CN100525251C - A method for network address translation - Google Patents

A method for network address translation Download PDF

Info

Publication number
CN100525251C
CN100525251C CNB2006101442480A CN200610144248A CN100525251C CN 100525251 C CN100525251 C CN 100525251C CN B2006101442480 A CNB2006101442480 A CN B2006101442480A CN 200610144248 A CN200610144248 A CN 200610144248A CN 100525251 C CN100525251 C CN 100525251C
Authority
CN
China
Prior art keywords
address
frame
network
network interface
processing controls
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CNB2006101442480A
Other languages
Chinese (zh)
Other versions
CN1996945A (en
Inventor
鄢贵海
付斌章
韩银和
张飞飞
刘彤
雷韶华
李晓维
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Institute of Computing Technology of CAS
Original Assignee
Institute of Computing Technology of CAS
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Institute of Computing Technology of CAS filed Critical Institute of Computing Technology of CAS
Priority to CNB2006101442480A priority Critical patent/CN100525251C/en
Publication of CN1996945A publication Critical patent/CN1996945A/en
Application granted granted Critical
Publication of CN100525251C publication Critical patent/CN100525251C/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)
  • Small-Scale Networks (AREA)

Abstract

This invention discloses one network address conversion method to realize conversion between public and private network addresses by use of process control block, wherein, the method comprises the following steps: converting the private address into public address; converting the private address into public address and establishing control block in the house network gate and modifying the data frame terminal number and source IP address and sending the data frame to the public network; modifying the data frame aim IP address and aim terminal number according to the process control block information.

Description

A kind of method for network address translation
Technical field
The present invention relates to computer networking technology, specially refer to the realization of network address translation.
Background technology
Along with the maturation of broadband technology, home networking will become the informationalized pith of entire society, in order to adapt to the broadband services demand of this lasting surge, propose " digital home " this new notion.The business of " digital home " class can be divided into four types:
1, home entertaining and communication class: by set-top box Digital Television be provided, look Audio on Demand, time-moving television, online game, visual telephone, and business such as long-distance education;
2, household safe class: for family provides monitoring and alarm, for example, intruder alarm, outdoor warning, smog/spilling water monitoring and alarm etc.;
3, family controls class automatically: utilize network to carry out tame electric control, illumination control, door and window control etc.;
4, family healthcare class: as a scheme at a specified future date, family practice can carry out long-range daily health examination to the kinsfolk, electrocardiogram/blood pressure/blood sugar/body weight/lung measurement amount, enforcement medication plan, the video consultation of doctors etc.
" digital home " technology barrier when realizing is that existing computer network can not well be supported the infiltration of digitalized network to household internal equipment, wherein IP address an in short supply major issue being exactly wherein to be run into.The IPv4 that generally uses is in the IP agreement of phase late 1970s design now, the IP address of IPv4 has only 32, along with global computer user's increase, and the classification of early stage IP address and the deficiency of distribution method, the phenomenon in short supply of IP address is very serious.Though the new IPv6 that proposes expands to 128 with the IP address from 32, can fundamentally solve IP address problem in short supply, but existing network architecture (comprising the network protocol software of network hardware equipment and the operation etc.) influence to ripe operation is bigger, is difficult in to replace IPv4 in a short time.
A kind of method that solves IP address shortage is to adopt the network address translation (nat) technology, if on private network and routing device that the internet is connected NAT program of operation, just can be with very little cost solution IPv4 address problem in short supply.In " digital home ", also can solve the shortage of IP address with NAT technology, make that the value chain of ripe computer networking technology obtains extending now, and do not change the architecture of existing computer network.
In digital home, realize that the corresponding NAT program of network address translation is installed on the home gateway.Home gateway is the mouthpiece who connects public network and family's private network, its both had been responsible for family private network inside to the visit of public network and mutual, be responsible for user's visit and control for home network from the public network again, also need to be responsible for the interconnected of family's private network internal unit, operations such as cross complaint in addition.A home gateway that possesses practical value should possess functions such as broadband access, traffic identification, control information forwarding.
Existing NAT technology must well shield the difference of hardware layer for scalable applicability, and this just means the complexity that will increase upper layer software (applications).Yet, for the home gateway in the digital home, because applied environment is more fixing, also more single, thus do not need to possess very strong flexibility, but need to realize simple and greater efficiency.Therefore, for home gateway provide a kind of simply, method for network address translation is significant to the realization of digital home efficiently.
Summary of the invention
The upper layer software (applications) that the objective of the invention is to overcome existing routing device is too complicated, the defective that network address translation efficient is lower, thereby provide a kind of simply, method for network address translation efficiently.
To achieve these goals, the invention provides a kind of method for network address translation, when network address translation, adopt the processing controls piece, described processing controls piece comprises 6 sub-pieces, is respectively IP address, the information that is used to organize data structure, the unique port numbers and the time-out information of the overall situation of the inner terminal equipment that links to each other with internal network interface in the port numbers, private network of IP address, the internal network interface of certain internal network interface on the routing device;
Described method for network address translation is used to realize the conversion of private network IP address to public network IP address, specifically comprises following steps:
The internal network interface of step 11), routing device receives the Frame that private network is sent;
Whether step 12), judgment data frame receive correct, if correct, carry out next step, otherwise delete received Frame, and execution in step 18 then);
Step 13), according to the purpose IP address of Frame, whether the judgment data frame mails to outside public network, if mail to outside public network, then carries out next step, otherwise, execution in step 18);
Step 14), the table of being preserved in the source address of Frame and the routing device about the processing controls piece is compared, if source address is identical with the IP address of the inner terminal equipment that a certain processing controll block is write down, then this data forwarding had been set up connection, otherwise carry out next step execution in step 16);
Step 15), in the table that routing device is preserved, set up new processing controls piece about the processing controls piece;
Step 16), the port numbers of the internal network interface in the Frame is revised as the unique port numbers of the overall situation, with the IP address that the source IP address of Frame is revised as the external network interface of routing device, revise simultaneously verification and;
Step 17), call the transmission treatment progress transmission Frame of the driver of external network interface;
Step 18), finish this transmit operation.
The present invention also provides a kind of method for network address translation, when network address translation, adopt the processing controls piece, described processing controls piece comprises 6 sub-pieces, is respectively IP address, the information that is used to organize data structure, the unique port numbers and the time-out information of the overall situation of the inner terminal equipment that links to each other with internal network interface in the port numbers, private network of IP address, the internal network interface of certain internal network interface on the routing device;
Described method for network address translation is used to realize the conversion of public network IP address to private network IP address, specifically comprises following steps:
Step 21), the external network interface of routing device receives the Frame that external network is sent;
Step 22), whether the judgment data frame receive correctly, if correct, carry out next step, otherwise delete received Frame, execution in step 27 then);
Step 23), according to the destination slogan in the Frame, judge whether this Frame mails to private network, if the destination slogan be kept at routing device in the processing controls piece in globally unique port number identical, then this Frame mails to private network, carries out next step; Otherwise execution in step 27);
Step 24), according to the globally unique port identical that find number with the destination slogan, find this globally unique port place processing controls piece;
Step 25), utilize step 24) in the IP address of inner terminal equipment in the processing controls piece that found revise purpose IP address in the Frame, utilize the port numbers of the internal network interface in the processing controls piece to revise destination slogan in the Frame, also change simultaneously in the Frame verification and;
Step 26), utilize step 24) in the IP address of internal network interface in the processing controls piece that found, call the transmission treatment progress of the driver of this interface and transmit this Frame;
Step 27), end operation.
In the technique scheme, described method for network address translation realizes that public network IP address before the conversion of private network IP address, makes configuration operation to described processing controls piece, for 6 sub-pieces of described processing controls piece add corresponding information.
The present invention provides a kind of method for network address translation again, when network address translation, adopt the processing controls piece, described processing controls piece comprises 6 sub-pieces, is respectively IP address, the information that is used to organize data structure, the unique port numbers and the time-out information of the overall situation of the inner terminal equipment that links to each other with internal network interface in the port numbers, private network of IP address, the internal network interface of certain internal network interface on the routing device;
Described method for network address translation comprises private network IP address transition to public network IP address, and public network IP address is transformed into private network IP address;
Wherein, described private network IP address transition specifically may further comprise the steps to public network IP address:
The internal network interface of step 11), routing device receives the Frame that private network is sent;
Whether step 12), judgment data frame receive correct, if correct, carry out next step, otherwise delete received Frame, and execution in step 18 then);
Step 13), according to the purpose IP address of Frame, whether the judgment data frame mails to outside public network, if mail to outside public network, then carries out next step, otherwise, execution in step 18);
Step 14), the table of being preserved in the source address of Frame and the routing device about the processing controls piece is compared, if source address is identical with the IP address of the inner terminal equipment that a certain processing controll block is write down, then this data forwarding had been set up connection, otherwise carry out next step execution in step 16);
Step 15), in the table that routing device is preserved, set up new processing controls piece about the processing controls piece;
Step 16), the port numbers of the internal network interface in the Frame is revised as the unique port numbers of the overall situation, with the IP address that the source IP address of Frame is revised as the external network interface of routing device, revise simultaneously verification and;
Step 17), call the transmission treatment progress transmission Frame of the driver of external network interface;
Step 18), finish this transmit operation;
Wherein, described public network IP address is transformed into private network IP address and specifically comprises following steps:
Step 21), the external network interface of routing device receives the Frame that external network is sent;
Step 22), whether the judgment data frame receive correctly, if correct, carry out next step, otherwise delete received Frame, execution in step 27 then);
Step 23), according to the destination slogan in the Frame, judge whether this Frame mails to private network, if the destination slogan be kept at routing device in the processing controls piece in globally unique port number identical, then this Frame mails to private network, carries out next step; Otherwise execution in step 27);
Step 24), according to the globally unique port identical that find number with the destination slogan, find this globally unique port place processing controls piece;
Step 25), utilize step 24) in the IP address of inner terminal equipment in the processing controls piece that found revise purpose IP address in the Frame, utilize the port numbers of the internal network interface in the processing controls piece to revise destination slogan in the Frame, also change simultaneously in the Frame verification and;
Step 26), utilize step 24) in the IP address of internal network interface in the processing controls piece that found, call the transmission treatment progress of the driver of this interface and transmit this Frame;
Step 27), end operation.
In the technique scheme, in described step 15), when setting up new processing controls piece, will send the IP address of inside terminals of Frame as the IP address of the inner terminal equipment that links to each other with internal network interface in the described private network; The IP address of the internal network interface that will link to each other with the inside terminals that sends Frame is as the IP address of certain internal network interface on the described routing device; The port numbers of the internal network interface that will link to each other with the inside terminals that sends Frame is as the port numbers of described internal network interface; The port numbers of distributing an inside terminals that only belongs to described transmission Frame is as the unique port numbers of the described overall situation.
In the technique scheme, in described step 17) in, when sending Frame, on data link layer, realize the forwarding of Frame.
The invention has the advantages that:
1, method for network address translation of the present invention is at the application-specific of home gateway, and principle is simple, address transition efficient height.
2, method for network address translation of the present invention is done the data forwarding operation at link layer, has simplified the implementation complexity of IP layer identification code, and has improved forwarding of data efficient.
Description of drawings
Fig. 1 is the data structure diagram of the processing controls piece in the method for network address translation of the present invention;
Fig. 2 is data flow residing position in procotol in the method for network address translation of the present invention;
Fig. 3 is the flow chart that private network IP address transition arrives public network IP address in the method for network address translation of the present invention;
Fig. 4 is transformed into the flow chart of private network IP address for public network IP address in the method for network address translation of the present invention.
Embodiment
The present invention is further illustrated below in conjunction with the drawings and specific embodiments.
Embodiment 1:
With the one family local area network (LAN) is example, and method of the present invention is described.In the one family local area network (LAN), many household electrical appliance that have network interface link to each other with the internal network interface of one family gateway, and all household electrical appliance that are connected on this home gateway form family lan.Also have an external network interface on home gateway, home gateway is connected on the Internet by this external network interface, thereby realizes being connected between family lan and the Internet.Suppose in the family lan in the present embodiment that household electrical appliance comprise an air-conditioning, a washing machine, a household PC.These electrical equipment all are connected with internal network interface on the home gateway.
Household electrical appliance in the family lan will carry out need realizing alternately the conversion of the network address with certain external host in the Internet.The present invention has constructed a kind of new data structure " processing controls piece " (Processing ControlBlock below can be called for short PCB) and has realized the conversion of the network address.As shown in Figure 1, the processing controls piece can be divided into six sub-pieces, wherein, 1. represents the IP address of certain internal network interface on the routing device; 2. the port numbers of representing internal network interface; 3. the IP address of representing in the internal network inner terminal equipment that links to each other with 1. represented internal network interface; 4. expression is used to organize the information of data structure, and this is used for 5. entry even is connected into a chained list, so that management; 5. the port numbers that the expression overall situation is unique, 5. the different electrical equipment in the family lan have different port numbers, and 5. same electrical equipment had same port numbers at different time; 6. represent time-out information, certain the PCB data structure that is used for not using is for a long time deleted, so that the required information of the whole address transition of Dynamic Maintenance.
A computer in the hypothesis family lan carries out alternately method for network address translation of the present invention being further described with outside main frame below.Computer in the family lan and external host can be divided into the two large divisions alternately, and promptly internal network sends the access request to external network, and external network is responded the access request of internal network, describes respectively below:
One, internal network proposes the access request to external network, as shown in Figure 3, comprises following steps.
The internal network interface of step 11, home gateway receives the Frame that internal network is sent;
Whether step 12, judgment data frame receive correct, if correct, carry out next step, otherwise delete received Frame;
The structure of step 13, resolution data frame, according to the IP address take out purpose IP address apart from the side-play amount of Frame starting position, judge whether these frame data mail to external network; If purpose IP address is the IP of certain station terminal of this internal network, then Frame does not mail to external network, changes step 18; Otherwise think to mail to external network, carry out next step;
For example, after family's gateway receives the Frame that computer sent in the family lan, purpose IP address in the judgment data frame, if this purpose IP address is the IP address or the sign of the washing machine in the family lan, just this Frame is sent on the washing machine, otherwise this Frame is sent on the Internet by home gateway.
Step 14, the source address of Frame and the 3. territory of PCB list item are made comparisons, search the PCB table, seeing if there is the PCB list item that meets can use, check promptly whether this data forwarding had set up connection, if there is the list item of coupling to use, then execution in step 16, otherwise carry out next step;
Step 15, set up new PCB list item, carry out next step then;
For example, the network identity of supposing the computer in the family lan is private_ip, the network identity of the internal network interface that this computer is connected with home gateway is local_ip, the IP address of the external network interface that this home gateway links to each other with the Internet is external_ip, and this IP address is a legal IP address.Distribute a port numbers when local_ip sends the data to home gateway when the computer expert crosses, be designated as local_port.The globally unique port number of supposing home gateway is Ass_port, (here it doesn't matter for the mechanism of the utilization of timeout mechanism and network address translation to set time-out time tmr, in order to give top priority to what is the most important with for simplicity, to not consider below), compose an effective pointer next at last the data item of organizing data structure, be used for effective PCB data structure organization is become a chained list.When the computer in the family lan outwards sent data for the first time, the PCB tables of data of being set up was as shown in table 1:
List item Value
Local_ip
Local-port
Private_ip
Next
Ass_port
Tmr
Table 1
Set up after the PCB tables of data,, revise Frame according to the related content in the tables of data.For example, when the computer in family's local area network (LAN) will send to data on the Internet, the source IP in the Frame is revised as external_ip; Local_port is revised as ass_port, and revise verification and.
Number 5. step 16, change the source IP address section of Frame the IP address of external network interface into, change former port numbers into globally unique port,
Step 17, the transmission treatment progress that calls the driver of external network interface send Frame; When transmitting Frame, as shown in Figure 2, Frame is realized transmitting on data link layer.Why data are transmitted at link layer, be because the realization of network address translation of the present invention is to be embedded in the hardware drive program of network interface, can regard the part of hardware driving as, rather than the service that provides of the interface interchange Drive Layer by hardware driving, this also just means does not need to revise the IP layer, has improved the efficient of data forwarding.
Step 18, finish this transmit operation.
Two, external network is responded the access request of internal network, as shown in Figure 4, comprises following steps.
The external network interface of step 21, home gateway receives the Frame that external network is sent;
Whether step 22, judgment data frame receive correct, if correct, carry out next step, otherwise delete received Frame;
The structure of step 23, resolution data frame takes out the destination slogan according to destination slogan present position apart from the side-play amount of Frame starting position, judges according to the destination slogan whether these frame data mail to this internal network; With the 5. coupling one by one in the list item in destination slogan and the PCB table, if there is no Pi Pei PCB list item, then Frame is not to mail to internal network, execution in step 27; Otherwise be to mail to this internal network, carry out next step;
Step 24, according to the globally unique port identical that find number with the destination slogan, find this globally unique port place PCB;
Step 25, according to the purpose IP address in the 3. territory in the PCB list item change Frame, utilize the destination slogan in the 2. territory change Frame, and revise corresponding check digit;
For example, when the computer of the terminal in the Internet in family lan sends Frame, destination slogan in this Frame should be ass_port, by searching to the PCB table, home gateway this Frame as can be known is to send in the family lan that it connects, according to the content of being filled in the PCB list item, the destination address in the Frame is revised as private_ip by external_ip, the destination slogan in the Frame is revised as local_port by ass_port.
Step 26, according to coupling PCB list item 1. find out corresponding internal network interface, call the transmission treatment progress of the driver of this interface and transmit this Frame;
Because in the PCB list item, the network identity of the internal network interface that links to each other with computer is local_ip, calls its driver Frame is sent on the computer.
Step 27, end operation.
Embodiment 2:
In some private networks, some inside terminals can initiatively not propose network access request, and for example the air-conditioning that has a network savvy " digital home " can not be visited the terminal in the public network.But the user need carry out Long-distance Control to it, therefore need be configured operation to it.
When specific implementation, distribute overall unique port numbers of some reservations exactly for the inside terminals in the private network.For example with the port numbers of 65000~65530 scopes as the remaining end slogan, the equipment of distributing to air-conditioning etc. " passive type " uses, home gateway is configured by computer by the user, the concrete configuration content is set up the PCB data structure for similar " passive type " equipment exactly.For example, the IP address of terminal of certain air-conditioning is IP_aircondition; The address that is connected to the internal network interface of home gateway is IP_local_air; For overall unique port numbers of its distribution is 65001; Because this passive equipment a plurality of sessions (session) can not occur simultaneously, so the port numbers of internal networking structure in theory can, but,, it can be made as number identical with globally unique port promptly 65001 also for calculation check and convenient in order to keep consistency; And overtime timer tmr can be made as infinity, and promptly this PCB data structure can not pass to use for a long time not and lost efficacy owing to the time.Then the PCB data structure of Jian Liing is as shown in table 2:
List item Value
IP_local_air
65001
IP_aircondition
Next
65001
Infinitely great
Table 2
After setting up above-mentioned processing controls piece, the operating process of data forwarding is identical with normal handling flow process described in the embodiment 1.No longer be further described in the present embodiment.
The above embodiments 1 and embodiment 2 are example with the family lan, method for network address translation of the present invention is described, but those of ordinary skill in the art is understood that, relate in the application scenarios of public network IP address and private network IP address transition at other, method for network address translation of the present invention is suitable equally.

Claims (6)

1, a kind of method for network address translation, when network address translation, adopt the processing controls piece, it is characterized in that, described processing controls piece comprises 6 sub-pieces, is respectively IP address, the information that is used to organize data structure, the unique port numbers and the time-out information of the overall situation of the inner terminal equipment that links to each other with internal network interface in the port numbers, private network of IP address, the internal network interface of certain internal network interface on the routing device;
Described method for network address translation is used to realize the conversion of private network IP address to public network IP address, specifically comprises following steps:
The internal network interface of step 11), routing device receives the Frame that private network is sent;
Whether step 12), judgment data frame receive correct, if correct, carry out next step, otherwise delete received Frame, and execution in step 18 then);
Step 13), according to the purpose IP address of Frame, whether the judgment data frame mails to outside public network, if mail to outside public network, then carries out next step, otherwise, execution in step 18);
Step 14), the table of being preserved in the source address of Frame and the routing device about the processing controls piece is compared, if source address is identical with the IP address of the inner terminal equipment that a certain processing controll block is write down, then this data forwarding had been set up connection, otherwise carry out next step execution in step 16);
Step 15), in the table that routing device is preserved, set up new processing controls piece about the processing controls piece;
Step 16), the port numbers of the internal network interface in the Frame is revised as the unique port numbers of the overall situation, with the IP address that the source IP address of Frame is revised as the external network interface of routing device, revise simultaneously verification and;
Step 17), call the transmission treatment progress transmission Frame of the driver of external network interface;
Step 18), finish this transmit operation.
2, a kind of method for network address translation, when network address translation, adopt the processing controls piece, it is characterized in that, described processing controls piece comprises 6 sub-pieces, is respectively IP address, the information that is used to organize data structure, the unique port numbers and the time-out information of the overall situation of the inner terminal equipment that links to each other with internal network interface in the port numbers, private network of IP address, the internal network interface of certain internal network interface on the routing device;
Described method for network address translation is used to realize the conversion of public network IP address to private network IP address, specifically comprises following steps:
Step 21), the external network interface of routing device receives the Frame that external network is sent;
Step 22), whether the judgment data frame receive correctly, if correct, carry out next step, otherwise delete received Frame, execution in step 27 then);
Step 23), according to the destination slogan in the Frame, judge whether this Frame mails to private network, if the destination slogan be kept at routing device in the processing controls piece in globally unique port number identical, then this Frame mails to private network, carries out next step; Otherwise execution in step 27);
Step 24), according to the globally unique port identical that find number with the destination slogan, find this globally unique port place processing controls piece;
Step 25), utilize step 24) in the IP address of inner terminal equipment in the processing controls piece that found revise purpose IP address in the Frame, utilize the port numbers of the internal network interface in the processing controls piece to revise destination slogan in the Frame, also change simultaneously in the Frame verification and;
Step 26), utilize step 24) in the IP address of internal network interface in the processing controls piece that found, call the transmission treatment progress of the driver of this interface and transmit this Frame;
Step 27), end operation.
3, method for network address translation according to claim 2, it is characterized in that, described method for network address translation realizes that public network IP address before the conversion of private network IP address, makes configuration operation to described processing controls piece, for 6 sub-pieces of described processing controls piece add corresponding information.
4, a kind of method for network address translation, it is characterized in that, when network address translation, adopt the processing controls piece, described processing controls piece comprises 6 sub-pieces, is respectively IP address, the information that is used to organize data structure, the unique port numbers and the time-out information of the overall situation of the inner terminal equipment that links to each other with internal network interface in the port numbers, private network of IP address, the internal network interface of certain internal network interface on the routing device;
Described method for network address translation comprises private network IP address transition to public network IP address, and public network IP address is transformed into private network IP address;
Wherein, described private network IP address transition specifically may further comprise the steps to public network IP address:
The internal network interface of step 11), routing device receives the Frame that private network is sent;
Whether step 12), judgment data frame receive correct, if correct, carry out next step, otherwise delete received Frame, and execution in step 18 then);
Step 13), according to the purpose IP address of Frame, whether the judgment data frame mails to outside public network, if mail to outside public network, then carries out next step, otherwise, execution in step 18);
Step 14), the table of being preserved in the source address of Frame and the routing device about the processing controls piece is compared, if source address is identical with the IP address of the inner terminal equipment that a certain processing controll block is write down, then this data forwarding had been set up connection, otherwise carry out next step execution in step 16);
Step 15), in the table that routing device is preserved, set up new processing controls piece about the processing controls piece;
Step 16), the port numbers of the internal network interface in the Frame is revised as the unique port numbers of the overall situation, with the IP address that the source IP address of Frame is revised as the external network interface of routing device, revise simultaneously verification and;
Step 17), call the transmission treatment progress transmission Frame of the driver of external network interface;
Step 18), finish this transmit operation;
Wherein, described public network IP address is transformed into private network IP address and specifically comprises following steps:
Step 21), the external network interface of routing device receives the Frame that external network is sent;
Step 22), whether the judgment data frame receive correctly, if correct, carry out next step, otherwise delete received Frame, execution in step 27 then);
Step 23), according to the destination slogan in the Frame, judge whether this Frame mails to private network, if the destination slogan be kept at routing device in the processing controls piece in globally unique port number identical, then this Frame mails to private network, carries out next step; Otherwise execution in step 27);
Step 24), according to the globally unique port identical that find number with the destination slogan, find this globally unique port place processing controls piece;
Step 25), utilize step 24) in the IP address of inner terminal equipment in the processing controls piece that found revise purpose IP address in the Frame, utilize the port numbers of the internal network interface in the processing controls piece to revise destination slogan in the Frame, also change simultaneously in the Frame verification and;
Step 26), utilize step 24) in the IP address of internal network interface in the processing controls piece that found, call the transmission treatment progress of the driver of this interface and transmit this Frame;
Step 27), end operation.
5, according to claim 1 or 4 described method for network address translation, it is characterized in that, in described step 15), when setting up new processing controls piece, will send the IP address of inside terminals of Frame as the IP address of the inner terminal equipment that links to each other with internal network interface in the described private network; The IP address of the internal network interface that will link to each other with the inside terminals that sends Frame is as the IP address of certain internal network interface on the described routing device; The port numbers of the internal network interface that will link to each other with the inside terminals that sends Frame is as the port numbers of described internal network interface; The port numbers of distributing an inside terminals that only belongs to described transmission Frame is as the unique port numbers of the described overall situation.
6, according to claim 1 or 4 described method for network address translation, it is characterized in that, in described step 17) in, when sending Frame, on data link layer, realize the forwarding of Frame.
CNB2006101442480A 2006-11-30 2006-11-30 A method for network address translation Active CN100525251C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2006101442480A CN100525251C (en) 2006-11-30 2006-11-30 A method for network address translation

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2006101442480A CN100525251C (en) 2006-11-30 2006-11-30 A method for network address translation

Publications (2)

Publication Number Publication Date
CN1996945A CN1996945A (en) 2007-07-11
CN100525251C true CN100525251C (en) 2009-08-05

Family

ID=38251887

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2006101442480A Active CN100525251C (en) 2006-11-30 2006-11-30 A method for network address translation

Country Status (1)

Country Link
CN (1) CN100525251C (en)

Families Citing this family (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101635747B (en) * 2008-07-24 2012-07-18 工业和信息化部电信传输研究所 Inter-network address resolution device for non-PTDN networks and PTDN networks
CN101360030B (en) * 2008-08-21 2011-10-05 华为技术有限公司 Method for private network customer to access public network using public network address
CN101800690B (en) * 2009-02-05 2012-08-15 北京启明星辰信息技术股份有限公司 Method and device for realizing source address conversion by using address pool
US8860775B2 (en) 2009-04-14 2014-10-14 Huawei Device Co., Ltd. Remote presenting system, device, and method
JP5561976B2 (en) * 2009-09-11 2014-07-30 キヤノン株式会社 Information processing apparatus, information processing apparatus control method, and program
CN102055755B (en) * 2009-10-29 2013-10-23 杭州华三通信技术有限公司 Method for data communication between public network and private network and safety plug-in card
CN102118455B (en) * 2009-12-30 2015-08-19 康佳集团股份有限公司 A kind of method of Web TV configuration network address, device and the network equipment
US8902743B2 (en) * 2010-06-28 2014-12-02 Microsoft Corporation Distributed and scalable network address translation
CN101986666B (en) * 2010-11-05 2013-07-24 清华大学 Network data transmission method based on virtual network interface and reverse address resolution
CN103024089B (en) * 2011-09-20 2016-02-17 中国电信股份有限公司 Method for network address translation and equipment
WO2012162996A1 (en) * 2011-09-30 2012-12-06 华为技术有限公司 Ip address obtaining method and network access device
CN103379187B (en) * 2012-04-28 2016-12-14 南京中兴新软件有限责任公司 A kind of data processing method and Gateway Network Element
CN105827427B (en) * 2015-01-08 2020-06-23 联想(北京)有限公司 Information processing method and electronic equipment
CN105681330A (en) * 2016-02-29 2016-06-15 四川长虹电器股份有限公司 Telecommunication internal network remote access method
CN110198365B (en) * 2019-05-27 2022-12-23 杭州迪普科技股份有限公司 Address translation detection method and system

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1332552A (en) * 2000-03-03 2002-01-23 尼克斯兰德公司 Network address conversion gateway of local network using local IP address and untranslated port address
CN1458598A (en) * 2002-05-17 2003-11-26 清华同方股份有限公司 Method and its device for household network gateway
CN1460347A (en) * 2001-06-22 2003-12-03 埃克斯克网络有限公司 Method for implementing transparent gateway or proxy in network
CN1694430A (en) * 2005-05-25 2005-11-09 复旦大学 Gateway penetration method based on UDP flow media server of NAT

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1332552A (en) * 2000-03-03 2002-01-23 尼克斯兰德公司 Network address conversion gateway of local network using local IP address and untranslated port address
CN1460347A (en) * 2001-06-22 2003-12-03 埃克斯克网络有限公司 Method for implementing transparent gateway or proxy in network
CN1458598A (en) * 2002-05-17 2003-11-26 清华同方股份有限公司 Method and its device for household network gateway
CN1694430A (en) * 2005-05-25 2005-11-09 复旦大学 Gateway penetration method based on UDP flow media server of NAT

Also Published As

Publication number Publication date
CN1996945A (en) 2007-07-11

Similar Documents

Publication Publication Date Title
CN100525251C (en) A method for network address translation
CN1232080C (en) Method of providing internal service apparatus in network for saving IP address
CN101425938B (en) Method and apparatus for network apparatus test
CN101212384B (en) Method, system, and equipment for implement home network interconnection
CN102047245B (en) Configuring communications between computing nodes
KR20040024917A (en) Apparatus and method for allocating the ip address
CN101702718A (en) Method and device for managing user terminal equipment
CN101719927A (en) Method and system thereof for carrying out remote management on gateway down-hanging device
CN102045409B (en) Network penetrating method and network communication system
CN103312546A (en) Method for automatically configuring and managing ZigBee network
US7675923B2 (en) Home network bridge-based communications method and apparatus
CN101431511A (en) Method for penetrating fire wall and establishing on-line channel between network terminal apparatus
CN101867508B (en) Method, system and device for realizing home network interconnection
CN105635335B (en) Social resources cut-in method, apparatus and system
CN106131028A (en) A kind of data transmission method of Free-port communication gateway
CN101179477B (en) Method for implementing built-in router
CN103701945A (en) Address translation method and address translation device
CN102882972A (en) Universal gatekeeper system of mobile internet of things
CN102546318A (en) Intelligent home furnishing realizing system and method
CN202094935U (en) Dynamic IP network based remote switch signal control system
CN102104512A (en) Method and equipment for determining interface information
CN100391213C (en) Pre- processing of nat addresses
CN104506665B (en) Distinguish method and system in a kind of IPv4/IPv6 addresses
CN101138198A (en) Method for managing bridging connection equipment
CN115834291A (en) Distributed intranet service data acquisition method, device, equipment and storage medium

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
EE01 Entry into force of recordation of patent licensing contract

Application publication date: 20070711

Assignee: Zhongke Yuanshu (Beijing) Technology Co., Ltd.

Assignor: Institute of Computing Technology, Chinese Academy of Sciences

Contract record no.: X2019990000091

Denomination of invention: A method for network address translation

Granted publication date: 20090805

License type: Common License

Record date: 20190919

EE01 Entry into force of recordation of patent licensing contract