Embodiment
Describe network device management method of the present invention, the network equipment and network apparatus management system in detail below in conjunction with accompanying drawing.
Fig. 2 B illustrates the schematic diagram that comprises the communication network management system of the network apparatus management system and the network equipment according to of the present invention.Shown in Fig. 2 B, in order to improve the flexibility of network device management, the present invention allows a plurality of network apparatus management systems simultaneously the same network equipment to be managed.For example, a plurality of network apparatus management system EMS1 among Fig. 2 B
1, EMS1
2, EMS1
3Can manage a network equipment NE1 simultaneously.And for the ease of directly the network equipment being configured (when especially the network equipment starts, network connects may be also unstable, can understand field condition rapidly with managing near the network apparatus management system of the network equipment), directly by the Fast Ethernet interface on the power board of the network equipment with network apparatus management system EMS1
1NE1 is connected with the network equipment.Here with this network apparatus management system EMS1
1Be called local network device management system (also claiming Local Manager), with other network apparatus management system EMS1
2And EMS1
3Be called far-end network equipment management system (also claiming the remote side administration platform).Can realize differentiated control by local and far-end network equipment management system, that is, finish different operations with the far-end network equipment management system by this locality to the network equipment.Below, if there is not specified otherwise, then network apparatus management system is represented one of local and far-end network equipment management system.
Further specify the operation principle of distributed multioperation network management system of the present invention below with reference to Fig. 7.
Fig. 7 illustrates another schematic diagram according to distributed multioperation network management system of the present invention, and the far-end network equipment management system is connected with the network equipment 701 by DCN bus (adopt carrying IP ATM (IPOver ATM) backbone network) 703.Local network device management system 702 directly is connected with the network equipment 701 by the Fast Ethernet interface on the power board in the network equipment 701.The all-network equipment management system is common object request broker system (Corba) with the NMP between the network equipment, to satisfy the requirement of distributed management request.On file distributing mechanism, adopt File Transfer Protocol (file transfer protocol (FTP)), the realization of ftp server is provided by the network equipment.
For the ease of realizing distributed network management system, the Corba server is installed in the network equipment 701, the Corba client computer is installed in network apparatus management system 702,704,705 and 706.Network apparatus management system 702,704,705 and 706 will send various requests, carry out various operations and communicate by letter the network equipment by the communication mechanism (for example, the callback of Corba client (call back) object) that the Corba system provides.This network equipment 701 and network apparatus management system 702,704,705 and 706 also can be used such as other agreements such as SNMP (Simple Network Management Protocol), T1 and communicate.The network equipment 701 can support a plurality of far-end network equipment management systems 704,705 to be connected, to visit with a local network device management system 702 time with 706.Network apparatus management system 702,704,705 and 706 distributes a unique identification Invoke_ID (calling sign) to give this network apparatus management system 702,704,705 and 706 by the network equipment 701 when the network equipment 701 is initiated connection request.Then, when network apparatus management system 702,704,705 and 706 is initiated operation, all can carry this sign to identify the identity of oneself.
702,704,705 and 706 pairs of network equipments 701 of a plurality of network apparatus management systems manage, and especially the configuration data of the network equipment 701 being made amendment to cause configuration data and the configuration data in network apparatus management system 702,704,705 and 706 in the network equipment 701 inconsistent.In order to ensure the consistency of revising, the network equipment 701 provides three kinds of mode of operations to network apparatus management system 702,704,705 and 706 among the present invention: a reading mode, shared model and dedicated mode.
When the network equipment is in reading mode following time, the network equipment 701 can be managed simultaneously by a plurality of network apparatus management systems 702,704,705 and 706, but the operation that the network equipment 701 any one network apparatus management system 702,704,705 of refusal and 706 configuration datas to the network equipment of initiating change.
When the network equipment is in dedicated mode following time, the network equipment 701 can only be accepted the control of some network apparatus management systems 702,704,705 or 706 and accept this network apparatus management system 702,704,705 or 706 any operations of initiating, the network equipment 701 be under the dedicated mode and with situation that a network apparatus management system 702,704,705 or 706 is connected under, the connection request of the network equipment 701 any other network apparatus management systems of refusal.
When the network equipment 701 is in shared model following time, the network equipment 701 can be accepted any one any request local and far-end network equipment management system 702,704,705 and 706, carry out after the data modification request of a network apparatus management system, for the result who revises, the network equipment 701 with the form of event report notify other network apparatus management systems to guarantee other network apparatus management systems data and the data consistent in the network equipment 701.
The network equipment 701 enters a reading mode when starting, its state can be changed by itself or network apparatus management system subsequently.
When the network equipment 701 is in any mode of operation following time, the warning information on the network equipment 701 is reported to each network apparatus management system 702,704,705 and 706 that is connected by Event Service.
Describe in detail according to the connection procedure between the network apparatus management system of the present invention and the network equipment below with reference to Fig. 8.
Fig. 8 illustrates the schematic diagram of the connection procedure of the network apparatus management system 802 of the present invention and the network equipment 801.As shown in FIG., when network apparatus management system 802 when the network equipment 801 initiates to connect, network apparatus management system 802 has the IP address of the network equipment 801, and Corba server end slogan according to a preconcerted arrangement, network apparatus management system 802 can obtain the IOR (interoperable object reference) of Corba server end Servant (target servo), initiates connection request to the network equipment 801 then.
The IOR (IOR of the callback object in the Corba client-side) that in the Corba required parameter, has network apparatus management system, the network equipment 801 extracts the IP address of network apparatus management system 802 from this IOR, and this IP address tested, confirm whether it is legal.
Network apparatus management system initiates to have Instance_ID (instance identification) simultaneously in the parameter of request, and this value is local network device management system or far-end network equipment management system in order to identify this network apparatus management system 802.
The network equipment 801 can be accepted the connection request (the N value depends on specific implementation) of N heterogeneous networks equipment management system 802.By comparing the IP address value, any connection request that has connected the IP address of the network equipment 801 refusals can only have a manager (Manager) that consolidated network equipment 801 is managed on promptly any network apparatus management system main frame.
After the network equipment 801 is accepted connection request that network apparatus management system 802 initiates, distribute a new Invoke_ID to network apparatus management system 802, and produce a new servant and serve this network apparatus management system 802.When network apparatus management system 802 obtains new Invoke_ID, network apparatus management system 802 stores this value all the time in a connection session, when the network equipment 801 is initiated operation, all carry this value and be used for each time to the network equipment 801 sign identity.
Below with reference to Fig. 9 the mode of operation of the network equipment according to an embodiment of the invention and the conversion method between above-mentioned several mode of operation are described.
Fig. 9 shows the process of the working mode change of the network equipment.Under the request of this locality/far-end network equipment management system 902,903, the network equipment can be changed between these three kinds of patterns.When the network equipment 901 is in a reading mode or shared model following time, if a plurality of network apparatus management systems are access network device 901 simultaneously, then network apparatus management system 902 or 903 can change dedicated mode over to by indication network equipment 901, but preferably only changes dedicated mode over to by local device management system 902 indication network equipment 901.If have only a network apparatus management system to be connected to the network equipment 901, then the network apparatus management system that is connected with the described network equipment 901 is far-end network equipment management system 903 or local network device management system 902, and the network equipment 901 can change dedicated mode over to.
When local network device management system 902 indication network equipment 901 changed dedicated mode over to, the network equipment 901 interrupted the session connection with other network apparatus management systems 903 immediately.The network equipment 901 empties the Invoke_ID and the IOR of far-end network equipment management system 903 immediately, and discharges the IP address of the far-end network equipment management system 903 that is write down.
Before the connection to all far-end network equipment management systems 903 is released, the network equipment 901 is not notified far-end network equipment management system 903, detect (Health check) signal (promptly and work as far-end network equipment management system 903 to the survival that the network equipment 901 sends, be used to detect the request of connection status) overtime after, it is out of touch with this network equipment that this far-end network equipment management system is thought automatically, and discharge relevant resource context.
When the network equipment 901 is in dedicated mode following time, the network equipment 901 can only be accepted the control of a network apparatus management system and can accept to control any operation that the network apparatus management system of this network equipment 901 is initiated.Accept after the control of a network apparatus management system, be in the connection request of the network equipment 901 any other network apparatus management systems of refusal under the dedicated mode.
When the network equipment 901 is under the dedicated mode and with after being connected of local network device management system 902 interrupts, promptly there is not a network apparatus management system to be connected this moment with the network equipment 901, the network equipment 901 changes a reading mode automatically over to, can allow other new network apparatus management systems to insert.
When the network equipment 901 is in dedicated mode following time, after the request of accepting local network device management system 902, can change a reading mode or shared model over to.After the network equipment 901 entered a reading mode or shared model, the network equipment 901 can be accepted the connection request of any far-end network equipment management system 903.
When the network equipment 901 is in reading mode following time, it will refuse any " writing " operation, but can carry out the inquiry of inquiry, alarm management and the configuration data of performance data.
Below with reference to Figure 10 the network equipment of the present invention keeps data modification under shared model conforming method is described.
Figure 10 illustrates the network equipment according to the present invention guarantees data modification under shared model conforming schematic diagram.When the network equipment is in shared model following time, any one network apparatus management system 1002 or 1003 can both be initiated the modification request of configuration datas to the network equipment 1001.If there is not the conforming assurance of data modification, just might cause configuration data and the configuration data in the network apparatus management system in the network equipment inconsistent.
As shown in figure 10, if the data modification request that network apparatus management system 1002 is initiated issues by the Corba interface, then the network equipment 1001 is accepted this request, and after finishing data modification, notifies other network apparatus management systems 1003 that connected by event report.Like this, just can guarantee the consistency of the data of other network apparatus management systems.
When certain network apparatus management system 1002 carried out the batch data renewal, meeting is the whole M IB storehouse (management information bank) of new network device 1001 more.If the described network equipment 1001 is notified other network apparatus management systems 1003 with the result of config update in the mode of event report equally, then will increase the burden of the network equipment greatly undoubtedly, and this mode inefficiency.So, when network apparatus management system 1002 is initiated the batch data renewal, any operation (except the survival detection) that the network equipment 1001 other any network apparatus management systems 1003 of refusal are initiated comprises the mode switch operation of refusal present networks equipment management system.After batch data upgraded successfully end, the network equipment 1001 sent data synchronization request to other all network apparatus management systems 1003, required other network apparatus management systems 1003 and the network equipment 1001 to be configured the data synchronization operation.
For the high reliability of the configuration data that guarantees the multiple network equipment management system, in the environment of multiple network equipment management system, a plurality of network apparatus management systems 1002 and 1003 might be initiated identical operations to consolidated network equipment 1001 simultaneously.Be in shared model or reading mode following time only at the network equipment 1001, when the network equipment 1001 receives first request and begins to handle this request but when also not responding, if receive the same request from the another one network apparatus management system, then the processing policy of the network equipment 1001 is this request of refusal without exception.
When any network apparatus management system 1002 or 1003 was initiated mode switch request, the network equipment 1001 must be guaranteed not ongoing " writing " operation.If the current data modification request of handling does not also obtain responding, then must wait for and carry out the mode switch operation after this network equipment 1001 responds again.
Describe according to a preferred embodiment of the present invention below with reference to Fig. 3, that is, and handover operation and the processing procedure under each mode of operation that the network equipment is carried out between described three kinds of mode of operations in response to the request of network apparatus management system.
Fig. 3 illustrates the flow chart of network equipment Working mode switching method according to the preferred embodiment of the invention.
The flow process of Fig. 3 starts from step 301.In step 302, the network equipment judges whether to receive the connection request from network apparatus management system.If receive connection request, then handle forwarding step 303 to, otherwise just regularly carry out this judgement, when receiving a connection request till.
To step 310, the network equipment allows according to self mode of operation or the connection request of refusal network apparatus management system in step 303, allows or forbids this network equipment is managed operation.
In step 303, the network equipment judges whether self is under the dedicated mode.If the network equipment is under the dedicated mode, then handle and forward step 304 to, otherwise the network equipment just is in shared model or only under the reading mode, and handle and forward step 306 to.
In step 304, the network equipment is under the dedicated mode, only allow to connect with a network apparatus management system, so the network equipment need judge whether to be connected to the network apparatus management system of itself.Be connected if there has been network apparatus management system to set up with this network equipment, then handle forwarding step 307 to, this network equipment is refused the connection request that other network apparatus management system sends, and handles and forward step 311 to, just forwards step 305 to otherwise handle.
In step 305, the network equipment and network apparatus management system connect, and below with reference to Fig. 4 this connection procedure are described in detail.Then forward step 309 to, allow network apparatus management system to manage operation.Execution in step 311 then, judge whether to satisfy to disconnect the condition that connects, and hereinafter will describe this step in detail.
In step 303 mentioned above, if judging, the network equipment himself is not under the dedicated mode, then forward step 306 to, connect.Execution in step 308 then, and the network equipment judges whether self is under the shared model, if the network equipment is under the shared model, then handles and forward step 309 to, just forward step 310 to otherwise handle.
In step 309,, then allow network apparatus management system that this network equipment is carried out any operation if the network equipment is under the dedicated mode; If the network equipment is under the shared model, then because the described network equipment is subjected to the control of a plurality of network apparatus management systems simultaneously, therefore can there be some restriction in network apparatus management system to the operation that the network equipment carried out, and below will be described these restrictions.If certain network apparatus management system sends data modification request by the Corba interface, after then the network equipment receives, finishes this request, the network apparatus management system of notifying other to be attached thereto by the event report of Corba interface.If described request requires to carry out is that batch data upgrades (for example, to the renewal of the whole management information bank (MIB) of the network equipment), then uses the burden that event report undoubtedly can emphasis network equipment.Therefore, when network apparatus management system of the present invention is initiated the batch data renewal, the network equipment will be refused other any network apparatus management system to its any operation of carrying out except survival detects (Health Check).And after Data Update is finished, the network equipment will send data synchronization request to other all-network equipment management system, require other network apparatus management system to be configured the data sync operation, to keep the consistency of data.
As indicated above, in step 308,, the network equipment himself is not under the shared model if judging, and then this network equipment is under the reading mode, and processing forwards step 310 to.In step 310, because the network equipment is under the reading mode, therefore do not allow network apparatus management system that the configuration data of this network equipment is made amendment, but allow network apparatus management system to carry out other bookkeeping.
After above-mentioned steps 307,309 and 310, handle all forwarding step 311 to.In step 311, the network equipment judges whether to satisfy the condition that connects that disconnects.This condition can be that network apparatus management system sends the request of disconnection to this network equipment, can also be that the network equipment is received the dedicated mode conversion request that one of connected a plurality of network apparatus management systems send.
In step 312, this network equipment will be disconnected with being connected of this network apparatus management system.In step 313, processing finishes.
Fig. 4 illustrates network apparatus management system and the network equipment according to the preferred embodiment of the invention the connect flow chart of process, i.e. step 305 among Fig. 3,306.
Processing starts from step 401.In step 402, network apparatus management system is set up conversation-based secure socket layer with the network equipment and is connected (SSL).Therefore the IP address of network apparatus management system network enabled device can connect by this address and the network equipment that needs management.
In step 403, network apparatus management system sends to the network equipment and changes IOR (Interoperable Object Reference) request, comprise the network apparatus management system IOR and the sign (Instance_ID) that is used to represent network apparatus management system of network enabled device management system IP address in this request, this sign can also be used for distinguishing local and far-end network equipment management system.
In step 404, the network equipment extracts the information relevant with network apparatus management system from the Corba client computer IOR that network apparatus management system sends, and it is tested to confirm whether it is legal.The information of being checked comprises whether the quantity of the IP address of the sign (Instance_ID) of described network apparatus management system, described network apparatus management system, the network apparatus management system that connected surpasses reservation value etc.When tested in the IP address, with at the network equipment be connected if find this IP address, then check failure can only have a manager that consolidated network equipment is managed to guarantee a network apparatus management system.
In step 405, the network equipment judges whether connection request has passed through check, if passed through the check of step 404, then handles and forwards step 406 to, otherwise forward step 409 to.
In step 406, the network equipment is that network apparatus management system distributes a new sign (Invoke_ID), this sign is used to represent this network apparatus management system, and in whole connection session, survive, each network apparatus management system will comprise this sign in the request when initiating operation requests.
In step 407, the sign that the network equipment will be distributed in step 406 and the IP address of network apparatus management system are stored in the conversational list (Session Table) in the network equipment, and configuration data is upgraded.
In step 408, the network equipment returns the sign of being distributed by step 406 by the IOR of the Corba server end Servant that installs therein to network apparatus management system.
In step 409, connection processing finishes.
By above operation, the network equipment and network apparatus management system connect, and network apparatus management system regularly sends survival to the network equipment and detects the validity that (Health check) connects with checking afterwards.If the network equipment receives survival and detects, then this network equipment sends response message to inform its connection effectively to network apparatus management system.
As described in the step 311 and in conjunction with above with reference to the description of Fig. 9, if the network equipment is received the dedicated mode conversion request that one of connected a plurality of network apparatus management systems send, then the network equipment disconnects and being connected of other network apparatus management system.Therefore, detect, can not get replying of the network equipment although other network apparatus management systems still continue to send survival.Sending after survival detects, if receive yet through certain hour and not reply, then network apparatus management system is thought and is disconnected with being connected of this network equipment, thereby is released to the resource context that this network equipment distributes.
As mentioned above, the mode of operation of the network equipment can be set by the network apparatus management system that is attached thereto, and also can be changed by itself.When the network equipment is in dedicated mode following time, if network apparatus management system disconnects and being connected of this network equipment, then this network equipment changes a reading mode automatically over to.When the network equipment is under a reading mode or the shared model and have a plurality of network apparatus management systems to be connected with it, for the ease of the debugging work of local network device management system, can only allow local network device management system indication network equipment to change dedicated mode in certain embodiments.
Fig. 5 illustrates the structured flowchart of the network equipment according to the preferred embodiment of the invention.
As shown in Figure 5, the network equipment according to the present invention comprises judgment means 501, jockey 502, control device 503, mode conversion device 504, annunciator 505.
Jockey 502 is used to handle the operation relevant with setting up session connection (operation that connects for example shown in Figure 4).Specifically, described jockey 503 receives the connection request of network apparatus management systems, and sets up when accepting described connection request and being connected of network apparatus management system.
Judgment means 501 is used to mode of operation and the current connection status of the described network equipment of judging that the described network equipment is current, and according to described mode of operation and connection status, accepts or the refusal connection request, and it carries out the operation shown in the flow process of Fig. 3.Specifically, judge that in this judgment means 501 the described network equipment is in a reading mode or shared model following time, allow the described network equipment to accept the connection request of more than one described network apparatus management system simultaneously, wherein when judging that the described network equipment is in shared model and accepts batch data that one of them described network management system sends when upgrading operation requests, refuses any operation requests except connection status detects request that other any network apparatus management systems are initiated; And when the described network equipment is in dedicated mode, only allow the described network equipment to accept the connection request of a described network apparatus management system and can only be connected with a described network apparatus management system.
Control device 503 is used for according to the residing mode of operation of the described network equipment, carries out the described network apparatus management system that connects with the described network equipment to described network equipment institute requested operation.
Mode conversion device 504 is used for changing the mode of operation of the described network equipment according to this mode switch request when the described network equipment is accepted the mode switch request of described network apparatus management system.Especially, when the described network equipment was in dedicated mode, after interrupting in being connected of the described network equipment and described network apparatus management system, described mode conversion device 504 made described control device change a reading mode automatically over to.
Annunciator 505 is used for giving other network apparatus management system with the change notification of configuration data.Specifically, when the described network equipment is in shared model, after a described network apparatus management system that links to each other with the described network equipment is made amendment to the configuration data of the described network equipment, this report device 505 is notified other network apparatus management system that links to each other with the described network equipment with the form of event report, and when the network equipment is accepted batch data that one of them described network management system sends and is upgraded operation requests, after described batch data upgraded EO, this report device 505 notified other described network apparatus management system to be configured the data sync operation.
Fig. 6 illustrates the structured flowchart of network apparatus management system according to the preferred embodiment of the invention.
As shown in Figure 6, network apparatus management system according to the present invention comprises: connection request device 601, network equipment monitoring device 603, network device management device 610, mode switch request device 602.
Connection request device 601 is used for sending connection request to the network equipment; Mode switch request device 602 is used for to network equipment sending mode conversion request; Network equipment monitoring device 603 is used to monitor the connection status of the network equipment, and when the connection that is found to the network equipment takes place when unusual, this device informing network equipment management device 610 discharges the resource with this join dependency; Network device management device 610 is used for by the connection of being set up by connection request device 601 to network equipment transmit operation request.
More than though embodiments of the present invention have been described in conjunction with the accompanying drawings, those skilled in the art can make various distortion or modification within the scope of the appended claims.