CN101056271A - Method for penetrating the NAT and corresponding communication terminal and NAT device - Google Patents

Method for penetrating the NAT and corresponding communication terminal and NAT device Download PDF

Info

Publication number
CN101056271A
CN101056271A CNA2007101105621A CN200710110562A CN101056271A CN 101056271 A CN101056271 A CN 101056271A CN A2007101105621 A CNA2007101105621 A CN A2007101105621A CN 200710110562 A CN200710110562 A CN 200710110562A CN 101056271 A CN101056271 A CN 101056271A
Authority
CN
China
Prior art keywords
nat
communication terminal
public network
port
network address
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CNA2007101105621A
Other languages
Chinese (zh)
Inventor
刘先楠
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Hangzhou H3C Technologies Co Ltd
Original Assignee
Hangzhou H3C Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Hangzhou H3C Technologies Co Ltd filed Critical Hangzhou H3C Technologies Co Ltd
Priority to CNA2007101105621A priority Critical patent/CN101056271A/en
Publication of CN101056271A publication Critical patent/CN101056271A/en
Pending legal-status Critical Current

Links

Images

Abstract

The invention relates to a network communication area and discloses a method for penetrating the NAT. The method mainly includes: step S1: the communication terminal after the NAT device interacts with the NAT device to get the public network address and/or port behind the NAT from the NAT; step S2: the communication terminal fills the private network address and/or port information of the packet net payload as the public network address and/or port, and send the packets to the NAT device. The invention discloses the corresponding communication terminal and NAT device to support the implementation of the above method. Compared with the existing technology, the invention does not require NAT device to support the ALG (application layer gateway) and need not realize the STUN (UDP simple penetration mode of NAT) protocol, so it eliminates the limit of the static manual configuration.

Description

The method of passing through NAT and corresponding communication terminal and NAT device
Technical field
The present invention relates to network communication field, relate in particular to the technology of passing through NAT (Network AddressTranslation, network address translation); More particularly, the present invention relates to a kind of method of passing through NAT, and corresponding communication terminal and NAT device.
Background technology
Now a large amount of enterprises have adopted privately owned address networking (RFC1918), and control and the communicating by letter of public network by NAT (Network Address Translation, network address translation).NAT can finish the mutual conversion of privately owned addressing and public network addressing, and corresponding packet filtering rules is set, and allows IP (Internet Protocol, the Internet Protocol) bag that does not satisfy condition can not penetrating NAT.The utilization of NAT is that IP network has been brought a lot of benefits, such as, alleviated the nervous problem in IP address of internet under the IPv4 framework, improved the fail safe and the manageability of private network inside.Owing to have these advantages, NAT is applied on the various private network gateway devices in a large number, and it is a basic function of most network router device, also is the important component part of network firewall function.
For Telnet (standard agreement that is used for long-range connection service), HTTP (HypertextTransfer Protocol, HTML (Hypertext Markup Language)) the fixing general application protocol of port such as, NAT uses and only needs conversion IP/TCP (Transfer Control Protocol, transmission control protocol)/UDP (User Datagram Protocol, User Datagram Protoco (UDP)) head can realize penetrating well.But, for the protocol massages that has comprised IP address and port information in the IP message, for example H.323/SIP (Session Initiation Protocol, session initiation protocol) is embedded with IP address and port numbers in the protocol message particular section, though by NAT can be external address with the address transition of IP layer, but powerless, thereby make that at this moment using NAT will cause communication normally not move to the private IP address in the application layer messages.Especially when being in two terminals in the different private networks respectively and need communicating by letter, they must pass through NAT separately, and the corresponding problem that causes will be more complicated.
For solving the problem that occurs in the above-mentioned passing through NAT, there have been some solutions in the prior art.Wherein:
ALG (Application Level Gateway, ALG) scheme is the NAT traversal scheme that occurs the earliest.ALG carries out protocol extension on traditional NAT, make it to possess to comprise the ability of call control protocol at internal information in the perception H.323/SIP, thereby finish the parsing and the address translation function of the control protocol except that IP bag source address information.
The information that ALG mainly changes has H.225 RAS and call signaling information, H.245 channel information, RTP (Real-time Transport Protocol, RTP)/RTCP (Real-TimeTransport Control Protocol, RTCP Real-time Transport Control Protocol) channel address information, address port information among the SIP request/SDP (Session Description Protocol, Session Description Protocol).
ALG is the simplest a kind of mode of supporting that VOIP NAT penetrates, but it needs NAT device to support H323/SIP ALG function, and the influence to equipment performance is bigger after using ALG under the situation of high capacity.
STUN (Simple Traversal of UDP through NAT, the UDP simple traversal mode of NAT) agreement solves the thinking of penetrating NAT problem and is: the terminal in the private network obtains exporting external address on the NAT in advance by certain mechanism, in clean carrying, directly fill in the external address on the outlet NAT then, rather than fill in the private IP address of terminal in the private network.Like this, because the IP address information in clean the carrying is consistent with the heading address information, thereby make the content in clean the carrying through NAT the time, just need not to be modified, and only need get final product by the IP address of common NAT flow process conversion heading.
The operating process of STUN is: the STUN server of STUN client computer outside NAT sends request STUN message by UDP.The STUN server produces response message after receiving this request message, carries the source port of request message in this response message, i.e. the outside port of STUN client computer correspondence on NAT.Then, this response message sends to the STUN client computer by NAT, and the STUN client computer is learnt its external address on NAT by the content in this response message body, and after this external address inserted in the UDP load of hello protocol; Inform the opposite end simultaneously, the RTP receiver address of local terminal and port numbers are the address and the port numbers of NAT outside.Owing on NAT, set up the NAT mapping item of going out in advance, so intercommunication passing through NAT successfully by Simple Traversal of UDP Through Network Address Translators.
The great advantage of Simple Traversal of UDP Through Network Address Translators is to need not existing NAT/FW equipment to do any change.Simultaneously, the limitation of Simple Traversal of UDP Through Network Address Translators is: 1, equipment need be supported Simple Traversal of UDP Through Network Address Translators in the private network; What 2, STUN did not support that TCP connects passes through, and does not therefore support H.323, FTP etc. is based on the application protocol of TCP; 3, need to connect the STUN server of public network, increased extra deployment.
The static mappings of standard is another kind of many passing through NAT technology of using, its concrete scheme is: by manual public network address after on the equipment of NAT inside NAT being set, so just can the IP address information of its protocol massages inside be replaced by the manual public network address that is provided with when protocol massages leaves NAT device; Also promptly by the NAT conversion of static mappings, the user of public network just can visit the main frame of private net address by direct visit public network address.
Though static NAT mapping also can be accomplished the corresponding one by one of device address and public network address in the private network, and port information does not change.But, because static configuration is only supported in the static NAT mapping, and do not support the mode of address pool, thereby lack flexibility.
Except the technology of above three kinds of passing through NAT that are most widely used, the scheme of other passing through NAT also has MIDCOM (Middlebox Communications, middleware communication) scheme, TURN (Traversal Using Relay NAT is by the Relay passing through NAT) scheme, Proxy (agency) scheme etc.These schemes and such scheme are similar, and not being needs upgrading router, fire compartment wall, need upgrading terminals equipment exactly.
Summary of the invention
In view of this, the object of the invention is to provide a kind of method of passing through NAT, and it can remove the limitation of static manual configuration public network address mode from, also need not NAT device simultaneously and supports ALG or STUN.
Another purpose of the present invention is to provide corresponding communication terminal and NAT device, with the enforcement of the method for supporting above-mentioned passing through NAT.
In order to achieve the above object, the invention provides a kind of method of passing through NAT, include the following step:
Step S1, the communication terminal behind the NAT device be by carrying out alternately with described NAT device, knows public network address and/or port after it is by NAT from described NAT device;
Step S2, when described communication terminal produces will mail to the message of public network the time, it fills in private net address and/or port information in clean year of described message with described public network address and/or port, and then described message is sent to described NAT device.
For the method for above-mentioned passing through NAT, preferably, described step S1 specifically includes the following step:
Step S1-1, described communication terminal send request message to described NAT device, include the private net address and/or the port of described communication terminal in the described request message;
Step S1-2, described NAT device is created mapping item according to the described request message of receiving, described mapping item be used for expressing the private net address of described communication terminal and/or port and its after by NAT public network address and/or the corresponding relation of port; Simultaneously, described NAT device produces response message and it is fed back to described communication terminal according to described mapping item, and includes described public network address and/or port in the described response message.
Method for above-mentioned passing through NAT, preferably, described step S1 also includes step S1-3 after described step S1-2, described communication terminal is known after the public network address and/or port after it is by NAT according to the described response message of receiving, is produced corresponding confirmation message and it is fed back to described NAT device.
For the method for above-mentioned passing through NAT, preferably, include the numbering of described mapping item in described response message and the described confirmation message.
In order to reach above-mentioned another purpose, the invention provides a kind of communication terminal, it comprises that public network address knows module and pass through pretreatment module.Wherein, described public network address knows that module is used for by carrying out alternately with NAT device, to know public network address and/or the port after described communication terminal is by NAT from described NAT device; And the described pretreatment module of passing through is used for producing will mail to the message of public network the time at described communication terminal, fills in private net address and/or port information in clean year of described message with described public network address and/or port.
For above-mentioned communication terminal, preferably, described public network address knows that module comprises request unit and knows the unit.Wherein, the described request unit is used to send request message to described NAT device, and includes the private net address and/or the port of described communication terminal in the described request message; And describedly know that the unit is used for receiving that according to described NAT device the response message that returns behind the described request message knows public network address and/or the port after described communication terminal is by NAT.
For above-mentioned communication terminal, preferably, described public network address is known module or is describedly known the unit after knowing described public network address and/or port, produces confirmation message and also sends it to described NAT device.
In order to reach above-mentioned another purpose, the present invention also provides a kind of NAT device simultaneously, it includes the public network address distribution module, be used for request message according to communication terminal behind the described NAT device and be public network address and/or port after described communication terminal distributes it by NAT, and inform described communication terminal by corresponding response message.
For above-mentioned NAT device, preferably, described public network address distribution module comprises map unit and informs the unit.Wherein, described map unit is used for creating mapping item according to the request message of described communication terminal, described mapping item be used for defining the private net address of described communication terminal and/or port and its after by NAT public network address and/or the corresponding relation of port; And describedly inform that the unit is used for producing response message to described communication terminal according to described mapping item, include described public network address and/or port in the described response message.
For above-mentioned NAT device, preferably, described public network address distribution module or described map unit receive after the affirmation message that described communication terminal returns, and finally again determines that the corresponding relation of described mapping item definition sets up.
For above-mentioned NAT device, preferably, include the numbering of described mapping item in described response message and the described confirmation message.
By with the private network of NAT device in mutual, communication terminal behind the NAT device can be known public network address and/or the port after it is by NAT in advance, thereby can in message only carries, directly fill in its public network address and/or port after by NAT, and not fill in its private net address and/or port.Like this, because the address information in clean the carrying is with consistent by public network address behind the NAT and/or port, thereby only need to get final product when making message by the address information of common NAT flow process conversion heading through NAT device.That is to say,, use the present invention and still can on common NAT device, realize passing through of NAT even be nested with address information in clean the carrying of communication terminal outgoing message.
Compared with prior art, the present invention does not require NAT device support ALG function, need not desired STUN client computer of framework Simple Traversal of UDP Through Network Address Translators and STUN server, the limitation of also having removed manual static configuration NAT public network address and/or port information simultaneously from yet.
Description of drawings
Fig. 1 is the flow chart of one of method embodiment of passing through NAT of the present invention;
Fig. 2 is two the message circulation figure of the method embodiment of passing through NAT of the present invention;
Fig. 3 is the schematic block diagram of one of communication terminal embodiment of the present invention;
Fig. 4 is the schematic block diagram of one of NAT device embodiment of the present invention.
Embodiment
Above-mentioned and other technical characterictic and the advantage of the method for passing through NAT provided by the present invention, NAT device and communication terminal will be described in detail as follows in conjunction with the accompanying drawings.
Fig. 1 shows the flow chart of the preferred embodiment of passing through NAT method of the present invention.In order on common NAT device, to realize passing through of NAT, especially in message only carries, be nested with under the situation of address information and realize passing through of NAT, communication terminal behind NAT device at first will by with the private network of NAT device in know public network address/port after it is by NAT alternately, also be step S1 in the execution graph 1.
As shown in Figure 1, can realize by execution in step S1-1~S1-3 successively alternately in the private network between communication terminal and the NAT device.
At first, execution in step S1-1: communication terminal sends a request message to its corresponding NAT device, and includes its private net address/port in this request message.
Then, execution in step S1-2:NAT equipment is created mapping item according to the request message received, is used for defining the corresponding relation of the private net address/port of communication terminal and its public network address/port after by NAT; Simultaneously, NAT device also will produce a response message according to this mapping item be sent to communication terminal, and include the public network address/port of communication terminal after by NAT in this response message.
So far, communication terminal just can be according to its public network address/port after by NAT of the content aware in the response message after receiving the response message that NAT device returns.
But, after communication terminal has been known public network address/port after it is by NAT, know in order to allow NAT device in time know it, execution in step S1-3 preferably also at last: communication terminal produces a confirmation message and it is fed back to NAT device after public network address/port of knowing after it is by NAT.And, identify the contact each other of mapping item, response message and confirmation message for convenience, can also further preferably in response message and confirmation message, include the into numbering of corresponding mapping item.
Via mutual in the above-mentioned private network, communication terminal has been known the public network address/port after it is by NAT.From then on, shown in step S2 among Fig. 1, if communication terminal need be sent to the message of NAT device and be nested with address information in only carrying, then communication terminal can be earlier directly extends this as its public network address/port after by NAT of knowing in advance by step S1 to the private net address/port information in clean year of the message, and then this message is sent; Certainly, do not comprise address information if communication terminal need be sent to the message of NAT device in only carrying, then communication terminal will directly send this message.
Like this, for the message of exporting by communication terminal, need mail to public network through NAT device, address information in its heading is the private net address/port of this communication terminal, and the address information of its message in only carrying be the public network address/port of this communication terminal after by NAT, if its message was nested with address information in clean year.This will make, NAT device receives after communication terminal message output, that need mail to public network, no matter whether be nested with address information in clean the carrying of this message, its need are changed the private net address/port information in the heading of this message by common NAT flow process, can realize passing through of NAT.
Introduce an application example of the method for passing through NAT provided by the present invention in detail below with reference to Fig. 2, to help to understand better the present invention.
In Fig. 2, communication terminal 100#A is positioned at after the NAT device 200, and private net address/port of supposition communication terminal 100#A is to include public network address/port 202.1.1.1:65000, communication terminal 100#B in the address pool of 172.16.1.1:1000, NAT device 200 to have a global routable public network address/port one 38.1.1.1:65000.
When communication terminal 100#A needs and communication terminal 100#B when communicating, communication terminal 100#A at first sends a request message 1. to its corresponding NAT device 200.Certainly, the request message port information 1000 that includes the private net address 172.16.1.1 of communication terminal 100#A in 1. and be used for this time communicating by letter.
After NAT device 200 receives that this request message 1., at first create a mapping item " 172.16.1.1:1000  202.1.1.1:65000 ", the public network address/port that is used for representing private net address/port one 72.16.1.1:1000 correspondence be 202.1.1.1:65000 and this mapping item be numbered 1200.Subsequently, 2. NAT device 200 produces a response message according to the mapping item that is numbered 1200, and 2. this response message is sent to communication terminal 100#A.Certainly, response message include communication terminal 100#A in 2. will be by the numbering 1200 of the public network address behind the NAT/port information 202.1.1.1:65000 and corresponding mapping item.
After communication terminal 100#A receives that response message 2., know that by reading address information that 2. this response message comprise the public network address/port after it is by NAT is 202.1.1.1:65000.And it has known that it is used for the public network address/port information of communication this time in order to inform NAT device 200, and communication terminal 100#A then also will respond a confirmation message 3. to NAT device 200.Certainly, 2. similar with response message, confirmation message also includes the numbering 1200 of corresponding mapping item in 3..
NAT device 200 received comprise mapping item numbering the affirmation message 3. after, know that in advance reciprocal process then is through with in the private network that its public network address/port carries out between communication terminal 100#A and the NAT device 200, for communication terminal 100#A.Like this, as shown in Figure 2, shake hands by 3 times, communication terminal 100#A has just known the public network address/port 202.1.1.1:65000 after it is by NAT in advance.
Then, communicate by letter in order to set up with communication terminal 100#B, 4. communication terminal 100#A sends communication request that message is nested with address information in clean year.Because 4. communication request needs to transmit and communication terminal 100#A is known public network address/port 202.1.1.1:65000 after it is by NAT in advance through NAT device 200, therefore the address information during communication request message 4. carries is only directly extended this as 202.1.1.1:65000 by communication terminal 100#A, and the source address/port information in the communication request heading 4. remains private net address/port one 72.16.1.1:1000 of communication terminal 100#A.
When 4. communication request passes through NAT device 200, NAT device will forward after will becoming 202.1.1.1:65000 to the source address/port information 172.16.1.1:1000 in its heading according to mapping item " 172.16.1.1:1000  202.1.1.1:65000 " again, thereby make communication request message 4. only carry in heading in source address/port information be consistent, and then make communication request 4. be forwarded to correctly to be received and identified out when communication terminal 100#B goes up by server 300.
Because communication terminal 100#B receives communication request 4. the time, address information in communication request message 4. carries only has been global routable public network address/port 202.1.1.1:65000, replys 5. to establish a communications link thereby make communication terminal 100#B to reply a communication request to public network address/port 202.1.1.1:65000.
Reply when 5. passing through NAT device 200 when communication request, NAT device will become 172.16.1.1:1000 to the destination address in its heading/port information 202.1.1.1:65000 according to mapping item " 172.16.1.1:1000  202.1.1.1:65000 " equally and be transmitted to communication terminal 100#A again.So far, finished the foundation of communicating by letter between communication terminal 100#A and the communication terminal 100#B, also finished passing through NAT device 200.That is to say that 6. communication terminal 100#A can intercom with communication terminal 100#B at this point mutually.
Introduce a preferred embodiment of communication terminal provided by the present invention in detail below with reference to Fig. 3.
As shown in Figure 3, communication terminal 100 comprises that public network address knows module 110 and pass through pretreatment module 120 that wherein public network address knows that module 110 specifically comprises request unit 111 again and knows unit 112.And, in Fig. 3, with the identical assembly/message of mark indication identical among Fig. 2.
In communication terminal 100, public network address knows that module 110 is used for carrying out alternately with corresponding N AT equipment 200, makes communication terminal 100 can be in advance know public network address/port after it is by NAT from NAT device 200.
In general, public network address knows and shakes hands for twice comprising at least between module 110 and the NAT device 200, also i.e. once request, a secondary response.Accordingly, know in the module 110 that request unit 111 is used to send a request message 1. to NAT device 200, and request message includes the private net address/port of communication terminal 100 in 1. at public network address; And know that unit 112 is used for receiving that according to NAT device 200 2. the response message that returns after request message 1. know that communication terminal 100 is by the public network address/port behind the NAT.
Certainly, after communication terminal 100 has been known public network address/port after it is by NAT, know in order to allow NAT device in time know it, public network address in the communication terminal 100 knows that module 110 (be specially among Fig. 3 and know unit 112) is after knowing public network address and/or port, also will produce a confirmation message 3., and 3. this confirmation message will be sent to NAT device 200.
In addition, identify for convenience response message 2. reach confirmation message 3. with the corresponding relation of mapping item, can also be preferably 2. reach the numbering that confirmation message includes corresponding mapping item in 3. at response message.
In communication terminal 100, passing through pretreatment module 120 is used for knowing public network address/port that module 110 is known in advance according to public network address, will export and need message through NAT device 200 carry out NAT communication terminal 100 and pass through preliminary treatment, guarantee that the private net address/port information of this message in carrying only is the communication terminal the known in advance public network address/port after by NAT.
Passing through pretreatment module 120 may act in the message generative process.At this moment, pass through that pretreatment module 120 judges that communication terminal 100 will be exported and need whether need nested private net address/port information in clean the carrying through the message of NAT device 200, if judged result is to be then directly to fill in public network address/port of knowing in advance.
Perhaps, passing through pretreatment module 120 may act on after the message generation.At this moment, pass through that pretreatment module 120 judges that communication terminal 100 will be exported and need whether to be nested with in clean the carrying through the message of NAT device 200 private net address/the port of communication terminal 100, if judged result is to be then this private net address/port to be replaced with public network address/port of knowing in advance.
Certainly, those skilled in the art will be understood that communication terminal 100 ought can comprise other assembly that is used to realize communication function, yet for outstanding NAT passes through theme and simplifies view, other assembly are not shown among Fig. 3, and have not also given unnecessary details on the literal.
Introduce a preferred embodiment of NAT device provided by the present invention in detail below with reference to Fig. 4.
As shown in Figure 4, NAT device 200 comprises public network address distribution module 210, and public network address distribution module 210 specifically comprises map unit 211 again and informs unit 212.The same with Fig. 3, in Fig. 4, with the identical assembly/message of mark indication identical among Fig. 2.
In NAT device 200, public network address distribution module 210 be used for NAT device 200 after communication terminal 100 carry out alternately, make communication terminal 100 can be in advance know public network address/port after it is by NAT from NAT device 200.
In general, comprising at least between public network address distribution module 210 and the communication terminal 100 shaken hands for twice, also i.e. once request, a secondary response.Accordingly, in the public network address distribution module 210, map unit 211 is used for 1. creating a mapping item according to the request message of communication terminal 100, and this mapping item is used to represent the corresponding relation of the public network address/port after the private net address/port of communication terminal 100 and its are by NAT; And inform that unit 212 is used for producing corresponding response message according to the mapping item that map unit 211 is created and 2. and with it is back to communication terminal 100, and this response message includes communication terminal 100 by the public network address/port behind the NAT in 2..
Certainly, in NAT device 200, in order to ensure the real-time effectiveness of mapping item, after public network address distribution module 210 (being specially map unit 211 among Fig. 4) receives that affirmation message that communication terminal 100 returns 3., finally again determine that the corresponding relation of corresponding mapping item definition sets up.
In addition, identify for convenience response message 2. reach confirmation message 3. with the corresponding relation of mapping item, can also 2. reach the numbering that confirmation message preferably includes corresponding mapping item in 3. at response message.
Certainly, those skilled in the art will be understood that NAT device 200 ought can comprise other assembly that is used to realize nat feature, yet for outstanding NAT passes through theme and simplifies view, these other assemblies are not shown among Fig. 4, and have not also given unnecessary details on the literal.
What need statement is that foregoing invention content and embodiment are intended to prove the practical application of technical scheme provided by the present invention, should not be construed as the qualification to protection range of the present invention.Those skilled in the art are in spirit of the present invention and principle, when doing various modifications, being equal to and replacing or improve.Protection scope of the present invention is as the criterion with appended claims.

Claims (11)

1. the method for a passing through NAT is characterized in that, includes the following step:
Step S1, the communication terminal behind the NAT device be by carrying out alternately with described NAT device, knows public network address and/or port after it is by NAT from described NAT device;
Step S2, when described communication terminal produces will mail to the message of public network the time, it fills in private net address and/or port information in clean year of described message with described public network address and/or port, and then described message is sent to described NAT device.
2. the method for passing through NAT as claimed in claim 1 is characterized in that, described step S1 includes the following step:
Step S1-1, described communication terminal send request message to described NAT device, include the private net address and/or the port of described communication terminal in the described request message;
Step S1-2, described NAT device is created mapping item according to the described request message of receiving, described mapping item be used for expressing the private net address of described communication terminal and/or port and its after by NAT public network address and/or the corresponding relation of port; Simultaneously, described NAT device produces response message and it is fed back to described communication terminal according to described mapping item, and includes described public network address and/or port in the described response message.
3. the method for passing through NAT as claimed in claim 2, it is characterized in that, described step S1 also includes step S1-3 after described step S1-2, described communication terminal is known after the public network address and/or port after it is by NAT according to the described response message of receiving, is produced corresponding confirmation message and it is fed back to described NAT device.
4. as the method for claim 2 or 3 described passing through NAT, it is characterized in that, include the numbering of described mapping item in described response message and the described confirmation message.
5. a communication terminal is characterized in that, comprising:
Public network address is known module, is used for by carrying out alternately with NAT device, to know public network address and/or the port after described communication terminal is by NAT from described NAT device;
Pass through pretreatment module, be used for producing to mail to the message of public network the time, fill in private net address and/or port information in clean year of described message with described public network address and/or port at described communication terminal.
6. communication terminal as claimed in claim 5 is characterized in that, described public network address knows that module comprises:
Request unit is used to send request message to described NAT device, and includes the private net address and/or the port of described communication terminal in the described request message;
Know the unit, be used for receiving the response message that returns behind the described request message, know public network address and/or port after described communication terminal is by NAT according to described NAT device.
7. as claim 5 or 6 described communication terminals, it is characterized in that described public network address is known module or describedly known the unit after knowing described public network address and/or port, produces confirmation message and it is fed back to described NAT device.
8. NAT device, it is characterized in that, comprise the public network address distribution module, be used for request message according to communication terminal behind the described NAT device and be public network address and/or port after described communication terminal distributes it by NAT, and inform described communication terminal by corresponding response message.
9. NAT device as claimed in claim 8 is characterized in that, described public network address distribution module comprises:
Map unit is used for creating mapping item according to the request message of described communication terminal, described mapping item be used for defining the private net address of described communication terminal and/or port and its after by NAT public network address and/or the corresponding relation of port;
Inform the unit, be used for producing described response message and sending it to described communication terminal, and include described public network address and/or port in the described response message according to described mapping item.
10. NAT device as claimed in claim 9 is characterized in that, described public network address distribution module or described map unit receive after the affirmation message that described communication terminal returns, and finally again determines that the corresponding relation of described mapping item definition sets up.
11. as claim 9 or 10 described NAT device, it is characterized in that, include the numbering of described mapping item in described response message and the described confirmation message.
CNA2007101105621A 2007-06-06 2007-06-06 Method for penetrating the NAT and corresponding communication terminal and NAT device Pending CN101056271A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNA2007101105621A CN101056271A (en) 2007-06-06 2007-06-06 Method for penetrating the NAT and corresponding communication terminal and NAT device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNA2007101105621A CN101056271A (en) 2007-06-06 2007-06-06 Method for penetrating the NAT and corresponding communication terminal and NAT device

Publications (1)

Publication Number Publication Date
CN101056271A true CN101056271A (en) 2007-10-17

Family

ID=38795884

Family Applications (1)

Application Number Title Priority Date Filing Date
CNA2007101105621A Pending CN101056271A (en) 2007-06-06 2007-06-06 Method for penetrating the NAT and corresponding communication terminal and NAT device

Country Status (1)

Country Link
CN (1) CN101056271A (en)

Cited By (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2010097005A1 (en) * 2009-02-28 2010-09-02 华为技术有限公司 Method, apparatus and system for advertising network address translation device information
WO2011035528A1 (en) * 2009-09-24 2011-03-31 日电(中国)有限公司 Method, system and relay server for network address translation (nat) traversal by way of relay
CN101150522B (en) * 2007-11-07 2011-06-15 杭州华三通信技术有限公司 A method and voice server for configuring office route on voice server
CN101442480B (en) * 2007-11-20 2011-09-07 迈普通信技术股份有限公司 Network communication method based on STUN protocol
CN102255980A (en) * 2010-05-20 2011-11-23 中兴通讯股份有限公司 Method and apparatus for managing calling information of session initiation protocol
CN102447630A (en) * 2011-12-28 2012-05-09 中兴通讯股份有限公司 Protocol message transmission method, home gateway and CGN (carrier grade network switch) device
CN103391334A (en) * 2013-06-28 2013-11-13 贵阳朗玛信息技术股份有限公司 Network crossing method, device and system
CN103581350A (en) * 2012-07-25 2014-02-12 中国电信股份有限公司 Method, terminals, equipment and system for publishing Internet services across NAT
CN104023206A (en) * 2014-06-04 2014-09-03 浙江宇视科技有限公司 Method and device of centralized forwarding of media stream
WO2017041660A1 (en) * 2015-09-07 2017-03-16 上海斐讯数据通信技术有限公司 Router remote management method, system and device
CN108989488A (en) * 2018-09-06 2018-12-11 腾讯科技(深圳)有限公司 Traversing method, device and the storage medium of network address translation apparatus
CN109600671A (en) * 2018-12-13 2019-04-09 四川九州电子科技股份有限公司 A kind of system and method that network machine top box quickly upgrades
CN110062056A (en) * 2018-01-19 2019-07-26 中兴通讯股份有限公司 Method for network address translation and device
CN111131315A (en) * 2019-12-31 2020-05-08 西安抱朴通信科技有限公司 Session connection method, device, equipment and medium
CN112134826A (en) * 2019-06-24 2020-12-25 华为技术有限公司 Communication method and related equipment

Cited By (23)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101150522B (en) * 2007-11-07 2011-06-15 杭州华三通信技术有限公司 A method and voice server for configuring office route on voice server
CN101442480B (en) * 2007-11-20 2011-09-07 迈普通信技术股份有限公司 Network communication method based on STUN protocol
WO2010097005A1 (en) * 2009-02-28 2010-09-02 华为技术有限公司 Method, apparatus and system for advertising network address translation device information
CN102035900B (en) * 2009-09-24 2015-05-06 日电(中国)有限公司 NAT (network address translation) traversal method, system and relay server by relay mode
WO2011035528A1 (en) * 2009-09-24 2011-03-31 日电(中国)有限公司 Method, system and relay server for network address translation (nat) traversal by way of relay
CN102255980A (en) * 2010-05-20 2011-11-23 中兴通讯股份有限公司 Method and apparatus for managing calling information of session initiation protocol
CN102255980B (en) * 2010-05-20 2015-07-22 中兴通讯股份有限公司 Method and apparatus for managing calling information of session initiation protocol
CN102447630A (en) * 2011-12-28 2012-05-09 中兴通讯股份有限公司 Protocol message transmission method, home gateway and CGN (carrier grade network switch) device
CN103581350B (en) * 2012-07-25 2017-03-01 中国电信股份有限公司 Cross over method, terminal, equipment and the system that NAT issues Internet service
CN103581350A (en) * 2012-07-25 2014-02-12 中国电信股份有限公司 Method, terminals, equipment and system for publishing Internet services across NAT
CN103391334A (en) * 2013-06-28 2013-11-13 贵阳朗玛信息技术股份有限公司 Network crossing method, device and system
CN103391334B (en) * 2013-06-28 2016-12-28 贵阳朗玛信息技术股份有限公司 A kind of network traversal method, Apparatus and system
CN104023206B (en) * 2014-06-04 2017-06-13 浙江宇视科技有限公司 Media Stream concentrates retransmission method and device
CN104023206A (en) * 2014-06-04 2014-09-03 浙江宇视科技有限公司 Method and device of centralized forwarding of media stream
WO2017041660A1 (en) * 2015-09-07 2017-03-16 上海斐讯数据通信技术有限公司 Router remote management method, system and device
CN110062056A (en) * 2018-01-19 2019-07-26 中兴通讯股份有限公司 Method for network address translation and device
CN108989488A (en) * 2018-09-06 2018-12-11 腾讯科技(深圳)有限公司 Traversing method, device and the storage medium of network address translation apparatus
CN108989488B (en) * 2018-09-06 2020-07-07 腾讯科技(深圳)有限公司 Traversing method and device of network address translation equipment and storage medium
CN109600671A (en) * 2018-12-13 2019-04-09 四川九州电子科技股份有限公司 A kind of system and method that network machine top box quickly upgrades
CN109600671B (en) * 2018-12-13 2021-02-19 四川九州电子科技股份有限公司 System and method for rapidly upgrading network set top box
CN112134826A (en) * 2019-06-24 2020-12-25 华为技术有限公司 Communication method and related equipment
CN112134826B (en) * 2019-06-24 2022-05-13 华为技术有限公司 Communication method, computer device, and computer-readable storage medium
CN111131315A (en) * 2019-12-31 2020-05-08 西安抱朴通信科技有限公司 Session connection method, device, equipment and medium

Similar Documents

Publication Publication Date Title
CN101056271A (en) Method for penetrating the NAT and corresponding communication terminal and NAT device
AU2005201075B2 (en) Apparatus and method for voice processing of voice over internet protocol (VOIP)
CN1623310A (en) Communications protocols operable through network address translation (nat) type devices
CN1977499A (en) Information processing device, and bubble packet transmission method and program
CN1716941A (en) Method and call server for establishing a bi-directional peer-to-peer communication link
CN1863157A (en) Method and apparatus for implementing network communication through NAT
CN1968226A (en) Method for crossing network address conversion in point-to-point communication
US8204065B2 (en) Network address translation in session initiation protocol based application
CN1976356A (en) Network address conversion penetrating system, method and user equipment
JP2004528748A (en) Method and apparatus for enabling transmission of data through a firewall
JP2011091826A (en) Application layer gateway (alg) for ip networks using ip address formats different from each other, network address translator and sip message routing method thereof
CN1523848A (en) SIP service method in a network having a NAT
CN101064625A (en) Method for managing user side equipment through network address translation gateway
WO2013171637A1 (en) Nat traversal for voip
CN1716954A (en) Method for intercommunication between IP V6 network and IPV4 network based on transit mechanism
RU2008115139A (en) EQUIPMENT, SYSTEM AND METHOD FOR COMMUNICATION BETWEEN CUSTOMER AND SERVER
CN1747457A (en) Communication for spanning gateway
CN1822543A (en) Method to establish a peer-to-peer connection between two user agents
CN101047548A (en) Communication in multiple NAT private network
CN1741469A (en) System and method for collecting and assigning participant identifying data
US10079802B2 (en) Network transmission method and network transmission system for a multi-layer network address translator structure
CN1665235A (en) A method for traversing subnet and subnet traversing system
CN106131084B (en) RTP Media Stream traversing method, sip server and SIP communication system
CN106331195B (en) Data receiving and sending method and device
CN1551569A (en) Transmission method of multimedia data over a network

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C12 Rejection of a patent application after its publication
RJ01 Rejection of invention patent application after publication

Open date: 20071017