data packet, the mapping relationship between the locally saved private network IP address and the network identifier is queried, and if the query can be queried, Decoding and transmitting a data packet from the first UE and a data packet sent to the first UE according to the queried mapping relationship, if not, determining that it is the first one from the first UE The data packet is executed in step S120.
  • the source IP address that is, the private network IP address
  • the method further includes:
  • the identifier management node queries the mapping relationship between the network identifier and the private network IP address according to the private network IP address of the first UE, and returns the query result to the conversion node.
  • the network identifier corresponding to the private network IP address of the first UE is queried, the network identifier is returned to the conversion node as a query result; if the query is not found, the return indicates that there is no such
  • the query result of the UE is sent to the conversion node; or, the idle public network IP address, or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment are selected as a network identifier that is allocated to the first UE, and a correspondence between the user identifier of the first UE and the assigned network identifier, and the private network IP address of the first UE and the allocated network identifier are saved.
  • the mapping relationship between the two, and the assigned network identifier is returned to the conversion node as a query result.
  • the method further includes:
  • the identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
  • the performing address translation and sending of the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship includes:
  • the switching node is built according to the relationship between the private network IP address of the first UE and the network identifier.
  • Performing NAT and/or NAPT data flow mapping performing NAT and/or NAPT processing, including: converting source IP address and port in the data packet from the first UE into a public network IP address in the network identifier, and The network identifies the port within the port range defined by the port and establishes a NAT and/or NAPT data flow mapping relationship;
  • the destination public network IP address is converted into the private network IP address corresponding to the corresponding network identifier according to the previously established NAT and/or NAPT data flow mapping relationship, and the port in the data packet is Convert to a private network port.
  • the port range is all ports corresponding to the public network IP address; when the network identifier is a public network IP address and a port number segment, the port range is Refers to the port number segment.
  • the determined network identifier is X, or “180.100.220.210” and port. If the destination public network IP address is "180.100.220.210" and the port is a value in the port number segment, such as 1026, the determined network identifier is X.
  • step S120 further includes: the switching node discarding the data packet when the network identifier is not queried, or performing a NAT and/or NAPT conversion operation using the locally preset public network IP address.
  • the method further includes:
  • the identity management node When the first UE is offline, the identity management node deletes a mapping relationship between the network identifier of the first UE and the private network IP address, and notifies the first node that the first UE originally corresponds to the first node.
  • the UE is offline, and the notification carries the network identifier of the first UE and/or the private network IP address originally allocated to the first UE.
  • the identifier management node may be, but is not limited to, receiving the offline message of the first UE that is sent by the AGW, and the first UE is offline; the AGW sends an offline message when the first UE goes offline.
  • the offline message carries the private network IP address originally allocated by the AGW to the first UE.
  • mapping management node if the mapping management node has previously saved the mapping relationship between the network identifier of the first UE and the address information of the switching node, the mapping relationship needs to be deleted.
  • the AGW releases the private network IP address allocated to the first UE.
  • the method further includes:
  • the identifier management node updates the user and/or the network of the first UE according to the address information of the new transition node when the new switch node queries the network identifier corresponding to the private network IP address of the first UE. Identifying a correspondence between the address information and the address information of the conversion node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the network identifier of the first UE and/or is originally allocated to the The private network IP address of the first UE.
  • the new conversion node queries the network identifier corresponding to the private network IP address of the first UE: the AGW reselects the conversion node for the first UE performing the service according to the policy; for the new conversion
  • the node when the data packet from the first UE is received for the first time, it is considered to be the first data packet of the first UE, and therefore the network identity of the first UE is queried to the identity management node.
  • the method may further include:
  • the mapping node After receiving the notification that the first UE goes offline, the mapping node deletes the mapping relationship between the private network IP address of the first UE and the network identifier, and deletes the established NAT and/or NAPT data stream. Mapping relations.
  • the notification that the first UE is offline may be, but is not limited to, a delete UE notification or a UE offline notification sent by the identifier management node, where the network identifier of the first UE to be deleted is carried and/or The private network IP address originally assigned to the first UE.
  • both the NAT and the NAPT data flow mapping relationship need to be deleted; if the network identifier is used for the first UE Only the NAT or NAPT data flow mapping relationship is established, and the established NAT or NAPT data flow mapping relationship is deleted.
  • Embodiment 2 an address translation method, as shown in FIG. 3, includes:
  • the switch node queries the network identifier corresponding to the private network IP address of the first UE when receiving the first data packet from the first UE.
  • the network identifier is a public network IP address, or a public network IP address. Address and port number segment;
  • the switching node records a mapping relationship between the private network IP address of the first UE and the queried network identifier, and sends a data packet and a destination to the first UE according to the recorded mapping relationship.
  • the data packet of the first UE is subjected to address conversion and transmission.
  • the performing address translation and sending of the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship includes:
  • the mapping node establishes a NAT and/or NAPT data flow mapping relationship according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including: coming from the first
  • the source IP address and port in the data packet of the UE are respectively converted into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and the destination IP address and port in the data packet to be sent to the first UE. Convert to the private network IP address and port corresponding to the corresponding network identifier.
  • the method further includes:
  • the switching node After receiving the notification that the first UE is offline, the switching node, according to the network identifier of the first UE carried in the notification, and/or the private network IP address originally allocated to the first UE, And deleting a mapping relationship between the private network IP address of the first UE and the network identifier, and deleting the established NAT and/or NAPT data flow mapping relationship.
  • Embodiment 3 A network identity control method, as shown in FIG. 4, includes:
  • the identifier management node queries the corresponding network identifier according to the user identifier of the first UE, and records between the queried network identifier and the private network IP address allocated to the first UE. Mapping relationship; the network identifier is a public network IP address, or a public network IP address and port number segment;
  • the identifier management node After receiving the request for the switching node to query the network identifier, the identifier management node queries the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and returns the result to the conversion as a query result. node.
  • the identifier management node may be, but is not limited to, receiving the online message of the first UE that is sent by the AGW to learn that the first UE is online; the online message carries the user identifier of the first UE, and The private network IP address assigned by the AGW to the first UE.
  • the request for querying the network identifier may be referred to as a network identity query request.
  • the method further includes:
  • the identifier management node When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address.
  • An address and an idle port number segment as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
  • the method further includes:
  • the identifier management node queries the network identifier corresponding to the private network IP address of the first UE, the network identifier is returned to the conversion node as a query result; if not, the return indicates that there is no such UE
  • the query result is given to the conversion node; or, the idle public network IP address, or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment are allocated as the allocation.
  • the network identifier of the first UE is saved, and the correspondence between the user identifier of the first UE and the allocated network identifier is saved, and the private network IP address of the first UE is saved and the allocated network identifier is saved.
  • the identifier management node receives the request of the conversion node to query the network identifier.
  • the network identifier include:
  • the identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
  • the address information of the conversion node may also be referred to as a location identifier.
  • UID User Identifier
  • MSISDN Mobile Station Integrated Services Digital Network Number
  • IMSI International Mobile Subscriber Identity, International Mobile
  • username/account number etc.
  • NID Network Identifier
  • It can uniquely indicate the identity of the UE in the network layer of the public network. It can be the public network IP address assigned to the UE, or the public network IP address and port number segment, which are carried in the data packet. The public network IP address or the public network IP address plus the port can uniquely identify the user.
  • LID Location Identifier
  • IP address IP address
  • URI Uniform Resource Identifier
  • Private network IP address Allocated by the AGW.
  • the access locations of the UEs are different and the online time is different.
  • the assigned private IP addresses may be different.
  • the method further includes:
  • the identifier management node updates the user of the first UE according to the address information of the new transition node. Corresponding relationship between the network identifier and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, the notification carrying the network identifier of the first UE and/or originally assigned to The private network IP address of the first UE.
  • the method further includes:
  • the identity management node After the first UE goes offline, the identity management node deletes the mapping relationship between the network identifier of the first UE and the private network IP address.
  • the identifier management node may be, but is not limited to, receiving the offline message of the first UE that is sent by the AGW, and the first UE is offline; the offline message carries the AGW originally assigned to the The private network IP address of the first UE.
  • the identifier management node further includes:
  • the identifier management node notifies the first UE that the first UE corresponds to the first node to go offline, and the notification carries the network identifier and/or the private network IP address originally allocated to the first UE.
  • Embodiment 4 an address conversion system, as shown in Figure 5, comprising: one or more conversion nodes 41;
  • the identifier management node 42 is configured to query the network identifier corresponding to the user identifier of the first UE after the first UE is online, and record the network identifier between the queried network and the private network IP address allocated to the first UE. Mapping relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
  • the switching node 41 is configured to: when the first data packet from the first UE is received, query the identifier management node for a network identifier corresponding to the private network IP address of the first UE; and record the first a mapping relationship between the private IP address of the UE and the queried network identifier, and performing address translation on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship send.
  • one or more conversion nodes in the system are located in a service area corresponding to the same identification management node.
  • the converting by the converting node, performing address translation and sending on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship:
  • the mapping node establishes a NAT and/or NAPT data flow mapping relationship according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including: coming from the first
  • the source IP address and port in the data packet of the UE are respectively converted into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and the destination IP address and port in the data packet to be sent to the first UE. Convert to the private network IP address and port corresponding to the corresponding network identifier.
  • the identifier management node is further configured to: when the network identifier corresponding to the user identifier of the first UE is not found, select an idle public network IP address, or an idle public network IP address and an idle port number segment. Or a non-idle public network IP address and an idle port number segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; A mapping relationship between the assigned network identifier and a private network IP address assigned to the first UE.
  • the identifier management node is further configured to query the network identifier and the private network according to the private network IP address of the first UE, after the switching node queries the network identifier corresponding to the private network IP address of the first UE. a mapping relationship between the network IP addresses; if the network identifier corresponding to the private network IP address of the first UE is queried, the network identifier is returned to the conversion node as a query result; if not, the method returns Indicates that there is no query result of the UE to the conversion node; or, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public network IP address and an idle port number.
  • a segment as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier, and saving the private network IP address of the first UE and the allocated A mapping relationship between network identifiers, and the assigned network identifier is returned to the conversion node as a query result.
  • the identifier management node is further configured to: after the conversion node queries the network identifier corresponding to the private network IP address of the first UE, obtain the conversion node that queries the network identifier.
  • the address information records a correspondence between a user identifier of the first UE and/or a network identifier and address information of the conversion node.
  • the identifier management node is further configured to: when a new conversion node queries the network identifier corresponding to the private network IP address of the first UE, update the first according to the address information of the new conversion node. Corresponding relationship between the user and/or the network identifier of the UE and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the network identifier of the first UE And/or a private network IP address originally assigned to the first UE.
  • the identifier management node is further configured to: when the first UE goes offline, delete a mapping relationship between the network identifier of the first UE and a private network IP address; and notify the first UE The first UE is offline, and the notification carries the network identifier of the first UE and/or the private network IP address originally allocated to the first UE.
  • the converting node is further configured to: after receiving the notification that the first UE goes offline, delete the mapping relationship between the private network IP address of the first UE and the network identifier, and delete the established relationship. NAT and / or NAPT data flow mapping.
  • system further includes:
  • One or more access gateways configured to send an online message of the first UE to the identity management node when the first UE is online, where the online message carries the user identifier of the first UE, And the private network IP address allocated to the first UE; when the first UE goes offline, sending the offline message of the first UE to the identity management node, where the offline message is carried and assigned The private network IP address of the first UE.
  • system further includes:
  • An interworking node configured to receive, from the switching node, a data packet processed by the first UE through NAT and/or NAPT, and forward the data packet to the public network; and after receiving the data packet sent by the public network to the first UE, according to the The network identifier of the first UE queries the identifier management node for address information of the corresponding conversion node, and sends the data packet to the corresponding conversion node according to the queried address information.
  • Embodiment 5 An address translation apparatus is disposed on a conversion node, as shown in FIG. 6, and includes:
  • the query requesting module 51 is configured to: when receiving the first data packet from the first UE, query the network identifier corresponding to the private network IP address of the first UE; the network identifier is a public network IP address, or Public network IP address and port number segment;
  • the conversion module 52 is configured to record a mapping relationship between the private network IP address of the first UE and the queried network identifier, and send the data packet and the destination to the first UE according to the recorded mapping relationship.
  • the data packet of the first UE is subjected to address conversion and transmission.
  • the converting by the conversion module, performing address translation and sending on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship:
  • the converting module establishes a NAT and/or NAPT data flow mapping relationship according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including: coming from the first
  • the source IP address and port in the data packet of the UE are respectively converted into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and the destination IP address and port in the data packet to be sent to the first UE. Convert to the private network IP address and port corresponding to the corresponding network identifier.
  • the device further includes:
  • Deleting a module configured to: after receiving the notification that the first UE is offline, according to the network identifier of the first UE carried in the notification, and/or the private network IP address originally allocated to the first UE And deleting a mapping relationship between the private network IP address of the first UE and the network identifier, and deleting the established NAT and/or NAPT data flow mapping relationship.
  • Embodiment 6 is a network identifier control device, which is disposed on the identifier management node, as shown in FIG. 7, and includes:
  • the update module 61 is configured to: after the first UE goes online, query the corresponding network identifier according to the user identifier of the first UE, record the queried network identifier, and allocate the identifier to the first UE.
  • the mapping relationship between the private network IP addresses; the network identifier is a public network IP address, or a public network IP address and a port number segment;
  • the querying module 62 is configured to: after receiving the request for the conversion node to query the network identifier, query the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and return the result to the conversion node as a query result. .
  • the updating module is further configured to: when the network identifier corresponding to the user identifier of the first UE is not found, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or The non-idle public network IP address and the idle port number segment are used as the network identifiers allocated to the first UE, and the correspondence between the user identifiers of the first UE and the assigned network identifiers is saved; A mapping relationship between the network identifier and a private network IP address assigned to the first UE.
  • the querying module is further configured to: after querying the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, if the private network IP address corresponding to the first UE is queried The network identifier is returned to the conversion node as a query result; if not, the query returns a result of the query without the UE to the conversion node; or, the idle public IP address is selected. Or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment, as the network identifier allocated to the first UE, and the user identifier of the first UE is saved. Corresponding relationship between the assigned network identifier and the mapping between the private network IP address of the first UE and the allocated network identifier, and returning the allocated network identifier as a query result to the conversion node.
  • the updating module is further configured to: after the query module receives the request for the conversion node to query the network identifier, obtain the address information of the conversion node that queries the network identifier, and record the user identifier of the first UE and / Correspondence between the network identifier and the address information of the conversion node.
  • the updating module is further configured to: according to the address information of the new conversion node, when a new conversion node requests to query a network identifier corresponding to the private network IP address of the first UE Updating a correspondence between the user and/or the network identifier of the first UE and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the first A network identity of a UE and/or a private network IP address originally assigned to the first UE.
  • the updating module is further configured to: after the first UE goes offline, delete a mapping relationship between the network identifier of the first UE and a private network IP address.
  • the updating module is further configured to: after the mapping between the network identifier of the first UE and the private network IP address is deleted, notify the first UE that the first UE corresponds to the first node In the line, the notification carries the network identifier and/or the private network IP address originally allocated to the first UE.
  • Embodiment 1 an address conversion method, as shown in FIG. 8, includes steps 101-104:
  • the AGW sends an online message of the first UE to the identity management node, where the user identifier of the first UE and the private network IP address allocated by the AGW to the first UE are included.
  • the identifier management node queries the network identifier corresponding to the user identifier of the first UE, and records a mapping relationship between the queried network identifier and the private network IP address of the first UE.
  • the network identifier is a public network. IP address, or public network IP address and port number segment;
  • the enhanced switching node sends a network identity query request to the identity management node, where the first network packet from the first UE is received, where the private network IP address of the first UE is carried, that is, the data is Source IP address of the packet; the identity management node returns the queried network identifier;
  • the enhanced conversion node records the mapping relationship between the private network IP address of the first UE and the queried network identifier, and sends the data packet from the first UE to the foregoing according to the recorded mapping relationship.
  • the data packet of the first UE is subjected to address translation and transmission.
  • Example one the situation that the first UE goes offline and switches the enhanced conversion node can be referred to Example one. See also the first embodiment for other processing details.
  • Embodiment 2 A UE address translation system, the system includes an AGW, an Enhanced Translation Node, and an IDMN (Identifier Management Node) deployed in a service area; optionally, The system may also include an IWN (Interworking Node).
  • AGW Access Management Node
  • IDMN Identity Management Node
  • IWN Interworking Node
  • the AGW is configured to: when the UE goes online, allocate a private network IP address to the UE, and send a UE online message to the IDMN; when the UE goes offline, send a UE offline message to the IDMN; send the data packet from the UE to The eTN receives the data packet sent by the eTN and forwards the data packet to the corresponding UE.
  • the AGW selects the eTN corresponding to the UE according to the distribution policy, and sends all the data packets from the UE to the eTN;
  • the AGW reselects the eTN corresponding to the UE, and sends all data packets from the UE to the reselected eTN.
  • the eTN is configured to: when receiving the first data packet sent by the first UE, query the IDMN for the corresponding network identifier according to the source IP address of the first data packet, and establish a private network IP address and the network identifier.
  • multiple eTNs can form a pool of device nodes, and the device services in the pool are connected to the same IDMN by the AGW and the UE of the corresponding area.
  • the IDMN is configured to pre-store a mapping relationship between the user identifier and the network identifier.
  • the network identifier corresponding to the user identifier of the first UE is searched, and the first UE is recorded. a mapping relationship between the private network IP address and the discovered network identifier; when receiving the UE offline message sent by the AGW, deleting the mapping relationship between the corresponding network identifier and the private network IP address;
  • the network identity query request from the eTN is returned, the network identifier corresponding to the private network IP address is returned, and the network identifier and the location identifier are established. Correspondence relationship.
  • the IDMN is further configured to: when receiving the first UE online message sent by the AGW, notify the AGW if the user identifier of the first UE does not have a corresponding network identifier, or be the first UE The network identifier is selected, and the mapping relationship between the user identifier of the first UE and the selected network identifier is saved, and the mapping relationship between the private network IP address of the first UE and the selected network identifier is recorded.
  • the IDMN is further configured to return the recorded eTN address, that is, the location identifier, when the IWN needs to query the eTN through which the user data stream flows.
  • the IWN is located on the interface between the access network and the public network (which may be, but is not limited to, the Internet), and is configured to receive the data packet sent by the UE to the public network and forward the data packet to the public network; after receiving the data packet sent by the public network to the UE, according to the The network identifier queries the IDMN for the location identifier of the UE, and sends the data packet to the corresponding eTN according to the queried location identifier.
  • the public network which may be, but is not limited to, the Internet
  • FIG. 9 is a structural diagram of a system provided by an embodiment of the present invention, where:
  • AGW in addition to the basic functions listed in Figure 1, also needs to enable the following features:
  • the UE When the first UE goes online or goes offline, the UE sends an uplink or offline message to the IDMN, where the message carries the user identifier and the private IP address assigned by the AGW;
  • the AGW configures the distribution policy to select the eTN, and sends all the data packets from the first UE to the eTN;
  • the AGW can reselect the eTN and send all data packets from the first UE to the eTN.
  • mapping entry table (can be, but is not limited to, stored in the mapping entry table, one entry in the mapping entry table corresponds to a NAT and/or NAPT data flow mapping relationship), if there is a mapping entry corresponding to the data packet, it is not the first data packet, If it does not exist, further query the network identifier according to the private network IP address carried in the data packet. If the record can be queried, it is not the first data packet. If the record cannot be queried, it is considered to be the first data packet; Query the network identifier of the private network IP address query in the private network IP address and network identifier mapping table.
  • the corresponding network identifier is queried to the IDMN according to the private network IP address of the data packet, and the mapping relationship between the private network IP address and the network identifier that is queried is saved; In the private network IP address and network identifier mapping table;
  • mapping relationship between the private network IP address of the first UE and the network identifier establish a NAT and/or NAPT data flow mapping relationship for the data packet from the first UE or the first UE, and perform NAT and/or Or NAPT processing, in which the source address and port in the IP packet sent to the public network are replaced by the IP address corresponding to the network identifier and a port in the port range.
  • the eTN is further configured to establish a private network IP address and a network identifier mapping table.
  • Multiple eTNs can form an eTN node pool, serve the AGW and UE of the corresponding area, and connect to the same IDMN.
  • IDMN The functions of IDMN include:
  • mapping relationship between the user identifier and the network identifier assigned to the user identifier is saved; and may be, but is not limited to, being saved in the user identifier and the network identifier mapping table;
  • the interworking node or other eTN needs to query the eTN through which the data stream of the UE flows, the address information of the recorded eTN, that is, the location identifier, is returned.
  • the eTN is further configured to establish a user identifier and a network identifier mapping table.
  • IWN an interface between the access network and the public network.
  • the main functions are as follows:
  • FIG. 10 is a schematic diagram of deployment of a system provided by Embodiment 2 in multiple AGWs and eTNs;
  • the AGW adopts a pooled deployment solution. Multiple AGWs form a device pool. In the service area where the AGW pool is responsible, the UE can access any AGW in the pool to increase deployment flexibility. The reliability of the service; regardless of which AGW the UE accesses, the accessed AGW will send the UE's online message to the IDMN, so that the IDMN can record the mapping relationship between the network identifier of the UE and the assigned private network IP address.
  • the solution provided by the embodiment of the present invention can support the deployment scenario of the AGW pooling, and simultaneously support the eTN adopting the pooling deployment solution.
  • the AGWs in the AGW pool belong to the same IDMN (one IDMN can be distributed in one or more devices, and the existing devices can be multiplexed).
  • the AGW sends the The IDMN of the service area sends an online message of the UE.
  • the AGW sends the UE to the IDMN of the service area. Offline message.
  • the AGW pool communicates with all eTNs in the same service area; when receiving the data packet from the first UE, an eTN in the eTN pool is selected according to the policy and all data packets from the first UE are forwarded. To the selected eTN.
  • the specific policy may be, but is not limited to, performing a hash operation according to the private network IP address, and then selecting an eTN according to the calculated hash value, or adopting a round robin policy, selecting an eTN according to the order in which the UE goes online; and receiving the sending to the first UE.
  • the data packet is sent to the first UE through the access network.
  • the eTN pool includes multiple eTNs in a service area, and belongs to the same IDMN.
  • the eTN pool queries the home IDMN for the network identifier corresponding to the private network IP address of the first UE.
  • the appropriate interworking node is selected, and the NAT and/or NAPT operation is performed and then sent to the interworking node; when the data packet is sent to the user After performing NAT and/or NAPT, it will be sent to the AGW where the user is located according to the destination address of the data packet, that is, the private IP address of the user;
  • the AGW detects the device status, reselects the new eTN for the UE served by the eTN service, and forwards the subsequent data packet to the newly selected eTN, thereby ensuring that the service is not interrupted. Improve system reliability.
  • the IDMN is responsible for the allocation and management of network identifiers in an area.
  • the area includes an AGW pool and an eTN pool, and further includes one or more interworking nodes, all devices in the IDMN and AGW pools, all devices in the eTN pool, and interworking nodes. Connected to provide functions such as identity management, identity mapping maintenance, network identity query, and location identifier query.
  • FIG. 11 is a schematic diagram of a process of uplinking a UE and a data forwarding process according to an embodiment of the present invention, showing a process of going online of a UE and a process of accessing a data.
  • the specific steps include steps 400-412:
  • Step 400 The operator allocates a unique network identifier to the UE in the service area of the IDMN, and the IDMN establishes a mapping relationship between the user identifier and the network identifier, and saves the user identifier and the network. Identify the mapping table.
  • Step 401 The first UE goes online and initiates an access procedure to the AGW.
  • the AGW authenticates the user identifier of the first UE, and assigns a private IP address to the UE.
  • the AGW may be any one of the AGW pools of the service area of the IDMN.
  • Step 402 After the UE successfully accesses, the AGW sends an online message of the first UE to the IDMN, where the user identifier of the first UE and the private network IP address are carried.
  • Step 403 The IDMN saves the private network IP address corresponding to the user identifier, and directly or indirectly establishes a mapping relationship between the network identifier and the private network IP address according to the relationship between the pre-stored user identifier and the network identifier.
  • the direct mapping relationship between the network identifier and the private network IP address is established. Specifically, the mapping relationship between the network identifier and the private network IP address can be added to the mapping between the user identifier and the network identifier. UID, NID, private network IP address, or the mapping between the network identifier and the private network IP address based on the user ID, which is expressed as (NID, private network IP address);
  • Indirectly establishing a mapping relationship means establishing a mapping relationship between a user identifier and a network identifier, and a mapping relationship between the user identifier and the private network IP address, and indirectly obtaining the network identifier and the private network IP address through the two mapping relationships. Mapping relationship.
  • the network identifier corresponding to the user ID is not set in advance, you can select an idle public IP address, or an idle public IP address and an idle port number segment, or a non-idle public IP address and an idle port number segment. And as a network identifier corresponding to the identifier of the first UE, and storing a correspondence between the user identifier, the network identifier, and the private network IP address of the first UE.
  • Step 404 The IDMN returns an online response message of the first UE to the AGW.
  • Step 405 the first UE after the uplink initiates an Internet access procedure, and sends a data packet to the AGW, and the AGW selects the eTN according to the policy, and sends the data packet to the selected eTN.
  • Step 406 The eTN determines whether the data packet is the first data packet of the first UE. If it is the first data packet, step 407 is performed, otherwise step 412 is performed.
  • the specific judgment mode is to query the mapping table of the private network IP address and the network identifier according to the private network IP address carried in the source IP address field of the data packet. If the record can be queried, it is not the first data packet. It is considered to be the first data packet; or first query the NAT and/or NAPT data flow mapping relationship. If there is a mapping entry corresponding to the data packet, it is not the first data packet. If it does not exist, it is further based on the source IP address field of the data packet. The private network IP address carried in the private network IP address and network identifier mapping table. If the record can be queried, it is not the first data packet. If the query is not found, it is considered to be the first data packet.
  • the first data packet here refers to the first data packet received by the eTN from the UE, and does not specifically refer to the first data packet sent after the UE goes online.
  • Step 407 The eTN sends a network identity query request to the IDMN, where the private network IP address of the first UE is carried.
  • Step 408 The IDMN searches for the network identifier corresponding to the private network IP address from the mapping table of the network identifier and the private network IP address, and saves the address information of the eTN that sends the network identifier query request, that is, the RID, as the eTN passed by the first UE.
  • the network identifier corresponding to the private network IP address is queried, the network identifier is returned to the eTN as a query result; if the query is not found, the returned query result is empty.
  • the IDMN saves the RID and establishes a mapping relationship between the network identifier and the RID, which can be expressed as (UID, NID, private network IP address, RID), or (NID, RID), and is guaranteed to be sent to the first in other eTN or IWN.
  • the IDMN can be queried for the current service eTN of the first UE.
  • Step 409 The IDMN returns a network identity query response message to the eTN, and carries the query result.
  • Step 410 The eTN caches the mapping relationship between the network identifier and the private network IP address.
  • Step 411 The eTN establishes a NAT and/or NAPT entry of the data flow according to the mapping relationship between the network identifier and the private network IP address, completes the NAT and/or NAPT operation, and forwards the operation to the selected interworking node.
  • the public network IP address in the NAT and/or NAPT entries can only be the IP address defined by the network identifier.
  • the port can only select the port that is not occupied from the port range defined by the network identifier.
  • the eTN discards the data packet according to the local policy or performs a dynamic NAT and/or NAPT operation.
  • Step 412 After receiving the subsequent data packet from the first UE, the eTN performs NAT and/or NAPT operations according to the mapping relationship between the previously cached network identifier and the private network IP address, and forwards the operation to the selected interworking node.
  • step 406 For specific determination process as to whether it is a subsequent data packet, see step 406.
  • the network identity allocation process and the data packet transmission process are implemented, and the transmitted data packet carries the network identifier (ie, the public network IP address or the public network IP address and port) allocated to the UE.
  • the network identifier ie, the public network IP address or the public network IP address and port
  • FIG. 12 is a schematic diagram of a UE data packet receiving process according to an embodiment of the present invention. After the first UE goes online and successfully sends data to the Internet, the Internet or other UEs in the network send the first UE data packet. Scene. For the sake of simplicity, only the scenario in which the IWN sends a data packet to the first UE is shown in the figure, including steps 501-509; the sending process of the eTN is the same.
  • Step 501 The first UE is online, and the first UE online access procedure and the data packet sending process shown in FIG. 4 are completed.
  • Step 502 The IWN receives the data packet sent to the first UE, and locally queries the relationship between the network identifier and the location identifier according to the network identifier of the first UE carried in the destination address of the data packet. Then, step 503 is performed to query the IDMN. Otherwise, step 508 is executed to forward the data packet to the corresponding eTN according to the queried location identifier.
  • Step 503 The IWN sends a location query request to the IDMN, where the network identifier of the first UE is carried.
  • Step 504 The IDMN queries the location identifier corresponding to the network identifier, that is, the address information of the eTN currently serving the first UE.
  • Step 505 The IDMN returns a location query response message to the IWN, and carries the location identifier.
  • Step 506 the IWN saves the mapping relationship between the network identifier and the location identifier, and forwards the data packet to the corresponding eTN.
  • Step 507 the eTN performs NAT and/or NAPT conversion, and sends the converted data packet to the AGW, and the AGW sends the data to the first UE through the access network;
  • Step 508 If the IWN receives the subsequent data packet sent to the first UE, the mapping relationship between the network identifier and the location identifier can be locally queried in step 502; and the data packet is forwarded to the corresponding according to the result of the query. eTN;
  • Step 509 is the same as step 507.
  • the data packet with the network identifier as the destination address can be correctly sent to the corresponding UE.
  • FIG. 13 is a schematic diagram of a process for replacing an eTN according to an embodiment of the present invention, showing that an eTN reselection occurs during a UE communication process, such as an eTN downtime, a link terminal between an AGW and an eTN, and the AGW will
  • the process of reselecting the appropriate eTN to continue the service for the UE includes steps 601-614.
  • Step 601 When the first UE is performing the communication service through the first eTN, and the data packet is being sent or the data packet is being received, the AGW detects that the first eTN exits the service, and selects another eTN in the eTN pool according to the routing policy, such as the second. eTN;
  • Step 602 After receiving the data packet, the second eTN determines whether the data packet is the first data packet of the first UE, because the AGW sends the data packet of the first UE to the second eTN for the first time, so it is determined to be the first The data packet, the specific judgment manner is shown in step 406 of FIG. 4;
  • Steps 603 to 608 are the same as steps 407 to 412, respectively, except that the eTN is changed to the second eTN, and the second eTN queries the mapping relationship between the private network IP address and the network identifier, and performs NAT and/or according to the mapping relationship.
  • NAPT operation performing data packets from the first UE Convert and send;
  • Step 609 After receiving the network identifier query request of the second eTN, the IDMN learns that the first UE has switched from the first eTN to the second eTN, and the IDMN sends a delete UE request message to the first eTN to notify the first eTN.
  • the first UE has left the node;
  • Step 610 The first eTN deletes the mapping relationship between the network identifier of the locally saved first UE and the private network IP address, and the corresponding NAT and/or NAPT entry, and no longer provides services for the first UE.
  • Step 611 The first eTN returns a delete UE request response to the IDMN.
  • Step 612 the IDMN sends a location change notification message to the IWN, carrying the network identifier of the first UE and the location identifier of the second eTN, and informing the IWN that the first UE has moved to the second eTN;
  • Step 613 The IWN updates the mapping relationship between the network identifier of the first UE and the location identifier, and replaces the location identifier of the first eTN in the original mapping relationship with the location identifier of the second eTN.
  • step 614 the IWN returns a location change notification response message to the IDMN.
  • the subsequent IWN receives the data packet sent to the first UE, and sends the data packet to the second eTN according to the updated mapping relationship.
  • the new eTN can be selected to continue to provide services for the UE, ensuring uninterrupted services, and enabling pooled deployment.
  • FIG. 14 is a schematic diagram of a UE offline process according to an embodiment of the present invention, showing a process in which the first UE on the uplink leaves the network and goes offline, including steps 701-710.
  • Step 701 The first UE goes offline.
  • the first UE goes offline and/or the first UE is in a location switch, so that the first UE leaving the attached AGW can be regarded as the first UE going offline.
  • Step 702 The AGW sends an offline message of the first UE to the IDMN, where the user identifier of the first UE is carried.
  • Step 703 The IDMN deletes the corresponding network identifier and the private network IP address according to the user identifier.
  • Step 704 the IDMN returns an offline message response to the AGW.
  • Step 705 The IDMN sends a downlink notification message of the first UE to the corresponding eTN according to the location identifier, where the network identifier of the first UE and the private network IP address are carried.
  • Step 706 The eTN deletes a mapping relationship between the network identifier of the first UE and the private network IP address, and the established NAT and/or NAPT entry.
  • Step 707 The eTN returns an offline notification response to the IDMN.
  • Step 708 The IDMN sends an offline notification message of the first UE to the IWN, where the network identifier of the first UE is carried.
  • Step 709 The IWN deletes a mapping relationship between the network identifier of the first UE and the location identifier.
  • Step 710 The IWN returns an offline notification response to the IDMN.
  • the offline process of the first UE is completed, and the eTN and the IWN are no longer served by the first UE.
  • Embodiments of the present invention also provide a storage medium.
  • an execution instruction is stored in the storage medium, and the execution instruction is used to execute the foregoing method.
  • the foregoing storage medium may include, but is not limited to, a USB flash drive, a Read-Only Memory (ROM), and a Random Access Memory (RAM).
  • ROM Read-Only Memory
  • RAM Random Access Memory
  • an address translation method, apparatus, and system, and network identity control method and apparatus provided by the embodiments of the present invention have the following beneficial effects: since the network identifier is corresponding to the user identifier of the UE, it can be used in the public network. A fixed network identifier indicates the UE, thereby meeting the requirements in terms of traceability, security, and flexible deployment.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Small-Scale Networks (AREA)

Abstract

An address converting method, device and system, network identity control method and device. The method comprises: when a first UE comes online, querying, by an identity management node, a network identity corresponding to a user identity of the first UE, and recording a mapping relationship between the found network identity and a private network IP address allocated to the first UE, wherein the network identity is a public network IP address, or a public network IP address and port number segment; when a converting node receives the first data packet from the first UE, querying the identity management node for a network identity corresponding to the private network IP address of the first UE; recording a mapping relationship between the private network IP address of the first UE and the found network identity, and performing address conversion and transmission on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship. The present invention can identify UE in a public network through a fixed network identity.

Description

地址转换方法、装置及系统、网络标识控制方法及装置Address conversion method, device and system, network identification control method and device 技术领域Technical field
本发明涉及通信领域,具体涉及一种地址转换方法、装置及系统、网络标识控制方法及装置。The present invention relates to the field of communications, and in particular, to an address translation method, device and system, and network identity control method and apparatus.
背景技术Background technique
图1是典型的互联网接入网络示意图。UE(User Equipment,用户设备)通过接入网连接接入网关,接入网关通过转换节点连接互联网。Figure 1 is a schematic diagram of a typical Internet access network. The UE (User Equipment) connects to the access gateway through the access network, and the access gateway connects to the Internet through the switching node.
其中,UE可以是位置固定的终端,如家庭终端,也可以是处于移动状态的终端,如手机、个人数字助理PAD(Portable Android Device,平板电脑)等易于携带性的移动终端;The UE may be a terminal with a fixed location, such as a home terminal, or a terminal in a mobile state, such as a mobile terminal, a portable digital device (PAD), and the like.
AGW(Access Gateway,接入网关)实现用户管理、IP(Internet Protocol,网络互连协议)地址管理分配、建立用户连接、数据包处理和转发等功能,对于移动网络可以是GGSN(Gateway General Packet Radio Service Support Node,网关通用分组无线服务技术支持节点)、PGW(Packet Data Network Gateway,分组数据网络网关)等设备,对于固定接入网络可以是BRAS(Broad Band Remote Access Server,宽带接入服务器)等设备。在UE接入过程中,还会与认证服务器交互,提供用户身份的认证,保证接入的合法性,由于认证服务器与本发明的技术无关,后续不再提及。AGW (Access Gateway) implements user management, IP (Internet Protocol) address management allocation, user connection, packet processing, and forwarding. For mobile networks, it can be GGSN (Gateway General Packet Radio). Service Support Node, Gateway General Packet Radio Service Support Node), PGW (Packet Data Network Gateway), etc. For fixed access networks, it can be BRAS (Broad Band Remote Access Server). device. During the UE access process, the authentication server also interacts with the authentication server to ensure the validity of the access. Since the authentication server is independent of the technology of the present invention, it will not be mentioned later.
其中,IP地址的管理分配机制一般是AGW建立本地IP地址池,当UE上线认证成功后,从本地IP地址池中选取一个未被占用的IP地址分配给UE;当UE下线时,释放所述分配的IP地址。从上述过程可知,采用这种机制,UE的IP地址是动态分配的,因此每次UE上线,分配的地址可能都不同。The management and allocation mechanism of the IP address is generally that the AGW establishes a local IP address pool. After the UE is successfully authenticated, the UE selects an unoccupied IP address from the local IP address pool and allocates it to the UE. When the UE goes offline, the UE is released. The assigned IP address. It can be seen from the above process that with this mechanism, the IP address of the UE is dynamically allocated, so each time the UE goes online, the assigned address may be different.
考虑到IP地址资源紧缺,运营商改变了对UE的IP地址分配方式,进一步的,由原来为直接分配公网IP地址,改变为分配私网IP地址,当 UE访问互联网时,再通过预先部署的TN(Translation Node,转换节点)执行NAT(Network Address Translation,网络地址转换)/NAPT(Network Address Port Translation,网络地址端口转换)功能,将该私网IP地址转换为公网IP地址并发送,以节省IP地址资源。Considering the shortage of IP address resources, the operator changed the IP address allocation method for the UE. Further, it is changed from directly assigning the public network IP address to assigning the private network IP address. When the UE accesses the Internet, the network address translation (NAT) function is performed by using a pre-deployed TN (Translation Node) to perform the network address translation (NAT) function. Convert to a public IP address and send it to save IP address resources.
由于AGW动态分配私网IP地址,且会经过TN访问互联网,导致了UE接入互联网时,为其所分配的私网IP地址及转换后的公网IP地址均不相同,尤其是移动UE可能通过不同的AGW或不同的NAT/NAPT设备接入互联网时,这种现象更为显著。The AGW dynamically allocates the IP address of the private network and accesses the Internet through the TN. As a result, when the UE accesses the Internet, the private IP address assigned to the UE and the converted public IP address are different, especially the mobile UE may be This phenomenon is more pronounced when accessing the Internet through different AGWs or different NAT/NAPT devices.
上述IP地址的分配机制,增加了互联网的监管难度,使得互联网运营商无法实现对非法操作终端进行准确及时的查找。且对于业务供应商来说,由于同一个UE的互联网公网地址不固定,使其无法对该移动终端进行有效跟踪、业务访问分析,提供更为良好的服务。The above IP address allocation mechanism increases the difficulty of Internet supervision, making it impossible for Internet operators to perform accurate and timely searching for illegal operation terminals. For the service provider, because the public network address of the same UE is not fixed, it is impossible to effectively track the mobile terminal and analyze the service access, and provide a better service.
发明内容Summary of the invention
本发明要解决的技术问题是如何通过固定的网络标识在公网中标识出UE,进而满足在溯源、业务服务等方面的需求。The technical problem to be solved by the present invention is how to identify the UE in the public network through a fixed network identifier, thereby satisfying the requirements in terms of traceability and service services.
为了解决上述问题,采用如下技术方案。In order to solve the above problems, the following technical solutions are adopted.
一种地址转换方法,包括:An address translation method includes:
标识管理节点当第一用户设备UE上线后,查询所述第一UE的用户标识对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;After the first user equipment UE is online, the identifier management node queries the network identifier corresponding to the user identifier of the first UE, and records the mapping between the queried network identifier and the private network IP address allocated to the first UE. Relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
转换节点当收到来自所述第一UE的首个数据包时,向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识;记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地 址转换和发送。The switching node queries the identifier management node for the network identifier corresponding to the private network IP address of the first UE when the first data packet is received from the first UE, and records the private network IP of the first UE. a mapping relationship between the address and the queried network identifier, and the data packet from the first UE and the data packet sent to the first UE are performed according to the recorded mapping relationship Address translation and transmission.
可选地,所述标识管理节点当第一UE上线后,查询所述第一UE的用户标识对应的网络标识包括:Optionally, after the first UE is online, the network management node corresponding to the user identifier of the first UE includes:
当所述第一UE上线后,接入网关向所述标识管理节点发送所述第一UE的上线消息,所述上线消息中含有所述第一UE的用户标识、所述接入网关分配给所述第一UE的私网IP地址;After the first UE is online, the access gateway sends an online message of the first UE to the identity management node, where the online message includes the user identifier of the first UE, and the access gateway allocates The private network IP address of the first UE;
所述标识管理节点收到所述上线消息后,依据所述上线消息中所述第一UE的用户标识查询到对应的网络标识。After receiving the online message, the identity management node queries the corresponding network identifier according to the user identifier of the first UE in the online message.
可选地,所述根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送包括:Optionally, the performing address translation and sending of the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship includes:
所述转换节点根据第一UE的私网IP地址和所述网络标识之间的关系,建立网络地址转换NAT和/或网络地址端口转换NAPT数据流映射关系,执行NAT和/或NAPT处理,包括:将来自所述第一UE的数据包中的源IP地址和端口分别转换成网络标识中的公网IP地址和网络标识所限定的端口范围内的端口,将发往第一UE的数据包中的目的IP地址和端口转换成与相应网络标识对应的私网IP地址和端口。The switching node establishes a mapping relationship between the network address translation NAT and/or the network address port conversion NAPT data flow according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including Transmitting the source IP address and the port in the data packet from the first UE into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and sending the data packet to the first UE The destination IP address and port in the network are translated into a private network IP address and port corresponding to the corresponding network identifier.
可选地,所述标识管理节点查询所述第一UE的用户标识对应的网络标识后还包括:Optionally, after the identifier management node queries the network identifier corresponding to the user identifier of the first UE, the method further includes:
所述标识管理节点当查找不到第一UE的用户标识对应的网络标识时,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系;记录所分配的网络标识与分配给所述第一UE的私网IP地址之间的映射关系。When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address. An address and an idle port number segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
可选地,所述转换节点向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识后还包括:Optionally, after the querying the node to query the identifier management node for the network identifier corresponding to the private network IP address of the first UE, the method further includes:
所述标识管理节点根据所述第一UE的私网IP地址查询网络标识与私 网IP地址之间的映射关系;The identifier management node queries the network identifier and the private network according to the private network IP address of the first UE. Mapping relationship between network IP addresses;
如果查询到所述第一UE的私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给所述转换节点;If the network identifier corresponding to the private network IP address of the first UE is queried, the network identifier is returned to the conversion node as a query result;
如果查询不到,则返回表示没有此UE的查询结果给所述转换节点;或者,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系,保存所述第一UE的私网IP地址与所分配的网络标识之间的映射关系,并将所分配的网络标识作为查询结果返回给所述转换节点。If the query is not available, return a query result indicating that there is no such UE to the conversion node; or, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public network The IP address and the idle port number segment are used as the network identifier allocated to the first UE, and the correspondence between the user identifier of the first UE and the assigned network identifier is saved, and the private state of the first UE is saved. A mapping relationship between the network IP address and the assigned network identifier, and returning the allocated network identifier to the conversion node as a query result.
可选地,所述转换节点向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识后还包括:Optionally, after the querying the node to query the identifier management node for the network identifier corresponding to the private network IP address of the first UE, the method further includes:
所述标识管理节点获取查询网络标识的所述转换节点的地址信息,记录所述第一UE的用户标识和/或网络标识与所述转换节点的地址信息之间的对应关系。The identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
可选地,所述的方法还包括:Optionally, the method further includes:
所述标识管理节点当有新的转换节点查询所述第一UE的私网IP地址对应的网络标识时,根据所述新的转换节点的地址信息更新所述第一UE的用户和/或网络标识与转换节点的地址信息之间的对应关系;通知所述第一UE原先对应的转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。And the identifier management node updates the user and/or the network of the first UE according to the address information of the new transition node when the new switch node queries the network identifier corresponding to the private network IP address of the first UE. Identifying a correspondence between the address information and the address information of the conversion node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the network identifier of the first UE and/or is originally allocated to the The private network IP address of the first UE.
可选地,所述的方法还包括:Optionally, the method further includes:
当所述第一UE下线时,接入网关向所述标识管理节点发送所述第一UE的下线消息,携带原先分配给所述第一UE的私网IP地址;When the first UE goes offline, the access gateway sends the offline message of the first UE to the identity management node, and carries the private network IP address originally allocated to the first UE;
所述标识管理节点收到所述下线消息后,删除所述第一UE的网络标识与私网IP地址之间的映射关系;通知所述第一UE原先对应的所述转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。 After receiving the offline message, the identifier management node deletes a mapping relationship between the network identifier of the first UE and the private network IP address, and notifies the first node that the first UE corresponds to the conversion node. A UE is offline, and the notification carries the network identifier of the first UE and/or a private network IP address originally allocated to the first UE.
可选地,所述的方法还包括:Optionally, the method further includes:
所述转换节点当收到所述第一UE下线的通知后,删除所述第一UE的私网IP地址与网络标识之间的映射关系,并删除所建立的NAT和/或NAPT数据流映射关系。After receiving the notification that the first UE goes offline, the mapping node deletes the mapping relationship between the private network IP address of the first UE and the network identifier, and deletes the established NAT and/or NAPT data stream. Mapping relations.
一种地址转换方法,包括:An address translation method includes:
转换节点当收到来自所述第一用户设备UE的首个数据包时,查询所述第一UE的私网IP地址对应的网络标识;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The switching node queries the network identifier corresponding to the private network IP address of the first UE when receiving the first data packet from the first user equipment UE; the network identifier is a public network IP address, or a public network IP address. Address and port number segment;
所述转换节点记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。The switching node records a mapping relationship between the private network IP address of the first UE and the queried network identifier, and sends a data packet from the first UE to the first according to the recorded mapping relationship. A UE's data packet is address translated and transmitted.
可选地,所述根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送包括:Optionally, the performing address translation and sending of the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship includes:
所述转换节点根据第一UE的私网IP地址和所述网络标识之间的关系,建立网络地址转换NAT和/或网络地址端口转换NAPT数据流映射关系,执行NAT和/或NAPT处理,包括:将来自所述第一UE的数据包中的源IP地址和端口分别转换成网络标识中的公网IP地址和网络标识所限定的端口范围内的端口;将发往第一UE的数据包中的目的IP地址和端口转换成与相应网络标识对应的私网IP地址和端口。The switching node establishes a mapping relationship between the network address translation NAT and/or the network address port conversion NAPT data flow according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including Transmitting a source IP address and a port in the data packet from the first UE into a public network IP address in the network identifier and a port in a port range defined by the network identifier; and sending the data packet to the first UE The destination IP address and port in the network are translated into a private network IP address and port corresponding to the corresponding network identifier.
可选地,所述的方法还包括:Optionally, the method further includes:
所述转换节点当收到所述第一UE下线的通知后,根据所述通知中携带的所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址,删除所述第一UE的私网IP地址与网络标识之间的映射关系,并删除所建立的NAT和/或NAPT数据流映射关系。 After receiving the notification that the first UE is offline, the switching node, according to the network identifier of the first UE carried in the notification, and/or the private network IP address originally allocated to the first UE, And deleting a mapping relationship between the private network IP address of the first UE and the network identifier, and deleting the established NAT and/or NAPT data flow mapping relationship.
一种网络标识控制方法,包括:A network identity control method includes:
标识管理节点当第一用户设备UE上线后,根据所述第一UE的用户标识查询对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;After the first user equipment UE is online, the identifier management node queries the corresponding network identifier according to the user identifier of the first UE, and records between the queried network identifier and the private network IP address allocated to the first UE. Mapping relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
所述标识管理节点当收到转换节点查询网络标识的请求后,根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识,作为查询结果返回给所述转换节点。After receiving the request for the conversion node to query the network identifier, the identifier management node queries the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and returns the result to the conversion node as a query result.
可选地,所述标识管理节点根据所述第一UE的用户标识查询对应的网络标识后还包括:Optionally, after the identifier management node queries the corresponding network identifier according to the user identifier of the first UE, the method further includes:
所述标识管理节点当查找不到第一UE的用户标识对应的网络标识时,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系;记录所分配的网络标识与分配给所述第一UE的私网IP地址之间的映射关系。When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address. An address and an idle port number segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
可选地,所述标识管理节点根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识后还包括:Optionally, after the identifier management node queries the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, the method further includes:
所述标识管理节点如果查询到所述第一UE的私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给所述转换节点;如果查询不到,则返回表示没有此UE的查询结果给所述转换节点;或者,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系,保存所述第一UE的私网IP地址与所分配的网络标识之间的映射关系,并将所分配的网络标识作为查询结果返回给所述转换节点。And if the identifier management node queries the network identifier corresponding to the private network IP address of the first UE, the network identifier is returned to the conversion node as a query result; if not, the return indicates that there is no such UE The query result is given to the conversion node; or, the idle public network IP address, or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment are allocated as the allocation. The network identifier of the first UE is saved, and the correspondence between the user identifier of the first UE and the allocated network identifier is saved, and the private network IP address of the first UE is saved and the allocated network identifier is saved. The mapping relationship and return the assigned network identifier to the conversion node as a query result.
可选地,所述标识管理节点当收到转换节点查询网络标识的请求后还 包括:Optionally, the identifier management node receives the request of the conversion node to query the network identifier. include:
所述标识管理节点获取查询网络标识的所述转换节点的地址信息,记录所述第一UE的用户标识和/或网络标识与所述转换节点的地址信息之间的对应关系。The identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
可选地,所述的方法还包括:Optionally, the method further includes:
所述标识管理节点当有新的转换节点请求查询所述第一UE的私网IP地址对应的网络标识时,根据所述新的转换节点的地址信息更新所述第一UE的用户和/或网络标识与转换节点的地址信息之间的对应关系;通知所述第一UE原先对应的转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。When the new management node requests to query the network identifier corresponding to the private network IP address of the first UE, the identifier management node updates the user of the first UE according to the address information of the new transition node. Corresponding relationship between the network identifier and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, the notification carrying the network identifier of the first UE and/or originally assigned to The private network IP address of the first UE.
可选地,所述的方法还包括:Optionally, the method further includes:
所述标识管理节点当所述第一UE下线后,删除所述第一UE的网络标识与私网IP地址之间的映射关系。After the first UE goes offline, the identity management node deletes the mapping relationship between the network identifier of the first UE and the private network IP address.
可选地,所述标识管理节点删除第一UE的网络标识与私网IP地址之间的映射关系后还包括:Optionally, after the mapping management node deletes the mapping relationship between the network identifier of the first UE and the private network IP address, the identifier management node further includes:
所述标识管理节点通知所述第一UE原先对应的所述转换节点所述第一UE下线,通知中携带原先分配给所述第一UE的网络标识和/或私网IP地址。The identifier management node notifies the first UE that the first UE corresponds to the first node to go offline, and the notification carries the network identifier and/or the private network IP address originally allocated to the first UE.
一种地址转换系统,包括:一个或多个转换节点;An address translation system comprising: one or more conversion nodes;
标识管理节点,设置为当第一用户设备UE上线后,查询所述第一UE的用户标识对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The identifier management node is configured to query the network identifier corresponding to the user identifier of the first UE after the first user equipment UE is online, and record the queried network identifier and the private network IP address allocated to the first UE. The mapping relationship between the network identifiers is a public network IP address, or a public network IP address and a port number segment;
所述转换节点设置为当收到来自所述第一UE的首个数据包时,向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识;记录所 述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。The switching node is configured to, when receiving the first data packet from the first UE, query the identifier management node for a network identifier corresponding to the private network IP address of the first UE; a mapping relationship between the private network IP address of the first UE and the queried network identifier, and the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship Address translation and sending.
可选地,所述的系统还包括:Optionally, the system further includes:
一个或多个接入网关,设置为当所述第一UE上线时,发送所述第一UE的上线消息给所述标识管理节点,所述上线消息中携带所述第一UE的用户标识,及分配给所述第一UE的私网IP地址。One or more access gateways, configured to send an online message of the first UE to the identity management node when the first UE is online, where the online message carries the user identifier of the first UE, And a private network IP address assigned to the first UE.
一种地址转换装置,设置于转换节点,包括:An address conversion device, disposed on the conversion node, includes:
查询请求模块,设置为当收到来自所述第一用户设备UE的首个数据包时,查询所述第一UE的私网IP地址对应的网络标识;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The query requesting module is configured to: when receiving the first data packet from the first user equipment UE, query the network identifier corresponding to the private network IP address of the first UE; the network identifier is a public network IP address, Or public network IP address and port number segment;
转换模块,设置为记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。a conversion module, configured to record a mapping relationship between the private network IP address of the first UE and the queried network identifier, and send the data packet from the first UE to the foregoing according to the recorded mapping relationship The data packet of the first UE is subjected to address translation and transmission.
一种网络标识控制装置,设置于标识管理节点,包括:A network identifier control device is disposed on the identifier management node, and includes:
更新模块,设置为当第一用户设备UE上线后,根据所述第一UE的用户标识查询对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;And an update module, configured to: after the first user equipment UE is online, query the corresponding network identifier according to the user identifier of the first UE, and record the queried network identifier and the private network IP address allocated to the first UE. The mapping relationship between the network identifiers is a public network IP address, or a public network IP address and a port number segment;
查询模块,设置为当收到转换节点查询网络标识的请求后,根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识,作为查询结果返回给所述转换节点。The query module is configured to query the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and then return the data identifier to the conversion node as a query result.
本发明实施例提供的地址转换方法、装置及系统、网络标识控制方法及装置中,由于网络标识是和UE的用户标识对应的,因此能够在公网中 使用固定的网络标识表示UE,进而满足在溯源、安全、灵活部署等方面的需求。本发明实施例的可选方案还可以支持增强转换节点构成设备池。In the address translation method, device, and system, and network identity control method and apparatus provided by the embodiments of the present invention, since the network identifier is corresponding to the user identifier of the UE, it can be in the public network. The UE is represented by a fixed network identifier, thereby meeting the requirements in terms of traceability, security, and flexible deployment. The alternative of the embodiment of the present invention may also support the enhanced conversion node to form a device pool.
本发明另一实施例提供了一种计算机存储介质,所述计算机存储介质存储有执行指令,所述执行指令用于执行上述实施例中的方法。Another embodiment of the present invention provides a computer storage medium storing execution instructions for performing the method in the above embodiments.
本发明的其它特征和优点将在随后的说明书中阐述,并且,部分地从说明书中变得显而易见,或者通过实施本发明而了解。本发明的目的和其他优点可通过在说明书、权利要求书以及附图中所特别指出的结构来实现和获得。Other features and advantages of the invention will be set forth in the description which follows, The objectives and other advantages of the invention may be realized and obtained by means of the structure particularly pointed in the appended claims.
附图说明DRAWINGS
附图用来提供对本发明技术方案的进一步理解,并且构成说明书的一部分,与本申请的实施例一起用于解释本发明的技术方案,并不构成对本发明技术方案的限制。The drawings are used to provide a further understanding of the technical solutions of the present invention, and constitute a part of the specification, which together with the embodiments of the present application are used to explain the technical solutions of the present invention, and do not constitute a limitation of the technical solutions of the present invention.
图1为现有的互联网接入示意图;FIG. 1 is a schematic diagram of an existing Internet access;
图2为本发明实施例一的地址转换方法的流程示意图;2 is a schematic flowchart of an address conversion method according to Embodiment 1 of the present invention;
图3为本发明实施例二的地址转换方法的流程示意图;3 is a schematic flowchart of an address translation method according to Embodiment 2 of the present invention;
图4为本发明实施例三的网络标识控制方法的流程示意图;4 is a schematic flowchart of a network identity control method according to Embodiment 3 of the present invention;
图5为本发明实施例四的地址转换系统的示意图;FIG. 5 is a schematic diagram of an address translation system according to Embodiment 4 of the present invention; FIG.
图6为本发明实施例五的地址转换装置的示意图;6 is a schematic diagram of an address translation apparatus according to Embodiment 5 of the present invention;
图7为本发明实施例六的网络标识控制装置的示意图;FIG. 7 is a schematic diagram of a network identity control apparatus according to Embodiment 6 of the present invention; FIG.
图8为本发明实施例示例1的流程示意图;8 is a schematic flowchart of Example 1 of an embodiment of the present invention;
图9为本发明实施示例2提供的系统的结构示意图;9 is a schematic structural diagram of a system according to Embodiment 2 of the present invention;
图10为本发明实施示例3提供的在多AGW和多eTN的部署示意图;FIG. 10 is a schematic diagram of deployment of multiple AGWs and multiple eTNs according to Embodiment 3 of the present invention; FIG.
图11为本发明实施示例4提供的UE上线过程和数据发送过程示意图;11 is a schematic diagram of a UE online procedure and a data transmission process according to Embodiment 4 of the present invention;
图12为本发明实施示例5提供的UE用户数据包接收过程示意图; 12 is a schematic diagram of a UE user data packet receiving process according to Embodiment 5 of the present invention;
图13为本发明实施示例6提供的AGW重选eTN的过程示意图;13 is a schematic diagram of a process of reselecting an eTN by an AGW according to Embodiment 6 of the present invention;
图14为本发明实施示例7提供的UE下线过程示意图。FIG. 14 is a schematic diagram of a UE offline process according to Embodiment 7 of the present invention.
具体实施方式detailed description
下面将结合附图及实施例对本发明的技术方案进行更详细的说明。The technical solution of the present invention will be described in more detail below with reference to the accompanying drawings and embodiments.
需要说明的是,如果不冲突,本发明实施例以及实施例中的各个特征可以相互结合,均在本发明的保护范围之内。另外,虽然在流程图中示出了逻辑顺序,但是在某些情况下,可以以不同于此处的顺序执行所示出或描述的步骤。It should be noted that, if not conflicting, the embodiments of the present invention and the various features of the embodiments may be combined with each other, and are all within the protection scope of the present invention. Additionally, although logical sequences are shown in the flowcharts, in some cases the steps shown or described may be performed in a different order than the ones described herein.
实施例一、一种地址转换方法,如图2所示,包括:Embodiment 1 An address conversion method, as shown in FIG. 2, includes:
S110、标识管理节点当第一UE上线后,查询所述第一UE的用户标识对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;S110. The identifier management node queries the network identifier corresponding to the user identifier of the first UE after the first UE is online, and records a mapping between the queried network identifier and the private network IP address allocated to the first UE. Relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
S120、转换节点当收到来自所述第一UE的首个数据包时,向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识;记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。S120. The switching node, when receiving the first data packet from the first UE, query the identifier management node for a network identifier corresponding to the private network IP address of the first UE, and record the private information of the first UE. A mapping relationship between the network IP address and the queried network identifier, and performing address translation and transmission on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship.
本实施例中,所述标识管理节点可以但不限于通过接收AGW发送的第一UE的上线消息获知所述第一UE上线;所述上线消息中携带所述第一UE的用户标识,和所述AGW分配给所述第一UE的私网IP地址。In this embodiment, the identifier management node may be, but is not limited to, receiving the online message of the first UE that is sent by the AGW to learn that the first UE is online; the online message carries the user identifier of the first UE, and The private network IP address assigned by the AGW to the first UE.
本实施例中,所述转换节点可以但不限于通过发送网络标识查询请求,向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识;所述网络标识查询请求中携带所述第一UE的私网IP地址,即所述数据包中的源IP地址。In this embodiment, the switching node may be, but is not limited to, sending a network identifier query request, and querying, by the identifier management node, a network identifier corresponding to the private network IP address of the first UE; The private network IP address of the first UE, that is, the source IP address in the data packet.
本实施例中,所述转换节点所收到的来自所述第一UE的首个数据包 的源IP地址,即所述第一UE的私网IP地址。In this embodiment, the first data packet received by the switching node from the first UE The source IP address, that is, the private network IP address of the first UE.
本实施例中的所述转换节点比现有的转换节点增加了更多功能,因此在后文中称为增强转换节点。The conversion node in this embodiment adds more functions than the existing conversion node, and is therefore referred to as an enhanced conversion node hereinafter.
可选地,所述标识管理节点当第一UE上线后,查询所述第一UE的用户标识对应的网络标识包括:Optionally, after the first UE is online, the network management node corresponding to the user identifier of the first UE includes:
当所述第一UE上线后,接入网关向所述标识管理节点发送所述第一UE的上线消息,所述上线消息中含有所述第一UE的用户标识、所述接入网关分配给所述第一UE的私网IP地址;After the first UE is online, the access gateway sends an online message of the first UE to the identity management node, where the online message includes the user identifier of the first UE, and the access gateway allocates The private network IP address of the first UE;
所述标识管理节点收到所述上线消息后,依据所述上线消息中所述第一UE的用户标识查询到对应的网络标识。After receiving the online message, the identity management node queries the corresponding network identifier according to the user identifier of the first UE in the online message.
可选地,步骤S110前还可以包括:Optionally, before step S110, the method may further include:
所述标识管理节点建立用户标识和网络标识映射表,根据运营商的配置,预先保存用户标识与网络标识的映射关系。The identifier management node establishes a user identifier and a network identifier mapping table, and pre-stores a mapping relationship between the user identifier and the network identifier according to the configuration of the operator.
可选地,所述标识管理节点查询所述第一UE的用户标识对应的网络标识后还包括:Optionally, after the identifier management node queries the network identifier corresponding to the user identifier of the first UE, the method further includes:
所述标识管理节点当查找不到第一UE的用户标识对应的网络标识时,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系;记录所分配的网络标识与分配给所述第一UE的私网IP地址之间的映射关系。When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address. An address and an idle port number segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
本可选方案中,所述标识管理节点中可以预先保存空闲的公网IP地址和端口号段,当为第一UE选择了网络标识后,将选择为网络标识的公网IP地址、或公网IP地址及端口号段标记为不空闲。In the optional solution, the public network IP address and the port number segment of the public network may be pre-stored in the identifier management node. When the network identifier is selected for the first UE, the public network IP address of the network identifier or the public network address is selected. The network IP address and port number segment are marked as not idle.
可选地,步骤S120中,所述转换节点接收到所述第一UE的首个数据包的场景包括:所述第一UE上线后发送的第一个数据包,以及所述第 一UE切换到所述转换节点后,发送的第一个数据包。Optionally, in the step S120, the scenario that the converting node receives the first data packet of the first UE includes: a first data packet sent after the first UE is online, and the first The first data packet sent after a UE switches to the switching node.
可选地,步骤S120之前还包括:Optionally, before step S120, the method further includes:
当所述转换节点接收到来自UE的数据包,首先根据数据包中的源IP地址(即私网IP地址)查询本地保存的私网IP地址与网络标识的映射关系,如果能查询到,则根据查询到的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送,如果没有查询到,则确定是来自所述第一UE的首个数据包,执行步骤S120。When the switching node receives the data packet from the UE, firstly, according to the source IP address (that is, the private network IP address) in the data packet, the mapping relationship between the locally saved private network IP address and the network identifier is queried, and if the query can be queried, Decoding and transmitting a data packet from the first UE and a data packet sent to the first UE according to the queried mapping relationship, if not, determining that it is the first one from the first UE The data packet is executed in step S120.
可选地,所述转换节点向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识后还包括:Optionally, after the querying the node to query the identifier management node for the network identifier corresponding to the private network IP address of the first UE, the method further includes:
所述标识管理节点根据所述第一UE的私网IP地址查询网络标识与私网IP地址之间的映射关系,并将查询结果返回给转换节点。The identifier management node queries the mapping relationship between the network identifier and the private network IP address according to the private network IP address of the first UE, and returns the query result to the conversion node.
本可选方案中,如果查询到所述第一UE的私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给所述转换节点;如果查询不到,则返回表示没有此UE的查询结果给所述转换节点;或者,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系,保存所述第一UE的私网IP地址与所分配的网络标识之间的映射关系,并将所分配的网络标识作为查询结果返回给所述转换节点。In this alternative, if the network identifier corresponding to the private network IP address of the first UE is queried, the network identifier is returned to the conversion node as a query result; if the query is not found, the return indicates that there is no such The query result of the UE is sent to the conversion node; or, the idle public network IP address, or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment are selected as a network identifier that is allocated to the first UE, and a correspondence between the user identifier of the first UE and the assigned network identifier, and the private network IP address of the first UE and the allocated network identifier are saved. The mapping relationship between the two, and the assigned network identifier is returned to the conversion node as a query result.
可选地,所述转换节点向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识后还包括:Optionally, after the querying the node to query the identifier management node for the network identifier corresponding to the private network IP address of the first UE, the method further includes:
所述标识管理节点获取查询网络标识的所述转换节点的地址信息,记录所述第一UE的用户标识和/或网络标识与所述转换节点的地址信息之间的对应关系。The identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
可选地,所述根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送包括:Optionally, the performing address translation and sending of the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship includes:
转换节点根据第一UE的私网IP地址和所述网络标识之间的关系,建 立NAT和/或NAPT数据流映射关系,执行NAT和/或NAPT处理,包括:将来自所述第一UE的数据包中的源IP地址和端口分别转换成网络标识中的公网IP地址和网络标识所限定的端口范围内的端口,并建立NAT和/或NAPT数据流映射关系;The switching node is built according to the relationship between the private network IP address of the first UE and the network identifier. Performing NAT and/or NAPT data flow mapping, performing NAT and/or NAPT processing, including: converting source IP address and port in the data packet from the first UE into a public network IP address in the network identifier, and The network identifies the port within the port range defined by the port and establishes a NAT and/or NAPT data flow mapping relationship;
对于发往UE的数据包,根据前面建立的NAT和/或NAPT数据流映射关系将目的公网IP地址转换成所述相应的网络标识对应的私网IP地址,将所述数据包中的端口转换成私网端口。For the data packet sent to the UE, the destination public network IP address is converted into the private network IP address corresponding to the corresponding network identifier according to the previously established NAT and/or NAPT data flow mapping relationship, and the port in the data packet is Convert to a private network port.
本可选方案中,当网络标识为公网IP地址时,所述端口范围是该公网IP地址对应的全部端口;当网络标识为公网IP地址及端口号段时,所述端口范围是指所述端口号段。In the alternative, when the network identifier is a public network IP address, the port range is all ports corresponding to the public network IP address; when the network identifier is a public network IP address and a port number segment, the port range is Refers to the port number segment.
本可选方案中,比如假设网络标识X为“180.100.220.210”,则当目的公网IP地址为“180.100.220.210”时,所确定的网络标识就是X,或者为“180.100.220.210”及端口号段“1024-2047”,则当目的公网IP地址为“180.100.220.210”且端口为端口号段中的一个值时,如1026,所确定的网络标识就是X。In this alternative, for example, if the network identifier X is “180.100.220.210”, when the destination public network IP address is “180.100.220.210”, the determined network identifier is X, or “180.100.220.210” and port. If the destination public network IP address is "180.100.220.210" and the port is a value in the port number segment, such as 1026, the determined network identifier is X.
可选地,步骤S120还包括:所述转换节点当没有查询到网络标识时,丢弃数据包,或者使用本地预设的公网IP地址执行NAT和/或NAPT转换操作。Optionally, step S120 further includes: the switching node discarding the data packet when the network identifier is not queried, or performing a NAT and/or NAPT conversion operation using the locally preset public network IP address.
可选地,所述方法还包括:Optionally, the method further includes:
当所述第一UE下线时,所述标识管理节点删除第一UE的网络标识与私网IP地址之间的映射关系;通知所述第一UE原先对应的所述转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。When the first UE is offline, the identity management node deletes a mapping relationship between the network identifier of the first UE and the private network IP address, and notifies the first node that the first UE originally corresponds to the first node. The UE is offline, and the notification carries the network identifier of the first UE and/or the private network IP address originally allocated to the first UE.
本可选方案中,所述标识管理节点可以但不限于通过接收AGW发送的第一UE的下线消息获知所述第一UE下线;所述AGW当第一UE下线时发送下线消息给标识管理节点,下线消息中携带所述AGW原先分配给所述第一UE的私网IP地址。 In this alternative, the identifier management node may be, but is not limited to, receiving the offline message of the first UE that is sent by the AGW, and the first UE is offline; the AGW sends an offline message when the first UE goes offline. To the identity management node, the offline message carries the private network IP address originally allocated by the AGW to the first UE.
本可选方案中,如果标识管理节点曾经保存所述第一UE的网络标识和转换节点的地址信息之间的映射关系,则还需要删除该映射关系。In this alternative, if the mapping management node has previously saved the mapping relationship between the network identifier of the first UE and the address information of the switching node, the mapping relationship needs to be deleted.
本可选方案中,当第一UE下线时,AGW释放分配给第一UE的私网IP地址。In this alternative, when the first UE goes offline, the AGW releases the private network IP address allocated to the first UE.
可选地,所述方法还包括:Optionally, the method further includes:
所述标识管理节点当有新的转换节点查询所述第一UE的私网IP地址对应的网络标识时,根据所述新的转换节点的地址信息更新所述第一UE的用户和/或网络标识与转换节点的地址信息之间的对应关系;通知所述第一UE原先对应的转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。本可选方案中,有新的转换节点查询所述第一UE的私网IP地址对应的网络标识的情况是:AGW根据策略为上线进行业务的第一UE重选转换节点;对于新的转换节点而言,当第一次收到来自第一UE的数据包时,会认为是第一UE的首个数据包,因此向所述标识管理节点查询所述第一UE的网络标识。And the identifier management node updates the user and/or the network of the first UE according to the address information of the new transition node when the new switch node queries the network identifier corresponding to the private network IP address of the first UE. Identifying a correspondence between the address information and the address information of the conversion node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the network identifier of the first UE and/or is originally allocated to the The private network IP address of the first UE. In this alternative, the new conversion node queries the network identifier corresponding to the private network IP address of the first UE: the AGW reselects the conversion node for the first UE performing the service according to the policy; for the new conversion For the node, when the data packet from the first UE is received for the first time, it is considered to be the first data packet of the first UE, and therefore the network identity of the first UE is queried to the identity management node.
可选地,所述方法还可以包括:Optionally, the method may further include:
所述转换节点当收到所述第一UE下线的通知后,删除所述第一UE的私网IP地址与网络标识之间的映射关系,并删除所建立的NAT和/或NAPT数据流映射关系。After receiving the notification that the first UE goes offline, the mapping node deletes the mapping relationship between the private network IP address of the first UE and the network identifier, and deletes the established NAT and/or NAPT data stream. Mapping relations.
本可选方案中,所述第一UE下线的通知可以但不限于为所述标识管理节点发送的删除UE通知或UE下线通知,其中携带要删除的第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。In this alternative, the notification that the first UE is offline may be, but is not limited to, a delete UE notification or a UE offline notification sent by the identifier management node, where the network identifier of the first UE to be deleted is carried and/or The private network IP address originally assigned to the first UE.
本可选方案中,如果曾经针对所述第一UE的网络标识建立了NAT及NAPT数据流映射关系,则需要将NAT和NAPT数据流映射关系都删除;如果针对所述第一UE的网络标识只建立了NAT或NAPT数据流映射关系,则删除建立的NAT或NAPT数据流映射关系。 In this alternative, if the NAT and NAPT data flow mapping relationship is established for the network identifier of the first UE, both the NAT and the NAPT data flow mapping relationship need to be deleted; if the network identifier is used for the first UE Only the NAT or NAPT data flow mapping relationship is established, and the established NAT or NAPT data flow mapping relationship is deleted.
实施例二,一种地址转换方法,如图3所示,包括:Embodiment 2, an address translation method, as shown in FIG. 3, includes:
S210、转换节点当收到来自所述第一UE的首个数据包时,查询所述第一UE的私网IP地址对应的网络标识;所述网络标识为公网IP地址,或者公网IP地址及端口号段;S210. The switch node queries the network identifier corresponding to the private network IP address of the first UE when receiving the first data packet from the first UE. The network identifier is a public network IP address, or a public network IP address. Address and port number segment;
S220、所述转换节点记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。S220. The switching node records a mapping relationship between the private network IP address of the first UE and the queried network identifier, and sends a data packet and a destination to the first UE according to the recorded mapping relationship. The data packet of the first UE is subjected to address conversion and transmission.
可选地,所述根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送包括:Optionally, the performing address translation and sending of the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship includes:
所述转换节点根据第一UE的私网IP地址和所述网络标识之间的关系,建立NAT和/或NAPT数据流映射关系,执行NAT和/或NAPT处理,包括:将来自所述第一UE的数据包中的源IP地址和端口分别转换成网络标识中的公网IP地址和网络标识所限定的端口范围内的端口,将发往第一UE的数据包中的目的IP地址和端口转换成与相应网络标识对应的私网IP地址和端口。The mapping node establishes a NAT and/or NAPT data flow mapping relationship according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including: coming from the first The source IP address and port in the data packet of the UE are respectively converted into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and the destination IP address and port in the data packet to be sent to the first UE. Convert to the private network IP address and port corresponding to the corresponding network identifier.
可选地,所述方法还包括:Optionally, the method further includes:
所述转换节点当收到所述第一UE下线的通知后,根据所述通知中携带的所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址,删除所述第一UE的私网IP地址与网络标识之间的映射关系,并删除所建立的NAT和/或NAPT数据流映射关系。After receiving the notification that the first UE is offline, the switching node, according to the network identifier of the first UE carried in the notification, and/or the private network IP address originally allocated to the first UE, And deleting a mapping relationship between the private network IP address of the first UE and the network identifier, and deleting the established NAT and/or NAPT data flow mapping relationship.
其它实现细节可参见实施例一。For other implementation details, refer to the first embodiment.
实施例三、一种网络标识控制方法,如图4所示,包括:Embodiment 3: A network identity control method, as shown in FIG. 4, includes:
S310、标识管理节点当第一UE上线后,根据所述第一UE的用户标识查询对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网 IP地址及端口号段;S310. After the first UE is online, the identifier management node queries the corresponding network identifier according to the user identifier of the first UE, and records between the queried network identifier and the private network IP address allocated to the first UE. Mapping relationship; the network identifier is a public network IP address, or a public network IP address and port number segment;
S320、所述标识管理节点当收到转换节点查询网络标识的请求后,根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识,作为查询结果返回给所述转换节点。S320. After receiving the request for the switching node to query the network identifier, the identifier management node queries the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and returns the result to the conversion as a query result. node.
本实施例中,所述标识管理节点可以但不限于通过接收AGW发送的第一UE的上线消息获知所述第一UE上线;所述上线消息中携带所述第一UE的用户标识,和所述AGW分配给所述第一UE的私网IP地址。In this embodiment, the identifier management node may be, but is not limited to, receiving the online message of the first UE that is sent by the AGW to learn that the first UE is online; the online message carries the user identifier of the first UE, and The private network IP address assigned by the AGW to the first UE.
本实施例中,所述查询网络标识的请求可称为网络标识查询请求。In this embodiment, the request for querying the network identifier may be referred to as a network identity query request.
可选地,所述标识管理节点根据所述第一UE的用户标识查询对应的网络标识后还包括:Optionally, after the identifier management node queries the corresponding network identifier according to the user identifier of the first UE, the method further includes:
所述标识管理节点当查找不到第一UE的用户标识对应的网络标识时,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系;记录所分配的网络标识与分配给所述第一UE的私网IP地址之间的映射关系。When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address. An address and an idle port number segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
可选地,所述标识管理节点根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识后还包括:Optionally, after the identifier management node queries the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, the method further includes:
所述标识管理节点如果查询到所述第一UE的私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给所述转换节点;如果查询不到,则返回表示没有此UE的查询结果给所述转换节点;或者,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系,保存所述第一UE的私网IP地址与所分配的网络标识之间的映射关系,并将所分配的网络标识作为查询结果返回给所述转换节点。And if the identifier management node queries the network identifier corresponding to the private network IP address of the first UE, the network identifier is returned to the conversion node as a query result; if not, the return indicates that there is no such UE The query result is given to the conversion node; or, the idle public network IP address, or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment are allocated as the allocation. The network identifier of the first UE is saved, and the correspondence between the user identifier of the first UE and the allocated network identifier is saved, and the private network IP address of the first UE is saved and the allocated network identifier is saved. The mapping relationship and return the assigned network identifier to the conversion node as a query result.
可选地,所述标识管理节点当收到转换节点查询网络标识的请求后还 包括:Optionally, the identifier management node receives the request of the conversion node to query the network identifier. include:
所述标识管理节点获取查询网络标识的所述转换节点的地址信息,记录所述第一UE的用户标识和/或网络标识与所述转换节点的地址信息之间的对应关系。The identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
本可选方案中,所述转换节点的地址信息也可以称为位置标识。In this alternative, the address information of the conversion node may also be referred to as a location identifier.
本可选方案涉及以下标识:This alternative involves the following identifiers:
UID(User Identifier,用户标识):能够唯一表明使用UE的用户或UE的身份,如MSISDN(Mobile Station Integrated Services Digital Network Number,移动台综合业务数字网号码)、IMSI(International Mobile Subscriber Identity,国际移动用户识别码)、用户名/账号等。当UE上线时,会携带所述用户标识。UID (User Identifier): The identity of the user or UE that can uniquely indicate the UE, such as MSISDN (Mobile Station Integrated Services Digital Network Number), IMSI (International Mobile Subscriber Identity, International Mobile) User ID), username/account number, etc. When the UE goes online, the user identifier is carried.
NID(Network Identifier,网络标识):能在公网的网络层中唯一表明UE的身份,可以是为UE分配的公网IP地址、或公网IP地址和端口号段,通过数据包中携带的公网IP地址,或公网IP地址加端口即可唯一确定用户身份。NID (Network Identifier): It can uniquely indicate the identity of the UE in the network layer of the public network. It can be the public network IP address assigned to the UE, or the public network IP address and port number segment, which are carried in the data packet. The public network IP address or the public network IP address plus the port can uniquely identify the user.
LID(Location Identifier,位置标识):能够标识AGW所选择的为UE服务的eTN,可以使用eTN的以下任一个参数作为eTN的位置标识:IP地址,URI(Uniform Resource Identifier,通用资源标志符),设备编号。LID (Location Identifier): It can identify the eTN selected by the AGW to serve the UE. You can use any of the following parameters of the eTN as the location identifier of the eTN: IP address, URI (Uniform Resource Identifier). device ID.
私网IP地址:由AGW分配,UE的接入地点不同、上线时间的不同,所分配的私网IP地址有可能不同。Private network IP address: Allocated by the AGW. The access locations of the UEs are different and the online time is different. The assigned private IP addresses may be different.
可选地,所述的方法还包括:Optionally, the method further includes:
所述标识管理节点当有新的转换节点请求查询所述第一UE的私网IP地址对应的网络标识时,根据所述新的转换节点的地址信息更新所述第一UE的用户和/或网络标识与转换节点的地址信息之间的对应关系;通知所述第一UE原先对应的转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。 When the new management node requests to query the network identifier corresponding to the private network IP address of the first UE, the identifier management node updates the user of the first UE according to the address information of the new transition node. Corresponding relationship between the network identifier and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, the notification carrying the network identifier of the first UE and/or originally assigned to The private network IP address of the first UE.
可选地,所述的方法还包括:Optionally, the method further includes:
所述标识管理节点当所述第一UE下线后,删除所述第一UE的网络标识与私网IP地址之间的映射关系。After the first UE goes offline, the identity management node deletes the mapping relationship between the network identifier of the first UE and the private network IP address.
本可选方案中,所述标识管理节点可以但不限于通过接收AGW发送的第一UE的下线消息获知所述第一UE下线;所述下线消息中携带所述AGW原先分配给所述第一UE的私网IP地址。In this alternative, the identifier management node may be, but is not limited to, receiving the offline message of the first UE that is sent by the AGW, and the first UE is offline; the offline message carries the AGW originally assigned to the The private network IP address of the first UE.
可选地,所述标识管理节点删除第一UE的网络标识与私网IP地址之间的映射关系后还包括:Optionally, after the mapping management node deletes the mapping relationship between the network identifier of the first UE and the private network IP address, the identifier management node further includes:
所述标识管理节点通知所述第一UE原先对应的所述转换节点所述第一UE下线,通知中携带原先分配给所述第一UE的网络标识和/或私网IP地址。The identifier management node notifies the first UE that the first UE corresponds to the first node to go offline, and the notification carries the network identifier and/or the private network IP address originally allocated to the first UE.
其它实现细节可参见实施例一。For other implementation details, refer to the first embodiment.
实施例四、一种地址转换系统,如图5所示,包括:一个或多个转换节点41;Embodiment 4, an address conversion system, as shown in Figure 5, comprising: one or more conversion nodes 41;
标识管理节点42,设置为当第一UE上线后,查询所述第一UE的用户标识对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The identifier management node 42 is configured to query the network identifier corresponding to the user identifier of the first UE after the first UE is online, and record the network identifier between the queried network and the private network IP address allocated to the first UE. Mapping relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
所述转换节点41设置为当收到来自所述第一UE的首个数据包时,向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识;记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。The switching node 41 is configured to: when the first data packet from the first UE is received, query the identifier management node for a network identifier corresponding to the private network IP address of the first UE; and record the first a mapping relationship between the private IP address of the UE and the queried network identifier, and performing address translation on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship send.
本实施例中,所述系统中的一个或多个转换节点位于同一个标识管理节点对应的服务区域中。 In this embodiment, one or more conversion nodes in the system are located in a service area corresponding to the same identification management node.
可选地,所述转换节点根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送是指:Optionally, the converting, by the converting node, performing address translation and sending on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship:
所述转换节点根据第一UE的私网IP地址和所述网络标识之间的关系,建立NAT和/或NAPT数据流映射关系,执行NAT和/或NAPT处理,包括:将来自所述第一UE的数据包中的源IP地址和端口分别转换成网络标识中的公网IP地址和网络标识所限定的端口范围内的端口,将发往第一UE的数据包中的目的IP地址和端口转换成与相应网络标识对应的私网IP地址和端口。The mapping node establishes a NAT and/or NAPT data flow mapping relationship according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including: coming from the first The source IP address and port in the data packet of the UE are respectively converted into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and the destination IP address and port in the data packet to be sent to the first UE. Convert to the private network IP address and port corresponding to the corresponding network identifier.
可选地,所述标识管理节点还设置为当查找不到第一UE的用户标识对应的网络标识时,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系;记录所分配的网络标识与分配给所述第一UE的私网IP地址之间的映射关系。Optionally, the identifier management node is further configured to: when the network identifier corresponding to the user identifier of the first UE is not found, select an idle public network IP address, or an idle public network IP address and an idle port number segment. Or a non-idle public network IP address and an idle port number segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; A mapping relationship between the assigned network identifier and a private network IP address assigned to the first UE.
可选地,所述标识管理节点还设置为当所述转换节点查询所述第一UE的私网IP地址对应的网络标识后,根据所述第一UE的私网IP地址查询网络标识与私网IP地址之间的映射关系;如果查询到所述第一UE的私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给所述转换节点;如果查询不到,则返回表示没有此UE的查询结果给所述转换节点;或者,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系,保存所述第一UE的私网IP地址与所分配的网络标识之间的映射关系,并将所分配的网络标识作为查询结果返回给所述转换节点。Optionally, the identifier management node is further configured to query the network identifier and the private network according to the private network IP address of the first UE, after the switching node queries the network identifier corresponding to the private network IP address of the first UE. a mapping relationship between the network IP addresses; if the network identifier corresponding to the private network IP address of the first UE is queried, the network identifier is returned to the conversion node as a query result; if not, the method returns Indicates that there is no query result of the UE to the conversion node; or, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public network IP address and an idle port number. a segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier, and saving the private network IP address of the first UE and the allocated A mapping relationship between network identifiers, and the assigned network identifier is returned to the conversion node as a query result.
可选地,所述标识管理节点还设置为当所述转换节点查询所述第一UE的私网IP地址对应的网络标识后,获取查询网络标识的所述转换节点 的地址信息,记录所述第一UE的用户标识和/或网络标识与所述转换节点的地址信息之间的对应关系。Optionally, the identifier management node is further configured to: after the conversion node queries the network identifier corresponding to the private network IP address of the first UE, obtain the conversion node that queries the network identifier. The address information records a correspondence between a user identifier of the first UE and/or a network identifier and address information of the conversion node.
可选地,所述标识管理节点还设置为当有新的转换节点查询所述第一UE的私网IP地址对应的网络标识时,根据所述新的转换节点的地址信息更新所述第一UE的用户和/或网络标识与转换节点的地址信息之间的对应关系;通知所述第一UE原先对应的转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。Optionally, the identifier management node is further configured to: when a new conversion node queries the network identifier corresponding to the private network IP address of the first UE, update the first according to the address information of the new conversion node. Corresponding relationship between the user and/or the network identifier of the UE and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the network identifier of the first UE And/or a private network IP address originally assigned to the first UE.
可选地,所述标识管理节点还设置为当所述第一UE下线时,删除所述第一UE的网络标识与私网IP地址之间的映射关系;通知所述第一UE对应的所述转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。Optionally, the identifier management node is further configured to: when the first UE goes offline, delete a mapping relationship between the network identifier of the first UE and a private network IP address; and notify the first UE The first UE is offline, and the notification carries the network identifier of the first UE and/or the private network IP address originally allocated to the first UE.
可选地,所述转换节点还设置为当收到所述第一UE下线的通知后,删除所述第一UE的私网IP地址与网络标识之间的映射关系,并删除所建立的NAT和/或NAPT数据流映射关系。Optionally, the converting node is further configured to: after receiving the notification that the first UE goes offline, delete the mapping relationship between the private network IP address of the first UE and the network identifier, and delete the established relationship. NAT and / or NAPT data flow mapping.
可选地,所述的系统还包括:Optionally, the system further includes:
一个或多个接入网关,设置为当所述第一UE上线时,发送所述第一UE的上线消息给所述标识管理节点,所述上线消息中携带所述第一UE的用户标识,及分配给所述第一UE的私网IP地址;当所述第一UE下线时,发送所述第一UE的下线消息给所述标识管理节点,所述下线消息中携带分配给所述第一UE的私网IP地址。One or more access gateways, configured to send an online message of the first UE to the identity management node when the first UE is online, where the online message carries the user identifier of the first UE, And the private network IP address allocated to the first UE; when the first UE goes offline, sending the offline message of the first UE to the identity management node, where the offline message is carried and assigned The private network IP address of the first UE.
可选地,所述的系统还包括:Optionally, the system further includes:
互通节点,设置为从所述转换节点接收所述第一UE经过NAT和/或NAPT处理的数据包,转发到公网;接收到公网发往所述第一UE的数据包后,根据所述第一UE的网络标识向所述标识管理节点查询对应的转换节点的地址信息,并根据查询的地址信息将所述数据包发送给相应的转换节点。 An interworking node, configured to receive, from the switching node, a data packet processed by the first UE through NAT and/or NAPT, and forward the data packet to the public network; and after receiving the data packet sent by the public network to the first UE, according to the The network identifier of the first UE queries the identifier management node for address information of the corresponding conversion node, and sends the data packet to the corresponding conversion node according to the queried address information.
实施例五、一种地址转换装置,设置于转换节点,如图6所示,包括:Embodiment 5: An address translation apparatus is disposed on a conversion node, as shown in FIG. 6, and includes:
查询请求模块51,设置为当收到来自所述第一UE的首个数据包时,查询所述第一UE的私网IP地址对应的网络标识;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The query requesting module 51 is configured to: when receiving the first data packet from the first UE, query the network identifier corresponding to the private network IP address of the first UE; the network identifier is a public network IP address, or Public network IP address and port number segment;
转换模块52,设置为记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。The conversion module 52 is configured to record a mapping relationship between the private network IP address of the first UE and the queried network identifier, and send the data packet and the destination to the first UE according to the recorded mapping relationship. The data packet of the first UE is subjected to address conversion and transmission.
可选地,所述转换模块根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送是指:Optionally, the converting, by the conversion module, performing address translation and sending on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship:
所述转换模块根据第一UE的私网IP地址和所述网络标识之间的关系,建立NAT和/或NAPT数据流映射关系,执行NAT和/或NAPT处理,包括:将来自所述第一UE的数据包中的源IP地址和端口分别转换成网络标识中的公网IP地址和网络标识所限定的端口范围内的端口,将发往第一UE的数据包中的目的IP地址和端口转换成与相应网络标识对应的私网IP地址和端口。The converting module establishes a NAT and/or NAPT data flow mapping relationship according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including: coming from the first The source IP address and port in the data packet of the UE are respectively converted into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and the destination IP address and port in the data packet to be sent to the first UE. Convert to the private network IP address and port corresponding to the corresponding network identifier.
可选地,所述的装置还包括:Optionally, the device further includes:
删除模块,设置为当收到所述第一UE下线的通知后,根据所述通知中携带的所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址,删除所述第一UE的私网IP地址与网络标识之间的映射关系,并删除所建立的NAT和/或NAPT数据流映射关系。Deleting a module, configured to: after receiving the notification that the first UE is offline, according to the network identifier of the first UE carried in the notification, and/or the private network IP address originally allocated to the first UE And deleting a mapping relationship between the private network IP address of the first UE and the network identifier, and deleting the established NAT and/or NAPT data flow mapping relationship.
实施例六、一种网络标识控制装置,设置于标识管理节点,如图7所示,包括:Embodiment 6 is a network identifier control device, which is disposed on the identifier management node, as shown in FIG. 7, and includes:
更新模块61,设置为当第一UE上线后,根据所述第一UE的用户标识查询对应的网络标识,记录所查询到的网络标识与分配给所述第一UE 的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The update module 61 is configured to: after the first UE goes online, query the corresponding network identifier according to the user identifier of the first UE, record the queried network identifier, and allocate the identifier to the first UE. The mapping relationship between the private network IP addresses; the network identifier is a public network IP address, or a public network IP address and a port number segment;
查询模块62,设置为当收到转换节点查询网络标识的请求后,根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识,作为查询结果返回给所述转换节点。The querying module 62 is configured to: after receiving the request for the conversion node to query the network identifier, query the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and return the result to the conversion node as a query result. .
可选地,所述更新模块还设置为当查找不到第一UE的用户标识对应的网络标识时,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系;记录所分配的网络标识与分配给所述第一UE的私网IP地址之间的映射关系。Optionally, the updating module is further configured to: when the network identifier corresponding to the user identifier of the first UE is not found, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or The non-idle public network IP address and the idle port number segment are used as the network identifiers allocated to the first UE, and the correspondence between the user identifiers of the first UE and the assigned network identifiers is saved; A mapping relationship between the network identifier and a private network IP address assigned to the first UE.
可选地,所述查询模块还设置为在根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识后,如果查询到所述第一UE的私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给所述转换节点;如果查询不到,则返回表示没有此UE的查询结果给所述转换节点;或者,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系,保存所述第一UE的私网IP地址与所分配的网络标识之间的映射关系,并将所分配的网络标识作为查询结果返回给所述转换节点。Optionally, the querying module is further configured to: after querying the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, if the private network IP address corresponding to the first UE is queried The network identifier is returned to the conversion node as a query result; if not, the query returns a result of the query without the UE to the conversion node; or, the idle public IP address is selected. Or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment, as the network identifier allocated to the first UE, and the user identifier of the first UE is saved. Corresponding relationship between the assigned network identifier and the mapping between the private network IP address of the first UE and the allocated network identifier, and returning the allocated network identifier as a query result to the conversion node.
可选地,所述更新模块还设置为当所述查询模块收到转换节点查询网络标识的请求后,获取查询网络标识的所述转换节点的地址信息,记录所述第一UE的用户标识和/或网络标识与所述转换节点的地址信息之间的对应关系。Optionally, the updating module is further configured to: after the query module receives the request for the conversion node to query the network identifier, obtain the address information of the conversion node that queries the network identifier, and record the user identifier of the first UE and / Correspondence between the network identifier and the address information of the conversion node.
可选地,所述更新模块还设置为当有新的转换节点请求查询所述第一UE的私网IP地址对应的网络标识时,根据所述新的转换节点的地址信息 更新所述第一UE的用户和/或网络标识与转换节点的地址信息之间的对应关系;通知所述第一UE原先对应的转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。Optionally, the updating module is further configured to: according to the address information of the new conversion node, when a new conversion node requests to query a network identifier corresponding to the private network IP address of the first UE Updating a correspondence between the user and/or the network identifier of the first UE and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the first A network identity of a UE and/or a private network IP address originally assigned to the first UE.
可选地,所述更新模块还设置为当所述第一UE下线后,删除所述第一UE的网络标识与私网IP地址之间的映射关系。Optionally, the updating module is further configured to: after the first UE goes offline, delete a mapping relationship between the network identifier of the first UE and a private network IP address.
可选地,所述更新模块还设置为在删除第一UE的网络标识与私网IP地址之间的映射关系后,通知所述第一UE原先对应的所述转换节点所述第一UE下线,通知中携带原先分配给所述第一UE的网络标识和/或私网IP地址。Optionally, the updating module is further configured to: after the mapping between the network identifier of the first UE and the private network IP address is deleted, notify the first UE that the first UE corresponds to the first node In the line, the notification carries the network identifier and/or the private network IP address originally allocated to the first UE.
下面用7个实施示例进一步说明上述实施例。The above embodiment will be further explained below with seven embodiment examples.
实施示例1,一种地址转换方法,如图8所示,包括步骤101~104:Embodiment 1, an address conversion method, as shown in FIG. 8, includes steps 101-104:
101、当第一UE上线时,AGW向标识管理节点发送第一UE的上线消息,其中含有第一UE的用户标识、AGW分配给所述第一UE的私网IP地址;101. When the first UE is online, the AGW sends an online message of the first UE to the identity management node, where the user identifier of the first UE and the private network IP address allocated by the AGW to the first UE are included.
102、标识管理节点查询所述第一UE的用户标识对应的网络标识,记录所查询到的网络标识与所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;102. The identifier management node queries the network identifier corresponding to the user identifier of the first UE, and records a mapping relationship between the queried network identifier and the private network IP address of the first UE. The network identifier is a public network. IP address, or public network IP address and port number segment;
103、增强转换节点当收到来自所述第一UE的首个数据包时,向所述标识管理节点发送网络标识查询请求,其中携带所述第一UE的私网IP地址,即所述数据包的源IP地址;标识管理节点返回查询到的网络标识;103. The enhanced switching node sends a network identity query request to the identity management node, where the first network packet from the first UE is received, where the private network IP address of the first UE is carried, that is, the data is Source IP address of the packet; the identity management node returns the queried network identifier;
104、增强转换节点记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。The enhanced conversion node records the mapping relationship between the private network IP address of the first UE and the queried network identifier, and sends the data packet from the first UE to the foregoing according to the recorded mapping relationship. The data packet of the first UE is subjected to address translation and transmission.
本实施例示例中,第一UE下线和切换增强转换节点的情况可参见实 施例一。其它处理细节也可参见实施例一。In the example of the embodiment, the situation that the first UE goes offline and switches the enhanced conversion node can be referred to Example one. See also the first embodiment for other processing details.
实施示例2、一种UE地址转换系统,该系统包含部署在一个服务区域内的AGW、eTN(Enhanced Translation Node,增强转换节点)、IDMN(Identifier Management Node,标识管理节点);可选地,所述系统还可以包括IWN(Interworking Node,互通节点)。Embodiment 2: A UE address translation system, the system includes an AGW, an Enhanced Translation Node, and an IDMN (Identifier Management Node) deployed in a service area; optionally, The system may also include an IWN (Interworking Node).
所述AGW,设置为当UE上线时,给UE分配私网IP地址,向IDMN发送UE上线消息;当UE下线时,向所述IDMN发送UE下线消息;将来自UE的数据包发送给eTN,接收eTN发送过来的数据包,转发给相应的UE;The AGW is configured to: when the UE goes online, allocate a private network IP address to the UE, and send a UE online message to the IDMN; when the UE goes offline, send a UE offline message to the IDMN; send the data packet from the UE to The eTN receives the data packet sent by the eTN and forwards the data packet to the corresponding UE.
可选地,当存在多个eTN时,AGW根据分发策略选择UE对应的eTN,并将所有来自该UE的数据包都发往该eTN;Optionally, when there are multiple eTNs, the AGW selects the eTN corresponding to the UE according to the distribution policy, and sends all the data packets from the UE to the eTN;
可选地,当由于链路或设备故障等原因,所选择的eTN无法继续服务时,AGW重新选择UE对应的eTN,并将所有来自该UE的数据包都发往所述重新选择的eTN。Optionally, when the selected eTN cannot continue to serve due to a link or device failure, the AGW reselects the eTN corresponding to the UE, and sends all data packets from the UE to the reselected eTN.
所述eTN,设置为当收到第一UE发送的首个数据包时,根据所述首个数据包的源IP地址向IDMN查询对应的网络标识,建立私网IP地址与和所述网络标识之间的映射关系,执行NAT和/或NAPT处理,转换和发送来自UE和发往UE的数据包。The eTN is configured to: when receiving the first data packet sent by the first UE, query the IDMN for the corresponding network identifier according to the source IP address of the first data packet, and establish a private network IP address and the network identifier. The mapping relationship between the NAT and / or NAPT processing, conversion and transmission of packets from the UE and to the UE.
可选地,多个eTN能够构成一个设备节点池,所述池内的设备服务与对应区域的AGW和UE,连接到同一个IDMN。Optionally, multiple eTNs can form a pool of device nodes, and the device services in the pool are connected to the same IDMN by the AGW and the UE of the corresponding area.
所述IDMN,设置为预先保存有用户标识与网络标识的映射关系;当接收到所述AGW发送的第一UE上线消息时,查找第一UE的用户标识对应的网络标识,记录第一UE的私网IP地址与所查找到的网络标识之间的映射关系;当接收到所述AGW发送的UE下线消息时,删除相应的网络标识和私网IP地址之间的映射关系;当接收到来自eTN的网络身份查询请求时,返回私网IP地址对应的网络标识,建立网络标识和位置标识 对应关系。The IDMN is configured to pre-store a mapping relationship between the user identifier and the network identifier. When receiving the first UE online message sent by the AGW, the network identifier corresponding to the user identifier of the first UE is searched, and the first UE is recorded. a mapping relationship between the private network IP address and the discovered network identifier; when receiving the UE offline message sent by the AGW, deleting the mapping relationship between the corresponding network identifier and the private network IP address; When the network identity query request from the eTN is returned, the network identifier corresponding to the private network IP address is returned, and the network identifier and the location identifier are established. Correspondence relationship.
可选地,所述IDMN还设置为当接收到所述AGW发送的第一UE上线消息时,如果第一UE的用户标识没有对应的网络标识则通知所述AGW,或者为所述第一UE选择网络标识,保存所述第一UE的用户标识与所选择的网络标识的映射关系,记录第一UE的私网IP地址与所选择的网络标识之间的映射关系。Optionally, the IDMN is further configured to: when receiving the first UE online message sent by the AGW, notify the AGW if the user identifier of the first UE does not have a corresponding network identifier, or be the first UE The network identifier is selected, and the mapping relationship between the user identifier of the first UE and the selected network identifier is saved, and the mapping relationship between the private network IP address of the first UE and the selected network identifier is recorded.
可选地,所述IDMN还设置为当所述IWN需要查询用户数据流所流经的eTN时,返回所记录的eTN地址,即位置标识。Optionally, the IDMN is further configured to return the recorded eTN address, that is, the location identifier, when the IWN needs to query the eTN through which the user data stream flows.
所述IWN位于接入网络与公网(可以但不限于为互联网)的接口,设置为接收UE发往公网的数据包,转发到公网;接收公网发往UE的数据包后,根据网络标识向IDMN查询UE的位置标识,并根据查询到的位置标识将数据包发送给对应的eTN。The IWN is located on the interface between the access network and the public network (which may be, but is not limited to, the Internet), and is configured to receive the data packet sent by the UE to the public network and forward the data packet to the public network; after receiving the data packet sent by the public network to the UE, according to the The network identifier queries the IDMN for the location identifier of the UE, and sends the data packet to the corresponding eTN according to the queried location identifier.
图9为本实施示例提供的系统结构图,其中:FIG. 9 is a structural diagram of a system provided by an embodiment of the present invention, where:
(一)UE的功能与图1相同。(1) The function of the UE is the same as that of FIG. 1.
AGW,除了图1所列的基本功能以外,还需要启用以下功能:AGW, in addition to the basic functions listed in Figure 1, also needs to enable the following features:
1)在第一UE上线或下线时,向IDMN发送UE上线或下线消息,消息中携带用户标识和AGW分配的私有IP地址;1) When the first UE goes online or goes offline, the UE sends an uplink or offline message to the IDMN, where the message carries the user identifier and the private IP address assigned by the AGW;
2)当存在多个eTN时,AGW配置分发策略选择eTN,并将所有来自第一UE的数据包都发往该eTN;2) When there are multiple eTNs, the AGW configures the distribution policy to select the eTN, and sends all the data packets from the first UE to the eTN;
3)在与eTN间链路故障或eTN设备故障时,AGW能够重新选择eTN,并将所有来自所述第一UE的数据包都发往该eTN。3) When a link failure or eTN device failure occurs with the eTN, the AGW can reselect the eTN and send all data packets from the first UE to the eTN.
(二)eTN,在图1的TN的基础功能上,进行增强,包括:(b) eTN, enhanced on the basic functions of TN in Figure 1, including:
1)当收到来自第一UE的数据包时,判断是否为来自所述第一UE的首个数据包,具体判断方式,根据数据包中携带的私网IP地址查询对应的网络标识,如果能查询到记录,则不是首个数据包,如果不能查询到记录则认为是首个数据包;或者首先查询NAT和/或NAPT数据流映射关系 (可以但不限于保存在映射条目表中,映射条目表中的一个条目对应于一条NAT和/或NAPT数据流映射关系),如果存在该数据包对应的映射条目,则不是首个数据包,如果不存在则进一步根据数据数据包中携带的私网IP地址查询网络标识,如果能查询到记录,则不是首个数据包,如果不能查询到记录则认为是首个数据包;可以但不限于在私网IP地址与网络标识映射表中查询私网IP地址查询的网络标识;1) When receiving the data packet from the first UE, determining whether it is the first data packet from the first UE, and determining the corresponding network identifier according to the private network IP address carried in the data packet, if If the record can be queried, it is not the first data packet. If the record cannot be queried, it is considered to be the first data packet; or the NAT and/or NAPT data flow mapping relationship is first queried. (can be, but is not limited to, stored in the mapping entry table, one entry in the mapping entry table corresponds to a NAT and/or NAPT data flow mapping relationship), if there is a mapping entry corresponding to the data packet, it is not the first data packet, If it does not exist, further query the network identifier according to the private network IP address carried in the data packet. If the record can be queried, it is not the first data packet. If the record cannot be queried, it is considered to be the first data packet; Query the network identifier of the private network IP address query in the private network IP address and network identifier mapping table.
2)如果判断为首个数据包,则根据数据包的私网IP地址向IDMN查询对应的网络标识,并保存查询到的该私网IP地址与网络标识之间的映射关系;可以但不限于保存在私网IP地址与网络标识映射表中;2) If it is determined to be the first data packet, the corresponding network identifier is queried to the IDMN according to the private network IP address of the data packet, and the mapping relationship between the private network IP address and the network identifier that is queried is saved; In the private network IP address and network identifier mapping table;
3)根据第一UE的私网IP地址与网络标识之间的映射关系,对来自第一UE或发往第一UE的数据包,建立NAT和/或NAPT数据流映射关系,执行NAT和/或NAPT处理,其中发往公网的IP数据包中的源地址和端口分别替换为网络标识对应的IP地址和端口范围内的某一端口。3) According to the mapping relationship between the private network IP address of the first UE and the network identifier, establish a NAT and/or NAPT data flow mapping relationship for the data packet from the first UE or the first UE, and perform NAT and/or Or NAPT processing, in which the source address and port in the IP packet sent to the public network are replaced by the IP address corresponding to the network identifier and a port in the port range.
当私网IP地址与网络标识之间的映射关系保存在私网IP地址与网络标识映射表中时,所述eTN还设置为建立私网IP地址与网络标识映射表。When the mapping relationship between the private network IP address and the network identifier is stored in the private network IP address and the network identifier mapping table, the eTN is further configured to establish a private network IP address and a network identifier mapping table.
多个eTN能够构成一个eTN节点池,服务于对应区域的AGW和UE,并连接到同一IDMN。Multiple eTNs can form an eTN node pool, serve the AGW and UE of the corresponding area, and connect to the same IDMN.
(三)IDMN的功能包括:(3) The functions of IDMN include:
1)保存用户标识与分配给该用户标识的网络标识之间的映射关系;可以但不限于保存在用户标识与网络标识映射表中;1) The mapping relationship between the user identifier and the network identifier assigned to the user identifier is saved; and may be, but is not limited to, being saved in the user identifier and the network identifier mapping table;
2)在接收到来自AGW的第一UE的上线消息时,根据第一UE的用户标识查找对应的网络标识,记录第一UE的网络标识和私网IP地址之间的映射关系;接收到来自AGW的第一UE的下线消息时,删除第一UE的网络标识和私网IP地址之间的映射关系;2) When receiving the online message of the first UE from the AGW, searching for a corresponding network identifier according to the user identifier of the first UE, and recording a mapping relationship between the network identifier of the first UE and the private network IP address; When the offline message of the first UE of the AGW is deleted, the mapping relationship between the network identifier of the first UE and the private network IP address is deleted;
3)当接收到来自eTN的网络标识查询请求时,将所述网络标识查询请求中携带的私网IP地址对应的网络标识通知eTN;还可以记录网络标识对应的UE的数据流所经过的eTN的地址信息,即位置标识;在后续映 射关系发生变化时,如UE下线、删除用户标识、用户标识对应的网络标识变更时,将根据位置标识映射关系的变化通知相应UE的数据流经过的eTN。3), when receiving the network identity query request from the eTN, notifying the eTN of the network identifier corresponding to the private network IP address carried in the network identifier query request; and recording the eTN of the data flow of the UE corresponding to the network identifier Address information, that is, the location identifier; When the network relationship changes, such as when the UE goes offline, deletes the user ID, or changes the network identifier corresponding to the user ID, the eTN that the data stream of the corresponding UE passes is notified according to the change of the location identifier mapping relationship.
4)当互通节点或其他eTN需要查询UE的数据流所流经的eTN时,返回所记录的eTN的地址信息,即位置标识。4) When the interworking node or other eTN needs to query the eTN through which the data stream of the UE flows, the address information of the recorded eTN, that is, the location identifier, is returned.
当用户标识与网络标识之间的映射关系保存在用户标识与网络标识映射表中时,所述eTN还设置为建立用户标识与网络标识映射表。When the mapping relationship between the user identifier and the network identifier is saved in the user identifier and the network identifier mapping table, the eTN is further configured to establish a user identifier and a network identifier mapping table.
(四)IWN:位于接入网络与公网的接口,主要功能:(4) IWN: an interface between the access network and the public network. The main functions are as follows:
1)接收UE发往公网的数据包,转发到公网;1) receiving the data packet sent by the UE to the public network, and forwarding the data packet to the public network;
2)接收公网发往UE的数据包后,根据该UE的网络标识向IDMN查询对应的位置标识,并根据查询的位置标识将所述数据包发送给对应地址的eTN。2) After receiving the data packet sent by the public network to the UE, query the corresponding location identifier to the IDMN according to the network identifier of the UE, and send the data packet to the eTN of the corresponding address according to the queried location identifier.
实施示例3Implementation example 3
图10为实施示例2提供的系统在多AGW和eTN的部署示意图;10 is a schematic diagram of deployment of a system provided by Embodiment 2 in multiple AGWs and eTNs;
在现网部署时,AGW会采用池化的部署方案,多个AGW组成一个设备池,在AGW池所负责的服务区域,UE可以接入池中的任意一个AGW,以增加部署的灵活性、服务的可靠性;无论UE接入哪一个AGW,所接入的AGW都会向IDMN发送UE的上线消息,从而使IDMN能记录UE的网络标识和分配的私网IP地址之间的映射关系。本发明实施例提供的方案可以支持AGW池化的部署场景,并同时支持eTN采用池化的部署方案。On the current network, the AGW adopts a pooled deployment solution. Multiple AGWs form a device pool. In the service area where the AGW pool is responsible, the UE can access any AGW in the pool to increase deployment flexibility. The reliability of the service; regardless of which AGW the UE accesses, the accessed AGW will send the UE's online message to the IDMN, so that the IDMN can record the mapping relationship between the network identifier of the UE and the assigned private network IP address. The solution provided by the embodiment of the present invention can support the deployment scenario of the AGW pooling, and simultaneously support the eTN adopting the pooling deployment solution.
AGW池中的AGW归属于同一IDMN(一个IDMN可以分布在一个或多个设备中,而且可以复用现有的设备),当服务区域内的UE在池内的任意AGW上线时,该AGW向该服务区域的IDMN发送UE的上线消息,当UE在该AGW下线时,该AGW向该服务区域的IDMN发送UE 的下线消息。The AGWs in the AGW pool belong to the same IDMN (one IDMN can be distributed in one or more devices, and the existing devices can be multiplexed). When the UE in the service area goes online at any AGW in the pool, the AGW sends the The IDMN of the service area sends an online message of the UE. When the UE goes offline, the AGW sends the UE to the IDMN of the service area. Offline message.
在转发面,AGW池与同一服务区域的所有eTN互通;当收到来自第一UE的数据包,会根据策略选择eTN池中的一台eTN并将来自所述第一UE的所有数据包转发到选择的eTN。具体策略可以但不限于是:根据私网IP地址进行散列运算,然后根据计算的散列值选择eTN,或者采用轮选策略,依照UE上线的先后选择eTN;当接收到发往第一UE的数据包,则经过接入网络发送给第一UE。On the forwarding plane, the AGW pool communicates with all eTNs in the same service area; when receiving the data packet from the first UE, an eTN in the eTN pool is selected according to the policy and all data packets from the first UE are forwarded. To the selected eTN. The specific policy may be, but is not limited to, performing a hash operation according to the private network IP address, and then selecting an eTN according to the calculated hash value, or adopting a round robin policy, selecting an eTN according to the order in which the UE goes online; and receiving the sending to the first UE. The data packet is sent to the first UE through the access network.
eTN池包括一个服务区域内的多台eTN,归属同一IDMN,当收到来自第一UE的首个数据包时,会向所归属的IDMN查询第一UE的私网IP地址对应的网络标识;当收到来自UE的数据包到公网的数据包,包含首个数据包,会选择合适的互通节点,执行NAT和/或NAPT操作后发送给互通节点;当收到发往用户的数据包,执行完NAT和/或NAPT后,会根据数据包的目标地址,即用户的私网IP地址,发送给用户所在的AGW;The eTN pool includes multiple eTNs in a service area, and belongs to the same IDMN. When receiving the first data packet from the first UE, the eTN pool queries the home IDMN for the network identifier corresponding to the private network IP address of the first UE. When receiving the data packet from the UE to the public network, including the first data packet, the appropriate interworking node is selected, and the NAT and/or NAPT operation is performed and then sent to the interworking node; when the data packet is sent to the user After performing NAT and/or NAPT, it will be sent to the AGW where the user is located according to the destination address of the data packet, that is, the private IP address of the user;
当eTN池中的某台设备不工作时,AGW检测到设备状态,会为该eTN服务服务的UE重新选择新的eTN,并将后续数据包转发到新选择的eTN,从而保证服务不中断,提高系统可靠性。When a device in the eTN pool does not work, the AGW detects the device status, reselects the new eTN for the UE served by the eTN service, and forwards the subsequent data packet to the newly selected eTN, thereby ensuring that the service is not interrupted. Improve system reliability.
IDMN,负责一个区域内的网络标识分配和管理,该区域内包含有AGW池、eTN池,并进一步包括一台或多台互通节点,IDMN与AGW池所有设备、eTN池所有设备,以及互通节点连通,提供标识管理、标识映射关系维护、网络标识查询、位置标识查询等功能。The IDMN is responsible for the allocation and management of network identifiers in an area. The area includes an AGW pool and an eTN pool, and further includes one or more interworking nodes, all devices in the IDMN and AGW pools, all devices in the eTN pool, and interworking nodes. Connected to provide functions such as identity management, identity mapping maintenance, network identity query, and location identifier query.
实施示例4Implementation example 4
图11为本实施示例提供的UE上线过程和数据转发过程示意图,示出了UE的上线过程,以及数据访问业务的过程。具体步骤包括步骤400~412:FIG. 11 is a schematic diagram of a process of uplinking a UE and a data forwarding process according to an embodiment of the present invention, showing a process of going online of a UE and a process of accessing a data. The specific steps include steps 400-412:
步骤400,运营商为IDMN的服务区域内的UE分配唯一的网络标识,IDMN建立用户标识和网络标识之间的映射关系,保存在用户标识和网络 标识映射表中。Step 400: The operator allocates a unique network identifier to the UE in the service area of the IDMN, and the IDMN establishes a mapping relationship between the user identifier and the network identifier, and saves the user identifier and the network. Identify the mapping table.
步骤401,第一UE上线,向AGW发起接入过程,在此过程中,AGW会对第一UE的用户标识进行认证,并给UE分配私有IP地址。Step 401: The first UE goes online and initiates an access procedure to the AGW. In this process, the AGW authenticates the user identifier of the first UE, and assigns a private IP address to the UE.
其中AGW可以是所述IDMN的服务区域的AGW池中的任一台设备。The AGW may be any one of the AGW pools of the service area of the IDMN.
步骤402,UE成功接入后,AGW向IDMN发送第一UE的上线消息,其中携带第一UE的用户标识、私网IP地址。Step 402: After the UE successfully accesses, the AGW sends an online message of the first UE to the IDMN, where the user identifier of the first UE and the private network IP address are carried.
步骤403,IDMN保存用户标识对应的私网IP地址,并据预先保存的用户标识和网络标识之间的关系,直接或间接建立起网络标识与私网IP地址之间的映射关系。Step 403: The IDMN saves the private network IP address corresponding to the user identifier, and directly or indirectly establishes a mapping relationship between the network identifier and the private network IP address according to the relationship between the pre-stored user identifier and the network identifier.
直接建立映射关系是指直接建立网络标识与私网IP地址之间的映射关系,具体地,可以在用户标识和网络标识映射关系中增加与私网IP地址之间的映射关系,即表示为(UID,NID,私网IP地址),或根据用户标识直接建立网络标识与私网IP地址之间的映射关系,即表示为(NID,私网IP地址);The direct mapping relationship between the network identifier and the private network IP address is established. Specifically, the mapping relationship between the network identifier and the private network IP address can be added to the mapping between the user identifier and the network identifier. UID, NID, private network IP address, or the mapping between the network identifier and the private network IP address based on the user ID, which is expressed as (NID, private network IP address);
间接建立映射关系是指分别建立用户标识和网络标识之间的映射关系,以及用户标识和私网IP地址之间的映射关系,通过这两个映射关系间接得到网络标识和私网IP地址之间的映射关系。Indirectly establishing a mapping relationship means establishing a mapping relationship between a user identifier and a network identifier, and a mapping relationship between the user identifier and the private network IP address, and indirectly obtaining the network identifier and the private network IP address through the two mapping relationships. Mapping relationship.
如果没有预先设置该用户标识对应的网络标识,则可以选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为所述第一UE的身份标识对应的网络标识,并保存第一UE的用户标识、网络标识、私网IP地址之间的对应关系。If the network identifier corresponding to the user ID is not set in advance, you can select an idle public IP address, or an idle public IP address and an idle port number segment, or a non-idle public IP address and an idle port number segment. And as a network identifier corresponding to the identifier of the first UE, and storing a correspondence between the user identifier, the network identifier, and the private network IP address of the first UE.
步骤404,IDMN向AGW返回第一UE的上线响应消息;Step 404: The IDMN returns an online response message of the first UE to the AGW.
步骤405,上线后的第一UE发起互联网访问过程,向AGW发送数据包,AGW根据策略选择eTN,并将数据包发送给选择的eTN;Step 405, the first UE after the uplink initiates an Internet access procedure, and sends a data packet to the AGW, and the AGW selects the eTN according to the policy, and sends the data packet to the selected eTN.
步骤406,eTN判断数据包是否为所述第一UE的首个数据包,如果是首个数据包,则执行步骤407,否则执行步骤412。 Step 406: The eTN determines whether the data packet is the first data packet of the first UE. If it is the first data packet, step 407 is performed, otherwise step 412 is performed.
具体判断方式,根据数据包的源IP地址字段中携带的私网IP地址查询私网IP地址和网络标识的映射表,如果能查询到记录,则不是首个数据包,如果查询不到记录则认为是首个数据包;或者首先查询NAT和/或NAPT数据流映射关系,如果存在该数据包对应的映射条目,则不是首个数据包,如果不存在则进一步根据数据包的源IP地址字段中携带的私网IP地址查询私网IP地址和网络标识的映射表,如果能查询到记录,则不是首个数据包,如果查询不到记录则认为是首个数据包。The specific judgment mode is to query the mapping table of the private network IP address and the network identifier according to the private network IP address carried in the source IP address field of the data packet. If the record can be queried, it is not the first data packet. It is considered to be the first data packet; or first query the NAT and/or NAPT data flow mapping relationship. If there is a mapping entry corresponding to the data packet, it is not the first data packet. If it does not exist, it is further based on the source IP address field of the data packet. The private network IP address carried in the private network IP address and network identifier mapping table. If the record can be queried, it is not the first data packet. If the query is not found, it is considered to be the first data packet.
这里的首个数据包指的该eTN接收到的来自该UE的第一个数据包,并不特指该UE上线后发送的第一个数据包。The first data packet here refers to the first data packet received by the eTN from the UE, and does not specifically refer to the first data packet sent after the UE goes online.
步骤407,eTN向IDMN发送网络标识查询请求,其中携带第一UE的私网IP地址;Step 407: The eTN sends a network identity query request to the IDMN, where the private network IP address of the first UE is carried.
步骤408,IDMN从网络标识和私网IP地址的映射表中查找私网IP地址对应的网络标识,并保存发送网络标识查询请求的eTN的地址信息,即RID,作为第一UE经过的eTN。Step 408: The IDMN searches for the network identifier corresponding to the private network IP address from the mapping table of the network identifier and the private network IP address, and saves the address information of the eTN that sends the network identifier query request, that is, the RID, as the eTN passed by the first UE.
具体的,如果查询到所述私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给eTN;如果查询不到,则返回的查询结果为空。Specifically, if the network identifier corresponding to the private network IP address is queried, the network identifier is returned to the eTN as a query result; if the query is not found, the returned query result is empty.
IDMN保存RID,建立网络标识与RID之间的映射关系,可以表示为(UID,NID,私网IP地址,RID),或(NID,RID),保证在其他eTN或IWN接收到发往第一UE的数据包时,能够向IDMN查询第一UE当前的服务eTN。The IDMN saves the RID and establishes a mapping relationship between the network identifier and the RID, which can be expressed as (UID, NID, private network IP address, RID), or (NID, RID), and is guaranteed to be sent to the first in other eTN or IWN. When the data packet of the UE is available, the IDMN can be queried for the current service eTN of the first UE.
步骤409,IDMN向eTN返回网络标识查询响应消息,携带查询结果。Step 409: The IDMN returns a network identity query response message to the eTN, and carries the query result.
步骤410,eTN在本地缓存网络标识与私网IP地址之间的映射关系。Step 410: The eTN caches the mapping relationship between the network identifier and the private network IP address.
步骤411,eTN根据网络标识与私网IP地址之间的映射关系,建立该数据流的NAT和/或NAPT条目,完成NAT和/或NAPT操作,并转发给选定的互通节点。Step 411: The eTN establishes a NAT and/or NAPT entry of the data flow according to the mapping relationship between the network identifier and the private network IP address, completes the NAT and/or NAPT operation, and forwards the operation to the selected interworking node.
其中NAT和/或NAPT条目中的公网IP地址只能为网络标识限定的IP地址,端口只能从网络标识限定的端口范围中选取没有占用的端口。 The public network IP address in the NAT and/or NAPT entries can only be the IP address defined by the network identifier. The port can only select the port that is not occupied from the port range defined by the network identifier.
如果步骤408中,IDMN返回的查询结果为空,则eTN根据本地策略丢弃数据包,或执行动态NAT和/或NAPT操作。If the result of the query returned by the IDMN is empty in step 408, the eTN discards the data packet according to the local policy or performs a dynamic NAT and/or NAPT operation.
步骤412,eTN收到来自第一UE的后续数据包,则直接根据之前缓存的网络标识与私网IP地址之间的映射关系执行NAT和/或NAPT操作,并转发给选定的互通节点。Step 412: After receiving the subsequent data packet from the first UE, the eTN performs NAT and/or NAPT operations according to the mapping relationship between the previously cached network identifier and the private network IP address, and forwards the operation to the selected interworking node.
具体的对于是否为后续数据包的判断过程见步骤406。For specific determination process as to whether it is a subsequent data packet, see step 406.
通过上述过程,实现了网络标识的分配过程,以及数据包的发送过程,发送的数据包中都携带有给该UE分配的网络标识(即公网IP地址、或公网IP地址及端口)。Through the above process, the network identity allocation process and the data packet transmission process are implemented, and the transmitted data packet carries the network identifier (ie, the public network IP address or the public network IP address and port) allocated to the UE.
实施示例5Implementation example 5
图12为本实施示例提供的UE数据包接收过程示意图,示出了当第一UE上线接入成功,并向互联网发送数据成功后,互联网或网络内部其他UE发往所述第一UE数据包的场景。为了简便起见,图中只示出IWN发送数据包给所述第一UE的场景,包括步骤501~509;eTN的发送过程与此相同。FIG. 12 is a schematic diagram of a UE data packet receiving process according to an embodiment of the present invention. After the first UE goes online and successfully sends data to the Internet, the Internet or other UEs in the network send the first UE data packet. Scene. For the sake of simplicity, only the scenario in which the IWN sends a data packet to the first UE is shown in the figure, including steps 501-509; the sending process of the eTN is the same.
步骤501,第一UE上线,完成图4所示的第一UE上线接入过程和数据包的发送过程。Step 501: The first UE is online, and the first UE online access procedure and the data packet sending process shown in FIG. 4 are completed.
步骤502,IWN接收到发往第一UE的数据包,则根据数据包的目的地址中携带的第一UE的网络标识,在本地查询网络标识与位置标识之间的关系,如果没有查询到,则执行步骤503,向IDMN进行查询,否则执行步骤508,根据查询到的位置标识将数据包转发到对应的eTN。Step 502: The IWN receives the data packet sent to the first UE, and locally queries the relationship between the network identifier and the location identifier according to the network identifier of the first UE carried in the destination address of the data packet. Then, step 503 is performed to query the IDMN. Otherwise, step 508 is executed to forward the data packet to the corresponding eTN according to the queried location identifier.
步骤503,IWN向IDMN发送位置查询请求,其中携带第一UE的网络标识;Step 503: The IWN sends a location query request to the IDMN, where the network identifier of the first UE is carried.
步骤504,IDMN查询网络标识对应的位置标识,即当前为第一UE服务的eTN的地址信息; Step 504: The IDMN queries the location identifier corresponding to the network identifier, that is, the address information of the eTN currently serving the first UE.
步骤505,IDMN向IWN返回位置查询响应消息,携带位置标识;Step 505: The IDMN returns a location query response message to the IWN, and carries the location identifier.
步骤506,IWN保存网络标识与位置标识之间的映射关系,并将数据包转发到对应的eTN;Step 506, the IWN saves the mapping relationship between the network identifier and the location identifier, and forwards the data packet to the corresponding eTN.
步骤507,eTN执行NAT和/或NAPT转换,并将转换后的数据包发送给AGW,AGW通过接入网发送给第一UE;Step 507, the eTN performs NAT and/or NAPT conversion, and sends the converted data packet to the AGW, and the AGW sends the data to the first UE through the access network;
步骤508,如果IWN接收到发往所述第一UE的后续数据包,则步骤502中能够在本地查询网络标识与位置标识之间的映射关系;根据查询到的结果将数据包转发到对应的eTN;Step 508: If the IWN receives the subsequent data packet sent to the first UE, the mapping relationship between the network identifier and the location identifier can be locally queried in step 502; and the data packet is forwarded to the corresponding according to the result of the query. eTN;
步骤509,与步骤507相同。Step 509 is the same as step 507.
通过上述过程,保证以网络标识为目的地址的数据包能够正确发送给相应的UE。Through the above process, the data packet with the network identifier as the destination address can be correctly sent to the corresponding UE.
实施示例6Implementation example 6
图13为本实施示例提供的更换eTN的过程示意图,示出了在UE通信过程中,由于特殊原因eTN发生重选,如eTN宕机、AGW与eTN之间的链路终端,此时AGW会为UE重新选择合适的eTN继续服务的过程,包括步骤601~614。FIG. 13 is a schematic diagram of a process for replacing an eTN according to an embodiment of the present invention, showing that an eTN reselection occurs during a UE communication process, such as an eTN downtime, a link terminal between an AGW and an eTN, and the AGW will The process of reselecting the appropriate eTN to continue the service for the UE includes steps 601-614.
步骤601,当第一UE正在通过第一eTN进行通信业务,正在发送数据包或接收数据包时,AGW检测到第一eTN退出服务,会根据路由策略选择eTN池中的其他eTN,如第二eTN;Step 601: When the first UE is performing the communication service through the first eTN, and the data packet is being sent or the data packet is being received, the AGW detects that the first eTN exits the service, and selects another eTN in the eTN pool according to the routing policy, such as the second. eTN;
步骤602,第二eTN接到数据包后,判断数据包是否为第一UE的首个数据包,因为是AGW第一次将第一UE的数据包发送给第二eTN,因此会判断为首个数据包,具体判断方式见图4的步骤406;Step 602: After receiving the data packet, the second eTN determines whether the data packet is the first data packet of the first UE, because the AGW sends the data packet of the first UE to the second eTN for the first time, so it is determined to be the first The data packet, the specific judgment manner is shown in step 406 of FIG. 4;
步骤603~步骤608,分别与步骤407~412相同,只是eTN相应改为第二eTN,第二eTN查询私网IP地址和网络标识之间的映射关系,并根据该映射关系执行NAT和/或NAPT操作,对来自第一UE的数据包进行 转换和发送;Steps 603 to 608 are the same as steps 407 to 412, respectively, except that the eTN is changed to the second eTN, and the second eTN queries the mapping relationship between the private network IP address and the network identifier, and performs NAT and/or according to the mapping relationship. NAPT operation, performing data packets from the first UE Convert and send;
步骤609,所述IDMN在收到第二eTN的网络标识查询请求后,得知第一UE已经从第一eTN切换到第二eTN,IDMN向第一eTN发送删除UE请求消息,通知第一eTN第一UE已经离开该节点;Step 609: After receiving the network identifier query request of the second eTN, the IDMN learns that the first UE has switched from the first eTN to the second eTN, and the IDMN sends a delete UE request message to the first eTN to notify the first eTN. The first UE has left the node;
步骤610,第一eTN删除本地保存的第一UE的网络标识与私网IP地址之间的映射关系,以及对应的NAT和/或NAPT条目,不再为第一UE提供服务;Step 610: The first eTN deletes the mapping relationship between the network identifier of the locally saved first UE and the private network IP address, and the corresponding NAT and/or NAPT entry, and no longer provides services for the first UE.
步骤611,第一eTN向IDMN返回删除UE请求响应;Step 611: The first eTN returns a delete UE request response to the IDMN.
步骤612,IDMN向IWN发送位置变更通知消息,携带第一UE的网络标识和第二eTN的位置标识,告知IWN第一UE已经移动到第二eTN;Step 612, the IDMN sends a location change notification message to the IWN, carrying the network identifier of the first UE and the location identifier of the second eTN, and informing the IWN that the first UE has moved to the second eTN;
步骤613,IWN更新第一UE的网络标识和位置标识之间的映射关系,将原映射关系中的第一eTN的位置标识替换为第二eTN的位置标识;Step 613: The IWN updates the mapping relationship between the network identifier of the first UE and the location identifier, and replaces the location identifier of the first eTN in the original mapping relationship with the location identifier of the second eTN.
步骤614,IWN向IDMN返回位置变更通知响应消息。In step 614, the IWN returns a location change notification response message to the IDMN.
后续IWN接收到发往第一UE的数据包,将根据更新后的映射关系发往第二eTN。The subsequent IWN receives the data packet sent to the first UE, and sends the data packet to the second eTN according to the updated mapping relationship.
通过上述过程,实现了当原eTN不再提供转发服务时,能够选择新的eTN为UE继续提供服务,保证业务不中断,同时可以实现池化的部署。Through the foregoing process, when the original eTN no longer provides the forwarding service, the new eTN can be selected to continue to provide services for the UE, ensuring uninterrupted services, and enabling pooled deployment.
实施示例7Implementation example 7
图14为本实施示例提供的UE下线过程示意图,示出了当上线的第一UE离开网络,下线的过程,包括步骤701~710。FIG. 14 is a schematic diagram of a UE offline process according to an embodiment of the present invention, showing a process in which the first UE on the uplink leaves the network and goes offline, including steps 701-710.
步骤701,第一UE下线;这里,第一UE下线和/或第一UE发生位置切换,导致第一UE离开附着的AGW均可视为第一UE下线。Step 701: The first UE goes offline. Here, the first UE goes offline and/or the first UE is in a location switch, so that the first UE leaving the attached AGW can be regarded as the first UE going offline.
步骤702,AGW向IDMN发送第一UE的下线消息,其中会携带第一UE的用户标识;Step 702: The AGW sends an offline message of the first UE to the IDMN, where the user identifier of the first UE is carried.
步骤703,IDMN根据用户标识,删除对应的网络标识与私网IP地址 之间的映射关系,以及与位置标识之间的映射关系;Step 703: The IDMN deletes the corresponding network identifier and the private network IP address according to the user identifier. The mapping relationship between the mapping relationship and the location identifier;
步骤704,IDMN向AGW返回下线消息响应;Step 704, the IDMN returns an offline message response to the AGW.
步骤705,IDMN根据位置标识向对应的eTN发送第一UE的下线通知消息,其中携带第一UE的网络标识、私网IP地址;Step 705: The IDMN sends a downlink notification message of the first UE to the corresponding eTN according to the location identifier, where the network identifier of the first UE and the private network IP address are carried.
步骤706,eTN删除第一UE的网络标识与私网IP地址之间的映射关系,以及建立的NAT和/或NAPT条目;Step 706: The eTN deletes a mapping relationship between the network identifier of the first UE and the private network IP address, and the established NAT and/or NAPT entry.
步骤707,eTN向IDMN返回下线通知响应;Step 707: The eTN returns an offline notification response to the IDMN.
步骤708,IDMN向IWN发送第一UE的下线通知消息,其中携带第一UE的网络标识;Step 708: The IDMN sends an offline notification message of the first UE to the IWN, where the network identifier of the first UE is carried.
步骤709,IWN删除第一UE的网络标识与位置标识之间的映射关系;Step 709: The IWN deletes a mapping relationship between the network identifier of the first UE and the location identifier.
步骤710,IWN向IDMN返回下线通知响应;Step 710: The IWN returns an offline notification response to the IDMN.
通过上述过程,完成第一UE的下线过程,eTN、IWN都不再为第一UE服务。Through the above process, the offline process of the first UE is completed, and the eTN and the IWN are no longer served by the first UE.
本发明的实施例还提供了一种存储介质。可选地,在本实施例中,上述存储介质中存储有执行指令,该执行指令用于执行上述的方法。Embodiments of the present invention also provide a storage medium. Optionally, in this embodiment, an execution instruction is stored in the storage medium, and the execution instruction is used to execute the foregoing method.
可选地,在本实施例中,上述存储介质可以包括但不限于:U盘、只读存储器(Read-Only Memory,简称为ROM)、随机存取存储器(Random Access Memory,简称为RAM)、移动硬盘、磁碟或者光盘等各种可以存储程序代码的介质。Optionally, in the embodiment, the foregoing storage medium may include, but is not limited to, a USB flash drive, a Read-Only Memory (ROM), and a Random Access Memory (RAM). A variety of media that can store program code, such as a hard disk, a disk, or an optical disk.
本领域普通技术人员可以理解上述方法中的全部或部分步骤可通过程序来指令相关硬件完成,所述程序可以存储于计算机可读存储介质中,如只读存储器、磁盘或光盘等。可选地,上述实施例的全部或部分步骤也可以使用一个或多个集成电路来实现。相应地,上述实施例中的各模块/单元可以采用硬件的形式实现,也可以采用软件功能模块的形式实现。本发明不限制于任何特定形式的硬件和软件的结合。One of ordinary skill in the art will appreciate that all or a portion of the steps described above can be accomplished by a program that instructs the associated hardware, such as a read-only memory, a magnetic or optical disk, and the like. Alternatively, all or part of the steps of the above embodiments may also be implemented using one or more integrated circuits. Correspondingly, each module/unit in the foregoing embodiment may be implemented in the form of hardware or in the form of a software function module. The invention is not limited to any specific form of combination of hardware and software.
虽然本发明所揭露的实施方式如上,但所述的内容仅为便于理解本发 明而采用的实施方式,并非用以限定本发明。任何本发明所属领域内的技术人员,在不脱离本发明所揭露的精神和范围的前提下,可以在实施的形式及细节上进行任何的修改与变化,但本发明的专利保护范围,仍须以所附的权利要求书所界定的范围为准。Although the embodiments disclosed in the present invention are as above, the content described is only for facilitating understanding of the present invention. The embodiments employed are not intended to limit the invention. Any modification and variation in the form and details of the embodiments may be made by those skilled in the art without departing from the spirit and scope of the invention. The scope defined by the appended claims shall prevail.
工业实用性Industrial applicability
如上所述,本发明实施例提供的一种地址转换方法、装置及系统、网络标识控制方法及装置具有以下有益效果:由于网络标识是和UE的用户标识对应的,因此能够在公网中使用固定的网络标识表示UE,进而满足在溯源、安全、灵活部署等方面的需求。 As described above, an address translation method, apparatus, and system, and network identity control method and apparatus provided by the embodiments of the present invention have the following beneficial effects: since the network identifier is corresponding to the user identifier of the UE, it can be used in the public network. A fixed network identifier indicates the UE, thereby meeting the requirements in terms of traceability, security, and flexible deployment.

Claims (23)

  1. 一种地址转换方法,包括:An address translation method includes:
    标识管理节点当第一用户设备UE上线后,查询所述第一UE的用户标识对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;After the first user equipment UE is online, the identifier management node queries the network identifier corresponding to the user identifier of the first UE, and records the mapping between the queried network identifier and the private network IP address allocated to the first UE. Relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
    转换节点当收到来自所述第一UE的首个数据包时,向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识;记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。The switching node queries the identifier management node for the network identifier corresponding to the private network IP address of the first UE when the first data packet is received from the first UE, and records the private network IP of the first UE. A mapping relationship between the address and the queried network identifier, and performing address translation and transmission on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship.
  2. 如权利要求1所述的方法,其中,所述标识管理节点当第一UE上线后,查询所述第一UE的用户标识对应的网络标识包括:The method of claim 1, wherein the identifier management node, when the first UE is online, queries the network identifier corresponding to the user identifier of the first UE, including:
    当所述第一UE上线后,接入网关向所述标识管理节点发送所述第一UE的上线消息,所述上线消息中含有所述第一UE的用户标识、所述接入网关分配给所述第一UE的私网IP地址;After the first UE is online, the access gateway sends an online message of the first UE to the identity management node, where the online message includes the user identifier of the first UE, and the access gateway allocates The private network IP address of the first UE;
    所述标识管理节点收到所述上线消息后,依据所述上线消息中所述第一UE的用户标识查询到对应的网络标识。After receiving the online message, the identity management node queries the corresponding network identifier according to the user identifier of the first UE in the online message.
  3. 如权利要求1所述的方法,其中,所述根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送包括:The method of claim 1, wherein the performing address translation and transmission of the data packet from the first UE and the data packet addressed to the first UE according to the recorded mapping relationship comprises:
    所述转换节点根据第一UE的私网IP地址和所述网络标识之间的关系,建立网络地址转换NAT和/或网络地址端口转换NAPT数据流映射关系,执行NAT和/或NAPT处理,包括:将来自所述第一UE的数据包中的源IP地址和端口分别转换成网络标识中的公网IP地址和网络标识所限定的端口范围内的端口,将发往第一UE的数据包中的目的IP地址和端口转换成与相应网络标识对应的私网IP地址和端口。 The switching node establishes a mapping relationship between the network address translation NAT and/or the network address port conversion NAPT data flow according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including Transmitting the source IP address and the port in the data packet from the first UE into a public network IP address in the network identifier and a port in the port range defined by the network identifier, and sending the data packet to the first UE The destination IP address and port in the network are translated into a private network IP address and port corresponding to the corresponding network identifier.
  4. 如权利要求1所述的方法,其中,所述标识管理节点查询所述第一UE的用户标识对应的网络标识后还包括:The method of claim 1, wherein the identifier management node further includes: after querying the network identifier corresponding to the user identifier of the first UE:
    所述标识管理节点当查找不到第一UE的用户标识对应的网络标识时,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系;记录所分配的网络标识与分配给所述第一UE的私网IP地址之间的映射关系。When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address. An address and an idle port number segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier; recording the assigned network identifier and assigning to Mapping relationship between the private network IP addresses of the first UE.
  5. 如权利要求1所述的方法,其中,所述转换节点向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识后还包括:The method of claim 1, wherein the converting node, after querying the identifier management node for the network identifier corresponding to the private network IP address of the first UE, further comprises:
    所述标识管理节点根据所述第一UE的私网IP地址查询网络标识与私网IP地址之间的映射关系;The identifier management node queries the mapping relationship between the network identifier and the private network IP address according to the private network IP address of the first UE;
    如果查询到所述第一UE的私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给所述转换节点;If the network identifier corresponding to the private network IP address of the first UE is queried, the network identifier is returned to the conversion node as a query result;
    如果查询不到,则返回表示没有此UE的查询结果给所述转换节点;或者,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系,保存所述第一UE的私网IP地址与所分配的网络标识之间的映射关系,并将所分配的网络标识作为查询结果返回给所述转换节点。If the query is not available, return a query result indicating that there is no such UE to the conversion node; or, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public network The IP address and the idle port number segment are used as the network identifier allocated to the first UE, and the correspondence between the user identifier of the first UE and the assigned network identifier is saved, and the private state of the first UE is saved. A mapping relationship between the network IP address and the assigned network identifier, and returning the allocated network identifier to the conversion node as a query result.
  6. 如权利要求1所述的方法,其中,所述转换节点向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识后还包括:The method of claim 1, wherein the converting node, after querying the identifier management node for the network identifier corresponding to the private network IP address of the first UE, further comprises:
    所述标识管理节点获取查询网络标识的所述转换节点的地址信息,记录所述第一UE的用户标识和/或网络标识与所述转换节点的地址信息之间的对应关系。The identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
  7. 如权利要求5所述的方法,其中,还包括: The method of claim 5, further comprising:
    所述标识管理节点当有新的转换节点查询所述第一UE的私网IP地址对应的网络标识时,根据所述新的转换节点的地址信息更新所述第一UE的用户和/或网络标识与转换节点的地址信息之间的对应关系;通知所述第一UE原先对应的转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。And the identifier management node updates the user and/or the network of the first UE according to the address information of the new transition node when the new switch node queries the network identifier corresponding to the private network IP address of the first UE. Identifying a correspondence between the address information and the address information of the conversion node; notifying the first UE that the first UE corresponds to the first UE to go offline, and the notification carries the network identifier of the first UE and/or is originally allocated to the The private network IP address of the first UE.
  8. 如权利要求1所述的方法,其中,还包括:The method of claim 1 further comprising:
    当所述第一UE下线时,接入网关向所述标识管理节点发送所述第一UE的下线消息,携带原先分配给所述第一UE的私网IP地址;When the first UE goes offline, the access gateway sends the offline message of the first UE to the identity management node, and carries the private network IP address originally allocated to the first UE;
    所述标识管理节点收到所述下线消息后,删除所述第一UE的网络标识与私网IP地址之间的映射关系;通知所述第一UE原先对应的所述转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。After receiving the offline message, the identifier management node deletes a mapping relationship between the network identifier of the first UE and the private network IP address, and notifies the first node that the first UE corresponds to the conversion node. A UE is offline, and the notification carries the network identifier of the first UE and/or a private network IP address originally allocated to the first UE.
  9. 如权利要求7或8所述的方法,其中,还包括:The method of claim 7 or 8, further comprising:
    所述转换节点当收到所述第一UE下线的通知后,删除所述第一UE的私网IP地址与网络标识之间的映射关系,并删除所建立的NAT和/或NAPT数据流映射关系。After receiving the notification that the first UE goes offline, the mapping node deletes the mapping relationship between the private network IP address of the first UE and the network identifier, and deletes the established NAT and/or NAPT data stream. Mapping relations.
  10. 一种地址转换方法,包括:An address translation method includes:
    转换节点当收到来自所述第一用户设备UE的首个数据包时,查询所述第一UE的私网IP地址对应的网络标识;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The switching node queries the network identifier corresponding to the private network IP address of the first UE when receiving the first data packet from the first user equipment UE; the network identifier is a public network IP address, or a public network IP address. Address and port number segment;
    所述转换节点记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。The switching node records a mapping relationship between the private network IP address of the first UE and the queried network identifier, and sends a data packet from the first UE to the first according to the recorded mapping relationship. A UE's data packet is address translated and transmitted.
  11. 如权利要求10所述的方法,其中,所述根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和 发送包括:The method of claim 10, wherein said translating a data packet from said first UE and a data packet addressed to said first UE according to said recorded mapping relationship Sending includes:
    所述转换节点根据第一UE的私网IP地址和所述网络标识之间的关系,建立网络地址转换NAT和/或网络地址端口转换NAPT数据流映射关系,执行NAT和/或NAPT处理,包括:将来自所述第一UE的数据包中的源IP地址和端口分别转换成网络标识中的公网IP地址和网络标识所限定的端口范围内的端口;将发往第一UE的数据包中的目的IP地址和端口转换成与相应网络标识对应的私网IP地址和端口。The switching node establishes a mapping relationship between the network address translation NAT and/or the network address port conversion NAPT data flow according to the relationship between the private network IP address of the first UE and the network identifier, and performs NAT and/or NAPT processing, including Transmitting a source IP address and a port in the data packet from the first UE into a public network IP address in the network identifier and a port in a port range defined by the network identifier; and sending the data packet to the first UE The destination IP address and port in the network are translated into a private network IP address and port corresponding to the corresponding network identifier.
  12. 如权利要求10所述的方法,其中,还包括:The method of claim 10, further comprising:
    所述转换节点当收到所述第一UE下线的通知后,根据所述通知中携带的所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址,删除所述第一UE的私网IP地址与网络标识之间的映射关系,并删除所建立的NAT和/或NAPT数据流映射关系。After receiving the notification that the first UE is offline, the switching node, according to the network identifier of the first UE carried in the notification, and/or the private network IP address originally allocated to the first UE, And deleting a mapping relationship between the private network IP address of the first UE and the network identifier, and deleting the established NAT and/or NAPT data flow mapping relationship.
  13. 一种网络标识控制方法,包括:A network identity control method includes:
    标识管理节点当第一用户设备UE上线后,根据所述第一UE的用户标识查询对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;After the first user equipment UE is online, the identifier management node queries the corresponding network identifier according to the user identifier of the first UE, and records between the queried network identifier and the private network IP address allocated to the first UE. Mapping relationship; the network identifier is a public network IP address, or a public network IP address and a port number segment;
    所述标识管理节点当收到转换节点查询网络标识的请求后,根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识,作为查询结果返回给所述转换节点。After receiving the request for the conversion node to query the network identifier, the identifier management node queries the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and returns the result to the conversion node as a query result.
  14. 如权利要求13所述的方法,其中,所述标识管理节点根据所述第一UE的用户标识查询对应的网络标识后还包括:The method of claim 13, wherein the identifier management node further includes: after querying the corresponding network identifier according to the user identifier of the first UE:
    所述标识管理节点当查找不到第一UE的用户标识对应的网络标识时,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关 系;记录所分配的网络标识与分配给所述第一UE的私网IP地址之间的映射关系。When the identifier management node cannot find the network identifier corresponding to the user identifier of the first UE, select an idle public network IP address, or an idle public network IP address and an idle port number segment, or a non-idle public IP address. An address and an idle port number segment, as a network identifier allocated to the first UE, storing a correspondence between the user identifier of the first UE and the allocated network identifier And recording a mapping relationship between the assigned network identifier and a private network IP address allocated to the first UE.
  15. 如权利要求13所述的方法,其中,所述标识管理节点根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识后还包括:The method of claim 13, wherein the identifier management node further includes: after querying the corresponding network identifier according to the private network IP address of the first UE that is carried in the request:
    所述标识管理节点如果查询到所述第一UE的私网IP地址对应的网络标识,则将所述网络标识作为查询结果返回给所述转换节点;如果查询不到,则返回表示没有此UE的查询结果给所述转换节点;或者,选择空闲的公网IP地址,或者空闲的公网IP地址和空闲的端口号段,或者非空闲的公网IP地址和空闲的端口号段,作为分配给所述第一UE的网络标识,保存所述第一UE的用户标识和所分配的网络标识之间的对应关系,保存所述第一UE的私网IP地址与所分配的网络标识之间的映射关系,并将所分配的网络标识作为查询结果返回给所述转换节点。And if the identifier management node queries the network identifier corresponding to the private network IP address of the first UE, the network identifier is returned to the conversion node as a query result; if not, the return indicates that there is no such UE The query result is given to the conversion node; or, the idle public network IP address, or the idle public network IP address and the idle port number segment, or the non-idle public network IP address and the idle port number segment are allocated as the allocation. The network identifier of the first UE is saved, and the correspondence between the user identifier of the first UE and the allocated network identifier is saved, and the private network IP address of the first UE is saved and the allocated network identifier is saved. The mapping relationship and return the assigned network identifier to the conversion node as a query result.
  16. 如权利要求13所述的方法,其中,所述标识管理节点当收到转换节点查询网络标识的请求后还包括:The method of claim 13, wherein the identification management node further comprises: after receiving the request of the conversion node to query the network identifier:
    所述标识管理节点获取查询网络标识的所述转换节点的地址信息,记录所述第一UE的用户标识和/或网络标识与所述转换节点的地址信息之间的对应关系。The identifier management node obtains the address information of the conversion node that queries the network identifier, and records the correspondence between the user identifier of the first UE and/or the network identifier and the address information of the conversion node.
  17. 如权利要求16所述的方法,其中,还包括:The method of claim 16 further comprising:
    所述标识管理节点当有新的转换节点请求查询所述第一UE的私网IP地址对应的网络标识时,根据所述新的转换节点的地址信息更新所述第一UE的用户和/或网络标识与转换节点的地址信息之间的对应关系;通知所述第一UE原先对应的转换节点所述第一UE下线,通知中携带所述第一UE的网络标识和/或原先分配给所述第一UE的私网IP地址。When the new management node requests to query the network identifier corresponding to the private network IP address of the first UE, the identifier management node updates the user of the first UE according to the address information of the new transition node. Corresponding relationship between the network identifier and the address information of the switching node; notifying the first UE that the first UE corresponds to the first UE to go offline, the notification carrying the network identifier of the first UE and/or originally assigned to The private network IP address of the first UE.
  18. 如权利要求13~17中任一项所述的方法,其中,还包括:The method of any of claims 13 to 17, further comprising:
    所述标识管理节点当所述第一UE下线后,删除所述第一UE的网络 标识与私网IP地址之间的映射关系。The identifier management node deletes the network of the first UE after the first UE goes offline The mapping between the identifier and the private network IP address.
  19. 如权利要求18所述的方法,其中,所述标识管理节点删除第一UE的网络标识与私网IP地址之间的映射关系后还包括:The method of claim 18, wherein the identifying the management node to delete the mapping between the network identifier of the first UE and the private network IP address further comprises:
    所述标识管理节点通知所述第一UE原先对应的所述转换节点所述第一UE下线,通知中携带原先分配给所述第一UE的网络标识和/或私网IP地址。The identifier management node notifies the first UE that the first UE corresponds to the first node to go offline, and the notification carries the network identifier and/or the private network IP address originally allocated to the first UE.
  20. 一种地址转换系统,包括:一个或多个转换节点;An address translation system comprising: one or more conversion nodes;
    还包括:Also includes:
    标识管理节点,设置为当第一用户设备UE上线后,查询所述第一UE的用户标识对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The identifier management node is configured to query the network identifier corresponding to the user identifier of the first UE after the first user equipment UE is online, and record the queried network identifier and the private network IP address allocated to the first UE. The mapping relationship between the network identifiers is a public network IP address, or a public network IP address and a port number segment;
    所述转换节点设置为当收到来自所述第一UE的首个数据包时,向所述标识管理节点查询所述第一UE的私网IP地址对应的网络标识;记录所述第一UE的私网IP地址和所查询到的网络标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。The switching node is configured to: when the first data packet from the first UE is received, query the identifier management node for a network identifier corresponding to the private network IP address of the first UE; and record the first UE Mapping between the private network IP address and the queried network identifier, and performing address translation and transmission on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship .
  21. 如权利要求20所述的系统,其中,还包括:The system of claim 20, further comprising:
    一个或多个接入网关,设置为当所述第一UE上线时,发送所述第一UE的上线消息给所述标识管理节点,所述上线消息中携带所述第一UE的用户标识,及分配给所述第一UE的私网IP地址。One or more access gateways, configured to send an online message of the first UE to the identity management node when the first UE is online, where the online message carries the user identifier of the first UE, And a private network IP address assigned to the first UE.
  22. 一种地址转换装置,设置于转换节点,包括:An address conversion device, disposed on the conversion node, includes:
    查询请求模块,设置为当收到来自所述第一用户设备UE的首个数据包时,查询所述第一UE的私网IP地址对应的网络标识;所述网络标识为公网IP地址,或者公网IP地址及端口号段;The query requesting module is configured to: when receiving the first data packet from the first user equipment UE, query the network identifier corresponding to the private network IP address of the first UE; the network identifier is a public network IP address, Or public network IP address and port number segment;
    转换模块,设置为记录所述第一UE的私网IP地址和所查询到的网络 标识之间的映射关系,根据所记录的映射关系对来自所述第一UE的数据包和发往所述第一UE的数据包进行地址转换和发送。a conversion module, configured to record a private network IP address of the first UE and the queried network A mapping relationship between the identifiers, and performing address translation and transmission on the data packet from the first UE and the data packet sent to the first UE according to the recorded mapping relationship.
  23. 一种网络标识控制装置,设置于标识管理节点,包括:A network identifier control device is disposed on the identifier management node, and includes:
    更新模块,设置为当第一用户设备UE上线后,根据所述第一UE的用户标识查询对应的网络标识,记录所查询到的网络标识与分配给所述第一UE的私网IP地址之间的映射关系;所述网络标识为公网IP地址,或者公网IP地址及端口号段;And an update module, configured to: after the first user equipment UE is online, query the corresponding network identifier according to the user identifier of the first UE, and record the queried network identifier and the private network IP address allocated to the first UE. The mapping relationship between the network identifiers is a public network IP address, or a public network IP address and a port number segment;
    查询模块,设置为当收到转换节点查询网络标识的请求后,根据所述请求中携带的所述第一UE的私网IP地址查询对应的网络标识,作为查询结果返回给所述转换节点。 The query module is configured to query the corresponding network identifier according to the private network IP address of the first UE that is carried in the request, and then return the data identifier to the conversion node as a query result.
PCT/CN2016/104079 2015-11-24 2016-10-31 Address converting method, device and system, network identity control method and device WO2017088628A1 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201510828029.3A CN106790732B (en) 2015-11-24 2015-11-24 Address translation method, device and system, and network identification control method and device
CN201510828029.3 2015-11-24

Publications (1)

Publication Number Publication Date
WO2017088628A1 true WO2017088628A1 (en) 2017-06-01

Family

ID=58763951

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2016/104079 WO2017088628A1 (en) 2015-11-24 2016-10-31 Address converting method, device and system, network identity control method and device

Country Status (2)

Country Link
CN (1) CN106790732B (en)
WO (1) WO2017088628A1 (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111385377A (en) * 2020-03-03 2020-07-07 深信服科技股份有限公司 IP address conflict processing method, equipment and storage medium
CN112511658A (en) * 2020-03-24 2021-03-16 中兴通讯股份有限公司 Method, device and system for realizing carrier-level network address conversion
CN112600765A (en) * 2020-12-02 2021-04-02 杭州迪普科技股份有限公司 Method and device for scheduling configuration resources
CN113225409A (en) * 2021-05-27 2021-08-06 北京天融信网络安全技术有限公司 NAT load balancing access method, device and storage medium
CN113572868A (en) * 2021-09-28 2021-10-29 武汉绿色网络信息服务有限责任公司 Dynamic dial-up networking method and system
CN117812039A (en) * 2024-02-24 2024-04-02 深圳赋乐科技集团有限公司 Network address translation log recording method, system, equipment and medium

Families Citing this family (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110071984A (en) * 2018-01-24 2019-07-30 中兴通讯股份有限公司 A kind of network identity mapping method and system and terminal, mark gateway
CN108933845A (en) * 2018-06-20 2018-12-04 新华三技术有限公司 A kind of public network IP address distribution method and device
CN109120746B (en) * 2018-09-30 2022-04-15 新华三技术有限公司 Network address translation method and device and address translation equipment
CN111385212B (en) * 2018-12-29 2021-08-31 华为技术有限公司 Data transmission technology and neural network system
CN111465001B (en) * 2020-04-01 2023-05-02 中国联合网络通信集团有限公司 Registration method and device
CN113810900A (en) * 2020-06-12 2021-12-17 中兴通讯股份有限公司 Network access method, electronic device and storage medium
CN112637374B (en) * 2020-12-15 2022-07-01 杭州迪普科技股份有限公司 Method, device and equipment for processing converted address and computer readable storage medium
CN113596192B (en) * 2021-07-26 2024-02-20 绿盟科技集团股份有限公司 Communication method, device, equipment and medium based on gatekeeper networking
CN115767661A (en) * 2021-09-03 2023-03-07 展讯半导体(南京)有限公司 Communication method and device, access network equipment and computer readable storage medium
CN113923707B (en) * 2021-12-10 2022-04-05 中移(上海)信息通信科技有限公司 Terminal monitoring method, device, network equipment, control system and terminal
CN114786121A (en) * 2022-04-07 2022-07-22 中国联合网络通信集团有限公司 Positioning method, device, system and storage medium

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7298742B2 (en) * 2002-07-25 2007-11-20 Leadtek Research Inc. Network address conversion system and the method thereof
CN101150598A (en) * 2005-11-02 2008-03-26 中兴通讯股份有限公司 Method for CDMA system to allocate fixing IP address for users
CN101651606A (en) * 2008-08-14 2010-02-17 华为技术有限公司 Method, device and system for forwarding message
CN102036227A (en) * 2009-09-27 2011-04-27 中国移动通信集团公司 Method, system and device for acquiring user identifier of data service
CN102695167A (en) * 2012-05-18 2012-09-26 中国联合网络通信集团有限公司 Mobile subscriber identity management method and apparatus thereof
CN102957754A (en) * 2011-08-22 2013-03-06 中国电信股份有限公司 Operating-level network address conversion method, operating-level network address conversion equipment and network system
CN105306612A (en) * 2014-07-15 2016-02-03 中兴通讯股份有限公司 Method for acquiring identifier of terminal in network and management network element

Family Cites Families (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102790812B (en) * 2012-07-31 2015-07-15 中国联合网络通信集团有限公司 IP (internet protocol) address source tracing method, equipment and system based on mobile terminal
CN103139326B (en) * 2013-03-06 2015-12-23 中国联合网络通信集团有限公司 IP source tracing method, equipment and system

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7298742B2 (en) * 2002-07-25 2007-11-20 Leadtek Research Inc. Network address conversion system and the method thereof
CN101150598A (en) * 2005-11-02 2008-03-26 中兴通讯股份有限公司 Method for CDMA system to allocate fixing IP address for users
CN101651606A (en) * 2008-08-14 2010-02-17 华为技术有限公司 Method, device and system for forwarding message
CN102036227A (en) * 2009-09-27 2011-04-27 中国移动通信集团公司 Method, system and device for acquiring user identifier of data service
CN102957754A (en) * 2011-08-22 2013-03-06 中国电信股份有限公司 Operating-level network address conversion method, operating-level network address conversion equipment and network system
CN102695167A (en) * 2012-05-18 2012-09-26 中国联合网络通信集团有限公司 Mobile subscriber identity management method and apparatus thereof
CN105306612A (en) * 2014-07-15 2016-02-03 中兴通讯股份有限公司 Method for acquiring identifier of terminal in network and management network element

Cited By (8)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111385377A (en) * 2020-03-03 2020-07-07 深信服科技股份有限公司 IP address conflict processing method, equipment and storage medium
CN112511658A (en) * 2020-03-24 2021-03-16 中兴通讯股份有限公司 Method, device and system for realizing carrier-level network address conversion
CN112511658B (en) * 2020-03-24 2024-04-30 中兴通讯股份有限公司 Method, device and system for realizing carrier-level network address conversion
CN112600765A (en) * 2020-12-02 2021-04-02 杭州迪普科技股份有限公司 Method and device for scheduling configuration resources
CN113225409A (en) * 2021-05-27 2021-08-06 北京天融信网络安全技术有限公司 NAT load balancing access method, device and storage medium
CN113572868A (en) * 2021-09-28 2021-10-29 武汉绿色网络信息服务有限责任公司 Dynamic dial-up networking method and system
CN117812039A (en) * 2024-02-24 2024-04-02 深圳赋乐科技集团有限公司 Network address translation log recording method, system, equipment and medium
CN117812039B (en) * 2024-02-24 2024-05-14 深圳赋乐科技集团有限公司 Network address translation log recording method, system, equipment and medium

Also Published As

Publication number Publication date
CN106790732A (en) 2017-05-31
CN106790732B (en) 2020-04-10

Similar Documents

Publication Publication Date Title
WO2017088628A1 (en) Address converting method, device and system, network identity control method and device
US11026080B2 (en) Policy control function determining method, apparatus, and system
EP3491794B1 (en) Virtual network routing to dynamic end point locations in support of service-based traffic forwarding
US9143483B2 (en) Method for anonymous communication, method for registration, method and system for transmitting and receiving information
US8667182B2 (en) User locating system, method and server in packet-based network
US8831606B2 (en) Mobile terminal registration method in a radio network
US8711749B2 (en) Information obtaining and notification, data message forwarding and handover method and access node
US20100291943A1 (en) Method and Apparatus for Pooling Network Resources
US20100309881A1 (en) Mobile communication system and tunnel management method thereof
US8665849B2 (en) Methods and systems for implementing inter-network roam, querying and attaching network
EP2466954B1 (en) Method, system and access gateway router for handoff management and user data management when handing off
WO2009046666A1 (en) Addressing method of policy decision function entity, network element and network system
WO2016101791A1 (en) Fault processing method, device and system
CN114365518A (en) Method for influencing data service routing in core network through service application
US8705471B2 (en) Method and system for implementing ID/locator mapping
CN107615238B (en) Method for accessing local network and related equipment
WO2012089030A1 (en) Method, access device and authentication device for network access by multiple access methods
WO2017008288A1 (en) Ip address management method, device, ip address anchor and mobile node
WO2012088828A1 (en) Method, system and access gateway router for table maintenance
JP5342070B2 (en) Method and system for realizing information interaction in next generation network
WO2012075779A1 (en) Method and system for guaranteeing quality of service of mobile node
CA2609064A1 (en) Apparatus and method for performing fast handover
CN102215475A (en) Method and system for searching resources in roaming
JP5112491B2 (en) Integrated signal processing apparatus and method for IP-based wired and wireless integrated network
WO2012083685A1 (en) Method and system for improving use efficiency of mapping and routing table

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 16867853

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 16867853

Country of ref document: EP

Kind code of ref document: A1